~ ZHPDiag v2016.12.17.244 Par Nicolas Coolman (2016/12/17) ~ Démarré par METIDJI (Administrator) (2016/12/17 11:51:07) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Users\METIDJI\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\METIDJI\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows Se7en Titan, 32-bit (Build 7600) =>.Microsoft Corporation ---\\ Navigateurs Internet (1) - 0s ~ MSIE: Internet Explorer v8.0.7600.16385 ---\\ Informations sur les produits Windows (9) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : PMJBM ~ Windows Remaining Initializations Number : 3 Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 0s 360 Total Security v9.0.0.1069 (Protection) SMADAV version 9.7.1 v9.7.1 (Protection) ---\\ Surveillance de Logiciels (1) - 1s ~ Adobe Reader 9.5.2 - Français (Surveillance) ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2056.808 MB (30% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 27 GB (24%) free of 109 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: METIDJI-PC ~ User Name: METIDJI ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 27 GB free of 109 GB (System) ~ Drive D: has 65 GB free of 117 GB ~ Drive F: has 1 GB free of 10 GB ~ Drive J: has 1 GB free of 7 GB ---\\ Etat du Centre de Sécurité Windows (19) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: Modified [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: Modified [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 3s [MD5.2626FC9755BE22F805D3CFA0CE3EE727] - 20/09/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [324224] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 20/09/2016 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [324224] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 20/09/2016 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [324224] =>.Microsoft Corporation [MD5.78B9ADA2BC8946AF7B17678E0D07A773] - 20/09/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [324224] =>.Microsoft Corporation [MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - 20/09/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [324224] =>.Microsoft Corporation [MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - 20/09/2016 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [324224] =>.Microsoft Corporation [MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 20/09/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [324224] =>.Microsoft Corporation [MD5.D8714A5FB3141F8226D16861F20C5AC4] - 20/09/2016 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [324224] =>.Microsoft Corporation [MD5.DDC040FDB01EF1712A6B13E52AFB104C] - 20/09/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [324224] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 20/09/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [324224] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 20/09/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [324224] =>.Microsoft Corporation [MD5.BA6E70AA0E6091BC39DE29477D866A77] - 20/09/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [324224] =>.Microsoft Corporation [MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - 20/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [324224] =>.Microsoft Corporation [MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - 20/09/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [324224] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 20/09/2016 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [324224] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 20/09/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [324224] =>.Microsoft Corporation [MD5.CA7570E42522E24324A12161DB14EC02] - 20/09/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [324224] =>.Microsoft Corporation [MD5.DD52A733BF4CA5AF84562A5E2F963B91] - 20/09/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [324224] =>.Microsoft Corporation [MD5.A8F59428E9F361C7AC42A94AC1560BC9] - 20/09/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [324224] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 20/09/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [324224] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 20/09/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [324224] =>.Microsoft Corporation [MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - 20/09/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [324224] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 20/09/2016 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [324224] =>.Microsoft Corporation [MD5.CB39E896A2A83702D1737BFD402B3542] - 20/09/2016 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [324224] =>.Microsoft Corporation [MD5.59F06B4968E58BC83DFC56CA4517960E] - 20/09/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [324224] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (10) - 1s O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe =>.IObit Information Technology® O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: FairyService (FairyService) . (...) - C:\Program Files\Toolbar Fairy\FairyService.exe =>PUP.Optional.Youndoo O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® O23 - Service: NLCS Agent (NLCSAgent) . (...) - C:\Program Files\Classroom Spy Pro\bin\csagtprosvc.exe {389E5A14A04DF738F2D8F108F966BAC6} O23 - Service: 360 Total Security (QHActiveDefense) . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe =>.QIHU 360 SOFTWARE CO. LIMITED® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: UC Browser Service (UCBrowserSvc) . (...) - C:\Program Files\UCBrowser\Application\UCService.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O23 - Service: Stardock WindowBlinds (WindowBlinds) . (.Stardock Corporation - WindowBlinds Service. Part of Stardock Win.) - C:\Program Files\Stardock\WindowBlinds\WBSrv.exe =>.Stardock Corporation® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (13) - 39s SR - Auto [20/09/2016] [ 324224] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe =>.IObit Information Technology® SR - Auto [20/09/2016] [ 324224] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [20/09/2016] [ 324224] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [20/09/2016] [ 324224] FairyService (FairyService) . (...) - C:\Program Files\Toolbar Fairy\FairyService.exe =>PUP.Optional.Youndoo SS - Demand [20/09/2016] [ 324224] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Acresso Software Inc.® SS - Demand [20/09/2016] [ 324224] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Demand [20/09/2016] [ 324224] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe =>.LENOVO® SS - Auto [20/09/2016] [ 324224] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® SR - Auto [20/09/2016] [ 324224] NLCS Agent (NLCSAgent) . (...) - C:\Program Files\Classroom Spy Pro\bin\csagtprosvc.exe {389E5A14A04DF738F2D8F108F966BAC6} SR - Auto [20/09/2016] [ 324224] 360 Total Security (QHActiveDefense) . (.QIHU 360 SOFTWARE CO. LIMITED.) - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe =>.QIHU 360 SOFTWARE CO. LIMITED® SS - Auto [20/09/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [20/09/2016] [ 324224] UC Browser Service (UCBrowserSvc) . (...) - C:\Program Files\UCBrowser\Application\UCService.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® SR - Auto [20/09/2016] [ 324224] Stardock WindowBlinds (WindowBlinds) . (.Stardock Corporation.) - C:\Program Files\Stardock\WindowBlinds\WBSrv.exe =>.Stardock Corporation® ---\\ Tâches planifiées en automatique (14) - 4s O39 - APT: Unknown - (...) -- C:\Windows\Tasks\UCBrowserUpdater.job [324224] =>PUP.Optional.CertifiedToolbar O39 - APT: Unknown - (...) -- C:\Windows\Tasks\UCBrowserUpdaterCore.job [324224] =>PUP.Optional.CertifiedToolbar O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\ASC8_PerformanceMonitor [324224] O39 - APT: Unknown - (.IObit.) -- C:\Windows\System32\Tasks\ASC8_SkipUac_METIDJI [324224] =>.IObit O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Camera Image [324224] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Fairy Task [324224] O39 - APT: Unknown - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [324224] =>.Google Inc. O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\smadav [324224] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UCBrowserUpdater [324224] =>PUP.Optional.CertifiedToolbar O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UCBrowserUpdaterCore [324224] =>PUP.Optional.CertifiedToolbar O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Yahoo! Search Updater [324224] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{7325580F-B20B-4F24-BA27-30C3F8063033} [324224] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{99DF63CC-60E3-40F9-91C9-0336C5ED727F} [324224] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{D4BF7980-D152-471E-9000-674F0B86118F} [324224] ---\\ Applications lancées au démarrage du système (19) - 9s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe =>.Alps Electric Co., LTD.® O4 - HKLM\..\Run: [QHSafeTray] . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHSafeTray.exe =>.QIHU 360 SOFTWARE CO. LIMITED® O4 - HKCU\..\Run: [{3B6BA5AC-FCE1-4CAC-A591-0315761D6DF8}] . (.Microsoft Corporation - Windows PowerShell.) -- C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe =>.IObit Information Technology® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\.DEFAULT\..\Run: [Welcome Center] . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [Welcome Center] . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3166968088-3685872357-362861919-1000\..\Run: [{3B6BA5AC-FCE1-4CAC-A591-0315761D6DF8}] . (.Microsoft Corporation - Windows PowerShell.) -- C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3166968088-3685872357-362861919-1000\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe =>.IObit Information Technology® O4 - HKUS\S-1-5-21-3166968088-3685872357-362861919-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. ---\\ Processus lancés (30) - 3s [MD5.33D7E76F7DE0A73504742765105F178F] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [821024] [PID.844] =>.IObit Information Technology® [MD5.DC539760645FBE7EB9CE23F30B8CB0AC] - (.Stardock Corporation - WindowBlinds Service. Part of Stardock Win.) -- C:\Program Files\Stardock\WindowBlinds\WBSrv.exe [84592] [PID.1336] =>.Stardock Corporation® [MD5.7001D55695428B95065F1ADEEEF3E54A] - (.Stardock Software, Inc - Stardock WindowBlinds 8.) -- C:\Program Files\Stardock\WindowBlinds\WBCore.exe [45680] [PID.1348] =>.Stardock Corporation® [MD5.EEBDDBB9ADC46BE1BFE295EB0A501FC6] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [928168] [PID.1408] =>.QIHU 360 SOFTWARE CO. LIMITED® [MD5.221564CC7BE37611FE15EACF443E1BF6] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.304] =>.Apple Inc.® [MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.1372] =>.Apple Inc.® [MD5.E40036D9AF0299AD9F6D0842BFC058B1] - (...) -- C:\Program Files\Toolbar Fairy\FairyService.exe [198144] [PID.1500] =>PUP.Optional.Youndoo [MD5.A3997C87D3AEDF8B6EF5E3F6B9681EE1] - (...) -- C:\Program Files\Classroom Spy Pro\bin\csagtprosvc.exe [1355728] [PID.520] {389E5A14A04DF738F2D8F108F966BAC6} [MD5.6C0B4983E44435636E5871A952A3A9C3] - (...) -- C:\Program Files\UCBrowser\Application\UCService.exe [629648] [PID.2232] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.03943291FFF56DFDCADAFDCA15608460] - (...) -- C:\Program Files\Toolbar Fairy\FairyScanner.exe [320000] [PID.2468] [MD5.79391331D6F021AF2F1105785C15F648] - (.IObit - Performance Monitor.) -- C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe [3051296] [PID.2476] =>.IObit Information Technology® [MD5.E78FD29BBC505CA93151AED2C7ECFF4E] - (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- C:\Program Files\SMADAV\SMΔRTP.exe [1613824] [PID.2484] =>.SmadSoft [MD5.E98D3E8DB50BDD746EA32328583A3F6F] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHWatchdog.exe [124536] [PID.2716] =>.QIHU 360 SOFTWARE CO. LIMITED® [MD5.393D4B7724B5435F370C95C409CA5893] - (...) -- C:\Program Files\Classroom Spy Pro\bin\csagtpro.exe [1597904] [PID.3580] {389E5A14A04DF738F2D8F108F966BAC6} [MD5.E2F72592A92CBF333AC1F76E9FF3271A] - (...) -- C:\Program Files\UCBrowser\Application\5.7.16817.1002\UCAgent.exe [2104208] [PID.2060] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.1524] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.3124] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.2244] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.2836] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.516C1D4897BB2AE1B4B45374E2498EE3] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3941584] [PID.1128] =>.Tonec Inc. [MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275608] [PID.4152] =>.Tonec Inc.® [MD5.B63E5C7807334A3A8F731062F15462CC] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008] [PID.2904] =>.Adobe Systems, Incorporated® [MD5.113F96E19E91672862E8DA99A1944C1E] - (.Autodesk, Inc. - Autodesk component.) -- C:\Users\METIDJI\AppData\Local\Temp\_AI3A23.tmp\setup.exe [451944] [PID.5040] =>.Autodesk, Inc.® [MD5.BDB072B0E8C2B80B1AFD0D7319584A70] - (.M & M Syndicate Limited - FairyHandle.) -- C:\Program Files\Toolbar Fairy\FairyHandle.exe [3826176] [PID.4424] [MD5.748E6D87DE491FC0EE6CB0FF46FF8C5B] - (.Internet Download Manager, Tonec Inc. - Broker for reading of IDM settings.) -- C:\Program Files\Internet Download Manager\idmBroker.exe [74904] [PID.2700] =>.Tonec Inc.® [MD5.C0199E9E29173CA75F6878868DED7D3B] - (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMGrHlp.exe [519320] [PID.5316] =>.Tonec Inc.® [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.5648] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.3908] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.B1119682F28A84E23803467863464BA9] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\METIDJI\Desktop\ZHPDiag3.exe [2594304] [PID.4120] =>.Nicolas Coolman [MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.5548] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® ---\\ Google Chrome, Démarrage,Recherche,Extensions (14) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gklhnpfkcfpkjcihhjbgmhgkcajamlmd] Download Ninja G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (27) - 7s M0 - MFSP: prefs.js [METIDJI - lwayqg8e.default] http://www.google.dz/ =>.Google Inc. P2 - EXT: (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll =>.Mozilla Corporation® P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated® P2 - EXT: (.Adobe Inc. - Acrobate Reader.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA =>.Adobe Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll =>.Apple Inc. P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT FILE: (.Adanak 1.0.1 - .) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{3c433beb-079f-4f3d-a7d8-3be3076f2fbe}.xpi =>PUP.Optional.Adanak P2 - EXT FILE: (.Bing - Bing. Search by Microsoft..) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\bingp.xml =>.Bing P2 - EXT FILE: (.Yahoo! Search - .) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\dsrlte1.xml =>PUP.Optional.PaybyAds P2 - EXT FILE: (.Only Search - My Online Search.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\MyOnlineSearch.xml P2 - EXT FILE: (.Search The Web (Only-Search) - .) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\onlysearchkms.xml =>PUP.Optional.OnlySearch P2 - EXT: (...) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam P2 - EXT: (.iWebar - Ge-Forces.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\45633fba7e7d40fea9c29@9dc18447eea04021a325caf3.com =>PUP.Optional.CrossRider P2 - EXT: (.Cinema Plus - CinPlus-2.5c.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\BGKGT66124770@ZYFBNPM50498512.com =>PUP.Optional.CrossRider P2 - EXT: (.lightningnewtab.com - Fast Start.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\faststartff@gmail.com =>PUP.Optional.LightningNewTab P2 - EXT: (.OB - SavePass 1.2.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\VJKPXI46039420@JMZUIOB85844870.com P2 - EXT: (.Object Browser - Sense1.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\warnerroberts@hotmail.com P2 - EXT: (.Goobzo - Shopper-Pro.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} =>.Superfluous.Goobzo P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc. P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://searchsimple-a.akamaihd.net/ =>.Superfluous.AkamaiHD R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://searchsimple-a.akamaihd.net/ =>.Superfluous.AkamaiHD R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (2) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (9) - 1s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} . (...) -- C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (.not file.) O2 - BHO: MiniGetHelper - {10E1725C-7237-41A9-954A-04DCCB1FD16C} . (.MiniSoft - MiniGetHelper.) -- C:\Program Files\MiniGet\MiniGetHelper1.11.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_102\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} . (.IObit - Advanced SystemCare 8 ASCPlugin_Protection.) -- C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll =>.IObit Information Technology® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_102\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: (no name) - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (.Orphan.) (.not file.) ---\\ Raccourcis Global Startup (104) - 13s O4 - GS\Desktop [Administrateur]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A95000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\Desktop [Administrateur]: Foxit Reader.lnk . (...) C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{6EF953B4-DB16-4E59-87CF-B61783DE6988}\_EB0289AFF01ECC5FB19ABF.exe O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrateur]: LMTOOLS Utility.lnk . (.Macrovision Corporation - LMTOOLS Utility.) C:\Program Files\Autodesk Network License Manager\lmtools.exe =>.Macrovision Corporation O4 - GS\Desktop [Administrateur]: Microsoft PowerPoint 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [Administrateur]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch O4 - GS\Desktop [Administrateur]: WinRAR.lnk . (...) C:\Program Files\WinRAR\WinRAR.exe O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\METIDJI\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD Starter.exe =>.Graphisoft SE O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\Quicklaunch [Administrateur]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [Administrateur]: SPlayer.lnk . (...) C:\Program Files\SPlayer\splayer.exe {6C587715EE87072E7EB8816807E4BD39} O4 - GS\Quicklaunch [Administrateur]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: avast! Antivirus Installer.lnk . (.AVAST Software - avast! Antivirus Installer.) C:\Program Files\AVAST Software\Avast\Setup\instup.exe =>.AVAST Software a.s.® O4 - GS\TaskBar [Administrateur]: Internet Download Manager module (2).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrateur]: Internet Download Manager module (3).