# AdwCleaner v5.000 - Rapport créé le 17/08/2015 à 18:18:53 # Mis à jour le 14/08/2015 par Xplode # Base de données : 2015-08-16.2 [Serveur] # Système d'exploitation : Windows 7 Professional Service Pack 1 (x86) # Nom d'utilisateur : HIBA - HIBA-PC # Exécuté depuis : C:\Users\HIBA\Desktop\adwcleaner_5.000.exe # Option : Scanner ***** [ Services ] ***** ***** [ Dossiers ] ***** Dossier Trouvé : C:\Program Files\AskPartnerNetwork Dossier Trouvé : C:\Program Files\Conduit Dossier Trouvé : C:\ProgramData\apn Dossier Trouvé : C:\ProgramData\AskPartnerNetwork Dossier Trouvé : C:\Users\HIBA\AppData\Local\AskPartnerNetwork Dossier Trouvé : C:\Users\HIBA\AppData\Local\Temp\apn Dossier Trouvé : C:\Users\HIBA\AppData\LocalLow\Conduit Dossier Trouvé : C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\FilmFanatic ***** [ Fichiers ] ***** Fichier Trouvé : C:\Users\HIBA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_olakgnkoldmagdblaalodobkmeokmgjj_0.localstorage Fichier Trouvé : C:\Users\HIBA\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\olakgnkoldmagdblaalodobkmeokmgjj Fichier Trouvé : C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\searchplugins\ask-web-search.xml ***** [ Raccourcis ] ***** ***** [ Tâches planifiées ] ***** ***** [ Registre ] ***** Clé Trouvée : HKLM\SOFTWARE\Classes\protector_dll.protectorbho Clé Trouvée : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1 Clé Trouvée : HKLM\SOFTWARE\Classes\Toolbar.CT2247187 Clé Trouvée : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Clé Trouvée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E4E012DC-1925-48E9-8010-2D195574642A} Valeur Trouvée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{FE69C007-C452-4D3E-86D2-1730DF8BC871}] Clé Trouvée : HKCU\Software\AskPartnerNetwork Clé Trouvée : HKCU\Software\BabylonToolbar Clé Trouvée : HKCU\Software\facemoods.com Clé Trouvée : HKCU\Software\Iminent Clé Trouvée : HKCU\Software\Smart PC Solutions Clé Trouvée : HKCU\Software\AppDataLow\Toolbar Clé Trouvée : HKCU\Software\AppDataLow\Software\Conduit Clé Trouvée : HKLM\SOFTWARE\AskPartnerNetwork Clé Trouvée : HKLM\SOFTWARE\Conduit Clé Trouvée : HKLM\SOFTWARE\facemoods.com Clé Trouvée : HKLM\SOFTWARE\SiteSee Clé Trouvée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\B1Search Clé Trouvée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AE7A571C-3B15-4C28-A0C8-D42D7295C71C} Clé Trouvée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} Clé Trouvée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} ***** [ Navigateurs ] ***** [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._86Members_.lastActivePing", "1439040059508"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.BUTTON_STRUCTURE", "[{\"b\":224540453,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224540454,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...] [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.search.defaultenginename.prev", "Google"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.search.defaultenginename.savedPrev", "true"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.search.defaultenginename.tb", "Ask Web Search"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.search.selectedEngine.prev", "Google"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.search.selectedEngine.savedPrev", "true"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.search.selectedEngine.tb", "Ask Web Search"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.startup.homepage.prev", "hxxps://www.google.dz/"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.startup.homepage.savedPrev", "true"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.startup.homepage.tb", "hxxp://home.tb.ask.com/index.jhtml?ptb=57F1BA94-AA1C-4FDF-9948-C0E5F1578A57&n=781b8e39&p2=^Z1^xdm449^YYA^dz&si=COWAnd[...] [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.startup.page.savedPrev", 1); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.startup.page.tb", 1); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.browser.version.last", "39.0"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.competitorDNS", "{\"comment\":\"refresh every 1 week (7*24*60*60*1000)\",\"refreshPeriod\":604800000,\"list\":[{\"url\":\"hxxp://www.dnsrsearch.com/[...] [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.firstKnownVersion", "7.18.7.26371"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=57F1BA94-AA1C-4FDF-9948-C0E5F1578A57&n=781b8e39&p2=^Z1^xdm449^YYA^dz&si=COWAndvU5MYCFWrkwgodsYsBm[...] [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.hp.enabled", false); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.hp.guardType", "HPR"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.hp.user.defined", false); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.initialized", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installKeysSource", "Cookies"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installType", "XPI"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.contextKey", ""); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.dlpCountryCode", "DZ"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.installDate", "2015071801"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.partnerId", "^Z1^xdm449^YYA^dz"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.partnerSubId", "COWAndvU5MYCFWrkwgodsYsBmw"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.success", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.installation.toolbarId", "57F1BA94-AA1C-4FDF-9948-C0E5F1578A57"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.isCompliantUninstallImplementation", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.lastActivePing", "1439667330937"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.lastKnownVersion", "7.18.7.26371"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.options.defaultSearch", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.options.homePageEnabled", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.options.keywordEnabled", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.options.tabEnabled", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.partnerPixelFired", false); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.searchHistory", "\r\n\r\n 'D9'(\r\n 'D'4*1'C'*\r\n\r\n-A8\r\nAdvertising '9D'F'*\r\n\r\n 'D9'( AD'4 (1B\r\n \r\n 'D9'( B*'DJ)\r\n [...] [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.successUrl", "hxxp://download.filmfanatic.com/installComplete.jhtml"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.toolbar.ownSearch", false); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark._paMembers_.toolbarCollapsed", true); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark.hp.enabled", false); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", ""); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("extensions.toolbar.mindspark.lastInstalled", "yourvideochat@mindspark.com"); [C:\Users\HIBA\AppData\Roaming\Mozilla\Firefox\Profiles\u5eave78.default-1431975597898\prefs.js] [Preference] Trouvée : user_pref("keyword.URL", "hxxp://int.search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=57F1BA94-AA1C-4FDF-9948-C0E5F1578A57&n=781b8e39&ind=2015071801&p2=^Z1^xdm449^YYA^dz&si=COWAndvU5MYCFWrkwgodsYsBmw&[...] ************************* C:\AdwCleaner[S5].txt - [13297 octets] - [17/08/2015 18:18:53] C:\AdwCleanerDebug.txt - [165 octets] - [07/12/2014 21:56:12] ########## EOF - C:\AdwCleaner[S5].txt - [13424 octets] ##########