cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
EmptyPrefetch
FirewallRaz
PROXYFix
EmptyTemp
EmptyFlash
EmptyClsid
SysRestore

[MD5.A8BEE2100EDB07A511B67A9C2E2D7F9E] - (...) -- C:\Users\Am�lie\AppData\Roaming\cacaoweb\cacaoweb.exe [514864] [PID.3384] =>PUP.CacaoWeb
[MD5.856583D21B8BA2FF83BB23641B5A91F1] - (...) -- C:\Program Files (x86)\WSE_Astromenda\BRS\brs.exe [1074688] [PID.3988] =>PUP.Astromenda
[MD5.C42B3FAC14A4FFD9909361326302F0EE] - (...) -- C:\Program Files (x86)\ClearThink\updater.exe [135920] [PID.4592]
M3 - MFPP: Plugins - [Am�lie] -- C:\Users\Am�lie\AppData\Roaming\Mozilla\Firefox\Profiles\po06km94.default\searchplugins\trovi-search.xml =>Hijacker.Trovigo
M0 - MFSP: prefs.js [Am�lie - po06km94.default] http://www.trovi.com =>Hijacker.TroviCom
M2 - MFEP: prefs.js [Am�lie - po06km94.default\cacaoweb@cacaoweb.org] [] cacaoweb v1.0.34 (..) =>PUP.CacaoWeb
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://astromenda.com =>PUP.Astromenda
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com =>PUP.HelperBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com =>PUP.HelperBar
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> =>Hijacker.Proxy
O2 - BHO: PriceGong [64Bits] - {1631550F-191D-4826-B069-D9439253D926} Cl� orpheline =>Adware.PriceGong
O2 - BHO: (no name) [64Bits] - {31ad400d-1b06-4e33-a59a-90c2c140cba0} Cl� orpheline
O2 - BHO: ClearThink [64Bits] - {7e6d4e3e-fc66-4036-9799-ce5c625c4c56} . (.ClearThink - ClearThink.) -- C:\Program Files (x86)\ClearThink\ClearThinkbho.dll
O2 - BHO: (no name) [64Bits] - {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} Cl� orpheline
O3 - Toolbar: Yahoo Community Smartbar (by Linkury) - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>Hijacker.SmartBar
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EEE6C35B-6118-11DC-9C72-001320C79847} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{977AE9CC-AF83-45E8-9E03-E2798216E2D5} Cl� orpheline
O4 - GS\Desktop [Public]: Advanced-System Protector.lnk . (.Systweak - Advanced-System Protector.) -- C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe =>PUP.AdvancedSystemProtector
O4 - GS\Desktop [Public]: PC Scan & Repair by Reimage.lnk . (.Reimage� - Reimage Downloader.) -- C:\Program Files\Reimage\Reimage Repair\ReimageRepair.exe =>Rogue.ReimageRepair
O4 - GS\Desktop [Public]: RegClean Pro.lnk . (...) -- C:\Program Files (x86)\RCP\RegCleanPro.exe =>Rogue.RegistryPowerCleaner
O4 - GS\Desktop [Public]: System Speedup.lnk . (.System Speedup - System Speedup.) -- C:\Program Files (x86)\System Speedup\SystemSpeedup.exe =>PUP.SystemSpeedup
O4 - GS\Program [Am�lie]: Search.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe http://feed.helperbar.com =>PUP.HelperBar
O4 - GS\Desktop [Am�lie]: MyPC Backup.lnk . (.MyPCBackup.com - MyPC Backup.) -- C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe =>PUP.MyPCBackup
O4 - GS\Desktop [Am�lie]: ParetoLogic PC Health Advisor.lnk . (.ParetoLogic, Inc. - ParetoLogic PC Health Advisor.) -- C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe =>Rogue.PCHealthAdvisor
O4 - GS\Startup [Am�lie]: MyPC Backup.lnk . (.MyPCBackup.com - MyPC Backup.) -- C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe =>PUP.MyPCBackup
O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\Am�lie\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb
O4 - HKCU\..\Run: [BRS] . (...) -- C:\Program Files (x86)\WSE_Astromenda\BRS\brs.exe =>PUP.Astromenda
O4 - HKCU\..\RunOnce: [WSE_Astromenda] wscript \E:vbscript \B C:\Users\AMLIE~1\AppData\Roaming\WSE_Astromenda\UpdateProc\bkup.dat (.not file.) =>PUP.Astromenda
O4 - HKUS\S-1-5-21-4088295352-1026521875-3589447714-1000\..\Run: [cacaoweb] . (...) -- C:\Users\Am�lie\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb
O4 - HKUS\S-1-5-21-4088295352-1026521875-3589447714-1000\..\Run: [BRS] . (...) -- C:\Program Files (x86)\WSE_Astromenda\BRS\brs.exe =>PUP.Astromenda
O4 - HKUS\S-1-5-21-4088295352-1026521875-3589447714-1000\..\RunOnce: [WSE_Astromenda] wscript \E:vbscript \B C:\Users\AMLIE~1\AppData\Roaming\WSE_Astromenda\UpdateProc\bkup.dat (.not file.) =>PUP.Astromenda
O20 - AppInit_DLLs: . (.Client Connect LTD - Search Protect.) - C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll =>PUP.SearchProtect
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) . (.Just Develop It - Backup Stack.) - C:\Program Files (x86)\MyPC Backup\BackupStack.exe =>PUP.MyPCBackup
O23 - Service: Search Protect Service (CltMngSvc) . (.Client Connect LTD - Search Protect.) - C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe =>PUP.SearchProtect
O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) . (.Reimage� - Reimage Real Time Protection.) - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>Rogue.ReimageRepair
O23 - Service: Update ClearThink (Update ClearThink) . (...) - C:\Program Files (x86)\ClearThink\updateClearThink.exe
O23 - Service: Update Zebar (Update Zebar) . (...) - C:\Program Files (x86)\Zebar\updateZebar.exe (.not file.) =>PUP.Zebar
O23 - Service: UpdaterSvcClearThink (UpdaterSvcClearThink) . (...) - C:\Program Files (x86)\ClearThink\updater.exe
[MD5.74B0E361B8E514C3997605DD5AB8402A] [APT] [Advanced-System Protector_startup] (.Systweak.) -- C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe [6707056] =>PUP.AdvancedSystemProtector
[MD5.786DDB7A0021E46B49D0D14E7734B281] [APT] [ASP] (.Systweak Inc.) -- C:\Program Files (x86)\RCP\systweakasp.exe [593136]
[MD5.D71B43939F68C138219160D19D7AE440] [APT] [ParetoLogic Update Version3] (.ParetoLogic Inc..) -- C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [230192] =>PUP.Paretologic
[MD5.D6417E3EE99744EDECC5978CAC82A1B0] [APT] [PC Health Advisor] (.ParetoLogic, Inc..) -- C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe [4830512] =>Rogue.PCHealthAdvisor
[MD5.D6417E3EE99744EDECC5978CAC82A1B0] [APT] [PC Health Advisor Defrag] (.ParetoLogic, Inc..) -- C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe [4830512] =>Rogue.PCHealthAdvisor
[MD5.1AAFCDB4976721B7C67917A6DF77780D] [APT] [RegClean Pro] (...) -- C:\Program Files (x86)\RCP\RegCleanPro.exe [8077672] =>Rogue.RegistryPowerCleaner
[MD5.3C6EB529526C6347CE7B3B0E858D4FE9] [APT] [Reimage Reminder] (...) -- C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe [4376416] =>Rogue.ReimageRepair
[MD5.20147BABAF99A9A7AE0C58F335DC9DBB] [APT] [ReimageUpdater] (.Reimage�.) -- C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [7101288] =>Rogue.ReimageRepair
[MD5.4F681F587B7538253C01AA73B822015B] [APT] [RocketTab] (...) -- C:\Program Files (x86)\RocketTab\Client.exe [1420520] =>PUP.RockTurner
[MD5.5643B1FBFFD4ECC93DA3554A6B93D62F] [APT] [RocketTab Update Task] (...) -- C:\Program Files (x86)\RocketTab\uninstall.exe [3875552] =>PUP.RockTurner
[MD5.4EAFD3229BC4FB89130E89BE8C9EF4A2] [APT] [System Speedup] (.System Speedup.) -- C:\Program Files (x86)\System Speedup\SystemSpeedup.exe [7833960] =>PUP.SystemSpeedup
[MD5.4EAFD3229BC4FB89130E89BE8C9EF4A2] [APT] [System Speedup_DEFAULT] (.System Speedup.) -- C:\Program Files (x86)\System Speedup\SystemSpeedup.exe [7833960] =>PUP.SystemSpeedup