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrateur]: Internet Download Manager module (4).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\TaskBar [Administrateur]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) C:\Windows\system32\osk.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch O4 - GS\TaskBar [Administrateur]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\Desktop [METIDJI]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A95000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\Desktop [METIDJI]: Foxit Reader.lnk . (...) C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{6EF953B4-DB16-4E59-87CF-B61783DE6988}\_EB0289AFF01ECC5FB19ABF.exe O4 - GS\Desktop [METIDJI]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [METIDJI]: LMTOOLS Utility.lnk . (.Macrovision Corporation - LMTOOLS Utility.) C:\Program Files\Autodesk Network License Manager\lmtools.exe =>.Macrovision Corporation O4 - GS\Desktop [METIDJI]: Microsoft PowerPoint 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation® O4 - GS\Desktop [METIDJI]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [METIDJI]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [METIDJI]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch O4 - GS\Desktop [METIDJI]: WinRAR.lnk . (...) C:\Program Files\WinRAR\WinRAR.exe O4 - GS\Desktop [METIDJI]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\METIDJI\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [METIDJI]: ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD Starter.exe =>.Graphisoft SE O4 - GS\Quicklaunch [METIDJI]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\Quicklaunch [METIDJI]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [METIDJI]: SPlayer.lnk . (...) C:\Program Files\SPlayer\splayer.exe {6C587715EE87072E7EB8816807E4BD39} O4 - GS\Quicklaunch [METIDJI]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\sendTo [METIDJI]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [METIDJI]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [METIDJI]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [METIDJI]: avast! Antivirus Installer.lnk . (.AVAST Software - avast! Antivirus Installer.) C:\Program Files\AVAST Software\Avast\Setup\instup.exe =>.AVAST Software a.s.® O4 - GS\TaskBar [METIDJI]: Internet Download Manager module (2).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.® O4 - GS\TaskBar [METIDJI]: Internet Download Manager module (3).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.® O4 - GS\TaskBar [METIDJI]: Internet Download Manager module (4).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.® O4 - GS\TaskBar [METIDJI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\TaskBar [METIDJI]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) C:\Windows\system32\osk.exe =>.Microsoft Corporation O4 - GS\TaskBar [METIDJI]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch O4 - GS\TaskBar [METIDJI]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\TaskBar [METIDJI]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [METIDJI]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [METIDJI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\CommonDesktop [Public]: 360 Total Security.lnk . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) C:\Program Files\360\Total Security\QHSafeMain.exe =>.QIHU 360 SOFTWARE CO. LIMITED® O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.5.) C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD Starter.exe =>.Graphisoft SE O4 - GS\CommonDesktop [Public]: BIMx pour ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\Extensions\BIMx\BIMx.exe =>.Graphisoft SE O4 - GS\CommonDesktop [Public]: Java Web Start.lnk . (...) C:\Program Files\Java\j2re1.4.2_04\javaws\javaws.exe O4 - GS\CommonDesktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) C:\Program Files\QuickTime\QuickTimePlayer.exe =>.Apple Inc.® O4 - GS\CommonDesktop [Public]: SHAREit.lnk . (.Lenovo - SHAREit.) C:\Program Files\Lenovo\SHAREit\Shareit.exe =>.LENOVO® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe =>.Skype Technologies O4 - GS\CommonDesktop [Public]: SMADΔV.lnk . (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) C:\Program Files\SMADAV\SMΔRTP.exe =>.SmadSoft O4 - GS\CommonDesktop [Public]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{54BD7A77-9CDB-4E35-AD4B-C1030FDA7C7F}: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress ---\\ Protocole additionnel (24) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (72) - 25s O42 - Logiciel: 360 Total Security - (.360 Security Center.) [HKLM] -- 360TotalSecurity =>.QIHU 360 SOFTWARE CO. LIMITED® O42 - Logiciel: Adanak - (.Adanak.) [HKLM] -- Adanak =>PUP.Optional.Adanak O42 - Logiciel: Adobe Reader 9.5.2 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A95000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Advanced SystemCare 8 - (.IObit.) [HKLM] -- Advanced SystemCare 8_is1 =>.IObit Information Technology® O42 - Logiciel: AGEIA PhysX v7.11.13 - (.AGEIA Technologies, Inc..) [HKLM] -- {95FC26FB-19FD-4A96-BBB1-B1062E8648F5} =>.AGEIA Technologies, Inc. O42 - Logiciel: Allgemeine Runtime Files (x86) - (.Sereby Corporation.) [HKLM] -- {1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1 =>.Sereby Corporation O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {D9DAD0FF-495A-472B-9F10-BAE430A26682} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {18D47FA1-0440-48D3-A7E0-DA09537FF471} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc. O42 - Logiciel: ArchiCAD 16 FRA - (.GRAPHISOFT.) [HKLM] -- 001FFF1FFF16FF00FF0501F01F02F000-R1 =>.Graphisoft O42 - Logiciel: Autodesk AutoCAD Performance Feedback Tool Version 1.2.2 - (.Autodesk.) [HKLM] -- {85735431-6CD3-4B16-BEC8-95332034E53B} =>.Autodesk O42 - Logiciel: Autodesk CAD Manager Tools - (.Autodesk.) [HKLM] -- {5783F2D7-0111-0409-0010-0060B0CE6BBA} =>.Autodesk O42 - Logiciel: Autodesk Material Library 2011 - (.Autodesk.) [HKLM] -- {9DEABCB6-B759-4D52-92F8-51B34A2B4D40} =>.Autodesk O42 - Logiciel: Autodesk Material Library 2011 Base Image library - (.Autodesk.) [HKLM] -- {CD1E078C-A6B9-47DA-B035-6365C85C7832} =>.Autodesk O42 - Logiciel: Autodesk Material Library 2015 - (.Autodesk.) [HKLM] -- {427F733F-4D6C-45BC-9324-EB743104C321} =>.Autodesk O42 - Logiciel: Autodesk Network License Manager - (.Autodesk.) [HKLM] -- {EAB8A41D-FABA-4569-A0A1-60A8B358D6F1} =>.Autodesk O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} =>.Apple Inc. O42 - Logiciel: Camera Image - (.Form Cooking corp.) [HKCU] -- {9563BC59-9556-4805-8CD4-886781779D8D} O42 - Logiciel: Dell Touchpad - (.ALPS ELECTRIC CO., LTD..) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.® O42 - Logiciel: DirectX 9.0c Extra Files (x86, x64) - (.Sereby Corporation.) [HKLM] -- {8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1 =>.Sereby Corporation O42 - Logiciel: FARO LS 1.1.406.58 - (.FARO Scanner Production.) [HKLM] -- {951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C} =>.FARO Scanner Production O42 - Logiciel: FL Studio 12 - (.Image-Line.) [HKLM] -- FL Studio 12 =>.Image Line® O42 - Logiciel: FL Studio ASIO - (.Image-Line.) [HKLM] -- FL Studio ASIO =>.Image Line® O42 - Logiciel: Foxit Reader - (.Foxit Software.) [HKLM] -- {6EF953B4-DB16-4E59-87CF-B61783DE6988} =>.Foxit Software O42 - Logiciel: Ge-Force - (.iWebar.) [HKLM] -- Ge-Force =>PUP.Optional.CrossRider O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {1E04F83B-2AB9-4301-9EF7-E86307F79C72} =>.Google O42 - Logiciel: HashCheck Shell Extension (x86-32) - (.Kai Liu.) [HKLM] -- HashCheck Shell Extension =>.Kai Liu O42 - Logiciel: HD-V2.1 - (.InfoHD-V2.1.) [HKLM] -- HD-V2.1 O42 - Logiciel: HSPA USB Modem - (..) [HKLM] -- {06ADE2A0-E46A-4A84-A211-64CF50520185} O42 - Logiciel: HSPA USB Modem - (..) [HKLM] -- InstallShield_{06ADE2A0-E46A-4A84-A211-64CF50520185} O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM] -- IL Download Manager =>.Image Line® O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM] -- istartsurf uninstall =>PUP.Optional.IsStart O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {0718A90E-93AA-49AF-A4FE-0165ACD91DF0} =>.Apple Inc. O42 - Logiciel: Java 2 Runtime Environment, SE v1.4.2_04 - (.Sun Microsystems, Inc..) [HKLM] -- {7148F0A8-6813-11D6-A77B-00B0D0142040} =>.Sun Microsystems, Inc. O42 - Logiciel: Java 8 Update 102 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180102F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Java(TM) 6 Update 32 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216032FF} =>.Oracle O42 - Logiciel: K-Lite Mega Codec Pack 11.3.6 - (.KLite Inc.) [HKLM] -- KLiteCodecPack_is1 =>.KLite Inc O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: MiniGet 1.0.8.2504 - (.MiniGet.) [HKLM] -- MiniGet O42 - Logiciel: Module linguistique d'AutoCAD Architecture 2011 - Français - (.Autodesk.) [HKLM] -- {5783F2D7-9004-040C-1002-0060B0CE6BBA} =>.Autodesk O42 - Logiciel: OffersWizard Network System Driver - (..) [HKLM] -- inethnfd O42 - Logiciel: Only-search - (.onlysearch.) [HKCU] -- onlysearch =>PUP.Optional.OnlySearch O42 - Logiciel: Petit Larousse 2009 - (.Larousse.) [HKLM] -- {422FADA9-FED2-41D7-B5FA-472BB98B7784} =>.Larousse O42 - Logiciel: QQ??3.7 - (.????(??)