Page d'accueil www.searchq.com sur firefox
Fermé
achri
Messages postés
13
Date d'inscription
vendredi 12 octobre 2007
Statut
Membre
Dernière intervention
13 avril 2016
-
30 août 2011 à 14:17
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 - 30 août 2011 à 17:27
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 - 30 août 2011 à 17:27
A voir également:
- Page d'accueil www.searchq.com sur firefox
- Mettre google en page d'accueil - Guide
- Comment supprimer une page sur word - Guide
- Page d'accueil iphone - Guide
- Exporter marque page firefox - Guide
- Video downloadhelper firefox - Télécharger - Outils pour navigateurs
6 réponses
Fish66
Messages postés
17505
Date d'inscription
dimanche 24 juillet 2011
Statut
Contributeur sécurité
Dernière intervention
16 juin 2021
1 318
Modifié par Fish66 le 30/08/2011 à 14:23
Modifié par Fish66 le 30/08/2011 à 14:23
Salut,
1/
Télécharge AdwCleaner (merci à Xplode)
Ou ADWCleaner ici
Lance AdwCleaner
Clique sur le bouton [ Suppression ]
Patiente...
Poste le rapport qui apparait en fin de recherche.
Il se trouve également à C:\AdwCleaner[SX] (où X est un chiffre)
2/ Ensuite
* Télécharge de AD-Remover sur ton Bureau.
http://www.teamxscript.org/adremoverTelechargement.html
/!\ Ferme toutes applications en cours /!\
- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton « chercher »
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)
(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour c
_ _ _ Fish66_ _ _ I''"""""I_ _ membre _ _I''"""""I_ _ contributeur _ _ _
¤¤¤ Le meilleur remède pour tous les problèmes, c'est la patience.... ¤¤¤
1/
Télécharge AdwCleaner (merci à Xplode)
Ou ADWCleaner ici
Lance AdwCleaner
Clique sur le bouton [ Suppression ]
Patiente...
Poste le rapport qui apparait en fin de recherche.
Il se trouve également à C:\AdwCleaner[SX] (où X est un chiffre)
2/ Ensuite
* Télécharge de AD-Remover sur ton Bureau.
http://www.teamxscript.org/adremoverTelechargement.html
/!\ Ferme toutes applications en cours /!\
- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton « chercher »
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)
(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour c
_ _ _ Fish66_ _ _ I''"""""I_ _ membre _ _I''"""""I_ _ contributeur _ _ _
¤¤¤ Le meilleur remède pour tous les problèmes, c'est la patience.... ¤¤¤
alex95150
Messages postés
342
Date d'inscription
vendredi 5 août 2011
Statut
Membre
Dernière intervention
28 août 2016
36
30 août 2011 à 14:21
30 août 2011 à 14:21
Va dans outil options internet clique sur réstaurer la configuration par défaut et redémarre retourne dans options internet et mets ta page d'acceuil :D
achri
Messages postés
13
Date d'inscription
vendredi 12 octobre 2007
Statut
Membre
Dernière intervention
13 avril 2016
30 août 2011 à 14:41
30 août 2011 à 14:41
======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 =======
Updated by TeamXscript on 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
website: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Launched at 14:37:06 on 30/08/2011, Normal boot
Microsoft Windows XP Professional Service Pack 2 (X86)
Mercy Corps@ERP ( )
============== ACTION(S) ==============
Service: "Bandoo Coordinator" Service stopped and deleted
File deleted: C:\Program Files\Mozilla FireFox\searchplugins\SearchquWebSearch.xml
Folder deleted: C:\Program Files\Windows Searchqu Toolbar
Folder deleted: C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default\extensions\firefox@bandoo.com
File deleted: C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default\searchplugins\SearchquWebSearch.xml
Folder deleted: C:\Program Files\AskTBar
Folder deleted: C:\Documents and Settings\Administrator\Application Data\Bandoo
Folder deleted: C:\Documents and Settings\All Users\Application Data\Bandoo
Folder deleted: C:\Documents and Settings\All Users\Start Menu\Programs\Bandoo
Folder deleted: C:\Program Files\Bandoo
Folder deleted: C:\Documents and Settings\Administrator\Local Settings\Application Data\Conduit
Folder deleted: C:\Program Files\Conduit
Folder deleted: C:\Documents and Settings\Administrator\Application Data\Toolbar4
(!) -- Temporary files deleted.
