Log à analyser

Fermé
Tom - 24 déc. 2009 à 23:49
 Tom - 26 déc. 2009 à 19:39
Salut Jacques,

Voici le rapport Log :

Logfile of random's system information tool 1.06 (written by random/random)
Run by Tom at 2009-12-24 23:33:34
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2
System drive C: has 8 GB (11%) free of 76 GB
Total RAM: 2046 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:34:32, on 24/12/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Users\Tom.PC-de-Tom\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\TOSHIBA\Utilities\KeNotify.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Toshiba Online Product Information\TOPI.exe
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
C:\Program Files\Synaptics\SynTP\SynToshiba.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Syncrosoft\POS\H2O\cledx.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\System32\mmrtkrnl.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\SFR\Kit\9props.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Java\jre6\bin\jucheck.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Tom.PC-de-Tom\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8ZXXVUNA\RSIT[1].exe
C:\Program Files\trend micro\Tom.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Aide à la navigation SFR - {0F6E720A-1A6B-40E1-A294-1D4D19F156C8} - C:\Program Files\SFR\Kit\SFRNavErrorHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files\myBabylon_English\tbmyBa.dll
O2 - BHO: (no name) - {D5B72AED-E54A-11D6-B1B2-444553540000}B1B2-444553540000} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: myBabylon English Toolbar - {b2e293ee-fd7e-4c71-a714-5f4750d8d7b7} - C:\Program Files\myBabylon_English\tbmyBa.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [KeNotify] C:\Program Files\TOSHIBA\Utilities\KeNotify.exe
O4 - HKLM\..\Run: [SVPWUTIL] C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
O4 - HKLM\..\Run: [HWSetup] \HWSetup.exe hwSetUP
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe"
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Realtime Audio Engine] "mmrtkrnl.exe" /i
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\RunOnce: [SoftwareHelper] C:\Users\Tom.PC-de-Tom\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe -runonce
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [Connexion SFR 9props.exe] "C:\Program Files\SFR\Kit\9props.exe" /trayicon
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: eBay - Achetez, Vendez - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/709-44555-9400-3/4 (file missing)
O9 - Extra button: Amazon.fr - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.fr/exec/obidos/redirect-home?tag=Toshibafrbholink-21&site=home (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?FR (file missing)
O13 - Gopher Prefix:
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Service Google Update (gupdate1c9e6215c74af70) (gupdate1c9e6215c74af70) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - Unknown owner - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

3 réponses

Ced_King Messages postés 3519 Date d'inscription lundi 2 mars 2009 Statut Contributeur Dernière intervention 10 octobre 2016 572
25 déc. 2009 à 00:02
Salut,


Télécharge UsbFix sur ton bureau
Double clique sur UsbFix.exe présent sur ton bureau.
Tape F pour français , et presse enter pour valider .
Le second menu apparait , choisis l'option 1 ( Recherche ) .
Un avertissement apparait , branche tes supports amovibles (clé Usb, DD externe, etc.) et clique sur OK .
Laisse l'outil travailler, un rapport est généré à la fin de la recherche, poste son contenu

Note : le rapport est également à C:\USBFix.txt
...
0
Salut Ced,

Voici le rapport :


############################## | UsbFix V6.067 |

User : Tom (Administrateurs) # PC-DE-TOM
Update on 24/12/2009 by Chiquitine29, C_XX & Chimay8
Start at: 00:05:41 | 25/12/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com

Intel(R) Core(TM)2 Duo CPU T5250 @ 1.50GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2
Internet Explorer 8.0.6001.18865
Windows Firewall Status : Enabled
AV : avast! antivirus 4.8.1229 [VPS 081124-0] 4.8.1229 [ Enabled | Updated ]

C:\ -> Disque fixe local # 74,52 Go (7,98 Go free) [Vista] # NTFS
D:\ -> Disque fixe local # 1,46 Go (1,27 Go free) [WinRE] # NTFS
E:\ -> Disque fixe local # 73,06 Go (72,97 Go free) [Data] # NTFS
F:\ -> Disque CD-ROM
I:\ -> Disque fixe local # 298,02 Go (134,62 Go free) [TOM] # FAT32

