FORUM D’ENTRAIDE INFORMATIQUE (FEI)
Site d’assistance et de sécurité informatique

TENCENT QQ suppression

Règles du forum : Entraide concernant la désinfection et la sécurité informatique : en cas de publicités intempestives, pop-up, redirections, logiciels indésirables, ralentissements suspects, virus, etc.
Une désinfection complète vous sera assurée : désinfection, sécurisation, puis prévention.
Seuls les helpers (personnes qualifiées et formées à la désinfection) ainsi que le staff sont autorisés à apporter leur aide dans cette section.
Merci également de prendre connaissance de la charte générale du forum.

Répondre

Afin d’empêcher la création automatisée de comptes, nous vous demandons de réussir le défi ci-contre.
Smileys
:D :) :-) ;) :| :( :cry: :cheers: :hourra: :mv: :lol: :mdr: :bonjour: :hello: :jap: :siffle: :bisou: :P :o :x :roll: :good: :bad: :super: :reflexion: :suspect: :? :oops: :peur: :zen: :boude: :bug:

Revue du sujet : TENCENT QQ suppression Étendre la vue

Re: TENCENT QQ suppression

par 2011N2 » mer. 30 sept. 2015 21:38
Re,

Ah bon t'as de la chance j'avais pas vu... ^^ Sinon ça peut être lié mais bon, je ne peux pas t'aider pour ça du coup. ;)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » mer. 30 sept. 2015 16:58
oui... :mv:

Re: TENCENT QQ suppression

par 2011N2 » mer. 30 sept. 2015 08:11
Bonjour,

Ah mais c'est une version de Windows non officielle qui est installée sur ton PC ?

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » mar. 29 sept. 2015 20:56
Ca change quelque chose si j'ai une version crack de windows 7 ? Depuis ce matin mon ordinateur est devenu plus lourd et il y a eu un son saccadé lors de l'ouverture windows..

Re: TENCENT QQ suppression

par 2011N2 » mar. 29 sept. 2015 13:51
Re,

D'accord, voici donc la finalisation : http://www.forum-entraide-informatique. ... infection/
Tiens-moi au courant de ton avancée au fur et à mesure. :)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » mar. 29 sept. 2015 11:28
Bonjour,

Non plus de problèmes, tout est ok finalisons donc ! :)

Re: TENCENT QQ suppression

par 2011N2 » mar. 29 sept. 2015 08:43
Bonjour,

Bien, toujours des soucis sur le PC ? Si tout est OK, on va faire la finalisation. :)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » lun. 28 sept. 2015 22:18
Rapport de ZHPFix 2015.8.24.7 par Nicolas Coolman, Update du 24/08/2015
Fichier d'export Registre :
Run by USER at 28/09/2015 22:17:33
High Elevated Privileges : OK
Windows 7 Business Edition, 64-bit Service Pack 1 (Build 7601)

Corbeille vidée (00mn 09s)
Dossier Prefetcher vidé

========== Processus mémoire ==========
SUPPRIMÉ: Memory Process: C:\Users\USER\Downloads\SpyHunter-Installer (1).exe
SUPPRIMÉ: Memory Process: C:\Users\USER\Downloads\SpyHunter-Installer (2).exe
SUPPRIMÉ: Memory Process: C:\Users\USER\Downloads\SpyHunter-Installer.exe

========== Valeurs du Registre ==========
Aucune Valeur Standard Profile: FirewallRaz :
Aucune Valeur Domain Profile: FirewallRaz :

========== Dossiers ==========
Aucun dossiers CLSID Local utilisateur vide

========== Fichiers ==========
SUPPRIMÉS Temporaires Windows (172) (44 110 299 octets)
SUPPRIMÉS Flash Cookies (0) (0 octets)

========== Restauration Système ==========
Point de restauration du système créé avec succès


========== Récapitulatif ==========
3 : Processus mémoire
2 : Valeurs du Registre
1 : Dossiers
2 : Fichiers
1 : Restauration Système


End of clean in 04mn 25s

========== Chemin de fichier rapport ==========
C:\Users\USER\AppData\Roaming\ZHP\ZHPFix[R1].txt - 28/09/2015 14:25:55 [5748]
C:\Users\USER\AppData\Roaming\ZHP\ZHPFix[R2].txt - 28/09/2015 22:17:43 [1314]

Re: TENCENT QQ suppression

par 2011N2 » lun. 28 sept. 2015 21:38
Re,

Fais ZHPFix comme ceci avec ces lignes, et poste le rapport.

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » lun. 28 sept. 2015 19:56

Re: TENCENT QQ suppression

par 2011N2 » lun. 28 sept. 2015 19:46
Bonsoir,

Pas de problème très bien. :)

Fais un nouveau rapport ZHPDiag à présent stp. :)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » lun. 28 sept. 2015 19:37
Bonjour,
voici le rapport et désolée je n'ai pas pu l'envoyer en pièce jointe. Merci :D

Malwarebytes Anti-Malware
http://www.malwarebytes.org

Date de l'analyse: 28/09/2015
Heure de l'analyse: 19:04
Fichier journal:
Administrateur: Oui

Version: 2.1.8.1057
Base de données de programmes malveillants: v2015.09.28.05
Base de données de rootkits: v2015.09.22.01
Licence: Essai
Protection contre les programmes malveillants: Activé
Protection contre les sites Web malveillants: Activé
Autoprotection: Désactivé

Système d'exploitation: Windows 7 Service Pack 1
Processeur: x64
Système de fichiers: NTFS
Utilisateur: USER

Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 454267
Temps écoulé: 20 min, 1 s

Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé

Processus: 0
(Aucun élément malveillant détecté)

Modules: 0
(Aucun élément malveillant détecté)

Clés du registre: 2
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\PCSUSpeedTest_RASAPI32, En quarantaine, [25204ce9018acc6a00538a5033d16c94],
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\PCSUSpeedTest_RASMANCS, En quarantaine, [89bc91a43a51e15566edefeb0df733cd],

Valeurs du registre: 0
(Aucun élément malveillant détecté)

Données du registre: 0
(Aucun élément malveillant détecté)

Dossiers: 0
(Aucun élément malveillant détecté)

Fichiers: 2
PUP.PSWTool.ProductKey, C:\Users\USER\Downloads\produkey.zip, Aucune action de l'utilisateur, [3d0833022269280e760280f1c43ca45c],
PUP.Optional.Amonetize, C:\Users\USER\Downloads\Rhinoceros v5.5 Corporate Edition__9273_il270864.exe, Aucune action de l'utilisateur, [8abb71c415768aac280d30b52ad7bb45],

Secteurs physiques: 0
(Aucun élément malveillant détecté)


(end)

Re: TENCENT QQ suppression

par Invité » lun. 28 sept. 2015 19:33
Bonjour,
voici le rapport et désolée je n'ai pas pu l'envoyer en pièce jointe. Merci :D

Malwarebytes Anti-Malware
http://www.malwarebytes.org

Date de l'analyse: 28/09/2015
Heure de l'analyse: 19:04
Fichier journal:
Administrateur: Oui

Version: 2.1.8.1057
Base de données de programmes malveillants: v2015.09.28.05
Base de données de rootkits: v2015.09.22.01
Licence: Essai
Protection contre les programmes malveillants: Activé
Protection contre les sites Web malveillants: Activé
Autoprotection: Désactivé

Système d'exploitation: Windows 7 Service Pack 1
Processeur: x64
Système de fichiers: NTFS
Utilisateur: USER

Type d'analyse: Analyse des menaces
Résultat: Terminé
Objets analysés: 454267
Temps écoulé: 20 min, 1 s

Mémoire: Activé
Démarrage: Activé
Système de fichiers: Activé
Archives: Activé
Rootkits: Désactivé
Heuristique: Activé
PUP: Activé
PUM: Activé

Processus: 0
(Aucun élément malveillant détecté)

Modules: 0
(Aucun élément malveillant détecté)

Clés du registre: 2
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\PCSUSpeedTest_RASAPI32, En quarantaine, [25204ce9018acc6a00538a5033d16c94],
PUP.Optional.PCSpeedUp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\PCSUSpeedTest_RASMANCS, En quarantaine, [89bc91a43a51e15566edefeb0df733cd],

Valeurs du registre: 0
(Aucun élément malveillant détecté)

Données du registre: 0
(Aucun élément malveillant détecté)

Dossiers: 0
(Aucun élément malveillant détecté)

Fichiers: 2
PUP.PSWTool.ProductKey, C:\Users\USER\Downloads\produkey.zip, Aucune action de l'utilisateur, [3d0833022269280e760280f1c43ca45c],
PUP.Optional.Amonetize, C:\Users\USER\Downloads\Rhinoceros v5.5 Corporate Edition__9273_il270864.exe, Aucune action de l'utilisateur, [8abb71c415768aac280d30b52ad7bb45],

Secteurs physiques: 0
(Aucun élément malveillant détecté)


(end)

Re: TENCENT QQ suppression

par 2011N2 » lun. 28 sept. 2015 08:53
Bonjour,

Si tu te sers de ce logiciel décoche-le et ne le supprime pas. ;)
Ensuite poste le rapport obtenu. :)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » dim. 27 sept. 2015 15:02
Capture d'écran
Fichiers joints
Sans titre.png
Sans titre.png (32.08 Kio) Vu 9452 fois

Re: TENCENT QQ suppression

par Merry Mary » dim. 27 sept. 2015 15:00
Bonjour :)

J'ai fais l'analyse mais elle détecte plusieurs menaces dont un dossier relié au logiciel Rhinocéros que j'utilise souvent dois je supprimer cette sélection ou la décocher ? Merci

Re: TENCENT QQ suppression

par 2011N2 » dim. 27 sept. 2015 14:17
Bonjour,

Bon je te ferai supprimer SpyHunter avec ZHPFix plus tard alors. ;)

À présent passe MBAM et poste le rapport : http://www.forum-entraide-informatique. ... -tutoriel/

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 18:42
Quelles sont les autres étapes ? :D

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 15:30
http://www.cjoint.com/doc/15_09/EIAnDAm ... Report.txt

Lorsque j'essaye de désinstaller Spyhunter, je suis redirigé vers un programme d'installation......

