cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

[MD5.52752871A0FE616F57C67581AFCDE189] - (...) -- C:\documents and settings\hp_propri�taire.nom-eb85c523610.000\local settings\application data\lollipop\lolipop.exe [1019904] [PID.2700] => Infection MagicControl (Adware.Lollipop)
M0 - MFSP: prefs.js [HP_Propri�taire - 45a6e2qm.default] http://search.babylon.com
M2 - MFEP: prefs.js [HP_Propri�taire - 45a6e2qm.default\crossriderapp5060@crossrider.com] [] Savings Sidekick v (.215 Apps.) => Infection BT (Adware.GamePlayLabs)
M2 - MFEP: prefs.js [HP_Propri�taire - 45a6e2qm.default\extension21810@extension21810.com] [] Giant Savings Extension v (.215 Apps.) => Infection PUP (Adware.VidSaver)
O4 - HKCU\..\Run: [lolipop] . (...) -- c:\documents and settings\hp_propri�taire.nom-eb85c523610.000\local settings\application data\lollipop\lolipop.exe => Infection MagicControl (Adware.Lollipop)
O4 - HKUS\S-1-5-21-603466170-3854302331-1708227708-1007\..\Run: [lolipop] . (...) -- c:\documents and settings\hp_propri�taire.nom-eb85c523610.000\local settings\application data\lollipop\lolipop.exe => Infection MagicControl (Adware.Lollipop)
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\rpc.job => Infection Rogue (Rogue.RegistryPowerCleaner)
O42 - Logiciel: Lollipop - (.Pas de propri�taire.) [HKCU] -- lolipop => Infection MagicControl (Adware.Lollipop)
O42 - Logiciel: MoreRelevantAdvertisingProgram - (.Pas de propri�taire.) [HKLM] -- MoreRelevantAdvertisingProgram => Infection BT (Adware.Relevant)
[HKCU\Software\LanConfig] => Infection MagicControl (Adware.Navipromo)
[HKCU\Software\MoreRelevantAdvertisingProgram] => Infection BT (Adware.Relevant)
[HKCU\Software\WebMediaPlayer] => Infection Rogue (Rogue.WebMedia)
[HKCU\Software\fcn]
[HKCU\Software\lollipop] => Infection MagicControl (Adware.Lollipop)
[HKLM\Software\WebMediaPlayer] => Infection Rogue (Rogue.WebMedia)
O43 - CFD: 14/03/2008 - 09:58:49 - [0,179] ----D C:\Program Files\ContextProgram => Infection BT (Adware.ContextProgram.BHO)
O43 - CFD: 08/03/2008 - 12:03:20 - [0] ----D C:\Program Files\FBrowserAdvisor => Infection BT (Trojan.FBrowsingAdvisor)
O43 - CFD: 25/11/2009 - 13:13:02 - [0,055] ----D C:\Program Files\MoreRelevantAdvertisingProgram => Infection BT (Adware.Relevant)
O43 - CFD: 31/05/2010 - 09:29:17 - [1,357] ----D C:\Program Files\WebMediaPlayer => Infection Rogue (Rogue.WebMedia)
O43 - CFD: 02/01/2013 - 10:37:19 - [0,016] ----D C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\Babylon => Infection BT (Toolbar.Babylon)
O43 - CFD: 30/09/2009 - 09:37:29 - [4,139] ----D C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\EoRezo => Infection PUP (PUP.Eorezo)
O43 - CFD: 19/09/2008 - 09:40:34 - [0,206] ----D C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\ItsLabel => Infection PUP (PUP.ItsLabel)
O43 - CFD: 18/02/2013 - 17:19:00 - [1,332] ----D C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\Lollipop => Infection MagicControl (Adware.Lollipop)
O43 - CFD: 02/01/2013 - 10:54:57 - [0] ----D C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\Software => Infection PUP (Adware.Boxore)
O47 - AAKE:Key Export SP - "C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe" [Enabled] .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) => Infection PUP (PUP.SweetIM)
O53 - SMSR:HKLM\...\startupreg\eorezo [Key] . (...) -- C:\Program Files\EoRezo\eorezo.exe (.not file.) => Infection PUP (PUP.Eorezo)
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("avg.install.userHPSettings", "http://search.babylon.com/?affID=114741&tt=0113_8&babsrc=HP_ss&mntrId=70e9bc8000000000000[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("avg.install.userSPSettings", "Search the web (Babylon)");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("browser.search.selectedEngine", "Search the web (Babylon)");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("browser.startup.homepage", "http://search.babylon.com/?affID=114741&tt=0113_8&babsrc=HP_ss&mntrId=70e9bc800000000000000[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.admin", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.aflt", "babsst");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}"); => Infection BT (Toolbar.Babylon)
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.autoRvrt", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.bbDpng", 22);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.cntry", "FR");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.dfltLng", "en");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.dfltSrch", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.excTlbr", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.firstRun", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.hdrMd5", "40CC6125D71CF43C61D8814C10314A17");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.hmpg", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.id", "70e9bc8000000000000000110908769c");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.instlDay", "15707");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.instlRef", "sst");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.lastActv", "22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.lastDP", 22);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.lastVrsnTs", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "16.0");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.newTab", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.noFFXTlbr", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.propectorlck", 89455285);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.prtkDS", 0);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.rvrt", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.smplGrp", "azb");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.tlbrId", "base");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "http://search.babylon.com/?babsrc=TB_def&mntrId=70e9bc800000000000000011090876[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.vrsn", "1.8.7.2");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar.vrsni", "1.8.7.2");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.babExt", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.babTrack", "affID=114741&tt=0113_8");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.excTlbr", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.newTab", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.7.210:38:48");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossrider.bic", "13a8799d76f916e7d0cbc97cef498d23");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.active", true);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.addressbar", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.backgroundjs", "\n\n\"undefined\"!=typeof _GPL_BG_NEW&&appAPI.webRequest&&appAPI.webR[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.backgroundver", 7);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.can_run_bg_code", true);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.certdomaininstaller", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.changeprevious", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_aoi.