############################## | Processus actifs |

C:\Windows\System32\smss.exe 508
C:\Windows\system32\csrss.exe 632
C:\Windows\system32\wininit.exe 688
C:\Windows\system32\csrss.exe 700
C:\Windows\system32\services.exe 736
C:\Windows\system32\lsass.exe 748
C:\Windows\system32\lsm.exe 756
C:\Windows\system32\winlogon.exe 796
C:\Windows\system32\svchost.exe 960
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 1040
C:\Windows\system32\svchost.exe 1084
C:\Windows\System32\svchost.exe 1140
C:\Windows\system32\Ati2evxx.exe 1196
C:\Windows\System32\svchost.exe 1260
C:\Windows\System32\svchost.exe 1316
C:\Windows\system32\svchost.exe 1328
C:\Windows\system32\svchost.exe 1420
C:\Windows\system32\SLsvc.exe 1444
C:\Windows\system32\svchost.exe 1484
C:\Windows\system32\svchost.exe 1660
C:\Windows\system32\Ati2evxx.exe 1736
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe 1848
C:\Program Files\Alwil Software\Avast4\ashServ.exe 1860
C:\Windows\system32\Dwm.exe 1984
C:\Windows\Explorer.EXE 2008
C:\Users\Tom.PC-de-Tom\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe 520
C:\Program Files\Windows Defender\MSASCui.exe 1628
C:\Program Files\TOSHIBA\Utilities\KeNotify.exe 1700
C:\Windows\RtHDVCpl.exe 1752
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe 1668
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe 1796
C:\Windows\System32\spoolsv.exe 1612
C:\Windows\system32\taskeng.exe 2052
C:\Program Files\Avira\AntiVir Desktop\sched.exe 2072
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe 2080
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe 2092
C:\Program Files\TOSHIBA\Toshiba Online Product Information\TOPI.exe 2100
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe 2184
C:\Windows\system32\svchost.exe 2204
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE 2212
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe 2352
C:\Windows\system32\taskeng.exe 2372
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe 2444
C:\Program Files\Synaptics\SynTP\SynToshiba.exe 2500
C:\Program Files\Common Files\Real\Update_OB\realsched.exe 2548
C:\Program Files\Syncrosoft\POS\H2O\cledx.exe 2632
C:\Program Files\Alwil Software\Avast4\ashDisp.exe 2688
C:\Windows\System32\mmrtkrnl.exe 2808
C:\Program Files\Winamp\winampa.exe 2824
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 2836
C:\Program Files\Java\jre6\bin\jusched.exe 2848
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe 2860
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe 2888
C:\Program Files\Windows Live\Messenger\msnmsgr.exe 2992
C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe 3000
C:\Program Files\DNA\btdna.exe 3032
C:\Program Files\SFR\Kit\9props.exe 3044
C:\Program Files\WinZip\WZQKPICK.EXE 3248
C:\Windows\system32\agrsmsvc.exe 3704
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 3736
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 3752
C:\Program Files\Bonjour\mDNSResponder.exe 3768
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe 3784
C:\Program Files\CDBurnerXP\NMSAccessU.exe 3900
C:\Windows\system32\svchost.exe 4048
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe 1468
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 2908
C:\Windows\system32\svchost.exe 3328
C:\Windows\system32\TODDSrv.exe 2252
C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe 3068
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe 2152
C:\Windows\System32\svchost.exe 1520
C:\Windows\system32\SearchIndexer.exe 3864
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe 4288
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe 4332
C:\Windows\System32\alg.exe 4408
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe 4820
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe 5616
C:\Windows\system32\wbem\unsecapp.exe 2712
C:\Windows\system32\wbem\wmiprvse.exe 2576
C:\Program Files\Java\jre6\bin\jucheck.exe 3964
C:\Program Files\Windows Live\Contacts\wlcomm.exe 4636
C:\Program Files\Internet Explorer\iexplore.exe 2792
C:\Program Files\Internet Explorer\iexplore.exe 5424
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE 1080
C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe 5244
C:\Windows\system32\NOTEPAD.EXE 3408
C:\Windows\system32\NOTEPAD.EXE 4160
C:\Program Files\Internet Explorer\iexplore.exe 1820
C:\Windows\system32\conime.exe 4140
C:\Windows\system32\SearchProtocolHost.exe 1548
C:\Windows\system32\SearchFilterHost.exe 5924
C:\Windows\system32\wbem\wmiprvse.exe 440