Re: TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 15:12
Re,

Désinstalle SpyHunter, il est bidon.

Fais ZHPFix comme ceci avec ces lignes, et poste le rapport.

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 15:06

Re: TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 15:04
Re,

Il faudrait que tu l'héberges sur cjoint comme indiqué sur le tutoriel de ZHPDiag stp : http://www.forum-entraide-informatique. ... -tutoriel/

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 14:57
---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 3s
O45 - LFCP:[MD5.BCA13204C8DD03A88A82B3F0ED5FADEE] 2015/09/25 21:59:15 A -- C:\Windows\Prefetch\TENCENTDL.EXE-D4BCC9C9.pf =>PUP.Optional.TencentAddressBar

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 1s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll ©
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll ©

---\\ Liste des pilotes du système (80) - 2s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] ©
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2015/09/26 13:19:59 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] ©
O58 - SDL:2015/09/26 13:19:59 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [90968] ©
O58 - SDL:2015/09/26 13:19:58 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] ©
O58 - SDL:2015/09/26 13:19:59 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] ©
O58 - SDL:2015/09/26 13:19:30 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1049880] ©
O58 - SDL:2015/09/26 13:19:59 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [448968] ©
O58 - SDL:2015/09/26 13:19:59 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [153744] ©
O58 - SDL:2015/09/26 13:19:59 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [274808] ©
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2012/06/15 14:52:28 A . (.Ralink Corporation. - Bluelet Audio Driver.) -- C:\Windows\System32\drivers\blueletaudio.sys [34912]
O58 - SDL:2012/07/10 18:28:20 A . (.Ralink Corporation - AddOn Audio SCO Driver.) -- C:\Windows\System32\drivers\BlueletSCOAudio.sys [35936] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2012/06/15 12:22:02 A . (.IVT Corporation - Bluetooth Audio Bus Driver.) -- C:\Windows\System32\drivers\BtAudioBus.sys [23136] ©
O58 - SDL:2012/07/19 18:47:40 A . (.Ralink Corporation - Bluetooth L2CAP_SCO Interface Profile Drive.) -- C:\Windows\System32\drivers\BtL2caScoIf.sys [56904] ©
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2015/09/25 19:42:21 A . (...) -- C:\Windows\System32\drivers\EsgScanner.sys [22704] =>.Superfluous.SpyHunter
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2015/01/25 22:00:51 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [117248] ©
O58 - SDL:2015/01/25 22:00:51 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [87040] ©
O58 - SDL:2015/01/25 22:00:51 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [98304] ©
O58 - SDL:2015/01/25 22:00:51 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [72192] ©
O58 - SDL:2015/01/25 22:00:51 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [28672] ©
O58 - SDL:2015/01/25 22:00:51 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [13952] ©
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2012/07/03 01:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [62784] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] ©
O58 - SDL:2012/09/28 05:37:04 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [650808] ©
O58 - SDL:2012/09/28 05:37:02 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [28216] ©
O58 - SDL:2010/11/21 05:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] ©
O58 - SDL:2012/09/25 00:13:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [5338848] ©
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2012/06/20 08:40:52 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [342528] ©
O58 - SDL:2013/09/17 07:48:32 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [20464] ©
O58 - SDL:2013/09/17 07:48:32 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [358896] ©
O58 - SDL:2013/09/17 07:48:32 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [795632] ©
O58 - SDL:2012/10/02 11:58:14 A . (.Ralink Corporation - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\IvtUrbBtFlt.sys [48608] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2012/08/24 12:40:24 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28x.sys [1885792] ©
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2012/08/28 11:34:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [13425512] ©
O58 - SDL:2012/08/28 11:34:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvpciflt.sys [30056] ©
O58 - SDL:2010/11/21 05:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] ©
O58 - SDL:2010/11/21 05:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] ©
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2014/08/27 15:10:26 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [942808] ©
O58 - SDL:2012/10/02 17:44:02 A . (.Ralink Technology, Corp. - Ralink Bluetooth Adapter.) -- C:\Windows\System32\drivers\rtbth.sys [692832] ©
O58 - SDL:2012/08/09 05:17:50 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsP2Stor.sys [273040] ©
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2012/09/15 00:09:32 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [43832] ©
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2012/09/15 00:09:34 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [457528] ©
O58 - SDL:2015/09/21 22:47:47 N . (.电脑管家 - 电脑管家-驱动模块.) -- C:\Windows\System32\drivers\TFsFltX64.sys [87864]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ©
O58 - SDL:2015/01/24 10:00:47 A . (.WIBU-SYSTEMS AG - WIBU-KEY Plug&Play Driver for Windows.) -- C:\Windows\System32\drivers\Wibukey2_64.sys [21376] ©
O58 - SDL:2015/01/24 10:00:47 A . (.WIBU-SYSTEMS AG - WibuKey Windows NT Kernel Driver.) -- C:\Windows\System32\drivers\WibuKey64.sys [106760] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (19) - 18s
O61 - LFC: 2015/09/21 22:44:13 A . (..) -- C:\Users\USER\Downloads\Atom Pack v1.5.exe [1466880]
O61 - LFC: 2015/09/21 22:45:50 A . (..) -- C:\Users\USER\Downloads\Rhinoceros v5.5 Corporate Edition__9273_il270864.exe [698560]
O61 - LFC: 2015/09/25 19:43:32 A . (.Enigma Software Group USA, LLC..) -- C:\Users\USER\Downloads\SpyHunter-Installer (1).exe [3237248] =>.Superfluous.SpyHunter
O61 - LFC: 2015/09/25 19:53:47 A . (.Enigma Software Group USA, LLC..) -- C:\Users\USER\Downloads\SpyHunter-Installer (2).exe [3237248] =>.Superfluous.SpyHunter
O61 - LFC: 2015/09/25 19:41:48 A . (.Enigma Software Group USA, LLC..) -- C:\Users\USER\Downloads\SpyHunter-Installer.exe [3237248] =>.Superfluous.SpyHunter
O61 - LFC: 2015/09/26 13:10:33 A . (..) -- C:\Users\USER\AppData\Roaming\NVIDIA\GLCache\64c104ab3dbbbc5b8f7a36180f091769\47408a7f6905bc01\31d8b12e88e695f8.bin [5819]
O61 - LFC: 2015/09/26 13:09:58 A . (..) -- C:\Users\USER\AppData\Roaming\NVIDIA\GLCache\64c104ab3dbbbc5b8f7a36180f091769\47408a7f6905bc01\8e84f10874ba9199.bin [742]
O61 - LFC: 2015/09/25 14:35:54 A . (..) -- C:\Users\USER\AppData\Roaming\NVIDIA\GLCache\20bf196d509b7ce7154ce56c6bb4577a\47408a7f6905bc01\2ad2147cf33d62a7.bin [19911216]
O61 - LFC: 2015/09/26 13:12:17 A . (.Copyright © 2009.) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\GH_Util.dll [20480]
O61 - LFC: 2015/09/26 13:12:17 A . (.Copyright © 2008 - 2011 Jb Evain.) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\Mono.Cecil.dll [217600]
O61 - LFC: 2015/09/26 13:12:17 A . (..) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\QWhale.Common.dll [196608]
O61 - LFC: 2015/09/26 13:12:17 A . (..) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\QWhale.Editor.dll [790528]
O61 - LFC: 2015/09/26 13:12:17 A . (..) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\QWhale.Syntax.dll [229376]
O61 - LFC: 2015/09/26 13:12:17 A . (..) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\QWhale.Syntax.Parsers.dll [565248]
O61 - LFC: 2015/09/26 13:12:17 A . (..) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\QWhale.Syntax.Schemes.dll [290816]
O61 - LFC: 2015/09/26 13:12:16 A . (.Copyright © 2009.) -- C:\Users\USER\AppData\Roaming\McNeel\Rhinoceros\5.0\Plug-ins\Grasshopper (b45a29b1-4343-4035-989e-044e8580d9cf)\0.9.76.0\Components\Galapagos.dll [790016]
O61 - LFC: 2015/09/25 19:41:48 A . (.Enigma Software Group USA, LLC..) -- C:\Users\USER\AppData\Roaming\Enigma Software Group\sh_installer.exe [3237248] =>.Superfluous.SpyHunter
O61 - LFC: 2015/09/26 14:21:31 A . (..) -- C:\Users\USER\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2015/09/25 15:51:50 A . (..) -- C:\Users\USER\AppData\Local\Adobe\Acrobat\11.0\UserCache.bin [144100]