-- File opened: C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default\Prefs.js --
Line deleted: user_pref("browser.startup.homepage", "hxxp://www.searchqu.com/");
Line deleted: user_pref("keyword.URL", "hxxp://www.searchqu.com/web?src=ffb&systemid=101&q=");
-- File closed --
Key deleted: HKLM\Software\Classes\CLSID\{074E4EFE-81BB-4EA4-866E-082CB0E01070}
Key deleted: HKLM\Software\Classes\AppID\{EDE2C296-2458-4E3B-A846-4B512C0703B5}
Key deleted: HKLM\Software\Classes\CLSID\{0CE5B352-9D9C-41E1-9551-FCCD92820217}
Key deleted: HKLM\Software\Classes\CLSID\{167B2B5F-2757-434A-BBDA-2FDB2003F14F}
Key deleted: HKLM\Software\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Key deleted: HKLM\Software\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Key deleted: HKLM\Software\Classes\CLSID\{2E9A60EA-5554-49C3-BC9D-D0404DBACC62}
Key deleted: HKLM\Software\Classes\CLSID\{3E63C9BC-DD51-4E83-ABA6-B350EAD28531}
Key deleted: HKLM\Software\Classes\CLSID\{44CFFEF4-E7E1-44BD-B1F5-29F828ADA1B8}
Key deleted: HKLM\Software\Classes\CLSID\{601ac3dc-786a-4eb0-bf40-ee3521e70bfb}
Key deleted: HKLM\Software\Classes\CLSID\{72b3882f-453a-4633-aac9-8c3dced62aff}
Key deleted: HKLM\Software\Classes\CLSID\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Key deleted: HKLM\Software\Classes\AppID\{9C123289-82E1-4da7-A3C2-B8D28AAD114B}
Key deleted: HKLM\Software\Classes\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKLM\Software\Classes\CLSID\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}
Key deleted: HKLM\Software\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
Key deleted: HKLM\Software\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Key deleted: HKLM\Software\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Key deleted: HKLM\Software\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Key deleted: HKLM\Software\Classes\CLSID\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}
Key deleted: HKLM\Software\Classes\AppID\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Key deleted: HKLM\Software\Classes\CLSID\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Key deleted: HKLM\Software\Classes\CLSID\{EF2B6317-C367-401B-83B8-80302D6588A7}
Key deleted: HKLM\Software\Classes\CLSID\{F5379B4B-24D8-432A-9A96-BE75EE5117DB}
Key deleted: HKLM\Software\Classes\CLSID\{F7FB2BC4-6C27-4EAC-B5E2-037B71FDE101}
Key deleted: HKLM\Software\Classes\CLSID\{FD53FE35-4368-4B71-89D6-F29F3DB29DF1}
Key deleted: HKLM\Software\Classes\CLSID\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Classes\CLSID\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
Key deleting error: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Classes\CLSID\{FE063DBB-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FE063DBB-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Classes\Interface\{33DDFC61-F531-4982-8C32-4212B7835D44}
Key deleted: HKLM\Software\Classes\Interface\{384FE458-A963-450D-9187-EEFF81913FD0}
Key deleted: HKLM\Software\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Key deleted: HKLM\Software\Classes\Interface\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key deleted: HKLM\Software\Classes\Interface\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}
Key deleted: HKLM\Software\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Key deleted: HKLM\Software\Classes\TypeLib\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Key deleted: HKLM\Software\Classes\TypeLib\{4410C118-B23C-406C-9F52-9CDABD90A5EA}
Key deleted: HKLM\Software\Classes\TypeLib\{62E5C9E1-A0E8-4F8C-8EAF-0F9250CC5786}
Key deleted: HKLM\Software\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Key deleted: HKLM\Software\Classes\TypeLib\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}
Key deleted: HKLM\Software\Classes\BandooCoordinator.BandooCoordinator
Key deleted: HKLM\Software\Classes\BandooCoordinator.BandooCoordinator.1
Key deleted: HKLM\Software\Classes\BandooCoordinator.CoordinatorUI
Key deleted: HKLM\Software\Classes\BandooCoordinator.CoordinatorUI.1
Key deleted: HKLM\Software\Classes\BandooCoordinator.HTTPAsyncResult
Key deleted: HKLM\Software\Classes\BandooCoordinator.HTTPAsyncResult.1
Key deleted: HKLM\Software\Classes\BandooCoordinator.PlugInNotifier
Key deleted: HKLM\Software\Classes\BandooCoordinator.PlugInNotifier.1
Key deleted: HKLM\Software\Classes\BandooCore.BandooCore
Key deleted: HKLM\Software\Classes\BandooCore.BandooCore.1
Key deleted: HKLM\Software\Classes\BandooCore.ResourcesMngr
Key deleted: HKLM\Software\Classes\BandooCore.ResourcesMngr.1
