cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
[MD5.E9986E9ADB8D65B6CA30D80103F1F53C] - (.Cherished Technololgy LIMITED - WPM Service.) -- C:\Documents and Settings\All Users\Application Data\WPM\wprotectmanager.exe [499856] [PID.168] =>PUP.WpManager
[MD5.1B6EBAA539502C816930AE4FC9F192FE] - (.Iminent - Iminent Protection.) -- C:\Program Files\Fichiers communs\Umbrella\umbrella.exe [2868544] [PID.1680] =>Adware.IMBooster
[MD5.02C64A253F1EE84663510A7FC93F5B93] - (.Updater - Updater service.) -- C:\Documents and Settings\All Users\Application Data\Updater\Updater.exe [486264] [PID.448] =>Adware.IncrediBar
[MD5.25605EC5F30D29AC217236B0CA88C28A] - (.WatchDog - Pas de description.) -- C:\Documents and Settings\All Users\Application Data\RHelpers\ChromeHelper\ChromeHelper.exe [429944] [PID.852] =>PUP.SearchDonkey
[MD5.25605EC5F30D29AC217236B0CA88C28A] - (.WatchDog - Pas de description.) -- C:\Documents and Settings\All Users\Application Data\RHelpers\FireFoxHelper\FireFoxHelper.exe [429944] [PID.2748] =>PUP.SearchDonkey
[MD5.25605EC5F30D29AC217236B0CA88C28A] - (.WatchDog - Pas de description.) -- C:\Documents and Settings\All Users\Application Data\RHelpers\IEHelper\IeHelper.exe [429944] [PID.1300] =>PUP.SearchDonkey
G1 - GCS: Preference [User Data\Default] http://www.nationzoom.com =>Hijacker.NationZoom
G2 - GCE: Preference [User Data\Default] [ifohbjbgfchkkfhphahclmkpgejiplfo] Lightning Newtab v.1.1.7.9, (D�sactiv�) =>PUP.Elex
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.nationzoom.com =>Hijacker.NationZoom
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.nationzoom.com =>Hijacker.NationZoom
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com =>Hijacker.SmartBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoom.com =>Hijacker.NationZoom
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com =>PUP.DoSearches
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snapdo.com =>Hijacker.SmartBar
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com =>PUP.DoSearches
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoom.com =>Hijacker.NationZoom
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com =>PUP.DoSearches
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com =>Hijacker.SmartBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com =>Hijacker.SmartBar
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.nationzoom.com =>Hijacker.NationZoom
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.nationzoom.com =>Hijacker.NationZoom
O2 - BHO: CrossriderApp0039994 - {11111111-1111-1111-1111-110311991194} . (.Adassist - Easy Deals BHO.) -- C:\Program Files\Easy Deals\Easy Deals-bho.dll =>PUP.CrossRider
O2 - BHO: Websteroids - {44ed99e2-16a6-4b89-80d6-5b21cf42e78b} . (.Creative Island Media, LLC - Pas de description.) -- C:\Documents and Settings\All Users\Application Data\Websteroids\IE\common.dll =>PUP.TubeDimmer
O2 - BHO: IMinent WebBooster - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} Cl� orpheline =>Adware.IMBooster
O2 - BHO: PassWidget - {dede0df2-39fa-4f05-967d-79cde2495d1f} . (...) -- C:\Program Files\Pass-Widget\134.dll =>PUP.PassWidget
O4 - GS\Program [papy clement]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://www.nationzoom.com =>Hijacker.NationZoom
O4 - HKLM\..\Run: [Updater] . (.Updater - Updater service.) -- C:\Documents and Settings\All Users\Application Data\Updater\Updater.exe =>Adware.IncrediBar
O4 - HKCU\..\Run: [Updater] . (.Updater - Updater service.) -- C:\Documents and Settings\All Users\Application Data\Updater\Updater.exe =>Adware.IncrediBar
O4 - HKUS\S-1-5-21-448539723-1482476501-1801674531-1006\..\Run: [Updater] . (.Updater - Updater service.) -- C:\Documents and Settings\All Users\Application Data\Updater\Updater.exe =>Adware.IncrediBar
O23 - Service: Service Software Update (Software_update) (Software_update) . (...) - C:\Program Files\Software\Update\SoftwareUpdate.exe (.not file.) =>Adware.Boxore
O23 - Service: SProtection (SProtection) . (.Iminent - Iminent Protection.) - C:\Program Files\Fichiers communs\Umbrella\umbrella.exe =>Adware.IMBooster
O23 - Service: Wpm Service (Wpm) . (.Cherished Technololgy LIMITED - WPM Service.) - C:\Documents and Settings\All Users\Application Data\WPM\wprotectmanager.exe =>PUP.WpManager
