O2 - BHO: Smiley Bar for Facebook [64Bits] - {944FEDFD-C4FD-441D-8275-9C651A9FFBDE} . (.Status Winks - ScriptHost.) -- C:\Program Files (x86)\Smiley Bar for Facebook\ScriptHost.dll => Infection BT (Adware.SmileyBar) O23 - Service: (vToolbarUpdater14.1.7) . (.Pas de propriétaire - ToolbarU Application.) - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe [MD5.F0876747D83C1067BD71DAAF9F59325F] [APT] [ROC_REG_JAN_DELETE] (...) -- C:\ProgramData\AVG January 2013 Campaign\ROC.exe => Toolbar.AVGSearch O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {1E03DB52-D5CB-4338-A338-E526DD4D4DB1} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} => Toolbar.Google O42 - Logiciel: Smiley Bar for Facebook - (.Status Winks.) [HKLM][64Bits] -- Smiley Bar for Facebook => Toolbar.SmileyBar O43 - CFD: 3/02/2013 - 18:41:44 - [1,454] ----D C:\Program Files (x86)\Smiley Bar for Facebook => Toolbar.SmileyBar O43 - CFD: 15/02/2013 - 21:58:25 - [0,922] ----D C:\Program Files (x86)\Common Files\AVG Secure Search => Toolbar.AVGSearch O43 - CFD: 21/01/2013 - 10:24:00 - [8,430] ----D C:\ProgramData\AVG January 2013 Campaign => Toolbar.AVGSearch [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}] => Toolbar.BingBar [HKLM\Software\Classes\Installer\Features\25BD30E1BC5D83343A835E62DDD4D41B] => Toolbar.Bing [HKLM\Software\Classes\Installer\Products\25BD30E1BC5D83343A835E62DDD4D41B] => Toolbar.Bing [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\25BD30E1BC5D83343A835E62DDD4D41B] => Toolbar.Bing [HKLM\Software\Wow6432Node\Classes\Installer\Features\25BD30E1BC5D83343A835E62DDD4D41B] => Toolbar.Bing [HKLM\Software\Wow6432Node\Classes\Installer\Products\25BD30E1BC5D83343A835E62DDD4D41B] => Toolbar.Bing [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Smiley Bar for Facebook] => Toolbar.SmileyBar [HKLM\Software\Classes\TbHelper.TbTask] => Toolbar.Agent* [HKLM\Software\Classes\TbHelper.TbTask.1] => Toolbar.Agent* [HKLM\Software\Wow6432Node\Classes\TbHelper.TbTask] => Toolbar.Agent* [HKLM\Software\Wow6432Node\Classes\TbHelper.TbTask.1] => Toolbar.Agent* C:\Program Files (x86)\Common Files\AVG Secure Search => Toolbar.AVGSearch C:\ProgramData\AVG January 2013 Campaign => Toolbar.AVGSearch O90 - PUC: "25BD30E1BC5D83343A835E62DDD4D41B" . (.Bing Bar.) -- C:\Windows\Installer\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}\icon_installer_ico SR - | Auto 965296 | (vToolbarUpdater14.1.7) . (...) - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe => Toolbar.AVGSearch [HKLM\Software\BrowserChoice] [MD5.87C57CBE385E00726A2113614F6C6BD2] - (.Pas de propriétaire - ToolbarU Application.) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\14.1.7\ToolbarUpdater.exe [965296] [PID.3192] O4 - Global Startup: C:\Users\Sony\Desktop\Windows Update Troubleshooting Info.lnk . (...) -- C:\Users\Sony\AppData\Local\Temp\WUDiagTempFolder\2013_02_05T16_56_36 (.not file.) => Temporary file not necessary O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-654649895-2762294612-2042282903-1000Core.job => Facebook Update Task User* O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-654649895-2762294612-2042282903-1000UA.job => Facebook Update Task User* [MD5.00000000000000000000000000000000] [APT] [4606] (...) -- C:\Users\Sony\AppData\Local\Temp\launchie.vbs \\B (.not file.) => Temporary file not necessary [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-654649895-2762294612-2042282903-1000Core] (.Facebook Inc..) -- C:\Users\Sony\AppData\Local\Facebook\Update\FacebookUpdate.exe [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-654649895-2762294612-2042282903-1000UA] (.Facebook Inc..) -- C:\Users\Sony\AppData\Local\Facebook\Update\FacebookUpdate.exe [HKCU\Software\PerformerSoft LLC] => PerformerSoft LLC O43 - CFD: 12/02/2013 - 17:59:23 - [0] ----D C:\Users\Sony\AppData\Local\{40E60858-2745-4264-BB96-BA95ABDE5BA9} => Empty Folder not necessary O43 - CFD: 12/02/2013 - 17:59:08 - [0] ----D C:\Users\Sony\AppData\Local\{66BF2EC1-4988-46E4-94BA-9E483FECA87D} => Empty Folder not necessary