????.) [HKCU] -- QQPlayer O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C} =>Riskware.QuickTime O42 - Logiciel: SavePass 1.1 - (.OB.) [HKLM] -- SavePass 1.1 O42 - Logiciel: Sense - (.Object Browser.) [HKLM] -- Sense O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM] -- SHAREit_is1 =>.LENOVO® O42 - Logiciel: Shopper-Pro - (..) [HKLM] -- ShopperPro =>PUP.Optional.ShopperPro O42 - Logiciel: Skype™ 7.30 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: SMADAV version 9.7.1 - (.SmadSoft.) [HKLM] -- {8B9FA5FF-3E61-4658-B0DA-E6DDB46D6BAD}_is1 =>.SmadSoft O42 - Logiciel: snipsmart - (.snipsmart.) [HKLM] -- snipsmart =>PUP.Optional.SnipSmart O42 - Logiciel: Software Version Updater - (..) [HKLM] -- {99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} =>PUP.Optional.SoftwareUpdater O42 - Logiciel: SPlayer - (..) [HKLM] -- SPlayer O42 - Logiciel: Stardock WindowBlinds - (.Stardock Software, Inc..) [HKLM] -- Stardock WindowBlinds =>.Stardock Corporation® O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM] -- IObit Surfing Protection_is1 =>.IObit Information Technology® O42 - Logiciel: Toolbar Fairy - (.M & M Syndicate Limited.) [HKLM] -- {4B2B17A4-BC01-4FF6-8616-F775C0F2A7AB} O42 - Logiciel: UC Browser - (.UCWeb Inc..) [HKLM] -- UCBrowser =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O42 - Logiciel: Update Service YourFileDownloader - (.http://yourfiledownloader.org.) [HKCU] -- Update Service YourFileDownloader =>PUP.Optional.YourFileDownloader O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: webssearches uninstall - (.webssearches.) [HKLM] -- webssearches uninstall =>PUP.Optional.WebsSearches O42 - Logiciel: WibuKey Setup (WibuKey Remove) - (.WIBU-SYSTEMS AG.) [HKLM] -- {00060000-0000-1004-8002-0000C06B5161} =>.WIBU-SYSTEMS AG O42 - Logiciel: WindowsMangerProtect20.0.0.722 - (.WindowsProtect LIMITED.) [HKLM] -- WindowsMangerProtect =>PUP.Optional.WpManager O42 - Logiciel: WinRAR archiver - (.RarLab.) [HKLM] -- WinRAR archiver =>.RarLab O42 - Logiciel: Yahoo! Search - (.Pay-By-Ads.) [HKCU] -- Yahoo! Search O42 - Logiciel: YourFileDownloader - (.http://yourfiledownloader.org.) [HKCU] -- YourFileDownloader =>PUP.Optional.YourFileDownloader O42 - Logiciel: YTDownloader - (.YTDownloader.) [HKLM] -- YTDownloader =>PUP.Optional.YTDownloader ---\\ HKCU & HKLM Software Keys (171) - 25s HKLM\SOFTWARE\360Safe =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\360softmgr =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\360TotalSecurity =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\Adanak =>PUP.Optional.Adanak HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Alps =>.ALPS HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Ashampoo =>.Ashampoo HKLM\SOFTWARE\ASIO =>.Steinberg Media Technologies HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Autodesk =>.Autodesk HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Baidu =>.Baidu HKLM\SOFTWARE\Classroom Spy Professional HKLM\SOFTWARE\Client HKLM\SOFTWARE\CloudOPTInfo HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Earth Resource Mapping =>.Earth Resource Mapping Inc HKLM\SOFTWARE\ErrorLists-crcodedownloader =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Gabest =>.Gabest HKLM\SOFTWARE\Ge-Force =>PUP.Optional.CrossRider HKLM\SOFTWARE\GEAR Software =>.GEAR Software HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\GoForFiles HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\GRETECH =>.Gretech HKLM\SOFTWARE\HaaliMkx =>.Haali Media HKLM\SOFTWARE\Havas Interactive =>.Havas Interactive HKLM\SOFTWARE\HD-V2.1 HKLM\SOFTWARE\HitsBlender HKLM\SOFTWARE\HSPA =>.HSPA HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\IM Providers =>.IM Providers HKLM\SOFTWARE\Image-Line =>.Image-Line HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\InterVideo =>.InterVideo HKLM\SOFTWARE\IObit =>.IObit HKLM\SOFTWARE\istartsurfSoftware =>PUP.Optional.IsStart HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Kaydara =>.Kaydara HKLM\SOFTWARE\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\Larousse =>.Larousse HKLM\SOFTWARE\LAV =>.LAV Inc HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\LiveUpdate360 =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Macrovision =>.Macrovision HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Propellerhead Software =>.Propellerhead Software HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\SavePass 1.1 HKLM\SOFTWARE\Sense HKLM\SOFTWARE\ShopperPro =>PUP.Optional.ShopperPro HKLM\SOFTWARE\Skype =>.Skype HKLM\SOFTWARE\snipsmart =>PUP.Optional.SnipSmart HKLM\SOFTWARE\SoftVoice =>.SoftVoice HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\SPlayer HKLM\SOFTWARE\Stardock =>.Stardock HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent HKLM\SOFTWARE\Thunder Network HKLM\SOFTWARE\UCBrowser =>.UCWeb Inc. HKLM\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\updat HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\vLite HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKLM\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\YourFileDownloader =>PUP.Optional.YourFileDownloader HKLM\SOFTWARE\YTDownloader =>PUP.Optional.YTDownloader HKCU\SOFTWARE\360 =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\360Safe =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\360TotalSecurity =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\851dfa9567ceee2bf1964b62c6ebc2d0 =>PUP.Optional.CrossRider HKCU\SOFTWARE\Adanak =>PUP.Optional.Adanak HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Alps =>.ALPS HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\Atstwun HKCU\SOFTWARE\Autodesk =>.Autodesk HKCU\SOFTWARE\Avast Software =>.AVAST Software HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution HKCU\SOFTWARE\Baidu =>.Baidu HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CoreAAC =>.Core Codec HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\drpsu =>.Driver PackSolution HKCU\SOFTWARE\DSP-worx =>.Microsoft Corporation HKCU\SOFTWARE\Earth Resource Mapping =>.Earth Resource Mapping Inc HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GetData HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GRAPHISOFT =>.Graphisoft HKCU\SOFTWARE\GRETECH =>.Gretech HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Image-Line =>.Image-Line HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\kde.org =>.kde.org HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\LiveUpdate360 =>.Qihu 360 Software Co., LTD HKCU\SOFTWARE\LULUPFLE HKCU\SOFTWARE\M & M Syndicate Limite HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\madshi =>.madshi.net HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OXXOgames =>.Intenium GmbH HKCU\SOFTWARE\Project07 HKCU\SOFTWARE\Psiphon3 HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\RocketDock =>.Punk Software HKCU\SOFTWARE\ShieldBt HKCU\SOFTWARE\ShopperPro =>PUP.Optional.ShopperPro HKCU\SOFTWARE\Sierra Imaging HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\SMADΔV HKCU\SOFTWARE\snipsmart =>PUP.Optional.SnipSmart HKCU\SOFTWARE\SoftVoice =>.SoftVoice HKCU\SOFTWARE\SPlayer HKCU\SOFTWARE\Stardock =>.Stardock HKCU\SOFTWARE\SupHpUISoft =>PUP.Optional.CrossRider HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\UCBrowser =>.UCWeb Inc. HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKCU\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\YTDownloader =>PUP.Optional.YTDownloader HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman HKCU\SOFTWARE\ZWMG HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Ge-Force =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\HD-V2.1 HKCU\SOFTWARE\AppDataLow\Software\SavePass 1.1 HKCU\SOFTWARE\AppDataLow\Software\Sense ---\\ Contenu des dossiers Programmes (287) - 50s O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\360 =>.Qihu 360 Software O43 - CFD: 04/12/2015 - [] D -- C:\Program Files\Adanak =>PUP.Optional.Adanak O43 - CFD: 03/09/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 01/03/2013 - [0] D -- C:\Program Files\Adobe Flash Player 10 O43 - CFD: 05/07/2014 - [] D -- C:\Program Files\AGEIA Technologies =>.AGEIA Technologies O43 - CFD: 01/03/2013 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc. O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Autodesk =>.Autodesk O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Autodesk Network License Manager O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.® O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\baidu =>.Baidu O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 19/09/2015 - [0] D -- C:\Program Files\CDROM O43 - CFD: 03/09/2016 - [] D -- C:\Program Files\Classroom Spy Pro {389E5A14A04DF738F2D8F108F966BAC6} O43 - CFD: 17/10/2016 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\DellTPad =>.Alps Electric Co., LTD.