cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

# AdwCleaner v4.207 - Logfile created 06/07/2015 at 18:40:46
# Updated 21/06/2015 by Xplode
# Database : 2015-07-05.2 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : moi - MOI
# Running from : C:\Documents and Settings\moi\Bureau\adwcleaner_4.207.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Documents and Settings\moi\Application Data\Mozilla\Firefox\Profiles\[opt]rs0\user.js
File Found : C:\Documents and Settings\moi\daemonprocess.txt
File Found : C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage
File Found : C:\Documents and Settings\moi\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\hxxp_filmfanatic2.dl.tb.ask.com_0.localstorage
File Found : C:\Documents and Settings\moi\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\hxxp_filmfanatic2.dl.tb.ask.com_0.localstorage-journal
File Found : C:\WINDOWS\system32\roboot.exe
Folder Found : C:\Documents and Settings\All Users\Application Data\apn
Folder Found : C:\Documents and Settings\All Users\Application Data\AskPartnerNetwork
Folder Found : C:\Documents and Settings\All Users\Application Data\driver whiz
Folder Found : C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
Folder Found : C:\Documents and Settings\All Users\Application Data\Trymedia
Folder Found : C:\Documents and Settings\All Users\Documents\ShopperPro
Folder Found : C:\Documents and Settings\LocalService\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hifepeoaaioeccilfedoopdhbmbkaggf
Folder Found : C:\Documents and Settings\moi\Application Data\OpenCandy
Folder Found : C:\Documents and Settings\moi\Application Data\PerformerSoft
Folder Found : C:\Documents and Settings\moi\Application Data\RHEng
Folder Found : C:\Documents and Settings\moi\Application Data\StormFall
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\App Lid
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\AppsHat Mobile Apps
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\FilesFrog Update Checker
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\genienext
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\ilividbandoomoviestoolbar
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\Maxiget
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\MaxiGet Download Manager
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\Mobogenie
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\StormFall
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\torch
Folder Found : C:\Documents and Settings\moi\Local Settings\Application Data\webplayer
Folder Found : C:\Documents and Settings\moi\Menu Démarrer\Programmes\AppsHat
Folder Found : C:\Documents and Settings\moi\Menu Démarrer\Programmes\StormFall
Folder Found : C:\Program Files\App Lid
Folder Found : C:\Program Files\MyPC Backup

***** [ Scheduled tasks ] *****

Task Found : AmiUpdXp
Task Found : 0324efcc-4a2f-4f87-bf1a-362e506692de
Task Found : f6febb6b-a491-43bb-8ad8-da87b38c9e28-1-6
Task Found : f6febb6b-a491-43bb-8ad8-da87b38c9e28-1-7
Task Found : f6febb6b-a491-43bb-8ad8-da87b38c9e28-10_user
Task Found : f6febb6b-a491-43bb-8ad8-da87b38c9e28-5
Task Found : f6febb6b-a491-43bb-8ad8-da87b38c9e28-6
Task Found : f6febb6b-a491-43bb-8ad8-da87b38c9e28-7
Task Found : f928d7b2-c7e4-4724-a8fc-ca9ab39ad9bb-4

***** [ Shortcuts ] *****

Shortcut Infected : C:\Documents and Settings\moi\Menu Démarrer\Programmes\StormFall\StormFall.lnk
Shortcut Infected : C:\Documents and Settings\moi\Menu Démarrer\Programmes\Sparta\Sparta.lnk
Shortcut Infected : C:\Documents and Settings\moi\Menu Démarrer\Programmes\AppsHat\Uninstall.lnk
Shortcut Infected : C:\Documents and Settings\moi\Menu Démarrer\Programmes\Accessoires\Outils système\Internet Explorer (Aucun module complémentaire).lnk
Shortcut Infected : C:\Documents and Settings\moi\Menu Démarrer\Programmes\Accessoires\Outils système\Internet Explorer (sans module complémentaire).lnk

