cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
[MD5.4971E3EADE9B2A22591AE3CBAF95F5A5] - (...) -- C:\Program Files\Mobogenie\DaemonProcess.exe [747712] [PID.1772] =>PUP.Mobogenie
M3 - MFPP: Plugins - [Administrateur] -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\fin1dg2w.default\searchplugins\VenteeRo.xml
M3 - MFPP: Plugins - [Administrateur] -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\fin1dg2w.default\searchplugins\WebSearch.xml
M2 - MFEP: prefs.js [Administrateur - fin1dg2w.default\addon@Vonteera.com] [] Vonteera Safe ads v (..) =>Trojan.Vonteera
O2 - BHO: NoVooIT - {598AC71E-BE58-3981-B78A-5C138F423AD6} . (.NoVooIT - NoVooIT.) -- C:\Documents and Settings\Administrateur\Application Data\VolIE\NoVooIT_32.dll
O2 - BHO: BittorrentBar_FR - {ef79f67a-6ad7-4715-a0f8-932fca442023} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\BittorrentBar_FR\prxtbBit0.dll =>P2P.BitTorrent
O3 - Toolbar: BittorrentBar_FR Toolbar - [HKLM]{ef79f67a-6ad7-4715-a0f8-932fca442023} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\BittorrentBar_FR\prxtbBit0.dll =>P2P.BitTorrent
O3 - Toolbar: (no name) - [HKLM]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{0E5CBF21-D15F-11D0-8301-00AA005B4383} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EF79F67A-6AD7-4715-A0F8-932FCA442023} Clé orpheline
O4 - HKLM\..\Run: [mobilegeni daemon] . (...) -- C:\Program Files\Mobogenie\DaemonProcess.exe =>PUP.Mobogenie
O4 - HKCU\..\Run: [NextLive] . (.NewNextDotMe - NewNext Helper Engine.) -- C:\Documents and Settings\Administrateur\Application Data\newnext.me\nengine.dll =>PUP.NextLive
O4 - HKUS\S-1-5-21-2025429265-343818398-1177238915-500\..\Run: [NextLive] . (.NewNextDotMe - NewNext Helper Engine.) -- C:\Documents and Settings\Administrateur\Application Data\newnext.me\nengine.dll =>PUP.NextLive
O17 - HKLM\System\CCS\Services\Tcpip\..\{B956A457-1A1D-4F76-8D91-C79AABFE4CCB}: NameServer = 195.186.4.110 195.186.4.111
O17 - HKLM\System\CS1\Services\Tcpip\..\{B956A457-1A1D-4F76-8D91-C79AABFE4CCB}: NameServer = 195.186.4.110 195.186.4.111
[HKCU\Software\ConduitSearchScopes]
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\DebugNano]
[HKCU\Software\ExpressFiles] =>Adware.ExpressFiles
[HKCU\Software\PriceGong] =>Adware.PriceGong
[HKCU\Software\Smartbar] =>Hijacker.SmartBar
[HKCU\Software\Vonteera Safe ads] =>Trojan.Vonteera
[HKLM\Software\Conduit] =>Toolbar.Conduit
[HKLM\Software\DebugNano]
[HKLM\Software\ExpressFiles] =>Adware.ExpressFiles
[HKLM\Software\SProtector] =>PUP.Mocaflix
[HKLM\Software\TDS]
O43 - CFD: 09/01/2014 - 08:49:50 - [0] ----D C:\Program Files\ExpressFiles =>Adware.ExpressFiles
O43 - CFD: 09/01/2014 - 08:49:14 - [0] ----D C:\Program Files\Kozaka =>PUP.Kozaka
O43 - CFD: 22/10/2013 - 06:14:07 - [0] ----D C:\Program Files\Ss.Helper =>Adware.SaveShare
O43 - CFD: 22/10/2013 - 06:13:32 - [0] ----D C:\Program Files\WebSearch
O43 - CFD: 22/10/2013 - 06:07:56 - [2,094] ----D C:\Documents and Settings\All Users\Application Data\InstallMate
O43 - CFD: 09/01/2014 - 08:47:30 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\ExpressFiles =>Adware.ExpressFiles
O43 - CFD: 03/02/2014 - 11:22:31 - [1,228] ----D C:\Documents and Settings\Administrateur\Application Data\newnext.me =>PUP.NextLive
O43 - CFD: 10/01/2014 - 17:01:07 - [10,715] ----D C:\Documents and Settings\Administrateur\Application Data\OpenCandy =>Adware.OpenCandy
O43 - CFD: 07/11/2013 - 19:25:42 - [0] ----D C:\Documents and Settings\Administrateur\Application Data\PriceGong =>Adware.PriceGong
O43 - CFD: 25/06/2013 - 00:42:30 - [0,209] ----D C:\Documents and Settings\Administrateur\Local Settings\Application Data\Conduit
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("aol_toolbar.default.homepage.check", false);
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("aol_toolbar.default.search.check", false);
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("extensions.BabylonToolbar.prtkDS", 0); =>PUP.Babylon