[MD5.4EAFD3229BC4FB89130E89BE8C9EF4A2] [APT] [System Speedup_UPDATES] (.System Speedup.) -- C:\Program Files (x86)\System Speedup\SystemSpeedup.exe [7833960] =>PUP.SystemSpeedup
[MD5.9B797715ED54AC83EE91EB8F4CE6F31B] [APT] [WSE_Astromenda] (...) -- C:\Users\Am�lie\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.exe [478208] =>PUP.Astromenda
[MD5.1608D54DC69EA7E763CDAB78F71CAFD6] [APT] [{65D9C960-E531-40EB-9CA3-BB2904BFCBEB}] (.Skytech Co., Ltd..) -- C:\Users\Am�lie\AppData\Roaming\sweet-page\UninstallManager.exe [1856512] =>PUP.SweetPage
O39 - APT: - (..) -- C:\Windows\Tasks\ParetoLogic Registration3.job [470] =>PUP.Paretologic
O39 - APT: - (..) -- C:\Windows\System32\Tasks\ParetoLogic Registration3 [470] =>PUP.Paretologic
O39 - APT: ParetoLogic Update Version3 - (.ParetoLogic Inc..) -- C:\Windows\Tasks\ParetoLogic Update Version3.job [444] =>PUP.Paretologic
O39 - APT: ParetoLogic Update Version3 - (.ParetoLogic Inc..) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 [444] =>PUP.Paretologic
O39 - APT: PC Health Advisor Defrag - (.ParetoLogic, Inc..) -- C:\Windows\Tasks\PC Health Advisor Defrag.job [402] =>Rogue.PCHealthAdvisor
O39 - APT: PC Health Advisor Defrag - (.ParetoLogic, Inc..) -- C:\Windows\System32\Tasks\PC Health Advisor Defrag [402] =>Rogue.PCHealthAdvisor
O39 - APT: PC Health Advisor - (.ParetoLogic, Inc..) -- C:\Windows\Tasks\PC Health Advisor.job [384] =>Rogue.PCHealthAdvisor
O39 - APT: PC Health Advisor - (.ParetoLogic, Inc..) -- C:\Windows\System32\Tasks\PC Health Advisor [384] =>Rogue.PCHealthAdvisor
O39 - APT: System Speedup_DEFAULT - (.System Speedup.) -- C:\Windows\Tasks\System Speedup_DEFAULT.job [286] =>PUP.SystemSpeedup
O39 - APT: System Speedup_DEFAULT - (.System Speedup.) -- C:\Windows\System32\Tasks\System Speedup_DEFAULT [286] =>PUP.SystemSpeedup
O39 - APT: System Speedup_UPDATES - (.System Speedup.) -- C:\Windows\Tasks\System Speedup_UPDATES.job [294] =>PUP.SystemSpeedup
O39 - APT: System Speedup_UPDATES - (.System Speedup.) -- C:\Windows\System32\Tasks\System Speedup_UPDATES [294] =>PUP.SystemSpeedup
O39 - APT: WSE_Astromenda - (...) -- C:\Windows\Tasks\WSE_Astromenda.job [298] =>PUP.Astromenda
O39 - APT: WSE_Astromenda - (...) -- C:\Windows\System32\Tasks\WSE_Astromenda [298] =>PUP.Astromenda
O41 - Driver: ({6ccfd995-07be-49cf-8ad6-1422dc08761a}Gw64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\{6ccfd995-07be-49cf-8ad6-1422dc08761a}Gw64.sys =>PUP.LinkiDoo
O41 - Driver: ({9f93bd66-d3d2-427d-b37f-743603e2388d}Gw64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\{9f93bd66-d3d2-427d-b37f-743603e2388d}Gw64.sys =>PUP.LinkiDoo
O41 - Driver: ({f61d0959-c00e-4800-91d0-296b3b46d3ca}Gw64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\{f61d0959-c00e-4800-91d0-296b3b46d3ca}Gw64.sys =>PUP.LinkiDoo
O42 - Logiciel: Advanced-System Protector - (.Systweak Software.) [HKLM][64Bits] -- 00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~4A5BE654_is1 =>PUP.AdvancedSystemProtector
O42 - Logiciel: BrowserSafeguard with RocketTab - (.BrowserSafeguard with RocketTab.) [HKLM][64Bits] -- RocketTab =>PUP.RockTurner
O42 - Logiciel: ClearThink - (.ClearThink.) [HKLM][64Bits] -- ClearThink
O42 - Logiciel: File Extractor Packages - (...) [HKCU][64Bits] -- File Extractor Packages =>Adware.DownTango
O42 - Logiciel: Installer - (...) [HKLM][64Bits] -- VOPackage =>Adware.Downware
O42 - Logiciel: MyPC Backup - (.JDi Backup Ltd.) [HKLM][64Bits] -- MyPC Backup =>PUP.MyPCBackup
O42 - Logiciel: ParetoLogic PC Health Advisor - (.ParetoLogic, Inc..) [HKLM][64Bits] -- {3CBF3EBB-235D-4c29-A68B-2BB1F428586E} =>Rogue.PCHealthAdvisor
O42 - Logiciel: RegClean-Pro - (.Systweak Inc.) [HKLM][64Bits] -- RegClean-Pro_is1 =>Rogue.RegistryPowerCleaner
O42 - Logiciel: Reimage Repair - (.Reimage.) [HKLM][64Bits] -- Reimage Repair =>Rogue.ReimageRepair
O42 - Logiciel: Search Protect - (.Client Connect LTD.) [HKLM][64Bits] -- SearchProtect =>PUP.SearchProtect
O42 - Logiciel: System Speedup - (.systemspeedup.com.) [HKLM][64Bits] -- System Speedup_is1 =>PUP.SystemSpeedup
O42 - Logiciel: WSE_Astromenda - (.WSE_Astromenda.) [HKLM][64Bits] -- WSE_Astromenda =>PUP.Astromenda
[HKCU\Software\AnyProtect] =>PUP.AnyProtect
[HKCU\Software\AppDataLow\Software\BlockAndSurf] =>PUP.BlockAndSurf
[HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider
[HKCU\Software\AppDataLow\Software\DynConIE] =>PUP.DynConIE
[HKCU\Software\AppDataLow\Software\PriceGong] =>Adware.PriceGong
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}]
[HKCU\Software\Boxore] =>Adware.Boxore
[HKCU\Software\ClearThink]
[HKCU\Software\Cr_Installer] =>PUP.CrossRider
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\Linkey] =>PUP.LinkeySearch
[HKCU\Software\Optimizer Pro] =>PUP.OptimizerPro
[HKCU\Software\ParetoLogic] =>PUP.Paretologic
[HKCU\Software\Reimage] =>Rogue.ReimageRepair
[HKCU\Software\RocketTabInstalled] =>PUP.RockTurner
[HKCU\Software\SearchProtectWS] =>PUP.SearchProtect
[HKCU\Software\SmartbarBackup] =>Hijacker.SmartBar
[HKCU\Software\SmartbarLog] =>Hijacker.SmartBar
[HKCU\Software\Smartbar] =>Hijacker.SmartBar
[HKCU\Software\Store] =>PUP.Nosibay
[HKCU\Software\SupHpUISoft] =>PUP.CrossRider
[HKCU\Software\SweetIM] =>PUP.SweetIM
[HKCU\Software\System Speedup] =>PUP.SystemSpeedup
[HKCU\Software\TutoTag] =>PUP.AgenceExclusive
[HKCU\Software\cacaoweb] =>PUP.CacaoWeb
[HKCU\Software\eojet] =>PUP.Eorezo
[HKCU\Software\globalUpdate]
[HKCU\Software\wse_astromenda] =>PUP.Astromenda
[HKLM\Software\Reimage] =>Rogue.ReimageRepair
[HKLM\Software\Wow6432Node\Babylon] =>PUP.Babylon
[HKLM\Software\Wow6432Node\Boxore] =>Adware.Boxore
[HKLM\Software\Wow6432Node\ClearThink]
[HKLM\Software\Wow6432Node\FREESOFTTODAY] =>Adware.FreeSoftToday
[HKLM\Software\Wow6432Node\GlobalUpdate]
[HKLM\Software\Wow6432Node\Iminent] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\InstallCore] =>Adware.InstallCore
[HKLM\Software\Wow6432Node\ParetoLogic] =>PUP.Paretologic
[HKLM\Software\Wow6432Node\SPPDCOM] =>Rogue.PCSpeedUp
[HKLM\Software\Wow6432Node\SmdmF] =>PUP.SystemK
[HKLM\Software\Wow6432Node\SweetIM] =>PUP.SweetIM
[HKLM\Software\Wow6432Node\System Speedup] =>PUP.SystemSpeedup
[HKLM\Software\Wow6432Node\Tutorials] =>PUP.AgenceExclusive
[HKLM\Software\Wow6432Node\supTab] =>PUP.SupTab
[HKLM\Software\Wow6432Node\supWPM] =>PUP.WpManager
[HKLM\Software\Wow6432Node\supWindowsMangerProtect] =>PUP.Fuyu
[HKLM\Software\Wow6432Node\sweet-pageSoftware] =>PUP.SweetPage
O43 - CFD: 03/09/2014 - 18:21:23 - [] ----D C:\Program Files (x86)\ClearThink
O43 - CFD: 31/08/2014 - 21:50:34 - [] ----D C:\Program Files (x86)\FLVM Player
O43 - CFD: 31/08/2014 - 21:55:48 - [] ----D C:\Program Files (x86)\globalUpdate
O43 - CFD: 31/08/2014 - 21:50:35 - [] ----D C:\Program Files (x86)\LPT =>Adware.Incredibar
O43 - CFD: 03/09/2014 - 18:20:44 - [] ----D C:\Program Files (x86)\MyPC Backup =>PUP.MyPCBackup
O43 - CFD: 31/08/2014 - 14:45:09 - [] ----D C:\Program Files (x86)\Optimizer Pro =>PUP.OptimizerPro
O43 - CFD: 03/09/2014 - 18:26:15 - [] ----D C:\Program Files (x86)\ParetoLogic =>PUP.Paretologic