---\\ Associations Shell Spawning (12) - 1s
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> <OperaStable>[HKCU\..\open\Command] (...) -- C:\Program Files (x86)\Opera\Launcher.exe
O67 - Shell Spawning: <.scr> <AutoCADScriptFile>[HKCU\..\open\Command] (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe ©

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: <Google Chrome.GZRW6HT64WUN7KFAHOESBVGNXY> <Google Chrome>[HKLM\..\Shell\open\Command] (...) -- C:\Users\USER\AppData\Local\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: <Google Chrome.GZRW6HT64WUN7KFAHOESBVGNXY> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\USER\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: <Google Chrome.GZRW6HT64WUN7KFAHOESBVGNXY> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\USER\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: <Google Chrome.GZRW6HT64WUN7KFAHOESBVGNXY> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\USER\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Recherche d'infection sur les navigateurs (1) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [680960] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2477536] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ©

---\\ Liste des exceptions du parefeu Windows (45) - 2s
O87 - FAEL: "{AB391A12-E9DC-4A28-8323-5F3B825D9DA1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Autodesk\3ds Max 2011\3dsmax.exe (.not file.)
O87 - FAEL: "{52CA98AD-0A3C-49DE-9C82-574C3E0D2CEB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Autodesk\3ds Max 2011\3dsmax.exe (.not file.)
O87 - FAEL: "{3CCB555B-CDAC-4757-B831-078F6AB1AEAC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe (.not file.)
O87 - FAEL: "{2F2C25A2-2BC7-4E75-BB07-B1BB5AAFB6A8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe (.not file.)
O87 - FAEL: "{28E37D15-05BA-488B-887D-6D001C64F066}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32.exe (.not file.)
O87 - FAEL: "{ABA5241F-CE68-46B1-AE87-43DD13E79DF6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32.exe (.not file.)
O87 - FAEL: "{9EA30EE4-ABC3-4767-8EDB-55BBB48D5239}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2011\3dsmax.exe (.not file.)
O87 - FAEL: "{05689A93-2514-4F52-B313-EC00E1D5E598}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2011\3dsmax.exe (.not file.)
O87 - FAEL: "{589DD8E7-5997-4A2A-B565-13AA79730556}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe (.not file.)
O87 - FAEL: "{498D7DE4-1848-46FF-938D-388EEC3D1D54}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe (.not file.)
O87 - FAEL: "{85E952A3-B686-46B7-85AC-B8D4A8AB9696}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe (.not file.)
O87 - FAEL: "{832ECE14-4D0A-4116-9828-87DE30A4162C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe (.not file.)
O87 - FAEL: "{ADA8988D-4D6D-4D4D-8D76-7261F6AC3920}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
O87 - FAEL: "{6AD94554-3909-4047-B660-07739BF440BA}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
O87 - FAEL: "TCP Query User{5E5C138F-9D26-47D7-AADC-41A4E0F1A35B}C:\users\user\appdata\local\popcorn time\nw.exe" [In-None-P6-TRUE] .(...) -- C:\users\user\appdata\local\popcorn time\nw.exe
O87 - FAEL: "UDP Query User{F10FC4D9-39FC-49D2-A386-77AD60AD401A}C:\users\user\appdata\local\popcorn time\nw.exe" [In-None-P17-TRUE] .(...) -- C:\users\user\appdata\local\popcorn time\nw.exe
O87 - FAEL: "TCP Query User{6BE32999-5ED8-43FA-B372-574598D99F86}C:\program files (x86)\搜狐影音\shplayer.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\搜狐影音\shplayer.exe (.not file.)
O87 - FAEL: "UDP Query User{20EDF780-5DD2-40FD-BC4D-A6F032EE2B3B}C:\program files (x86)\搜狐影音\shplayer.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\搜狐影音\shplayer.exe (.not file.)
O87 - FAEL: "{07DCC201-D414-4B1F-B887-80BDF55F17FB}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{A90CC54B-6CB3-4BB5-B326-8E7865ED21FA}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe (.not file.) =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{52135E49-9573-4A3B-B3F9-2F7B31840062}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-安装引导.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCmgrInstallGuide.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{F711F5ED-ED37-4963-A227-54D479C6B0F1}" [In-None-P17-TRUE] .(.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{9DCAB6D4-405E-4470-B9DA-B8A776526F52}" [In-None-P17-TRUE] .(.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCMgr.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{89F84207-CD06-40CF-86C3-4F06DB05A01C}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-实时防护服务.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{E46668DC-6F01-49F7-AFB3-011A0E1162F8}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-下载中心.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMDL.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{54992502-6AAA-447E-8E0F-8923ADC38941}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-crash上报.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\bugreport.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{3ECEA0FE-741E-4C50-A66E-72AC075035F4}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-未知文件打开.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCFileOpen.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{8F104171-AE33-4421-8CC3-98A177027490}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-漏洞扫描.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLeakScan.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{8782E067-35B6-44AD-AFC4-4C208D864A36}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-设置中心.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPConfig.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{EF7ABDD6-25B6-45EC-9F8F-96714DC80C3C}" [In-None-P17-TRUE] .(.Tencent - 软件管理.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftMgr.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{9C7D1DB7-A9F5-496B-97F7-F7F1656EA257}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-网络流量监控.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\plugins\QMNetMon\QQPCNetFlow.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{4F17BFB9-2F68-44D8-A8DC-0A9444977635}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-日志上传.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCBTU.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{128F3C4E-0683-4A93-B5B1-4FC1CCD24ED4}" [In-None-P17-TRUE] .(.Tencent - 电脑诊所.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCClinic.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{094FE087-A923-4CCA-8DAC-206A484A6385}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - 电脑管家-引导启动.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLaunch.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{21005416-8397-4225-8635-837DCF5263CF}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-自升级程序.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUpdate\QQPCMgrUpdate.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{134C2009-1F35-4C1E-BB7A-2C89EDE50222}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - 电脑管家-游戏专区.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftGame.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{FEDFBFC2-57F8-40AB-BA07-9419ADB24752}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-系统优化.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSysOptimize.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{E0C88714-B313-4B56-9FAC-03703681F9F2}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-杀毒.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCUpdateAVLib.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{8501B5D9-C020-4D7A-BAAE-EF6B5F7452B4}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-修复器.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQRepair.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{B9EE28BC-8181-487B-A202-A1D0A31FD4C0}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-卸载程序.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\Uninst.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{78FD6515-5166-4840-A31C-D23690E12AE7}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-模块升级.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCPatch.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{B6716430-A846-428E-8BC3-779ACE682F05}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-反病毒引擎升级程序.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TpkUpdate.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{E77F3719-8EB4-4038-8167-1BA41F1E728D}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-路由器管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMRouterMgr.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{A61BCF32-42E2-4735-BD77-7A8368376583}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-帐号宝.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAccountProtection.exe =>PUP.Optional.TencentAddressBar
O87 - FAEL: "{DBC4BF48-6E2C-4E43-88E1-C28CCF40BAF9}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-弹窗拦截.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAdBlock.exe =>PUP.Optional.TencentAddressBar

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (29) - 11s

SR - Auto [2014/12/05 04:27:44] [ 599944] Autodesk Application Manager Service (AdAppMgrSvc) . (.Autodesk Inc..) - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SR - Auto [2015/09/15 08:09:16] [ 669872] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe ©
SR - Auto [2015/09/10 02:27:58] [ 1846464] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe ©
SR - Auto [2012/12/13 18:37:26] [ 12288] Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc..) - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe ©
SR - Auto [2015/09/26 13:19:39] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
SR - Auto [2012/09/26 16:46:36] [ 1612552] BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe ©
SR - Demand [2012/09/19 19:37:04] [ 146184] BsHelpCS (BsHelpCS) . (.IVT Corporation.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe ©
SS - Demand [2012/09/25 13:35:10] [ 276288] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe ©
SS - Demand [2015/01/22 17:55:26] [ 1357104] FLEXnet Licensing Service 64 (FLEXnet Licensing Service 64) . (.Flexera Software LLC.) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe ©
SS - Auto [2015/09/13 23:17:26] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/09/13 23:17:26] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SR - Auto [2012/09/28 05:42:26] [ 14904] Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
SR - Auto [2012/07/25 04:00:08] [ 2457232] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe ©
SR - Auto [2012/04/20 15:16:12] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SR - Auto [2012/07/18 03:10:24] [ 128896] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ©
SR - Auto [2012/10/23 19:42:06] [ 347120] InternetEverywhere_Service (InternetEverywhere_Service) . (...) - C:\Program Files (x86)\InternetEverywhere\InternetEverywhere_Service.exe
SR - Auto [2012/07/18 03:10:16] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [2012/07/18 03:10:30] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SR - Auto [2014/10/15 12:42:46] [ 2820424] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe ©
SR - Auto [2015/08/10 15:34:48] [ 67944] McNeel Update Service 5.0 (McNeelUpdate) . (.Robert McNeel & Associates.) - c:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe ©
SS - Demand [2011/09/15 06:19:54] [ 86016] mental ray Satellite for Autodesk 3ds Max 2015 64-bit (mi-raysat_3dsmax2015_64) . (...) - C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
SR - Auto [2012/08/28 09:50:41] [ 891240] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe ©
SR - Auto [2012/08/28 11:33:00] [ 1258856] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ©
SS - Auto [2015/06/25 20:09:34] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SR - Auto [2015/09/25 19:42:17] [ 1026944] SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC..) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe =>.Superfluous.SpyHunter
SS - Demand [2010/02/19 14:37:14] [ 517096] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ©
SR - Auto [2012/07/18 03:10:32] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Recherche de clés de registre Tracing (8) - 2s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\amt_oursurfing_RASAPI32 =>PUP.Optional.OurSurfing
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\amt_oursurfing_RASMANCS =>PUP.Optional.OurSurfing
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\setup_mbot_fr_RASAPI32 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\setup_mbot_fr_RASMANCS =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASMANCS =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\upmbot_fr_014010094_RASAPI32 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\upmbot_fr_014010094_RASMANCS =>PUP.Optional.CrossRider