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0); =>PUP.Babylon
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("sweetim.toolbar.scripts.1.domain-blacklist", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [Administrateur - fin1dg2w.default] user_pref("sweetim.toolbar.searchguard.enable", ""); =>PUP.SweetIM
O69 - SBI: SearchScopes [HKCU] {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} - (Norton Safe Search) - http://nortonsafe.search.ask.com
O69 - SBI: SearchScopes [HKCU] {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} - (WebSearch) - http://websearch.searchisfun.info
O69 - SBI: SearchScopes [HKCU] {FFDBD13D-1A19-4D00-B4C6-5310FC24FEF3} - (BittorrentBar_FR Customized Web Search) - http://search.conduit.com =>P2P.BitTorrent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF79F67A-6AD7-4715-A0F8-932FCA442023}] =>P2P.BitTorrent^
[HKLM\Software\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}] =>Adware.iWinArcade
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ef79f67a-6ad7-4715-a0f8-932fca442023}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ef79f67a-6ad7-4715-a0f8-932fca442023}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{ef79f67a-6ad7-4715-a0f8-932fca442023}] =>Toolbar.Conduit
[HKCU\Software\BittorrentBar_FR] =>Toolbar.Conduit
[HKLM\Software\BittorrentBar_FR] =>Toolbar.Conduit
[HKCU\Software\ConduitSearchScopes] =>Toolbar.Conduit
[HKCU\Software\PriceGong] =>Adware.PriceGong
[HKCU\Software\AppDataLow\SProtector] =>PUP.AdvancedSystemProtector
[HKLM\Software\SProtector] =>PUP.AdvancedSystemProtector
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\BittorrentBar_FR Toolbar] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}] =>Toolbar.Ask
[HKLM\Software\SoftwareUpdater] =>Hijacker.Eazel
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro
[HKLM\Software\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}] =>Adware.BrowseFox
[HKLM\Software\Classes\Toolbar.CT2849852] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{ef79f67a-6ad7-4715-a0f8-932fca442023} =>P2P.BitTorrent^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:mobilegeni daemon =>PUP.Mobogenie^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:BitTorrent =>P2P.BitTorrent^
C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\fin1dg2w.default\extensions\addon@Vonteera.com =>Trojan.Vonteera^
C:\Program Files\ExpressFiles =>Adware.ExpressFiles^
C:\Program Files\Kozaka =>PUP.Kozaka^
C:\Program Files\Ss.Helper =>Adware.SaveShare^
C:\Documents and Settings\Administrateur\Application Data\ExpressFiles =>Adware.ExpressFiles^
C:\Documents and Settings\Administrateur\Application Data\newnext.me =>PUP.NextLive^
C:\Documents and Settings\Administrateur\Application Data\OpenCandy =>Adware.OpenCandy^
C:\Documents and Settings\Administrateur\Application Data\PriceGong =>Adware.PriceGong^
C:\Program Files\BittorrentBar_FR =>Toolbar.Conduit
C:\Program Files\Conduit =>Toolbar.Conduit
C:\Program Files\WebSearch =>Hijacker.LookForiThere
C:\Program Files\Optimizer Pro =>PUP.OptimizerPro
C:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Tarma
C:\Documents and Settings\Administrateur\Local Settings\Application Data\BittorrentBar_FR =>Toolbar.Conduit
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Conduit =>Toolbar.Conduit
C:\Program Files\Mobogenie\DaemonProcess.exe =>PUP.Mobogenie^
C:\Documents and Settings\Administrateur\Application Data\BitTorrent\BitTorrent.exe =>P2P.BitTorrent^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
[HKCU\Software\ExpressFiles] =>Adware.ExpressFiles^
[HKCU\Software\Smartbar] =>Hijacker.SmartBar^
[HKCU\Software\Vonteera Safe ads] =>Trojan.Vonteera^
[HKLM\Software\Conduit] =>Toolbar.Conduit^
[HKLM\Software\ExpressFiles] =>Adware.ExpressFiles^

EmptyFlash
EmptyTemp
EmptyClsid
FirewallRaz
Proxyfix
SysRestore

Publicité


Signaler le contenu de ce document

Publicité