cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

��������������� Pre_Script | 4.01.15.1 ���������������
Hub : Windows 7 Home Premium (64 bits)
Switchs : http://security-helpzone.com/gen-hackman/pre_scan-2/les-switchs-pre_script/
New restorepoint created : To restore the registry : C:\Pre_Scan\Save\Script\ERDNT.exe
Script : 20:17:18
Boot : Safemode
�������������������������������
���������� | Registry Deletions : [HKLM64\SOFTWARE\Microsoft\Internet Explorer\Toolbar]|[Locked]
Value Deleted : HKLM64\SOFTWARE\Microsoft\Internet Explorer\Toolbar : Locked
���������� | Registry Deletions : [HKU\S-1-5-21-4232507771-2238080642-353489575-1002\SOFTWARE\Microsoft\Internet Explorer\Toolbar]|[Locked]
Value Deleted : HKU\S-1-5-21-4232507771-2238080642-353489575-1002\SOFTWARE\Microsoft\Internet Explorer\Toolbar : Locked
���������� | Registry Deletions : [HKU\S-1-5-21-4232507771-2238080642-353489575-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}]
Key Deleted : HKU\S-1-5-21-4232507771-2238080642-353489575-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
���������� | Registry Deletions : [HKU\S-1-5-21-4232507771-2238080642-353489575-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}]
Key Deleted : HKU\S-1-5-21-4232507771-2238080642-353489575-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
���������� | Registry Deletions : [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}
���������� | Registry Deletions : [HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Key Deleted : HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}
���������� | Registry Deletions : [HKU\S-1-5-21-4232507771-2238080642-353489575-1002\Software\Conduit]
Key Deleted : HKU\S-1-5-21-4232507771-2238080642-353489575-1002\Software\Conduit
���������� | Registry Deletions : [HKLM\Software\SearchProtect]
Key Deleted : HKLM\Software\SearchProtect
���������� | Registry Deletions : [HKLM64\Software\Iminent]
Key Deleted : HKLM64\Software\Iminent
���������� | Files | Folders : C:\Users\Hub\AppData\Roaming\Mozilla\Firefox\Profiles\n2h03shk.default\searchplugins\conduit-search.xml
C:\Users\Hub\AppData\Roaming\Mozilla\Firefox\Profiles\n2h03shk.default\searchplugins\conduit-search.xml : Not Found !
���������� | Files | Folders : C:\Program Files (x86)\MyPC Backup
C:\Program Files (x86)\MyPC Backup : Not Found !
���������� | Files | Folders : C:\ProgramData\Partner
C:\ProgramData\Partner : Not Found !
���������� | Files | Folders : C:\Users\Hub\AppData\Local\SearchProtect
C:\Users\Hub\AppData\Local\SearchProtect : Not Found !
���������� | Files | Folders : C:\Users\Hub\AppData\Local\Software
Folder Moved to quarantine successfully : C:\Users\Hub\AppData\Local\Software
���������� | Files | Folders : C:\Windows\System32\Tasks\{05725031-D983-4CB0-AAE2-F500C085B649}
C:\Windows\System32\Tasks\{05725031-D983-4CB0-AAE2-F500C085B649} : Not Found !
���������� | Deletion | Drivers | Services : Partner Service
Service : Partner Service Not actif
���������� | MBR

64 bits Not supported by MBR.exe , Dump : Impossible to extract !!!!!
���������� | Disk cleaning
FreeSpace : 166584
Cleaning disk...
FreeSpace : 166546

���������� ( EOF ) ���������� | End : 20:19:33

Publicité


Signaler le contenu de ce document

Publicité