® O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\directx =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 31/08/2012 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 02/11/2012 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\Ge-Force =>PUP.Optional.CrossRider O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\GRAPHISOFT =>.Graphisoft O43 - CFD: 31/08/2016 - [0] D -- C:\Program Files\GRETECH =>.Gretech O43 - CFD: 27/04/2014 - [] D -- C:\Program Files\GUMA507.tmp =>.Google Inc® O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\HD-V2.1 O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\HitsBlender {3A064626CE173599127D78C730697B78} O43 - CFD: 04/12/2014 - [] D -- C:\Program Files\HitsBlenderUpdater O43 - CFD: 14/03/2014 - [] D -- C:\Program Files\HSPA USB Modem O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Image-Line =>.Image-Line O43 - CFD: 14/03/2014 - [] D -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 05/05/2016 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\IObit =>.IObit O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\iTunes =>.Apple Inc. O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 30/03/2016 - [] D -- C:\Program Files\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Larousse =>.Larousse O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Last.fm =>.Last.fm O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 12/09/2014 - [] D -- C:\Program Files\MiniGet =>.MiniSoft O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 09/01/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 09/11/2016 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation O43 - CFD: 15/07/2016 - [] D -- C:\Program Files\Ninja Download Manager O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\Pay-By-Ads =>PUP.Optional.PaybyAds O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\QuickTime =>Riskware.QuickTime O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 01/03/2013 - [] D -- C:\Program Files\RocketDock =>.Punk Software O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\SavePass 1.1 O43 - CFD: 23/11/2016 - [] RD -- C:\Program Files\Skype =>.Skype O43 - CFD: 29/09/2016 - [] D -- C:\Program Files\SMADAV =>.SmadAV O43 - CFD: 26/05/2016 - [] D -- C:\Program Files\SPlayer {6C587715EE87072E7EB8816807E4BD39} O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\Stardock =>.Stardock Corporation® O43 - CFD: 08/04/2014 - [] D -- C:\Program Files\Tencent =>.Superfluous.Tencent O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Toolbar Fairy O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\UCBrowser =>.UCWeb Inc O43 - CFD: 14/07/2009 - [0] D -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 09/12/2012 - [] D -- C:\Program Files\VideoLAN =>.VideoLAN O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\VstPlugins =>.VTS O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\WIBU-SYSTEMS =>.Wibu-Systems O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\WIBUKEY =>.Wibu Systems O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 31/08/2012 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\YourFileDownloader =>PUP.Optional.YourFileDownloader O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\YourFileDownloaderUpdater =>PUP.Optional.YourFileDownloader O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\YTDownloader =>PUP.Optional.YTDownloader O43 - CFD: 05/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center =>.360 Security Center O43 - CFD: 05/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 31/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 O43 - CFD: 05/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGEIA =>.AGEIA Technilogies O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk =>.Autodesk O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classroom Spy Pro O43 - CFD: 31/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth O43 - CFD: 24/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRAPHISOFT =>.Graphisoft O43 - CFD: 14/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB Modem O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line =>.Image-Line O43 - CFD: 30/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc. O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Web Start O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Larousse =>.Larousse O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 14/07/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 09/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 14/12/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox =>.Mozilla O43 - CFD: 24/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock =>.Punk Software O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation O43 - CFD: 15/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 19/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMADAV Antivirus =>.SmadAV O43 - CFD: 19/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPlayer O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock =>.Stardock O43 - CFD: 13/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 28/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titan-Se7en™ =>HackTool.WinActivator O43 - CFD: 23/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toolbar Fairy O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UC Browser =>.UCWeb Inc. O43 - CFD: 03/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLAN O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey =>.Wibu Systems O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 O43 - CFD: 08/11/2016 - [] SHD -- C:\ProgramData\360Quarant =>.Qihu 360 Software Co., LTD O43 - CFD: 15/05/2016 - [] D -- C:\ProgramData\360safe =>.Qihu 360 Software O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\360TotalSecurity =>.Qihu 360 Software Co., LTD O43 - CFD: 09/12/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Autodesk =>.Autodesk O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\Baidu =>.Baidu O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\DatacardService =>.Entriq, Inc. O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 23/09/2014 - [] D -- C:\ProgramData\DSearchLink =>.Superfluous.DeltaSearch O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 07/09/2012 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software O43 - CFD: 12/09/2014 - [] D -- C:\ProgramData\HitsBlender O43 - CFD: 07/04/2014 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\IePluginServices =>PUP.Optional.SProtector O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 15/01/2014 - [] D -- C:\ProgramData\Local Settings O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 09/11/2016 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\MobiConnect O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\ShopperPro =>PUP.Optional.ShopperPro O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Stardock =>.Stardock O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 18/11/2014 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 19/09/2015 - [0] D -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 13/05/2015 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 05/07/2014 - [] D -- C:\ProgramData\Trymedia =>PUP.Optional.Trymedia O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\Video Accelerator O43 - CFD: 12/09/2014 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.WpManager O43 - CFD: 28/12/2015 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic O43 - CFD: 09/12/2012 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\Common Files\Apple =>.Apple Inc. O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Common Files\Autodesk Shared =>.Autodesk O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\Common Files\AV =>.Avast O43 - CFD: 12/09/2014 - [] D -- C:\Program Files\Common Files\Config O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Common Files\IObit =>.IObit O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Common Files\Java =>.Oracle O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Common Files\LENOVO =>.Lenovo O43 - CFD: 07/09/2012 - [] D -- C:\Program Files\Common Files\Macrovision Shared =>.Macrovision O43 - CFD: 09/12/2012 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Common Files\Propellerhead Software =>.Propellerhead Software AB O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation O43 - CFD: 17/10/2016 - [] D -- C:\Program Files\Common Files\Skype =>.Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation O43 - CFD: 05/07/2014 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 27/12/2015 - [0] D -- C:\Users\METIDJI\AppData\Roaming\337Games O43 - CFD: 09/11/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\360safe =>.Qihu 360 Software O43 - CFD: 18/04/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\360TotalSecurity =>.Qihu 360 Software Co., LTD O43 - CFD: 15/02/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 28/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 08/12/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Autodesk =>.Autodesk O43 - CFD: 27/04/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 25/07/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Baidu =>.Baidu O43 - CFD: 31/08/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\DivX =>.DivX O43 - CFD: 13/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 04/05/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\DownloadNinja O43 - CFD: 27/09/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\dvdcss =>.VideoLAN O43 - CFD: 03/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Google =>.Google O43 - CFD: 30/05/2013 - [] D -- C:\Users\METIDJI\AppData\Roaming\Graphisoft =>.Graphisoft O43 - CFD: 31/08/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 15/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\IDM =>.IDM O43 - CFD: 21/08/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Image-Line =>.Image-Line O43 - CFD: 24/12/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Install.GS O43 - CFD: 28/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\IObit =>.IObit O43 - CFD: 04/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\istartsurf =>PUP.Optional.IsStart O43 - CFD: 11/09/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 14/07/2009 - [0] D -- C:\Users\METIDJI\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 10/09/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Media Player Classic =>.Microsoft