---\\ Scan Additionnel (51) - 0s
C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe =>.Superfluous.SpyHunter
HKLM\SYSTEM\CurrentControlSet\Services\SpyHunter 4 Service =>.Superfluous.SpyHunter
C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe =>.Superfluous.SpyHunter
C:\Windows\System32\Tasks\SpyHunter4Startup =>.Superfluous.SpyHunter
HKLM\SOFTWARE\Wow6432Node\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic
HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Software =>PUP.Optional.Boxore
C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar
C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
C:\Users\USER\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
C:\Users\USER\AppData\Local\Software =>PUP.Optional.Boxore
C:\Windows\Prefetch\TENCENTDL.EXE-D4BCC9C9.pf =>PUP.Optional.TencentAddressBar
C:\Windows\System32\drivers\EsgScanner.sys =>.Superfluous.SpyHunter
C:\Users\USER\Downloads\SpyHunter-Installer (1).exe =>.Superfluous.SpyHunter
C:\Users\USER\Downloads\SpyHunter-Installer (2).exe =>.Superfluous.SpyHunter
C:\Users\USER\Downloads\SpyHunter-Installer.exe =>.Superfluous.SpyHunter
C:\Users\USER\AppData\Roaming\Enigma Software Group\sh_installer.exe =>.Superfluous.SpyHunter
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCmgrInstallGuide.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCMgr.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMDL.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\bugreport.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCFileOpen.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLeakScan.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPConfig.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftMgr.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\plugins\QMNetMon\QQPCNetFlow.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCBTU.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCClinic.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLaunch.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUpdate\QQPCMgrUpdate.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftGame.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSysOptimize.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCUpdateAVLib.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQRepair.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\Uninst.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCPatch.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TpkUpdate.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMRouterMgr.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAccountProtection.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAdBlock.exe =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\amt_oursurfing_RASAPI32 =>PUP.Optional.OurSurfing
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\amt_oursurfing_RASMANCS =>PUP.Optional.OurSurfing
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\setup_mbot_fr_RASAPI32 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\setup_mbot_fr_RASMANCS =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASMANCS =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\upmbot_fr_014010094_RASAPI32 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\upmbot_fr_014010094_RASMANCS =>PUP.Optional.CrossRider

---\\ Récapitulatif des éléments trouvées sur votre station (7) - 0s
http://www.nicolascoolman.fr/blog =>.Superfluous.SpyHunter
http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/hijacker-browsers/ =>PUP.Optional.Browser
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/blog =>PUP.Optional.OurSurfing
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider

~ End of the scan, 27667 items in 100 seconds (928)(0)()

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 14:55
~ ZHPDiag v2015.9.24.145 Par Nicolas Coolman (2015/09/24)
~ Démarré par USER (Administrator) (2015/09/26 14:48:34)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\USER\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\USER\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v45.0.2454.99
MSIE: Internet Explorer v8.0.7601.17514

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (2) - 1s
Avast Free Antivirus v10.4.2233
Windows Defender W7 (Activate)

---\\ Logiciels de protection et autres (Superflus) (1) - 1s
SpyHunter 4 v4.20.9.4533

---\\ Surveillance de Logiciels (1) - 2s
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8281.408 MB (63% free)
~ System Restore: Activé (Enable)
~ System drive C: has 20 GB free of 132 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: USER-PC
~ User Name: USER
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 20 GB free of 132 GB (System)
~ Drive D: has 819 GB free of 820 GB

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (26) - 0s
[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2872320] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] ©
[MD5.F6C5302E1F4813D552F41A0AC82455E5] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1188864] ©
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [390656] ©
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] ©
[MD5.A52B6CC24063CC83C78C0E6F24DEEC01] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [357888] ©
[MD5.59DF156711A76BCB993253EC6C9BBF41] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] ©
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.D31DC7A16DEA4A9BAF179F3D6FBDB38C] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [499712] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] ©
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] ©
[MD5.FAF015B07E3A2874A790A39B7D2C579F] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208] ©
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] ©
[MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1659776] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] ©
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] ©
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] ©
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] ©
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] ©

---\\ Processus lancés (55) - 3s
[MD5.7A3E3D2D71D91D309B2F26F30B3798A6] - (.Enigma Software Group USA, LLC. - Service scanner interface.) -- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1026944] [PID.1004] =>.Superfluous.SpyHunter
[MD5.55AEE39B2229688072E66682DA0614B5] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.1.) -- C:\Windows\system32\nvvsvc.exe [891240] [PID.180] ©
[MD5.26A9C65CFB6D080994BCC0DC0E5E4AD6] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1125224] [PID.1320] ©
[MD5.55AEE39B2229688072E66682DA0614B5] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.1.) -- C:\Windows\system32\nvvsvc.exe [891240] [PID.1332] ©
[MD5.11120878E5276B367E1A10FF8C9B595B] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1544] ©
[MD5.CBDF353624D1744734F2FD13B4786F90] - (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944] [PID.1948]
[MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1568] ©
[MD5.0D19026AB5812D3A7B9DBB386F8334D8] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [669872] [PID.2032] ©
[MD5.99C12EBFDA2AB122C8B4F7DECE14984C] - (.Adobe Systems, Incorporated - AGS Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [1846464] [PID.1632] ©
[MD5.3817558D8D5BBC8B0F190CF0D7C4720F] - (.Autodesk, Inc. - Content Service.) -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288] [PID.2040] ©
[MD5.00EAE93627CCB2BC07795A3087916A5D] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1612552] [PID.2060] ©
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.2224] ©
[MD5.309CCA3861F1A2E1ABD23843532A9837] - (...) -- C:\Program Files (x86)\InternetEverywhere\InternetEverywhere_Service.exe [347120] [PID.2296]
[MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.2316] ©
[MD5.DF4BCFFB97625D6B44E8554BF83FCCA6] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2820424] [PID.2348] ©
[MD5.39EC12A91192A07AD1D6E1A5D6DDAB80] - (.Robert McNeel & Associates - McNeelUpdateService.) -- c:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe [67944] [PID.2372] ©
[MD5.3D8A3CC74E86F8D61D418D74A0194E5F] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [146184] [PID.3116] ©
[MD5.75E04B76C5F1C62FD0F1FC92BBABE86F] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [398656] [PID.3640] ©
[MD5.9C6B59F3367D582427C48347024B83E5] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [441152] [PID.3668] ©
[MD5.C38257D797C30FF898400DB50B0DDF35] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2874168] [PID.3704] ©
[MD5.D6E2ED7F1F7BE7CCB8676491BF950B57] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\USER\AppData\Local\Akamai\netsession_win.exe [4673432] [PID.3768] ©
[MD5.1E2CF357B62A8C8A3AC2B831D68733C5] - (.Autodesk, Inc. - Autodesk 360.) -- C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224] [PID.3788] ©
[MD5.77C01F1850E55373280A1B865D824F58] - (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\USER\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008] [PID.3824] ©
[MD5.84092B60AA6DAB3B5E0C646AAE862A46] - (...) -- C:\Program Files (x86)\InternetEverywhere\InternetEverywhere_Launcher.exe [637936] [PID.3876]
[MD5.D6E2ED7F1F7BE7CCB8676491BF950B57] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\USER\AppData\Local\Akamai\netsession_win.exe [4673432] [PID.3980] ©
[MD5.656DFDB81019B8A11EFB05D974701AFD] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [371976] [PID.3988] ©
[MD5.9166C1276B296BC78FA816CD8448CD32] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088] [PID.4016] ©
[MD5.2AEB5E550F17EEE3311125DBBA64F72F] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448744] [PID.4088] ©
[MD5.A93081C475071AD9AFD82280B95DE923] - (.WIBU-SYSTEMS AG - WkSvMgr.) -- C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe [6580080] [PID.3588] ©
[MD5.123CE08362EE48BBA7F9F1D7EB50F24F] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544] [PID.1164] ©
[MD5.77CA17405E717CD590B6BE34B228F905] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [123192] [PID.552] ©
[MD5.34D296AFC913E302953C70463EF09A48] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [96056] [PID.3948] ©
[MD5.40AE8622D89D27C4F704A324CA82AA70] - (.Adobe Systems, Incorporated - Adobe GC Client Application.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AdobeGCClient.exe [2285760] [PID.3024] ©
[MD5.3D1D33DE714636AEAB4AC18291D254F6] - (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2292912] [PID.3376] ©
[MD5.240AF8882E2C0D1280572DFAB3C31D93] - (.Adobe Systems Incorporated - Adobe IPC Broker.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe [1011872] [PID.3960] ©
[MD5.6DE6DF85AD14C61EDEE3E03AA3331570] - (.Adobe Systems Incorporated - Adobe CEF Helper.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe [174256] [PID.4064] ©
[MD5.CC04FE39E6735EC56670E66EC79B4811] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240] [PID.4900] ©
[MD5.E1F79B64FA93E6BF279A7D451FA103E8] - (.Adobe Systems Incorporated - Creative Cloud.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe [2258096] [PID.5068] ©
[MD5.9582680F41C0C4C6E6A2ACCADD7E723E] - (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Users\USER\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe [493960] [PID.4124]
[MD5.6DE6DF85AD14C61EDEE3E03AA3331570] - (.Adobe Systems Incorporated - Adobe CEF Helper.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe [174256] [PID.1868] ©
[MD5.6B0BC7CBE67991AEC21DFADD2660802A] - (.Copyright © 2013-2015, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe [31958688] [PID.1844]
[MD5.43095B27DB6B7C250245C56E6BFBCD70] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14904] [PID.2536] ©
[MD5.5AD5A7781BE907D6E2D75CA1DADAA97B] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2457232] [PID.5332] ©
[MD5.30E9FAC23E2537D82F2836CB81AEE186] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896] [PID.5416] ©
[MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.5440] ©
[MD5.89A329CE912A989F2238B934AC9177DA] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1258856] [PID.5516] ©
[MD5.7980D07E235B09457355D92388FE0472] - (.Adobe Systems Incorporated - CCLibraries.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe [156336] [PID.5816] ©
[MD5.6D5DBA957D94E902F5A2C649A361D4CE] - (.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe [5529472] [PID.5976]
[MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.2132] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5720] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5856] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5500] ©
[MD5.B8C7C0888808EBFA8CE772B5E5CAB623] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5092] ©
[MD5.D4DC35D50455CDA1E8BC20E993DE3BDB] - (.Xplode - AdwCleaner.) -- C:\Users\USER\Downloads\adwcleaner_5.008.exe [1662976] [PID.2108] ©
[MD5.260B29F5BCC07C91CBA92910484BE023] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\USER\Downloads\ZHPDiag3.exe [1938944] [PID.5104] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (12) - 0s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pgbdhkpacgdhfabeceekiafonfkipohm] __MSG_themeName__
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 0s
P2 - FPN: [HKLM] [@qq.com/npAndroidAssistant] - (.Tencent, Inc..) -- C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll =>PUP.Optional.TencentAddressBar

