cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
[MD5.B342CD9AA44E4AE99E2368EBDBC2E17A] - (.APN LLC. - APN Updater.) -- F:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352] [PID.1464] =>Toolbar.Ask
[MD5.4B96654025B28EEB1E5D8F001E5D1B8A] - (.APN - Ask Toolbar Notifier.) -- F:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160] [PID.2852] =>Toolbar.Ask
[MD5.95F3F024B8EE19D1B8FD32E9536C5268] - (.APN LLC. - Virtual New Tab Loader.) -- F:\Documents and Settings\eph\Local Settings\Application Data\VNT\vntldr.exe [195536] [PID.3024] =>Toolbar.Ask
G2 - GCE: Preference [User Data\Default] [kdidombaedgpfiiedeimiebkmbilgmlc] DefaultTab v.2.0.0, (Désactivé) =>Adware.Bandoo
G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pcoohmdcpejoeggdnihdfhohjgdbllgm] Avira SearchFree Toolbar plus Web Protection v.32.5, (Désactivé) =>Toolbar.Avira
M0 - MFSP: prefs.js [eph - i60cm40r.default] http://www.search.ask.com
M2 - MFEP: prefs.js [eph - i60cm40r.default\{3d86a75b-cb6b-4764-885d-ca6336f04ba2}] [] Movies Toolbar (Dist. by Bandoo Media, Inc.) v1.6.2.0 (..) =>PUP.MoviesToolbar
O3 - Toolbar: Avira SearchFree Toolbar - [HKLM]{41564952-412D-5637-4300-7A786E7484D7} . (.APN LLC. - Passport.) -- F:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll =>Toolbar.Ask
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{41564952-412D-5637-00A7-7A786E7484D7} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{41564952-412D-5637-4300-7A786E7484D7} Clé orpheline
O4 - GS\Desktop [AllUsers]: Business-in-a-Box.lnk . (...) -- F:\Program Files\Business-in-a-Box\BIB.exe
O4 - GS\Desktop [AllUsers]: Webplayer.lnk . (...) -- F:\Program Files\Webplayer\Webplayer.exe =>Adware.SocialSkinz
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- F:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- F:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- F:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ApnTBMon] . (.APN - Ask Toolbar Notifier.) -- F:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe =>Toolbar.Ask
O4 - HKLM\..\Run: [VNT] . (.APN LLC. - Virtual New Tab Loader.) -- F:\Program Files\VNT\vntldr.exe =>Toolbar.Ask
O20 - AppInit_DLLs: . (...) - F:\DOCUME~1\ALLUSE~1\APPLIC~1\Wincert\WIN32C~1.dll (.not file.)
O23 - Service: Ask Update Service (APNMCP) . (.APN LLC. - APN Updater.) - F:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask
O36 - AppCertDlls: (x64) . (...) -- f:\program files\movies toolbar\datamngr\x64\apcrtldr.dll =>PUP.Datamngr
O36 - AppCertDlls: (x86) . (...) -- F:\Program Files\Movies Toolbar\Datamngr\apcrtldr.dll =>PUP.Datamngr
O40 - ASIC: Installed Component - S-1-5-21-682003330-790525478-2147183463-1003 - >{X9B49E34-C7CC-11D0-8953-00A0C90347FF} -- Not Hexadécimal CLSID
O42 - Logiciel: Webplayer - (.Kreapixel.) [HKLM] -- {F750DB0E-D452-3108-63C9-FE16BC686741} =>Adware.SocialSkinz
O42 - Logiciel: Yahoo! Toolbar - (.Yahoo! Inc..) [HKLM] -- Yahoo! Companion
[HKCU\Software\APN DTX]
[HKCU\Software\AskPartnerNetwork]
[HKCU\Software\OB]
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\VNT]
[HKCU\Software\iLivid] =>Adware.Bandoo
[HKLM\Software\AskPartnerNetwork]
[HKLM\Software\DefaultTab] =>Adware.Bandoo
[HKLM\Software\SProtector] =>PUP.Mocaflix
O43 - CFD: 3/18/2014 - 10:31:19 AM - [11.924] ----D F:\Program Files\AskPartnerNetwork
O43 - CFD: 2/19/2014 - 9:40:53 AM - [0.006] ----D F:\Program Files\GeniusXXAddon =>Hijacker.GeniusXX
O43 - CFD: 2/19/2014 - 9:42:18 AM - [0] ----D F:\Program Files\Movies Toolbar =>PUP.MoviesToolbar
O43 - CFD: 10/6/2013 - 8:39:51 AM - [0] ----D F:\Program Files\Ss.Helper =>Adware.SaveShare