Corporation O43 - CFD: 14/04/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\MiniGet =>.MiniSoft O43 - CFD: 05/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 14/09/2016 - [0] D -- C:\Users\METIDJI\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 28/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\ProductData =>.Microsoft Corporation O43 - CFD: 22/05/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Psiphon3 O43 - CFD: 23/11/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Skype =>.Skype O43 - CFD: 26/05/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\SPlayer O43 - CFD: 03/09/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Sun =>.Oracle O43 - CFD: 05/07/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Switchball O43 - CFD: 13/05/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Tencent =>.Superfluous.Tencent O43 - CFD: 26/05/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\vlc =>.VideoLAN O43 - CFD: 18/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 19/09/2015 - [] D -- C:\Users\METIDJI\AppData\Local\3397 O43 - CFD: 09/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Adobe =>.Adobe O43 - CFD: 24/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 02/07/2014 - [] D -- C:\Users\METIDJI\AppData\Local\Apple Computer =>.Apple Inc. O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\METIDJI\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 16/06/2014 - [] D -- C:\Users\METIDJI\AppData\Local\ArchiCAD_0919182931 O43 - CFD: 25/11/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Autodesk =>.Autodesk O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\cache =>.Legitimate O43 - CFD: 19/09/2015 - [] D -- C:\Users\METIDJI\AppData\Local\Camera Image O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 16/12/2016 - [0] D -- C:\Users\METIDJI\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 27/10/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Google =>.Google O43 - CFD: 24/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Graphisoft =>.Graphisoft O43 - CFD: 30/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\GS-LW-Temp O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\METIDJI\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\Users\METIDJI\AppData\Local\HitsBlender O43 - CFD: 14/01/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 20/09/2015 - [] D -- C:\Users\METIDJI\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 16/09/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 19/12/2014 - [] D -- C:\Users\METIDJI\AppData\Local\Microsoft Games =>.Microsoft Corporation O43 - CFD: 03/11/2012 - [0] D -- C:\Users\METIDJI\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 24/11/2015 - [] D -- C:\Users\METIDJI\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 23/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\onlysearch =>PUP.Optional.OnlySearch O43 - CFD: 19/07/2014 - [] D -- C:\Users\METIDJI\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 04/10/2016 - [] D -- C:\Users\METIDJI\AppData\Local\ShdUpdate O43 - CFD: 15/06/2016 - [0] D -- C:\Users\METIDJI\AppData\Local\Skype =>.Skype O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\METIDJI\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 09/01/2016 - [] D -- C:\Users\METIDJI\AppData\Local\UCBrowser =>.UCWeb Inc O43 - CFD: 01/05/2016 - [] D -- C:\Users\METIDJI\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 19/07/2014 - [0] D -- C:\Users\METIDJI\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 10/01/2016 - [] RD -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk =>.Autodesk O43 - CFD: 02/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation O43 - CFD: 21/08/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line =>.Image-Line O43 - CFD: 30/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 14/07/2009 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiniGet =>.MiniSoft O43 - CFD: 14/09/2016 - [] RD -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 08/04/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>.Superfluous.Tencent O43 - CFD: 03/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 09/01/2016 - [0] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader =>PUP.Optional.YTDownloader O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 11/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 04/04/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\UCBrowser =>.UCWeb Inc O43 - CFD: 15/05/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\360safe =>.Qihu 360 Software O43 - CFD: 02/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 30/12/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit O43 - CFD: 11/09/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 0s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (15) - 2s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\AdopeFlash [Key] . (.AutoIt Team - AutoIt v3 Script.) -- C:\Google\AutoIt3.exe =>.AutoIt Team O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\BCSSync [Key] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\download.ninja [Key] . (...) -- C:\Program Files\Ninja Download Manager\download.ninja.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\HitsBlender [Key] . (...) -- C:\Program Files\HitsBlender\hitsblender.exe O53 - SMSR:HKLM\...\startupreg\HSPALauncher [Key] . (.Copyright (C) 2010 - HSDPALauncher MFC Application.) -- C:\Program Files\HSPA USB Modem\HSPALauncher.exe O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\JavaUpdate [Key] . (...) -- C:\Google\GoogleUpdate.lnk (.not file.) O53 - SMSR:HKLM\...\startupreg\NewJavaInstall [Key] . (.AutoIt Team - AutoIt v3 Script.) -- C:\Google\AutoIt3.exe =>.AutoIt Team O53 - SMSR:HKLM\...\startupreg\Only-search [Key] . (...) -- C:\Users\METIDJI\AppData\Local\onlysearch\onlysearch\1.3.12.9\onlysearch.exe (.not file.) =>PUP.Optional.OnlySearch O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O53 - SMSR:HKLM\...\startupreg\SPDriver [Key] . (...) -- C:\Program Files\ShopperPro\JSDriver\1.37.0.871\jsdrv.exe (.not file.) =>PUP.Optional.ShopperPro O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation ---\\ Liste des pilotes du système (79) - 34s O58 - SDL:2016/06/21 05:02:53 A . (.360.cn - 360安全卫士 网络防黑模块.) -- C:\Windows\System32\drivers\360AntiHacker.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2016/11/25 13:35:55 A . (.360.cn - 360杀毒 文件监控驱动.) -- C:\Windows\System32\drivers\360AvFlt.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2016/11/25 13:35:55 A . (.360.cn - 360Box.) -- C:\Windows\System32\drivers\360Box.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2016/03/10 10:57:55 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\Windows\System32\drivers\360Camera.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2016/08/08 07:04:57 A . (.360安全中心 - 360安全卫士 - SelfProtection.) -- C:\Windows\System32\drivers\360SelfProtection.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [324224] =>.Microsoft Windows® O58 - SDL:2011/05/25 20:50:30 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [324224] =>.Alps Electric Co., LTD.® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [324224] =>.Microsoft Windows® O58 - SDL:2011/03/14 15:53:42 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [324224] =>.Broadcom Corporation® O58 - SDL:2016/09/15 02:30:46 A . (.360.cn - BAPIDRV.) -- C:\Windows\System32\drivers\BAPIDRV.SYS [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2010/10/28 10:16:24 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [324224] =>.Broadcom Corporation® O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [324224] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [324224] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [324224] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [324224] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [324224] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [324224] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [324224] =>.Broadcom Corporation O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [324224] =>.Microsoft Windows® O58 - SDL:2008/08/29 17:54:40 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [324224] =>.Mobile Connector O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [324224] =>.Microsoft Windows® O58 - SDL:2016/03/10 10:57:55 A . (.360.cn - 360Efimon Driver.) -- C:\Windows\System32\drivers\efimon.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [324224] =>.Broadcom Corporation O58 - SDL:2012/08/21 12:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [324224] =>.GEAR Software Inc.® O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [324224] =>.Hauppauge Computer Works, Inc. O58 - SDL:2016/08/08 07:04:57 A . (.360安全中心 - 360安全卫士 - HookPort.) -- C:\Windows\System32\drivers\hookport.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2007/06/18 13:12:04 A . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\System32\drivers\HpqKbFiltr.sys [324224] =>.Hewlett-Packard Development Company, L.P. O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [324224] =>.Microsoft Windows® O58 - SDL:2011/05/20 09:43:02 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [324224] =>.Intel Corporation® O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [324224] =>.Microsoft Windows® O58 - SDL:2016/01/28 11:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [324224] =>.Tonec Inc.