cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþ
Script ZHPFix
[MD5.ECA80AD554F310164FD3B4FDB3139966].(.Conduit.Search Protect by Conduit.) -- C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe [4349216] [PID.556] =>Toolbar.Conduit
[MD5.C2265D562557460F9F4E79899B7FE537].(.Conduit.Search Protect by Conduit.) -- C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe [2929952] [PID.128] =>Toolbar.Conduit
[MD5.BF0EBA757BA82A33ED0763695DB0CBAA].(.Conduit.Search Protect by Conduit.) -- C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2317600] [PID.3052] =>Toolbar.Conduit
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com
O2 - BHO: CrossriderApp0035382 [64Bits] - {11111111-1111-1111-1111-110311531182} . (.Alex - hosts BHO.) -- C:\Program Files (x86)\hosts\hosts-bho.dll =>PUP.CrossRider
O2 - BHO: ValueApps Loader [64Bits] - {93DBF2BB-A2B3-4683-A92E-57E60751F346} . (.Conduit Ltd. - ValueApps Loader.) -- C:\Program Files (x86)\Conduit\ValueApps\IE\ValueAppsLoader.dll =>Toolbar.Conduit
O4 - GS\TaskBar: Mobogenie.lnk . (...) -- C:\Program Files (x86)\Mobogenie\Mobogenie.exe (.not file.)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Torntv V6.0-updater.job [1300] =>Hijacker.TornTV
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Torntv V6.0-updater.job [1300] =>Hijacker.TornTV
[MD5.62D09CBBBEDAD81C17BF0AF5E0856706] [APT] [AmiUpdXp] (.Am?net?ze ltd..) -- C:\Users\Abdulla\AppData\Local\SwvUpdater\Updater.exe [311336] =>PUP.Software.Updater
[MD5.00000000000000000000000000000000] [APT] [Torntv V6.0-updater] (...) -- C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-updater.exe (.not file.) [0] =>Hijacker.TornTV
O42 - Logiciel: Search Protect - (.Conduit.) [HKLM][64Bits] -- SearchProtect =>Toolbar.Conduit
O42 - Logiciel: TornTV - (.TornTV.com.) [HKLM][64Bits] -- 1ClickDownload =>PUP.1ClickDownloader
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\DataMngr] =>PUP.Datamngr
[HKCU\Software\DataMngr_Toolbar] =>PUP.Datamngr
[HKCU\Software\InstalledBrowserExtensions] =>Adware.VidSaver
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\DataMngr] =>PUP.Datamngr
[HKLM\Software\Wow6432Node\SProtector] =>PUP.Mocaflix
O43 - CFD: 2/4/2014 - 12:09:14 PM - [38.119] ----D C:\Program Files (x86)\SearchProtect =>Toolbar.Conduit
O43 - CFD: 2/10/2014 - 2:59:36 AM - [0] ----D C:\Program Files (x86)\Torntv V6.0 =>Hijacker.TornTV
O43 - CFD: 12/28/2013 - 12:18:33 AM - [4.240] ----D C:\Program Files (x86)\TornTV.com =>Hijacker.TornTV
O43 - CFD: 9/11/2013 - 4:10:25 AM - [0] ----D C:\ProgramData\Babylon =>Toolbar.Babylon
O43 - CFD: 9/11/2013 - 4:10:25 AM - [0.003] ----D C:\Users\Abdulla\AppData\Roaming\Babylon =>Toolbar.Babylon
O43 - CFD: 9/11/2013 - 4:11:37 AM - [0.299] ----D C:\Users\Abdulla\AppData\Local\SwvUpdater =>PUP.Software.Updater
O43 - CFD: 12/28/2013 - 12:17:01 AM - [0.002] ----D C:\Users\Abdulla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com =>Hijacker.TornTV
O45 - LFCP:[MD5.A994633EE3D1390BF7072E694BA3E447] - 2/10/2014 - 1:25:19 AM ---A- - C:\Windows\Prefetch\TORNTV V6.0-ENABLER.EXE-A8E2F222.pf =>Hijacker.TornTV
O45 - LFCP:[MD5.01BE4AA3A36A36C52E3FE1B34C83B84E] - 2/10/2014 - 1:27:38 AM ---A- - C:\Windows\Prefetch\TORNTV V6.0-BUTTONUTIL64.EXE-36B3CB31.pf =>Hijacker.TornTV
O45 - LFCP:[MD5.1E05687C0B9CBD34CCF3E9AC4DCBCFA9] - 2/10/2014 - 1:27:48 AM ---A- - C:\Windows\Prefetch\TORNTV V6.0-BG.EXE-5B047A22.pf =>Hijacker.TornTV
O45 - LFCP:[MD5.736F2314B9716DF0F05485C38FB04A65] - 2/10/2014 - 1:27:48 AM ---A- - C:\Windows\Prefetch\TORNTV V6.0-CODEDOWNLOADER.EX-656DA787.pf =>PUP.SoftwareEngine
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}] =>PUP.CrossRider^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{93DBF2BB-A2B3-4683-A92E-57E60751F346}] =>Toolbar.Conduit^
[HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc] =>Toolbar.Conduit^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect] =>Toolbar.Conduit^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload] =>PUP.1ClickDownloader^
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] =>Toolbar.Babylon
[HKLM\Software\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}] =>PUP.Software.Updater
[HKLM\Software\Wow6432Node\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}] =>PUP.Software.Updater
[HKLM\Software\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}] =>PUP.Software.Updater
[HKLM\Software\Classes\I] =>Adware.IncrediBar
[HKLM\Software\Classes\Updater.AmiUpd] =>PUP.Software.Updater
[HKLM\Software\Classes\Updater.AmiUpd.1] =>PUP.Software.Updater
[HKCU\Software\1ClickDownload] =>PUP.1ClickDownloader
[HKCU\Software\DataMngr] =>Adware.Bandoo
[HKLM\Software\Wow6432Node\DataMngr] =>Adware.Bandoo