Key deleted: HKLM\Software\Classes\BandooCore.SettingsMngr
Key deleted: HKLM\Software\Classes\BandooCore.SettingsMngr.1
Key deleted: HKLM\Software\Classes\BandooCore.StatisticMngr
Key deleted: HKLM\Software\Classes\BandooCore.StatisticMngr.1
Key deleted: HKLM\Software\Classes\BandooIEPlugin.BandooIEPlugin
Key deleted: HKLM\Software\Classes\BandooIEPlugin.BandooIEPlugin.1
Key deleted: HKLM\Software\Classes\BFlashAnimator.BFlashAnimatorCtrl
Key deleted: HKLM\Software\Classes\BFlashAnimator.BFlashAnimatorCtrl.1
Key deleted: HKLM\Software\Classes\BGIFAnimator.BGIFAnimatorCtrl
Key deleted: HKLM\Software\Classes\BGIFAnimator.BGIFAnimatorCtrl.1
Key deleted: HKLM\Software\Classes\Toolbar.CT1978305
Key deleted: HKLM\Software\Classes\AppID\BandooCoordinator.EXE
Key deleted: HKLM\Software\Classes\AppID\BandooCore.EXE
Key deleted: HKLM\Software\bandoo
Key deleted: HKLM\Software\Conduit
Key deleted: HKLM\Software\DataMngr
Key deleted: HKLM\Software\PopCap
Key deleted: HKLM\Software\SearchquMediabarTb
Key deleted: HKCU\Software\Conduit
Key deleted: HKCU\Software\DataMngr
Key deleted: HKCU\Software\SearchquMediabarTb
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Bandoo
Key deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4e1d-BDD0-1E9C9B7799CC}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7FF99715-3016-4381-84CE-E4E4C9673020}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4fde-B055-AE7B0F4CF080}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Bandoo
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 101 MediaBar
Key deleted: HKLM\Software\Classes\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239}
Value deleted: HKCU\Software\Mozilla\Firefox\Extensions|firefox@bandoo.com
Value deleted: HKCU\Software\Mozilla\Firefox\Extensions|ffox@bandoo.com
Value deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|DataMngr
Value deleted: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{9CB65206-89C4-402C-BA80-02D8C59F9B1D}
Value deleted: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{FE063DB9-4EC0-403E-8DD8-394C54984B2C}
============== ADDITIONNAL SCAN ==============
**** Mozilla Firefox Version [6.0 (en-US)] ****
Plugins\npwachk.dll (Nullsoft, Inc.)
HKLM_MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 (x)
HKLM_MozillaPlugins\Adobe Acrobat (x)
HKLM_MozillaPlugins\Adobe Reader (x)
HKCU_MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.8 (x)
Searchplugins\amazondotcom.xml (hxxp://www.amazon.com/exec/obidos/external-search/)
Searchplugins\bing.xml ( hxxp://www.bing.com/search)
Searchplugins\eBay.xml (hxxp://rover.ebay.com/rover/1/711-47294-18009-3/4)
Searchplugins\wikipedia.xml (hxxp://en.wikipedia.org/wiki/Special:Search)
Components\browsercomps.dll (Mozilla Foundation)
Extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} (Skype extension )
HKCU_Extensions|{F17C1572-C9EC-4e5c-A542-D05CBB5C5A08} - C:\Program Files\DAP\DAPFireFox
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
========================================
**** Internet Explorer Version [6.0.2900.2180] ****
HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{d51d388b-f5dc-471a-a1ce-5e2d671091c0} - "Mininova-Vuze Toolbar" (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKCU_SearchScopes\{B15DC2CF-97BE-4cae-936D-673C2B034C7E} - "SpeedBit Search" (hxxp://home.speedbit.com/search.aspx?aff=106&q={searchTerms})
HKCU_Toolbar\ShellBrowser|{0329E7D6-6F54-462D-93F6-F5C3118BADF2} (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
HKCU_Toolbar\ShellBrowser|{D51D388B-F5DC-471A-A1CE-5E2D671091C0} (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKCU_Toolbar\WebBrowser|{0329E7D6-6F54-462D-93F6-F5C3118BADF2} (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
HKCU_Toolbar\WebBrowser|{D51D388B-F5DC-471A-A1CE-5E2D671091C0} (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKLM_Toolbar|{0329E7D6-6F54-462D-93F6-F5C3118BADF2} (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
HKLM_Toolbar|{d51d388b-f5dc-471a-a1ce-5e2d671091c0} (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKLM_Toolbar|{47833539-D0C5-4125-9FA8-0819E2EAAC93} (C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll)
HKLM_Toolbar|{99079a25-328f-4bd4-be04-00955acaa0a7} (x)
HKCU_ElevationPolicy\{603C4CC9-5DC6-4C44-873F-8281509DF953} - C:\Program Files\SpeedBit Video Downloader\Converter.exe (Speedbit Ltd.)
HKLM_ElevationPolicy\2671a67b-0c1c-4230-99f0-d975ea243412 - C:\Program Files\Mininova-Vuze\Mininova-VuzeToolbarHelper.exe (?)