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <local>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (22)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll ©
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll ©

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 0x39358347C5D025419FA80819E2EAAC93 - [HKCU]{47833539-D0C5-4125-9FA8-0819E2EAAC93} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (27) - 1s
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe ©
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe ©
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKCU\..\Run: [AdobeBridge] (Orphean)
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\USER\AppData\Local\Akamai\netsession_win.exe ©
O4 - HKCU\..\Run: [Autodesk Sync] . (.Autodesk, Inc. - Autodesk 360.) -- C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe ©
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\USER\AppData\Local\Microsoft\BingSvc\BingSvc.exe ©
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ©
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe ©
O4 - HKLM\..\Wow6432Node\Run: [BtTray] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe ©
O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe ©
O4 - HKLM\..\Wow6432Node\Run: [ADSKAppManager] . (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe ©
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe ©
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe ©
O4 - HKUS\.DEFAULT\..\Run: [Autodesk Sync] . (.Autodesk, Inc. - Autodesk 360.) -- C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe ©
O4 - HKUS\S-1-5-18\..\Run: [Autodesk Sync] . (.Autodesk, Inc. - Autodesk 360.) -- C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe ©
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-3899685337-620316259-3305425565-1000\..\Run: [AdobeBridge] (Orphean)
O4 - HKUS\S-1-5-21-3899685337-620316259-3305425565-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\USER\AppData\Local\Akamai\netsession_win.exe ©
O4 - HKUS\S-1-5-21-3899685337-620316259-3305425565-1000\..\Run: [Autodesk Sync] . (.Autodesk, Inc. - Autodesk 360.) -- C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe ©
O4 - HKUS\S-1-5-21-3899685337-620316259-3305425565-1000\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\USER\AppData\Local\Microsoft\BingSvc\BingSvc.exe ©

---\\ Raccourcis Global Startup (4) - 1s
O4 - GS\Desktop [Administrateur]: SpyHunter.lnk . (.Enigma Software Group USA, LLC. - SpyHunter4 application.) C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe =>.Superfluous.SpyHunter
O4 - GS\Desktop [Invité]: SpyHunter.lnk . (.Enigma Software Group USA, LLC. - SpyHunter4 application.) C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe =>.Superfluous.SpyHunter
O4 - GS\Desktop [UpdatusUser]: SpyHunter.lnk . (.Enigma Software Group USA, LLC. - SpyHunter4 application.) C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe =>.Superfluous.SpyHunter
O4 - GS\Desktop [USER]: SpyHunter.lnk . (.Enigma Software Group USA, LLC. - SpyHunter4 application.) C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe =>.Superfluous.SpyHunter

---\\ Modification Domaine/Adresses DNS (9) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.47.9.35 193.95.122.30
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.47.9.33 193.95.122.30
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 10.47.9.35 193.95.122.30
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 10.47.9.33 193.95.122.30
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 10.47.9.35 193.95.122.30
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 10.47.9.33 193.95.122.30
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (26) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll ©
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL ©

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 306.) - C:\Windows\system32\nvinitx.dll

---\\ Liste des services NT non Microsoft et non désactivés (22) - 0s
O23 - Service: Autodesk Application Manager Service (AdAppMgrSvc) . (.Autodesk Inc. - Autodesk Application Manager.) - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe ©
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - AGS Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe ©
O23 - Service: Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc. - Content Service.) - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe ©
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe ©
O23 - Service: BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation - Bluetooth Application.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe ©
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: Technologie de stockage Intel(R) Rapid (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe ©
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe ©
O23 - Service: InternetEverywhere_Service (InternetEverywhere_Service) . (...) - C:\Program Files (x86)\InternetEverywhere\InternetEverywhere_Service.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe ©
O23 - Service: McNeel Update Service 5.0 (McNeelUpdate) . (.Robert McNeel & Associates - McNeelUpdateService.) - c:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe ©
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 306.1.) - C:\Windows\system32\nvvsvc.exe ©
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe ©
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC. - Service scanner interface.) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe =>.Superfluous.SpyHunter
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ©

---\\ Tâches planifiées en automatique (18) - 3s
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] ©
[MD5.5A9CDFF0CEDFA8061D0DE6B6C2547F51] [APT] [AdobeAAMUpdater-1.0-USER-PC-USER] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104] ©
[MD5.D9E35285D8CCE58241038E5B23507DAB] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1382112] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] ©
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-3899685337-620316259-3305425565-1000Core1d094968b020ef9] (...) -- C:\Users\USER\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.57A2664E14863B90056E0DE510D05AA8] [APT] [HPCustParticipation HP Deskjet 2540 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe [5745672] ©
[MD5.1C307171DD801689F2AB6040D64934B4] [APT] [SpyHunter4Startup] (.Enigma Software Group USA, LLC..) -- C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [8276352] =>.Superfluous.SpyHunter
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] ©
O39 - APT: AdobeAAMUpdater-1.0-USER-PC-USER - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-USER-PC-USER [3498] ©
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [3924] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] ©
O39 - APT: GoogleUpdateTaskUserS-1-5-21-3899685337-620316259-3305425565-1000Core1d094968b020ef9 - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3899685337-620316259-3305425565-1000Core1d094968b020ef9 [3646]
O39 - APT: HPCustParticipation HP Deskjet 2540 series - (.Hewlett-Packard Co..) -- C:\Windows\System32\Tasks\HPCustParticipation HP Deskjet 2540 series [3608] ©
O39 - APT: SpyHunter4Startup - (.Enigma Software Group USA, LLC..) -- C:\Windows\System32\Tasks\SpyHunter4Startup [3320] =>.Superfluous.SpyHunter

---\\ Logiciels installés (75) - 3s
O42 - Logiciel: Autodesk AutoCAD 2014 - English - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2014 - English ©
O42 - Logiciel: Autodesk 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk 3ds Max 2015 ©
O42 - Logiciel: Autodesk 3ds Max 2015 SP1 - (.Autodesk.) [HKLM][64Bits] -- Autodesk 3ds Max 2015 SP1 ©
O42 - Logiciel: Autodesk DirectConnect 2015 64-bit - (.Autodesk.) [HKLM][64Bits] -- Autodesk DirectConnect 2015 64-bit ©
O42 - Logiciel: Autodesk DirectConnect 2015 64-bit Hotfix1 - (.Autodesk.) [HKLM][64Bits] -- Autodesk DirectConnect 2015 64-bit_9001 ©
O42 - Logiciel: Autodesk ReCap - (.Autodesk.) [HKLM][64Bits] -- Autodesk ReCap ©
O42 - Logiciel: Autodesk Revit Interoperability for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Interoperability for 3ds Max 2015 ©
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: V-Ray for 3dsmax 2015 for x64 - (.Chaos Software Ltd.) [HKLM][64Bits] -- V-Ray for 3dsmax 2015 for x64
O42 - Logiciel: WinRAR archiver - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: WibuKey Setup (WibuKey Remove) - (.WIBU-SYSTEMS AG.) [HKLM][64Bits] -- {00060000-0000-1004-8002-0000C06B5161} ©
O42 - Logiciel: Autodesk Revit Interoperability for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {0BB716E0-1500-0610-0000-097DC2F354DF} ©
O42 - Logiciel: Rhinoceros 5 (64-bit) - (.Robert McNeel & Associates.) [HKLM][64Bits] -- {0F0ABAFB-A710-45CC-B53E-37F1F70F0075} ©
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2540 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {3330B490-86DE-4E57-AE3A-14AECC0ACC52} ©
O42 - Logiciel: Autodesk 360 - (.Autodesk.) [HKLM][64Bits] -- {52B28CAD-F49D-47BA-9FFE-29C2E85F0D0B} ©
O42 - Logiciel: Autodesk 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {52B37EC7-D836-0410-0264-3C24BCED2010} ©
O42 - Logiciel: AutoCAD 2014 - English - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-D001-0000-0102-0060B0CE6BBA} ©
O42 - Logiciel: Autodesk 3ds Max 2015 Populate Data - (.Autodesk.) [HKLM][64Bits] -- {57E92DED-DC6C-41E5-B9E1-76D83BD2EABE} ©
O42 - Logiciel: Autodesk Inventor Server Engine for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {9167CA34-4E48-49E3-8892-3C439739D2D3} ©
O42 - Logiciel: Ralink Bluetooth Stack64 - (.Ralink Corporation.) [HKLM][64Bits] -- {95DF815D-BE2D-9118-F549-39794C5869CF} ©
O42 - Logiciel: Étude pour l'amélioration du produit HP Deskjet 2540 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {B01F43B5-AD90-417C-BDF8-4E5A96530476} ©
O42 - Logiciel: NVIDIA Pilote graphique 306.14 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update ©
O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {E1322B8A-6F66-44ED-95D5-7FEBC50AC814} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} ©
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud ©
O42 - Logiciel: Autodesk Application Manager - (.Autodesk.) [HKLM][64Bits] -- Autodesk Application Manager ©
O42 - Logiciel: Autodesk Content Service - (.Autodesk.) [HKLM][64Bits] -- Autodesk Content Service ©
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast ©
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations ©
O42 - Logiciel: Internet Everywhere - (.Internet Everywhere.) [HKLM][64Bits] -- InternetEverywhere
O42 - Logiciel: SpyHunter 4 - (.Enigma Software Group, LLC.) [HKLM][64Bits] -- SpyHunter =>.Superfluous.SpyHunter
O42 - Logiciel: V-Ray for SketchUp - (.ASGVIS.) [HKLM][64Bits] -- V-Ray for SketchUp 1.48.89
O42 - Logiciel: V-Ray Presets Pro GFXDomain.net 2.6.3 - (.Siger Studio.) [HKLM][64Bits] -- V-Ray Presets Pro GFXDomain.net 2.6.3 ©
O42 - Logiciel: VLC media player 2.0.5 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player ©
O42 - Logiciel: Rhinoceros 5 Help Media - (.Robert McNeel & Associates.) [HKLM][64Bits] -- {17B822A0-154B-41BB-A049-8586899F1FD6} ©
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} ©
O42 - Logiciel: Skype™ 7.7 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} ©
O42 - Logiciel: HP Deskjet 2540 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {2FAD0F16-4309-4D22-AE73-F4CCA737D013} ©
O42 - Logiciel: Google SketchUp Pro 8 - (.Google, Inc..) [HKLM][64Bits] -- {3AB65E95-37D6-4DD7-8862-29AED3AFD54B} ©
O42 - Logiciel: Rhinoceros 5 Language Pack Installer (en-US) - (.Robert McNeel & Associates.) [HKLM][64Bits] -- {3CE4FE5E-D7BE-41EF-9C6A-752290702DAC} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} ©
O42 - Logiciel: Autodesk Material Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {427F733F-4D6C-45BC-9324-EB743104C321} ©
O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2014 - (.Autodesk.) [HKLM][64Bits] -- {51BF3210-B825-4092-8E0D-66D689916E02} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Autodesk Content Service Language Pack - (.Autodesk.) [HKLM][64Bits] -- {62F029AB-85F2-0001-866A-9FC0DD99DDBC} ©
O42 - Logiciel: SketchUp Import for AutoCAD 2014 - (.Autodesk.) [HKLM][64Bits] -- {644E9589-F73A-49A4-AC61-A953B9DE5669} ©
O42 - Logiciel: Autodesk Material Library 2014 - (.Autodesk.) [HKLM][64Bits] -- {644F9B19-A462-499C-BF4D-300ABC2A28B1} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} ©
O42 - Logiciel: Rhinoceros 5 - (.Robert McNeel & Associates.) [HKLM][64Bits] -- {8586863C-9648-441E-BF3E-1CBD5CEB40D1} ©
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} ©
O42 - Logiciel: FARO LS 1.1.501.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {8A470330-70B2-49AD-86AF-79885EF9898A} ©
O42 - Logiciel: Autodesk Backburner 2015 - (.Autodesk.) [HKLM][64Bits] -- {8C5F38D2-8EFE-49A4-B3F5-BF3210FED168} ©
O42 - Logiciel: Ralink RT3290 802.11bgn Wi-Fi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} ©
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} ©
O42 - Logiciel: FARO LS 1.1.406.58 - (.FARO Scanner Production.) [HKLM][64Bits] -- {951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C} ©
O42 - Logiciel: Autodesk Material Library Medium Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {9F6466D9-6EFC-4A10-B931-C72D1A3F1763} ©
O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {ABE2F70B-8D94-44E9-AA04-F0DB35063D62} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} ©
O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} ©
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} ©
O42 - Logiciel: Autodesk App Manager - (.Autodesk.) [HKLM][64Bits] -- {C070121A-C8C5-4D52-9A7D-D240631BD433} ©
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} ©
O42 - Logiciel: Adobe InDesign CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DBFD0312-6E55-1014-8952-E78D43BC0147} ©
O42 - Logiciel: Adobe Creative Suite 6 Master Collection - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Autodesk Featured Apps - (.Autodesk.) [HKLM][64Bits] -- {F732FEDA-7713-4428-934B-EF83B8DD65D0} ©
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} ©
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai
O42 - Logiciel: Popcorn Time - (.Popcorn Official.) [HKCU][64Bits] -- Popcorn Time ©

---\\ HKCU & HKLM Software Keys (76) - 3s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\ASGVIS
HKLM\SOFTWARE\Wow6432Node\Autodesk
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\BSPACode
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\IVT Corporation
HKLM\SOFTWARE\Wow6432Node\Kaydara
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\McNeel
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic
HKLM\SOFTWARE\Wow6432Node\Ralink
HKLM\SOFTWARE\Wow6432Node\Ralink Corporation
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\RocketLife
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\SOHU
HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visan
HKLM\SOFTWARE\Wow6432Node\WebToGo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Affinix
HKCU\SOFTWARE\Akamai
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Autodesk
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Bugsplat
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\McNeel
HKCU\SOFTWARE\Mootools
HKCU\SOFTWARE\Motion Analysis
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SOHU
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\WebToGo
HKCU\SOFTWARE\WIBU-SYSTEMS
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper

---\\ Contenu des dossiers Programmes (172) - 3s
O43 - CFD: 2015/09/23 19:21:15 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/01/23 01:25:12 - [] D -- C:\Program Files (x86)\Autodesk
O43 - CFD: 2015/09/26 14:14:30 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/09/13 23:18:19 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/09/16 16:07:00 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 2015/09/16 16:06:29 - [] D -- C:\Program Files (x86)\HP
O43 - CFD: 2015/09/16 16:06:57 - [] D -- C:\Program Files (x86)\HP Photo Creations
O43 - CFD: 2015/01/21 06:22:31 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/01/23 00:46:25 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/01/25 22:00:58 - [] D -- C:\Program Files (x86)\InternetEverywhere
O43 - CFD: 2015/09/26 13:06:54 - [] D -- C:\Program Files (x86)\McNeelUpdate
O43 - CFD: 2015/01/21 06:09:52 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/09/21 23:16:26 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2015/01/21 06:09:51 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 2015/01/21 06:07:53 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2015/01/21 06:09:59 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 2015/01/21 17:00:08 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/01/21 06:09:53 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/01/21 06:44:15 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/09/21 23:13:43 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/01/21 06:24:11 - [] D -- C:\Program Files (x86)\Ralink Corporation
O43 - CFD: 2015/01/23 00:41:34 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/09/26 13:06:46 - [] D -- C:\Program Files (x86)\Rhinoceros 5
O43 - CFD: 2015/08/07 19:14:42 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/09/21 23:25:59 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore
O43 - CFD: 2015/09/23 18:44:56 - [] D -- C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2015/01/21 07:41:09 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/01/21 07:33:54 - [] D -- C:\Program Files (x86)\WIBU-SYSTEMS
O43 - CFD: 2015/01/21 07:33:54 - [] D -- C:\Program Files (x86)\WIBUKEY
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2011/04/12 11:16:36 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/01/21 06:25:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/01/21 06:10:43 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/01/21 05:48:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6
O43 - CFD: 2015/01/23 13:54:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
O43 - CFD: 2015/08/10 18:33:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2015/01/24 10:01:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group
O43 - CFD: 2011/04/12 11:28:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/09/13 23:18:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/01/21 07:44:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google SketchUp 8
O43 - CFD: 2015/09/16 16:06:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 2015/01/21 06:43:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/01/25 22:01:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Everywhere
O43 - CFD: 2015/01/22 15:59:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/01/21 06:10:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/09/21 23:16:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/01/21 06:07:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
O43 - CFD: 2015/09/26 13:07:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhinoceros 5
O43 - CFD: 2015/06/02 12:36:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/08/10 18:14:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2011/04/12 11:28:08 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/01/21 07:49:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V-Ray for SketchUp
O43 - CFD: 2015/01/21 07:41:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/01/24 10:01:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey
O43 - CFD: 2015/01/21 06:07:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/09/23 19:17:31 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/01/21 05:47:33 - [0] D -- C:\ProgramData\ALM
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/04/07 15:42:20 - [] D -- C:\ProgramData\ASGVIS
O43 - CFD: 2015/04/07 16:53:39 - [] D -- C:\ProgramData\Autodesk
O43 - CFD: 2015/08/10 18:31:26 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2015/09/26 14:19:39 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 2015/01/20 22:32:24 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/01/23 13:54:50 - [] D -- C:\ProgramData\FARO
O43 - CFD: 2015/01/20 22:32:24 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/01/23 00:23:33 - [] D -- C:\ProgramData\FLEXnet
O43 - CFD: 2015/01/21 07:44:25 - [] D -- C:\ProgramData\Google
O43 - CFD: 2015/01/21 06:24:01 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 2015/09/16 16:05:19 - [] D -- C:\ProgramData\HP
O43 - CFD: 2015/09/16 16:06:57 - [] D -- C:\ProgramData\HP Photo Creations
O43 - CFD: 2015/01/21 06:27:03 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/01/22 15:59:30 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 2015/01/27 16:47:00 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/09/26 13:10:00 - [] D -- C:\ProgramData\McNeel
O43 - CFD: 2015/01/20 22:32:24 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/09/21 23:16:55 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/01/21 06:10:48 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/01/20 22:32:24 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/01/21 07:35:50 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/01/21 06:43:34 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/09/23 19:11:51 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/01/21 06:22:31 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 2015/09/23 19:23:35 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 2015/08/07 19:14:57 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/01/21 06:39:16 - [] D -- C:\ProgramData\Synaptics
O43 - CFD: 2015/01/21 17:30:09 - [0] D -- C:\ProgramData\TEMP
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/09/26 14:14:40 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2015/09/26 14:16:06 - [0] D -- C:\ProgramData\TXQMPC
O43 - CFD: 2015/09/16 16:06:57 - [] D -- C:\ProgramData\Visan
O43 - CFD: 2015/09/23 19:21:15 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/01/23 13:09:13 - [] D -- C:\Program Files (x86)\Common Files\Autodesk Shared
O43 - CFD: 2015/01/21 06:09:51 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2015/01/21 06:41:03 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 2015/09/26 13:06:46 - [] D -- C:\Program Files (x86)\Common Files\McNeel Shared
O43 - CFD: 2015/01/21 06:09:58 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2015/01/21 06:24:28 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/06/02 12:36:46 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/01/21 06:07:43 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/09/23 19:24:22 - [] D -- C:\Users\USER\AppData\Roaming\Adobe
O43 - CFD: 2015/01/23 14:00:18 - [] D -- C:\Users\USER\AppData\Roaming\Autodesk
O43 - CFD: 2015/08/10 18:34:22 - [] D -- C:\Users\USER\AppData\Roaming\AVAST Software
O43 - CFD: 2015/09/25 19:43:25 - [] D -- C:\Users\USER\AppData\Roaming\Enigma Software Group =>.Superfluous.SpyHunter
O43 - CFD: 2015/01/21 07:50:32 - [] D -- C:\Users\USER\AppData\Roaming\Google
O43 - CFD: 2015/09/26 13:13:17 - [] D -- C:\Users\USER\AppData\Roaming\Grasshopper
O43 - CFD: 2015/09/23 18:44:36 - [] D -- C:\Users\USER\AppData\Roaming\HpUpdate
O43 - CFD: 2015/01/20 22:32:56 - [] D -- C:\Users\USER\AppData\Roaming\Identities
O43 - CFD: 2015/01/21 06:22:11 - [] D -- C:\Users\USER\AppData\Roaming\InstallShield
O43 - CFD: 2015/01/21 06:40:22 - [] D -- C:\Users\USER\AppData\Roaming\Intel Corporation
O43 - CFD: 2015/09/03 14:20:55 - [] D -- C:\Users\USER\AppData\Roaming\InternetEverywhere
O43 - CFD: 2015/01/21 05:37:14 - [] D -- C:\Users\USER\AppData\Roaming\Macromedia
O43 - CFD: 2015/09/26 13:09:38 - [] D -- C:\Users\USER\AppData\Roaming\McNeel
O43 - CFD: 2011/04/12 11:28:08 - [0] D -- C:\Users\USER\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/09/14 00:56:05 - [] SD -- C:\Users\USER\AppData\Roaming\Microsoft
O43 - CFD: 2015/01/25 23:57:08 - [] D -- C:\Users\USER\AppData\Roaming\NVIDIA
O43 - CFD: 2015/09/21 23:07:58 - [] D -- C:\Users\USER\AppData\Roaming\Opera Software
O43 - CFD: 2015/09/13 23:45:57 - [] D -- C:\Users\USER\AppData\Roaming\Skype
O43 - CFD: 2015/01/21 06:39:16 - [] D -- C:\Users\USER\AppData\Roaming\Synaptics
O43 - CFD: 2015/09/21 23:13:17 - [] D -- C:\Users\USER\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2015/06/08 08:05:47 - [] D -- C:\Users\USER\AppData\Roaming\vlc
O43 - CFD: 2015/01/21 06:37:03 - [] D -- C:\Users\USER\AppData\Roaming\WinRAR
O43 - CFD: 2015/09/26 14:48:45 - [] D -- C:\Users\USER\AppData\Roaming\ZHP
O43 - CFD: 2015/09/26 13:12:27 - [] D -- C:\Users\USER\AppData\Local\3dmouse
O43 - CFD: 2015/09/26 14:20:09 - [] D -- C:\Users\USER\AppData\Local\Adobe
O43 - CFD: 2015/09/26 12:29:40 - [] D -- C:\Users\USER\AppData\Local\Akamai
O43 - CFD: 2015/01/20 22:32:35 - [0] SHD -- C:\Users\USER\AppData\Local\Application Data
O43 - CFD: 2015/01/21 19:13:17 - [] D -- C:\Users\USER\AppData\Local\Apps
O43 - CFD: 2015/04/07 16:53:36 - [] D -- C:\Users\USER\AppData\Local\Autodesk
O43 - CFD: 2015/01/21 06:39:19 - [] D -- C:\Users\USER\AppData\Local\bluesoleil
O43 - CFD: 2015/06/05 23:44:00 - [] D -- C:\Users\USER\AppData\Local\cache
O43 - CFD: 2015/01/21 19:14:18 - [0] D -- C:\Users\USER\AppData\Local\Deployment
O43 - CFD: 2015/08/05 14:34:26 - [0] D -- C:\Users\USER\AppData\Local\Diagnostics
O43 - CFD: 2015/01/22 15:07:12 - [] D -- C:\Users\USER\AppData\Local\ESET
O43 - CFD: 2015/09/17 23:21:24 - [] D -- C:\Users\USER\AppData\Local\Google
O43 - CFD: 2015/01/20 22:32:35 - [0] SHD -- C:\Users\USER\AppData\Local\Historique
O43 - CFD: 2015/09/16 16:07:00 - [] D -- C:\Users\USER\AppData\Local\HP
O43 - CFD: 2015/09/26 13:09:41 - [] D -- C:\Users\USER\AppData\Local\McNeel
O43 - CFD: 2015/09/21 23:20:26 - [] D -- C:\Users\USER\AppData\Local\Microsoft
O43 - CFD: 2015/06/06 18:23:48 - [] D -- C:\Users\USER\AppData\Local\Microsoft Help
O43 - CFD: 2015/09/21 23:07:58 - [] D -- C:\Users\USER\AppData\Local\Opera Software
O43 - CFD: 2015/09/16 13:05:27 - [] D -- C:\Users\USER\AppData\Local\Popcorn Time
O43 - CFD: 2015/09/26 14:13:48 - [] D -- C:\Users\USER\AppData\Local\Popcorn-Time
O43 - CFD: 2015/09/21 22:46:00 - [] D -- C:\Users\USER\AppData\Local\Programs
O43 - CFD: 2015/06/02 12:37:09 - [] D -- C:\Users\USER\AppData\Local\Skype
O43 - CFD: 2015/09/21 22:56:02 - [] D -- C:\Users\USER\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 2015/09/26 14:48:29 - [] D -- C:\Users\USER\AppData\Local\Temp
O43 - CFD: 2015/01/20 22:32:35 - [0] SHD -- C:\Users\USER\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/09/21 22:46:19 - [] D -- C:\Users\USER\AppData\Local\Temp尰
O43 - CFD: 2015/09/21 22:48:16 - [] D -- C:\Users\USER\AppData\Local\VirtualStore
O43 - CFD: 2015/09/14 00:13:06 - [] D -- C:\Users\USER\AppData\Local\WindowsUpdate
O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/09/21 23:24:34 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/01/21 19:19:48 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/09/14 00:28:33 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
O43 - CFD: 2015/09/21 23:24:34 - [] RD -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/01/21 06:07:21 - [] D -- C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

Re: TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 14:44
Re,

Parfait merci. :)

Fais un diagnostic de ton PC avec ZHPDiag et poste le rapport hébergé : http://www.forum-entraide-informatique. ... -tutoriel/

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 14:37
# AdwCleaner v5.008 - Rapport créé le 26/09/2015 à 14:13:50
# Mis à jour le 18/09/2015 par Xplode
# Base de données : 2015-09-23.1 [Serveur]
# Système d'exploitation : Windows 7 Professional Service Pack 1 (x64)
# Nom d'utilisateur : USER - USER-PC
# Exécuté depuis : C:\Users\USER\Downloads\adwcleaner_5.008.exe
# Option : Nettoyer
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Supprimé : QQPCRTP
[-] Service Supprimé : TAOAccelerator
[-] Service Supprimé : TSDefenseBt
[-] Service Supprimé : TSSysKit
[-] Service Supprimé : QMUdisk
[-] Service Supprimé : TS888x64
[-] Service Supprimé : QQSysMonX64
[-] Service Supprimé : TSCPM
[-] Service Supprimé : TFsFlt
[-] Service Supprimé : TAOFrame
[-] Service Supprimé : TAOKernelDriver
[-] Service Supprimé : TSSKX64
[-] Service Supprimé : bozinopy
[-] Service Supprimé : gyvixodu

***** [ Dossiers ] *****

[#] Dossier Supprimé : C:\Program Files (x86)\tencent
[-] Dossier Supprimé : C:\Program Files (x86)\40A75084-1442869837-E211-9B61-F3347C4D2F52
[-] Dossier Supprimé : C:\Program Files (x86)\Common Files\tencent
[#] Dossier Supprimé : C:\Program Files\Common Files\tencent
[#] Dossier Supprimé : C:\ProgramData\tencent
[-] Dossier Supprimé : C:\ProgramData\TXQMPC
[-] Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\????
[-] Dossier Supprimé : C:\Users\USER\AppData\Local\Temp\tencent
[#] Dossier Supprimé : C:\USERs\USER\AppData\Roaming\tencent
[-] Dossier Supprimé : C:\USERs\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\????
[-] Dossier Supprimé : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\tencent

***** [ Fichiers ] *****

[-] Fichier Supprimé : C:\USERs\USER\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\USER Pinned\StartMenu\????.lnk
[-] Fichier Supprimé : C:\USERs\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\????\????\????.lnk
[-] Fichier Supprimé : C:\Windows\Sysnative\drivers\TAOAccelerator64.sys
[-] Fichier Supprimé : C:\Windows\Sysnative\drivers\TSSKX64.sys
[-] Fichier Supprimé : C:\Windows\Sysnative\drivers\TAOKernel64.sys
[-] Fichier Supprimé : C:\Windows\Sysnative\drivers\TFsFltX64.sys
[-] Fichier Supprimé : C:\Windows\SysWOW64\drivers\TS888x64.sys

***** [ Raccourcis ] *****


***** [ Tâches planifiées ] *****

[-] Tâche Supprimée : SoftwareUpdateTaskMachineCore
[-] Tâche Supprimée : amiupdaterExd
[-] Tâche Supprimée : amiupdaterExi

***** [ Registre ] *****

[-] Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Clé Supprimée : HKLM\SOFTWARE\CLASSES\METNSD
[-] Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
[-] Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
[-] Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@qq.com/QQPCMgr
[-] Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mbot_fr_014010094]
[-] Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}
[-] Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}
[-] Clé Supprimée : HKCU\Software\DAILYPCCLEAN
[-] Clé Supprimée : HKLM\SOFTWARE\Tutorials
[-] Clé Supprimée : HKLM\SOFTWARE\oursurfingSoftware
[-] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[!] Clé Non Supprimée : [x64] HKCU\Software\DAILYPCCLEAN
[-] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\softwareupdate.exe
[-] Donnée Restaurée : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Donnée Restaurée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Donnée Restaurée : HKU\S-1-5-21-3899685337-620316259-3305425565-1000\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Donnée Restaurée : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []

***** [ Navigateurs ] *****

[-] [C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider] Supprimé : hxxp://www.oursurfing.com/webfavicon.ico
[-] [C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Supprimé : bopakagnckmlgajfccecajhnimjiiedh
[-] [C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Supprimé : fcfenmboojpjinhpgggodefccipikbpd
[-] [C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Supprimé : ooebklgpfnbcnpokahmdidgbmlcdepkm

*************************

:: Paramètres Winsock réinitialisés

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [5073 octets] ##########

Re: TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 14:34
Re,

D'accord, et tu pourrais me poster le rapport de nettoyage qui se trouve dans le dossier C:\AdwCleaner\ ?

Clique sur Ordinateur, ensuite tu ouvres ton disque C et puis le dossier AdwCleaner qui s'y trouve. ;)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 14:30
Il ne s'est pas ouvert automatiquement après le redémarrage mais j'ai relancé un scanne et j'ai cliqué sur rapport et j'ai trouvé ça :

NB : je ne m'y connais pas en informatique donc ça va être un peu difficile pour toi :)

# AdwCleaner v5.008 - Rapport créé le 26/09/2015 à 14:27:58
# Mis à jour le 18/09/2015 par Xplode
# Base de données : 2015-09-23.1 [Serveur]
# Système d'exploitation : Windows 7 Professional Service Pack 1 (x64)
# Nom d'utilisateur : USER - USER-PC
# Exécuté depuis : C:\Users\USER\Downloads\adwcleaner_5.008.exe
# Option : Scanner
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Dossiers ] *****

Dossier Trouvé : C:\Program Files (x86)\tencent
Dossier Trouvé : C:\Program Files\Common Files\tencent
Dossier Trouvé : C:\ProgramData\tencent
Dossier Trouvé : C:\ProgramData\TXQMPC
Dossier Trouvé : C:\USERs\USER\AppData\Roaming\tencent

***** [ Fichiers ] *****

Fichier Trouvé : C:\Windows\Sysnative\drivers\TFsFltX64.sys

***** [ Raccourcis ] *****


***** [ Tâches planifiées ] *****


***** [ Registre ] *****

Donnée Trouvée : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.hao123.com/?tn=95751091_hao_pg
Donnée Trouvée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.hao123.com/?tn=95751091_hao_pg
Donnée Trouvée : HKU\S-1-5-21-3899685337-620316259-3305425565-1000\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.hao123.com/?tn=95751091_hao_pg

***** [ Navigateurs ] *****

[C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Trouvée : fcfenmboojpjinhpgggodefccipikbpd
[C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Trouvée : ooebklgpfnbcnpokahmdidgbmlcdepkm

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1590 octets] ##########

Re: TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 14:28
Re,

Le rapport s'ouvre automatiquement mais il est aussi sauvegardé sous C:\AdwCleaner\AdwCleaner[S0].txt comme indiqué dans le tutoriel. ;)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 14:25
AdwCleaner s'ouvre automatiquement après le redémarrage ou je dois chercher le rapport ?

Re: TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 14:17
D'accord. :)

Gabriel.

Re: TENCENT QQ suppression

par Merry Mary » sam. 26 sept. 2015 14:12
Ok merci je fais ça tout de suite.

Re: ! Urgent ! TENCENT QQ suppression

par 2011N2 » sam. 26 sept. 2015 13:50
Bonjour,

:bienvenue:

Passe AdwCleaner et poste le rapport : http://www.forum-entraide-informatique. ... -tutoriel/

Gabriel.

TENCENT QQ suppression

par Merry Mary » ven. 25 sept. 2015 22:47
Bonsoir, j'ai besoin d'aide et de suivi pour supprimer le VIRUS TENCENT QQ qui s'est implanté dans mon ordinateur après avoir télécharger ATOM PACK v1.5 Merci !
ofiice pro plus 2024

Bonjour, Je voudrais avoir un lien pour telecharge[…]

Bug PC

Re Nous allons attendre une journée ou deu[…]

désinstaller sophos

même en mode sans echec?

To write an engaging essay, focus on a clear struc[…]