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_aoi.value", "1350894737");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_blocklist.expiration", "Wed Jan 09 2013 10:09:58 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_blocklist.value", "%22nonexistantdomain.com%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_country_code.expiration", "Wed Jan 16 2013 09:56:48 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_country_code.value", "%22FR%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_crr.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_crr.value", "1357722531");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_currenttime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_currenttime.value", "%221357677774%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_hotfix20111102645.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_hotfix20111102645.value", "%221%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_installer_params.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_installer_params.value", "%7B%22source_id%22%3A%220%22%2C%22sub_id%22%3A%[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_parent_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_parent_zoneid.value", "%2214019%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_pc_20120828.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_pc_20120828.value", "1350894866807");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_product_id.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_product_id.value", "%221224%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie._GPL_zoneid.value", "%2296695%22");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie.dbtest.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie.dbtest.value", "1350894859001");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie.InstallationTime.value", "1350894737");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie.lastrequest.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.cookie.lastrequest.value", "%7B%22path%22%3A%22/updatebar.asp%22%2C%22host%22%3A%22ww[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.description", "Savings Sidekick");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.domain", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.enablesearch", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.fbremoteurl", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.group", 0);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.homepage", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.iframe", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.InstallationTime", 1350894737);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_appVer.value", "46");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_lastVersion.value", "0");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_meta.value", "%7B%7D");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_nextCheck.expiration", "Wed Jan 09 2013 15:56:52 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_nextCheck.value", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.internaldb.Resources_queue.value", "%7B%7D");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.js", "\n\nif(\"undefined\"!=typeof _GPL_PLUGIN){var _GPL_=function(){_GPL_PLUGIN.star[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.manifesturl", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.name", "Savings Sidekick");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.newtab", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.opensearch", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1.code", "appAPI._cr_config={appID:function(){var a=appAPI.appInfo;if([...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1.ver", 3);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000014.code", "Array.prototype.indexOf||(Array.prototype.indexOf=func[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000014.ver", 10);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000015.code", "var _GPL_BG={vars:{},rules:{},started:!1,log:function([...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_1000015.ver", 4);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_13.code", "(function(a){a.selectedText=function(e,c){function d(){if(w[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_13.ver", 2);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_14.code", "if(typeof(appAPI)===\"undefined\"){appAPI={}}var CR__bIsIEW[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_14.ver", 2);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_15.code", "(function(f){var u={};var e=Math.floor(Math.random()*99999)[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_15.name", "FacebookFFIE");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_15.ver", 1);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_16.code", "if((typeof isBackground===\"undefined\"||isBackground!=true[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_16.ver", 4);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_17.code", "if(typeof window!==\"undefined\"){\n/*!\n * jQuery JavaScri[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_17.ver", 3);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_21.code", "var CrossriderDebugManager=(function(h){var f={appId:appAPI[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_21.name", "debug");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_21.ver", 3);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_22.code", "(function(a){appAPI.queueManager={queue:[],register:functio[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_22.ver", 2);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_28.code", "var CrossriderInitializerPlugin=(function(e){var c={appId:a[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_28.name", "initializer");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_28.ver", 2);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_4.code", "/*! jQuery v1.7.1 jquery.com | jquery.org/license */\n(funct[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_4.name", "jquery_1_7_1");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_4.ver", 3);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_47.code", "(function(){appAPI.ready=function(a){appAPI.resources.isRea[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_47.name", "resources_background");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_47.ver", 1);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_64.code", "(function(){var h=\"__CR_EMPTY_CHANNEL__\";var d=function(j[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_64.name", "appApiMessage");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_64.ver", 1);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_72.code", "if(appAPI.__should_activate_validation__===true){(function([...