cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
[MD5.E7F2414D8EBF7C269FC5FC878C1DD1E9] - (.APN LLC. - APN Updater.) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784] [PID.1848]
G2 - GCE: Preference [User Data\Default] [aaaaipkbmjkakicapiinmamgjlkaeehh] KMP Media Toolbar v.34.3, (Désactivé)
G2 - GCE: Preference [User Data\Default] [ifohbjbgfchkkfhphahclmkpgejiplfo] Lightning Newtab v.1.1.6.6, (Désactivé) =>PUP.Elex
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://start.qone8.com =>Hijacker.Qone8
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://start.qone8.com =>Hijacker.Qone8
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://start.qone8.com =>Hijacker.Qone8
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://start.qone8.com =>Hijacker.Qone8
O4 - GS\QuickLaunch [User]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe http://start.qone8.com =>Hijacker.Qone8
O4 - GS\Program [User]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://start.qone8.com =>Hijacker.Qone8
O4 - GS\SystemTools [User]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://start.qone8.com =>Hijacker.Qone8
O4 - GS\Desktop [User]: iexplore.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe http://start.qone8.com =>Hijacker.Qone8
O4 - GS\Desktop [User]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\16.0.1196.62\opera.exe http://start.qone8.com =>Hijacker.Qone8
O23 - Service: Util GreyGray (Util GreyGray) . (...) - C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe (.not file.) =>PUP.GreyGray
O23 - Service: Service de mise à jour Ask (APNMCP) . (.APN LLC. - APN Updater.) - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O42 - Logiciel: KMP Media Toolbar - (.APN, LLC.) [HKLM][64Bits] -- {4B4D5056-3700-A76A-76A7-A758B70C0F00}
[HKCU\Software\APN PIP]
[HKCU\Software\AskPartnerNetwork]
[HKCU\Software\PIP]
[HKCU\Software\VNT]
[HKLM\Software\Wow6432Node\AskPartnerNetwork]
[HKLM\Software\Wow6432Node\PIP]
O43 - CFD: 16/07/2014 - 15:31:58 - [] ----D C:\Program Files (x86)\AskPartnerNetwork
O43 - CFD: 22/06/2014 - 17:27:35 - [] ----D C:\Program Files (x86)\VNT
O43 - CFD: 29/08/2013 - 22:55:16 - [] ----D C:\ProgramData\APN
O43 - CFD: 12/04/2014 - 08:25:40 - [] ----D C:\ProgramData\AskPartnerNetwork
O43 - CFD: 22/06/2014 - 17:27:38 - [] ----D C:\Users\User\AppData\Local\AskPartnerNetwork
O43 - CFD: 22/06/2014 - 17:27:38 - [] ----D C:\Users\User\AppData\Local\VNT
O53 - SMSR:HKLM\...\startupreg\ApnTBMon [Key] . (...) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (.not file.)
[MD5.A1BA1862ED87D09DDCD36F878392CA47] [APT] [AutoKMS] (...) -- C:\Windows\AutoKMS\AutoKMS.exe [3153408] =>Trojan.AutoKMS
[HKCU\Software\AppDataLow\Software\WinToFlash Suggestor] =>Spyware.WinToFlash
[HKLM\Software\Wow6432Node\eSafeSecControl] =>PUP.eSafeSecurity
O43 - CFD: 04/03/2014 - 21:16:05 - [] ----D C:\Program Files (x86)\Mobogenie =>PUP.Mobogenie
O43 - CFD: 16/07/2014 - 17:26:32 - [0] ----D C:\ProgramData\eSafe =>PUP.eSafeSecurity
O43 - CFD: 04/11/2013 - 11:26:10 - [] ----D C:\ProgramData\InstallMate =>PUP.Tarma
O43 - CFD: 04/03/2014 - 21:16:05 - [0] ----D C:\Users\User\AppData\Local\genienext =>PUP.NextLive
O43 - CFD: 25/12/2013 - 17:40:23 - [] ----D C:\Users\User\AppData\Local\Mobogenie =>PUP.Mobogenie
O43 - CFD: 05/11/2013 - 16:54:06 - [] ----D C:\Users\User\AppData\Local\SwvUpdater =>PUP.Software.Updater
O53 - SMSR:HKLM\...\startupreg\mobilegeni daemon [Key] . (...) -- C:\Program Files (x86)\Mobogenie\DaemonProcess.exe (.not file.) =>PUP.Mobogenie
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateGreyGray_RASAPI32 =>PUP.GreyGray
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateGreyGray_RASMANCS =>PUP.GreyGray
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilGreyGray_RASAPI32 =>PUP.GreyGray