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\SProtector] =>PUP.AdvancedSystemProtector
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}] =>Toolbar.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}] =>PUP.Software.Updater
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] =>Toolbar.DeltaSearch
[HKLM\Software\Classes\Prod.cap] =>Toolbar.Babylon
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings] =>PUP.BProtector
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload] =>PUP.1ClickDownloader
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}] =>PUP.Funmoods
[HKLM\Software\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}] =>Toolbar.DeltaSearch
[HKLM\Software\Wow6432Node\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}] =>Toolbar.DeltaSearch
[HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider
[HKCU\Software\InstalledBrowserExtensions\] =>PUP.CrossRider
[HKLM\Software\Classes\AppID\BabylonHelper.EXE] =>Toolbar.Babylon
[HKCU\Software\InstalledBrowserExtensions] =>PUP.CrossRider
[HKCU\Software\AppDataLow\Software\hosts] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\hosts] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0035382.BHO] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0035382.BHO.1] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0035382.Sandbox] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0035382.Sandbox.1] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CrossriderApp0035382.BHO] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CrossriderApp0035382.BHO.1] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CrossriderApp0035382.Sandbox] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CrossriderApp0035382.Sandbox.1] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311531182}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311531182}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322532282}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220422592260}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311531182}] =>PUP.CrossRider
C:\Program Files (x86)\SearchProtect =>Toolbar.Conduit^
C:\Program Files (x86)\Torntv V6.0 =>Hijacker.TornTV^
C:\Program Files (x86)\TornTV.com =>Hijacker.TornTV^
C:\ProgramData\Babylon =>Toolbar.Babylon^
C:\Users\Abdulla\AppData\Roaming\Babylon =>Toolbar.Babylon^
C:\Users\Abdulla\AppData\Local\SearchProtect =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\SwvUpdater =>PUP.Software.Updater^
C:\Users\Abdulla\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com =>Hijacker.TornTV^
C:\Program Files (x86)\Conduit =>Toolbar.Conduit
C:\Users\Abdulla\AppData\Local\Conduit =>Toolbar.Conduit
C:\Users\Abdulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnlomafmkpiclmaaekkhpoecnclldmaa =>PUP.CrossRider
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe =>Toolbar.Conduit^
C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe =>Toolbar.Conduit^
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe =>Toolbar.Conduit^
C:\Program Files (x86)\hosts\hosts-bho.dll =>PUP.CrossRider^
C:\Program Files (x86)\Conduit\ValueApps\IE\ValueAppsLoader.dll =>Toolbar.Conduit^
C:\Windows\Tasks\Torntv V6.0-updater.job =>Hijacker.TornTV^
C:\Users\Abdulla\AppData\Local\SwvUpdater\Updater.exe =>PUP.Software.Updater^
[HKCU\Software\BabSolution] =>Hijacker.BabSolution^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
[HKCU\Software\DataMngr_Toolbar] =>PUP.Datamngr^
C:\Windows\Prefetch\TORNTV V6.0-ENABLER.EXE-A8E2F222.pf =>Hijacker.TornTV^
C:\Windows\Prefetch\TORNTV V6.0-BUTTONUTIL64.EXE-36B3CB31.pf =>Hijacker.TornTV^
C:\Windows\Prefetch\TORNTV V6.0-BG.EXE-5B047A22.pf =>Hijacker.TornTV^
C:\Windows\Prefetch\TORNTV V6.0-CODEDOWNLOADER.EX-656DA787.pf =>PUP.SoftwareEngine^
C:\Users\Abdulla\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\SearchProtect\SearchProtect\rep\UserSettings.dat =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\SwvUpdater\Updater.xml =>PUP.Software.Updater^
C:\Users\Abdulla\AppData\Local\Temp\dlLogic.exe =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\Temp\nse6D82.exe =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\Temp\nszB31A.exe =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\Temp\SPSetup.exe =>Toolbar.Conduit^
C:\Users\Abdulla\AppData\Local\Temp\uninst1.exe =>Toolbar.Babylon^
C:\Users\Abdulla\Desktop\SoftonicDownloader_for_utorrent.exe =>Toolbar.Conduit^
C:\program files (x86)\torntv.com\torntv downloader.exe =>Hijacker.TornTV^
[HKCU\Software\5855d68fb739be46\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1562.221]:dllName="BrowserDefender.dll" =>Hijacker.Eazel^

EmptyCLSID
ShortcutFix
FirewallRaz
EmptyTemp
EmptyFlash
Sysrestore

Publicité


Signaler le contenu de ce document

Publicité