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\PassWidget Update.job [382] =>PUP.PassWidget
O42 - Logiciel: Iminent - (.Iminent.) [HKLM] -- {90259377-55E9-4D60-A0C0-32EF312931A1} =>Adware.IMBooster
O42 - Logiciel: PassWidget - (.PassWidget Software.) [HKLM] -- {5c5e7b52-d689-4132-bbf4-0fbb16339108} =>PUP.PassWidget
O42 - Logiciel: WPM17.8.0.3159 - (.Cherished Technololgy LIMITED.) [HKLM] -- WPM =>PUP.WpManager
O42 - Logiciel: Websteroids - (.Creative Island Media, LLC.) [HKLM] -- Websteroids =>PUP.TubeDimmer
[HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}]
[HKCU\Software\Iminent] =>Adware.IMBooster
[HKCU\Software\InstalledBrowserExtensions] =>Adware.VidSaver
[HKCU\Software\PassWidget] =>PUP.PassWidget
[HKCU\Software\Smartbar] =>Hijacker.SmartBar
[HKLM\Software\Iminent] =>Adware.IMBooster
[HKLM\Software\Umbrella]
[HKLM\Software\V9]
[HKLM\Software\Vittalia] =>PUP.Vittalia
[HKLM\Software\deskSvc]
[HKLM\Software\do-searchSoftware] =>PUP.DoSearches
[HKLM\Software\nationzoomSoftware] =>Hijacker.NationZoom
[HKLM\Software\supWPM] =>PUP.WpManager
O43 - CFD: 01/01/2014 - 23:18:37 - [10,560] ----D C:\Program Files\Desk 365 =>Hijacker.22Find
O43 - CFD: 24/11/2013 - 20:42:56 - [1,088] ----D C:\Program Files\Pass-Widget =>PUP.PassWidget
O43 - CFD: 01/01/2014 - 23:19:42 - [0] ----D C:\Program Files\Software
O43 - CFD: 24/11/2013 - 18:56:01 - [33,331] ----D C:\Program Files\Fichiers communs\337
O43 - CFD: 10/12/2013 - 19:54:15 - [2,736] ----D C:\Program Files\Fichiers communs\Umbrella
O43 - CFD: 30/12/2012 - 20:13:29 - [0] ----D C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Babylon
O43 - CFD: 05/09/2013 - 11:57:10 - [0,030] ----D C:\Documents and Settings\All Users\Application Data\Iminent =>Adware.IMBooster
O43 - CFD: 01/01/2014 - 23:58:54 - [1,230] ----D C:\Documents and Settings\All Users\Application Data\RHelpers =>PUP.SearchDonkey
O43 - CFD: 01/01/2014 - 23:58:54 - [1,689] ----D C:\Documents and Settings\All Users\Application Data\Updater =>PUP.CrossRider
O43 - CFD: 01/01/2014 - 23:58:54 - [2,316] ----D C:\Documents and Settings\All Users\Application Data\Websteroids =>PUP.TubeDimmer
O43 - CFD: 01/01/2014 - 23:18:03 - [0,477] ----D C:\Documents and Settings\All Users\Application Data\WPM =>PUP.WpManager
O43 - CFD: 30/12/2012 - 20:13:29 - [0,008] ----D C:\Documents and Settings\papy clement\Application Data\Babylon =>PUP.Babylon
O43 - CFD: 24/11/2013 - 19:19:35 - [14,607] ----D C:\Documents and Settings\papy clement\Application Data\Desk 365 =>Hijacker.22Find
O43 - CFD: 05/09/2013 - 11:57:53 - [0,016] ----D C:\Documents and Settings\papy clement\Application Data\Iminent =>Adware.IMBooster
O43 - CFD: 24/11/2013 - 19:21:43 - [0] ----D C:\Documents and Settings\papy clement\Application Data\iSafe =>Trojan.Staser
O43 - CFD: 30/12/2012 - 20:13:39 - [5,739] ----D C:\Documents and Settings\papy clement\Local Settings\Application Data\Babylon =>PUP.Babylon
O43 - CFD: 01/01/2014 - 23:18:27 - [0] ----D C:\Documents and Settings\papy clement\Local Settings\Application Data\Software =>Adware.Boxore
O61 - LFC: 02/01/2014 - 20:29:16 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\crossriderManifest.json [402] =>PUP.CrossRider
O61 - LFC: 02/01/2014 - 20:29:16 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\extensionData\plugins\102_dealply_m.js [2247] =>PUP.DealPly
O61 - LFC: 02/01/2014 - 20:29:17 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\extensionData\plugins\13_CrossriderAppUtils.js [7056] =>PUP.CrossRider
O61 - LFC: 02/01/2014 - 20:29:17 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\extensionData\plugins\14_CrossriderUtils.js [15248] =>PUP.CrossRider
O61 - LFC: 02/01/2014 - 20:29:17 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\extensionData\plugins\177_crossriderDashboard.js [25020] =>PUP.CrossRider
O61 - LFC: 02/01/2014 - 20:29:19 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\extensionData\plugins\78_CrossriderInfo.js [3321] =>PUP.CrossRider
O61 - LFC: 02/01/2014 - 20:29:21 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\iobhlofholalpkgbeoeobhckdmfpcpce\1.26.74_0\js\lib\crossriderAPI.js [11366] =>PUP.CrossRider
O61 - LFC: 02/01/2014 - 20:29:57 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Temporary Internet Files\Spring Smart_iels [81] =>PUP.SpringSmart