O43 - CFD: 03/09/2014 - 18:21:04 - [] ----D C:\Program Files (x86)\RCP
O43 - CFD: 03/09/2014 - 19:56:20 - [] ----D C:\Program Files (x86)\RocketTab =>PUP.RockTurner
O43 - CFD: 03/09/2014 - 20:00:33 - [] ----D C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect
O43 - CFD: 31/08/2014 - 16:31:15 - [0] ----D C:\Program Files (x86)\ShopSave Toolbar
O43 - CFD: 31/08/2014 - 21:50:35 - [] ----D C:\Program Files (x86)\Software
O43 - CFD: 03/09/2014 - 02:04:12 - [] ----D C:\Program Files (x86)\SupTab =>PUP.SupTab
O43 - CFD: 03/09/2014 - 20:11:23 - [] ----D C:\Program Files (x86)\System Speedup =>PUP.SystemSpeedup
O43 - CFD: 03/09/2014 - 18:21:04 - [] ----D C:\Program Files (x86)\WSE_Astromenda =>PUP.Astromenda
O43 - CFD: 31/08/2014 - 21:50:35 - [] ----D C:\Program Files (x86)\Zebar =>PUP.Zebar
O43 - CFD: 03/09/2014 - 18:26:22 - [] ----D C:\Program Files (x86)\Common Files\ParetoLogic =>PUP.Paretologic
O43 - CFD: 22/06/2012 - 22:32:39 - [0] ----D C:\ProgramData\Babylon =>PUP.Babylon
O43 - CFD: 03/09/2014 - 02:04:12 - [] ----D C:\ProgramData\IePluginServices =>PUP.IePluginService
O43 - CFD: 03/09/2014 - 18:26:23 - [] ----D C:\ProgramData\ParetoLogic =>PUP.Paretologic
O43 - CFD: 02/09/2014 - 21:55:38 - [] ----D C:\ProgramData\Reimage Protector =>Rogue.ReimageRepair
O43 - CFD: 31/08/2014 - 15:37:50 - [] ----D C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu
O43 - CFD: 03/09/2014 - 16:21:44 - [] ----D C:\Users\Am�lie\AppData\Roaming\1H1Q
O43 - CFD: 22/06/2012 - 22:32:39 - [] ----D C:\Users\Am�lie\AppData\Roaming\Babylon =>PUP.Babylon
O43 - CFD: 03/09/2014 - 14:30:17 - [] ----D C:\Users\Am�lie\AppData\Roaming\cacaoweb =>PUP.CacaoWeb
O43 - CFD: 31/08/2014 - 15:32:13 - [0] ----D C:\Users\Am�lie\AppData\Roaming\Nosibay =>PUP.BubbleDock
O43 - CFD: 03/09/2014 - 16:46:39 - [] ----D C:\Users\Am�lie\AppData\Roaming\ParetoLogic =>PUP.Paretologic
O43 - CFD: 31/08/2014 - 15:39:18 - [] ----D C:\Users\Am�lie\AppData\Roaming\sweet-page =>PUP.SweetPage
O43 - CFD: 03/09/2014 - 20:13:09 - [] ----D C:\Users\Am�lie\AppData\Roaming\System Speedup =>PUP.SystemSpeedup
O43 - CFD: 03/09/2014 - 20:03:04 - [] ----D C:\Users\Am�lie\AppData\Roaming\VOPackage =>Adware.Downware
O43 - CFD: 03/09/2014 - 18:21:11 - [] ----D C:\Users\Am�lie\AppData\Roaming\WSE_Astromenda =>PUP.Astromenda
O43 - CFD: 31/08/2014 - 15:29:28 - [] ----D C:\Users\Am�lie\AppData\Local\globalUpdate
O43 - CFD: 31/08/2014 - 21:50:32 - [] ----D C:\Users\Am�lie\AppData\Local\iLivid =>Adware.Bandoo
O43 - CFD: 31/08/2014 - 21:50:37 - [] ----D C:\Users\Am�lie\AppData\Local\LPT =>Adware.Incredibar
O43 - CFD: 03/09/2014 - 02:04:12 - [] ----D C:\Users\Am�lie\AppData\Local\MAJTuto
O43 - CFD: 03/09/2014 - 20:56:48 - [] ----D C:\Users\Am�lie\AppData\Local\RocketTab =>PUP.RockTurner
O43 - CFD: 03/09/2014 - 20:00:39 - [] ----D C:\Users\Am�lie\AppData\Local\SearchProtect =>PUP.SearchProtect
O43 - CFD: 31/08/2014 - 21:50:39 - [] ----D C:\Users\Am�lie\AppData\Local\Smartbar
O43 - CFD: 31/08/2014 - 14:18:36 - [] ----D C:\Users\Am�lie\AppData\Local\Software
O43 - CFD: 03/09/2014 - 18:20:44 - [] ----D C:\Users\Am�lie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup =>PUP.MyPCBackup
O43 - CFD: 03/09/2014 - 18:26:29 - [] ----D C:\Users\Am�lie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic =>PUP.Paretologic
O43 - CFD: 03/09/2014 - 20:03:06 - [] ----D C:\Users\Am�lie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage =>Adware.Downware
O44 - LFC:[MD5.022BA972B6A9718C301C557DF144A4D0] - 01/09/2014 - 12:28:10 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{6ccfd995-07be-49cf-8ad6-1422dc08761a}Gw64.sys [61072] =>PUP.LinkiDoo
O44 - LFC:[MD5.62B6052A1B03142D639EF1DD8C91B2F8] - 03/09/2014 - 03:11:16 ---A- . (...) -- C:\Windows\System32\reimage.rep [534] =>Rogue.ReimageRepair
O44 - LFC:[MD5.319E841F835C85EB52772CB08E65FD0C] - 03/09/2014 - 15:55:55 ---A- . (...) -- C:\Windows\Reimage.ini [182] =>Rogue.ReimageRepair
O44 - LFC:[MD5.9F8903D18EAFB24D750568CFD59620D9] - 27/08/2014 - 03:44:22 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{9f93bd66-d3d2-427d-b37f-743603e2388d}Gw64.sys [61112] =>PUP.LinkiDoo
O44 - LFC:[MD5.9CC3424848172D4A5D7DDD00FB8C1CBF] - 29/08/2014 - 12:23:36 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{f61d0959-c00e-4800-91d0-296b3b46d3ca}Gw64.sys [61072] =>PUP.LinkiDoo
O44 - LFC:[MD5.022D9A1A0B50F0769A6132CC5FE5F15A] - 31/08/2014 - 13:06:20 ---A- . (.System Speedup - System Speedup.) -- C:\Windows\System32\roboot64.exe [20328] =>PUP.SystemSpeedup
O45 - LFCP:[MD5.17B685421E253A6630904D5B1F28D1B7] - 16/02/2014 - 17:35:04 ---A- - C:\Windows\Prefetch\CACAOWEB.EXE-04732C3A.pf =>PUP.CacaoWeb
O45 - LFCP:[MD5.A0A5776973832063764BE83569EB88D7] - 03/09/2014 - 17:13:51 ---A- - C:\Windows\Prefetch\CACAOWEB.EXE-26FE2319.pf =>PUP.CacaoWeb
O58 - SDL:01/09/2014 - 12:28:10 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{6ccfd995-07be-49cf-8ad6-1422dc08761a}Gw64.sys [61072] =>PUP.LinkiDoo
O58 - SDL:27/08/2014 - 03:44:22 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{9f93bd66-d3d2-427d-b37f-743603e2388d}Gw64.sys [61112] =>PUP.LinkiDoo
O58 - SDL:29/08/2014 - 12:23:36 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{f61d0959-c00e-4800-91d0-296b3b46d3ca}Gw64.sys [61072] =>PUP.LinkiDoo
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\backup0.bin [613] =>Rogue.RegistryPowerCleaner
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\backup3.bin [720] =>Rogue.RegistryPowerCleaner
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\backup4.bin [614] =>Rogue.RegistryPowerCleaner
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\Systweak\RegClean Pro\Version 6.1\backup6.bin [612] =>Rogue.RegistryPowerCleaner
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\VOPackage\Uninstall.exe [120102] =>Adware.Downware
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\VOPackage\VOPackage.exe [288232] =>Adware.Downware
O61 - LFC: 03/09/2014 - 21:10:14 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\WSE_Astromenda\UpdateProc\UpdateTask.exe [478208] =>PUP.Astromenda
O61 - LFC: 03/09/2014 - 21:10:15 ---A- . (...) -- C:\Users\Am�lie\Downloads\ParetoLogic%20PC%20Health%20Advisor.exe [700472] =>PUP.Paretologic
O61 - LFC: 03/09/2014 - 21:10:15 ---A- . (.ParetoLogic Inc..) -- C:\Users\Am�lie\Downloads\ParetoLogic PC Health Advisor_fr(1).exe [5248216] =>Rogue.PCHealthAdvisor
O61 - LFC: 03/09/2014 - 21:10:15 ---A- . (.ParetoLogic Inc..) -- C:\Users\Am�lie\Downloads\ParetoLogic PC Health Advisor_fr.exe [5248216] =>Rogue.PCHealthAdvisor
O61 - LFC: 03/09/2014 - 21:10:15 ---A- . (.ParetoLogic Inc..) -- C:\Users\Am�lie\Downloads\ParetoLogic%20PC%20Health%20Advisor [1].exe [5965344] =>PUP.Paretologic