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_72.name", "appApiValidation");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_72.ver", 1);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_78.code", "(function(a){if(typeof a===\"undefined\"||typeof navigator=[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_78.name", "CrossriderInfo");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins.plugin_78.ver", 2);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins_lists.plugins_0", "17,14,16,64,47,72,1000015");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.plugins_lists.plugins_1", "17,14,78,13,16,15,64,4,1,21,22,72,1000014,28");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.pluginsurl", "http://app-static.crossrider.com/plugin/apps/5060/plugins/085/ff/plugin[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.pluginsversion", 22);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.publisher", "215 Apps");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.searchstatus", 0);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.setnewtab", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.settingsurl", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.thankyou", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.updateinterval", 360);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.5060.ver", 46);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.apps", "5060");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.bic", "13a8799d76f916e7d0cbc97cef498d23");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.cid", 5060);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.firstrun", false);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.hadappinstalled", true);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.installationdate", 1350894737);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.lastcheck", 22628697);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.lastcheckitem", 22628709);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.modetype", "production");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp5060.reportInstall", true);
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.cda.DisableOveride.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.cda.HideOveride.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.cda.RemoveOveride.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.cda.returnValue", "disable");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.handler", "chrome://sim_toolbar_package/content/optionsdialog-handler.js");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.height", "335");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.id", "id_options_dialog");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.title", "$string.config.label;");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.url", "http://www.sweetim.com/simffbar/options_remote_ff.asp?lang=$locale_id;&toolbar_version[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.0.width", "761");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.handler", "chrome://sim_toolbar_package/content/exampledialog-handler.js");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.height", "300");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.id", "id_example_dialog");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.title", "Example (unit-test) dialog");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.url", "chrome://sim_toolbar_package/content/exampledialog.html");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.1.width", "500");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.handler", "chrome://sim_toolbar_package/content/cdadialog-handler.js");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.height", "150");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.id", "id_dialog_hide_disable_remove");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.title", "Option Dialog");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.url", "http://www.sweetim.com/simffbar/simcdadialog.asp");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dialogs.2.width", "530");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.dnscatch.domain-blacklist", ".*.sweetim.com/.*|.*.facebook.com/.*|.*.google.com/.*|.*.google.co.in/.*|.[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.keywordUrlGuard.enable", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.mode.debug", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.newtab.created", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.newtab.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.rc.url", "http://www.sweetim.com/simffbar/rc.html?toolbar_version=$ITEM_VERSION;&crg=$cargo;");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.RevertDialog.enable", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.addcontextdiv", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.callback", "simVerification");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.domain-blacklist", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.elementid", "id_script_sim_fb");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.enable", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.id", "id_script_fb");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.0.url", "http://sc.sweetim.com/apps/in/fb/infb.js");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.addcontextdiv", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.callback", "simVerification");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.domain-whitelist", "https://(www.|apps.)?facebook\\.com.*");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.elementid", "id_script_sim_fb");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.enable", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.id", "id_script_fb_httpS");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.1.url", "https://sc.sweetim.com/apps/in/fb/infb.js");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.addcontextdiv", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.callback", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.domain-blacklist", ".*.google..*|.*.bing..*|.*.live..*|.*.msn..*|.*.yahoo..*|.*.youtube.com.*[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.domain-whitelist", "");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.elementid", "id_predict_include_script");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.enable", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.id", "id_script_prad");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.scripts.2.url", "http://cdn1.certified-apps.com/scripts/shared/enable.js?si=3104&tid=chff1");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.search.history.capacity", "10");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.searchguard.enable", "false");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.searchguard.initialized_by_rc", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.simapp_id", "{AE591B01-54C2-11E2-912C-00110908769C}");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.urls.homepage", "http://home.sweetim.com/?crg=3.1010000.10002&barid={AE591B01-54C2-11E2-912C-0011090876[...]
