M2 - MFEP: prefs.js [fabrice - hphrp9dn.default\4fdacf00-e9c4-4ad5-b4cf-bf9800f184f6@36857116-74e0-4973-936f-860cd2a102a9.com] [] Plus-HD-2.2 v (..) G2 - GCE: Preference [User Data\Default] [kfakeonomonapccoamcmdgpoaicnpnoo] Plus-HD-2.2 v.1.23.9, (Activé) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Plus-HD-2.2-codedownloader.job [1190] =>PUP.SoftwareEngine O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Plus-HD-2.2-enabler.job [1090] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Plus-HD-2.2-firefoxinstaller.job [1810] O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Plus-HD-2.2-updater.job [1186] [MD5.8CB3EA864B827A3321693C4873779B2E] [APT] [Plus-HD-2.2-codedownloader] (.Plus HD.) -- C:\Program Files\Plus-HD-2.2\Plus-HD-2.2-codedownloader.exe [476520] =>PUP.SoftwareEngine [MD5.203F09E51C58DC974D1A68B0EC2EB8A4] [APT] [Plus-HD-2.2-enabler] (.Plus HD.) -- C:\Program Files\Plus-HD-2.2\Plus-HD-2.2-enabler.exe [343400] [MD5.74157D7F7DA9787CCAAB4C0E3335F42F] [APT] [Plus-HD-2.2-firefoxinstaller] (.Plus HD.) -- C:\Program Files\Plus-HD-2.2\Plus-HD-2.2-firefoxinstaller.exe [720744] [MD5.527AFFE4A9495610BF9BFC1A53B5D129] [APT] [Plus-HD-2.2-updater] (.Plus HD.) -- C:\Program Files\Plus-HD-2.2\Plus-HD-2.2-updater.exe [362344] O42 - Logiciel: Plus-HD-2.2 - (.Plus HD.) [HKLM] -- Plus-HD-2.2 [HKCU\Software\AppDataLow\Software\Plus-HD-2.2] O43 - CFD: 02/06/2013 - 14:42:38 - [7,158] ----D C:\Program Files\Plus-HD-2.2 O45 - LFCP:[MD5.6FEDB3C72B778ADFD8BD6B235BEB0952] - 03/06/2013 - 05:34:57 ---A- - C:\Windows\Prefetch\PLUS-HD-2.2-ENABLER.EXE-506069E7.pf [MD5.9EEE55B742B65439A0A45BF895E5CEA1] - (.WebCake LLC - WebCake Desktop.) -- C:\Users\fabrice\AppData\Roaming\WebCake\WebCakeDesktop.exe [47896] [PID.480] =>Adware.WebCake M0 - MFSP: prefs.js [fabrice - hphrp9dn.default] http://start.iminent.com =>Adware.IMBooster O3 - Toolbar: SYSTRAN Web Translator 5.0 - [HKLM]{A5899B52-3AF9-4F56-85FE-AD7B3BE8490F} . (.SYSTRAN - Pas de description.) -- C:\Program Files\SYSTRAN\5.0\Personal\IEPlugIn.dll O4 - HKCU\..\Run: [WebCake Desktop] . (.WebCake LLC - WebCake Desktop.) -- C:\Users\fabrice\AppData\Roaming\WebCake\WebCakeDesktop.exe =>Adware.WebCake O4 - HKUS\S-1-5-21-1586352190-1745240987-1176132156-1000\..\Run: [WebCake Desktop] . (.WebCake LLC - WebCake Desktop.) -- C:\Users\fabrice\AppData\Roaming\WebCake\WebCakeDesktop.exe =>Adware.WebCake O23 - Service: WebCake Desktop Updater (WebCake Desktop Updater) . (.WebCake LLC - WebCake.Desktop.Updater.) - C:\Program Files\WebCake\WebCakeDesktop.Updater.exe =>Adware.WebCake [MD5.00000000000000000000000000000000] [APT] [Desk 365 RunAsStdUser] (...) -- C:\Program Files\Desk 365\desk365.exe (.not file.) [0] =>Hijacker.22Find [MD5.00000000000000000000000000000000] [APT] [Omiga Plus RunAsStdUser] (...) -- C:\Program Files\Omiga Plus\omigaplus.exe (.not file.) [0] [HKCU\Software\AppDataLow\Software\WiseConvert_1.5] =>Toolbar.Conduit [HKCU\Software\IncrediMail] [HKCU\Software\iMesh] =>PUP.iMesh [HKLM\Software\iMeshSRTB] =>PUP.iMesh O43 - CFD: 21/03/2013 - 20:56:54 - [0] ----D C:\Program Files\iMesh Applications =>PUP.iMesh O43 - CFD: 02/06/2013 - 14:39:28 - [0,868] ----D C:\Program Files\WebCake =>Adware.WebCake O43 - CFD: 03/06/2013 - 18:18:53 - [0,117] ----D C:\Users\fabrice\AppData\Roaming\WebCake =>Adware.WebCake O61 - LFC: 02/06/2013 - 13:40:24 ---A- C:\Users\fabrice\AppData\Roaming\WebCake\dat\Desktop.OS.dll [61208] =>Adware.WebCake O61 - LFC: 02/06/2013 - 18:22:55 ---A- C:\Users\fabrice\Downloads\speedupmypc.exe [1599536] =>Rogue SpeedUpMyPC O61 - LFC: 03/06/2013 - 17:18:52 ---A- C:\Users\fabrice\AppData\Roaming\WebCake\dat\Desktop.OS.Plugin.dll [13600] =>Adware.WebCake O61 - LFC: 03/06/2013 - 17:18:53 ---A- C:\Users\fabrice\AppData\Roaming\WebCake\PlugIns.cache [0] =>Adware.WebCake O61 - LFC: 31/05/2013 - 18:31:51 ----- C:\Users\fabrice\AppData\Roaming\WebCake\WebCakeDesktop.exe [47896] =>Adware.WebCake O69 - SBI: SearchScopes [HKCU] {C8904B00-4132-43A5-AA1B-5EE20E95059F} - (WiseConvert 1.5 Customized Web Search) - http://search.conduit.com =>Toolbar.Conduit O87 - FAEL: "TCP Query User{02B50FF2-AE90-4963-B4EE-99C8890C03B9}C:\program files\oovoo\oovoo.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files\oovoo\oovoo.exe (.not file.) O87 - FAEL: "UDP Query User{31A79230-7EB0-486F-9F7F-B5A48C7BA544}C:\program files\oovoo\oovoo.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files\oovoo\oovoo.exe (.not file.) O87 - FAEL: "TCP Query User{1104DAD0-B8A9-4281-9AC5-8A97DE34E9DF}C:\program files\1clickdownload\1clickdownloader.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files\1clickdownload\1clickdownloader.exe (.not file.) =>PUP.1ClickDownloader O87 - FAEL: "UDP Query User{27FCDA97-DF8F-4A67-9D23-21DAD25E665D}C:\program files\1clickdownload\1clickdownloader.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files\1clickdownload\1clickdownloader.exe (.not file.) =>PUP.1ClickDownloader [HKLM\Software\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}] =>PUP.iMesh [HKCU\Software\iMesh] =>PUP.iMesh [HKCU\Software\AppDataLow\Software\WiseConvert_1.5] =>Toolbar.Conduit [HKLM\Software\iMeshSRTB] =>PUP.iMesh [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc] =>Hijacker.22find [HKLM\Software\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}] =>Adware.MagniPic [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\eSafeSvc] =>PUP.eSafeSecurity [HKLM\Software\Canneverbe Limited\OpenCandy] =>Adware.OpenCandy [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311301136}] =>PUP.CrossRider C:\Program Files\iMesh Applications =>PUP.iMesh SR - | Auto 31/05/2013 23552 | (WebCake Desktop Updater) . (.WebCake LLC.) - C:\Program Files\WebCake\WebCakeDesktop.Updater.exe =>Adware.WebCake SysRestore FirewallRAZ EmptyCLSID EmptyTemp EmptyFlash