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Community.CsharpSqlite.SQLiteClient.dll [59392] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Proxy.Lib.dll [54272] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\ProxySettings.dll [28160] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Resources\crdli.dll [329216] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Resources\crdli64.dll [351744] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Resources\crdlil.dll [67072] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\linmsl.exe [30720] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\lrrot.dll [51712] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (.Newtonsoft.) -- C:\Users\Am�lie\AppData\Local\LPT\Newtonsoft.Json.dll [435200] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:28 ---A- . (.Pioneer Software Consulting.) -- C:\Users\Am�lie\AppData\Local\LPT\Community.CsharpSqlite.dll [577024] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Resources\crdlil64.dll [77824] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Resources\ntdis_32.dll [317952] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Resources\ntdis_64.dll [423424] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Common.dll [18944] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Infrastructure.Utilities.dll [167424] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Monetization.Proxy.ProxyRemover.exe [24576] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Monetization.Proxy.ProxyService.dll [45568] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Personalization.Common.dll [28672] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Resources.HistoryAndStatsWrapper.dll [160256] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\smia.exe [16896] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\smia64.exe [16896] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\sppsm.dll [69120] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Communication.NamedPipe.dll [27136] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\LPT\Smartbar.Communication.dll [19968] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:29 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\LPT\spusm.dll [29696] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srbu.dll [49152] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\sreu.dll [29184] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srpdm.dll [26624] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srprl.dll [55808] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srpt.dll [83968] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srptc.dll [44032] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srptm.exe [24576] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srptsl.exe [36352] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\LPT\srut.dll [71680] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:30 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\LPT\srbs.dll [171520] =>Adware.Incredibar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\GoogleChromeRemotePlugin.dll [169984]
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\ar\Smartbar.Resources.LanguageSettings.resources.dll [28160]
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\de\Smartbar.Resources.LanguageSettings.resources.dll [26624]
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\es\Smartbar.Resources.LanguageSettings.resources.dll [26112]
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\fr\Smartbar.Resources.LanguageSettings.resources.dll [26112]
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\he\Smartbar.Resources.LanguageSettings.resources.dll [27136]
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_26.dll [99840] =>PUP.HelperBar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_27.dll [99840] =>PUP.HelperBar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_28.dll [99840] =>PUP.HelperBar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_29.dll [99840] =>PUP.HelperBar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_30.dll [99840] =>PUP.HelperBar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_31.dll [99840] =>PUP.HelperBar
O61 - LFC: 27/08/2014 - 21:09:37 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\it\Smartbar.Resources.LanguageSettings.resources.dll [25600]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\MACTrackBarLib.dll [45056]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\PIFlagsManager.dll [29696]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\PILogManager.dll [30720]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\PILogger.dll [60928]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\ProductsRemovalTool.exe [124928]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Proxy.Lib.dll [54272]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\ProxySettings.dll [28160]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\nl\Smartbar.Resources.LanguageSettings.resources.dll [25088]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\pt\Smartbar.Resources.LanguageSettings.resources.dll [25600]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (.Brian Gideon.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\NDde.dll [107520]
O61 - LFC: 27/08/2014 - 21:09:38 ---A- . (.Newtonsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Newtonsoft.Json.dll [435200]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Common.dll [18944]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll [698368]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll [80384]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll [2426880]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll [16384]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll [52224]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\ru\Smartbar.Resources.LanguageSettings.resources.dll [31744]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sgml.dll [25600]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sidc.dll [11776]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\siem.dll [15872]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Communication.NamedPipe.dll [27136]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Communication.dll [19968]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sidb.dll [39936]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sipb.dll [48128]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sismlp.dll [16896]
O61 - LFC: 27/08/2014 - 21:09:39 ---A- . (.Smartbar.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.exe [29696]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll [67072]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll [167424]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Monetization.Proxy.ProxyService.dll [45568]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll [28672]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll [160256]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll [63488]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.XmlSerializers.dll [48128]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll [36864]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Resources.Translations.dll [319488]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO.dll [142336]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO2.dll [142336]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension.dll [101376]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension2.dll [101376]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\SmartbarVersionsHelper.exe [26112]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\smia64.exe [16896]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\smsp.dll [75264]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\smta.dll [40448]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\smti.dll [152064]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.ChromeLocalPlugin.dll [73728]
