R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.v9.com => Infection PUP (PUP.V9Software) R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 0 => Infection Rogue (Possible) O2 - BHO: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) -- C:\Program Files\IObit Toolbar\IE\6.2\iobitToolbarIE.dll => Infection PUP (PUP.Dealio)* O2 - BHO: DataMngr - {9D717F81-9148-4f12-8568-69135F087DB0} . (...) -- C:\PROGRA~1\WI9130~1\Datamngr\BROWSE~1.DLL (.not file.) => Infection PUP (PUP.BearShare)* O2 - BHO: DataMngr - {B939CF93-F2CB-443d-956C-DC523D85C9DB} . (.MusicLab, LLC - Url Helper.) -- C:\Program Files\BearShare Applications\MediaBar\Datamngr\BrowserConnection.dll => Infection PUP (PUP.BearShare)* O2 - BHO: Wincore Mediabar - {c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} . (.Pas de propriétaire - dtx Dynamic Link Library.) -- C:\Program Files\BearShare Applications\MediaBar\Datamngr\ToolBar\wincorebsdtx.dll => Infection PUP (PUP.BearShare)* O3 - Toolbar: Searchqu Toolbar - [HKLM]{99079a25-328f-4bd4-be04-00955acaa0a7} . (...) -- C:\Program Files\WI9130~1\Datamngr\ToolBar\searchqudtx.dll => Infection PUP (PUP.BearShare)* O3 - Toolbar: IObit Toolbar - [HKLM]{0BDA0769-FD72-49F4-9266-E1FB004F4D8F} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) -- C:\Program Files\IObit Toolbar\IE\6.2\iobitToolbarIE.dll => Infection PUP (PUP.Dealio)* O3 - Toolbar: (no name) - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} Clé orpheline => Infection BT (Adware.SEOToolbar) O4 - HKLM\..\Run: [DATAMNGR] C:\Program Files\WI9130~1\Datamngr\DATAMN~1.exe (.not file.) => Infection PUP (PUP.BearShare)* O42 - Logiciel: IObit Toolbar v6.2 - (.Spigot, Inc..) [HKLM] -- {835BCA58-EBE8-415B-8E7F-457F76F15821} => Infection PUP (PUP.Dealio)* O42 - Logiciel: Tuto Firefox1.0.0.0 - (.Tuto4PC.) [HKLM] -- Tuto Firefox_is1 => Infection PUP (PUP.AgenceExcusive)* O42 - Logiciel: Web Assistant 2.0.0.485 - (.IncrediBar.) [HKLM] -- {336D0C35-8A85-403a-B9D2-65C292C39087}_is1 => Infection PUP (Adware.IncrediBar)* O42 - Logiciel: Wincore MediaBar - (.Musiclab, LLC.) [HKLM] -- Wincore MediaBar => Infection PUP (PUP.iMesh) O42 - Logiciel: Windows Searchqu Toolbar - (.Bandoo Media Inc.) [HKLM] -- Searchqu Toolbar => Infection PUP (Adware.Bandoo)* [HKCU\Software\AppDataLow\Software\PriceGong] => Infection PUP (Adware.PriceGong)* [HKCU\Software\AppDataLow\Software\Search Settings] => Infection BT (PUP.Dealio)* [HKCU\Software\AppDataLow\Software\mediabarbs] => Infection PUP (PUP.BearShare) [HKCU\Software\AppDataLow\Software\searchqutoolbar] => Infection PUP (Adware.Bandoo)* [HKCU\Software\BearShare] => Infection PUP (PUP.BearShare)* [HKCU\Software\Blabbers] => Infection PUP (PUP.Blabbers)* [HKCU\Software\BrowserCompanion] => Infection PUP (PUP.Blabbers)* [HKCU\Software\DataMngr] => Infection PUP (PUP.BearShare)* [HKCU\Software\DataMngr_Toolbar] => Infection PUP (PUP.BearShare)* [HKCU\Software\InstallCore] => Infection PUP (Adware.InstallCore) [HKCU\Software\OfferBox] => Infection PUP (PUP.OfferBox)* [HKCU\Software\Search Settings] => Infection BT (PUP.Dealio)* [HKCU\Software\Tuto4PC] => Infection PUP (PUP.AgenceExcusive)* [HKCU\Software\Tutorials] => Infection BT (Spyware.AgenceExclusive) [HKCU\Software\WNLT] => Infection PUP (Adware.IncrediBar) [HKLM\Software\AedgePerformanceBCN] => Infection BT (Adware.SPointer) [HKLM\Software\BearShareMediabarTb] => Infection PUP (PUP.BearShare)* [HKLM\Software\DataMngr] => Infection PUP (PUP.BearShare)* [HKLM\Software\Iminent] => Infection PUP (Adware.IMBooster)* [HKLM\Software\OfferBox] => Infection PUP (PUP.OfferBox)* [HKLM\Software\Search Settings] => Infection BT (PUP.Dealio)* [HKLM\Software\SearchquMediabarTb] => Infection PUP (Adware.Bandoo)* [HKLM\Software\TRYMEDIA SYSTEMS] => Infection PUP (Adware.TryMedia) [HKLM\Software\Web Assistant] => Infection PUP (Adware.IncrediBar)* O43 - CFD: 01/01/2012 - 01:15:11 - [5,939] ----D C:\Program Files\BearShare Applications => Infection PUP (PUP.BearShare)* O43 - CFD: 19/02/2013 - 22:25:30 - [0,006] ----D C:\Program Files\tuto4pc_fr_24 => Infection PUP (PUP.AgenceExcusive)* O43 - CFD: 19/02/2013 - 19:31:57 - [0,180] ----D C:\Program Files\Web Assistant(458) => Infection PUP (Adware.IncrediBar)* O43 - CFD: 17/02/2013 - 14:35:40 - [0] ----D C:\ProgramData\SpeedMaxPc => Infection PUP (PUP.SpeedMaxPc)* O43 - CFD: 31/05/2012 - 14:10:00 - [0,323] ----D C:\Users\françois\AppData\Roaming\OfferBox => Infection PUP (PUP.OfferBox)* O43 - CFD: 04/06/2012 - 15:10:19 - [89,314] ----D C:\Users\françois\AppData\Roaming\OpenCandy => Infection PUP (Adware.OpenCandy)* O43 - CFD: 17/02/2013 - 14:28:37 - [0] ----D C:\Users\françois\AppData\Roaming\SpeedMaxPc => Infection PUP (PUP.SpeedMaxPc)* O43 - CFD: 19/05/2012 - 10:44:55 - [0] ----D C:\Users\françois\AppData\Roaming\Tuto4pc => Infection PUP (PUP.AgenceExcusive)* O43 - CFD: 19/02/2013 - 23:00:17 - [0,000] ----D C:\Users\françois\AppData\Local\tuto4pc_fr_24 => Infection PUP (PUP.AgenceExcusive)* O69 - SBI: SearchScopes [HKCU] {8B63A8D6-BBED-4341-8867-790E5F524C96} - (MyStart Search) - http://mystart.incredimail.com => Infection PUP (Spyware.VMNToolbar)* O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} - (Search Results) - http://dts.search-results.com => Infection PUP (Adware.IMBooster)* O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2413} - (Search Results) - http://dts.search-results.com => Infection PUP (Adware.IMBooster)* O87 - FAEL: "{5EC13161-D2DE-4CC7-A24A-50F1C32A5995}" | In - Public - P6 - TRUE | .(.Visicom Media Inc. - DTX broker.) -- C:\Program Files\BearShare Applications\MediaBar\Datamngr\ToolBar\dtUser.exe => Infection PUP (PUP.BearShare)* O87 - FAEL: "{D23FDE92-E497-4184-997A-5DF320B3496F}" | In - Public - P17 - TRUE | .(.Visicom Media Inc. - DTX broker.) -- C:\Program Files\BearShare Applications\MediaBar\Datamngr\ToolBar\dtUser.exe => Infection PUP (PUP.BearShare)* [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] => Infection BT (Adware.ShopperReports) [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] => Infection BT (Adware.ShopperReports) [HKLM\Software\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}] => Infection PUP (Adware.Bandoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2F603A45-D956-496B-81B5-50D782424976}] => Infection PUP (PUP.SweetIM) [HKLM\Software\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}] => Infection BT (Adware.SocialSkinz) [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}] => Infection BT (Adware.IMBooster) [HKLM\Software\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}] => Infection PUP (Adware.Bandoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] => Infection BT (Adware.Bandoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] => Infection BT (Adware.Bandoo) [HKLM\Software\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] => Infection BT (Adware.Bandoo) [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] => Infection BT (Adware.Bandoo) [HKLM\Software\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}] => Infection PUP (PUP.Dealio) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0}] => Infection PUP (Adware.Bandoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4F12-8568-69135F087DB0}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}] => Infection PUP (Adware.Bandoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ae07101b-46d4-4a98-af68-0333ea26e113}] => Infection BT (Adware.SEOToolbar) [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{B85C4CB2-B352-4BD8-818C-BCE353599107}] => Infection PUP (PUP.SweetIM) [HKLM\Software\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}] => Infection PUP (Toolbar.Babylon) [HKLM\Software\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\CLSID\{D433A9D0-8267-40CB-8AD5-24F22FA5373F}] => Infection BT (Adware.SocialSkinz) [HKLM\Software\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}] => Infection BT (Adware.IMBooster) [HKLM\Software\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] => Infection PUP (Adware.Yontoo) [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] => Infection PUP (Adware.Yontoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{FB697452-8CA4-46B4-98B1-165C922A2EF3}] => Infection PUP (PUP.SweetIM) [HKLM\Software\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\AppID\BrowserConnection.dll] => Infection PUP (Toolbar.Babylon)* [HKLM\Software\Classes\AppID\DNSBHO.dll] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\AppID\esrv.EXE] => Infection PUP (PUP.Funmoods) [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\OfferBox] => Infection PUP (PUP.OfferBox)* [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\pricegong] => Infection PUP (Adware.PriceGong)* [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Wincore MediaBar] => Infection PUP (PUP.iMesh) [HKLM\Software\Classes\BrowserConnection.Loader] => Infection PUP (Toolbar.Babylon)* [HKLM\Software\Classes\BrowserConnection.Loader.1] => Infection PUP (Toolbar.Babylon)* [HKLM\Software\Classes\DnsBHO.BHO] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\DnsBHO.BHO.1] => Infection