O64 - Services: CurCS - 07/08/2013 - C:\Program Files\Fichiers communs\Umbrella\umbrella.exe (SProtection) .(.Iminent - Iminent Protection.) - LEGACY_SPROTECTION =>Adware.IMBooster
O64 - Services: CurCS - 01/01/2014 - C:\Documents and Settings\All Users\Application Data\WPM\wprotectmanager.exe (Wpm) .(.Cherished Technololgy LIMITED - WPM Service.) - LEGACY_WPM =>PUP.WpManager
O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe" http://www.nationzoom.com =>Hijacker.NationZoom
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe" http://www.nationzoom.com =>Hijacker.NationZoom
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.exe http://do-search.com =>PUP.DoSearches
O69 - SBI: SearchScopes [HKCU] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Web Search) - http://feed.snapdo.com =>Hijacker.SmartBar
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (nationzoom) - http://www.nationzoom.com =>Hijacker.NationZoom
[MD5.3134696E5A0E8A5CD6A10BD0230F8BC1] [SPRF][08/06/2013] (.Iminent - Iminent Setup.) -- C:\Documents and Settings\papy clement\Bureau\IminentSetup.exe [2087232] =>Adware.IMBooster
O90 - PUC: "773952099E5506D40A0C23FE1392131A" . (.Iminent.) -- C:\WINDOWS\Installer\{90259377-55E9-4D60-A0C0-32EF312931A1}\imbooster.ico =>Adware.IMBooster
[MD5.AC2D30CB9FCA6BFFEA53196B15EA7BB6] [WIS][04/09/2013] (.Iminent - Iminent.) -- C:\Windows\Installer\63e48e.msi [1821696] =>Adware.IMBooster
SS - | Auto 10/07/1658 0 | (Software_update) . (...) - C:\Program Files\Software\Update\SoftwareUpdate.exe =>Adware.Boxore
SS - | Demand 10/07/1658 0 | (Software_update_m) . (...) - C:\Program Files\Software\Update\SoftwareUpdate.exe =>Adware.Boxore
SR - | Auto 07/08/2013 2868544 | (SProtection) . (.Iminent.) - C:\Program Files\Fichiers communs\Umbrella\umbrella.exe =>Adware.IMBooster
SR - | Auto 01/01/2014 499856 | (Wpm) . (.Cherished Technololgy LIMITED.) - C:\Documents and Settings\All Users\Application Data\WPM\wprotectmanager.exe =>PUP.WpManager
[HKLM\Software\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo] =>PUP.Elex^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311991194}] =>PUP.CrossRider^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}] =>PUP.TubeDimmer^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] =>Adware.IMBooster^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DEDE0DF2-39FA-4F05-967D-79CDE2495D1F}] =>PUP.PassWidget^
[HKLM\SYSTEM\CurrentControlSet\Services\Software_update) (Software_update] =>Adware.Boxore^
[HKLM\SYSTEM\CurrentControlSet\Services\SProtection] =>Adware.IMBooster^
[HKLM\SYSTEM\CurrentControlSet\Services\Wpm] =>PUP.WpManager^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{90259377-55E9-4D60-A0C0-32EF312931A1}] =>Adware.IMBooster^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5c5e7b52-d689-4132-bbf4-0fbb16339108}] =>PUP.PassWidget^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\WPM] =>PUP.WpManager^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Websteroids] =>PUP.TubeDimmer^
[HKLM\Software\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar
[HKLM\Software\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}] =>Adware.Agent
[HKLM\Software\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}] =>PUP.V9Software
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}] =>PUP.V9Software
[HKLM\Software\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}] =>Adware.IMBooster
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}] =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}] =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKLM\Software\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent
[HKLM\Software\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}] =>Adware.IMBooster
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}] =>Adware.IMBooster
[HKLM\Software\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}] =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}] =>PUP.RewardsArcade
[HKLM\Software\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}] =>Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\IMBoosterARP] =>Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9] =>Adware.MyWebSearch
