cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
[MD5.4F9236BE13917B89F7A03DEA85F220FA] - (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe [202752] [PID.2484] =>Adware.MegaSearch
[MD5.4F9236BE13917B89F7A03DEA85F220FA] - (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [202752] [PID.2484] =>Adware.SocialSkinz
[MD5.4B2D1A55FF00EB118B27540404C50597] - (.iexplorer - iexplorer Browsers Monitor.) -- C:\Users\dmin\AppData\Local\iexplorer\Browsers Monitor\iexplorer_monitor.exe [74118] [PID.3044]
[MD5.4905E29FE0BE2A4441E4D3AA9D4461C7] - (.No owner - Updater.) -- C:\Program Files\SoftwareUpdater\UpdaterService.exe [31744] [PID.3340] =>PUP.Eorezo
[MD5.02F26F6EDE0308975F86D62B1B5A7BA9] - (...) -- C:\Program Files\lucky leap\updateluckyleap.exe [112416] [PID.816] =>PUP.LuckyLeap
[MD5.02F26F6EDE0308975F86D62B1B5A7BA9] - (...) -- C:\Program Files\lucky leap\bin\utilluckyleap.exe [112416] [PID.3620] =>PUP.LuckyLeap
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\babylon.xml =>PUP.Babylon
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\BitGuard.xml =>PUP.BitGuard
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\BrowserProtect.xml =>Hijacker.Eazel
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\delta.xml =>Toolbar.DeltaSearch
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\SearchResults.xml
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\softonic.xml =>Toolbar.Conduit
M3 - MFPP: Plugins - [dmin] -- C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchplugins\WebSearch.xml
M0 - MFSP: prefs.js [dmin - yb54xgeo.default] http://www.safesearch.net
M0 - MFSP: user.js [dmin - yb54xgeo.default] http://search.us.com =>PUP.StartSearch
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\7an-eouu@c-vzos.com] [] Download keeapEr v1.6 (..) =>PUP.DownloadKeeper
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\addon@geniusinstaller.com] [] GeniusXX Safe ads v1.6 (..) =>Hijacker.GeniusXX
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\firefox@luckyleap.net] [] lucky leap v1.0.0 (..) =>PUP.LuckyLeap
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\ghp-sx@upcg-.com] [] safe save v1.5 (..) =>Adware.SafeSave
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\lsuvn@xx-qsw.com] [] SearchNewTab v1.0 (..) =>Adware.FastSaveApp
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\speeddial@instair.net] [] AccelerateTab v1.4.2 (..) =>PUP.SpeedDial
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\t3hwi8@p-bph.com] [] safe save v1.5 (..) =>Adware.SafeSave
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\toolbar@ask.com] [] v (..)
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\yyrwqa2b@bc-ahid.net] [] SearchNewTab v1.0 (..) =>Adware.FastSaveApp
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\{42e0ced7-806f-4983-af54-92bdeefee519}] [] DealPly Shopping v2.0 (..) =>PUP.DealPly
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\{635abd67-4fe9-1b23-4f01-e679fa7484c1}] [yahoo.ytff] Yahoo! Toolbar v3.1.0.20130818030116 (..)
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\{97A78363-B868-4B48-AC91-A783A31215AF}] [] AppsHat v2.0.1 (..) =>Adware.MegaSearch
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\{99079a25-328f-4bd4-be04-00955acaa0a7}] [] Searchqu Toolbar v4.4.1.00 (..) =>PUP.Datamngr
M2 - MFEP: prefs.js [dmin - yb54xgeo.default\{cb339fdf-7dc6-a232-9716-5ace6e76221f}] [] QuickShare Widget v4.4.1.00 (..) =>PUP.QuickShare
P2 - FPN: [HKCU] [@tightropeinteractive.com/Plugin] - (.Search.Us.com - npAPI Plugin.) -- C:\Users\dmin\AppData\Local\TNT2\2.0.0.1660\npTNT2.dll =>PUP.StartSearch
P2 - FPN: [HKCU] [@tnt2ghost.com/Plugin] - (.Search.Us.com - npAPI Ghost Plugin.) -- C:\Users\dmin\AppData\Local\TNT2\2.0.0.1660\npTNT2ghost.dll =>PUP.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.us.com =>PUP.StartSearch
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} . (.AVSoftware, Ltd - SafeSearch the world wide web..) (No version) -- (.not file.)
R3 - URLSearchHook: UsProvider Class - {539F76FD-084E-4858-86D5-62F02F54AE86} . (.AVSoftware, Ltd - SafeSearch the world wide web..) (No version) -- (.not file.)
O2 - BHO: GeniusXXBHO - {62CE079A-9E67-40B2-A4AB-FD75F6E88B8A} . (.OneWebSearch - GeniusXXIE.) -- C:\Program Files\GeniusXXAddon\GeniusXXIE.dll =>Hijacker.GeniusXX
O2 - BHO: DefaultTabBHO - {7F6AFBF1-E065-4627-A2FD-810366367D01} . (.Search Results LLC. - Search Results.) -- C:\Users\dmin\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll =>Adware.Bandoo
O2 - BHO: Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} . (.No owner - dtx Dynamic Link Library.) -- C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll =>PUP.Datamngr
O2 - BHO: SearchCore for Browsers - {9D717F81-9148-4f12-8568-69135F087DB0} . (.Bandoo Media, inc - Url Helper.) -- C:\Program Files\SearchCore for Browsers\SearchCore for Browsers\BrowserConnection.dll =>Adware.Bandoo
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask
O2 - BHO: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} . (.Softonic.com - No Comment.) -- C:\Program Files\Softonic\Softonic\1.8.19.3\bh\Softonic.dll =>Toolbar.Conduit
O3 - Toolbar: KMPlayer Toolbar - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask
O3 - Toolbar: Searchqu Toolbar - [HKLM]{99079a25-328f-4bd4-be04-00955acaa0a7} . (.No owner - dtx Dynamic Link Library.) -- C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll =>PUP.Datamngr
O3 - Toolbar: QuickShare Widget - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>PUP.QuickShare
O3 - Toolbar: Softonic Toolbar - [HKLM]{5018CFD2-804D-4C99-9F81-25EAEA2769DE} . (.Softonic.com - No Comment.) -- C:\Program Files\Softonic\Softonic\1.8.19.3\SoftonicTlbr.dll =>Toolbar.Conduit
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} Orphan key
O4 - GS\QuickLaunch [dmin]: QQPlayer.lnk . (. Tencent Inc - QQ Player.) -- C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>Adware.TencentAddressBar
O4 - GS\Desktop [dmin]: Paltalk Messenger.lnk . (.AVM Software Inc. - Paltalk Messenger.) -- C:\Program Files\Paltalk Messenger\paltalk.exe
O4 - GS\Desktop [dmin]: QQPlayer.lnk . (. Tencent Inc - QQ Player.) -- C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>Adware.TencentAddressBar
O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe
O4 - GS\Startup [dmin]: bm.lnk . (.iexplorer - iexplorer Browsers Monitor.) -- C:\Users\dmin\AppData\Local\iexplorer\Browsers Monitor\iexplorer_monitor.exe
O4 - HKCU\..\Run: [AppsHat] . (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe =>Adware.MegaSearch
O4 - HKCU\..\Run: [FLV Player] . (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe =>Adware.SocialSkinz
O4 - HKCU\..\Run: [Apps Hat] . (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe =>Adware.MegaSearch
O4 - HKUS\S-1-5-21-1479242142-873513133-3474242716-1000\..\Run: [AppsHat] . (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe =>Adware.MegaSearch
O4 - HKUS\S-1-5-21-1479242142-873513133-3474242716-1000\..\Run: [FLV Player] . (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe =>Adware.SocialSkinz
O4 - HKUS\S-1-5-21-1479242142-873513133-3474242716-1000\..\Run: [Apps Hat] . (.No owner - WebPlayer.) -- C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe =>Adware.MegaSearch
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} . (.AVM Software Inc. - Paltalk Messenger.) -- C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: Visit AppsHat.com - {AAA38851-3CFF-475F-B5E0-720D3645E4A5} . (...) -- C:\Program Files\Minibar\icons\icon16.ico =>PUP.Minibar
O20 - AppInit_DLLs: . (...) - C:\Program Files\Optimizer Pro\OptProCrash.dll =>PUP.OptimizerPro
O23 - Service: Optimizer Pro Crash Monitor (ca82e1a5) . (...) - C:\Program Files\optimi~1\OptProCrashSvc.dll =>PUP.OptimizerPro
O23 - Service: SecureUpdate (SecureUpdateSvc) . (...) - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe (.not file.)
O23 - Service: Software Updater (SrvUpdater) . (.No owner - Updater.) - C:\Program Files\SoftwareUpdater\UpdaterService.exe =>PUP.Eorezo
O23 - Service: Update lucky leap (Update lucky leap) . (...) - C:\Program Files\lucky leap\updateluckyleap.exe =>PUP.LuckyLeap
O23 - Service: Util lucky leap (Util lucky leap) . (...) - C:\Program Files\lucky leap\bin\utilluckyleap.exe =>PUP.LuckyLeap
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Dealply.job [286] =>PUP.DealPly
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\schedule!3036567561.job [414] =>PUP.Offerware
[MD5.D2BCD7C1922E9A5205C0F6D86021FE3D] [APT] [Dealply] (...) -- C:\Users\dmin\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.exe [101992] =>PUP.DealPly
[MD5.584F49EC2BEFFB77685BBB69C87BE8AE] [APT] [DealPlyUpdate] (.DealPly.) -- C:\Program Files\DealPly\DealPlyUpdate.exe [152152] =>PUP.DealPly
[MD5.3E8DCB18626B2D82E4010B3EAEAD4245] [APT] [DTReg] (.Search Results, LLC.) -- C:\Users\dmin\AppData\Roaming\DefaultTab\DefaultTab\DTReg.exe [58976] =>Adware.Bandoo
[MD5.F64487396AB10165DC80BC15CF854D31] [APT] [EPUpdater] (...) -- C:\Users\dmin\AppData\Roaming\BabSolution\Shared\BabMaint.exe [10320] =>Hijacker.BabSolution
[MD5.00000000000000000000000000000000] [APT] [GoforFilesUpdate] (...) -- C:\Program Files\GoforFiles\GFFUpdater.exe (.not file.) [0] =>P2P.GoforFiles
[MD5.00000000000000000000000000000000] [APT] [schedule!3036567561] (...) -- C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe (.not file.) [0] =>PUP.OptimizerPro
[MD5.072DCC93DF71A28E4BE09B827DB04214] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe [137864] =>Toolbar.Ask
[MD5.A89C8A8A9130FAFD2000ED64D4CAFE2E] [APT] [{673740AD-AA76-4B94-AC83-D9E6C14E2BA7}] (.Somoto Ltd..) -- C:\Users\dmin\Local Settings\Application Data\Bundled software uninstaller\bi_client.exe [230480] =>Adware.MegaSearch
O42 - Logiciel: AppsHat Mobile Apps - (.Somoto Ltd..) [HKCU] -- AppsHat Mobile Apps =>Adware.MegaSearch
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.Ask
O42 - Logiciel: DealPly (remove only) - (.DealPly Technologies Ltd..) [HKLM] -- DealPly =>PUP.DealPly
O42 - Logiciel: DefaultTab - (.Search Results, LLC.) [HKLM] -- DefaultTab =>Adware.Bandoo
O42 - Logiciel: GeniusXX - (.GeniusXX.) [HKCU] -- GeniusXX =>Hijacker.GeniusXX
O42 - Logiciel: OptimizerPro - (.BetterSoft.) [HKLM] -- OptimizerPro =>PUP.OptimizerPro
O42 - Logiciel: QuickShare - (.Linkury Inc..) [HKLM] -- {232F1B14-7126-491F-AC8C-6123BA58FDE2} =>PUP.QuickShare
O42 - Logiciel: Search Assistant WebSearch 1.74 - (...) [HKLM] -- SP_b0285714
O42 - Logiciel: Search.us.com - (.Search.us.com.) [HKCU] -- {8DD41AD8-3471-4DA3-938D-D5EFBACE1694} =>PUP.StartSearch
O42 - Logiciel: SearchCore for Browsers - (.Bandoo Media Inc.) [HKLM] -- SearchCore for Browsers =>Adware.Bandoo
O42 - Logiciel: SearchNewTab - (.SearchNewTab.) [HKLM] -- {C670DCAE-E392-AA32-6F42-143C7FC4BDFD} =>Adware.FastSaveApp
O42 - Logiciel: Ss-Helper 1.74 - (...) [HKLM] -- SP_d6949b33 =>Adware.SaveShare
O42 - Logiciel: TornTV - (.TornTV.com.) [HKLM] -- 1ClickDownload =>PUP.1ClickDownloader
O42 - Logiciel: lucky leap 3.0.0 - (.luckyleap.) [HKLM] -- lucky leap =>PUP.LuckyLeap
O42 - Logiciel: safe save - (.safe save.) [HKLM] -- {924C3DC2-8E4E-432E-F973-9A2174A39774} =>Adware.SafeSave
[HKCU\Software\1ClickDownload] =>PUP.1ClickDownloader
[HKCU\Software\5e53de8bb23ded40] =>PUP.BitGuard
[HKCU\Software\APN PIP]
[HKCU\Software\APN]
[HKCU\Software\Ask.com]
[HKCU\Software\BI]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\BrosVideo]
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\DataMngr] =>PUP.Datamngr
[HKCU\Software\DataMngr_Toolbar] =>PUP.Datamngr
[HKCU\Software\DealPly] =>PUP.DealPly
[HKCU\Software\Default Tab] =>Adware.Bandoo
[HKCU\Software\DefaultTab] =>Adware.Bandoo
[HKCU\Software\Delta]
[HKCU\Software\EXNESS]
[HKCU\Software\FileScout] =>PUP.FileScout
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\SearchCore for Browsers] =>Adware.SearchCore
[HKCU\Software\SmartbarBackup] =>Hijacker.SmartBar
[HKCU\Software\SmartbarLog] =>Hijacker.SmartBar
[HKCU\Software\Smartbar] =>Hijacker.SmartBar
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\Tencent] =>Adware.TencentAddressBar
[HKCU\Software\TheSuperMedia]
[HKCU\Software\lucky leap] =>PUP.LuckyLeap
[HKLM\Software\5e53de8bb23ded40] =>PUP.BitGuard
[HKLM\Software\APN]
[HKLM\Software\AskToolbar]
[HKLM\Software\Babylon] =>PUP.Babylon
[HKLM\Software\CandleWorks]
[HKLM\Software\DataMngr] =>PUP.Datamngr
[HKLM\Software\Default Tab] =>Adware.Bandoo
[HKLM\Software\Delta]
[HKLM\Software\Minibar] =>PUP.Minibar
[HKLM\Software\PAPP]
[HKLM\Software\PIP]
[HKLM\Software\SP Global] =>PUP.AdvancedSystemProtector
[HKLM\Software\SProtector] =>PUP.Mocaflix
[HKLM\Software\SearchquMediabarTb] =>PUP.Datamngr
[HKLM\Software\Tencent] =>Adware.TencentAddressBar
[HKLM\Software\Vittalia] =>Adware.Vittalia
O43 - CFD: 18/05/2013 - 11:19:48 - [3,938] ----D C:\Program Files\Ask.com
O43 - CFD: 20/01/2014 - 11:41:57 - [88,204] ----D C:\Program Files\Candleworks
O43 - CFD: 10/03/2014 - 12:43:03 - [1,211] ----D C:\Program Files\DealPly =>PUP.DealPly
O43 - CFD: 08/10/2013 - 10:45:00 - [0,342] ----D C:\Program Files\GeniusXXAddon =>Hijacker.GeniusXX
O43 - CFD: 10/03/2014 - 12:43:08 - [2,007] ----D C:\Program Files\lucky leap =>PUP.LuckyLeap
O43 - CFD: 26/09/2013 - 15:56:43 - [0,384] ----D C:\Program Files\Minibar =>PUP.Minibar
O43 - CFD: 13/02/2014 - 11:14:45 - [0] ----D C:\Program Files\MyPC Backup =>PUP.MyPCBackup
O43 - CFD: 30/09/2013 - 14:22:28 - [0] ----D C:\Program Files\qualitink =>Adware.Qualitink
O43 - CFD: 26/07/2013 - 18:53:55 - [4,450] ----D C:\Program Files\SearchCore for Browsers =>Adware.SearchCore
O43 - CFD: 10/03/2014 - 10:20:57 - [0] ----D C:\Program Files\Secure Speed Dial
O43 - CFD: 19/10/2013 - 23:19:28 - [2,324] ----D C:\Program Files\Softonic =>Toolbar.Conduit
O43 - CFD: 08/10/2013 - 10:45:07 - [1,390] ----D C:\Program Files\Ss-Helper =>Adware.SaveShare
O43 - CFD: 13/09/2013 - 18:58:35 - [89,538] ----D C:\Program Files\Tencent =>Adware.TencentAddressBar
O43 - CFD: 30/09/2013 - 16:07:49 - [0,754] ----D C:\Program Files\TornTV.com =>Hijacker.TornTV
O43 - CFD: 06/07/2013 - 11:01:46 - [1,470] ----D C:\Program Files\WebSearch
O43 - CFD: 14/02/2014 - 19:20:13 - [0,514] ----D C:\Program Files\Common Files\Spigot =>PUP.Dealio
O43 - CFD: 31/01/2014 - 08:19:26 - [0,002] ----D C:\ProgramData\5ffbe7e182d02d1c
O43 - CFD: 31/08/2013 - 00:00:27 - [0] ----D C:\ProgramData\APN
O43 - CFD: 18/05/2013 - 15:25:34 - [0] ----D C:\ProgramData\Babylon =>PUP.Babylon
O43 - CFD: 31/01/2014 - 08:19:22 - [0,009] ----D C:\ProgramData\bkjibfnmoelibkeohnnkmkkglfapiidb
O43 - CFD: 26/07/2013 - 18:53:39 - [0] ----D C:\ProgramData\boost_interprocess
O43 - CFD: 15/11/2013 - 10:05:54 - [0] ----D C:\ProgramData\Download keeapEr =>PUP.DownloadKeeper
O43 - CFD: 08/10/2013 - 10:45:48 - [6,232] ----D C:\ProgramData\InstallMate =>PUP.Tarma
O43 - CFD: 22/12/2013 - 23:19:14 - [0,885] ----D C:\ProgramData\realdeeal
O43 - CFD: 10/03/2014 - 12:43:10 - [0,256] ----D C:\ProgramData\safe save =>Adware.SafeSave
O43 - CFD: 10/03/2014 - 12:43:13 - [0,190] ----D C:\ProgramData\SearchNewTab =>Adware.FastSaveApp
O43 - CFD: 13/09/2013 - 19:00:37 - [0] ----D C:\ProgramData\Tencent =>Adware.TencentAddressBar
O43 - CFD: 20/01/2014 - 11:42:04 - [13,762] --H-D C:\ProgramData\{EAD11D69-704B-44BF-AC79-3E975B0318F6}
O43 - CFD: 20/05/2013 - 14:59:19 - [1,268] ----D C:\Users\dmin\AppData\Roaming\BabSolution =>Hijacker.BabSolution
O43 - CFD: 27/08/2013 - 15:43:14 - [0,135] ----D C:\Users\dmin\AppData\Roaming\Babylon =>PUP.Babylon
O43 - CFD: 18/05/2013 - 15:25:45 - [0,097] ----D C:\Users\dmin\AppData\Roaming\Dealply =>PUP.DealPly
O43 - CFD: 02/11/2013 - 12:07:05 - [3,269] ----D C:\Users\dmin\AppData\Roaming\DefaultTab =>Adware.Bandoo
O43 - CFD: 11/06/2013 - 19:39:04 - [0,308] ----D C:\Users\dmin\AppData\Roaming\File Scout =>PUP.FileScout
O43 - CFD: 10/03/2014 - 12:42:46 - [0,004] ----D C:\Users\dmin\AppData\Roaming\newnext.me =>PUP.NextLive
O43 - CFD: 27/08/2013 - 16:27:38 - [6,314] ----D C:\Users\dmin\AppData\Roaming\OpenCandy =>Adware.OpenCandy
O43 - CFD: 19/10/2013 - 23:19:13 - [0,259] ----D C:\Users\dmin\AppData\Roaming\Softonic =>Toolbar.Conduit
O43 - CFD: 13/09/2013 - 19:00:37 - [0,455] ----D C:\Users\dmin\AppData\Roaming\Tencent =>Adware.TencentAddressBar
O43 - CFD: 26/09/2013 - 15:56:54 - [0,078] ----D C:\Users\dmin\AppData\Local\AppsHat Mobile Apps =>Adware.MegaSearch
O43 - CFD: 14/09/2013 - 11:55:35 - [0,536] ----D C:\Users\dmin\AppData\Local\Babylon =>PUP.Babylon
O43 - CFD: 11/09/2013 - 15:26:41 - [0] ----D C:\Users\dmin\AppData\Local\DLC___Thesupermedia
O43 - CFD: 27/01/2014 - 21:56:38 - [1,224] ----D C:\Users\dmin\AppData\Local\genienext
O43 - CFD: 26/09/2013 - 15:56:48 - [0,945] ----D C:\Users\dmin\AppData\Local\Minibar =>PUP.Minibar
O43 - CFD: 14/09/2013 - 11:51:30 - [20,102] ----D C:\Users\dmin\AppData\Local\Smartbar =>Hijacker.SmartBar
O43 - CFD: 26/09/2013 - 15:56:53 - [0,004] ----D C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat =>Adware.MegaSearch
O43 - CFD: 08/10/2013 - 10:45:00 - [0,001] ----D C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GeniusXX =>Hijacker.GeniusXX
O43 - CFD: 13/09/2013 - 18:58:43 - [0,004] ----D C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>Adware.TencentAddressBar
O43 - CFD: 30/09/2013 - 14:22:08 - [0,002] ----D C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com =>Hijacker.TornTV
O44 - LFC:[MD5.F79AF85626B628D32B53798F0F156467] - 25/02/2014 - 10:14:48 RSH-- . (...) -- C:\autorun.inf [227]
O47 - AAKE:Key Export SP - "C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe" [Enabled] .(..) -- C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe =>Adware.MegaSearch
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("aol_toolbar.default.homepage.check", false);
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("aol_toolbar.default.search.check", false);
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("browser.search.defaultthis.engineName", "SafeSearch Web Search");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.aflt", "babsst");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.autoRvrt", "false");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.dfltLng", "fr");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.excTlbr", false);
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.ffxUnstlRst", true);
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.id", "5e0b61110000000000002e4bd67aions.delta.smplGrp", "none");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.tlbrId", "base");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.tlbrSrchUrl", "");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.vrsn", "1.8.24.6");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.vrsnTs", "1.8.24.611:48:14");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta.vrsni", "1.8.24.6");
O69 - SBI: prefs.js [dmin - yb54xgeo.default] user_pref("extensions.delta_-af54-92bdeefee519%7D:2.0,%7Bc2b1f3ae-5cd5-49b7-8a0c-2c3bcbbbb294%7D:1.1,%7Bcb339fdf-7dc6-a232-9716-5a[...]
O69 - SBI: SearchScopes [HKCU] 4E5D183BFA844299B409CFCDC31A9DBF - (Web Search) - http://www.searchqu.com =>PUP.Datamngr
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} [DefaultScope] - (Mixi.DJ Search) - http://mixidj.delta-search.com =>Toolbar.DeltaSearch
O69 - SBI: SearchScopes [HKCU] {0F704C5F-44E9-41C4-A4E5-B5ABBF7B789D} - (Search.us) - http://search.us.com =>PUP.StartSearch
O69 - SBI: SearchScopes [HKCU] {10A958AF-4F57-4887-BC58-09EA0AA5E8D6} - (Ask Search) - http://www.search.ask.com
O69 - SBI: SearchScopes [HKCU] {6B5593AE-D7CA-49EB-9B11-C86A05B7BFB4} - (Search Here) - http://www.mysearchresults.com =>Adware.MyWebSearch
O69 - SBI: SearchScopes [HKCU] {A2B15931-0039-4AE3-A6CC-5E11BCF299E8} - (Search the web (Softonic)) - http://search.softonic.com =>Adware.IMBooster
O69 - SBI: SearchScopes [HKCU] {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} - (WebSearch) - http://websearch.searchdwebs.info
O87 - FAEL: "{78F7AE3C-C8DC-4937-9E29-C6F23E1C9216}" | In - Public - P6 - TRUE | .(.Visicom Media Inc. - DTX broker.) -- C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe =>PUP.Datamngr
O87 - FAEL: "{5C236276-0AF7-401F-A22C-C2F6D8C5AA25}" | In - Public - P17 - TRUE | .(.Visicom Media Inc. - DTX broker.) -- C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe =>PUP.Datamngr
O87 - FAEL: "{7AE7EE08-8CA1-4E13-87A7-6F9BAE7D0A91}" |In - None - P6 - TRUE | .(...) -- C:\Windows\system32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe (.not file.)
O87 - FAEL: "{66DF5D9A-E336-4C94-8ADE-BC70AEAC681F}" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe (.not file.)
O87 - FAEL: "{D92B352E-9131-43EA-B06E-C385B9F5EA4D}" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\dfrg\minerd.exe (.not file.)
O87 - FAEL: "{91F6D046-D8B9-472E-9ACF-ED5A26B8AD33}" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\dfrg\minerd.exe (.not file.)
O87 - FAEL: "TCP Query User{7E805A94-CB34-4700-AB09-F33AD26E34E2}C:\program files\tencent\qqplayer\qqplayer.exe" | In - Public - P6 - TRUE | .(. Tencent Inc - QQ Player.) -- C:\program files\tencent\qqplayer\qqplayer.exe =>Adware.TencentAddressBar
O87 - FAEL: "UDP Query User{A251B64B-B52C-4FC0-BED5-694733DF47D3}C:\program files\tencent\qqplayer\qqplayer.exe" | In - Public - P17 - TRUE | .(. Tencent Inc - QQ Player.) -- C:\program files\tencent\qqplayer\qqplayer.exe =>Adware.TencentAddressBar
O87 - FAEL: "TCP Query User{50E8123D-509E-4864-BF7C-64CA6B70F2C4}C:\program files\torntv.com\torntv downloader.exe" | In - Public - P6 - TRUE | .(.Cool Mirage - TorntvDownloader.) -- C:\program files\torntv.com\torntv downloader.exe =>Hijacker.TornTV
O87 - FAEL: "UDP Query User{B0E8271E-68CF-48D6-B2F7-A220B70AA261}C:\program files\torntv.com\torntv downloader.exe" | In - Public - P17 - TRUE | .(.Cool Mirage - TorntvDownloader.) -- C:\program files\torntv.com\torntv downloader.exe =>Hijacker.TornTV
O87 - FAEL: "TCP Query User{A799A2F1-DCD7-47D8-AFCA-DDCECAE1F5E2}C:\users\dmin\appdata\local\temp\rar$ex00.040\airplayer.exe" |In - Private - P6 - TRUE | .(...) -- C:\users\dmin\appdata\local\temp\rar$ex00.040\airplayer.exe (.not file.)
O87 - FAEL: "UDP Query User{C2F435BE-A874-4DF0-98E0-F3A5A3724F75}C:\users\dmin\appdata\local\temp\rar$ex00.040\airplayer.exe" |In - Private - P17 - TRUE | .(...) -- C:\users\dmin\appdata\local\temp\rar$ex00.040\airplayer.exe (.not file.)
O87 - FAEL: "TCP Query User{487F84D4-14C8-4967-8330-43481F533F8E}C:\users\dmin\appdata\local\webplayer\appshat\webplayer.exe" | In - Public - P6 - TRUE | .(.No owner - WebPlayer.) -- C:\users\dmin\appdata\local\webplayer\appshat\webplayer.exe =>Adware.MegaSearch
O87 - FAEL: "UDP Query User{AB7F387E-6838-4AFA-886B-3FAAF94207C5}C:\users\dmin\appdata\local\webplayer\appshat\webplayer.exe" | In - Public - P17 - TRUE | .(.No owner - WebPlayer.) -- C:\users\dmin\appdata\local\webplayer\appshat\webplayer.exe =>Adware.MegaSearch
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.KMPlayer Toolbar.) -- c:\program files\ask.com\cb_63a3.ico
[HKCU\Software\5e53de8bb23ded40\2.6.1339.144\upd]:="upd=1" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\2.6.1519.190\upd]:="upd=1" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\2.6.1694.246\upd]:="upd=" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\2.7.1769.27\upd]:="upd=" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:dllName="BitGuard.dll" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:exeName="BitGuard.exe" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:folderName="BitGuard" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:guid="{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:serviceName="BitGuard" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:version="2.6.1673.238" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:dllName="BitGuard.dll" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:exeName="BitGuard.exe" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:folderName="BitGuard" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:guid="{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:serviceName="BitGuard" =>PUP.BitGuard
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:version="2.6.1694.246" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1249.132]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1249.132]:version="2.6.1249.132" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1339.144]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1339.144]:version="2.6.1339.144" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5e53de8bb23ded40] =>PUP.Babylon^
[HKLM\Software\5e53de8bb23ded40]
[MD5.36C00626276A289EECD591DD2DA20CC5] [WIS][14/09/2013] (.Linkury Inc. - QuickShare Widget.) -- C:\Windows\Installer\130ba8.msi [8892416] =>PUP.QuickShare
SS - | Auto 10/07/1658 0 | (SecureUpdateSvc) . (...) - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe
SR - | Auto 08/10/2013 190616 | C:\Program Files\optimi~1\OptProCrashSvc.dll (ca82e1a5) . (...) - C:\Program Files\Optimizer Pro\OptProCrashSvc.dll =>PUP.OptimizerPro
SR - | Auto 12/04/2013 31744 | (SrvUpdater) . (...) - C:\Program Files\SoftwareUpdater\UpdaterService.exe =>PUP.Eorezo
SR - | Auto 07/03/2014 112416 | (Update lucky leap) . (...) - C:\Program Files\lucky leap\updateluckyleap.exe =>PUP.LuckyLeap
SR - | Auto 07/03/2014 112416 | (Util lucky leap) . (...) - C:\Program Files\lucky leap\bin\utilluckyleap.exe =>PUP.LuckyLeap
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{62CE079A-9E67-40B2-A4AB-FD75F6E88B8A}] =>Hijacker.GeniusXX^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}] =>Adware.Bandoo^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] =>PUP.Datamngr^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0}] =>Adware.Bandoo^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Ask^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E87806B5-E908-45FD-AF5E-957D83E58E68}] =>Toolbar.Conduit^
[HKLM\SYSTEM\CurrentControlSet\Services\ca82e1a5] =>PUP.OptimizerPro^
[HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater] =>PUP.Eorezo^
[HKLM\SYSTEM\CurrentControlSet\Services\Update lucky leap] =>PUP.LuckyLeap^
[HKLM\SYSTEM\CurrentControlSet\Services\Util lucky leap] =>PUP.LuckyLeap^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps] =>Adware.MegaSearch^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.Ask^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly] =>PUP.DealPly^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab] =>Adware.Bandoo^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\GeniusXX] =>Hijacker.GeniusXX^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\OptimizerPro] =>PUP.OptimizerPro^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{232F1B14-7126-491F-AC8C-6123BA58FDE2}] =>PUP.QuickShare^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8DD41AD8-3471-4DA3-938D-D5EFBACE1694}] =>PUP.StartSearch^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchCore for Browsers] =>Adware.Bandoo^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}] =>Adware.FastSaveApp^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SP_d6949b33] =>Adware.SaveShare^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload] =>PUP.1ClickDownloader^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\lucky leap] =>PUP.LuckyLeap^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{924C3DC2-8E4E-432E-F973-9A2174A39774}] =>Adware.SafeSave^
[HKLM\Software\Classes\CLSID\{35b8892d-c3fb-4d88-990d-31db2ebd72bd}] =>Adware.RecordNRip
[HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c}] =>Adware.RecordNRip
[HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3}] =>Adware.RecordNRip
[HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785}] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}] =>Toolbar.AskTBar
[HKLM\Software\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}] =>Toolbar.AVGSearch
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] =>PUP.Babylon
[HKLM\Software\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}] =>Adware.Bandoo
[HKLM\Software\Classes\Interface\{26E7211D-0650-43CF-8498-4C81E83AEAAA}] =>PUP.Minibar
[HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}] =>Toolbar.Agent
[HKLM\Software\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}] =>Adware.Bandoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{539F76FD-084E-4858-86D5-62F02F54AE86}] =>PUP.Minibar
[HKLM\Software\Classes\CLSID\{539F76FD-084E-4858-86D5-62F02F54AE86}] =>PUP.Minibar
[HKLM\Software\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15}] =>Adware.Bandoo
[HKLM\Software\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}] =>Hijacker.SmartBar
[HKLM\Software\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}] =>Hijacker.SmartBar
[HKLM\Software\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}] =>Adware.Bandoo
[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask
[HKLM\Software\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}] =>Hijacker.SmartBar
[HKLM\Software\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}] =>Hijacker.SmartBar
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F6AFBF1-E065-4627-A2FD-810366367D01}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F6AFBF1-E065-4627-A2FD-810366367D01}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}] =>Toolbar.Agent
[HKLM\Software\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}] =>Adware.Bandoo
[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] =>Adware.Bandoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] =>Adware.Bandoo
[HKLM\Software\Classes\CLSID\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] =>Adware.Bandoo
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079A25-328F-4BD4-BE04-00955ACAA0A7}] =>Adware.Bandoo
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}] =>Adware.Bandoo
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}] =>Adware.Bandoo
[HKLM\Software\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}] =>Toolbar.AVGSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0}] =>Adware.Bandoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4F12-8568-69135F087DB0}] =>Adware.Bandoo
[HKLM\Software\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0}] =>Adware.Bandoo
[HKLM\Software\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>PUP.ToparcadeHits
[HKLM\Software\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}] =>Adware.Bandoo
[HKLM\Software\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}] =>PUP.Babylon
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AA74D58F-ACD0-450D-A85E-6C04B171C044}] =>PUP.Minibar
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AA74D58F-ACD0-450D-A85E-6C04B171C044}] =>PUP.Minibar
[HKLM\Software\Classes\CLSID\{AA74D58F-ACD0-450D-A85E-6C04B171C044}] =>PUP.Minibar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA74D58F-ACD0-450D-A85E-6C04B171C044}] =>PUP.Minibar
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}] =>PUP.Minibar
[HKLM\Software\Classes\CLSID\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}] =>PUP.Minibar
[HKLM\Software\Microsoft\Internet Explorer\extensions\{AAA38851-3CFF-475F-B5E0-720D3645E4A5}] =>PUP.Minibar
[HKLM\Software\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}] =>Adware.Bandoo
[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKLM\Software\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKLM\Software\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}] =>Hijacker.SmartBar
[HKLM\Software\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}] =>Adware.Bandoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira
[HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira
[HKLM\Software\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}] =>Toolbar.Wajam
[HKLM\Software\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}] =>Adware.Bandoo
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}] =>Adware.Bandoo
[HKLM\Software\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] =>Toolbar.AVGSearch
[HKLM\Software\Classes\TypeLib\{F13D3582-1359-4F8F-9A48-EF3AE9F5701C}] =>PUP.Minibar
[HKLM\Software\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}] =>Adware.Bandoo
[HKLM\Software\Classes\AppID\BHO.DLL] =>Toolbar.Agent
[HKLM\Software\Classes\AppID\BrowserConnection.dll] =>Adware.Bandoo
[HKLM\Software\Classes\AppID\DNSBHO.dll] =>Adware.Bandoo
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Toolbar.Ask
[HKLM\Software\Classes\BrowserConnection.Loader] =>Adware.Bandoo
[HKLM\Software\Classes\BrowserConnection.Loader.1] =>Adware.Bandoo
[HKLM\Software\Classes\DnsBHO.BHO] =>Adware.Bandoo
[HKLM\Software\Classes\DnsBHO.BHO.1] =>Adware.Bandoo
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Toolbar.Ask
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Toolbar.Ask
[HKLM\Software\Classes\S] =>Toolbar.Agent
[HKLM\Software\Classes\SearchQUIEHelper.DNSGuard] =>Adware.Bandoo
[HKLM\Software\Classes\SearchQUIEHelper.DNSGuard.1] =>Adware.Bandoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] =>Toolbar.Ask
[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch
[HKCU\Software\1ClickDownload] =>PUP.1ClickDownloader
[HKCU\Software\APN PIP] =>Toolbar.Ask
[HKCU\Software\APN] =>Toolbar.Ask
[HKLM\Software\APN] =>Toolbar.Ask
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater] =>Toolbar.Ask
[HKCU\Software\Ask.com] =>Toolbar.AskBar
[HKCU\Software\AppDataLow\Software\AskToolbar] =>Toolbar.AskTBar
[HKLM\Software\AskToolbar] =>Toolbar.AskTBar
[HKCU\Software\DataMngr] =>Adware.Bandoo
[HKLM\Software\DataMngr] =>Adware.Bandoo
[HKCU\Software\default tab] =>Adware.IMBooster
[HKLM\Software\default tab] =>Adware.IMBooster
[HKCU\Software\defaulttab] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\defaulttab] =>Adware.IMBooster
[HKLM\Software\Minibar] =>PUP.Minibar
[HKLM\Software\PIP] =>Toolbar.Ask
[HKCU\Software\AppDataLow\Software\Search Settings] =>PUP.Dealio
[HKLM\Software\SearchquMediabarTb] =>Adware.Bandoo
[HKCU\Software\AppDataLow\Software\searchqutoolbar] =>Adware.Bandoo
[HKCU\Software\SmartbarBackup] =>Hijacker.SmartBar
[HKCU\Software\SmartbarLog] =>Hijacker.SmartBar
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKLM\Software\Softonic] =>Toolbar.Conduit
[HKLM\Software\SP Global] =>PUP.AdvancedSystemProtector
[HKCU\Software\AppDataLow\SProtector] =>PUP.AdvancedSystemProtector
[HKLM\Software\SProtector] =>PUP.AdvancedSystemProtector
[HKCU\Software\DealPly] =>PUP.DealPly
[HKLM\Software\DealPly] =>PUP.DealPly
[HKLM\Software\Microsoft\Tracing\MyBabylontb_RASAPI32] =>PUP.Babylon
[HKLM\Software\Microsoft\Tracing\MyBabylontb_RASMANCS] =>PUP.Babylon
[HKLM\Software\Microsoft\Tracing\SearchquMediaBar_RASAPI32] =>Adware.Bandoo
[HKLM\Software\Microsoft\Tracing\SearchquMediaBar_RASMANCS] =>Adware.Bandoo
[HKLM\Software\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32] =>Adware.Bandoo
[HKLM\Software\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS] =>Adware.Bandoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}] =>Adware.SimilarSites
[HKLM\Software\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{CA0167C2-6295-41B8-9BDA-704B2F5E4CD9}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{A5679AB0-C59E-49E7-83C4-5289F844A6E0}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{A3E2F089-DDBB-4CBF-B06C-5D44DA316ED3}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{44B50C01-4993-48E2-ADEE-D812BAE2E9A2}] =>Toolbar.Conduit
[HKLM\Software\Classes\AppID\{B15F118E-AF21-45E8-A809-29FDD7362565}] =>PUP.Funmoods
[HKLM\Software\Classes\TypeLib\{B15F118E-AF21-45E8-A809-29FDD7362565}] =>PUP.Funmoods
[HKLM\Software\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}] =>PUP.Funmoods
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CF034EA-7B46-48D3-8895-8A14B32AE445}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] =>Toolbar.DeltaSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] =>Toolbar.DeltaSearch
[HKLM\Software\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}] =>Toolbar.Conduit
[HKLM\Software\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B}] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\softonic] =>Toolbar.Conduit
[HKLM\Software\Classes\Prod.cap] =>PUP.Babylon
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKLM\Software\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}] =>Adware.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] =>Toolbar.Yahoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] =>Toolbar.Yahoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}] =>PUP.Funmoods
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}] =>PUP.Funmoods
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller] =>Adware.MegaSearch
[HKLM\Software\Microsoft\Tracing\QuickShare_RASAPI32] =>PUP.QuickShare
[HKLM\Software\Microsoft\Tracing\QuickShare_RASMANCS] =>PUP.QuickShare
[HKLM\Software\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}] =>Toolbar.DeltaSearch
[HKLM\Software\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}] =>Adware.MagniPic
[HKLM\Software\Microsoft\Tracing\ConduitInstaller_RASAPI32] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Tracing\ConduitInstaller_RASMANCS] =>Toolbar.Conduit
[HKLM\Software\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj] =>PUP.Dealio
[HKLM\Software\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp] =>PUP.Dealio
[HKLM\Software\SoftwareUpdater] =>Hijacker.Eazel
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater] =>Hijacker.Eazel
[HKCU\Software\BI] =>Adware.MegaSearch
[HKLM\Software\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk] =>PUP.Dealio
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\MixiDJ chrome Toolbar] =>Adware.SmileyBar
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] =>Toolbar.Yahoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] =>Toolbar.Yahoo
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro
[HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro
[HKLM\Software\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}] =>Adware.BrowseFox
[HKLM\Software\Microsoft\Tracing\apnstub_RASAPI32] =>Toolbar.Ask
[HKLM\Software\Microsoft\Tracing\apnstub_RASMANCS] =>Toolbar.Ask
[HKLM\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32] =>Toolbar.Ask
[HKLM\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 410 MediaBar] =>Adware.Bandoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SP_b0285714] =>Adware.Browse2Save^
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.Ask^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:AppsHat =>Adware.MegaSearch^
[HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.Avira
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\7an-eouu@c-vzos.com =>PUP.DownloadKeeper^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\addon@geniusinstaller.com =>Hijacker.GeniusXX^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\firefox@luckyleap.net =>PUP.LuckyLeap^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\ghp-sx@upcg-.com =>Adware.SafeSave^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\lsuvn@xx-qsw.com =>Adware.FastSaveApp^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\speeddial@instair.net =>PUP.SpeedDial^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\t3hwi8@p-bph.com =>Adware.SafeSave^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\yyrwqa2b@bc-ahid.net =>Adware.FastSaveApp^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\{42e0ced7-806f-4983-af54-92bdeefee519} =>PUP.DealPly^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\{97A78363-B868-4B48-AC91-A783A31215AF} =>Adware.MegaSearch^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7} =>PUP.Datamngr^
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\extensions\{cb339fdf-7dc6-a232-9716-5ace6e76221f} =>PUP.QuickShare^
C:\Program Files\DealPly =>PUP.DealPly^
C:\Program Files\GeniusXXAddon =>Hijacker.GeniusXX^
C:\Program Files\lucky leap =>PUP.LuckyLeap^
C:\Program Files\Minibar =>PUP.Minibar^
C:\Program Files\MyPC Backup =>PUP.MyPCBackup^
C:\Program Files\qualitink =>Adware.Qualitink^
C:\Program Files\SearchCore for Browsers =>Adware.SearchCore^
C:\Program Files\Softonic =>Toolbar.Conduit^
C:\Program Files\Ss-Helper =>Adware.SaveShare^
C:\Program Files\Tencent =>Adware.TencentAddressBar^
C:\Program Files\TornTV.com =>Hijacker.TornTV^
C:\Program Files\Common Files\Spigot =>PUP.Dealio^
C:\ProgramData\Babylon =>PUP.Babylon^
C:\ProgramData\Download keeapEr =>PUP.DownloadKeeper^
C:\ProgramData\InstallMate =>PUP.Tarma^
C:\ProgramData\safe save =>Adware.SafeSave^
C:\ProgramData\SearchNewTab =>Adware.FastSaveApp^
C:\ProgramData\Tencent =>Adware.TencentAddressBar^
C:\Users\dmin\AppData\Roaming\BabSolution =>Hijacker.BabSolution^
C:\Users\dmin\AppData\Roaming\Babylon =>PUP.Babylon^
C:\Users\dmin\AppData\Roaming\Dealply =>PUP.DealPly^
C:\Users\dmin\AppData\Roaming\DefaultTab =>Adware.Bandoo^
C:\Users\dmin\AppData\Roaming\File Scout =>PUP.FileScout^
C:\Users\dmin\AppData\Roaming\newnext.me =>PUP.NextLive^
C:\Users\dmin\AppData\Roaming\OpenCandy =>Adware.OpenCandy^
C:\Users\dmin\AppData\Roaming\Softonic =>Toolbar.Conduit^
C:\Users\dmin\AppData\Roaming\Tencent =>Adware.TencentAddressBar^
C:\Users\dmin\AppData\Local\AppsHat Mobile Apps =>Adware.MegaSearch^
C:\Users\dmin\AppData\Local\Babylon =>PUP.Babylon^
C:\Users\dmin\AppData\Local\Minibar =>PUP.Minibar^
C:\Users\dmin\AppData\Local\Smartbar =>Hijacker.SmartBar^
C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat =>Adware.MegaSearch^
C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GeniusXX =>Hijacker.GeniusXX^
C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>Adware.TencentAddressBar^
C:\Users\dmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com =>Hijacker.TornTV^
C:\Program Files\Ask.com =>Toolbar.AskBar
C:\Program Files\Windows Searchqu Toolbar =>Adware.Bandoo
C:\Program Files\WebSearch =>Hijacker.LookForiThere
C:\Program Files\Optimizer Pro =>PUP.OptimizerPro
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SearchNewTab =>Adware.FastSaveApp
C:\Users\dmin\AppData\Roaming\Optimizer Pro =>PUP.OptimizerPro
C:\Users\dmin\AppData\Local\Bundled software uninstaller =>Adware.MegaSearch
C:\Users\dmin\AppData\LocalLow\AskToolbar =>Toolbar.AskTBar
C:\Users\dmin\AppData\LocalLow\SearchNewTab =>Adware.FastSaveApp
C:\Users\dmin\AppData\LocalLow\Minibar =>PUP.Minibar
C:\Users\dmin\AppData\LocalLow\searchquband =>Adware.Bandoo
C:\Users\dmin\AppData\LocalLow\searchqutoolbar =>Adware.Bandoo
C:\Users\dmin\AppData\LocalLow\Smartbar =>Hijacker.SmartBar
C:\Users\dmin\AppData\Local\Temp\Smartbar =>Hijacker.SmartBar
C:\Users\dmin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde =>Toolbar.DeltaSearch
C:\Users\dmin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof =>Toolbar.AVGSearch
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\searchqutoolbar =>Adware.Bandoo
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\Extensions\toolbar@ask.com =>Toolbar.AskTBar
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\SearchPlugins\SearchResults.xml =>Toolbar.Agent
C:\Users\dmin\AppData\Roaming\Mozilla\Firefox\Profiles\yb54xgeo.default\Extensions\addon@defaulttab.com.xpi =>Adware.Bandoo
C:\Users\dmin\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe =>Adware.MegaSearch^
C:\Users\dmin\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe =>Adware.SocialSkinz^
C:\Program Files\SoftwareUpdater\UpdaterService.exe =>PUP.Eorezo^
C:\Program Files\lucky leap\updateluckyleap.exe =>PUP.LuckyLeap^
C:\Program Files\lucky leap\bin\utilluckyleap.exe =>PUP.LuckyLeap^
C:\Windows\Tasks\Dealply.job =>PUP.DealPly^
C:\Windows\Tasks\schedule!3036567561.job =>PUP.Offerware^
C:\Users\dmin\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.exe =>PUP.DealPly^
C:\Program Files\DealPly\DealPlyUpdate.exe =>PUP.DealPly^
C:\Users\dmin\AppData\Roaming\DefaultTab\DefaultTab\DTReg.exe =>Adware.Bandoo^
C:\Users\dmin\AppData\Roaming\BabSolution\Shared\BabMaint.exe =>Hijacker.BabSolution^
C:\Program Files\Ask.com\UpdateTask.exe =>Toolbar.Ask^
C:\Users\dmin\Local Settings\Application Data\Bundled software uninstaller\bi_client.exe =>Adware.MegaSearch^
[HKCU\Software\BabSolution] =>Hijacker.BabSolution^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
[HKCU\Software\DataMngr_Toolbar] =>PUP.Datamngr^
[HKCU\Software\Default Tab] =>Adware.Bandoo^
[HKCU\Software\DefaultTab] =>Adware.Bandoo^
[HKCU\Software\FileScout] =>PUP.FileScout^
[HKCU\Software\SearchCore for Browsers] =>Adware.SearchCore^
[HKCU\Software\Smartbar] =>Hijacker.SmartBar^
[HKCU\Software\Tencent] =>Adware.TencentAddressBar^
[HKCU\Software\lucky leap] =>PUP.LuckyLeap^
[HKLM\Software\Babylon] =>PUP.Babylon^
[HKLM\Software\Default Tab] =>Adware.Bandoo^
[HKLM\Software\Tencent] =>Adware.TencentAddressBar^
[HKLM\Software\Vittalia] =>Adware.Vittalia^
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1673.238]:dllName="BitGuard.dll" =>PUP.BitGuard^
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}2.6.1694.246]:dllName="BitGuard.dll" =>PUP.BitGuard^
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1249.132]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel^
[HKCU\Software\5e53de8bb23ded40\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1339.144]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel^
[HKCU\Software\5e53de8bb23ded40] =>PUP.Babylon^^
C:\Windows\Installer\130ba8.msi =>PUP.QuickShare^

EmptyFlash
EmptyTemp
EmptyClsid
FirewallRaz
Proxyfix
SysRestore

Publicité


Signaler le contenu de ce document

Publicité