Problème search setting

Fermé
Nikol - 30 mars 2010 à 22:35
moment de grace Messages postés 29042 Date d'inscription samedi 6 décembre 2008 Statut Contributeur sécurité Dernière intervention 18 juillet 2013 - 30 mars 2010 à 22:39
.
======= LOGFILE OF AD-REMOVER 2.0.0.0,B | ONLY XP/VISTA/7 =======
.
Updated by C_XX on 28/03/10 à 21:30
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Started: 21:44:38 le 30/03/2010 | Normal boot | Option: SCAN
Executed from: C:\Ad-Remover\ADR.exe
OS: Microsoft® Windows XP(TM) Service Pack 3 - X86
Computer name: DELL | Current user: Dealer (Administrator)
.
============== FOUND ELEMENTS ==============
.
.
C:\Documents and Settings\Dealer\Dati applicazioni\Search Settings
C:\Documents and Settings\Dealer\Impostazioni locali\Dati applicazioni\mkqwcb.dat
C:\Documents and Settings\Dealer\Impostazioni locali\Dati applicazioni\mkqwcb_nav.dat
C:\Documents and Settings\Dealer\Impostazioni locali\Dati applicazioni\mkqwcb_navps.dat
C:\Programmi\Application Updater
C:\Programmi\Mozilla Firefox\extensions\searchsettings@spigot.com
C:\Programmi\Search Settings
.
HKCU\Software\fcn
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKCU\Software\Search Settings
HKLM\Software\Application Updater
HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKLM\Software\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
HKLM\Software\Classes\SearchSettings.BHO
HKLM\Software\Classes\SearchSettings.BHO.1
HKLM\Software\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mkqwcb
HKLM\Software\Search Settings
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
HKCU\Software\Microsoft\Windows\CurrentVersion\Run|mkqwcb
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Application Updater\ApplicationUpdater.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Search Settings\FF\chrome\locale\en-US\searchsettingsplugin.dtd
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Search Settings\FF\components\SearchSettingsFF.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Search Settings\FF\install.rdf
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Search Settings\SearchSettings.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Search Settings\SearchSettings.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Programmi\Search Settings\SearchSettingsRes409.dll
.
.
============== ADDITIONNAL SCAN ==============
.
* Mozilla FireFox Version 3.5.8 (it) *
.
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - browser.download.lastDir: C:\\Documents and Settings\\Dealer\\Desktop
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - browser.search.defaultenginename: Yahoo
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - browser.search.defaulturl: hxxp://fr.search.yahoo.com/search?ei=UTF-8&fr=ytff-msgr&p=
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - browser.search.selectedEngine: Yahoo
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - browser.startup.homepage: hxxp://fr.yahoo.com/
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - browser.startup.homepage_override.mstone: rv:1.9.1.8
C:\Documents and Settings\Dealer\Dati applicazioni\mozilla\firefox\profiles\68l7ve8l.default\prefs.js - keyword.URL: hxxp://fr.search.yahoo.com/search?ei=UTF-8&fr=ytff-msgr&p=
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKCU\Software\Microsoft\Internet Explorer\Main]
.
AutoHide: yes
Do404Search: 0x01000000
Enable Browser Extensions: yes
Local Page: C:\WINDOWS\system32\blank.htm
Search bar: hxxp://www.google.com/ie
Search Page: hxxp://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*hxxp://fr.search.yahoo.com
Show_ToolBar: yes
Start Page: hxxp://www.google.it/
Use Custom Search URL: 1
Use Search Asst: no
.
[HKLM\Software\Microsoft\Internet Explorer\Main]
.
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Start Page: hxxp://go.microsoft.com/fwlink/?LinkId=69157
.
[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
Blank: res://mshtml.dll/blank.htm
.
============== SUSPECT(S) ==============
.
C:\Documents and Settings\Dealer\Documenti\Download\Nod_32_3.0.621.0_finally_cracked.3971316.TPB.torrent
C:\Documents and Settings\Dealer\Documenti\VIA\VIAudioi\SBADeck\vpatch.exe
C:\Documents and Settings\Dealer\Impostazioni locali\Temp\apatch.exe
.
========================================
.
C:\DOCUME~1\Dealer\IMPOST~1\Temp: 355 Files, 13 Folders
C:\WINDOWS\temp: 56 Files, 0 Folders
Temporary Internet Files: 153 Files, 6 Folders
.
C:\Ad-Remover\Quarantine: 0 Files
C:\Ad-Remover\Backup: 1 Files
.
C:\Ad-Report-SCAN[1].txt - 5370 Byte(s)
.
End at: 22:11:07, 30/03/2010
.
============== E.O.F - SCAN[1] ==============
A voir également:

2 réponses

jfkpresident Messages postés 13408 Date d'inscription lundi 3 septembre 2007 Statut Contributeur sécurité Dernière intervention 5 janvier 2015 1 175
30 mars 2010 à 22:37
Bonjour ,merci .......et + si affinités :)
0
moment de grace Messages postés 29042 Date d'inscription samedi 6 décembre 2008 Statut Contributeur sécurité Dernière intervention 18 juillet 2013 2 274
Modifié par moment de grace le 30/03/2010 à 22:41
bonsoir

j'édite

jfkpresident a raison...

bonne soiréee




Je cherche beaucoup...et maintenant je trouve !
(sourire)
0