® O58 - SDL:2011/10/13 20:01:25 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [324224] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [324224] =>.Microsoft Windows® O58 - SDL:2016/08/08 07:04:57 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\Windows\System32\drivers\qutmdrv.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2016/08/08 07:04:57 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\Windows\System32\drivers\qutmipc.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited® O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [324224] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [324224] =>.Microsoft Windows® O58 - SDL:2012/08/31 15:51:46 A . (...) -- C:\Windows\System32\drivers\sptd.sys [324224] O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [324224] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [324224] =>.Microsoft Windows® O58 - SDL:2007/05/01 20:21:47 A . (.VMware, Inc. - VMware Pointing Device Driver.) -- C:\Windows\System32\drivers\vmmouse.sys [324224] =>.VMware, Inc.® O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [324224] =>.Microsoft Windows® O58 - SDL:2011/09/22 05:00:04 A . (.WIBU-SYSTEMS AG - WibuKey Windows NT Kernel Driver.) -- C:\Windows\System32\drivers\WibuKey.sys [324224] =>.WIBU-SYSTEMS AG O58 - SDL:2009/09/08 12:48:44 A . (.WIBU-SYSTEMS AG - WIBU-KEY Plug&Play Driver for Windows.) -- C:\Windows\System32\drivers\Wibukey2.sys [324224] =>.WIBU-SYSTEMS AG O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [324224] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [324224] =>.Microsoft Corporation ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 68s O61 - LFC: 2016/12/13 13:33:38 A . (.Autodesk Inc..) -- C:\Users\METIDJI\Downloads\Programs\autocad_2016_fr_128826.exe [337744] O61 - LFC: 2016/12/17 11:12:12 RA . (..) -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{EAB8A41D-FABA-4569-A0A1-60A8B358D6F1}\_09DB3D0C1C9F64C35BEE22.exe [10134] O61 - LFC: 2016/12/17 11:12:12 RA . (..) -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{EAB8A41D-FABA-4569-A0A1-60A8B358D6F1}\_13237EEAE27660A8BE98B7.exe [10134] ---\\ Associations Shell Spawning (11) - 8s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O67 - Shell Spawning: <.scr> [HKCU\..\open\Command] (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.istartsurf.com/ =>PUP.Optional.IsStart O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. ---\\ Recherche d'infection sur les navigateurs (55) - 74s O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.asul", "1452356035053"); =>PUP.Optional.Adanak O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.aul", "1452356055957"); =>PUP.Optional.Adanak O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.irl", true); =>PUP.Optional.Adanak O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.is", "EF23DDDZ"); =>PUP.Optional.Adanak O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.ug", "464343f0-c437-e626-6bf6-18dd4a5cbedc"); =>PUP.Optional.Adanak O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.description", "Ge-Force"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_bundledUrls.expi[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_bundledUrls.valu[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_bundledWithHash.[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_notBundledArr_.e[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_notBundledArr_.v[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_regBundledWithSo[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.name", "Ge-Forces"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.publisher", "iWebar"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.cookie.previous_page.value", "%22http%3A//www.reimageplus.com/lp[...] =>.Superfluous.ReimageRepair O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealpl[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri [...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_regBundledWithSoftware.expiration[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_regBundledWithSoftware.value", "%[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.name", "CinPlus-2.5c"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.publisher", "Cinema Plus"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Fe[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealp[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledWithHash.expiration", "Fr[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D")[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_regBundledWithSoftware.expiratio[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_regBundledWithSoftware.value", "[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 [...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri [...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.publisher", "Object Browser"); =>PUP.Optional.ObjectBrowser O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.crossrider.bic", "1513adf3564d32d21b83ed269402c294"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.enabledAddons", "faststartff%40gmail.com:4.3.0,%7B746505DC-0E21-4667-97F8-72EA6BCF5EEF%7D:1.0.0.4,%7B3c433be[...] =>PUP.Optional.FastStart O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.faststartff@gmail.com.install-event-fired", true); =>PUP.Optional.FastStart O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.{746505DC-0E21-4667-97F8-72EA6BCF5EEF}.install-event-fired", true); =>PUP.Optional.ShopperPro O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("keyword.URL", "http://searchsimple-a.akamaihd.net/?q="); =>.Superfluous.AkamaiHD O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("network.http.request.max-start-delay", 0); =>.Superfluous.MaxStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} [DefaultScope] - (Only Search) - http://www.only-search.com/ =>PUP.Optional.OnlySearch O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (webssearches) - http://istart.webssearches.com/ =>PUP.Optional.IsStart O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (webssearches) - http://istart.webssearches.com/ =>PUP.Optional.IsStart ---\\ Enumère les services démarrés par Svchost (33) - 4s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [324224] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [324224] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [324224] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [324224] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (19) - 39s O87 - FAEL: "TCP Query User{B3B177CC-B6C7-4231-9858-97AE117431CA}G:\recycler\40109cb.exe" [In-None-P6-TRUE] .(...) -- G:\recycler\40109cb.exe (.not file.) O87 - FAEL: "UDP Query User{3EB6C10A-9CB6-44D8-92EB-38D148E809E2}G:\recycler\40109cb.exe" [In-None-P17-TRUE] .(...) -- G:\recycler\40109cb.exe (.not file.) O87 - FAEL: "TCP Query User{EFEF0D05-9375-46AD-AE29-FFA2C7246651}C:\users\metidji\appdata\roaming\vptatv.exe" [In-None-P6-TRUE] .(...) -- C:\users\metidji\appdata\roaming\vptatv.exe (.not file.) O87 - FAEL: "UDP Query User{04EBAF42-A303-4B5C-9905-995EF2EF99E4}C:\users\metidji\appdata\roaming\vptatv.exe" [In-None-P17-TRUE] .(...) -- C:\users\metidji\appdata\roaming\vptatv.exe (.not file.) O87 - FAEL: "TCP Query User{3A1ADC94-B32D-4303-AC3E-A0AAE03D358D}C:\program files\rocketdock\rocketdock.exe" [In-None-P6-TRUE] .(...) -- C:\program files\rocketdock\rocketdock.exe (.not file.) O87 - FAEL: "UDP Query User{A7CDC151-7075-4319-A471-FBEE3513CF74}C:\program files\rocketdock\rocketdock.exe" [In-None-P17-TRUE] .(...) -- C:\program files\rocketdock\rocketdock.exe (.not file.) O87 - FAEL: "{F4DE76C3-D553-4ECA-B01E-C1FFE0FCBA9E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) O87 - FAEL: "{47CDA783-8DE8-4D9E-A4D4-0CDD2403AE05}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.) O87 - FAEL: "{FBA75430-89B0-4FAE-A736-F3475A391C61}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark\bdtray.exe (.not file.) O87 - FAEL: "{3A8B074A-0E4E-4F55-9D73-C59F55DC3B2F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark\bdtray.exe (.not file.) O87 - FAEL: "{0AA91323-AD8E-4B72-9E46-353DB3DB1B45}" [In-None-P6-TRUE] .(...) -- C:\Program Files\YourFileDownloader\YourFileDownloader.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{643078F2-05A9-41A2-8C97-5C73AEA9A7C4}" [In-None-P17-TRUE] .(...) -- C:\Program Files\YourFileDownloader\YourFileDownloader.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{E2360E07-4C10-426B-93D1-F668D02CB42C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\YourFileDownloader\Downloader.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{9C9847F2-18B6-4B93-AC82-8B4E16A6E046}" [In-None-P17-TRUE] .(...) -- C:\Program Files\YourFileDownloader\Downloader.exe (.not file.) =>PUP.Optional.YourFileDownloader O87 - FAEL: "{A5AD0C0D-0E39-45D9-B8CC-9E7C1A152149}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{2E85A65B-88C0-4254-A17F-B95B5CE95757}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{5B8C9BC9-15A7-4C64-AA0B-B09EC41D36F1}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{2A42B728-CB94-4D64-8ED2-050570E098A0}" [In-None-P6-TRUE] .