HKLM_ElevationPolicy\{41FD68A9-F806-4118-AAD2-13CFEF83D440} - C:\PROGRA~1\WI9130~1\ToolBar\dtUser.exe (x)
HKLM_ElevationPolicy\{603C4CC9-5DC6-4C44-873F-8281509DF953} - C:\Program Files\SpeedBit Video Downloader\Converter.exe (Speedbit Ltd.)
BHO\{3017FB3E-9A77-4396-88C5-0EC9548FB42F} - "SBCONVERT Class" (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
BHO\{389943B0-C3A2-4E69-82CB-8596A84CB3DC} - "SearchPredictObj Class" (C:\PROGRA~1\SEARCH~1\SEARCH~1.DLL)
BHO\{7DB2D5A0-7241-4E79-B68D-6309F01C5231} - "scriptproxy" (C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll)
BHO\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} - "FDMIECookiesBHO Class" (C:\Program Files\Free Download Manager\iefdm2.dll)
BHO\{d51d388b-f5dc-471a-a1ce-5e2d671091c0} - "Mininova-Vuze Toolbar" (C:\Program Files\Mininova-Vuze\tbMin1.dll)
BHO\{FF7C3CF0-4B15-11D1-ABED-709549C10000} - "GrabberObj Class" (C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 931 File(s)
C:\Program Files\Ad-Remover\Backup: 13 File(s)
C:\Ad-Report-CLEAN[1].txt - 30/08/2011 14:37:47 (16942 Byte(s))
End at: 14:39:01, 30/08/2011
============== E.O.F ==============
Updated by TeamXscript on 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
website: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Launched at 14:37:06 on 30/08/2011, Normal boot
Microsoft Windows XP Professional Service Pack 2 (X86)
Mercy Corps@ERP ( )
============== ACTION(S) ==============
Service: "Bandoo Coordinator" Service stopped and deleted
File deleted: C:\Program Files\Mozilla FireFox\searchplugins\SearchquWebSearch.xml
Folder deleted: C:\Program Files\Windows Searchqu Toolbar
Folder deleted: C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default\extensions\firefox@bandoo.com
File deleted: C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default\searchplugins\SearchquWebSearch.xml
Folder deleted: C:\Program Files\AskTBar
Folder deleted: C:\Documents and Settings\Administrator\Application Data\Bandoo
Folder deleted: C:\Documents and Settings\All Users\Application Data\Bandoo
Folder deleted: C:\Documents and Settings\All Users\Start Menu\Programs\Bandoo
Folder deleted: C:\Program Files\Bandoo
Folder deleted: C:\Documents and Settings\Administrator\Local Settings\Application Data\Conduit
Folder deleted: C:\Program Files\Conduit
Folder deleted: C:\Documents and Settings\Administrator\Application Data\Toolbar4
(!) -- Temporary files deleted.
-- File opened: C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default\Prefs.js --
Line deleted: user_pref("browser.startup.homepage", "hxxp://www.searchqu.com/");
Line deleted: user_pref("keyword.URL", "hxxp://www.searchqu.com/web?src=ffb&systemid=101&q=");
-- File closed --
Key deleted: HKLM\Software\Classes\CLSID\{074E4EFE-81BB-4EA4-866E-082CB0E01070}
Key deleted: HKLM\Software\Classes\AppID\{EDE2C296-2458-4E3B-A846-4B512C0703B5}
Key deleted: HKLM\Software\Classes\CLSID\{0CE5B352-9D9C-41E1-9551-FCCD92820217}
Key deleted: HKLM\Software\Classes\CLSID\{167B2B5F-2757-434A-BBDA-2FDB2003F14F}
Key deleted: HKLM\Software\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Key deleted: HKLM\Software\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Key deleted: HKLM\Software\Classes\CLSID\{2E9A60EA-5554-49C3-BC9D-D0404DBACC62}
Key deleted: HKLM\Software\Classes\CLSID\{3E63C9BC-DD51-4E83-ABA6-B350EAD28531}
Key deleted: HKLM\Software\Classes\CLSID\{44CFFEF4-E7E1-44BD-B1F5-29F828ADA1B8}
Key deleted: HKLM\Software\Classes\CLSID\{601ac3dc-786a-4eb0-bf40-ee3521e70bfb}
Key deleted: HKLM\Software\Classes\CLSID\{72b3882f-453a-4633-aac9-8c3dced62aff}
Key deleted: HKLM\Software\Classes\CLSID\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Key deleted: HKLM\Software\Classes\AppID\{9C123289-82E1-4da7-A3C2-B8D28AAD114B}
Key deleted: HKLM\Software\Classes\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7}
Key deleted: HKLM\Software\Classes\CLSID\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}
Key deleted: HKLM\Software\Classes\CLSID\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}
Key deleted: HKLM\Software\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Key deleted: HKLM\Software\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Key deleted: HKLM\Software\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Key deleted: HKLM\Software\Classes\CLSID\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}
Key deleted: HKLM\Software\Classes\AppID\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Key deleted: HKLM\Software\Classes\CLSID\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Key deleted: HKLM\Software\Classes\CLSID\{EF2B6317-C367-401B-83B8-80302D6588A7}