O61 - LFC: 27/08/2014 - 21:09:40 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.FireFoxLocalPlugin.dll [61440]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\smtu.dll [32256]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\spbl.dll [68608]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sppsm.dll [69120]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srau.dll [87552]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srbhu.dll [26112]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srbu.dll [49152]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sreu.dll [29184]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srgu.dll [14848]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srns.dll [257024]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srom.dll [32768]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srpdm.dll [26624]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srprl.dll [55808]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srpu.dll [36352]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srsbs.dll [31232]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srsl.dll [37376]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\sruhs.dll [26624]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srus.dll [450560]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\spbe.dll [126464]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\spsm.dll [26624]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\spusm.dll [29696]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srbs.dll [171520]
O61 - LFC: 27/08/2014 - 21:09:41 ---A- . (.Smartbar.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srsbsau.dll [50176]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\srut.dll [71680]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\tr\Smartbar.Resources.LanguageSettings.resources.dll [26624]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Common\ServicesPlugins\Smartbar.Personalization.ServicesPlugins.WeatherPlugin.dll [32256]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Common\ServicesPlugins\Smartbar.Personalization.ServicesPlugins.YoutubeDownloadPlugin.dll [49664]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Common\ServicesPlugins\spup.dll [14336]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Common\ServicesPlugins\Smartbar.Personalization.ServicesPlugins.DMP.dll [26112]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (.Microsoft.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Common\ServicesPlugins\Smartbar.Personalization.ServicesPlugins.MessengerPlugin.dll [24576]
O61 - LFC: 27/08/2014 - 21:09:42 ---A- . (.xxx.) -- C:\Users\Am�lie\AppData\Local\Smartbar\Common\ServicesPlugins\Smartbar.Personalization.ServicesPlugins.WordPlugin.dll [25600]
O61 - LFC: 30/08/2014 - 21:10:12 ---A- . (...) -- C:\Users\Am�lie\AppData\Roaming\cacaoweb\cacaoweb.exe [514864] =>PUP.CacaoWeb
O61 - LFC: 31/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Resources\crdli.dll [329248]
O61 - LFC: 31/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Resources\crdli64.dll [351776]
O61 - LFC: 31/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Resources\crdlil.dll [67104]
O61 - LFC: 31/08/2014 - 21:09:39 ---A- . (...) -- C:\Users\Am�lie\AppData\Local\Smartbar\Application\Resources\crdlil64.dll [77856]
O64 - Services: CurCS - 03/10/1744 - C:\Windows\system32\drivers\SPPD.sys (SPPD) .(...) - LEGACY_SPPD =>Rogue.PCSpeedUp
O64 - Services: CurCS - 01/09/2014 - C:\Windows\System32\drivers\{6ccfd995-07be-49cf-8ad6-1422dc08761a}Gw64.sys ({6ccfd995-07be-49cf-8ad6-1422dc08761a}Gw64) .(.StdLib - StdLib.) - LEGACY_{6CCFD995-07BE-49CF-8AD6-1422DC08761A}GW64 =>PUP.LinkiDoo
O64 - Services: CurCS - 27/08/2014 - C:\Windows\System32\drivers\{9f93bd66-d3d2-427d-b37f-743603e2388d}Gw64.sys ({9f93bd66-d3d2-427d-b37f-743603e2388d}Gw64) .(.StdLib - StdLib.) - LEGACY_{9F93BD66-D3D2-427D-B37F-743603E2388D}GW64 =>PUP.LinkiDoo
O64 - Services: CurCS - 29/08/2014 - C:\Windows\System32\drivers\{f61d0959-c00e-4800-91d0-296b3b46d3ca}Gw64.sys ({f61d0959-c00e-4800-91d0-296b3b46d3ca}Gw64) .(.StdLib - StdLib.) - LEGACY_{F61D0959-C00E-4800-91D0-296B3B46D3CA}GW64 =>PUP.LinkiDoo
O69 - SBI: prefs.js [Am�lie - po06km94.default] user_pref("extensions.mywebsearch.prevKwdEnabled", true); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Am�lie - po06km94.default] user_pref("extensions.mywebsearch.prevKwdURL", "https://fr.search.yahoo.com/yhs/search"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Am�lie - po06km94.default] user_pref("extensions.toolbar.mindspark._8hMembers_.browser.search.selectedEngine.tb", "Ask Web Search");
O69 - SBI: SearchScopes [HKCU] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Web Search) - http://feed.helperbar.com =>PUP.HelperBar
O69 - SBI: SearchScopes [HKCU] {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} [DefaultScope] - (Astromenda) - http://astromenda.com =>PUP.Astromenda
O69 - SBI: SearchScopes [HKCU] {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} - (Astromenda) - http://astromenda.com =>PUP.Astromenda
O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} - (default-search.net) - http://www.default-search.net =>Hijacker.Browsers
[MD5.69580D71E115F34B3861097563AE5BDC] [WIS][31/08/2014] (.Linkury Inc. - Yahoo Community Smartbar (by Linkury).) -- C:\Windows\Installer\182a5.msi [10821632] =>Hijacker.SmartBar
[MD5.103F619246C8BEFBA0EFA12CD1092648] [WIS][27/08/2014] (.LPT - LPT System Updater Service.) -- C:\Windows\Installer\182ab.msi [2154496] =>Adware.IncrediBar
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.MyPCBackup
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\eojet_RASAPI32 =>PUP.Eorezo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\eojet_RASMANCS =>PUP.Eorezo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\eorezo_RASAPI32 =>PUP.Eorezo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\eorezo_RASMANCS =>PUP.Eorezo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup{2_RASAPI32 =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentSetup{2_RASMANCS =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Iminent_RASAPI32 =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Iminent_RASMANCS =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IncredibarToolbar_RASAPI32 =>Adware.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IncredibarToolbar_RASMANCS =>Adware.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\incredibar_install-a1e5d69e_RASAPI32 =>Adware.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\incredibar_install-a1e5d69e_RASMANCS =>Adware.IncrediBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASAPI32 =>PUP.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASMANCS =>PUP.Babylon