(...) -- C:\Program Files\360\Total Security\softmgr\InstantSetup.exe (.not file.) O87 - FAEL: "{CAD6848B-B54A-4A89-A8AB-DAB1C83BDAAE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\360\Total Security\softmgr\InstantSetup.exe (.not file.) ---\\ Liste des émulateurs de CD/DVD (MBR Hook) (10) - 9s HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASAPI32 =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASMANCS =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASAPI32 =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASMANCS =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASAPI32 =>PUP.Optional.IsStart HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASMANCS =>PUP.Optional.IsStart HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASAPI32 =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASMANCS =>PUP.Optional.SoftwareEngine ---\\ Scan Additionnel (88) - 4s HKLM\SYSTEM\CurrentControlSet\Services\FairyService =>PUP.Optional.Youndoo C:\Program Files\Toolbar Fairy\FairyService.exe =>PUP.Optional.Youndoo C:\Windows\Tasks\UCBrowserUpdater.job =>PUP.Optional.CertifiedToolbar C:\Windows\Tasks\UCBrowserUpdaterCore.job =>PUP.Optional.CertifiedToolbar C:\Windows\System32\Tasks\UCBrowserUpdater =>PUP.Optional.CertifiedToolbar C:\Windows\System32\Tasks\UCBrowserUpdaterCore =>PUP.Optional.CertifiedToolbar C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{3c433beb-079f-4f3d-a7d8-3be3076f2fbe}.xpi =>PUP.Optional.Adanak C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\dsrlte1.xml =>PUP.Optional.PaybyAds C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\onlysearchkms.xml =>PUP.Optional.OnlySearch C:\Users\METIDJI\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\45633fba7e7d40fea9c29@9dc18447eea04021a325caf3.com =>PUP.Optional.CrossRider C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\BGKGT66124770@ZYFBNPM50498512.com =>PUP.Optional.CrossRider C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\faststartff@gmail.com =>PUP.Optional.LightningNewTab C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} =>.Superfluous.Goobzo HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 =>PUP.Optional.GlobalUpdate HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adanak =>PUP.Optional.Adanak HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ge-Force =>PUP.Optional.CrossRider HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro =>PUP.Optional.ShopperPro HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\snipsmart =>PUP.Optional.SnipSmart HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webssearches uninstall =>PUP.Optional.WebsSearches HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect =>PUP.Optional.WpManager HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader =>PUP.Optional.YTDownloader HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7BE15435-2D3E-4B58-867F-9C75BED0208C} =>Riskware.QuickTime HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adanak =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ge-Force =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro =>PUP.Optional.ShopperPro HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\snipsmart =>PUP.Optional.SnipSmart HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webssearches uninstall =>PUP.Optional.WebsSearches HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader =>PUP.Optional.YTDownloader HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7BE15435-2D3E-4B58-867F-9C75BED0208C} =>Riskware.QuickTime HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} =>PUP.Optional.SoftwareUpdater HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\onlysearch =>PUP.Optional.OnlySearch HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Update Service YourFileDownloader =>PUP.Optional.YourFileDownloader HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YourFileDownloader =>PUP.Optional.YourFileDownloader C:\Program Files\Adanak =>PUP.Optional.Adanak C:\Program Files\Ge-Force =>PUP.Optional.CrossRider C:\Program Files\Pay-By-Ads =>PUP.Optional.PaybyAds C:\Program Files\QuickTime =>Riskware.QuickTime C:\Program Files\YourFileDownloader =>PUP.Optional.YourFileDownloader C:\Program Files\YourFileDownloaderUpdater =>PUP.Optional.YourFileDownloader C:\Program Files\YTDownloader =>PUP.Optional.YTDownloader C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titan-Se7en™ =>HackTool.WinActivator C:\ProgramData\DSearchLink =>.Superfluous.DeltaSearch C:\ProgramData\IePluginServices =>PUP.Optional.SProtector C:\ProgramData\ShopperPro =>PUP.Optional.ShopperPro C:\ProgramData\Tencent =>.Superfluous.Tencent C:\ProgramData\Trymedia =>PUP.Optional.Trymedia C:\ProgramData\WindowsMangerProtect =>PUP.Optional.WpManager C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic C:\Users\METIDJI\AppData\Roaming\istartsurf =>PUP.Optional.IsStart C:\Users\METIDJI\AppData\Roaming\Tencent =>.Superfluous.Tencent C:\Users\METIDJI\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\METIDJI\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\METIDJI\AppData\Local\onlysearch =>PUP.Optional.OnlySearch C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>.Superfluous.Tencent C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader =>PUP.Optional.YTDownloader HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Only-search =>PUP.Optional.OnlySearch HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SPDriver =>PUP.Optional.ShopperPro HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\Open\command =>PUP.Optional.IsStart HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} =>PUP.Optional.OnlySearch HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.IsStart HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.IsStart [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{0AA91323-AD8E-4B72-9E46-353DB3DB1B45} =>PUP.Optional.YourFileDownloader [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{643078F2-05A9-41A2-8C97-5C73AEA9A7C4} =>PUP.Optional.YourFileDownloader [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E2360E07-4C10-426B-93D1-F668D02CB42C} =>PUP.Optional.YourFileDownloader [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{9C9847F2-18B6-4B93-AC82-8B4E16A6E046} =>PUP.Optional.YourFileDownloader HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASAPI32 =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASMANCS =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASAPI32 =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASMANCS =>PUP.Optional.Adanak HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASAPI32 =>PUP.Optional.IsStart HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASMANCS =>PUP.Optional.IsStart HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASAPI32 =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASMANCS =>PUP.Optional.SoftwareEngine C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_api.snipsmart.info_0.localstorage =>PUP.Optional.SnipSmart C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apiadanaknet-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apisnipsmartinfo-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_hdapp1008-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango ---\\ Récapitulatif des éléments trouvés sur votre station (38) - 1s https://www.anti-malware.top/2016/06/18/superfluous-youndoo/ =>PUP.Optional.Youndoo https://www.nicolascoolman.com/fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar https://www.nicolascoolman.com/fr/pup-adanak/ =>PUP.Optional.Adanak https://www.nicolascoolman.com/fr/pup-paybyads/ =>PUP.Optional.PaybyAds https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.OnlySearch https://www.anti-malware.top/2016/05/07/pup-optional-wajam/ =>PUP.Optional.Wajam https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.LightningNewTab https://www.anti-malware.top/2016/07/20/superfluous-goobzo/ =>.Superfluous.Goobzo https://www.nicolascoolman.com/fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.AkamaiHD https://www.nicolascoolman.com/fr/pup-isstart/ =>PUP.Optional.IsStart https://www.nicolascoolman.com/fr/pup-shopperpro/ =>PUP.Optional.ShopperPro https://www.nicolascoolman.com/fr/pup-snipsmart/ =>PUP.Optional.SnipSmart https://www.nicolascoolman.com/fr/hijacker-webssearches/ =>PUP.Optional.WebsSearches https://www.anti-malware.top/2016/06/18/superfluous-wpmanager/ =>PUP.Optional.WpManager https://www.nicolascoolman.com/fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime https://www.nicolascoolman.com/fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater https://www.nicolascoolman.com/fr/pup-yourfiledownloader/ =>PUP.Optional.YourFileDownloader https://www.nicolascoolman.com/fr/hijacker-trovigo/ =>PUP.Optional.SoftwareEngine https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.BrowserExtensions https://www.nicolascoolman.com/fr/pup-suptab/ =>PUP.Optional.SupTab https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent https://www.nicolascoolman.com/fr/hijacker-babsolution/ =>PUP.Optional.BabSolution https://www.nicolascoolman.com/fr/hijacker-windows/ =>HackTool.WinActivator https://www.nicolascoolman.com/fr/toolbar-deltasearch/ =>.Superfluous.DeltaSearch https://www.nicolascoolman.com/fr/pup-browsersprotector/ =>PUP.Optional.SProtector https://www.nicolascoolman.com/fr/adware-trymedia/ =>PUP.Optional.Trymedia https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.CrashReports https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Monetization https://www.anti-malware.top/2016/08/06/superfluous-reimagerepair/ =>.Superfluous.ReimageRepair https://www.nicolascoolman.com/fr/pup-objectbrowser/ =>PUP.Optional.ObjectBrowser https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.FastStart https://www.nicolascoolman.com/fr/pup-quickstart/ =>PUP.Optional.QuickStart https://www.anti-malware.top/2016/06/07/superfluous-maxstart/ =>.Superfluous.MaxStart https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Chatango ~ End of the scan, 18676 items in 00h10mn01s (1350)