Logfile of random's system information tool 1.09 (written by random/random) Run by fredyo at 2014-02-16 18:02:51 Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 System drive C: has 63 GB (43%) free of 145 GB Total RAM: 3036 MB (42% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 18:04:05, on 16/02/2014 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16526) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Windows\system32\taskeng.exe C:\Program Files\Samsung\EBM\EasyBatteryMgr3.exe C:\Program Files\Orange\Assistance Livebox\AssistanceLivebox.exe C:\Program Files\Samsung\Samsung Magic Doctor\MagicDoctorKbdHk.exe C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe C:\Program Files\Orange\Assistance Livebox\dist\ST2.exe C:\PROGRA~1\SearchProtect\SearchProtect\bin\cltmng.exe C:\PROGRA~1\SearchProtect\UI\bin\cltmngui.exe C:\Program Files\cspep\cspep.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Windows\System32\wpcumi.exe C:\Program Files\Windows Live\Device Manager\msgrdvmn.exe C:\Program Files\MpcStar\Codecs\QuickTime\qttask.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\Samsung\Kies\KiesTrayAgent.exe C:\Program Files\WebAdSystem\WebAdSystem.exe C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe C:\Windows\ehome\ehtray.exe C:\Users\fredyo\AppData\Roaming\cacaoweb\cacaoweb.exe C:\Program Files\Samsung\Kies\Kies.exe C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\Windows\System32\wscript.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Orange HSS\Launcher\Launcher.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\WebAdSystem\WebAdSystemHttpProxy.exe C:\Windows\System32\rundll32.exe C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe C:\Program Files\Orange HSS\connectivity\connectivitymanager.exe C:\Program Files\Orange HSS\systray\systrayapp.exe C:\Program Files\Orange HSS\Deskboard\deskboard.exe C:\Program Files\Orange HSS\connectivity\CoreCom\CoreCom.exe C:\Program Files\Brother\ControlCenter3\brccMCtl.exe C:\Windows\system32\conime.exe C:\Program Files\Orange HSS\connectivity\CoreCom\OraConfigRecover.exe C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe C:\Program Files\Orange\Antivirus Firewall\Common\FSLAUNCH.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Adblock Plus for IE\AdblockPlusEngine.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\Macromed\Flash\FlashUtil32_12_0_0_44_ActiveX.exe C:\Program Files\Free Download Manager\fdm.exe C:\Windows\explorer.exe C:\Windows\system32\SearchFilterHost.exe C:\Downloads\Software\RSIT.exe C:\Program Files\trend micro\fredyo.exe C:\Windows\system32\msfeedssync.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1383083522&from=cor&uid=SAMSUNGXHM320II_S20SJD0S924980 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.ke.voila.fr/S/voila?kw= R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.snap.do/?publisher=QuickOC&dpid=QuickOC&co= FR&userid=d63eb296-e28a-4e83-8628-b0a6f7d5dc1a&searchtype=ds&q={searchTerms}&installDate=10/05/2013 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.orange.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1383083522&from=cor&uid=SAMSUNGXHM320II_S20SJD0S924980 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.mywebs.pro/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.mywebs.pro/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.qone8.com/?type=hp&ts=1383083522&from=cor&uid=SAMSUNGXHM320II_S20SJD0S924980 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snap.do/?publisher= QuickOC&dpid=QuickOC&co=FR&userid=d63eb296-e28a-4e83-8628-b0a6f7d5dc1a&searchtype=ds&q={searchTerms}&installDate=10/05/2013 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snap.do/?publisher=QuickOC&dpid= QuickOC&co=FR&userid=d63eb296-e28a-4e83-8628-b0a6f7d5dc1a&searchtype=ds&q={searchTerms}&installDate=10/05/2013 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer fourni par Orange R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange HSS\SearchURLHook\SearchPageURL.dll O1 - Hosts: ::1 localhost O2 - BHO: SaveSense - {0f21b1e5-5afc-43c9-9c66-515046e92ec2} - C:\Program Files\SaveSense\SaveSenseIE.dll O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\fredyo\AppData\Roaming\Complitly\Complitly.dll O2 - BHO: ToolbarOrange.InitToolbarBHO - {1d970ed5-3eda-438d-bffd-715931e2775b} - mscoree.dll (file missing) O2 - BHO: QuickShare WidgetEngine - {31ad400d-1b06-4e33-a59a-90c2c140cba0} - mscoree.dll (file missing) O2 - BHO: Increase performance and video formats for your HTML5