cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
SysRestore
ShortcutFix
ProxyFix
FirewallRAZ
EmptyCLSID
EmptyTemp
EmptyFlash
EmptyPrefetch
[MD5.5E95E930FA927B6E03521DB81A01BFC6] - (.Copyright © Main 2015 - Main.) -- C:\ProgramData\ExtTag\ExtTag.exe [33792] [PID.884]
[MD5.B824060BF2E46342BBC63EB15C61BF9C] - (.Copyright © 2015 - .) -- C:\Program Files\NixSrv\NixSrv.exe [379392] [PID.2168]
[MD5.9FFDBDCD2E7F2FA6B15777A5B72EE960] - (.Copyright © 2015 - .) -- C:\Program Files\NixSrv\packages\266819fb-606d-4cbb-bee3-8cecae914ef3\NixHost.exe [855040] [PID.2912]
[MD5.65A2FA670D325D3F6E19E5EFF64401BD] - (...) -- C:\Users\greg\AppData\Local\gmsd_fr_005010074\upgmsd_fr_005010074.exe [3334800] [PID.4052]
[MD5.E39BD202554828439985AED984DDAB61] - (...) -- C:\ProgramData\ExtTag\Lighttone.exe [150528] [PID.5060]
[MD5.8EC211B098A7D569E808C374E3C33BD6] - (...) -- C:\Program Files (x86)\gmsd_fr_005010074\gmsd_fr_005010074.exe [3985552] [PID.4824]
[MD5.687EE10C9ECF01D6C84A5859A23F94D3] - (.SoftBrain Technologies Ltd. - SmartWeb helper.) -- C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe [264192] [PID.1252]
[MD5.80A0562CD6CD9FBD9DDDC5A6245868E9] - (.SoftBrain Technologies Ltd. - SmartWeb Application.) -- C:\Users\greg\AppData\Local\SmartWeb\SmartWebApp.exe [553472] [PID.5088]
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/
M0 - MFSP: prefs.js [greg - 3q9b95qx.default] http://www.mystartsearch.com/?type=hp&ts=1440835254&z=293b0b98259032aef4fd86bgfz0z0e8b8cdw7g9oce&from=cmi&uid=WDCXWD10EZEX-21M2NA0_WCC3F0330146F0330146
P2 - EXT FILE: (...) -- C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\searchplugins\findit.xml
P2 - EXT FILE: (...) -- C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\searchplugins\mystartsearch.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml
P2 - EXT: (.roc - Default SearchProtected .) -- C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\extensions\defsearchp@gmail.com
P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\extensions\deskCutv2@gmail.com
O4 - HKLM\..\Run: [3D BubbleSound] C:\Program Files\BubbleSound\3D BubbleSound.exe (.not file.)
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4771C1633043D0797899DDE051C6D372] C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010071] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010073] (Orphean)
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010074] . (...) -- C:\Program Files (x86)\gmsd_fr_005010074\gmsd_fr_005010074.exe
O4 - HKLM\..\Wow6432Node\Run: [SmartWeb] . (.SoftBrain Technologies Ltd. - SmartWeb helper.) -- C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe
O4 - HKLM\..\Wow6432Node\RunOnce: [upgmsd_fr_005010074.exe] . (...) -- C:\Users\greg\AppData\Local\gmsd_fr_005010074\upgmsd_fr_005010074.exe
O4 - HKUS\S-1-5-21-957037581-3937121421-1895975608-1001\..\Run: [GoogleChromeAutoLaunch_4771C1633043D0797899DDE051C6D372] C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.)