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pctuto_RASAPI32 =>PUP.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pctuto_RASMANCS =>PUP.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Smartbar_RASAPI32 =>Hijacker.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Smartbar_RASMANCS =>Hijacker.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetImSetup_RASAPI32 =>PUP.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetImSetup_RASMANCS =>PUP.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASAPI32 =>PUP.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASMANCS =>PUP.SweetIM
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\UpdatePCTuto_RASAPI32 =>PUP.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\UpdatePCTuto_RASMANCS =>PUP.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateZebar_RASAPI32 =>PUP.Zebar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateZebar_RASMANCS =>PUP.Zebar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilZebar_RASAPI32 =>PUP.Zebar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilZebar_RASMANCS =>PUP.Zebar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Zebar_RASAPI32 =>PUP.Zebar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Zebar_RASMANCS =>PUP.Zebar
[HKCR\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}] (Yahoo Community Smartbar (by Linkury)) =>Hijacker.SmartBar
SS - | Disabled 10/07/1658 0 | (IePluginServices) . (...) - C:\ProgramData\IePluginServices\PluginService.exe =>PUP.IePluginService
SS - | Disabled 10/07/1658 0 | (MAJTuto) . (...) - C:\Users\Am�lie\AppData\Local\MAJTuto\MAJTuto.exe
SS - | Auto 03/09/2014 323312 | (Update ClearThink) . (...) - C:\Program Files (x86)\ClearThink\updateClearThink.exe
SS - | Auto 10/07/1658 0 | (Update Zebar) . (...) - C:\Program Files (x86)\Zebar\updateZebar.exe =>PUP.Zebar
SR - | Auto 27/08/2014 36424 | (BackupStack) . (.Just Develop It.) - C:\Program Files (x86)\MyPC Backup\BackupStack.exe =>PUP.MyPCBackup
SR - | Auto 02/09/2014 2998232 | (CltMngSvc) . (.Client Connect LTD.) - C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe =>PUP.SearchProtect
SR - | Auto 28/07/2014 7101288 | (ReimageRealTimeProtector) . (.Reimage�.) - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>Rogue.ReimageRepair
SR - | Auto 03/09/2014 135920 | (UpdaterSvcClearThink) . (...) - C:\Program Files (x86)\ClearThink\updater.exe
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}] =>Adware.PriceGong^
[HKLM\SYSTEM\CurrentControlSet\Services\MyPC Backup) (BackupStack] =>PUP.MyPCBackup^
[HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc] =>PUP.SearchProtect^
[HKLM\SYSTEM\CurrentControlSet\Services\ReimageRealTimeProtector] =>Rogue.ReimageRepair^
[HKLM\SYSTEM\CurrentControlSet\Services\Update Zebar] =>PUP.Zebar^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~4A5BE654_is1] =>PUP.AdvancedSystemProtector^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\RocketTab] =>PUP.RockTurner^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\File Extractor Packages] =>Adware.DownTango^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage] =>Adware.Downware^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup] =>PUP.MyPCBackup^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3CBF3EBB-235D-4c29-A68B-2BB1F428586E}] =>Rogue.PCHealthAdvisor^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\RegClean-Pro_is1] =>Rogue.RegistryPowerCleaner^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair] =>Rogue.ReimageRepair^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect] =>PUP.SearchProtect^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\System Speedup_is1] =>PUP.SystemSpeedup^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\WSE_Astromenda] =>PUP.Astromenda^
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar
[HKLM\Software\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}] =>Adware.IMBooster
[HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}] =>PUP.Babylon
[HKLM\Software\Wow6432Node\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}] =>PUP.Babylon
[HKLM\Software\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}] =>Adware.PriceGong
[HKLM\Software\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}] =>PUP.RewardsArcade
[HKLM\Software\Classes\TypeLib\{18AF7201-4F14-4BCF-93FE-45617CF259FF}] =>PUP.Eorezo
[HKLM\Software\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}] =>Adware.PricePeep
[HKLM\Software\Wow6432Node\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}] =>Adware.PricePeep
[HKLM\Software\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}] =>PUP.RewardsArcade
[HKLM\Software\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}] =>PUP.RewardsArcade
[HKLM\Software\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}] =>Adware.PricePeep
[HKLM\Software\Wow6432Node\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}] =>Adware.PricePeep
[HKLM\Software\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}] =>PUP.RewardsArcade
[HKLM\Software\Classes\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408}] =>Adware.PricePeep
[HKLM\Software\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}] =>Hijacker.SmartBar
[HKLM\Software\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}] =>Adware.Agent
[HKLM\Software\Wow6432Node\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}] =>Adware.Agent
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65bcd620-07dd-012f-819f-073cf1b8f7c6}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}] =>Hijacker.SmartBar
[HKLM\Software\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}] =>Hijacker.SmartBar
[HKLM\Software\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}] =>Hijacker.SmartBar
[HKLM\Software\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}] =>Adware.PricePeep
[HKLM\Software\Wow6432Node\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}] =>Adware.PricePeep
[HKLM\Software\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}] =>PUP.RewardsArcade
[HKLM\Software\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692}] =>Adware.PriceGong
[HKLM\Software\Wow6432Node\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692}] =>Adware.PriceGong
[HKLM\Software\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}] =>PUP.RewardsArcade
[HKLM\Software\Classes\TypeLib\{8B3372D0-09F0-41A5-8D9B-134E148672FB}] =>Adware.PriceGong
[HKLM\Software\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}] =>PUP.DealPly
[HKLM\Software\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}] =>PUP.RewardsArcade
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKLM\Software\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKLM\Software\Classes\AppID\{AFBB7970-789A-4264-BA70-E8127DECE400}] =>PUP.Eorezo
[HKLM\Software\Wow6432Node\Classes\AppID\{AFBB7970-789A-4264-BA70-E8127DECE400}] =>PUP.Eorezo