################## | Fichiers # Dossiers infectieux |


################## | Registre # Clés infectieuses |


################## | Registre # Mountpoints2 |

HKCU\..\..\Explorer\MountPoints2\I
shell\AutoRun\command =I:\LaunchU3.exe

HKCU\..\..\Explorer\MountPoints2\{0f3ae8eb-d7fc-11dc-aff2-001b38aa4189}
shell\AutoRun\command =G:\LaunchU3.exe

HKCU\..\..\Explorer\MountPoints2\{25ba566a-aa7f-11dd-8c83-001b38aa4189}
shell\AutoRun\command =J:\WDSetup.exe

HKCU\..\..\Explorer\MountPoints2\{2a975f2d-5419-11de-8da4-001b38aa4189}
shell\AutoRun\command =I:\LaunchU3.exe

HKCU\..\..\Explorer\MountPoints2\{2b824796-20c7-11dd-9eca-001b38aa4189}
shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs

HKCU\..\..\Explorer\MountPoints2\{2b82479b-20c7-11dd-9eca-001b38aa4189}
shell\AutoRun\command =H:\LaunchU3.exe -a

HKCU\..\..\Explorer\MountPoints2\{2dc417d1-1f00-11de-a0fa-0013e8de3f03}
shell\AutoRun\command =H:\start.exe
shell\FramaKey\command =H:\start.exe

HKCU\..\..\Explorer\MountPoints2\{35065faa-0ecd-11dd-bea7-001b38aa4189}
shell\AutoRun\command =G:\oufddh.exe
shell\explore\Command =G:\oufddh.exe
shell\open\Command =G:\oufddh.exe

HKCU\..\..\Explorer\MountPoints2\{4d9ac3d2-b0ee-11dd-80a0-001b38aa4189}
shell\AutoRun\command =whi.com
shell\explore\Command =whi.com
shell\open\Command =whi.com

HKCU\..\..\Explorer\MountPoints2\{6a62810e-5d12-11de-895c-0013e8de3f03}
shell\AutoRun\command =I:\LaunchU3.exe

HKCU\..\..\Explorer\MountPoints2\{741b09c8-15c9-11dd-8587-001b38aa4189}
shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs

HKCU\..\..\Explorer\MountPoints2\{83c71868-eebd-11dc-a6f1-001b38aa4189}
shell\AutoRun\command =G:\ReadMe.exe

HKCU\..\..\Explorer\MountPoints2\{83c7186a-eebd-11dc-a6f1-001b38aa4189}
shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs

HKCU\..\..\Explorer\MountPoints2\{90dc8ccd-dcca-11dd-9d2f-001b38aa4189}
shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs

HKCU\..\..\Explorer\MountPoints2\{9ae26203-dc8b-11dc-8fb1-001b38aa4189}
shell\AutoRun\command =G:\xmnm2.cmd
shell\explore\Command =G:\xmnm2.cmd
shell\open\Command =G:\xmnm2.cmd

HKCU\..\..\Explorer\MountPoints2\{9efc6216-3beb-11dd-beb4-0013e8de3f03}
shell\AutoRun\command =oq.cmd
shell\explore\Command =oq.cmd
shell\open\Command =oq.cmd

HKCU\..\..\Explorer\MountPoints2\{9fc05c03-f107-11dc-bd2e-001b38aa4189}
shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs

HKCU\..\..\Explorer\MountPoints2\{9fc05c2a-f107-11dc-bd2e-001b38aa4189}
shell\AutoRun\command =tmf3w3g0.com
shell\explore\Command =tmf3w3g0.com
shell\open\Command =tmf3w3g0.com

HKCU\..\..\Explorer\MountPoints2\{a4dcf13e-db0c-11dd-89f7-001b38aa4189}
shell\AutoRun\command =H:\LaunchU3.exe -a

HKCU\..\..\Explorer\MountPoints2\{ab0aff37-f5bd-11dc-bac9-001b38aa4189}
shell\AutoRun\command =I:\tmf3w3g0.com
shell\explore\Command =I:\tmf3w3g0.com
shell\open\Command =I:\tmf3w3g0.com

HKCU\..\..\Explorer\MountPoints2\{ab0aff3c-f5bd-11dc-bac9-001b38aa4189}
shell\AutoRun\command =H:\LaunchU3.exe -a

HKCU\..\..\Explorer\MountPoints2\{d57d83d9-3558-11de-a360-001b38aa4189}
shell\AutoRun\command =I:\LaunchU3.exe

HKCU\..\..\Explorer\MountPoints2\{e6ceca2f-b596-11dd-96f5-001b38aa4189}
shell\AutoRun\command =H:\
shell\explore\Command =H:\RECYCLED\INFO.exe
shell\open\Command =H:\RECYCLED\INFO.exe

HKCU\..\..\Explorer\MountPoints2\{fc9e7e57-b0f5-11dd-a098-001b38aa4189}
shell\AutoRun\command =G:\autorun.exe

HKCU\..\..\Explorer\MountPoints2\{fce6a0aa-3dc9-11dd-800a-001b38aa4189}
shell\AutoRun\command =C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs

################## | Cracks / Keygens / Serials |


################## | ! Fin du rapport # UsbFix V6.067 ! |

Merci
0
Ced_King Messages postés 3519 Date d'inscription lundi 2 mars 2009 Statut Contributeur Dernière intervention 10 octobre 2016 572
25 déc. 2009 à 00:24
Trés bien, relance USBFix et tu choisis l'option 2 (suppression)

Laisse l'outil travailler et poste le rapport généré à la fin
..
0
Salut Ced,

Voici le rapport :

############################## | UsbFix V6.067 |

User : Tom (Administrateurs) # PC-DE-TOM
Update on 24/12/2009 by Chiquitine29, C_XX & Chimay8
Start at: 00:31:50 | 25/12/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com

Intel(R) Core(TM)2 Duo CPU T5250 @ 1.50GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2
Internet Explorer 8.0.6001.18865
Windows Firewall Status : Enabled
AV : avast! antivirus 4.8.1229 [VPS 081124-0] 4.8.1229 [ Enabled | Updated ]

C:\ -> Disque fixe local # 74,52 Go (7,87 Go free) [Vista] # NTFS
D:\ -> Disque fixe local # 1,46 Go (1,27 Go free) [WinRE] # NTFS
E:\ -> Disque fixe local # 73,06 Go (72,97 Go free) [Data] # NTFS
F:\ -> Disque CD-ROM
I:\ -> Disque fixe local # 298,02 Go (134,62 Go free) [TOM] # FAT32

############################## | Processus actifs |

C:\Windows\System32\smss.exe 508
C:\Windows\system32\csrss.exe 584
C:\Windows\system32\wininit.exe 640
C:\Windows\system32\csrss.exe 652
C:\Windows\system32\services.exe 688
C:\Windows\system32\lsass.exe 700
C:\Windows\system32\lsm.exe 708
C:\Windows\system32\winlogon.exe 752
C:\Windows\system32\svchost.exe 896
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 984
C:\Windows\system32\svchost.exe 1028
C:\Windows\System32\svchost.exe 1084
C:\Windows\system32\LogonUI.exe 1108
C:\Windows\system32\Ati2evxx.exe 1136
C:\Windows\System32\svchost.exe 1184
C:\Windows\System32\svchost.exe 1224
C:\Windows\system32\svchost.exe 1236
C:\Windows\system32\svchost.exe 1384
C:\Windows\system32\SLsvc.exe 1404
C:\Windows\system32\Ati2evxx.exe 1480
C:\Windows\system32\svchost.exe 1504
C:\Windows\system32\svchost.exe 1684
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe 1856
C:\Windows\system32\Dwm.exe 1892
C:\Windows\Explorer.EXE 1924
C:\Program Files\Alwil Software\Avast4\ashServ.exe 1944
C:\Windows\system32\runonce.exe 1960
C:\Users\Tom.PC-de-Tom\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe 292
C:\Windows\System32\spoolsv.exe 548
C:\Windows\system32\taskeng.exe 588
C:\Program Files\Avira\AntiVir Desktop\sched.exe 680
C:\Windows\system32\svchost.exe 832
C:\Windows\system32\taskeng.exe 592
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe 2116
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe 2180
C:\Windows\system32\agrsmsvc.exe 2484
C:\Program Files\Avira\AntiVir Desktop\avguard.exe 2500
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe 2528
C:\Program Files\Bonjour\mDNSResponder.exe 2544
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe 2560
C:\Program Files\Google\Update\GoogleUpdate.exe 2616
C:\Program Files\CDBurnerXP\NMSAccessU.exe 2760
C:\Windows\system32\svchost.exe 2788
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 2824
C:\Windows\system32\svchost.exe 2920
C:\Windows\system32\TODDSrv.exe 2960
C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe 3024
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe 3144
C:\Windows\System32\svchost.exe 3184
C:\Windows\system32\SearchIndexer.exe 3208
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe 3692
C:\Windows\system32\wbem\wmiprvse.exe 3728
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe 3772
C:\Windows\System32\alg.exe 3864

################## | Fichiers # Dossiers infectieux |

Supprimé ! C:\$Recycle.Bin\S-1-5-21-1124242155-327676453-375731093-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-1190707304-2853145184-524752427-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-125783832-167029511-273153860-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-1643969366-1937786268-369828714-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-2152478756-3922319563-605102323-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-2446354535-3758926445-94421575-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-3069242243-2549588567-94437442-500
Supprimé ! C:\$Recycle.Bin\S-1-5-21-3915819837-3197513282-749317194-1000
Supprimé ! C:\$Recycle.Bin\S-1-5-21-402374355-2776029083-1576359178-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-1124242155-327676453-375731093-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-1190707304-2853145184-524752427-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-125783832-167029511-273153860-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-1643969366-1937786268-369828714-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-2446354535-3758926445-94421575-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-3069242243-2549588567-94437442-500
Supprimé ! D:\$Recycle.Bin\S-1-5-21-3915819837-3197513282-749317194-1000
Supprimé ! D:\$Recycle.Bin\S-1-5-21-402374355-2776029083-1576359178-500
Supprimé ! E:\$Recycle.Bin\S-1-5-21-3915819837-3197513282-749317194-1000

################## | Registre # Clés infectieuses |


################## | Registre # Mountpoints2 |

Supprimé ! HKCU\...\Explorer\MountPoints2\I\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{0f3ae8eb-d7fc-11dc-aff2-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{25ba566a-aa7f-11dd-8c83-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{2a975f2d-5419-11de-8da4-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{2b824796-20c7-11dd-9eca-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{2b82479b-20c7-11dd-9eca-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{2dc417d1-1f00-11de-a0fa-0013e8de3f03}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{35065faa-0ecd-11dd-bea7-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{4d9ac3d2-b0ee-11dd-80a0-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{6a62810e-5d12-11de-895c-0013e8de3f03}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{741b09c8-15c9-11dd-8587-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{83c71868-eebd-11dc-a6f1-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{83c7186a-eebd-11dc-a6f1-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{90dc8ccd-dcca-11dd-9d2f-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9ae26203-dc8b-11dc-8fb1-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9efc6216-3beb-11dd-beb4-0013e8de3f03}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9fc05c03-f107-11dc-bd2e-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{9fc05c2a-f107-11dc-bd2e-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{a4dcf13e-db0c-11dd-89f7-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{ab0aff37-f5bd-11dc-bac9-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{ab0aff3c-f5bd-11dc-bac9-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{d57d83d9-3558-11de-a360-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{e6ceca2f-b596-11dd-96f5-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{fc9e7e57-b0f5-11dd-a098-001b38aa4189}\Shell\AutoRun\Command
Supprimé ! HKCU\...\Explorer\MountPoints2\{fce6a0aa-3dc9-11dd-800a-001b38aa4189}\Shell\AutoRun\Command

################## | Listing des fichiers présent |

[24/12/2009 01:55|--a------|13203] C:\Ad-Report-SCAN[1].log
[18/09/2006 22:43|--a------|24] C:\autoexec.bat
[11/04/2009 07:36|-rahs----|333257] C:\bootmgr
[18/04/2007 06:03|-ra-s----|8192] C:\BOOTSECT.BAK
[18/09/2006 22:43|--a------|10] C:\config.sys
[?|?|?] C:\hiberfil.sys
[29/01/2009 19:41|-rahs----|0] C:\IO.SYS
[13/01/2009 00:02|--a------|0] C:\log_lobby.txt
[13/01/2009 00:02|--a------|0] C:\log_lobby_dumper.txt
[29/01/2009 19:41|-rahs----|0] C:\MSDOS.SYS
[29/02/2004 16:44|--a------|52576] C:\orange.bmp
[?|?|?] C:\pagefile.sys
[18/04/2007 06:57|--a------|420] C:\RHDSetup.log
[12/10/2007 21:04|--ah-----|388] C:\SWSTAMP.TXT
[30/01/2009 10:17|--a------|55] C:\teste5443.txt
[25/12/2009 00:37|--a------|8264] C:\UsbFix.txt
[12/10/2007 09:27|--a----t-|22988] C:\_wdsuef.dmp
[18/09/2006 13:45|--a------|3170304] D:\boot.sdi
[22/07/2009 13:02|--ah-----|4096] I:\._.Trashes
[22/07/2009 13:02|--ah-----|82] I:\._Jingle Manu Chao Def.wav
[17/12/2009 17:52|--ah-----|15364] I:\.DS_Store
[17/12/2009 17:39|--ah-----|82] I:\._TheVolumeSettingsFolder
[30/05/2008 09:31|--ah-----|54] I:\autorun.in_2.org
[30/10/2009 17:37|--ah-----|82] I:\._P1090739.AVI
[06/12/2009 19:15|--ahs----|7168] I:\Thumbs.db

################## | Vaccination |

# C:\autorun.inf -> Dossier créé par UsbFix.
# D:\autorun.inf -> Dossier créé par UsbFix.
# E:\autorun.inf -> Dossier créé par UsbFix.
# I:\autorun.inf -> Dossier créé par UsbFix.

################## | Cracks / Keygens / Serials |


################## | Upload |

Veuillez envoyer le fichier : C:\Users\TOM~1.PC-\Desktop\UsbFix_Upload_Me_PC-de-Tom.zip : https://www.ionos.fr/?affiliate_id=77097
Merci pour votre contribution .

################## | ! Fin du rapport # UsbFix V6.067 ! |

Eorezo est-il tjrs présent ?

Merci d'avance
0
Ced_King Messages postés 3519 Date d'inscription lundi 2 mars 2009 Statut Contributeur Dernière intervention 10 octobre 2016 572
25 déc. 2009 à 17:39
Salut,


Télécharge et installe ccleaner : https://filehippo.com/download_ccleaner/
- Durant l'installation, décoche la case proposant la barre d'outils yahoo
- Une fois installé, ferme toutes les applications en cours et lance ccleaner
- clic -->> option -->> avancé et décoche "effacer les fichiers etc... plus vieux que 24h"
- Selectionne "nettoyeur" -->> clic sur Analyse puis nettoyage, puis referme le programme

__________________________________________



Télécharge Ad-Remover sur ton bureau
Double-clique sur le raccourci AD-R.exe présent sur ton bureau,
l'installation se fait automatiquement.
Au menu principal, choisis l'option L et laisse l'outil travailler
Une fois le scan terminé, un rapport est généré
Poste son contenu

_________________________________________
0
Salut Ced,

Merci pour ton aide précieuse :

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_F | UNIQUEMENT XP/VISTA/7 =======
.
Mit à jour par C_XX le 24.12.2009 à 13:08
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 19:22:41, 26/12/2009 | Mode Normal | Option: CLEAN
Exécuté de: C:\Program Files\Ad-Remover\
Système d'exploitation: Microsoft® Windows Vista™ Home Premium Service Pack 2 v6.0.6002
Nom du PC: PC-DE-TOM | Utilisateur actuel: Tom

Bonnes fêtes de fin d'année à vous tous :)
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.

C:\Users\TOM~1.PC-\AppData\Roaming\Mozilla\FireFox\Profiles\jurx2arm.default\searchplugins\ask.xml
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\log_lobby.txt
C:\log_lobby_dumper.txt
C:\Users\TOM~1.PC-\AppData\Roaming\EoRezo
C:\Program Files\Windows Live\Messenger\Riched20.dll
C:\Program Files\Windows Live\Messenger\Msimg32.dll

(!) -- Fichiers temporaires supprimés.

.
HKCU\software\EoRezo
HKCU\software\Grand Virtual
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00A6FAF1-072E-44CF-8957-5838F569A31D}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
HKLM\Software\Classes\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}
HKLM\Software\Classes\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}
HKLM\Software\Classes\Interface\{CF54BE1C-9359-4395-8533-1657CF209CFE}
HKLM\Software\Classes\TypeLib\{D518921A-4A03-425E-9873-B9A71756821E}
HKLM\software\Dealio
HKLM\software\EoRezo
HKLM\Software\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll
HKLM\Software\Microsoft\Multimedia\WMPlayer\Schemes\f3pss
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\EoEngine
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SoftwareHelper
HKLM\software\microsoft\windows\currentversion\uninstall\SoftwareUpdate_is1
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.0.13 [fr] *
.
Nom du profil: jurx2arm.default (Tom)
.
(TOM~1.PC-, Invalidprefs.js) Browser.download.dir, C:\Users\Tom.PC-de-Tom\Downloads
(TOM~1.PC-, Invalidprefs.js) Browser.download.lastDir, C:\Users\Tom.PC-de-Tom\Desktop
(TOM~1.PC-, Invalidprefs.js) Browser.search.defaultenginename, Ask
(TOM~1.PC-, Invalidprefs.js) Browser.search.defaulturl, hxxp://slirsredirect.search.aol.com/slirs_hxxp/sredir?sredir=2685&invocationType=tb50ffwinampie7&query=
(TOM~1.PC-, Invalidprefs.js) Browser.search.selectedEngine, Google
(TOM~1.PC-, Invalidprefs.js) Browser.startup.homepage, hxxp://y.lo.st
(TOM~1.PC-, Invalidprefs.js) Extensions.enabledItems, dvscontextmenuy@dvdvideosoft.com:1.0,{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}:6.0.05,{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07,{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11,{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13,{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15,jiwack@akryus.net:2.3.3.9,{20a82645-c095-46ed-80e3-08825760534b}:1.1,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.13
(TOM~1.PC-, Invalidprefs.js) Keyword.URL, hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101761&gct=&gc=1&q=
.
(TOM~1.PC-, Invalidprefs.js) EFFACE - Browser.startup.homepage, hxxp://y.lo.st
(TOM~1.PC-, Invalidprefs.js) EFFACE - Extensions.snipit.chromeURL, hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101761&gct=&gc=1&q={searchTerms}&crm=1
(TOM~1.PC-, Invalidprefs.js) EFFACE - Extensions.snipit.history_query, youtube=ASKURL=hxxp://www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=hxxp://www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=hxxp://www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=hxxp://www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=/\÷/www.ask.com/web?q=ogre%20pØúæØúØúæØúæØú§ØúØúòØú
(TOM~1.PC-, Invalidprefs.js) EFFACE - ØúúØú«Øúaname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=AØúæSKURØúL=//Øúæwww.Øúæask.Øú§c\÷Øúom/wØúòeb?qØú
(TOM~1.PC-, Invalidprefs.js) EFFACE - tubeØúú&qsrØú«c=28Øú71&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis
(TOM~1.PC-, Invalidprefs.js) EFFACE - Keyword.URL, hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101761&gct=&gc=1&q=
(TOM~1.PC-, Invalidprefs.js) EFFACE - /web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogreØúæ%2520panØúame&qsrcØúæ=2871&o=Øúæ101761&lØú§=dis||yoØúutube=ASØúòKURL=//wØú
.
(TOM~1.PC-, prefs.js) Browser.download.dir, C:\Users\Tom.PC-de-Tom\Downloads
(TOM~1.PC-, prefs.js) Browser.download.lastDir, C:\Users\Tom.PC-de-Tom\Desktop
(TOM~1.PC-, prefs.js) Browser.search.defaultenginename, Ask
(TOM~1.PC-, prefs.js) Browser.search.defaulturl, hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2384137&SearchSource=3&q={searchTerms}
(TOM~1.PC-, prefs.js) Browser.search.selectedEngine, Search Powered by Google
(TOM~1.PC-, prefs.js) Browser.startup.homepage, hxxp://search.conduit.com/?ctid=CT2384137&SearchSource=13
(TOM~1.PC-, prefs.js) Extensions.enabledItems, DivXWebPlayer@divx.com:2.0.0.254,dvscontextmenuy@dvdvideosoft.com:1.0,{31c7d459-9cc3-44f2-9dca-fc11795309b4}:2.4.0.4,{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}:6.0.05,{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07,{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11,{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13,{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15,jiwack@akryus.net:2.3.3.9,{20a82645-c095-46ed-80e3-08825760534b}:1.1,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.13
(TOM~1.PC-, prefs.js) Keyword.URL, hxxp://redirecterror.sfr.fr/?q=
.
(TOM~1.PC-, prefs.js) EFFACE - Extensions.snipit.chromeURL, hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101761&gct=&gc=1&q={searchTerms}&crm=1
(TOM~1.PC-, prefs.js) EFFACE - Extensions.snipit.history_query, youtube=ASKURL=hxxp://www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=hxxp://www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=hxxp://www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=hxxp://www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=/\÷/www.ask.com/web?q=ogre%20pØúæØúØúæØúæØú§ØúØúòØú\nØú\nØúúØú«Øúaname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=ASKURL=//www.ask.com/web?q=youtube&qsrc=2871&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis||youtube=AØúæSKURØúL=//Øúæwww.Øúæask.Øú§c\÷Øúom/wØúòeb?qØú\n=youØú\ntubeØúú&qsrØú«c=28Øú71&o=101761&l=dis||deezer=ASKURL=//www.ask.com/web?q=deezer&qsrc=2871&o=101761&l=dis||ogre%20paname=ASKURL=//www.ask.com/web?q=ogre%20paname&qsrc=2871&o=101761&l=dis||ogre%2520paname=ASKURL=//www.ask.com/web?q=ogre%2520paname&qsrc=2871&o=101761&l=dis
.
(TOM~1.PC-, user.js) Keyword.URL, hxxp://redirecterror.sfr.fr/?q=
.
.
* Internet Explorer Version 8.0.6001.18865 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\Windows\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Use Search Asst: no
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache AcceptLangs: fr
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\Windows\system32\blank.htm
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
19477 Octet(s) - C:\Ad-Report-CLEAN[1].log
13203 Octet(s) - C:\Ad-Report-SCAN[1].log
.
0 Fichier(s) - C:\Users\TOM~1.PC-\AppData\Local\Temp
1 Fichier(s) - C:\Windows\Temp
0 Fichier(s) - C:\Windows\Prefetch
.
22 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP
20 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE
.
Fin à: 19:34:01 | 26/12/2009 - CLEAN[1]
.
============== E.O.F ==============
.
0