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.UserSelectedSaveSettings", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.version", "1.9.0.0");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.Visibility.enable", "true");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.Visibility.intervaldays", "7");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("sweetim.toolbar.Visibility.VisibilityGuardLastUnHide", "0");
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_referrer", "http://search.babylon.com/|||8641350895037030"); => Infection BT (Adware.IncrediBar)
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_temp_referer", "http://search.babylon.com/?q=rct+boutique&babsrc=[...] => Infection BT (Adware.IncrediBar)
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_whiteList", "{\"search.babylon.com\":\"q\",\"search.sweetim.com\"[...] => Infection BT (Adware.IncrediBar)
O69 - SBI: prefs.js [HP_Propri�taire - 45a6e2qm.default] user_pref("extensions.crossriderapp21810.adsOldValue", -1);
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110011501160}] => Infection BT (PUP.SpecialSavings)
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0}]
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\eorezo]
[HKCU\Software\fcn]
[HKCU\Software\lollipop] => Infection MagicControl (Adware.Lollipop)
[HKCU\Software\LanConfig] => Infection MagicControl (Adware.Navipromo)
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\PCTuto]
[HKCU\Software\WebMediaPlayer] => Infection Rogue (Rogue.WebMedia)
[HKLM\Software\WebMediaPlayer] => Infection Rogue (Rogue.WebMedia)
[HKCU\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]:{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} => Infection BT (Adware.Zango)
C:\Program Files\ContextProgram => Infection BT (Adware.ContextProgram.BHO)
C:\Program Files\FBrowserAdvisor => Infection BT (Trojan.FBrowsingAdvisor)
C:\Program Files\MoreRelevantAdvertisingProgram => Infection BT (Adware.Relevant)
C:\Program Files\WebMediaPlayer => Infection Rogue (Rogue.WebMedia)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\Babylon => Infection BT (Toolbar.Babylon)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\EoRezo => Infection PUP (PUP.Eorezo)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\ItsLabel => Infection PUP (PUP.ItsLabel)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\lollipop => Infection MagicControl (Adware.Lollipop)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\Software => Infection PUP (Adware.Boxore)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\Temp\Iminent => Infection PUP (Adware.IMBooster)
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\Mozilla\Firefox\Profiles\45a6e2qm.default\SearchPlugins\sweetim.xml => Infection PUP (PUP.SweetIM)
M3 - MFPP: Plugins - [HP_Propri�taire] -- C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Application Data\Mozilla\Firefox\Profiles\45a6e2qm.default\searchplugins\sweetim.xml => Toolbar.SweetIM
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fen�tres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} . (.Yahoo! Inc. - Yahoo! activeX Plug-in Bridge.) (No version) -- (.not file.) => Yahoo Companion!
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} => Toolbar.Agent
[HKCU\Software\AppDataLow\Software\Smartbar] => Toolbar.SmartBar
[HKCU\Software\YahooPartnerToolbar] => Toolbar.Yahoo
O43 - CFD: 05/06/2008 - 09:07:12 - [0,774] ----D C:\Program Files\Windows Live Toolbar => Toolbar.WindowsLive
O43 - CFD: 24/05/2010 - 08:26:40 - [0,011] ----D C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\Conduit => Toolbar.Conduit
C:\Documents and Settings\HP_Propri�taire.NOM-EB85C523610.000\Local Settings\Application Data\Conduit => Toolbar.Conduit
EmptyTemp
EmptyFlash
EmptyCLSID
SysRestore

Publicité


Signaler le contenu de ce document

Publicité