***** [ Registry ] *****

Data Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=127.0.0.1:8888;hxxps=127.0.0.1:8888
Key Found : HKCU\Software\2.6.1339.144
Key Found : HKCU\Software\App Lid
Key Found : HKCU\Software\Bitberry
Key Found : HKCU\Software\Brothersoft
Key Found : HKCU\Software\Crossrider
Key Found : HKCU\Software\ilivid
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\InstalledBrowserExtensions
Key Found : HKCU\Software\MaxiGet
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BC97667D-54EF-46AC-8255-759A90EF8F61}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AppsHat Mobile Apps
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\genieo
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\FilesFrog Update Checker
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1B084C86-9657-42F9-A5E5-AC8DD832CDE9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1B084C86-9657-42F9-A5E5-AC8DD832CDE9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21FA44EF-376D-4D53-9B0F-8A89D3229068}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps
Key Found : HKCU\Software\NetCrawl
Key Found : HKCU\Software\powerpack
Key Found : HKCU\Software\smarttweak
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\SourceApp
Key Found : HKCU\Software\torch
Key Found : HKCU\Software\UpToDown
Key Found : HKCU\Software\Webplayer
Key Found : HKLM\SOFTWARE\App Lid
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Found : HKLM\SOFTWARE\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E
Key Found : HKLM\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Found : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Found : HKLM\SOFTWARE\Classes\SDP
Key Found : HKLM\SOFTWARE\Crossrider
Key Found : HKLM\SOFTWARE\DataMngr
Key Found : HKLM\SOFTWARE\effd3d2f-cfd6-4bd7-84d9-0a104dea40b5
Key Found : HKLM\SOFTWARE\GlobalUpdate
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\hifepeoaaioeccilfedoopdhbmbkaggf
Key Found : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Found : HKLM\SOFTWARE\istartsurfSoftware
Key Found : HKLM\SOFTWARE\MaxiGet
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0CAA5FE-7C9C-4DCA-A265-63CF55379D1A}
Key Found : HKLM\SOFTWARE\microsoft\shared tools\msconfig\startupreg\ApnTBMon
Key Found : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SearchSettings
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\App Lid
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\93BAD29AC2E44034A96BCB446EB8552E
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\App Lid
Key Found : HKLM\SOFTWARE\MozillaPlugins\TorchVLC
Key Found : HKLM\SOFTWARE\SourceApp
Key Found : HKLM\SOFTWARE\SProtector
Key Found : HKLM\SOFTWARE\supWindowsMangerProtect
Key Found : HKLM\SOFTWARE\torch
Key Found : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Found : HKU\.DEFAULT\Software\AskPartnerNetwork
Key Found : HKU\.DEFAULT\Software\GoforFiles
Key Found : HKU\.DEFAULT\Software\Web Assistant
Key Found : HKU\.DEFAULT\Software\WNLT
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{21FA44EF-376D-4D53-9B0F-8A89D3229068}]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [DefaultConnectionSettings]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [SavedLegacySettings]
Value Found : HKLM\SOFTWARE\Policies\Google\Chrome\ExtensionInstallForcelist [1]
Value Found : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Found : HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls [x64]

***** [ Web browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v


-\\ Google Chrome v43.0.2357.130

[C:\Documents and Settings\LocalService\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences] - Found [Extension] : hahpjplbmicfkmoccokbjejahjjpnena
[C:\Documents and Settings\LocalService\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences] - Found [Extension] : jcdgjdiieiljkfkdcloehkohchhpekkn
[C:\Documents and Settings\LocalService\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences] - Found [Extension] : hifepeoaaioeccilfedoopdhbmbkaggf

-\\ Comodo Dragon v

[C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Web data] - Found [Search Provider] : hxxp://www.search.ask.com/web?o=APN10257&q={searchTerms}
[C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Web data] - Found [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=2154&systemid=406&v=r13429-414&apn_uid=3855555038514445&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
[C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Preferences] - Found [Extension] : aaaalipaokhkccgmgkdglfinfnfhflko
[C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Preferences] - Found [Homepage] : hxxp://www.search.ask.com/?o=APN10257&gct=hp
[C:\Documents and Settings\moi\Local Settings\Application Data\Comodo\Dragon\User Data\Default\Preferences] - Found [Startup_URLs] : hxxp://www.search.ask.com/?o=APN10645A&gct=hp&d=406-2154&v=r13429-414&t=4

*************************

AdwCleaner[R1].txt - [14273 bytes] - [06/07/2015 18:40:46]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [14333 bytes] ##########

Publicité


Signaler le contenu de ce document

Publicité