O43 - CFD: 3/18/2014 - 10:31:19 AM - [0.326] ----D F:\Program Files\VNT
O43 - CFD: 9/30/2013 - 9:05:45 AM - [0] ----D F:\Documents and Settings\All Users\Application Data\APN
O43 - CFD: 3/18/2014 - 10:31:19 AM - [3.624] ----D F:\Documents and Settings\All Users\Application Data\AskPartnerNetwork
O43 - CFD: 10/6/2013 - 8:39:51 AM - [0] ----D F:\Documents and Settings\All Users\Application Data\DownllOad keeper =>PUP.DownloadKeeper
O43 - CFD: 10/3/2013 - 8:28:10 AM - [1.966] ----D F:\Documents and Settings\All Users\Application Data\InstallMate
O43 - CFD: 2/18/2014 - 1:16:24 PM - [0.000] ----D F:\Documents and Settings\eph\Application Data\wp_update =>PUP.WpManager
O43 - CFD: 3/18/2014 - 10:31:39 AM - [0.356] ----D F:\Documents and Settings\eph\Local Settings\Application Data\AskPartnerNetwork
O43 - CFD: 2/19/2014 - 9:40:53 AM - [0] ----D F:\Documents and Settings\eph\Local Settings\Application Data\genienext =>PUP.NextLive
O43 - CFD: 12/3/2013 - 12:43:52 PM - [0.008] ----D F:\Documents and Settings\eph\Local Settings\Application Data\visi_coupon
O43 - CFD: 3/18/2014 - 10:31:23 AM - [0.275] ----D F:\Documents and Settings\eph\Local Settings\Application Data\VNT
O43 - CFD: 3/23/2014 - 11:15:44 AM - [0] ----D F:\Documents and Settings\eph\Start Menu\Programs\GeniusXX =>Hijacker.GeniusXX
O47 - AAKE:Key Export SP - "F:\Program Files\Movies Toolbar\Datamngr\SRTOOL~1\IE\dtUser.exe" [Enabled] .(...) -- F:\Program Files\Movies Toolbar\Datamngr\SRTOOL~1\IE\dtUser.exe (.not file.) =>PUP.Datamngr
O53 - SMSR:HKLM\...\startupreg\iLivid [Key] . (...) -- F:\Documents and Settings\eph\Local Settings\Application Data\iLivid\iLivid.exe (.not file.) =>Adware.Bandoo
O53 - SMSR:HKLM\...\startupreg\LiveSupport [Key] . (...) -- F:\Program Files\LiveSupport\LiveSupport.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NextLive [Key] . (...) -- F:\Documents and Settings\eph\Application Data\newnext.me\nengine.dll (.not file.) =>PUP.NextLive
O64 - Services: CurCS - 2/13/2014 - F:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe (APNMCP) .(.APN LLC. - APN Updater.) - LEGACY_APNMCP =>Toolbar.Ask
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("aol_toolbar.default.homepage.check", false);
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("aol_toolbar.default.search.check", false);
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("extensions.BabylonToolbar.prtkDS", 0); =>PUP.Babylon
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0); =>PUP.Babylon
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("extensions.crossrider.bic", "14445f4d5cfc4a73545fcbfb56cd8c2c"); =>PUP.CrossRider
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.previous.browser.startup.homepage", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.previous.keyword.URL", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.scripts.1.domain-blacklist", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", ""); =>PUP.SweetIM
O69 - SBI: prefs.js [eph - i60cm40r.default] user_pref("sweetim.toolbar.searchguard.enable", ""); =>PUP.SweetIM
O90 - PUC: "25946514D214736534007A857BC0A030" . (.Avira SearchFree Toolbar.) -- F:\WINDOWS\Installer\{41564952-412D-5637-4300-A758B70C0A03}\ToolbarIcon.exe =>Toolbar.Avira
[MD5.0434E0CA9C886BE7E97343BED4A4C31B] [WIS][2/18/2014] (.Kreapixel - Webplayer.) -- F:\Windows\Installer\726573.msi [20992] =>Adware.SocialSkinz
[MD5.045DE746E68979408A6F1EC7CC3C8C7B] [WIS][3/18/2014] (.APN, LLC - Avira SearchFree Toolbar.) -- F:\Windows\Installer\c18e3.msi [809472] =>Toolbar.Avira
SR - | Auto 2/13/2014 166352 | (APNMCP) . (.APN LLC..) - F:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask
[HKLM\Software\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc] =>Adware.Bandoo^
[HKLM\Software\Google\Chrome\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm] =>Toolbar.Avira^
[HKLM\SYSTEM\CurrentControlSet\Services\APNMCP] =>Toolbar.Ask^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F750DB0E-D452-3108-63C9-FE16BC686741}] =>Adware.SocialSkinz^
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\iLivid] =>Adware.Bandoo^
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\NextLive] =>PUP.NextLive^
[HKLM\Software\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}] =>PUP.Whitesmoke
[HKLM\Software\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}] =>PUP.Whitesmoke
[HKLM\Software\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}] =>Toolbar.Ask
[HKLM\Software\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}] =>PUP.Babylon
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}] =>Adware.Bandoo
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}] =>Adware.Bandoo
[HKCU\Software\APN DTX] =>Toolbar.Ask
[HKLM\Software\defaulttab] =>Adware.IMBooster
[HKCU\Software\ilivid] =>Adware.Bandoo
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKLM\Software\SProtector] =>PUP.AdvancedSystemProtector
[HKLM\Software\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}] =>PUP.Babylon
[HKLM\Software\Classes\AppID\secman.DLL] =>PUP.Babylon
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion] =>Toolbar.Yahoo
[HKCU\Software\AskPartnerNetwork] =>Toolbar.Ask
[HKLM\Software\AskPartnerNetwork] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{41564952-412D-5637-4300-7A786E7484D7} =>Toolbar.Ask^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:ApnTBMon =>Toolbar.Ask^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:uTorrent =>P2P.BitTorrent^
F:\Documents and Settings\eph\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc =>Adware.Bandoo^
F:\Documents and Settings\eph\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm =>Toolbar.Avira^
F:\Documents and Settings\eph\Application Data\Mozilla\Firefox\Profiles\i60cm40r.default\extensions\{3d86a75b-cb6b-4764-885d-ca6336f04ba2} =>PUP.MoviesToolbar^
F:\Program Files\GeniusXXAddon =>Hijacker.GeniusXX^
F:\Program Files\Movies Toolbar =>PUP.MoviesToolbar^
F:\Program Files\Ss.Helper =>Adware.SaveShare^
F:\Documents and Settings\All Users\Application Data\DownllOad keeper =>PUP.DownloadKeeper^
F:\Documents and Settings\eph\Application Data\wp_update =>PUP.WpManager^
F:\Documents and Settings\eph\Local Settings\Application Data\genienext =>PUP.NextLive^
F:\Documents and Settings\eph\Start Menu\Programs\GeniusXX =>Hijacker.GeniusXX^
F:\Program Files\AskPartnerNetwork =>Toolbar.Ask
F:\Documents and Settings\All Users\Application Data\InstallMate =>PUP.Tarma
F:\Documents and Settings\All Users\Application Data\AskPartnerNetwork =>Toolbar.Ask
F:\Documents and Settings\eph\Local Settings\Application Data\AskPartnerNetwork =>Toolbar.Ask
F:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask^
F:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe =>Toolbar.Ask^
F:\Documents and Settings\eph\Local Settings\Application Data\VNT\vntldr.exe =>Toolbar.Ask^
F:\Documents and Settings\eph\Application Data\uTorrent\uTorrent.exe =>P2P.BitTorrent^
[HKCU\Software\iLivid] =>Adware.Bandoo^
[HKLM\Software\DefaultTab] =>Adware.Bandoo^
F:\Windows\Installer\726573.msi =>Adware.SocialSkinz^
F:\Windows\Installer\c18e3.msi =>Toolbar.Avira^

EmptyFlash
EmptyTemp
EmptyClsid
FirewallRaz
Proxyfix
SysRestore

Publicité


Signaler le contenu de ce document

Publicité