Key deleted: HKLM\Software\Classes\CLSID\{F5379B4B-24D8-432A-9A96-BE75EE5117DB}
Key deleted: HKLM\Software\Classes\CLSID\{F7FB2BC4-6C27-4EAC-B5E2-037B71FDE101}
Key deleted: HKLM\Software\Classes\CLSID\{FD53FE35-4368-4B71-89D6-F29F3DB29DF1}
Key deleted: HKLM\Software\Classes\CLSID\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Classes\CLSID\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
Key deleting error: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FE063DB9-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Classes\CLSID\{FE063DBB-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FE063DBB-4EC0-403e-8DD8-394C54984B2C}
Key deleted: HKLM\Software\Classes\Interface\{33DDFC61-F531-4982-8C32-4212B7835D44}
Key deleted: HKLM\Software\Classes\Interface\{384FE458-A963-450D-9187-EEFF81913FD0}
Key deleted: HKLM\Software\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Key deleted: HKLM\Software\Classes\Interface\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key deleted: HKLM\Software\Classes\Interface\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}
Key deleted: HKLM\Software\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Key deleted: HKLM\Software\Classes\TypeLib\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Key deleted: HKLM\Software\Classes\TypeLib\{4410C118-B23C-406C-9F52-9CDABD90A5EA}
Key deleted: HKLM\Software\Classes\TypeLib\{62E5C9E1-A0E8-4F8C-8EAF-0F9250CC5786}
Key deleted: HKLM\Software\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Key deleted: HKLM\Software\Classes\TypeLib\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}
Key deleted: HKLM\Software\Classes\BandooCoordinator.BandooCoordinator
Key deleted: HKLM\Software\Classes\BandooCoordinator.BandooCoordinator.1
Key deleted: HKLM\Software\Classes\BandooCoordinator.CoordinatorUI
Key deleted: HKLM\Software\Classes\BandooCoordinator.CoordinatorUI.1
Key deleted: HKLM\Software\Classes\BandooCoordinator.HTTPAsyncResult
Key deleted: HKLM\Software\Classes\BandooCoordinator.HTTPAsyncResult.1
Key deleted: HKLM\Software\Classes\BandooCoordinator.PlugInNotifier
Key deleted: HKLM\Software\Classes\BandooCoordinator.PlugInNotifier.1
Key deleted: HKLM\Software\Classes\BandooCore.BandooCore
Key deleted: HKLM\Software\Classes\BandooCore.BandooCore.1
Key deleted: HKLM\Software\Classes\BandooCore.ResourcesMngr
Key deleted: HKLM\Software\Classes\BandooCore.ResourcesMngr.1
Key deleted: HKLM\Software\Classes\BandooCore.SettingsMngr
Key deleted: HKLM\Software\Classes\BandooCore.SettingsMngr.1
Key deleted: HKLM\Software\Classes\BandooCore.StatisticMngr
Key deleted: HKLM\Software\Classes\BandooCore.StatisticMngr.1
Key deleted: HKLM\Software\Classes\BandooIEPlugin.BandooIEPlugin
Key deleted: HKLM\Software\Classes\BandooIEPlugin.BandooIEPlugin.1
Key deleted: HKLM\Software\Classes\BFlashAnimator.BFlashAnimatorCtrl
Key deleted: HKLM\Software\Classes\BFlashAnimator.BFlashAnimatorCtrl.1
Key deleted: HKLM\Software\Classes\BGIFAnimator.BGIFAnimatorCtrl
Key deleted: HKLM\Software\Classes\BGIFAnimator.BGIFAnimatorCtrl.1
Key deleted: HKLM\Software\Classes\Toolbar.CT1978305
Key deleted: HKLM\Software\Classes\AppID\BandooCoordinator.EXE
Key deleted: HKLM\Software\Classes\AppID\BandooCore.EXE
Key deleted: HKLM\Software\bandoo
Key deleted: HKLM\Software\Conduit
Key deleted: HKLM\Software\DataMngr
Key deleted: HKLM\Software\PopCap
Key deleted: HKLM\Software\SearchquMediabarTb
Key deleted: HKCU\Software\Conduit
Key deleted: HKCU\Software\DataMngr
Key deleted: HKCU\Software\SearchquMediabarTb
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Bandoo
Key deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4e1d-BDD0-1E9C9B7799CC}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7FF99715-3016-4381-84CE-E4E4C9673020}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4fde-B055-AE7B0F4CF080}
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Bandoo
Key deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 101 MediaBar
Key deleted: HKLM\Software\Classes\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239}
Value deleted: HKCU\Software\Mozilla\Firefox\Extensions|firefox@bandoo.com
Value deleted: HKCU\Software\Mozilla\Firefox\Extensions|ffox@bandoo.com
Value deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|DataMngr
Value deleted: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{9CB65206-89C4-402C-BA80-02D8C59F9B1D}
Value deleted: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{FE063DB9-4EC0-403E-8DD8-394C54984B2C}
============== ADDITIONNAL SCAN ==============
**** Mozilla Firefox Version [6.0 (en-US)] ****
Plugins\npwachk.dll (Nullsoft, Inc.)