O4 - GS\Desktop [Administrateur]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe
O4 - GS\Startup [Administrateur]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe
O4 - GS\Desktop [DefaultAccount]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe
O4 - GS\Startup [DefaultAccount]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe
O4 - GS\Desktop [greg]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe
O4 - GS\Startup [greg]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe
O4 - GS\Desktop [Invité]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe
O4 - GS\Startup [Invité]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe
O20 - AppInit_DLLs: . (...) - C:\ProgramData\ExtTag\Zendax.dll
O23 - Service: ExtTag (ExtTag) . (.Copyright © Main 2015 - Main.) - C:\ProgramData\ExtTag\ExtTag.exe
O23 - Service: NixSrv Service (NixSrv) . (.Copyright © 2015 - .) - C:\Program Files\NixSrv\NixSrv.exe
O42 - Logiciel: AnyProtect - (.CMI Limited.) [HKLM][64Bits] -- AnyProtect
O42 - Logiciel: DailyPcClean Support - (.Tuto4PC.Com.) [HKLM][64Bits] -- dpcc_en_009010073_is1
O42 - Logiciel: GamesDesktop 001.005010074 - (.GAMESDESKTOP.) [HKLM][64Bits] -- gmsd_fr_005010074_is1
O42 - Logiciel: mystartsearch uninstall - (.mystartsearch.) [HKLM][64Bits] -- mystartsearch uninstall
O42 - Logiciel: SmartWeb - (.SoftBrain Technologies Ltd..) [HKLM][64Bits] -- SmartWeb
O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O43 - CFD: 2015/08/28 22:08:16 - [] D -- C:\Program Files (x86)\983377CC-1440522791-11E2-9DFD-F80F41ABD9CE
O43 - CFD: 2015/08/29 10:16:24 - [] D -- C:\Program Files (x86)\AnyProtectEx
O43 - CFD: 2015/08/29 10:04:37 - [] D -- C:\Program Files (x86)\gmsd_fr_005010074
O43 - CFD: 2015/04/19 14:53:07 - [] D -- C:\Program Files (x86)\mbot_fr_599
O43 - CFD: 2015/08/29 10:49:56 - [] D -- C:\Program Files (x86)\SFK
O43 - CFD: 2015/08/28 20:18:04 - [] D -- C:\Program Files (x86)\Software
O43 - CFD: 2015/08/29 10:04:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP
O43 - CFD: 2015/08/31 09:59:16 - [] D -- C:\ProgramData\ExtTag
O43 - CFD: 2015/08/29 09:25:55 - [] D -- C:\ProgramData\ExtTags
O43 - CFD: 2015/08/29 10:13:25 - [] SHD -- C:\Users\greg\AppData\Roaming\AnyProtectEx
O43 - CFD: 2015/08/29 10:02:03 - [] D -- C:\Users\greg\AppData\Roaming\mystartsearch
O43 - CFD: 2015/08/31 10:00:33 - [] D -- C:\Users\greg\AppData\Local\gmsd_fr_005010074
O43 - CFD: 2015/08/28 21:09:12 - [] D -- C:\Users\greg\AppData\Local\Installer
O43 - CFD: 2015/04/19 14:53:05 - [] D -- C:\Users\greg\AppData\Local\mbot_fr_599
O43 - CFD: 2015/08/29 10:03:07 - [] D -- C:\Users\greg\AppData\Local\SmartWeb
O43 - CFD: 2015/08/29 10:16:24 - [] D -- C:\Users\greg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
O45 - LFCP:[MD5.9FFD31F2C7559389A7711D2A8AA7C1B7] 2015/08/25 20:58:46 A -- C:\WINDOWS\Prefetch\ACENGINE.EXE-22A9DDE1.pf
O45 - LFCP:[MD5.23A66BCC7598F41D983AEC18C77F48A2] 2015/08/25 20:35:35 A -- C:\WINDOWS\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-18875C05.pf
O45 - LFCP:[MD5.66E10CCC68AC33AFFDC3452ED45AE34B] 2015/08/29 10:36:10 A -- C:\WINDOWS\Prefetch\ANYPROTECT.EXE-53752276.pf
O45 - LFCP:[MD5.D243865545E5E928D790291E955A882B] 2015/08/27 22:24:14 A -- C:\WINDOWS\Prefetch\BOXORE.EXE-43C373DB.pf
O45 - LFCP:[MD5.6D6AF3BD85DC8297485F45A670E02300] 2015/08/25 22:10:06 A -- C:\WINDOWS\Prefetch\BUBBLE DOCK.EXE-070271B7.pf
O45 - LFCP:[MD5.1339BC13C55329DCC63351204669DF6E] 2015/08/28 20:22:06 A -- C:\WINDOWS\Prefetch\CROSSBROWSE.EXE-6BE4601B.pf
O45 - LFCP:[MD5.324110281831B3FA4D6D4C0BC54FFD4C] 2015/08/31 09:58:12 A -- C:\WINDOWS\Prefetch\GMSD_FR_005010074.EXE-74A094C7.pf
O45 - LFCP:[MD5.11D63F8D9E9201D5A0A6FB20C7BBAAA4] 2015/08/27 22:13:08 A -- C:\WINDOWS\Prefetch\PACKAGE_BOXORE_INSTALLER_MULT-2EF8D557.pf
O45 - LFCP:[MD5.DD1858B9CC7FA6F0C3EC20D42162A418] 2015/08/29 09:16:14 A -- C:\WINDOWS\Prefetch\PACKAGE_BUBBLESOUND_INSTALLER-44F5ACA1.pf
O45 - LFCP:[MD5.A718F52738C38AC3A1906A90F92FD4E1] 2015/08/27 22:13:08 A -- C:\WINDOWS\Prefetch\PACKAGE_PCROSSBROWSER_INSTALL-DD8F6CEE.pf
O45 - LFCP:[MD5.53861870B2B013C8368F1639AECBF681] 2015/08/25 20:28:48 A -- C:\WINDOWS\Prefetch\PREDM.TMP-0FD1EFEE.pf
O45 - LFCP:[MD5.378B51BB586F9D8CFCBCD8254BCC9FCC] 2015/08/25 20:51:00 A -- C:\WINDOWS\Prefetch\PREDM.TMP-13854DAF.pf
O45 - LFCP:[MD5.AFB1B86EAD84C1C25CB496333B242435] 2015/08/27 22:10:43 A -- C:\WINDOWS\Prefetch\PREDM.TMP-1AC0C4E2.pf
O45 - LFCP:[MD5.3D3796146A46EF56B0E5B1119ECB5004] 2015/08/25 21:29:50 A -- C:\WINDOWS\Prefetch\PREDM.TMP-C4EDB8C9.pf
O45 - LFCP:[MD5.FF16B371BAECEF03FC4127BD795BF1B0] 2015/08/25 21:40:46 A -- C:\WINDOWS\Prefetch\SELECTION TOOLS.EXE-D6EC6FD2.pf
O45 - LFCP:[MD5.6FFFC300E0AF50DDEE67D8FF310474CA] 2015/08/31 09:58:43 A -- C:\WINDOWS\Prefetch\SMARTWEBAPP.EXE-1005CBCD.pf
O45 - LFCP:[MD5.A8117C1635D3C5D866B9F5FB42718FE6] 2015/08/31 09:58:40 A -- C:\WINDOWS\Prefetch\SMARTWEBHELPER.EXE-7A615FD0.pf
O45 - LFCP:[MD5.F6A4388F9AA0972A3FB7A9B72E17B1CF] 2015/08/25 21:01:09 A -- C:\WINDOWS\Prefetch\UPGMSD_FR_005010071.EXE-DA32CB8D.pf
O45 - LFCP:[MD5.005581A253A6D339BD2756F8A3ACEFCE] 2015/08/27 22:03:21 A -- C:\WINDOWS\Prefetch\UPGMSD_FR_005010073.EXE-B0BDD561.pf
O45 - LFCP:[MD5.59A16C21D7D2D73D473537378AF0282E] 2015/08/31 10:00:33 A -- C:\WINDOWS\Prefetch\UPGMSD_FR_005010074.EXE-9C035A4B.pf
O58 - SDL:2015/08/13 14:49:42 A . (.Abengine - WFP driver.) -- C:\WINDOWS\System32\drivers\acwfp64.sys [45784]
O58 - SDL:2015/07/28 23:47:44 A . (.PhraseProfessor - PP WFP Driver x64.) -- C:\WINDOWS\System32\drivers\ppfd_vw_1_10_0_21.sys [57744]
O58 - SDL:2015/06/16 00:28:50 A . (.Word Surfer - Word Surfer WFP Driver x64.) -- C:\WINDOWS\System32\drivers\wsafd_1_10_0_19.sys [57728]
O58 - SDL:2015/08/25 10:22:46 A . (.StdLib - StdLib.) -- C:\WINDOWS\System32\drivers\{7c546926-b97d-4b3c-a787-098d892064ad}Gw64.sys [48784]
O61 - LFC: 2015/08/28 02:21:40 A . (.TODO: .) -- C:\Users\greg\Application Data\mystartsearch\UninstallManager.exe [374784]
O61 - LFC: 2015/08/28 02:21:40 A . (.TODO: .) -- C:\Users\greg\AppData\Roaming\mystartsearch\UninstallManager.exe [374784]
O61 - LFC: 2015/08/29 10:03:08 A . (.SoftBrain Technologies Ltd..) -- C:\Users\greg\AppData\Local\SmartWeb\__u.exe [168380]
O61 - LFC: 2015/08/27 20:28:43 A . (.Copyright (C) 2014.) -- C:\Users\greg\AppData\Local\Installer\Install_21162\DCYTDownloader.exe [1446912]
O61 - LFC: 2015/08/28 21:09:10 A . (.Copyright (C) 2014.) -- C:\Users\greg\AppData\Local\Installer\Install_10352\DCYTDownloader.exe [1446912]
O61 - LFC: 2015/08/28 22:34:22 A . (..) -- C:\Users\greg\AppData\Local\gmsd_fr_005010074\upgmsd_fr_005010074.exe [3334800]
O61 - LFC: 2015/08/31 09:21:10 A . (..) -- C:\Users\greg\AppData\Local\gmsd_fr_005010074\Download\myoffergroup_fr.exe [5151592]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.defaultenginename", "mystartsearch");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.alias", "mystartsearch");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.name", "mystartsearch");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.ptid", "cmi");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.uid", "WDCXWD10EZEX-21M2NA0_WCC3F0330146F0330146");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1440835254&z=293b0b98259032aef4fd86bgfz[...]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.search.selectedEngine", "mystartsearch");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("browser.startup.homepage", "http://www.mystartsearch.com/?type=hp&ts=1440835254&z=293b0b98259032aef4fd86bgfz0z0e8b8cdw7[...]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.a6a1a03975fde4c8690f6b883c36bc17d88519bfe704d8cae3851239com74253.74253.internaldb.monetization_plugin_bundle[...]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.a6a1a03975fde4c8690f6b883c36bc17d88519bfe704d8cae3851239com74253.74253.internaldb.monetization_plugin_notBun[...]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.a6a1a03975fde4c8690f6b883c36bc17d88519bfe704d8cae3851239com74253.74253.internaldb.monetization_plugin_regBun[...]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.a6a1a03975fde4c8690f6b883c36bc17d88519bfe704d8cae3851239com74253.74253.name", "MyBrowser 1.0.2V27.08");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.a6a1a03975fde4c8690f6b883c36bc17d88519bfe704d8cae3851239com74253.74253.publisher", "MyBrowser 1.0.2V27.08");
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.quick_start.enable_search1", false);
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("extensions.xpiState", "{\"app-profile\":{\"defsearchp@gmail.com\":{\"d\":\"C:\\\\Users\\\\greg\\\\AppData\\\\Roaming\\\[...]
O69 - SBI: prefs.js [greg - 3q9b95qx.default] user_pref("{0420BEC0-F2C1-4578-8F19-471B9E5C63A5}.ScriptData_product_name", "shopperz240820151333");
O69 - SBI: SearchScopes [HKCU] {ielnksrch} [DefaultScope] - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_ByKo5GOPu13rXw1o5lDYuZRQM6k2s7gPadzGah9ooRkSpgbl8OeAsftDO6-BgYWfdLHaKGZ3xeaeLRXoBE0XxPloEKX30sCS7lIvYpb5t9ZoFDRv3UnW5Hfu_Fw1ZuIN9Ulz5dqoaMoX7acHNDIQZ4C02Z3BT&q={searchTerms}
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.)
SR - Auto [2015/08/27 10:20:16] [ 33792] ExtTag (ExtTag) . (.Copyright © Main 2015.) - C:\ProgramData\ExtTag\ExtTag.exe
SR - Auto [2015/08/25 10:48:18] [ 379392] NixSrv Service (NixSrv) . (.Copyright © 2015.) - C:\Program Files\NixSrv\NixSrv.exe
C:\Users\greg\AppData\Local\gmsd_fr_005010074\upgmsd_fr_005010074.exe
C:\Program Files (x86)\gmsd_fr_005010074\gmsd_fr_005010074.exe
C:\Users\greg\AppData\Local\SmartWeb\SmartWebHelper.exe
C:\Users\greg\AppData\Local\SmartWeb\SmartWebApp.exe
C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\searchplugins\findit.xml
C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\searchplugins\mystartsearch.xml
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml
C:\Users\greg\AppData\Roaming\Mozilla\Firefox\Profiles\3q9b95qx.default\extensions\deskCutv2@gmail.com
C:\Program Files (x86)\983377CC-1440522791-11E2-9DFD-F80F41ABD9CE
C:\Program Files (x86)\AnyProtectEx
C:\Program Files (x86)\gmsd_fr_005010074
C:\Program Files (x86)\SFK
C:\Program Files (x86)\Software
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP
C:\ProgramData\ExtTag
C:\ProgramData\ExtTags
C:\Users\greg\AppData\Roaming\AnyProtectEx
C:\Users\greg\AppData\Roaming\mystartsearch
C:\Users\greg\AppData\Local\gmsd_fr_005010074
C:\Users\greg\AppData\Local\Installer
C:\Users\greg\AppData\Local\SmartWeb
C:\Users\greg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
C:\WINDOWS\Prefetch\ACENGINE.EXE-22A9DDE1.pf
C:\WINDOWS\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-18875C05.pf
C:\WINDOWS\Prefetch\ANYPROTECT.EXE-53752276.pf
C:\WINDOWS\Prefetch\BOXORE.EXE-43C373DB.pf
C:\WINDOWS\Prefetch\BUBBLE DOCK.EXE-070271B7.pf
C:\WINDOWS\Prefetch\CROSSBROWSE.EXE-6BE4601B.pf
C:\WINDOWS\Prefetch\GMSD_FR_005010074.EXE-74A094C7.pf
C:\WINDOWS\Prefetch\PACKAGE_BOXORE_INSTALLER_MULT-2EF8D557.pf
C:\WINDOWS\Prefetch\PACKAGE_BUBBLESOUND_INSTALLER-44F5ACA1.pf
C:\WINDOWS\Prefetch\PACKAGE_PCROSSBROWSER_INSTALL-DD8F6CEE.pf
C:\WINDOWS\Prefetch\PREDM.TMP-0FD1EFEE.pf
C:\WINDOWS\Prefetch\PREDM.TMP-13854DAF.pf
C:\WINDOWS\Prefetch\PREDM.TMP-1AC0C4E2.pf
C:\WINDOWS\Prefetch\PREDM.TMP-C4EDB8C9.pf
C:\WINDOWS\Prefetch\SELECTION TOOLS.EXE-D6EC6FD2.pf
C:\WINDOWS\Prefetch\SMARTWEBAPP.EXE-1005CBCD.pf
C:\WINDOWS\Prefetch\SMARTWEBHELPER.EXE-7A615FD0.pf
C:\WINDOWS\Prefetch\UPGMSD_FR_005010071.EXE-DA32CB8D.pf
C:\WINDOWS\Prefetch\UPGMSD_FR_005010073.EXE-B0BDD561.pf
C:\WINDOWS\Prefetch\UPGMSD_FR_005010074.EXE-9C035A4B.pf
C:\WINDOWS\System32\drivers\acwfp64.sys
C:\WINDOWS\System32\drivers\ppfd_vw_1_10_0_21.sys
C:\WINDOWS\System32\drivers\wsafd_1_10_0_19.sys
C:\WINDOWS\System32\drivers\{7c546926-b97d-4b3c-a787-098d892064ad}Gw64.sys
C:\Users\greg\Application Data\mystartsearch\UninstallManager.exe
C:\Users\greg\AppData\Roaming\mystartsearch\UninstallManager.exe
C:\Users\greg\AppData\Local\SmartWeb\__u.exe
C:\Users\greg\AppData\Local\Installer\Install_21162\DCYTDownloader.exe
C:\Users\greg\AppData\Local\Installer\Install_10352\DCYTDownloader.exe
C:\Users\greg\AppData\Local\gmsd_fr_005010074\Download\myoffergroup_fr.exe
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSurferAutoUpdateClient_RASAPI32
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSurferAutoUpdateClient_RASMANCS
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\dpcc_en_009010073_is1
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_005010074_is1
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SmartWeb
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified
HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E
HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E
HKLM\SOFTWARE\Wow6432Node\downchecker
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP
HKLM\SOFTWARE\Wow6432Node\MyBrowser 1.0.2V27.08-nv-edge
HKLM\SOFTWARE\Wow6432Node\Tutorials
HKCU\SOFTWARE\MyBrowser 1.0.2V27.08-nv
HKCU\SOFTWARE\MyBrowser 1.0.2V27.08-nv-ie
HKCU\SOFTWARE\Tutorials
HKCU\SOFTWARE\TutoTag
HKCU\SOFTWARE\AppDataLow\Software\SmartWeb


Publicité


Signaler le contenu de ce document

Publicité