[HKLM\Software\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}] =>PUP.RewardsArcade
[HKLM\Software\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper
[HKLM\Software\Wow6432Node\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}] =>Adware.CDNHelper
[HKLM\Software\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}] =>Hijacker.SmartBar
[HKLM\Software\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}] =>PUP.RewardsArcade
[HKLM\Software\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{DF76E9B7-35EC-46FC-AF56-5B79DED9D64F}] =>PUP.Eorezo
[HKLM\Software\Wow6432Node\Classes\Interface\{DF76E9B7-35EC-46FC-AF56-5B79DED9D64F}] =>PUP.Eorezo
[HKLM\Software\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}] =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}] =>PUP.RewardsArcade
[HKLM\Software\Classes\AppID\eoenginebho.dll] =>PUP.Eorezo
[HKLM\Software\Classes\AppID\escort.dll] =>PUP.Babylon
[HKLM\Software\Classes\AppID\PriceGongIE.DLL] =>Adware.PriceGong
[HKLM\Software\Classes\eoenginebho.eobho] =>PUP.Eorezo
[HKLM\Software\Classes\eoenginebho.eobho.1] =>PUP.Eorezo
[HKLM\Software\Classes\PriceFactorIE.PriceGongBHO] =>Adware.PriceGong
[HKLM\Software\Classes\PriceFactorIE.PriceGongBHO.1] =>Adware.PriceGong
[HKLM\Software\Classes\PriceGongIE.PriceGongCtrl] =>Adware.PriceGong
[HKLM\Software\Classes\PriceGongIE.PriceGongCtrl.1] =>Adware.PriceGong
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch
[HKCU\Software\Boxore] =>Adware.Boxore
[HKLM\Software\Wow6432Node\Boxore] =>Adware.Boxore
[HKCU\Software\cacaoweb] =>PUP.CacaoWeb
[HKCU\Software\Cr_Installer] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Iminent] =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\PriceGong] =>Adware.PriceGong
[HKCU\Software\SmartbarBackup] =>Hijacker.SmartBar
[HKCU\Software\SmartbarLog] =>Hijacker.SmartBar
[HKCU\Software\SweetIM] =>PUP.SweetIM
[HKLM\Software\Wow6432Node\SweetIM] =>PUP.SweetIM
[HKLM\Software\Wow6432Node\Tutorials] =>Spyware.AgenceExclusive
[HKLM\Software\Wow6432Node\Microsoft\Tracing\Iminent_RASAPI32] =>Adware.Bandoo
[HKLM\Software\Wow6432Node\Microsoft\Tracing\Iminent_RASMANCS] =>Adware.Bandoo
[HKLM\Software\Wow6432Node\Microsoft\Tracing\IncredibarToolbar_RASAPI32] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\Microsoft\Tracing\IncredibarToolbar_RASMANCS] =>Adware.IncrediBar
[HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASAPI32] =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASMANCS] =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP] =>Adware.IMBooster
[HKLM\Software\Classes\Prod.cap] =>PUP.Babylon
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKLM\Software\Wow6432Node\InstallCore] =>Adware.InstallCore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma
[HKLM\Software\Wow6432Node\Microsoft\Tracing\I Want This_RASAPI32] =>Adware.GamePlayLabs
[HKLM\Software\Wow6432Node\Microsoft\Tracing\I Want This_RASMANCS] =>Adware.GamePlayLabs
[HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider
[HKCU\Software\Reimage] =>Rogue.ReimageRepair
[HKLM\Software\Reimage] =>Rogue.ReimageRepair
[HKCU\Software\ParetoLogic] =>PUP.Paretologic
[HKLM\Software\Wow6432Node\ParetoLogic] =>PUP.Paretologic
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3CBF3EBB-235D-4c29-A68B-2BB1F428586E}] =>Rogue.PCHealthAdvisor
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro
[HKLM\Software\Wow6432Node\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro
[HKLM\Software\Classes\Incredibar.IncredibarHlpr] =>Adware.Incredibar
[HKLM\Software\Classes\Incredibar.IncredibarHlpr.1] =>Adware.Incredibar
[HKLM\Software\Wow6432Node\Classes\EoEngineBHO.EOBHO] =>PUP.Eorezo
[HKLM\Software\Wow6432Node\Classes\EoEngineBHO.EOBHO.1] =>PUP.Eorezo
[HKLM\Software\Wow6432Node\Classes\Incredibar.IncredibarHlpr] =>Adware.Incredibar
[HKLM\Software\Wow6432Node\Classes\Incredibar.IncredibarHlpr.1] =>Adware.Incredibar
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011221158}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Classes\AppID\EoEngineBHO.DLL] =>PUP.Eorezo
[HKLM\Software\Wow6432Node\Classes\AppID\escort.DLL] =>PUP.Funmoods
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}] =>Adware.Bandoo^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{ae07101b-46d4-4a98-af68-0333ea26e113} =>Hijacker.SmartBar^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:cacaoweb =>PUP.CacaoWeb^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]:WSE_Astromenda =>PUP.Astromenda^
C:\Users\Am�lie\AppData\Roaming\Mozilla\Firefox\Profiles\po06km94.default\extensions\cacaoweb@cacaoweb.org =>PUP.CacaoWeb^
C:\Program Files (x86)\LPT =>Adware.Incredibar^
C:\Program Files (x86)\MyPC Backup =>PUP.MyPCBackup^
C:\Program Files (x86)\Optimizer Pro =>PUP.OptimizerPro^
C:\Program Files (x86)\ParetoLogic =>PUP.Paretologic^
C:\Program Files (x86)\RocketTab =>PUP.RockTurner^
C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect^
C:\Program Files (x86)\SupTab =>PUP.SupTab^
C:\Program Files (x86)\System Speedup =>PUP.SystemSpeedup^
C:\Program Files (x86)\WSE_Astromenda =>PUP.Astromenda^
C:\Program Files (x86)\Zebar =>PUP.Zebar^
C:\Program Files (x86)\Common Files\ParetoLogic =>PUP.Paretologic^
C:\ProgramData\Babylon =>PUP.Babylon^
C:\ProgramData\IePluginServices =>PUP.IePluginService^
C:\ProgramData\ParetoLogic =>PUP.Paretologic^
C:\ProgramData\Reimage Protector =>Rogue.ReimageRepair^
C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu^
C:\Users\Am�lie\AppData\Roaming\Babylon =>PUP.Babylon^
C:\Users\Am�lie\AppData\Roaming\cacaoweb =>PUP.CacaoWeb^
C:\Users\Am�lie\AppData\Roaming\Nosibay =>PUP.BubbleDock^
C:\Users\Am�lie\AppData\Roaming\ParetoLogic =>PUP.Paretologic^
C:\Users\Am�lie\AppData\Roaming\sweet-page =>PUP.SweetPage^
C:\Users\Am�lie\AppData\Roaming\System Speedup =>PUP.SystemSpeedup^
C:\Users\Am�lie\AppData\Roaming\VOPackage =>Adware.Downware^
C:\Users\Am�lie\AppData\Roaming\WSE_Astromenda =>PUP.Astromenda^
C:\Users\Am�lie\AppData\Local\iLivid =>Adware.Bandoo^
C:\Users\Am�lie\AppData\Local\LPT =>Adware.Incredibar^
C:\Users\Am�lie\AppData\Local\RocketTab =>PUP.RockTurner^
C:\Users\Am�lie\AppData\Local\SearchProtect =>PUP.SearchProtect^
C:\Users\Am�lie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup =>PUP.MyPCBackup^
C:\Users\Am�lie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic =>PUP.Paretologic^
C:\Users\Am�lie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage =>Adware.Downware^
C:\Program Files (x86)\Software =>Adware.Boxore
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =>Rogue.RegistryPowerCleaner
C:\Users\Am�lie\AppData\Local\MAJTuto =>Spyware.AgenceExclusive
C:\Users\Am�lie\AppData\Local\Smartbar =>Hijacker.SmartBar
C:\Users\Am�lie\AppData\Local\Software =>Adware.Boxore
C:\Users\Am�lie\AppData\LocalLow\PriceGong =>Adware.PriceGong
C:\Users\Am�lie\AppData\LocalLow\Smartbar =>Hijacker.SmartBar
C:\Users\Am�lie\AppData\Roaming\Mozilla\Firefox\Profiles\po06km94.default\Allin1Convert_8h =>Adware.Allin1Convert
C:\Users\Am�lie\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb^
C:\Program Files (x86)\WSE_Astromenda\BRS\brs.exe =>PUP.Astromenda^