[HKCU\Software\Iminent] =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Iminent] =>Adware.IMBooster
[HKLM\Software\Iminent] =>Adware.IMBooster
[HKLM\Software\Classes\Prod.cap] =>PUP.Babylon
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma
[HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc] =>Hijacker.22find
[HKCU\Software\AppDataLow\Software\Crossrider] =>PUP.CrossRider
[HKCU\Software\InstalledBrowserExtensions\] =>PUP.CrossRider
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster
[HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SOFTWARE_UPDATE] =>Adware.Boxore
[HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc] =>PUP.eSafeSecurity
[HKCU\Software\InstalledBrowserExtensions] =>PUP.CrossRider
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro
[HKLM\Software\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}] =>Adware.BrowseFox
[HKLM\Software\Classes\protector_dll.protectorbho] =>PUP.BProtector
[HKLM\Software\Classes\protector_dll.protectorbho.1] =>PUP.BProtector
[HKLM\Software\Classes\CrossriderApp0039994.BHO] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0039994.BHO.1] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0039994.Sandbox] =>PUP.CrossRider
[HKLM\Software\Classes\CrossriderApp0039994.Sandbox.1] =>PUP.CrossRider
[HKLM\Software\Classes\iminent] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.DownloadArgs] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.RawDataArgs] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.TinyUrlArgs] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.ViralLinkArgs] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ClientCallback] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ContractBase] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ServerCommand] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ServerResult] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.LightContent] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.LightUri] =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.MediatorServiceProxy] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ActiveContentHandle.1] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ActiveContentHandler] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.BrowserHelperObject] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.BrowserHelperObject.1] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ScriptExtender] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ScriptExtender.1] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.TinyUrlHandler] =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.TinyUrlHandler.1] =>Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311991194}] =>PUP.CrossRider
[HKLM\Software\Classes\CLSID\{11111111-1111-1111-1111-110311991194}] =>PUP.CrossRider
[HKLM\Software\Classes\CLSID\{22222222-2222-2222-2222-220322992294}] =>PUP.CrossRider
[HKLM\Software\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311991194}] =>PUP.CrossRider
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:Updater =>Adware.IncrediBar^
C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo =>PUP.Elex^
C:\Program Files\Desk 365 =>Hijacker.22Find^
C:\Program Files\Pass-Widget =>PUP.PassWidget^
C:\Documents and Settings\All Users\Application Data\Babylon =>PUP.Babylon^
C:\Documents and Settings\All Users\Application Data\Iminent =>Adware.IMBooster^
C:\Documents and Settings\All Users\Application Data\RHelpers =>PUP.SearchDonkey^
C:\Documents and Settings\All Users\Application Data\Updater =>PUP.CrossRider^
C:\Documents and Settings\All Users\Application Data\Websteroids =>PUP.TubeDimmer^
C:\Documents and Settings\All Users\Application Data\WPM =>PUP.WpManager^
C:\Documents and Settings\papy clement\Application Data\Babylon =>PUP.Babylon^
C:\Documents and Settings\papy clement\Application Data\Desk 365 =>Hijacker.22Find^
C:\Documents and Settings\papy clement\Application Data\Iminent =>Adware.IMBooster^
C:\Documents and Settings\papy clement\Application Data\iSafe =>Trojan.Staser^
C:\Documents and Settings\papy clement\Local Settings\Application Data\Babylon =>PUP.Babylon^
C:\Documents and Settings\papy clement\Local Settings\Application Data\Software =>Adware.Boxore^
C:\Program Files\Software =>Adware.Boxore