HKLM_MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 (x)
HKLM_MozillaPlugins\Adobe Acrobat (x)
HKLM_MozillaPlugins\Adobe Reader (x)
HKCU_MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.8 (x)
Searchplugins\amazondotcom.xml (hxxp://www.amazon.com/exec/obidos/external-search/)
Searchplugins\bing.xml ( hxxp://www.bing.com/search)
Searchplugins\eBay.xml (hxxp://rover.ebay.com/rover/1/711-47294-18009-3/4)
Searchplugins\wikipedia.xml (hxxp://en.wikipedia.org/wiki/Special:Search)
Components\browsercomps.dll (Mozilla Foundation)
Extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} (Skype extension )
HKCU_Extensions|{F17C1572-C9EC-4e5c-A542-D05CBB5C5A08} - C:\Program Files\DAP\DAPFireFox
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
-- C:\Documents and Settings\Administrator\Application Data\Mozilla\FireFox\Profiles\2f0rlgp0.default --
Extensions\ffox@bandoo.com (Bandoo for Firefox)
Extensions\fr-classique@dictionaries.addons.mozilla.org (Dictionnaire français «Classique»)
Searchplugins\sweetim.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Administrator\\My Documents\\My Completed Downloads
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage_override.buildID, 20110811165603
Prefs.js - browser.startup.homepage_override.mstone, rv:6.0
Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
========================================
**** Internet Explorer Version [6.0.2900.2180] ****
HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{d51d388b-f5dc-471a-a1ce-5e2d671091c0} - "Mininova-Vuze Toolbar" (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKCU_SearchScopes\{B15DC2CF-97BE-4cae-936D-673C2B034C7E} - "SpeedBit Search" (hxxp://home.speedbit.com/search.aspx?aff=106&q={searchTerms})
HKCU_Toolbar\ShellBrowser|{0329E7D6-6F54-462D-93F6-F5C3118BADF2} (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
HKCU_Toolbar\ShellBrowser|{D51D388B-F5DC-471A-A1CE-5E2D671091C0} (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKCU_Toolbar\WebBrowser|{0329E7D6-6F54-462D-93F6-F5C3118BADF2} (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
HKCU_Toolbar\WebBrowser|{D51D388B-F5DC-471A-A1CE-5E2D671091C0} (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKLM_Toolbar|{0329E7D6-6F54-462D-93F6-F5C3118BADF2} (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
HKLM_Toolbar|{d51d388b-f5dc-471a-a1ce-5e2d671091c0} (C:\Program Files\Mininova-Vuze\tbMin1.dll)
HKLM_Toolbar|{47833539-D0C5-4125-9FA8-0819E2EAAC93} (C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll)
HKLM_Toolbar|{99079a25-328f-4bd4-be04-00955acaa0a7} (x)
HKCU_ElevationPolicy\{603C4CC9-5DC6-4C44-873F-8281509DF953} - C:\Program Files\SpeedBit Video Downloader\Converter.exe (Speedbit Ltd.)
HKLM_ElevationPolicy\2671a67b-0c1c-4230-99f0-d975ea243412 - C:\Program Files\Mininova-Vuze\Mininova-VuzeToolbarHelper.exe (?)
HKLM_ElevationPolicy\{41FD68A9-F806-4118-AAD2-13CFEF83D440} - C:\PROGRA~1\WI9130~1\ToolBar\dtUser.exe (x)
HKLM_ElevationPolicy\{603C4CC9-5DC6-4C44-873F-8281509DF953} - C:\Program Files\SpeedBit Video Downloader\Converter.exe (Speedbit Ltd.)