PUP (Adware.Bandoo) [HKLM\Software\Classes\SearchQUIEHelper.DNSGuard] => Infection PUP (Adware.Bandoo)* [HKLM\Software\Classes\SearchQUIEHelper.DNSGuard.1] => Infection PUP (Adware.Bandoo)* [HKLM\Software\AedgePerformanceBCN] => Infection BT (Adware.SPointer) [HKLM\Software\BearShareMediabarTb] => Infection PUP (PUP.BearShare)* [HKCU\Software\Blabbers] => Infection PUP (PUP.Blabbers)* [HKCU\Software\DataMngr] => Infection PUP (PUP.BearShare)* [HKLM\Software\DataMngr] => Infection PUP (PUP.BearShare)* [HKCU\Software\DataMngr_Toolbar] => Infection PUP (PUP.BearShare)* [HKLM\Software\Iminent] => Infection PUP (Adware.IMBooster)* [HKCU\Software\OfferBox] => Infection PUP (PUP.OfferBox)* [HKLM\Software\OfferBox] => Infection PUP (PUP.OfferBox)* [HKCU\Software\AppDataLow\Software\PriceGong] => Infection PUP (Adware.PriceGong)* [HKCU\Software\Search Settings] => Infection BT (PUP.Dealio)* [HKCU\Software\AppDataLow\Software\Search Settings] => Infection BT (PUP.Dealio)* [HKLM\Software\Search Settings] => Infection BT (PUP.Dealio)* [HKLM\Software\SearchquMediabarTb] => Infection PUP (Adware.Bandoo)* [HKCU\Software\AppDataLow\Software\searchqutoolbar] => Infection PUP (Adware.Bandoo)* [HKCU\Software\Tuto4pc] => Infection PUP (PUP.AgenceExcusive)* [HKCU\Software\Tutorials] => Infection BT (Spyware.AgenceExclusive) [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Tutorials] => Infection PUP (Spyware.AgenceExclusive) [HKLM\Software\Web Assistant] => Infection PUP (Adware.IncrediBar)* [HKCU\Software\WNLT] => Infection PUP (Adware.IncrediBar) [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1] => Infection BT (Adware.IncrediBar) [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Tuto Firefox_is1] => Infection PUP (Spyware.AgenceExclusive) [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Wincore MediaBar] => Infection PUP (PUP.iMesh) [HKLM\Software\Classes\Prod.cap] => Infection PUP (Adware.Bandoo) [HKCU\Software\InstallCore] => Infection PUP (Adware.InstallCore) [HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] => Infection PUP (Adware.Yontoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7AF277D-1466-4A7B-93AF-B043984A5671}] => Infection PUP (Adware.Yontoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7AF277D-1466-4A7B-93AF-B043984A5671}] => Infection PUP (Adware.Yontoo) [HKLM\Software\Classes\CLSID\{A7AF277D-1466-4A7B-93AF-B043984A5671}] => Infection PUP (Adware.Yontoo) [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7AF277D-1466-4A7B-93AF-B043984A5671}] => Infection PUP (Adware.Yontoo) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C2D64FF7-0AB8-4263-89C9-EA3B0F8F050C}] => Infection PUP (PUP.BearShare) [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C2D64FF7-0AB8-4263-89C9-EA3B0F8F050C}] => Infection PUP (PUP.BearShare) [HKLM\Software\Classes\CLSID\{C2D64FF7-0AB8-4263-89C9-EA3B0F8F050C}] => Infection PUP (PUP.BearShare) [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2D64FF7-0AB8-4263-89C9-EA3B0F8F050C}] => Infection PUP (PUP.BearShare) [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C2D64FF7-0AB8-4263-89C9-EA3B0F8F050C}] => Infection PUP (PUP.BearShare) [HKLM\SoftwareVDownloader\OpenCandy] => Infection PUP (Adware.OpenCandy)* [HKLM\Software\Classes\Tuto4pcFrSoftonicBHO.Tuto4pcBHO] => Infection PUP (PUP.AgenceExcusive)* [HKLM\Software\Classes\Tuto4pcFrSoftonicBHO.Tuto4pcBHO.1] => Infection PUP (PUP.AgenceExcusive)* [HKLM\Software\Classes\AppID\Tuto4pcFrSoftonicBHO.DLL] => Infection PUP (PUP.AgenceExcusive)* [HKLM\Software\Classes\AppID\Tuto4pcFrSolimbaBHO.DLL] => Infection PUP (PUP.AgenceExcusive)* [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\Arpcache\Searchqu Toolbar] => Infection PUP (Adware.Bandoo)* [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\Arpcache\Tuto4pc_is1] => Infection PUP (PUP.AgenceExcusive)* [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu Toolbar] => Infection PUP (Adware.Bandoo)* [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD22}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2413}] => Infection PUP (Adware.Bandoo) [HKLM\Software\Microsoft\Windows\CurrentVersion\Run]:DataMngr => Infection PUP (PUP.BearShare)* C:\Program Files\BearShare Applications => Infection PUP (PUP.BearShare)* C:\ProgramData\SpeedMaxPc => Infection PUP (PUP.SpeedMaxPc)* C:\Users\françois\AppData\Roaming\OfferBox => Infection PUP (PUP.OfferBox)* C:\Users\françois\AppData\Roaming\OpenCandy => Infection PUP (Adware.OpenCandy)* C:\Users\françois\AppData\Roaming\SpeedMaxPc => Infection PUP (PUP.SpeedMaxPc)* C:\Users\françois\AppData\Roaming\Tuto4PC => Infection PUP (PUP.AgenceExcusive)* C:\Users\françois\AppData\LocalLow\Toolbar4 => Infection BT (Adware.SocialSkinz) C:\Users\françois\AppData\LocalLow\wincorebsband => Infection PUP (PUP.iMesh) C:\Users\françois\AppData\LocalLow\mediabarbs => Infection PUP (PUP.BearShare) MD5.3AD1E72748978D8B0B3B674741E4C3E2] - (.Pas de propriétaire - ToolbarU Application.) -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [968880] [PID.4036] P2 - FPN: [HKLM] [@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin] - (...) -- C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\npsitesafety.dll (.not file.) => Toolbar.AVGSearch R3 - URLSearchHook: (no name) - {6ec85fcf-87ad-41d7-ae1f-f116f8ad4848} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.01.) (No version) -- (.not file.) => Avanquest FR Toolbar O2 - BHO: (no name) - {6ec85fcf-87ad-41d7-ae1f-f116f8ad4848} Clé orpheline => Avanquest FR Toolbar O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} . (...) -- C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll (.not file.) => Toolbar.AVGSearch O2 - BHO: TBSB05810 - {A7AF277D-1466-4A7B-93AF-B043984A5671} . (...) -- C:\Program Files\Glarysoft Toolbar\tbcore3.dll (.not file.) => Toolbar.Agent* O3 - Toolbar: (no name) - [HKLM]{6ec85fcf-87ad-41d7-ae1f-f116f8ad4848} Clé orpheline => Avanquest FR Toolbar O3 - Toolbar: Glarysoft Toolbar - [HKLM]{32D47EA5-9473-4CAD-805D-9999F15D5AE2} . (...) -- C:\Program Files\Glarysoft Toolbar\tbcore3.dll => Toolbar.Glarysoft O3 - Toolbar: AVG Security Toolbar - [HKLM]{95B7759C-8C7F-4BF1-B163-73684A933233} . (...) -- C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll => Toolbar.AVGSearch O23 - Service: (vToolbarUpdater14.2.0) . (.Pas de propriétaire - ToolbarU Application.) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe O42 - Logiciel: AVG Security Toolbar - (.AVG Technologies.) [HKLM] -- AVG Secure Search => Toolbar.AVGSearch O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM] -- {16D0F2D2-242C-4885-BEF1-4B1655C141AE} O42 - Logiciel: Glarysoft Toolbar - (.Glarysoft Ltd.) [HKLM] -- Glarysoft Toolbar => Conduit Glarysoft Toolbar O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} => Toolbar.Google [HKCU\Software\APN PIP] => Toolbar.Ask [HKCU\Software\AVG Secure Search] => Toolbar.AVGSearch [HKCU\Software\AppDataLow\Software\Avanquest_FR] => Avanquest_FR Toolbar [HKCU\Software\Softonic] => Toolbar.Conduit* [HKCU\Software\YahooPartnerToolbar] => Toolbar.Yahoo [HKLM\Software\AVG Security Toolbar] => Toolbar.AVGSearch [HKLM\Software\Avanquest_FR] => Avanquest_FR Toolbar [HKLM\Software\PIP] => Toolbar.Ask O43 - CFD: 19/02/2013 - 23:34:54 - [1,244] ----D C:\Program Files\IObit Toolbar => IObit Toolbar O43 - CFD: 21/02/2013 - 00:58:44 - [0,925] ----D C:\Program Files\Common Files\AVG Secure Search => Toolbar.AVGSearch O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} [DefaultScope] - (AVG Secure Search) - http://isearch.avg.com => Toolbar.AVGSearch O69 - SBI: SearchScopes [HKUS\.DEFAULT] {CF739809-1C6C-47C0-85B9-569DBB141420} - (Ask Search) - http://toolbar.ask.com => Toolbar.Ask O69 - SBI: SearchScopes [HKUS\S-1-5-18] {CF739809-1C6C-47C0-85B9-569DBB141420} - (Ask Search) - http://toolbar.ask.com => Toolbar.Ask [HKLM\Software\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}] => Toolbar.Agent [HKLM\Software\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}] => Toolbar.Agent [HKLM\Software\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}] => Toolbar.ViProtocol [HKLM\Software\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}] => Toolbar.ViProtocol [HKLM\Software\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}] => Toolbar.ViProtocol [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6ec85fcf-87ad-41d7-ae1f-f116f8ad4848}] => Avanquest FR Toolbar [HKLM\Software\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}] => Toolbar.ViProtocol [HKLM\Software\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}] => Toolbar.Agent [HKLM\Software\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] => Toolbar.AVGSearch [HKLM\Software\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}] => Toolbar.Conduit [HKLM\Software\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}] => Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}] => Toolbar.Conduit [HKLM\Software\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}] => Toolbar.Conduit [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}] => Toolbar.Agent [HKLM\Software\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}] => Toolbar.Agent [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}] => Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}] => Toolbar.Agent [HKLM\Software\Classes\AppID\ScriptHelper.EXE] => Toolbar.Agent [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AVG Secure Search] => Toolbar.AVGSearch [HKLM\Software\Classes\AVG Secure Search.BrowserWndAPI] => Toolbar.AVGSearch [HKLM\Software\Classes\AVG Secure Search.PugiObj] => Toolbar.AVGSearch [HKLM\Software\Classes\AVG Secure Search.PugiObj.1] => Toolbar.AVGSearch [HKLM\Software\Classes\ScriptHelper.ScriptHelperApi] => Toolbar.Agent [HKLM\Software\Classes\ScriptHelper.ScriptHelperApi.1] => Toolbar.Agent [HKLM\Software\Classes\ViProtocol.ViProtocolOLE] => Toolbar.ViProtocol [HKLM\Software\Classes\ViProtocol.ViProtocolOLE.1] => Toolbar.ViProtocol [HKCU\Software\APN PIP] => Toolbar.Ask [HKCU\Software\AppDataLow\Software\Avanquest_FR] => Avanquest_FR Toolbar [HKLM\Software\Avanquest_FR] => Avanquest_FR Toolbar [HKLM\Software\PIP] => Toolbar.Ask [HKCU\Software\Softonic] => Toolbar.Conduit* [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search] => Toolbar.AVGSearch [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32D47EA5-9473-4CAD-805D-9999F15D5AE2}] => Toolbar.Glarysoft [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32D47EA5-9473-4CAD-805D-9999F15D5AE2}] => Toolbar.Glarysoft [HKLM\Software\Classes\CLSID\{32D47EA5-9473-4CAD-805D-9999F15D5AE2}] => Toolbar.Glarysoft [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] => Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] => Toolbar.Agent [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] => Toolbar.Bing [HKLM\Software\Classes\TBSB05810.IEToolbar] => Toolbar.Agent* [HKLM\Software\Classes\TBSB05810.IEToolbar.1] => Toolbar.Agent* [HKLM\Software\Classes\TBSB05810.TBSB05810] => Toolbar.Agent* [HKLM\Software\Classes\TBSB05810.TBSB05810.3] => Toolbar.Agent* [HKLM\Software\Classes\Toolbar3.TBSB05810] => Toolbar.Agent* [HKLM\Software\Classes\Toolbar3.TBSB05810.1] => Toolbar.Agent* [HKLM\Software\Classes\Toolbar3.SearchProviderManager] => Toolbar.Agent* [HKLM\Software\Classes\Toolbar3.SearchProviderManager.1] => Toolbar.Agent* [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{6EC85FCF-87AD-41D7-AE1F-F116F8AD4848} => Toolbar.AvanquestFR C:\Program Files\Common Files\AVG Secure Search => Toolbar.AVGSearch C:\Users\françois\AppData\LocalLow\AVG Secure Search => Toolbar.AVGSearch O90 - PUC: "2D2F0D61C2425884EB1FB461551C14EA" . (.Bing Bar.) -- C:\Windows\Installer\{16D0F2D2-242C-4885-BEF1-4B1655C141AE}\icon_installer_ico SR - | Auto 968880 | (vToolbarUpdater14.2.0) . (...) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe => Toolbar.AVGSearch MD5.B5A4EBA9487F08BECC843A87422B8052] - (.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [3825176] [PID.5728] [MD5.F023A14FE899F5401935CAC119A723CE] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\françois\AppData\Local\Akamai\netsession_win.exe [4441920] [PID.5784] [MD5.452DB84283EB2F043827AC95D62CE19C] - (.Safer-Networking Ltd. - Update.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [3487240] [PID.1696] [MD5.776ACEFA0CA9DF0FAA51A5FB2F435705] - (.Microsoft Corporation - Microsoft ASP.NET State Server.) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [35160] [PID.2532] [MD5.206387AB881E93A1A6EB89966C8651F1] - (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392] [PID.3412] => Spybot-S&D Cleaning* [MD5.A529CFE32565C0B145578FFB2B32C9A5] - (.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1369624] [PID.3096] => Spybot-S&D Cleaning* [MD5.CB63BDB77BB86549FC3303C2F11EDC18] - (.Safer-Networking Ltd. - Windows Security Center integration..) -- C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [168384] [PID.3560] => Spybot-S&D Cleaning* R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank O4 - HKLM\..\Run: [SDTray] . (.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe => Spybot-S&D Cleaning* O4 - HKCU\..\Run: [Spybot-S&D Cleaning] . (.Safer-Networking Ltd. - Search results cleaner.) -- C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe => Spybot-S&D Cleaning* O4 - HKUS\S-1-5-21-102699403-687965456-1436262863-1000\..\Run: [Spybot-S&D Cleaning] . (.Safer-Networking Ltd. - Search results cleaner.) -- C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe => Spybot-S&D Cleaning* O4 - Global Startup: C:\Users\françois\Desktop\Aide et support - Raccourci.lnk - Clé orpheline => Orphean Key not necessary O4 - Global Startup: C:\Users\françois\Desktop\Lecteur CD - Raccourci.lnk - Clé orpheline => Orphean Key not necessary O4 - Global Startup: C:\Users\françois\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher (2).lnk - Clé orpheline => Orphean Key not necessary O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe => Spybot-S&D Cleaning* O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe => Spybot-S&D Cleaning* O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) . (.Safer-Networking Ltd. - Windows Security Center integration..) - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe => Spybot-S&D Cleaning* O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job => Safer Networking Ltd - Spybot S&D* O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job => Safer Networking Ltd - Spybot S&D* O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job => Safer Networking Ltd - Spybot S&D* [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Weekly)] (...) -- C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) => Lavasoft AB Ad-Aware [MD5.452DB84283EB2F043827AC95D62CE19C] [APT] [Check for updates (Spybot - Search & Destroy)] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [MD5.36A82C214B46787385F3B0CD02ECAA88] [APT] [Refresh immunization (Spybot - Search & Destroy)] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe => Spybot-S&D Cleaning* [MD5.E4A0900CF535888DDD85B10040CA3E34] [APT] [Scan the system (Spybot - Search & Destroy)] (.Safer-Networking Ltd..) -- C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe => Spybot-S&D Cleaning* [MD5.00000000000000000000000000000000] [APT] [{116D3342-E9F7-4EAC-B422-40CB32B00259}] (...) -- C:\Users\françois\Downloads\autodiagnostic.exe (.not file.) => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{54987412-FAD3-4865-8F21-07A6DA1CD1A7}] (...) -- C:\Program Files\AVANQU~1\UNWISE.exe (.not file.) => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{A1FFCEAD-8F97-44BB-A0AE-2E64416BB91A}] (...) -- C:\Users\françois\Downloads\Alchemy-007.2\Alchemy\Alchemy.exe (.not file.) => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{AC10E7EE-9619-4AD3-A503-E37CF327DD22}] (...) -- C:\Users\françois\Downloads\Codecs\WM9Codecs.exe (.not file.) => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{EE076242-8D9C-4B20-A12B-A7115369817E}] (...) -- C:\Users\françois\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7Z0KBGKM\autodiagnostic[2].exe (.not file.) => Microsoft Internet Explorer Fichiers Temporaires [MD5.00000000000000000000000000000000] [APT] [{F5F1DC3E-9932-47B4-8AC6-CCA16387B036}] (...) -- C:\Users\françois\Downloads\wmpplugin.exe (.not file.) => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{F836B7FD-6EA7-484D-857D-5E3484219AE5}] (...) -- C:\Users\françois\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7Z0KBGKM\autodiagnostic[1].exe (.not file.) => Microsoft Internet Explorer Fichiers Temporaires O41 - Driver: (A2DDA) . (. - .) - C:\Program Files\Emsisoft Anti-Malware\a2ddax86.sys (.not file.) => Fichier absent O41 - Driver: (a2injectiondriver) . (. - .) - C:\Program Files\Emsisoft Anti-Malware\a2dix86.sys (.not file.) => Fichier absent O41 - Driver: (a2util) . (. - .) - C:\Program Files\Emsisoft Anti-Malware\a2util32.sys (.not file.) => Fichier absent O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU] -- Akamai => Akamai O42 - Logiciel: Spybot - Search & Destroy - (.Safer-Networking Ltd..) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 => Spybot-S&D Cleaning* [HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2] => Messaging.Incredimail* [HKCU\Software\IGearSettings] => IGearSettings [HKCU\Software\IM] => Messaging.IncrediMail [HKLM\Software\ImInstaller] => Messenging.IncrediMail [HKLM\Software\PCTools] => PCTools O43 - CFD: 19/02/2013 - 19:31:57 - [10,989] ----D C:\Program Files\Spybot - Search & Destroy => Safer Networking Ltd - Spybot S&D* O43 - CFD: 19/02/2013 - 23:34:57 - [162,766] ----D C:\Program Files\Spybot - Search & Destroy 2 => Safer Networking Ltd - Spybot S&D* O43 - CFD: 27/08/2009 - 10:28:20 - [0,000] ----D C:\ProgramData\IM => Messaging.IncrediMail O43 - CFD: 20/02/2013 - 00:30:32 - [0,472] ----D C:\ProgramData\Spybot - Search & Destroy => Safer Networking Ltd - Spybot S&D* O43 - CFD: 17/02/2012 - 11:44:20 - [0] ----D C:\Users\françois\AppData\Local\._LiveCode_ => Empty Folder not necessary O43 - CFD: 01/01/2012 - 00:31:24 - [0,505] ----D C:\Users\françois\AppData\Local\adaware => Lavasoft O43 - CFD: 19/02/2013 - 23:34:59 - [24,576] ----D C:\Users\françois\AppData\Local\Akamai O43 - CFD: 04/02/2011 - 13:49:06 - [19,567] ----D C:\Users\françois\AppData\Local\IM => Messaging.IncrediMail O43 - CFD: 03/11/2011 - 14:59:08 - [0,000] ----D C:\Users\françois\AppData\Local\rencontreshard => RencontresHard O43 - CFD: 10/01/2012 - 18:07:59 - [0] ----D C:\Users\françois\AppData\Local\{0FD990A8-EE39-4008-ABCE-2B25A74BAD03} => Empty Folder not necessary O43 - CFD: 10/01/2012 - 18:07:37 - [0] ----D C:\Users\françois\AppData\Local\{11788C87-FF89-41AF-A3D5-7E52C203138B} => Empty Folder not necessary O43 - CFD: 09/06/2012 - 14:29:29 - [0] ----D C:\Users\françois\AppData\Local\{1631DA18-7E4C-4622-BCA4-C29ED1613F69} => Empty Folder not necessary O43 - CFD: 21/10/2011 - 17:53:28 - [0] ----D C:\Users\françois\AppData\Local\{1897B55F-0001-40CC-9742-30C2245FEA67} => Empty Folder not necessary O43 - CFD: 09/06/2012 - 14:30:26 - [0] ----D C:\Users\françois\AppData\Local\{1967B526-BED9-4F96-A391-D553739BD468} => Empty Folder not necessary O43 - CFD: 12/05/2011 - 00:38:37 - [0] ----D C:\Users\françois\AppData\Local\{1C1FC9BD-67E5-4B4C-AABF-F37DDCD20CC0} => Empty Folder not necessary O43 - CFD: 24/08/2011 - 15:51:01 - [0] ----D C:\Users\françois\AppData\Local\{248798BD-9262-4FA1-9EC5-B116A401D3FE} => Empty Folder not necessary O43 - CFD: 09/06/2012 - 14:44:11 - [0] ----D C:\Users\françois\AppData\Local\{263C3137-08EE-4CCF-9C09-C9BC79FA6713} => Empty Folder not necessary O43 - CFD: 18/05/2012 - 00:06:06 - [0] ----D C:\Users\françois\AppData\Local\{2BE01290-2C75-4FFB-A531-8FF3B27EB989} => Empty Folder not necessary O43 - CFD: 09/06/2012 - 14:30:47 - [0] ----D C:\Users\françois\AppData\Local\{2F0D80B1-0777-4C09-A840-238894D8A3AB} => Empty Folder not necessary O43 - CFD: 09/04/2011 - 13:40:40 - [0] ----D C:\Users\françois\AppData\Local\{30A0415A-77F5-44BA-8742-1D5DCBEA6D2B} => Empty Folder not necessary O43 - CFD: 14/08/2011 - 15:11:03 - [0] ----D C:\Users\françois\AppData\Local\{3886EF75-CA83-464F-8ED2-FECB56F584B3} => Empty Folder not necessary O43 - CFD: 24/08/2011 - 15:51:40 - [0] ----D C:\Users\françois\AppData\Local\{3ACAD0A0-25B4-4C7B-ACDB-03E91BCDEF68} => Empty Folder not necessary O43 - CFD: 06/08/2011 - 15:02:24 - [0] ----D C:\Users\françois\AppData\Local\{40AFDE20-EB0C-4E2E-A2EF-3BB5CE768E14} => Empty Folder not necessary O43 - CFD: 18/05/2012 - 17:52:11 - [0] ----D C:\Users\françois\AppData\Local\{426DE7AD-7494-45EC-B314-636DFE6F1D89} => Empty Folder not necessary O43 - CFD: 09/06/2012 - 14:29:41 - [0] ----D C:\Users\françois\AppData\Local\{4384BBE9-C1B4-44BA-8507-5D20939B74DB} => Empty Folder not necessary O43 - CFD: 29/09/2012 - 13:40:19 - [0] ----D C:\Users\françois\AppData\Local\{4721D225-861E-43D1-9B7C-56897588A850} => Empty Folder not necessary O43 - CFD: 24/08/2011 - 15:51:58 - [0] ----D C:\Users\françois\AppData\Local\{56892D34-504A-41F4-A725-1DF97CFB8A03} => Empty Folder not necessary O43 - CFD: 15/01/2012 - 01:56:57 - [0] ----D C:\Users\françois\AppData\Local\{66BE0207-3FD0-4648-B33D-669FDA0A9D02} => Empty Folder not necessary O43 - CFD: 13/11/2012 - 10:16:39 - [0] ----D C:\Users\françois\AppData\Local\{7311413B-E0F6-46B2-9761-75EDDAB63516} => Empty Folder not necessary O43 - CFD: 29/05/2012 - 12:38:21 - [0] ----D C:\Users\françois\AppData\Local\{86CADAAA-7F76-4A5D-816A-980CDA150496} => Empty Folder not necessary O43 - CFD: 24/08/2011 - 15:50:42 - [0] ----D C:\Users\françois\AppData\Local\{8CCEBB7F-9C83-4EF0-A52F-38307004162F} => Empty Folder not necessary O43 - CFD: 08/04/2011 - 09:47:35 - [0] ----D C:\Users\françois\AppData\Local\{91AE7E81-EABB-4067-9A7F-F3C8BDF56077} => Empty Folder not necessary O43 - CFD: 17/07/2012 - 10:45:22 - [0] ----D C:\Users\françois\AppData\Local\{964E4A04-8FB8-4D43-AB01-AF80DF7A39F8} => Empty Folder not necessary O43 - CFD: 14/02/2013 - 12:09:58 - [0] ----D C:\Users\françois\AppData\Local\{96D0DEE7-100A-43D1-82FB-2EED9853DD0F} => Empty Folder not necessary O43 - CFD: 22/08/2011 - 23:41:46 - [0] ----D C:\Users\françois\AppData\Local\{B81BEEDE-E4DF-423B-AF7D-7B3FBA1AC169} => Empty Folder not necessary O43 - CFD: 10/01/2012 - 18:09:29 - [0] ----D C:\Users\françois\AppData\Local\{B8A88FF8-3D45-454A-97DF-3E822281ABFF} => Empty Folder not necessary O43 - CFD: 10/01/2012 - 18:03:33 - [0] ----D C:\Users\françois\AppData\Local\{BC7427D9-6A99-4589-9A20-CD9B1A77EBF7} => Empty Folder not necessary O43 - CFD: 25/04/2011 - 10:54:59 - [0] ----D