C:\Program Files\Fichiers communs\Umbrella =>Adware.IMBooster
C:\Program Files\Fichiers communs\337 =>Hijacker.22find
C:\Documents and Settings\All Users\Menu D�marrer\Programmes\Iminent =>Adware.IMBooster
C:\Documents and Settings\All Users\Menu D�marrer\Programmes\Desk 365 =>Hijacker.22find
C:\Documents and Settings\All Users\Application Data\WPM\wprotectmanager.exe =>PUP.WpManager^
C:\Program Files\Fichiers communs\Umbrella\umbrella.exe =>Adware.IMBooster^
C:\Documents and Settings\All Users\Application Data\Updater\Updater.exe =>Adware.IncrediBar^
C:\Documents and Settings\All Users\Application Data\RHelpers\ChromeHelper\ChromeHelper.exe =>PUP.SearchDonkey^
C:\Documents and Settings\All Users\Application Data\RHelpers\FireFoxHelper\FireFoxHelper.exe =>PUP.SearchDonkey^
C:\Documents and Settings\All Users\Application Data\RHelpers\IEHelper\IeHelper.exe =>PUP.SearchDonkey^
C:\WINDOWS\Tasks\PassWidget Update.job =>PUP.PassWidget^
[HKCU\Software\PassWidget] =>PUP.PassWidget^
[HKCU\Software\Smartbar] =>Hijacker.SmartBar^
[HKLM\Software\Vittalia] =>PUP.Vittalia^
[HKLM\Software\do-searchSoftware] =>PUP.DoSearches^
[HKLM\Software\nationzoomSoftware] =>Hijacker.NationZoom^
[HKLM\Software\supWPM] =>PUP.WpManager^
C:\Documents and Settings\papy clement\Bureau\IminentSetup.exe =>Adware.IMBooster^
C:\Windows\Installer\63e48e.msi =>Adware.IMBooster^
[HKCU\Software\DynConIE]
O61 - LFC: 02/01/2014 - 20:29:42 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ib.adnxs.com_0.localstorage [3072]
O61 - LFC: 02/01/2014 - 20:29:42 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_ib.adnxs.com_0.localstorage-journal [3608]
O61 - LFC: 05/01/2014 - 20:29:42 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_runcdns.com_0.localstorage [3072]
O61 - LFC: 05/01/2014 - 20:29:42 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_runcdns.com_0.localstorage-journal [3608]
[HKLM\Software\Software]
[MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.2244] =>Toolbar.Google
O2 - BHO: ValueApps Loader - {93DBF2BB-A2B3-4683-A92E-57E60751F346} . (.Conduit Ltd. - ValueApps Loader.) -- C:\Program Files\Conduit\ValueApps\IE\ValueAppsLoader.dll =>Toolbar.Conduit
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll =>Toolbar.Google
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} Cl� orpheline =>Toolbar.Ask
O3 - Toolbar: Ask Toolbar - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.) =>Toolbar.Ask
O3 - Toolbar: (no name) - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} Cl� orpheline
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Cl� orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Cl� orpheline
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google
O4 - HKCU\..\Run: [ConduitFloatingPlugin_lcnnhcneegeeojhgpfijnlnocjdmlaon] . (.Conduit Ltd. - Conduit Toolbar Verifier.) -- C:\Documents and Settings\papy clement\Application Data\ValueApps\CH\TBVerifier.dll =>Toolbar.Conduit
O4 - HKUS\S-1-5-21-448539723-1482476501-1801674531-1006\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google
O4 - HKUS\S-1-5-21-448539723-1482476501-1801674531-1006\..\Run: [ConduitFloatingPlugin_lcnnhcneegeeojhgpfijnlnocjdmlaon] . (.Conduit Ltd. - Conduit Toolbar Verifier.) -- C:\Documents and Settings\papy clement\Application Data\ValueApps\CH\TBVerifier.dll =>Toolbar.Conduit
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.Ask
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>Toolbar.Google
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google
O42 - Logiciel: ValueApps - (.Conduit.) [HKCU] -- ValueApps =>Toolbar.Conduit
O42 - Logiciel: WiseConvert - (.WiseConvert.) [HKLM] -- WiseConvert =>Toolbar.Conduit
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKLM\Software\mamverifier]
O43 - CFD: 01/01/2014 - 23:59:31 - [0,193] ----D C:\Program Files\Conduit
O43 - CFD: 01/01/2014 - 23:58:12 - [1,295] ----D C:\Program Files\WiseConvert =>Toolbar.Conduit
O43 - CFD: 25/11/2011 - 17:27:00 - [0] ----D C:\Documents and Settings\All Users\Application Data\Ask
O43 - CFD: 11/08/2013 - 09:52:12 - [0] -SH-D C:\Documents and Settings\All Users\Application Data\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
O43 - CFD: 01/01/2014 - 23:59:29 - [0,269] ----D C:\Documents and Settings\papy clement\Application Data\ValueApps =>Toolbar.Conduit
O43 - CFD: 05/12/2013 - 13:16:38 - [0] ----D C:\Documents and Settings\papy clement\Local Settings\Application Data\AskToolbar
O43 - CFD: 01/01/2014 - 23:59:31 - [1,215] ----D C:\Documents and Settings\papy clement\Local Settings\Application Data\Conduit
O45 - LFCP:[MD5.6AB4444B231D14F5E62139F47C22C88E] - 05/01/2014 - 12:05:12 ---A- - C:\WINDOWS\Prefetch\GOOGLETOOLBARNOTIFIER.EXE-3629C61D.pf =>Toolbar.Google
O45 - LFCP:[MD5.3CC33096C5AF32CA2FB1410D1B1CAE4F] - 05/01/2014 - 16:44:56 ---A- - C:\WINDOWS\Prefetch\GOOGLETOOLBARMANAGER_231F3FD1-2B667B57.pf =>Toolbar.Google
O45 - LFCP:[MD5.B989E874D46C131B1A6B99F817CF621A] - 05/01/2014 - 16:44:58 ---A- - C:\WINDOWS\Prefetch\VALUEAPPS.EXE-0547149B.pf =>Toolbar.Conduit
O61 - LFC: 02/01/2014 - 20:29:23 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.5.2_0\IdentitySafe\BOOKMARK_EBAY.PNG [8710] =>Toolbar.eBay
O61 - LFC: 05/01/2014 - 20:29:47 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Toolbar Cache\7.5.4805.320\fr\translate_element.js.content [2385]
O61 - LFC: 05/01/2014 - 20:29:47 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Toolbar Cache\7.5.4805.320\fr\translate_languages.json.content [2033]
O61 - LFC: 05/01/2014 - 20:29:47 ---A- . (...) -- C:\Documents and Settings\papy clement\Local Settings\Application Data\Google\Toolbar\metrics_53279199540168.xml [8263]
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- C:\Program Files\Ask.com\favicon.ico =>Toolbar.Ask
[MD5.2C0A55B7C918473FE510CE1C33D83A59] [WIS][07/12/2013] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Windows\Installer\4c4431.msi [24576] =>Toolbar.Google
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{93DBF2BB-A2B3-4683-A92E-57E60751F346}] =>Toolbar.Conduit^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4D91-8333-CF10577473F7}] =>Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] =>Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Ask^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.Ask^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{18455581-E099-4BA8-BC6B-F34B2F06600C}] =>Toolbar.Google^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F}] =>Toolbar.Google^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\ValueApps] =>Toolbar.Conduit^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\WiseConvert] =>Toolbar.Conduit^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}] =>Toolbar.Agent
[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask
[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.Ask
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}] =>Toolbar.Agent
[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask
[HKLM\Software\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira
[HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.Avira
[HKLM\Software\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}] =>Toolbar.Wajam
[HKLM\Software\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}] =>Toolbar.Conduit
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Toolbar.Ask
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Toolbar.Ask
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] =>Toolbar.Ask
[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AVGSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] =>Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] =>Toolbar.Ask
[HKLM\Software\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] =>Toolbar.Ask
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.Ask^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:swg =>Toolbar.Google^
[HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.Avira
C:\Program Files\WiseConvert =>Toolbar.Conduit^
C:\Documents and Settings\papy clement\Application Data\ValueApps =>Toolbar.Conduit^
C:\Program Files\Conduit =>Toolbar.Conduit
C:\Documents and Settings\papy clement\Local Settings\Application Data\AskToolbar =>Toolbar.AskTBar
C:\Documents and Settings\papy clement\Local Settings\Application Data\Conduit =>Toolbar.Conduit
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
C:\Windows\Installer\4c4431.msi =>Toolbar.Google^
FirewallRaz
PROXYFix
EmptyTemp
EmptyFlash
EmptyClsid

Publicité


Signaler le contenu de ce document

Publicité