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilGreyGray_RASMANCS =>PUP.GreyGray
SS - | Auto 10/07/1658 0 | (Util GreyGray) . (...) - C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe =>PUP.GreyGray
O53 - SMSR:HKLM\...\startupreg\VNT [Key] . (.APN LLC. - Virtual New Tab Loader.) -- C:\Program Files (x86)\VNT\vntldr.exe
O90 - PUC: "6505D4B40073A67A677A7A857BC0F000" . (.KMP Media Toolbar.) -- C:\Windows\Installer\{4B4D5056-3700-A76A-76A7-A758B70C0F00}\ToolbarIcon.exe
[MD5.B3A7033CB217A12CA5AFC4C68B1A579C] [WIS][21/06/2014] (.APN, LLC - KMP Media Toolbar.) -- C:\Windows\Installer\1c6291a.msi [401408]
SR - | Auto 14/06/2014 165784 | (APNMCP) . (.APN LLC..) - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
[HKLM\Software\Google\Chrome\Extensions\aaaaipkbmjkakicapiinmamgjlkaeehh]
[HKLM\SYSTEM\CurrentControlSet\Services\APNMCP]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4B4D5056-3700-A76A-76A7-A758B70C0F00}]
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\VNT]
[HKLM\Software\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}]
[HKLM\Software\Wow6432Node\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}]
[HKLM\Software\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}]
[HKCU\Software\APN PIP]
[HKCU\Software\PIP]
[HKLM\Software\Wow6432Node\PIP]
[HKLM\Software\Wow6432Node\Microsoft\Tracing\apnstub_RASMANCS]
[HKLM\Software\Wow6432Node\Microsoft\Tracing\apnstub_RASAPI32]
[HKCU\Software\AskPartnerNetwork]
[HKLM\Software\Wow6432Node\AskPartnerNetwork]
C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaipkbmjkakicapiinmamgjlkaeehh
C:\Program Files (x86)\AskPartnerNetwork
C:\ProgramData\AskPartnerNetwork
C:\Users\User\AppData\Local\AskPartnerNetwork
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
C:\Windows\Installer\1c6291a.msi
[HKLM\Software\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo] =>PUP.Elex^
[HKLM\SYSTEM\CurrentControlSet\Services\Util GreyGray] =>PUP.GreyGray^
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\mobilegeni daemon] =>PUP.Mobogenie^
[HKLM\Software\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>PUP.ToparcadeHits
[HKLM\Software\Wow6432Node\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>PUP.ToparcadeHits
[HKLM\Software\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}] =>PUP.Software.Updater
[HKLM\Software\Wow6432Node\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}] =>PUP.Software.Updater
[HKLM\Software\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}] =>PUP.Software.Updater
[HKLM\Software\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper
[HKLM\Software\Wow6432Node\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper
[HKLM\Software\Classes\Updater.AmiUpd] =>PUP.Software.Updater
[HKLM\Software\Classes\AppID\{D651E893-3D08-458D-A242-0E6B862E6507}] =>Hijacker.Alnaddy
[HKLM\Software\Wow6432Node\Classes\AppID\{D651E893-3D08-458D-A242-0E6B862E6507}] =>Hijacker.Alnaddy
[HKLM\Software\Wow6432Node\eSafeSecControl] =>PUP.eSafeSecurity
[HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc] =>PUP.eSafeSecurity
[HKCU\Software\AppDataLow\Software\WinToFlash Suggestor] =>Spyware.WinToFlash
C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo =>PUP.Elex^
C:\Program Files (x86)\Mobogenie =>PUP.Mobogenie^
C:\ProgramData\eSafe =>PUP.eSafeSecurity^
C:\ProgramData\InstallMate =>PUP.Tarma^
C:\Users\User\AppData\Local\genienext =>PUP.NextLive^
C:\Users\User\AppData\Local\Mobogenie =>PUP.Mobogenie^
C:\Users\User\AppData\Local\SwvUpdater =>PUP.Software.Updater^
C:\Windows\AutoKMS\AutoKMS.exe =>Trojan.AutoKMS^

ShortcutFix
FirewallRaz
EmptyTemp
EmptyFlash
Proxyfix
Sysrestore

Publicité


Signaler le contenu de ce document

Publicité