C:\Program Files (x86)\ASP\AdvancedSystemProtector.exe =>PUP.AdvancedSystemProtector^
C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe =>PUP.Paretologic^
C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe =>Rogue.PCHealthAdvisor^
C:\Program Files (x86)\RCP\RegCleanPro.exe =>Rogue.RegistryPowerCleaner^
C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe =>Rogue.ReimageRepair^
C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe =>Rogue.ReimageRepair^
C:\Program Files (x86)\RocketTab\Client.exe =>PUP.RockTurner^
C:\Program Files (x86)\RocketTab\uninstall.exe =>PUP.RockTurner^
C:\Program Files (x86)\System Speedup\SystemSpeedup.exe =>PUP.SystemSpeedup^
C:\Users\Am�lie\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.exe =>PUP.Astromenda^
C:\Users\Am�lie\AppData\Roaming\sweet-page\UninstallManager.exe =>PUP.SweetPage^
C:\Windows\Tasks\ParetoLogic Registration3.job =>PUP.Paretologic^
C:\Windows\System32\Tasks\ParetoLogic Registration3 =>PUP.Paretologic^
C:\Windows\Tasks\ParetoLogic Update Version3.job =>PUP.Paretologic^
C:\Windows\System32\Tasks\ParetoLogic Update Version3 =>PUP.Paretologic^
C:\Windows\Tasks\PC Health Advisor Defrag.job =>Rogue.PCHealthAdvisor^
C:\Windows\System32\Tasks\PC Health Advisor Defrag =>Rogue.PCHealthAdvisor^
C:\Windows\Tasks\PC Health Advisor.job =>Rogue.PCHealthAdvisor^
C:\Windows\System32\Tasks\PC Health Advisor =>Rogue.PCHealthAdvisor^
C:\Windows\Tasks\System Speedup_DEFAULT.job =>PUP.SystemSpeedup^
C:\Windows\System32\Tasks\System Speedup_DEFAULT =>PUP.SystemSpeedup^
C:\Windows\Tasks\System Speedup_UPDATES.job =>PUP.SystemSpeedup^
C:\Windows\System32\Tasks\System Speedup_UPDATES =>PUP.SystemSpeedup^
C:\Windows\Tasks\WSE_Astromenda.job =>PUP.Astromenda^
C:\Windows\System32\Tasks\WSE_Astromenda =>PUP.Astromenda^
[HKCU\Software\AnyProtect] =>PUP.AnyProtect^
[HKCU\Software\AppDataLow\Software\BlockAndSurf] =>PUP.BlockAndSurf^
[HKCU\Software\AppDataLow\Software\DynConIE] =>PUP.DynConIE^
[HKCU\Software\Linkey] =>PUP.LinkeySearch^
[HKCU\Software\Optimizer Pro] =>PUP.OptimizerPro^
[HKCU\Software\RocketTabInstalled] =>PUP.RockTurner^
[HKCU\Software\SearchProtectWS] =>PUP.SearchProtect^
[HKCU\Software\Smartbar] =>Hijacker.SmartBar^
[HKCU\Software\Store] =>PUP.Nosibay^
[HKCU\Software\SupHpUISoft] =>PUP.CrossRider^
[HKCU\Software\System Speedup] =>PUP.SystemSpeedup^
[HKCU\Software\TutoTag] =>PUP.AgenceExclusive^
[HKCU\Software\eojet] =>PUP.Eorezo^
[HKCU\Software\wse_astromenda] =>PUP.Astromenda^
[HKLM\Software\Wow6432Node\Babylon] =>PUP.Babylon^
[HKLM\Software\Wow6432Node\FREESOFTTODAY] =>Adware.FreeSoftToday^
[HKLM\Software\Wow6432Node\SPPDCOM] =>Rogue.PCSpeedUp^
[HKLM\Software\Wow6432Node\SmdmF] =>PUP.SystemK^
[HKLM\Software\Wow6432Node\System Speedup] =>PUP.SystemSpeedup^
[HKLM\Software\Wow6432Node\supTab] =>PUP.SupTab^
[HKLM\Software\Wow6432Node\supWPM] =>PUP.WpManager^
[HKLM\Software\Wow6432Node\supWindowsMangerProtect] =>PUP.Fuyu^
[HKLM\Software\Wow6432Node\sweet-pageSoftware] =>PUP.SweetPage^
C:\Windows\Installer\182a5.msi =>Hijacker.SmartBar^
C:\Windows\Installer\182ab.msi =>Adware.IncrediBar^
[HKCR\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}] (Yahoo Community Smartbar (by Linkury)) =>Hijacker.SmartBar^
C:\Windows\Reimage.ini =>Rogue.ReimageRepair
[HKCU\Software\Reg]
[HKLM\Software\Wow6432Node\Reg]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
[HKLM\Software\Wow6432Node\Software]
O44 - LFC:[MD5.ECB021CA3370582F0C7244B0CF06732C] - 29/08/2014 - 21:14:35 ---A- . (.Microsoft Corporation - Microsoft � Console Based Script Host.) -- C:\Windows\System32\cscript.exe [156160]
O44 - LFC:[MD5.95828D670CFD3B16EE188168E083C3C5] - 31/08/2014 - 00:52:40 ---A- . (.Microsoft Corporation - H�te des applications HTML de Microsoft.) -- C:\Windows\System32\mshta.exe [13824]
O61 - LFC: 03/09/2014 - 21:10:15 ---A- . (.Software Installer.) -- C:\Users\Am�lie\Downloads\Setup.exe [244600]
M3 - MFPP: Plugins - [Am�lie] -- C:\Users\Am�lie\AppData\Roaming\Mozilla\Firefox\Profiles\po06km94.default\searchplugins\ask-web-search.xml
O2 - BHO: Bing Bar BHO [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation - Bing Bar.) -- C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll
O2 - BHO: Ask Toolbar BHO [64Bits] - {D4027C7F-154A-4066-A1AD-4243D8127440} Cl� orpheline
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} Cl� orpheline
O3 - Toolbar: avast! WebRep - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (...) -- (.not file.)
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Cl� orpheline
[HKCU\Software\Softonic]
O43 - CFD: 28/03/2012 - 23:30:23 - [] ----D C:\ProgramData\Ask
O43 - CFD: 15/01/2014 - 22:23:23 - [] ----D C:\Users\Am�lie\AppData\Local\comnetwork
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\ARPPRODUCTICON.exe
[MD5.43E9733D3D8C8197821F6D2199560A90] [WIS][23/04/2011] (.Microsoft Corporation - Bing Bar Platform.) -- C:\Windows\Installer\eacf.msi [215040]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}]
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}]
[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}]
[HKLM\Software\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}]
[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}]
[HKLM\Software\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}]
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}]
[HKLM\Software\Wow6432Node\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}]
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}]
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}]
[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}]
[HKLM\Software\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}]
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL]
[HKLM\Software\Classes\Conduit.Engine]
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd]
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED]
[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF]
[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF]
[HKLM\Software\Wow6432Node\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF]
[HKLM\Software\Wow6432Node\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E]
[HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2]
[HKCU\Software\Softonic]
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2]
[HKLM\Software\Classes\Toolbar.CT2724386]
[HKLM\Software\Wow6432Node\Classes\Toolbar.CT2724386]
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440}
C:\Users\Am�lie\AppData\LocalLow\IncrediMail_MediaBar_2
C:\Users\Am�lie\AppData\LocalLow\Toolbar4
C:\Windows\Installer\eacf.msi
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {BFAE8D5B-F918-486F-B74E-90762DF11C5C}
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client
O43 - CFD: 03/09/2014 - 15:46:29 - [] ----D C:\Program Files (x86)\Microsoft Security Client
SR - | Auto 11/03/2014 23808 | (MsMpSvc) . (.Microsoft Corporation.) - c:\Program Files\Microsoft Security Client\MsMpEng.exe
Microsoft Security Client v4.5.0216.0
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe

Publicité


Signaler le contenu de ce document

Publicité