BHO\{3017FB3E-9A77-4396-88C5-0EC9548FB42F} - "SBCONVERT Class" (C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll)
BHO\{389943B0-C3A2-4E69-82CB-8596A84CB3DC} - "SearchPredictObj Class" (C:\PROGRA~1\SEARCH~1\SEARCH~1.DLL)
BHO\{7DB2D5A0-7241-4E79-B68D-6309F01C5231} - "scriptproxy" (C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll)
BHO\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} - "FDMIECookiesBHO Class" (C:\Program Files\Free Download Manager\iefdm2.dll)
BHO\{d51d388b-f5dc-471a-a1ce-5e2d671091c0} - "Mininova-Vuze Toolbar" (C:\Program Files\Mininova-Vuze\tbMin1.dll)
BHO\{FF7C3CF0-4B15-11D1-ABED-709549C10000} - "GrabberObj Class" (C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 931 File(s)
C:\Program Files\Ad-Remover\Backup: 13 File(s)
C:\Ad-Report-CLEAN[1].txt - 30/08/2011 14:37:47 (16942 Byte(s))
End at: 14:39:01, 30/08/2011
============== E.O.F ==============
Fish66
Messages postés
17505
Date d'inscription
dimanche 24 juillet 2011
Statut
Contributeur sécurité
Dernière intervention
16 juin 2021
1 318
30 août 2011 à 14:52
30 août 2011 à 14:52
Re,
1/
Lance Ad-Remover et choisis " Nettoyer" puis poste le rapport stp
2/
Manque le rapport ADWCleaner (suppression)
1/
Lance Ad-Remover et choisis " Nettoyer" puis poste le rapport stp
2/
Manque le rapport ADWCleaner (suppression)
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
achri
Messages postés
13
Date d'inscription
vendredi 12 octobre 2007
Statut
Membre
Dernière intervention
13 avril 2016
30 août 2011 à 15:05
30 août 2011 à 15:05
Desole, j'etais un peu distrait, voici le rapport de suppression de Adwcleaner
# AdwCleaner v1.301 - Rapport créé le 30/08/2011 à 15:01:06
# Mis à jour le 28/08/11 à 21h par Xplode
# Système d'exploitation : Microsoft Windows XP Service Pack 2 (32 bits)
# Nom d'utilisateur : Mercy Corps - ERP (Administrateur)
# Exécuté depuis : C:\Documents and Settings\Administrator\Desktop\adwcleaner0.exe
# Option [Suppression]
***** [KillNav] *****
# firefox.exe [PID:4948] -> Tué
***** [Processus] *****
Tué : [PID:3596] DATAMN~1.EXE
***** [Services] *****
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Documents and Settings\Administrator\Application Data\Searchqutoolbar
Dossier Supprimé : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\2f0rlgp0.default\extensions\ffox@bandoo.com
Dossier Supprimé : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\2f0rlgp0.default\searchqutoolbar
***** [Registre] *****
Clé Supprimée : HKCU\Toolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
Clé Supprimée : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{99079a25-328f-4bd4-be04-00955acaa0a7}]
***** [Navigateurs] *****
-\\ Internet Explorer v6.0.2900.2180
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Mozilla Firefox v6.0 (en-US)
Profil : 2f0rlgp0.default
Fichier : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\2f0rlgp0.default\prefs.js
Supprimée : user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"jqs@sun.com\":{\"descriptor\":\"C:\\\\Program Files\\\\Java\\\\jre6\\\\lib\\\\deploy\\\\jqs\\\\ff\",\"mtime\":1300451327265}}},{\"name\":\"app-global\",\"addons\":{\"{1FD91A9C-410C-4090-BBCC-55D3450EF433}\":{\"descriptor\":\"C:\\\\Program Files\\\\Windows Searchqu Toolbar\\\\Datamngr\\\\FirefoxExtension\",\"mtime\":1305811075875},\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1314001288468},\"{AB2CE124-6272-4b12-94A9-7303C7397BD1}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\",\"mtime\":1298527304468},\"{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}\",\"mtime\":1300451339640},\"{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\",\"mtime\":1308654269187}}},{\"name\":\"app-profile\",\"addons\":{\"fdm_ffext@freedownloadmanager.org\":{\"descriptor\":\"C:\\\\Program Files\\\\Free Download Manager\\\\Firefox\\\\Extension\",\"mtime\":1302100567828},\"ffox@bandoo.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\ffox@bandoo.com\",\"mtime\":1305811024312},\"firefox@bandoo.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\firefox@bandoo.com\",\"mtime\":1291465262609},\"fr-classique@dictionaries.addons.mozilla.org\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\fr-classique@dictionaries.addons.mozilla.org\",\"mtime\":1314261737078},\"{635abd67-4fe9-1b23-4f01-e679fa7484c1}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\",\"mtime\":1312273620372},\"{e001c731-5e37-4538-a5cb-8168736a2360}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\{e001c731-5e37-4538-a5cb-8168736a2360}\",\"mtime\":1311933607359},\"{EEE6C361-6118-11DC-9C72-001320C79847}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi\",\"mtime\":1303216353018}}}]");