C:\Users\françois\AppData\Local\{BFCB6D79-E9E0-4EF2-AFFE-2578C4E65883} => Empty Folder not necessary O43 - CFD: 29/05/2012 - 12:38:10 - [0] ----D C:\Users\françois\AppData\Local\{C3B2AFBE-F1BB-4855-BA60-E55A0E27208F} => Empty Folder not necessary O43 - CFD: 12/09/2012 - 15:29:27 - [0] ----D C:\Users\françois\AppData\Local\{C3D2831D-402E-4717-8ED6-DFFAB551EB6B} => Empty Folder not necessary O43 - CFD: 07/05/2011 - 18:28:27 - [0] ----D C:\Users\françois\AppData\Local\{C6E7FEFF-8A61-4DDB-9C41-17ADC4CC08E6} => Empty Folder not necessary O43 - CFD: 22/08/2011 - 23:42:07 - [0] ----D C:\Users\françois\AppData\Local\{CFF1EE25-B2D2-4D08-9389-FD5402DFA3B0} => Empty Folder not necessary O43 - CFD: 27/04/2011 - 14:14:14 - [0] ----D C:\Users\françois\AppData\Local\{D12C48EF-0711-4062-973B-48FF5A90EB91} => Empty Folder not necessary O43 - CFD: 29/09/2012 - 14:20:30 - [0] ----D C:\Users\françois\AppData\Local\{D2A142DF-9EF5-4ABE-BF3B-D3A04476E50D} => Empty Folder not necessary O43 - CFD: 05/05/2011 - 14:43:16 - [0] ----D C:\Users\françois\AppData\Local\{D563C047-789F-4AA7-B311-81B68A68FD43} => Empty Folder not necessary O43 - CFD: 15/12/2011 - 17:35:41 - [0] ----D C:\Users\françois\AppData\Local\{D5A26708-FBE8-476D-ACDA-598EE6CEF417} => Empty Folder not necessary O43 - CFD: 17/07/2012 - 10:45:05 - [0] ----D C:\Users\françois\AppData\Local\{E1CF15EF-FB2F-4184-8833-349217691E37} => Empty Folder not necessary O43 - CFD: 21/10/2011 - 17:53:09 - [0] ----D C:\Users\françois\AppData\Local\{EDBD0B32-169F-404D-AF9B-DA0B6256BC63} => Empty Folder not necessary O43 - CFD: 10/01/2012 - 18:09:50 - [0] ----D C:\Users\françois\AppData\Local\{F0647404-6513-47AE-A636-61382390CB83} => Empty Folder not necessary O43 - CFD: 08/04/2011 - 09:48:27 - [0] ----D C:\Users\françois\AppData\Local\{F3B8C5AA-8674-4F0C-8E97-9FA1F6F41810} => Empty Folder not necessary O43 - CFD: 09/06/2012 - 14:43:48 - [0] ----D C:\Users\françois\AppData\Local\{FB19AE3C-7A31-436E-A7CF-2C8CA6B81876} => Empty Folder not necessary O43 - CFD: 10/01/2012 - 18:03:54 - [0] ----D C:\Users\françois\AppData\Local\{FD6E4DA3-521A-474D-94EF-CC774FC4A182} => Empty Folder not necessary O43 - CFD: 18/05/2012 - 17:52:22 - [0] ----D C:\Users\françois\AppData\Local\{FFB1FB87-E827-49CA-9B5B-2395FEEF71B7} => Empty Folder not necessary O44 - LFC:[MD5.24D437E49460800843B9C4601795B0DF] - 21/02/2013 - 02:51:12 ---A- . (...) -- C:\Windows\Partizan.log [23526] => Fichiers de rapport (Log) O44 - LFC:[MD5.0EA4783843C71B9B37A14D5149BCA719] - 21/02/2013 - 00:58:45 ---A- . (...) -- C:\Windows\DeleteOnReboot.bat [63] => Xplode - AdwCleaner DeleteOnReboot O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe" [Enabled] .(.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe => Spybot-S&D Cleaning* O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe" [Enabled] .(.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe => Spybot-S&D Cleaning* O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe" [Enabled] .(.Safer-Networking Ltd. - Update.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe => Spybot-S&D Cleaning* O47 - AAKE:Key Export SP - "C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe" [Enabled] .(.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe => Spybot-S&D Cleaning* [MD5.A1E66F76FAEB4BDE66D728E716D8B40B] [SPRF][20/02/2013] (...) -- C:\Users\françois\AppData\Local\Temp\gdheubqdrm.dat [5767] => Temporary file not necessary [MD5.B5CE08842F64EB17CEC5F80DE6AF9605] [SPRF][21/02/2013] (...) -- C:\Users\françois\AppData\Local\Temp\~dsver.dat [91] => Temporary file not necessary O87 - FAEL: "TCP Query User{A3E644EB-1D5B-4B1C-A45B-E0E37F2333D0}C:\users\françois\appdata\local\akamai\netsession_win.exe" | In - Public - P6 - TRUE | .(.Akamai Technologies, Inc..) -- C:\users\françois\appdata\local\akamai\netsession_win.exe O87 - FAEL: "UDP Query User{6D744EA8-A7FA-4C8A-AC3B-C4C6C3898780}C:\users\françois\appdata\local\akamai\netsession_win.exe" | In - Public - P17 - TRUE | .(.Akamai Technologies, Inc..) -- C:\users\françois\appdata\local\akamai\netsession_win.exe [HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2] => Messaging.Incredimail* SR - | Auto 13/11/2012 1103392 | (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe => Spybot-S&D Cleaning* SR - | Auto 13/11/2012 1369624 | (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe => Spybot-S&D Cleaning* SR - | Auto 13/11/2012 168384 | (SDWSCService) . (.Safer-Networking Ltd..) - C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe => Spybot-S&D Cleaning*