-\\ Opera v0.0.0.0
Fichier : C:\Documents and Settings\Administrator\Application Data\Opera\Opera\operaprefs.ini
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[S1].txt - [4772 octets] - [30/08/2011 15:01:06]
########## EOF - C:\AdwCleaner[S1].txt - [4900 octets] ##########
# AdwCleaner v1.301 - Rapport créé le 30/08/2011 à 15:01:06
# Mis à jour le 28/08/11 à 21h par Xplode
# Système d'exploitation : Microsoft Windows XP Service Pack 2 (32 bits)
# Nom d'utilisateur : Mercy Corps - ERP (Administrateur)
# Exécuté depuis : C:\Documents and Settings\Administrator\Desktop\adwcleaner0.exe
# Option [Suppression]
***** [KillNav] *****
# firefox.exe [PID:4948] -> Tué
***** [Processus] *****
Tué : [PID:3596] DATAMN~1.EXE
***** [Services] *****
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Documents and Settings\Administrator\Application Data\Searchqutoolbar
Dossier Supprimé : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\2f0rlgp0.default\extensions\ffox@bandoo.com
Dossier Supprimé : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\2f0rlgp0.default\searchqutoolbar
***** [Registre] *****
Clé Supprimée : HKCU\Toolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
Clé Supprimée : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{99079a25-328f-4bd4-be04-00955acaa0a7}]
***** [Navigateurs] *****
-\\ Internet Explorer v6.0.2900.2180
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Mozilla Firefox v6.0 (en-US)
Profil : 2f0rlgp0.default
Fichier : C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\2f0rlgp0.default\prefs.js
Supprimée : user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"jqs@sun.com\":{\"descriptor\":\"C:\\\\Program Files\\\\Java\\\\jre6\\\\lib\\\\deploy\\\\jqs\\\\ff\",\"mtime\":1300451327265}}},{\"name\":\"app-global\",\"addons\":{\"{1FD91A9C-410C-4090-BBCC-55D3450EF433}\":{\"descriptor\":\"C:\\\\Program Files\\\\Windows Searchqu Toolbar\\\\Datamngr\\\\FirefoxExtension\",\"mtime\":1305811075875},\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1314001288468},\"{AB2CE124-6272-4b12-94A9-7303C7397BD1}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{AB2CE124-6272-4b12-94A9-7303C7397BD1}\",\"mtime\":1298527304468},\"{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}\",\"mtime\":1300451339640},\"{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\":{\"descriptor\":\"C:\\\\Program Files\\\\Mozilla Firefox\\\\extensions\\\\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}\",\"mtime\":1308654269187}}},{\"name\":\"app-profile\",\"addons\":{\"fdm_ffext@freedownloadmanager.org\":{\"descriptor\":\"C:\\\\Program Files\\\\Free Download Manager\\\\Firefox\\\\Extension\",\"mtime\":1302100567828},\"ffox@bandoo.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\ffox@bandoo.com\",\"mtime\":1305811024312},\"firefox@bandoo.com\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\firefox@bandoo.com\",\"mtime\":1291465262609},\"fr-classique@dictionaries.addons.mozilla.org\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\fr-classique@dictionaries.addons.mozilla.org\",\"mtime\":1314261737078},\"{635abd67-4fe9-1b23-4f01-e679fa7484c1}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\",\"mtime\":1312273620372},\"{e001c731-5e37-4538-a5cb-8168736a2360}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\{e001c731-5e37-4538-a5cb-8168736a2360}\",\"mtime\":1311933607359},\"{EEE6C361-6118-11DC-9C72-001320C79847}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\Administrator\\\\Application Data\\\\Mozilla\\\\Firefox\\\\Profiles\\\\2f0rlgp0.default\\\\extensions\\\\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi\",\"mtime\":1303216353018}}}]");
-\\ Opera v0.0.0.0
Fichier : C:\Documents and Settings\Administrator\Application Data\Opera\Opera\operaprefs.ini
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[S1].txt - [4772 octets] - [30/08/2011 15:01:06]
########## EOF - C:\AdwCleaner[S1].txt - [4900 octets] ##########
Fish66
Messages postés
17505
Date d'inscription
dimanche 24 juillet 2011
Statut
Contributeur sécurité
Dernière intervention
16 juin 2021
1 318
30 août 2011 à 17:27
30 août 2011 à 17:27
Re,
/!\ Ferme toutes applications en cours /!\
- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton «Nettoyer »
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)
(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour c
/!\ Ferme toutes applications en cours /!\
- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton «Nettoyer »
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)
(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour c