How to uninstall SpeedUp my PC
Solved
Loïc1956
Posted messages
22
Status
Membre
-
Joe -
Joe -
Hello,
It's not in my programs, it's hiding somewhere. Is it a malware-type software?
Thank you!!
Configuration: Windows XP / Firefox 12.0
It's not in my programs, it's hiding somewhere. Is it a malware-type software?
Thank you!!
Configuration: Windows XP / Firefox 12.0
15 réponses
Hello,
1/
* Information about: speedupmypc
* Try using the software below to uninstall it:
Download Revo-uninstaller
Run this file for installation
*******Help Revo-uninstaller*******
* If you couldn't, you can try in safe mode
2/
* Download ZHPDiag (by Nicolas Coolman) from one of the two links: Link 1 or Link 2
* Launch it, (Right-click "run as administrator" if you are on Vista/7)
* Click on the magnifying glass icon to start the diagnostic
* Host the ZHPDiag.txt report from your desktop on: malekal.com or cjoint.com
* Copy/paste the provided link in your next reply
* ZHPDiag Help: <<< HERE >>>
@+
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor security member_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
1/
* Information about: speedupmypc
* Try using the software below to uninstall it:
Download Revo-uninstaller
Run this file for installation
*******Help Revo-uninstaller*******
* If you couldn't, you can try in safe mode
2/
* Download ZHPDiag (by Nicolas Coolman) from one of the two links: Link 1 or Link 2
* Launch it, (Right-click "run as administrator" if you are on Vista/7)
* Click on the magnifying glass icon to start the diagnostic
* Host the ZHPDiag.txt report from your desktop on: malekal.com or cjoint.com
* Copy/paste the provided link in your next reply
* ZHPDiag Help: <<< HERE >>>
@+
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor security member_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
Hello,
You have several adwares!
1/
Download AdwCleaner (thanks to Xplode)
Run AdwCleaner
Click on the button [ Remove ]
Wait...
Post the report that appears at the end of the scan.
(The report is also saved under C:\ AdwCleaner[SX].Txt)
2/
* Download AD-Remover to your Desktop.
http://security-domain.be/download/AD-Remover.html
/!\ Close all running applications /!\
- Double click on the Ad-remover icon located on your Desktop.
- For Vista/Seven: right-click and choose "Run as administrator"
- On the page, click the "Clean" button
- Confirm the start of the scan
- Let the tool work.
- Post the report that appears at the end.
(The report is also saved under C:\Ad-report(Scan/clean).Txt)
(CTRL+A to select all, CTRL+C to copy and CTRL+V to paste)
3/
/!\ WARNING: this scan may take several hours /!\
* Download MBAM and install it to the default location
https://www.malwarebytes.com/mwb-download/
* Launch Malwarebytes' Anti-Malware
* Update it
* Click on the "Scan" tab
* Check the option "Perform a full scan" then click on the "Scan" button
* Choose to scan all your hard drives, then click on 'Start Scan'
At the end of the scan, if MBAM found nothing:
* Click OK, the report opens automatically
If threats were detected:
* Click OK then "Show Results"
* Ensure all lines are checked
* Choose the "Remove Selected" option
* If MBAM prompts for a Windows restart: Click "Yes"
* The report opens automatically after deletion, it is also located in the "Reports/Logs" tab
* Copy/paste the report into the next message
Note:
- If there is an issue updating mbam, you can do it manually by downloading this file and running it.
@+
--
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
You have several adwares!
1/
Download AdwCleaner (thanks to Xplode)
Run AdwCleaner
Click on the button [ Remove ]
Wait...
Post the report that appears at the end of the scan.
(The report is also saved under C:\ AdwCleaner[SX].Txt)
2/
* Download AD-Remover to your Desktop.
http://security-domain.be/download/AD-Remover.html
/!\ Close all running applications /!\
- Double click on the Ad-remover icon located on your Desktop.
- For Vista/Seven: right-click and choose "Run as administrator"
- On the page, click the "Clean" button
- Confirm the start of the scan
- Let the tool work.
- Post the report that appears at the end.
(The report is also saved under C:\Ad-report(Scan/clean).Txt)
(CTRL+A to select all, CTRL+C to copy and CTRL+V to paste)
3/
/!\ WARNING: this scan may take several hours /!\
* Download MBAM and install it to the default location
https://www.malwarebytes.com/mwb-download/
* Launch Malwarebytes' Anti-Malware
* Update it
* Click on the "Scan" tab
* Check the option "Perform a full scan" then click on the "Scan" button
* Choose to scan all your hard drives, then click on 'Start Scan'
At the end of the scan, if MBAM found nothing:
* Click OK, the report opens automatically
If threats were detected:
* Click OK then "Show Results"
* Ensure all lines are checked
* Choose the "Remove Selected" option
* If MBAM prompts for a Windows restart: Click "Yes"
* The report opens automatically after deletion, it is also located in the "Reports/Logs" tab
* Copy/paste the report into the next message
Note:
- If there is an issue updating mbam, you can do it manually by downloading this file and running it.
@+
--
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
Malwarebytes' Anti-Malware 1.31
Database version: 1456
Windows 6.1.7601 Service Pack 1
02/07/2014 14:14:57
mbam-log-2014-07-02 (14-14-57).txt
Scan type: Full scan (C:\|D:\|E:\|F:\|)
Items scanned: 201285
Elapsed time: 1 hour(s), 20 minute(s), 56 second(s)
Infected memory process(es): 0
Infected memory module(s): 0
Infected Registry key(s): 0
Infected Registry value(s): 0
Infected Registry data item(s): 0
Infected folder(s): 0
Infected file(s): 0
Infected memory process(es):
(No harmful items detected)
Infected memory module(s):
(No harmful items detected)
Infected Registry key(s):
(No harmful items detected)
Infected Registry value(s):
(No harmful items detected)
Infected Registry data item(s):
(No harmful items detected)
Infected folder(s):
(No harmful items detected)
Infected file(s):
(No harmful items detected)
Database version: 1456
Windows 6.1.7601 Service Pack 1
02/07/2014 14:14:57
mbam-log-2014-07-02 (14-14-57).txt
Scan type: Full scan (C:\|D:\|E:\|F:\|)
Items scanned: 201285
Elapsed time: 1 hour(s), 20 minute(s), 56 second(s)
Infected memory process(es): 0
Infected memory module(s): 0
Infected Registry key(s): 0
Infected Registry value(s): 0
Infected Registry data item(s): 0
Infected folder(s): 0
Infected file(s): 0
Infected memory process(es):
(No harmful items detected)
Infected memory module(s):
(No harmful items detected)
Infected Registry key(s):
(No harmful items detected)
Infected Registry value(s):
(No harmful items detected)
Infected Registry data item(s):
(No harmful items detected)
Infected folder(s):
(No harmful items detected)
Infected file(s):
(No harmful items detected)
Hello,
revo can't find it
unable to copy and paste for ZHP
What was Speedup installed with? a toolbar??? babylon??
Thanks anyway!
revo can't find it
unable to copy and paste for ZHP
What was Speedup installed with? a toolbar??? babylon??
Thanks anyway!
Thank you anyway; I ended up finding it:
http://www.uniblue.com/fr/support/faq/uninstall-uniblue-programs-computer/
Impossible to remove from the registry, but on the first try with
http://www.uniblue.com/fr/support/faq/uninstall-uniblue-programs-computer/
Follow Step 1
Start/Programs/Uninstall Uniblue and therefore uninstall SpeedUpMyPC and RegistryBooster.
In the end (it's written in very small), it's the company UNIBLUE that distributes this product: SpeedUpMyPC, which is a real piece of CRAP that slows the PC down tremendously, it installs itself and then afterwards they ask you to pay to clean your system!!! Well, of course!!!
Like a whole bunch of other so-called miracle products.
http://www.uniblue.com/fr/support/faq/uninstall-uniblue-programs-computer/
Impossible to remove from the registry, but on the first try with
http://www.uniblue.com/fr/support/faq/uninstall-uniblue-programs-computer/
Follow Step 1
Start/Programs/Uninstall Uniblue and therefore uninstall SpeedUpMyPC and RegistryBooster.
In the end (it's written in very small), it's the company UNIBLUE that distributes this product: SpeedUpMyPC, which is a real piece of CRAP that slows the PC down tremendously, it installs itself and then afterwards they ask you to pay to clean your system!!! Well, of course!!!
Like a whole bunch of other so-called miracle products.
Good evening,
That's good, but your PC is infected. If you want to clean it up, follow the steps outlined: <<< HERE >>>
Have a nice evening
--
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
That's good, but your PC is infected. If you want to clean it up, follow the steps outlined: <<< HERE >>>
Have a nice evening
--
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
Hello,
Copy/paste the reports directly here :-)
See you later
--
_ _ _ Fish66_ _ _ I''"""""I_ _ security contributor member_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
Copy/paste the reports directly here :-)
See you later
--
_ _ _ Fish66_ _ _ I''"""""I_ _ security contributor member_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
OK and thank you!
# AdwCleaner v1.607 - Report created on 05/24/2012 at 10:17:50
# Updated on 05/23/2012 by Xplode
# Operating System: Microsoft Windows XP Service Pack 3 (32 bits)
# Username: LOIC - PCDELOIC
# Executed from: C:\Documents and Settings\LOIC\My Documents\Downloads\adwcleaner.exe
# Option [Removal]
***** [Services] *****
***** [Files / Folders] *****
Folder Deleted: C:\Documents and Settings\LOIC\Local Settings\Application Data\Babylon
Folder Deleted: C:\Documents and Settings\LOIC\Local Settings\Application Data\Conduit
Folder Deleted: C:\Documents and Settings\LOIC\Local Settings\Application Data\ConduitEngine
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Babylon
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\OpenCandy
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\PriceGong
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Toolbar4
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\Conduit
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\ConduitCommon
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\extensions\{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0}
Folder Deleted: C:\Documents and Settings\All Users\Application Data\Babylon
Folder Deleted: C:\Program Files\Conduit
Folder Deleted: C:\Program Files\ConduitEngine
File Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\searchplugins\MyStart Search.xml
File Deleted: C:\WINDOWS\system32\conduitEngine.tmp
***** [Registry] *****
[*] Key Deleted: HKCU\Software\TBSB07458
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.IEToolbar
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.IEToolbar.1
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.TBSB07458
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.TBSB07458.3
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar.CT2724386
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar.CT2724431
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.TBSB07458
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.TBSB07458.1
Key Deleted: HKCU\Toolbar
Key Deleted: HKCU\Software\Babylon
Key Deleted: HKCU\Software\Conduit
Key Deleted: HKCU\Software\conduitEngine
Key Deleted: HKCU\Software\PriceGong
Key Deleted: HKCU\Software\Softonic
Key Deleted: HKLM\SOFTWARE\conduitEngine
Key Deleted: HKLM\SOFTWARE\Classes\b
Key Deleted: HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler
Key Deleted: HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1
Key Deleted: HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted: HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Deleted: HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Deleted: HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Key Deleted: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Key Deleted: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Key Deleted: HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
***** [Registry - GUID] *****
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
Key Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{249D74A3-BD19-4657-B6CE-E62F480A20DE}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{249D74A3-BD19-4657-B6CE-E62F480A20DE}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
Value Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}]
Value Deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}]
Value Deleted: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CA3EB689-8F09-4026-AA10-B9534C691CE0}]
***** [Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
Replaced: [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com --> hxxp://www.google.fr
-\\ Mozilla Firefox v12.0 (fr)
Profile name: default
File: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\prefs.js
Deleted: user_pref(""CT2724386..clientLogIsEnabled", false);
Deleted: user_pref(""CT2724386..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Deleted: user_pref(""CT2724386..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Deleted: user_pref(""CT2724386.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Deleted: user_pref(""CT2724386.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Deleted: user_pref(""CT2724386.AppTrackingLastCheckTime", "Fri May 18 2012 07:19:09 GMT+1100 (Pacific Center[...]
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129464706887642629", true);
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129681655908744368", true);
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129723002078767475", true);
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129742211152851106", true);
Deleted: user_pref(""CT2724386.CT2724386", "CT2724386");
Deleted: user_pref(""CT2724386.CT2724407.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2724407.alertChannelId", "1116673");
Deleted: user_pref(""CT2724386.CT2724431.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2724431.alertChannelId", "1116697");
Deleted: user_pref(""CT2724386.CT2727162.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727162.alertChannelId", "1119424");
Deleted: user_pref(""CT2724386.CT2727622.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727622.alertChannelId", "1119884");
Deleted: user_pref(""CT2724386.CT2727646.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727646.alertChannelId", "1119908");
Deleted: user_pref(""CT2724386.CT2727678.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727678.alertChannelId", "1119940");
Deleted: user_pref(""CT2724386.CT2727750.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727750.alertChannelId", "1120012");
Deleted: user_pref(""CT2724386.CommunitiesChangesLastCheckTime", "Tue Jan 03 2012 06:34:56 GMT+1100 (Pacific[...]
Deleted: user_pref(""CT2724386.CommunitiesChangesLastUrl", "hxxp://grouping.services.conduit.com/GroupingReque[...]
Deleted: user_pref(""CT2724386.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CurrentServerDate", "24-5-2012");
Deleted: user_pref(""CT2724386.DialogsAlignMode", "LTR");
Deleted: user_pref(""CT2724386.DialogsGetterLastCheckTime", "Wed May 23 2012 07:57:43 GMT+1100 (Pacific Center)[...]
Deleted: user_pref(""CT2724386.DownloadDomainsCheckInterval", "168");
Deleted: user_pref(""CT2724386.DownloadDomainsListLastCheckTime", "Fri Dec 23 2011 17:54:07 GMT+1100 (Pacifique[...]
Deleted: user_pref(""CT2724386.DownloadDomainsListLastServerUpdateTime", "1201069983");
Deleted: user_pref(""CT2724386.DownloadReferralCookieData", "");
Deleted: user_pref(""CT2724386.FirstServerDate", "9-9-2011");
Deleted: user_pref(""CT2724386.FirstTime", true);
Deleted: user_pref(""CT2724386.FirstTimeFF3", true);
Deleted: user_pref(""CT2724386.FixPageNotFoundErrors", false);
Deleted: user_pref(""CT2724386.GroupingLastCheckTime", "Mon Jan 02 2012 21:56:07 GMT+1100 (Pacific Center)")[...]
Deleted: user_pref(""CT2724386.GroupingLastErrorCode", "");
Deleted: user_pref(""CT2724386.GroupingLastResponse", true);
Deleted: user_pref(""CT2724386.GroupingLastServerUpdateTime", "129690351023070000");
Deleted: user_pref(""CT2724386.GroupingServerCheckInterval", 1440);
Deleted: user_pref(""CT2724386.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Deleted: user_pref(""CT2724386.HasUserGlobalKeys", true);
Deleted: user_pref(""CT2724386.HomePageProtectorEnabled", false);
Deleted: user_pref(""CT2724386.Initialize", true);
Deleted: user_pref(""CT2724386.InitializeCommonPrefs", true);
Deleted: user_pref(""CT2724386.InstallationAndCookieDataSentCount", 3);
Deleted: user_pref(""CT2724386.InstallationType", "Unknown");
Deleted: user_pref(""CT2724386.InstalledDate", "Fri Sep 09 2011 09:43:38 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.InvalidateCache", false);
Deleted: user_pref(""CT2724386.IsAlertDBUpdated", true);
Deleted: user_pref(""CT2724386.IsGrouping", false);
Deleted: user_pref(""CT2724386.IsInitSetupIni", true);
Deleted: user_pref(""CT2724386.IsMulticommunity", false);
Deleted: user_pref(""CT2724386.IsOpenThankYouPage", true);
Deleted: user_pref(""CT2724386.IsOpenUninstallPage", true);
Deleted: user_pref(""CT2724386.IsProtectorsInit", true);
Deleted: user_pref(""CT2724386.LanguagePackLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Center)[...]
Deleted: user_pref(""CT2724386.LanguagePackReloadIntervalMM", 1440);
Deleted: user_pref(""CT2724386.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Deleted: user_pref(""CT2724386.LastLogin_3.10.0.1", "Fri Apr 27 2012 15:00:10 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.12.2.3", "Thu May 24 2012 08:45:54 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.6.0.10", "Wed Sep 28 2011 11:54:58 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.7.0.6", "Wed Nov 09 2011 06:15:23 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.8.0.8", "Wed Dec 28 2011 16:23:39 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.8.1.0", "Wed Feb 01 2012 14:38:31 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.9.0.3", "Fri Mar 09 2012 14:18:40 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LatestVersion", "3.12.2.3");
Deleted: user_pref(""CT2724386.Locale", "en");
Deleted: user_pref(""CT2724386.MCDetectTooltipHeight", "83");
Deleted: user_pref(""CT2724386.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Deleted: user_pref(""CT2724386.MCDetectTooltipWidth", "295");
Deleted: user_pref(""CT2724386.MyStuffEnabledAtInstallation", true);
Deleted: user_pref(""CT2724386.OriginalFirstVersion", "3.6.0.10");
Deleted: user_pref(""CT2724386.RadioIsPodcast", false);
Deleted: user_pref(""CT2724386.RadioLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.RadioLastUpdateIPServer", "3");
Deleted: user_pref(""CT2724386.RadioLastUpdateServer", "129249036863500000");
Deleted: user_pref(""CT2724386.RadioMediaID", "21080102");
Deleted: user_pref(""CT2724386.RadioMediaType", "Media Player");
Deleted: user_pref(""CT2724386.RadioMenuSelectedID", "EBRadioMenu_CT272438621080102");
Deleted: user_pref(""CT2724386.RadioShrinkedFromSetup", false);
Deleted: user_pref(""CT2724386.RadioStationName", "Mix%201620%20Am");
Deleted: user_pref(""CT2724386.RadioStationURL", "hxxp://69.115.65.9:8000");
Deleted: user_pref(""CT2724386.SearchEngineBeforeUnload", "Search the web (Babylon)");
Deleted: user_pref(""CT2724386.SearchFromAddressBarIsInit", true);
Deleted: user_pref(""CT2724386.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT272[...]
Deleted: user_pref(""CT2724386.SearchInNewTabEnabled", true);
Deleted: user_pref(""CT2724386.SearchInNewTabIntervalMM", 1440);
Deleted: user_pref(""CT2724386.SearchInNewTabLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Cen[...]
Deleted: user_pref(""CT2724386.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Deleted: user_pref(""CT2724386.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usa[...]
Deleted: user_pref(""CT2724386.SearchProtectorEnabled", false);
Deleted: user_pref(""CT2724386.SearchProtectorToolbarDisabled", false);
Deleted: user_pref(""CT2724386.ServiceMapLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Centre)[...]
Deleted: user_pref(""CT2724386.SettingsLastCheckTime", "Thu May 24 2012 07:39:53 GMT+1100 (Pacific Centre)")[...]
Deleted: user_pref(""CT2724386.SettingsLastUpdate", "1337773031");
Deleted: user_pref(""CT2724386.ThirdPartyComponentsInterval", 504);
Deleted: user_pref(""CT2724386.ThirdPartyComponentsLastCheck", "Mon May 14 2012 07:15:16 GMT+1100 (Pacific C[...]
Deleted: user_pref(""CT2724386.ThirdPartyComponentsLastUpdate", "1331805997");
Deleted: user_pref(""CT2724386.ToolbarShrinkedFromSetup", false);
Deleted: user_pref(""CT2724386.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2724386");
Deleted: user_pref(""CT2724386.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]
Deleted: user_pref(""CT2724386.UserID", "UN17886901395892318");
Deleted: user_pref(""CT2724386.ValidationData_Search", 2);
Deleted: user_pref(""CT2724386.ValidationData_Toolbar", 2);
Deleted: user_pref(""CT2724386.WeatherNetwork", "");
Deleted: user_pref(""CT2724386.WeatherPollDate", "Thu May 24 2012 08:30:40 GMT+1100 (Pacific Centre)");
Deleted: user_pref(""CT2724386.WeatherUnit", "C");
Deleted: user_pref(""CT2724386.alertChannelId", "1116652");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e+x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e,x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e-x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e.x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e/x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e06cg5el8:", "6E6D6F6F6C736D707273");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A74737575727973767879242F4B4947[...]
Deleted: user_pref(""CT2724386.backendstorage./9b+7e0x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e1x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e2x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e3x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e4x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e5x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e6x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e7x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e8x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e9x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e:x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e;x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e<x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e=x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e>x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e?x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e@x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7eax305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B26[...]
Deleted: user_pref(""CT2724386.backendstorage./9b+7ebx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7ecx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7edx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7etx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b-0?3g>d", "3E70693E3D7475427A777148492048767679254C4E7B242A26[...]
Deleted: user_pref(""CT2724386.backendstorage./9b-0?3g@6:5;", "");
Deleted: user_pref(""CT2724386.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332[...]
Deleted: user_pref(""CT2724386.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6E6A68707374757677");
Deleted: user_pref(""CT2724386.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484775213F3E484F4E4D464[...]
Deleted: user_pref(""CT2724386.backendstorage./9b5ba==9cjag", "693A3C3D40716D767A7378494674784978784C4F20");
Deleted: user_pref(""CT2724386.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6E726B726D757476787177");
Deleted: user_pref(""CT2724386.backendstorage./9b9643g3/9e", "6A");
Deleted: user_pref(""CT2724386.backendstorage./9b<:222h64<", "393F352F3E");
Deleted: user_pref(""CT2724386.backendstorage./9b=+03eh8h8j?:", "4443");
Deleted: user_pref(""CT2724386.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B26514649[...]
Deleted: user_pref(""CT2724386.backendstorage./9b?b0d:8aj62<h", "6D");
Deleted: user_pref(""CT2724386.backendstorage./9ba@0<0bi6a7gn:6@l?", "6E6B");
Deleted: user_pref(""CT2724386.backendstorage.cb_firstuse0100", "31");
Deleted: user_pref(""CT2724386.backendstorage.cb_user_id_000", "434233313639393535343939335F46697265666F78");
Deleted: user_pref(""CT2724386.backendstorage.cbcountry_000", "4E43");
Deleted: user_pref(""CT2724386.backendstorage.cbfirsttime", "4D6F6F6F6C736D707273");
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api10_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api15_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api16_thetrafficstat_net.pid2", "623435353463353736616364[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api18_thetrafficstat_net.pid2", "623435353463353736616364[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api19_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api20_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api21_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api22_thetrafficstat_net.pid2", "623435353463353736616364[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api25_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api26_thetrafficstat_net.pid2", "383462326466333933346532[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api29_thetrafficstat_net.pid2",
# AdwCleaner v1.607 - Report created on 05/24/2012 at 10:17:50
# Updated on 05/23/2012 by Xplode
# Operating System: Microsoft Windows XP Service Pack 3 (32 bits)
# Username: LOIC - PCDELOIC
# Executed from: C:\Documents and Settings\LOIC\My Documents\Downloads\adwcleaner.exe
# Option [Removal]
***** [Services] *****
***** [Files / Folders] *****
Folder Deleted: C:\Documents and Settings\LOIC\Local Settings\Application Data\Babylon
Folder Deleted: C:\Documents and Settings\LOIC\Local Settings\Application Data\Conduit
Folder Deleted: C:\Documents and Settings\LOIC\Local Settings\Application Data\ConduitEngine
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Babylon
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\OpenCandy
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\PriceGong
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Toolbar4
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\Conduit
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\ConduitCommon
Folder Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\extensions\{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0}
Folder Deleted: C:\Documents and Settings\All Users\Application Data\Babylon
Folder Deleted: C:\Program Files\Conduit
Folder Deleted: C:\Program Files\ConduitEngine
File Deleted: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\searchplugins\MyStart Search.xml
File Deleted: C:\WINDOWS\system32\conduitEngine.tmp
***** [Registry] *****
[*] Key Deleted: HKCU\Software\TBSB07458
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.IEToolbar
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.IEToolbar.1
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.TBSB07458
[*] Key Deleted: HKLM\SOFTWARE\Classes\TBSB07458.TBSB07458.3
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar.CT2724386
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar.CT2724431
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.TBSB07458
[*] Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.TBSB07458.1
Key Deleted: HKCU\Toolbar
Key Deleted: HKCU\Software\Babylon
Key Deleted: HKCU\Software\Conduit
Key Deleted: HKCU\Software\conduitEngine
Key Deleted: HKCU\Software\PriceGong
Key Deleted: HKCU\Software\Softonic
Key Deleted: HKLM\SOFTWARE\conduitEngine
Key Deleted: HKLM\SOFTWARE\Classes\b
Key Deleted: HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler
Key Deleted: HKLM\SOFTWARE\Classes\ComObject.DeskbarEnabler.1
Key Deleted: HKLM\SOFTWARE\Classes\Conduit.Engine
Key Deleted: HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Deleted: HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Key Deleted: HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbTask
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Key Deleted: HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Key Deleted: HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Key Deleted: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Key Deleted: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Key Deleted: HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Key Deleted: HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
***** [Registry - GUID] *****
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted: HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Key Deleted: HKLM\SOFTWARE\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted: HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Key Deleted: HKLM\SOFTWARE\Classes\TypeLib\{EC4085F2-8DB3-45A6-AD0B-CA289F3C5D7E}
Key Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{249D74A3-BD19-4657-B6CE-E62F480A20DE}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{249D74A3-BD19-4657-B6CE-E62F480A20DE}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA3EB689-8F09-4026-AA10-B9534C691CE0}
Key Deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0}
Value Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Value Deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}]
Value Deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{C86FF9FA-AEED-451B-A9CC-39A53173AE2E}]
Value Deleted: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{CA3EB689-8F09-4026-AA10-B9534C691CE0}]
***** [Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
Replaced: [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://home.sweetim.com --> hxxp://www.google.fr
-\\ Mozilla Firefox v12.0 (fr)
Profile name: default
File: C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\prefs.js
Deleted: user_pref(""CT2724386..clientLogIsEnabled", false);
Deleted: user_pref(""CT2724386..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Deleted: user_pref(""CT2724386..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Deleted: user_pref(""CT2724386.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Deleted: user_pref(""CT2724386.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Deleted: user_pref(""CT2724386.AppTrackingLastCheckTime", "Fri May 18 2012 07:19:09 GMT+1100 (Pacific Center[...]
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129464706887642629", true);
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129681655908744368", true);
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129723002078767475", true);
Deleted: user_pref(""CT2724386.BrowserCompStateIsOpen_129742211152851106", true);
Deleted: user_pref(""CT2724386.CT2724386", "CT2724386");
Deleted: user_pref(""CT2724386.CT2724407.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2724407.alertChannelId", "1116673");
Deleted: user_pref(""CT2724386.CT2724431.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2724431.alertChannelId", "1116697");
Deleted: user_pref(""CT2724386.CT2727162.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727162.alertChannelId", "1119424");
Deleted: user_pref(""CT2724386.CT2727622.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727622.alertChannelId", "1119884");
Deleted: user_pref(""CT2724386.CT2727646.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727646.alertChannelId", "1119908");
Deleted: user_pref(""CT2724386.CT2727678.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727678.alertChannelId", "1119940");
Deleted: user_pref(""CT2724386.CT2727750.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CT2727750.alertChannelId", "1120012");
Deleted: user_pref(""CT2724386.CommunitiesChangesLastCheckTime", "Tue Jan 03 2012 06:34:56 GMT+1100 (Pacific[...]
Deleted: user_pref(""CT2724386.CommunitiesChangesLastUrl", "hxxp://grouping.services.conduit.com/GroupingReque[...]
Deleted: user_pref(""CT2724386.CommunityChanged", true);
Deleted: user_pref(""CT2724386.CurrentServerDate", "24-5-2012");
Deleted: user_pref(""CT2724386.DialogsAlignMode", "LTR");
Deleted: user_pref(""CT2724386.DialogsGetterLastCheckTime", "Wed May 23 2012 07:57:43 GMT+1100 (Pacific Center)[...]
Deleted: user_pref(""CT2724386.DownloadDomainsCheckInterval", "168");
Deleted: user_pref(""CT2724386.DownloadDomainsListLastCheckTime", "Fri Dec 23 2011 17:54:07 GMT+1100 (Pacifique[...]
Deleted: user_pref(""CT2724386.DownloadDomainsListLastServerUpdateTime", "1201069983");
Deleted: user_pref(""CT2724386.DownloadReferralCookieData", "");
Deleted: user_pref(""CT2724386.FirstServerDate", "9-9-2011");
Deleted: user_pref(""CT2724386.FirstTime", true);
Deleted: user_pref(""CT2724386.FirstTimeFF3", true);
Deleted: user_pref(""CT2724386.FixPageNotFoundErrors", false);
Deleted: user_pref(""CT2724386.GroupingLastCheckTime", "Mon Jan 02 2012 21:56:07 GMT+1100 (Pacific Center)")[...]
Deleted: user_pref(""CT2724386.GroupingLastErrorCode", "");
Deleted: user_pref(""CT2724386.GroupingLastResponse", true);
Deleted: user_pref(""CT2724386.GroupingLastServerUpdateTime", "129690351023070000");
Deleted: user_pref(""CT2724386.GroupingServerCheckInterval", 1440);
Deleted: user_pref(""CT2724386.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Deleted: user_pref(""CT2724386.HasUserGlobalKeys", true);
Deleted: user_pref(""CT2724386.HomePageProtectorEnabled", false);
Deleted: user_pref(""CT2724386.Initialize", true);
Deleted: user_pref(""CT2724386.InitializeCommonPrefs", true);
Deleted: user_pref(""CT2724386.InstallationAndCookieDataSentCount", 3);
Deleted: user_pref(""CT2724386.InstallationType", "Unknown");
Deleted: user_pref(""CT2724386.InstalledDate", "Fri Sep 09 2011 09:43:38 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.InvalidateCache", false);
Deleted: user_pref(""CT2724386.IsAlertDBUpdated", true);
Deleted: user_pref(""CT2724386.IsGrouping", false);
Deleted: user_pref(""CT2724386.IsInitSetupIni", true);
Deleted: user_pref(""CT2724386.IsMulticommunity", false);
Deleted: user_pref(""CT2724386.IsOpenThankYouPage", true);
Deleted: user_pref(""CT2724386.IsOpenUninstallPage", true);
Deleted: user_pref(""CT2724386.IsProtectorsInit", true);
Deleted: user_pref(""CT2724386.LanguagePackLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Center)[...]
Deleted: user_pref(""CT2724386.LanguagePackReloadIntervalMM", 1440);
Deleted: user_pref(""CT2724386.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Deleted: user_pref(""CT2724386.LastLogin_3.10.0.1", "Fri Apr 27 2012 15:00:10 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.12.2.3", "Thu May 24 2012 08:45:54 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.6.0.10", "Wed Sep 28 2011 11:54:58 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.7.0.6", "Wed Nov 09 2011 06:15:23 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.8.0.8", "Wed Dec 28 2011 16:23:39 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.8.1.0", "Wed Feb 01 2012 14:38:31 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LastLogin_3.9.0.3", "Fri Mar 09 2012 14:18:40 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.LatestVersion", "3.12.2.3");
Deleted: user_pref(""CT2724386.Locale", "en");
Deleted: user_pref(""CT2724386.MCDetectTooltipHeight", "83");
Deleted: user_pref(""CT2724386.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Deleted: user_pref(""CT2724386.MCDetectTooltipWidth", "295");
Deleted: user_pref(""CT2724386.MyStuffEnabledAtInstallation", true);
Deleted: user_pref(""CT2724386.OriginalFirstVersion", "3.6.0.10");
Deleted: user_pref(""CT2724386.RadioIsPodcast", false);
Deleted: user_pref(""CT2724386.RadioLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Center)");
Deleted: user_pref(""CT2724386.RadioLastUpdateIPServer", "3");
Deleted: user_pref(""CT2724386.RadioLastUpdateServer", "129249036863500000");
Deleted: user_pref(""CT2724386.RadioMediaID", "21080102");
Deleted: user_pref(""CT2724386.RadioMediaType", "Media Player");
Deleted: user_pref(""CT2724386.RadioMenuSelectedID", "EBRadioMenu_CT272438621080102");
Deleted: user_pref(""CT2724386.RadioShrinkedFromSetup", false);
Deleted: user_pref(""CT2724386.RadioStationName", "Mix%201620%20Am");
Deleted: user_pref(""CT2724386.RadioStationURL", "hxxp://69.115.65.9:8000");
Deleted: user_pref(""CT2724386.SearchEngineBeforeUnload", "Search the web (Babylon)");
Deleted: user_pref(""CT2724386.SearchFromAddressBarIsInit", true);
Deleted: user_pref(""CT2724386.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT272[...]
Deleted: user_pref(""CT2724386.SearchInNewTabEnabled", true);
Deleted: user_pref(""CT2724386.SearchInNewTabIntervalMM", 1440);
Deleted: user_pref(""CT2724386.SearchInNewTabLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Cen[...]
Deleted: user_pref(""CT2724386.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Deleted: user_pref(""CT2724386.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usa[...]
Deleted: user_pref(""CT2724386.SearchProtectorEnabled", false);
Deleted: user_pref(""CT2724386.SearchProtectorToolbarDisabled", false);
Deleted: user_pref(""CT2724386.ServiceMapLastCheckTime", "Wed May 23 2012 10:32:56 GMT+1100 (Pacific Centre)[...]
Deleted: user_pref(""CT2724386.SettingsLastCheckTime", "Thu May 24 2012 07:39:53 GMT+1100 (Pacific Centre)")[...]
Deleted: user_pref(""CT2724386.SettingsLastUpdate", "1337773031");
Deleted: user_pref(""CT2724386.ThirdPartyComponentsInterval", 504);
Deleted: user_pref(""CT2724386.ThirdPartyComponentsLastCheck", "Mon May 14 2012 07:15:16 GMT+1100 (Pacific C[...]
Deleted: user_pref(""CT2724386.ThirdPartyComponentsLastUpdate", "1331805997");
Deleted: user_pref(""CT2724386.ToolbarShrinkedFromSetup", false);
Deleted: user_pref(""CT2724386.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2724386");
Deleted: user_pref(""CT2724386.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]
Deleted: user_pref(""CT2724386.UserID", "UN17886901395892318");
Deleted: user_pref(""CT2724386.ValidationData_Search", 2);
Deleted: user_pref(""CT2724386.ValidationData_Toolbar", 2);
Deleted: user_pref(""CT2724386.WeatherNetwork", "");
Deleted: user_pref(""CT2724386.WeatherPollDate", "Thu May 24 2012 08:30:40 GMT+1100 (Pacific Centre)");
Deleted: user_pref(""CT2724386.WeatherUnit", "C");
Deleted: user_pref(""CT2724386.alertChannelId", "1116652");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e+x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e,x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e-x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e.x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e/x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e06cg5el8:", "6E6D6F6F6C736D707273");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e06cg5el;8i:k", "247E2D2F226A74737575727973767879242F4B4947[...]
Deleted: user_pref(""CT2724386.backendstorage./9b+7e0x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e1x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e2x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e3x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e4x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e5x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e6x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e7x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e8x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e9x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e:x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e;x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e<x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e=x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e>x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e?x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7e@x305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7eax305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7ebe3g=;d9n9=d", "372C2D326975762E3A3C7B3A39434A494841434B26[...]
Deleted: user_pref(""CT2724386.backendstorage./9b+7ebx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7ecx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7edx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b+7etx305", "2423");
Deleted: user_pref(""CT2724386.backendstorage./9b-0?3g>d", "3E70693E3D7475427A777148492048767679254C4E7B242A26[...]
Deleted: user_pref(""CT2724386.backendstorage./9b-0?3g@6:5;", "");
Deleted: user_pref(""CT2724386.backendstorage./9b-3=3eccja=f>", "247E333D2C452F4135276F292A212C393D44307832332[...]
Deleted: user_pref(""CT2724386.backendstorage./9b/>01=9a6k6<im;krie@pdawm", "6E6A68707374757677");
Deleted: user_pref(""CT2724386.backendstorage./9b3=>@44i48?", "372C2D326975763342363341484775213F3E484F4E4D464[...]
Deleted: user_pref(""CT2724386.backendstorage./9b5ba==9cjag", "693A3C3D40716D767A7378494674784978784C4F20");
Deleted: user_pref(""CT2724386.backendstorage./9b6b11g4c56b>f;p;anr@p", "6E6D6E726B726D757476787177");
Deleted: user_pref(""CT2724386.backendstorage./9b9643g3/9e", "6A");
Deleted: user_pref(""CT2724386.backendstorage./9b<:222h64<", "393F352F3E");
Deleted: user_pref(""CT2724386.backendstorage./9b=+03eh8h8j?:", "4443");
Deleted: user_pref(""CT2724386.backendstorage./9b?+e2a52d8", "372C2D326975762E3A3C7B3A39434A494841434B26514649[...]
Deleted: user_pref(""CT2724386.backendstorage./9b?b0d:8aj62<h", "6D");
Deleted: user_pref(""CT2724386.backendstorage./9ba@0<0bi6a7gn:6@l?", "6E6B");
Deleted: user_pref(""CT2724386.backendstorage.cb_firstuse0100", "31");
Deleted: user_pref(""CT2724386.backendstorage.cb_user_id_000", "434233313639393535343939335F46697265666F78");
Deleted: user_pref(""CT2724386.backendstorage.cbcountry_000", "4E43");
Deleted: user_pref(""CT2724386.backendstorage.cbfirsttime", "4D6F6F6F6C736D707273");
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api10_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api15_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api16_thetrafficstat_net.pid2", "623435353463353736616364[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api18_thetrafficstat_net.pid2", "623435353463353736616364[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api19_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api20_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api21_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api22_thetrafficstat_net.pid2", "623435353463353736616364[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api25_thetrafficstat_net.pid2", "333364623330663965363963[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api26_thetrafficstat_net.pid2", "383462326466333933346532[...]
Deleted: user_pref(""CT2724386.backendstorage.hxxp://api29_thetrafficstat_net.pid2",
Hello,
1/
* You can check your Java Console by clicking on this link: https://www.java.com/fr/download/uninstalltool.jsp
* Install the new version if necessary (in this case, uninstall the old version first).
* Download this file from this link: http://raproducts.org/click/click.php?id=1
* Unzip JavaRa on the Desktop (Right-click > Extract All).
* Double-click (right-click "run as administrator" for Vista) on the JavaRa directory.
* Then double-click on the JavaRa.exe file (the exe may not be displayed).
* Choose French and then click on Select.
* Click on Check for updates.
* Select Update via jucheck.exe and then click on Search.
* Allow the process to connect if prompted, click on Install and follow the installation instructions which take a few minutes.
* The installation is complete, go back to the JavaRa screen and click on Remove old versions.
* Click Yes to confirm. Let it work and then click OK, then
once more on OK.
* A report will open. Post it in your next response.
* Close the application.
Note: the report is also located in C:\ under the name JavaRa.log.
2/
Launch ZHPDiag from the desktop, click on: the green tab (down arrow) to update and please prepare a new ZHPDiag report
@+
--
_ _ _ Fish66_ _ _ I''"""""I_ _ security contributor member_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
1/
Java update:
* You can check your Java Console by clicking on this link: https://www.java.com/fr/download/uninstalltool.jsp
* Install the new version if necessary (in this case, uninstall the old version first).
here's how to uninstall JavaRa:
* Download this file from this link: http://raproducts.org/click/click.php?id=1
* Unzip JavaRa on the Desktop (Right-click > Extract All).
* Double-click (right-click "run as administrator" for Vista) on the JavaRa directory.
* Then double-click on the JavaRa.exe file (the exe may not be displayed).
* Choose French and then click on Select.
* Click on Check for updates.
* Select Update via jucheck.exe and then click on Search.
* Allow the process to connect if prompted, click on Install and follow the installation instructions which take a few minutes.
* The installation is complete, go back to the JavaRa screen and click on Remove old versions.
* Click Yes to confirm. Let it work and then click OK, then
once more on OK.
* A report will open. Post it in your next response.
* Close the application.
Note: the report is also located in C:\ under the name JavaRa.log.
2/
Launch ZHPDiag from the desktop, click on: the green tab (down arrow) to update and please prepare a new ZHPDiag report
@+
--
_ _ _ Fish66_ _ _ I''"""""I_ _ security contributor member_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
JavaRa 1.16 Removal Log.
Le rapport suit après la ligne.
------------------------------------
Le processus de suppression de JavaRa a été lancé le samedi 26 mai 2012 à 18:52:54.
Trouvé et supprimé : C:\Program Files\Java\jre1.6.0_03
Trouvé et supprimé : C:\Program Files\Java\jre1.6.0_05
Trouvé et supprimé : C:\Program Files\Java\jre1.6.0_07
Trouvé et supprimé : C:\Documents and Settings\LOIC\Application Data\Sun\Java\jre1.6.0_11
Trouvé et supprimé : C:\Documents and Settings\LOIC\Application Data\Sun\Java\jre1.6.0_13
Trouvé et supprimé : C:\Documents and Settings\LOIC\Application Data\Sun\Java\jre1.6.0_15
Trouvé et supprimé : Applications\java.exe
Trouvé et supprimé : Applications\javaw.exe
Trouvé et supprimé : JavaPlugin.FamilyVersionSupport
Trouvé et supprimé : Installer\Products\8A0F842331866D117AB7000B0D610007
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}
Trouvé
Le rapport suit après la ligne.
------------------------------------
Le processus de suppression de JavaRa a été lancé le samedi 26 mai 2012 à 18:52:54.
Trouvé et supprimé : C:\Program Files\Java\jre1.6.0_03
Trouvé et supprimé : C:\Program Files\Java\jre1.6.0_05
Trouvé et supprimé : C:\Program Files\Java\jre1.6.0_07
Trouvé et supprimé : C:\Documents and Settings\LOIC\Application Data\Sun\Java\jre1.6.0_11
Trouvé et supprimé : C:\Documents and Settings\LOIC\Application Data\Sun\Java\jre1.6.0_13
Trouvé et supprimé : C:\Documents and Settings\LOIC\Application Data\Sun\Java\jre1.6.0_15
Trouvé et supprimé : Applications\java.exe
Trouvé et supprimé : Applications\javaw.exe
Trouvé et supprimé : JavaPlugin.FamilyVersionSupport
Trouvé et supprimé : Installer\Products\8A0F842331866D117AB7000B0D610007
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
Trouvé et supprimé : CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}
Trouvé
```html
Report from ZHPDiag v1.31.095 by Nicolas Coolman, Update of 05/24/2012
Run by LOIC on 05/26/2012 19:06:45
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Up-to-date version.
---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.18702
MFIE: Mozilla Firefox 12.0 v12.0 (Default)
GCIE: Google Chrome
---\\ Windows Product Information
~ Language: French
Windows XP Professional Service Pack 3 (Build 2600)
Windows Automatic Updates : OK
Windows Genuine Advantage : OK
---\\ System Information
~ Processor: x86 Family 6 Model 15 Stepping 6, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1013 MB (28% free)
System Restore: Enabled
System drive C: has 108 GB (72%) free of 149 GB
---\\ Logged in mode
~ Computer Name: PCDELOIC
~ User Name: LOIC
~ All Users Names: SUPPORT_388945a0, LOIC, HelpAssistant, Administrator,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator
---\\ Environment Variables
~ System Unit : C:\
~ %AppData% : C:\Documents and Settings\LOIC\Application Data\
~ %Desktop% : C:\Documents and Settings\LOIC\Desktop\
~ %Favorites% : C:\Documents and Settings\LOIC\Favorites\
~ %LocalAppData% : C:\Documents and Settings\LOIC\Local Settings\Application Data\
~ %StartMenu% : C:\Documents and Settings\LOIC\Start Menu\
~ %Windir% : C:\WINDOWS\
~ %System% : C:\WINDOWS\system32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 108 GB of 149 GB)
D:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Information
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s
---\\ Specific Search for Generic Files
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Windows Explorer.) (.04/14/2008 - 13:34:03.) -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.D44608FCA100A5C48053588517517028] - (.Microsoft Corporation - Internet Extensions for Win32.) (.03/01/2012 - 22:00:23.) -- C:\WINDOWS\system32\wininet.dll [916992]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Windows NT Logon Application.) (.04/14/2008 - 13:34:28.) -- C:\WINDOWS\system32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.08/18/2011 - 00:49:54.) -- C:\WINDOWS\system32\Drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.04/14/2008 - 05:40:30.) -- C:\WINDOWS\system32\Drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) (.04/14/2008 - 06:14:21.) -- C:\WINDOWS\system32\Drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.04/14/2008 - 05:40:46.) -- C:\WINDOWS\system32\Drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - FIPS Cryptographic Driver.) (.04/14/2008 - 12:57:38.) -- C:\WINDOWS\system32\Drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) (.04/14/2008 - 03:36:05.) -- C:\WINDOWS\system32\Drivers\HDAudBus.sys [144384]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) (.04/14/2008 - 05:40:58.) -- C:\WINDOWS\system32\Drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) (.04/14/2008 - 05:57:15.) -- C:\WINDOWS\system32\Drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) (.04/14/2008 - 06:19:42.) -- C:\WINDOWS\system32\Drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.07/16/2011 - 00:29:31.) -- C:\WINDOWS\system32\Drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) (.04/14/2008 - 06:21:00.) -- C:\WINDOWS\system32\Drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.04/14/2008 - 06:15:53.) -- C:\WINDOWS\system32\Drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Parallel Port Driver.) (.04/14/2008 - 13:09:40.) -- C:\WINDOWS\system32\Drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.04/14/2008 - 06:19:43.) -- C:\WINDOWS\system32\Drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.04/14/2008 - 05:32:51.) -- C:\WINDOWS\system32\Drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Red Book Audio Filter Driver.) (.04/14/2008 - 12:57:34.) -- C:\WINDOWS\system32\Drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Volume Shadow Copy Driver.) (.04/14/2008 - 12:56:04.) -- C:\WINDOWS\system32\Drivers\volsnap.sys [53376]
~ Scan Generic Processes in 00mn 00s
---\\ Status of Hidden Files (Hidden/Total)
~ My images (My Pictures) : 2/6869
~ My music (My Musics) : 1/39
~ My Videos (My Video) : 0/1
~ My Favorites (My Favorites) : 1/174
~ My Documents (My Documents) : 2/8069
~ My Desktop (My Desktop) : 1/301
~ Start Menu (Programs) : 1/28
~ Scan Hidden Files in 00mn 02s
---\\ Running Processes
[MD5.927754ABF077AEB5504BE4E0F2C60C1B] - (.Logitech Inc. - Logitech User mode UMVPF service.) -- C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848] [PID.1640]
[MD5.DB338A6BD3976904EB0F8343F51E64EB] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe [297752] [PID.2040]
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.160]
[MD5.73355C98FB1F78876061A8B16E87FCD4] - (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe [114688] [PID.556]
[MD5.0A5709543986843D37A92290B7838340] - (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376] [PID.936]
[MD5.FBE91A94539DF386E815B5E0DEF31011] - (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe [94208] [PID.1060]
[MD5.1BE6FBEE744B1F35A8A57D7468DAA686] - (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe [843776] [PID.1320]
[MD5.37427195F66A7FECF43CFF57FBC6385C] - (.No owner - Printer Communication System.) -- C:\WINDOWS\system32\lxdncoms.exe [589824] [PID.1328]
[MD5.21293443961A4E2597453EE7A9347F22] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [54840] [PID.836]
[MD5.F0431C490F124A8CC874163E6A38DD28] - (.Logitech Inc. - LVCom Server.) -- C:\WINDOWS\system32\LVCOMSX.exe [221184] [PID.1444]
[MD5.11F714F85530A2BD134074DC30E99FCA] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.exe [322120] [PID.1716]
[MD5.2E35CE78141C99D2E0E88DCCDE89FB99] - (.No owner - Printer Device Monitor.) -- C:\Program Files\Lexmark 2600 Series\lxdnmon.exe [660136] [PID.1732]
[MD5.65EA6EB029BB031773473AD9A78A666D] - (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Service.) -- C:\Program Files\AVG\AVG8\avgrsx.exe [486680] [PID.1744]
[MD5.41986D0C4D94AF7824F3A3A8D30424BC] - (.No owner - Printer Card Transfer Monitor.) -- C:\Program Files\Lexmark 2600 Series\lxdnMsdMon.exe [25256] [PID.1788]
[MD5.2D091A99624FB9E7EEF0A86D872EC0C3] - (.HP - PML Driver.) -- C:\WINDOWS\system32\HPZipm12.exe [73728] [PID.1964]
[MD5.8FFCFE3351F51E19B856A2347E19B850] - (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe [205336] [PID.404]
[MD5.20C8014D81A08F0BC8ABD1DB6CF0C70B] - (.No owner - VProtect Application.) -- C:\Program Files\AVG Secure Search\vprot.exe [982880] [PID.500]
[MD5.FC3CCDC979CE75AFF02DAF3B7286D0A1] - (.Garmin - Garmin Lifetime Updater.) -- C:\Program Files\Garmin\Lifetime Updater\GarminLifetime.exe [1446760] [PID.640]
[MD5.6A2FC790CD507336E05B7FAE29D79432] - (.SFX TEAM - SuperCopier 2 (explorer file copy replacement.)) -- C:\Program Files\SuperCopier2\SuperCopier2.exe [1057280] [PID.2200]
[MD5.3080F1F093869A19FB3D1F0226C73809] - (.No owner - ToolbarU Application.) -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe [918880] [PID.2196]
[MD5.B9AE3C63A53396CD669EF8AE9C9CBD85] - (.AVG Technologies CZ, s.r.o. - AVG E-Mail Scanner.) -- C:\Program Files\AVG\AVG8\avgemc.exe [908056] [PID.2296]
[MD5.0FF101F5C767393195602237E211B311] - (.Logitech Inc. - Logitech Vid HD.) -- C:\Program Files\Logitech\Vid HD\Vid.exe [6123032] [PID.2604]
[MD5.EE7B9D446C9C49228008CB39204C5CAA] - (.FUJIFILM Corporation - Exif Launcher 2.) -- C:\Program Files\FinePixViewer\QuickDCF2.exe [303104] [PID.2816]
[MD5.98D6BB2D06986E9E1051F2CBE3CF6E7A] - (.AVG Technologies CZ, s.r.o. - AVG Scanning Core Module - Server Part.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe [693016] [PID.3176]
[MD5.5E9A6658A2A69AE7EB195113B7A2E7A9] - (.Microsoft Corporation - Application Layer Gateway Service.) -- C:\WINDOWS\System32\alg.exe [44544] [PID.268]
[MD5.19D1826D55DE9F74FA639825887D3843] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [263624] [PID.1244]
[MD5.DCF3E3EDF5109EE8BC02FE6E1F045795] - (.Microsoft Corporation - wpffontcache_v0400.exe.) -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [753504] [PID.2184]
[MD5.C5B6EAB9AC836E024703B4B8E98281E0] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366024] [PID.4052]
[MD5.FEE2BA1AD38F457F418E82EA30724053] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\WINDOWS\system32\msfeedssync.exe [13312] [PID.4444]
[MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\WINDOWS\system32\wuauclt.exe [53472] [PID.6328]
[MD5.8E53B67FA3816E854B07C5DC66E10730] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\program files\real\realplayer\update\realsched.exe [296056] [PID.8764]
[MD5.A6CF4FF9BE1202800C22EC5A6A7CF4A6] - (.AVG Technologies CZ, s.r.o. - AVG Network scanner Service.) -- C:\Program Files\AVG\AVG8\avgnsx.exe [595736] [PID.10132]
[MD5.4F69AABB5D82AA4EF6DFF7871212ADF6] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [924600] [PID.10068]
[MD5.A7B6857B7503D9CA4F40D17A7EBB67FB] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16824] [PID.3976]
[MD5.CC926B0811C3FA2363C98711410FEF24] - (...) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [4540928] [PID.4760]
~ Scan Processes Running in 00mn 00s
---\\ Google Chrome, Startup, Search, Extensions (G0,G1,G2)
C:\Documents and Settings\LOIC\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s
---\\ Mozilla Firefox, Plugins, Startup, Search, Extensions (P2,M0,M1,M2,M3)
C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\prefs.js
M3 - MFPP: Plugins - [LOIC] -- C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\searchplugins\live-search.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\avg-secure-search.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
M0 - MFSP: prefs.js [LOIC - 6gbv4plk.default] https://www.espn.co.uk/f1/
M2 - MFEP: prefs.js [LOIC - 6gbv4plk.default\{181F4BBC-2453-40D2-B42C-3135E3B07C7B}] [] Free software Gooofull toolbar v1.1.2 (.Abingerdale, Ltd..)
M2 - MFEP: prefs.js [LOIC - 6gbv4plk.default\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}] [] Garmin Communicator v3.0.1 (.Garmin International.)
M2 - MFEP: prefs.js [LOIC - 6gbv4plk.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
P2 - FPN: [HKLM] [@garmin.com/GpsControl] - (.GARMIN Corp. - Garmin Communicator Plug-In 4.0.1.0.) -- C:\Program Files\Garmin GPS Plugin\npGarmin.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_31 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.1.10329.0.) -- c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (...) -- C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (.not file.)
P2 - FPN: [HKLM] [@real.com/nppl3260;version=15.0.4.53] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- c:\program files\real\realplayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=15.0.4.53] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- c:\program files\real\realplayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.4.53] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlug
P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.4.53] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videosh
P2 - FPN: [HKLM] [@real.com/nprpplugin;version=15.0.4.53] - (.RealPlayer - RealPlayer Download Plugin.) -- c:\program files\real\realplayer\Netscape6\nprpplugin.dll
P2 - FPN: [HKLM] [@real.com/RhapsodyPlayerEngine,version=1.0] - (...) -- C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll (.not file.)
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.1] - (.VideoLAN - VLC media player Web Plugin 2.0.0.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.3.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [@real.com/RhapsodyPlayerEngine] - (...) -- C:\Documents and Settings\LOIC\Application Data\nprhapengine.dll (.not file.)
~ Scan Firefox Browser in 00mn 00s
---\\ Internet Explorer, Startup, Search, URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.espn.co.uk/f1/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = ```
Run by LOIC on 05/26/2012 19:06:45
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Up-to-date version.
---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.18702
MFIE: Mozilla Firefox 12.0 v12.0 (Default)
GCIE: Google Chrome
---\\ Windows Product Information
~ Language: French
Windows XP Professional Service Pack 3 (Build 2600)
Windows Automatic Updates : OK
Windows Genuine Advantage : OK
---\\ System Information
~ Processor: x86 Family 6 Model 15 Stepping 6, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1013 MB (28% free)
System Restore: Enabled
System drive C: has 108 GB (72%) free of 149 GB
---\\ Logged in mode
~ Computer Name: PCDELOIC
~ User Name: LOIC
~ All Users Names: SUPPORT_388945a0, LOIC, HelpAssistant, Administrator,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator
---\\ Environment Variables
~ System Unit : C:\
~ %AppData% : C:\Documents and Settings\LOIC\Application Data\
~ %Desktop% : C:\Documents and Settings\LOIC\Desktop\
~ %Favorites% : C:\Documents and Settings\LOIC\Favorites\
~ %LocalAppData% : C:\Documents and Settings\LOIC\Local Settings\Application Data\
~ %StartMenu% : C:\Documents and Settings\LOIC\Start Menu\
~ %Windir% : C:\WINDOWS\
~ %System% : C:\WINDOWS\system32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 108 GB of 149 GB)
D:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Information
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s
---\\ Specific Search for Generic Files
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Windows Explorer.) (.04/14/2008 - 13:34:03.) -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.D44608FCA100A5C48053588517517028] - (.Microsoft Corporation - Internet Extensions for Win32.) (.03/01/2012 - 22:00:23.) -- C:\WINDOWS\system32\wininet.dll [916992]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Windows NT Logon Application.) (.04/14/2008 - 13:34:28.) -- C:\WINDOWS\system32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.08/18/2011 - 00:49:54.) -- C:\WINDOWS\system32\Drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.04/14/2008 - 05:40:30.) -- C:\WINDOWS\system32\Drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) (.04/14/2008 - 06:14:21.) -- C:\WINDOWS\system32\Drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.04/14/2008 - 05:40:46.) -- C:\WINDOWS\system32\Drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - FIPS Cryptographic Driver.) (.04/14/2008 - 12:57:38.) -- C:\WINDOWS\system32\Drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) (.04/14/2008 - 03:36:05.) -- C:\WINDOWS\system32\Drivers\HDAudBus.sys [144384]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) (.04/14/2008 - 05:40:58.) -- C:\WINDOWS\system32\Drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) (.04/14/2008 - 05:57:15.) -- C:\WINDOWS\system32\Drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) (.04/14/2008 - 06:19:42.) -- C:\WINDOWS\system32\Drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.07/16/2011 - 00:29:31.) -- C:\WINDOWS\system32\Drivers\MRxSmb.sys [456320]
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) (.04/14/2008 - 06:21:00.) -- C:\WINDOWS\system32\Drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.04/14/2008 - 06:15:53.) -- C:\WINDOWS\system32\Drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Parallel Port Driver.) (.04/14/2008 - 13:09:40.) -- C:\WINDOWS\system32\Drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.04/14/2008 - 06:19:43.) -- C:\WINDOWS\system32\Drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.04/14/2008 - 05:32:51.) -- C:\WINDOWS\system32\Drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Red Book Audio Filter Driver.) (.04/14/2008 - 12:57:34.) -- C:\WINDOWS\system32\Drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Volume Shadow Copy Driver.) (.04/14/2008 - 12:56:04.) -- C:\WINDOWS\system32\Drivers\volsnap.sys [53376]
~ Scan Generic Processes in 00mn 00s
---\\ Status of Hidden Files (Hidden/Total)
~ My images (My Pictures) : 2/6869
~ My music (My Musics) : 1/39
~ My Videos (My Video) : 0/1
~ My Favorites (My Favorites) : 1/174
~ My Documents (My Documents) : 2/8069
~ My Desktop (My Desktop) : 1/301
~ Start Menu (Programs) : 1/28
~ Scan Hidden Files in 00mn 02s
---\\ Running Processes
[MD5.927754ABF077AEB5504BE4E0F2C60C1B] - (.Logitech Inc. - Logitech User mode UMVPF service.) -- C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848] [PID.1640]
[MD5.DB338A6BD3976904EB0F8343F51E64EB] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe [297752] [PID.2040]
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.160]
[MD5.73355C98FB1F78876061A8B16E87FCD4] - (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe [114688] [PID.556]
[MD5.0A5709543986843D37A92290B7838340] - (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376] [PID.936]
[MD5.FBE91A94539DF386E815B5E0DEF31011] - (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe [94208] [PID.1060]
[MD5.1BE6FBEE744B1F35A8A57D7468DAA686] - (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe [843776] [PID.1320]
[MD5.37427195F66A7FECF43CFF57FBC6385C] - (.No owner - Printer Communication System.) -- C:\WINDOWS\system32\lxdncoms.exe [589824] [PID.1328]
[MD5.21293443961A4E2597453EE7A9347F22] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [54840] [PID.836]
[MD5.F0431C490F124A8CC874163E6A38DD28] - (.Logitech Inc. - LVCom Server.) -- C:\WINDOWS\system32\LVCOMSX.exe [221184] [PID.1444]
[MD5.11F714F85530A2BD134074DC30E99FCA] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.exe [322120] [PID.1716]
[MD5.2E35CE78141C99D2E0E88DCCDE89FB99] - (.No owner - Printer Device Monitor.) -- C:\Program Files\Lexmark 2600 Series\lxdnmon.exe [660136] [PID.1732]
[MD5.65EA6EB029BB031773473AD9A78A666D] - (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Service.) -- C:\Program Files\AVG\AVG8\avgrsx.exe [486680] [PID.1744]
[MD5.41986D0C4D94AF7824F3A3A8D30424BC] - (.No owner - Printer Card Transfer Monitor.) -- C:\Program Files\Lexmark 2600 Series\lxdnMsdMon.exe [25256] [PID.1788]
[MD5.2D091A99624FB9E7EEF0A86D872EC0C3] - (.HP - PML Driver.) -- C:\WINDOWS\system32\HPZipm12.exe [73728] [PID.1964]
[MD5.8FFCFE3351F51E19B856A2347E19B850] - (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe [205336] [PID.404]
[MD5.20C8014D81A08F0BC8ABD1DB6CF0C70B] - (.No owner - VProtect Application.) -- C:\Program Files\AVG Secure Search\vprot.exe [982880] [PID.500]
[MD5.FC3CCDC979CE75AFF02DAF3B7286D0A1] - (.Garmin - Garmin Lifetime Updater.) -- C:\Program Files\Garmin\Lifetime Updater\GarminLifetime.exe [1446760] [PID.640]
[MD5.6A2FC790CD507336E05B7FAE29D79432] - (.SFX TEAM - SuperCopier 2 (explorer file copy replacement.)) -- C:\Program Files\SuperCopier2\SuperCopier2.exe [1057280] [PID.2200]
[MD5.3080F1F093869A19FB3D1F0226C73809] - (.No owner - ToolbarU Application.) -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe [918880] [PID.2196]
[MD5.B9AE3C63A53396CD669EF8AE9C9CBD85] - (.AVG Technologies CZ, s.r.o. - AVG E-Mail Scanner.) -- C:\Program Files\AVG\AVG8\avgemc.exe [908056] [PID.2296]
[MD5.0FF101F5C767393195602237E211B311] - (.Logitech Inc. - Logitech Vid HD.) -- C:\Program Files\Logitech\Vid HD\Vid.exe [6123032] [PID.2604]
[MD5.EE7B9D446C9C49228008CB39204C5CAA] - (.FUJIFILM Corporation - Exif Launcher 2.) -- C:\Program Files\FinePixViewer\QuickDCF2.exe [303104] [PID.2816]
[MD5.98D6BB2D06986E9E1051F2CBE3CF6E7A] - (.AVG Technologies CZ, s.r.o. - AVG Scanning Core Module - Server Part.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe [693016] [PID.3176]
[MD5.5E9A6658A2A69AE7EB195113B7A2E7A9] - (.Microsoft Corporation - Application Layer Gateway Service.) -- C:\WINDOWS\System32\alg.exe [44544] [PID.268]
[MD5.19D1826D55DE9F74FA639825887D3843] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [263624] [PID.1244]
[MD5.DCF3E3EDF5109EE8BC02FE6E1F045795] - (.Microsoft Corporation - wpffontcache_v0400.exe.) -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [753504] [PID.2184]
[MD5.C5B6EAB9AC836E024703B4B8E98281E0] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366024] [PID.4052]
[MD5.FEE2BA1AD38F457F418E82EA30724053] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\WINDOWS\system32\msfeedssync.exe [13312] [PID.4444]
[MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\WINDOWS\system32\wuauclt.exe [53472] [PID.6328]
[MD5.8E53B67FA3816E854B07C5DC66E10730] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\program files\real\realplayer\update\realsched.exe [296056] [PID.8764]
[MD5.A6CF4FF9BE1202800C22EC5A6A7CF4A6] - (.AVG Technologies CZ, s.r.o. - AVG Network scanner Service.) -- C:\Program Files\AVG\AVG8\avgnsx.exe [595736] [PID.10132]
[MD5.4F69AABB5D82AA4EF6DFF7871212ADF6] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [924600] [PID.10068]
[MD5.A7B6857B7503D9CA4F40D17A7EBB67FB] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16824] [PID.3976]
[MD5.CC926B0811C3FA2363C98711410FEF24] - (...) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [4540928] [PID.4760]
~ Scan Processes Running in 00mn 00s
---\\ Google Chrome, Startup, Search, Extensions (G0,G1,G2)
C:\Documents and Settings\LOIC\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s
---\\ Mozilla Firefox, Plugins, Startup, Search, Extensions (P2,M0,M1,M2,M3)
C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\prefs.js
M3 - MFPP: Plugins - [LOIC] -- C:\Documents and Settings\LOIC\Application Data\Mozilla\Firefox\Profiles\6gbv4plk.default\searchplugins\live-search.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\avg-secure-search.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [LOIC] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
M0 - MFSP: prefs.js [LOIC - 6gbv4plk.default] https://www.espn.co.uk/f1/
M2 - MFEP: prefs.js [LOIC - 6gbv4plk.default\{181F4BBC-2453-40D2-B42C-3135E3B07C7B}] [] Free software Gooofull toolbar v1.1.2 (.Abingerdale, Ltd..)
M2 - MFEP: prefs.js [LOIC - 6gbv4plk.default\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}] [] Garmin Communicator v3.0.1 (.Garmin International.)
M2 - MFEP: prefs.js [LOIC - 6gbv4plk.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
P2 - FPN: [HKLM] [@garmin.com/GpsControl] - (.GARMIN Corp. - Garmin Communicator Plug-In 4.0.1.0.) -- C:\Program Files\Garmin GPS Plugin\npGarmin.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_31 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.1.10329.0.) -- c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (...) -- C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (.not file.)
P2 - FPN: [HKLM] [@real.com/nppl3260;version=15.0.4.53] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- c:\program files\real\realplayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=15.0.4.53] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- c:\program files\real\realplayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.4.53] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlug
P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.4.53] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videosh
P2 - FPN: [HKLM] [@real.com/nprpplugin;version=15.0.4.53] - (.RealPlayer - RealPlayer Download Plugin.) -- c:\program files\real\realplayer\Netscape6\nprpplugin.dll
P2 - FPN: [HKLM] [@real.com/RhapsodyPlayerEngine,version=1.0] - (...) -- C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll (.not file.)
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.1] - (.VideoLAN - VLC media player Web Plugin 2.0.0.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.3.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
P2 - FPN: [HKCU] [@real.com/RhapsodyPlayerEngine] - (...) -- C:\Documents and Settings\LOIC\Application Data\nprhapengine.dll (.not file.)
~ Scan Firefox Browser in 00mn 00s
---\\ Internet Explorer, Startup, Search, URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.espn.co.uk/f1/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = ```
Hi,
Host the report as follows:
Go to pjjoint.malekal.com
* Click on the Browse button
* Select the file you want to host and click Open
* Click on the Send button
* A confirmation message will appear (Upload successful! - The link to share with your contacts to view the file is: https://pjjoint.malekal.com/files.php?id=df5ea299241015
* Copy the link in your next reply.
See you later
--
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
Host the report as follows:
Go to pjjoint.malekal.com
* Click on the Browse button
* Select the file you want to host and click Open
* Click on the Send button
* A confirmation message will appear (Upload successful! - The link to share with your contacts to view the file is: https://pjjoint.malekal.com/files.php?id=df5ea299241015
* Copy the link in your next reply.
See you later
--
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
Re,
You're welcome, but if you can't continue:
* Download Delfix to your desktop.
* Launch it, type "suppression" and confirm
* Wait during the scan until the report opens.
* Copy/Paste the content of the report into your next reply.
Note: The report is also located at C:\DelFix.txt
* You can uninstall it
@+
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
You're welcome, but if you can't continue:
* Download Delfix to your desktop.
* Launch it, type "suppression" and confirm
* Wait during the scan until the report opens.
* Copy/Paste the content of the report into your next reply.
Note: The report is also located at C:\DelFix.txt
* You can uninstall it
@+
_ _ _ Fish66_ _ _ I''"""""I_ _ contributor member security_ _I''"""""I_ _ _
¤¤¤ The best remedy for all problems is patience.... ¤¤¤
# DelFix v8.8 - Report created on 26/05/2012 at 21:39:19
# Updated on 12/02/12 by Xplode
# Operating system: Microsoft Windows XP Service Pack 3 (32 bits)
# Username: LOIC - PCDELOIC (Administrator)
# Executed from: C:\Documents and Settings\LOIC\My Documents\Downloads\delfix.exe
# Option [Deletion]
~~~~~~ Folder(s) ~~~~~~
Deleted: C:\VundoFix Backups
Deleted: C:\ZHP
Deleted: C:\Documents and Settings\All Users\Start Menu\Programs\ZHP
Deleted: C:\Program Files\Ad-Remover
Deleted: C:\Program Files\Navilog1
Deleted: C:\Program Files\ZHPDiag
~~~~~~ File(s) ~~~~~~
Deleted: C:\Ad-Report-CLEAN[1].txt
Deleted: C:\AdwCleaner[S1].txt
Deleted: C:\JavaRa.log
Deleted: C:\VundoFix.txt
Deleted: C:\Documents and Settings\LOIC\Desktop\AD-R.lnk
Deleted: C:\Documents and Settings\LOIC\Desktop\Shortcut to adwcleaner.exe.lnk
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\adwcleaner.exe
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\JavaRa.zip
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\ZHPDiag2(1).exe
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\ZHPDiag2(2).exe
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\ZHPDiag2.exe
Deleted: C:\Documents and Settings\All Users\Desktop\ZHPDiag.lnk
Deleted: C:\Documents and Settings\All Users\Desktop\ZHPFix.lnk
Deleted: C:\Documents and Settings\All Users\Desktop\MBRCheck.lnk
~~~~~~ Registry ~~~~~~
Key Deleted: HKCU\Software\Ad-Remover
Key Deleted: HKLM\SOFTWARE\AdwCleaner
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ad-Remover
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZHPDiag_is1
~~~~~~ Other ~~~~~~
-> Prefetch Video
*************************
DelFix[S1].txt - [1908 bytes] - [26/05/2012 21:39:19]
########## EOF - C:\DelFix[S1].txt - [2032 bytes] ##########
# Updated on 12/02/12 by Xplode
# Operating system: Microsoft Windows XP Service Pack 3 (32 bits)
# Username: LOIC - PCDELOIC (Administrator)
# Executed from: C:\Documents and Settings\LOIC\My Documents\Downloads\delfix.exe
# Option [Deletion]
~~~~~~ Folder(s) ~~~~~~
Deleted: C:\VundoFix Backups
Deleted: C:\ZHP
Deleted: C:\Documents and Settings\All Users\Start Menu\Programs\ZHP
Deleted: C:\Program Files\Ad-Remover
Deleted: C:\Program Files\Navilog1
Deleted: C:\Program Files\ZHPDiag
~~~~~~ File(s) ~~~~~~
Deleted: C:\Ad-Report-CLEAN[1].txt
Deleted: C:\AdwCleaner[S1].txt
Deleted: C:\JavaRa.log
Deleted: C:\VundoFix.txt
Deleted: C:\Documents and Settings\LOIC\Desktop\AD-R.lnk
Deleted: C:\Documents and Settings\LOIC\Desktop\Shortcut to adwcleaner.exe.lnk
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\adwcleaner.exe
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\JavaRa.zip
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\ZHPDiag2(1).exe
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\ZHPDiag2(2).exe
Deleted: C:\Documents and Settings\LOIC\My Documents\Downloads\ZHPDiag2.exe
Deleted: C:\Documents and Settings\All Users\Desktop\ZHPDiag.lnk
Deleted: C:\Documents and Settings\All Users\Desktop\ZHPFix.lnk
Deleted: C:\Documents and Settings\All Users\Desktop\MBRCheck.lnk
~~~~~~ Registry ~~~~~~
Key Deleted: HKCU\Software\Ad-Remover
Key Deleted: HKLM\SOFTWARE\AdwCleaner
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ad-Remover
Key Deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZHPDiag_is1
~~~~~~ Other ~~~~~~
-> Prefetch Video
*************************
DelFix[S1].txt - [1908 bytes] - [26/05/2012 21:39:19]
########## EOF - C:\DelFix[S1].txt - [2032 bytes] ##########
Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org
Database version: v2013.10.15.02
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Rachel :: MOUTREMER2 [administrator]
Protection: Enabled
15/10/2013 12:47:29
mbam-log-2013-10-15 (12-47-29).txt
Scan type: Full scan (C:\|D:\|E:\|)
Enabled scan options: Memory | Startup | Registry | File system | Heuristic/Extra | Heuristic/Shuriken | PUP | PUM
Disabled scan options: P2P
Element(s) scanned: 301422
Elapsed time: 32 minute(s), 6 second(s)
Memory processes detected: 5
C:\Program Files\tuto4pc_fr_59\tuto4pc_fr_59.exe (Adware.Tuto4PC) -> 2548 -> Scheduled for deletion at restart.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> 5712 -> Scheduled for deletion at restart.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> 5852 -> Scheduled for deletion at restart.
C:\ProgramData\eSafe\eGdpSvc.exe (PUP.Optional.Esafe.A) -> 2628 -> Scheduled for deletion at restart.
C:\Program Files\Wajam\Updater\WajamUpdaterV2.exe (PUP.Optional.Wajam.A) -> 5140 -> Scheduled for deletion at restart.
Memory modules detected: 1
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll (PUP.Optional.Protector) -> Scheduled for deletion at restart.
Registry key(s) detected: 143
HKLM\SYSTEM\CurrentControlSet\Services\BitGuard (PUP.Optional.PerformerSoft.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\wajam.WajamBHO.1 (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\wajam.WajamBHO (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho.1 (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho (Adware.Agent) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634} (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassSvc.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassSvc (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Successfully quarantined and deleted.
HKCR\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{F48FC5B2-094A-44C7-B48C-289738C9582D} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3COMClassService.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3COMClassService (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{1E0C9B2A-6447-452C-B012-2314A0C29412} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{34A8CEB6-89BB-49F1-B5E4-0D0D6C21F3B1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CredentialDialogMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CredentialDialogMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{3A4DBD3A-98CC-41CE-AD21-352D42B6F754} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoCreateAsync.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoCreateAsync (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{4F8A50F6-69DE-4BE3-A33A-A1079B9AC0DB} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachineFallback.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachineFallback (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{501CB57A-D4E2-4855-96AD-EDB0A9083395} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreMachineClass.1 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreMachineClass (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5} (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\wajam.WajamDownloader.1 (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\wajam.WajamDownloader (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{6FF2C4DD-77A4-4BB5-BA4C-B42DEFBF9137} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.ProcessLauncher.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.ProcessLauncher (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{83ABA270-8390-4CA6-AE48-FC089F55629E} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{8B218A5F-1A3D-4347-94EF-A79575EB8094} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.Update3WebControl.3 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{9BDB5E09-4BBA-4422-8C2B-529B281C32B8} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{ae48ed75-5a56-4c5f-bbce-6f1ac3875f66} (PUP.DealPly) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66} (PUP.DealPly) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66} (PUP.DealPly) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66} (PUP.DealPly) -> Successfully quarantined and deleted.
HKCR\CLSID\{C536F080-57B7-46D6-8894-C647553F2889} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.OneClickProcessLauncherMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.OneClickProcessLauncherMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C536F080-57B7-46D6-8894-C647553F2889} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{CA5D945F-E738-4D0B-A0B5-25AC51C64659} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreClass.1 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreClass (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{F7698761-4ABA-45C2-A5BB-D2163922C725} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebSvc.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebSvc (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho.1 (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{FFCC53E6-2655-47FC-A89B-54E8D7F305D1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DEALPLYLIVE.EXE (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} (PUP.Optional.PerformerSoft.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\WsysSvc (PUP.Optional.Esafe.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WsysControl (PUP.Optional.Esafe.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.BHO (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.BHO.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.Sandbox (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.Sandbox.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.BHO (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.BHO.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.Sandbox (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.Sandbox.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.OneClickCtrl.9 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\AppID\DealPlyLive.exe (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\AppID\priam_bho.DLL (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\AppID\PricePeep.DLL (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DealPlyLive (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DEALPLY (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Successfully quarantined and deleted.
HKCU\Software\AppDataLow\Software\PricePeep (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> Successfully quarantined and deleted.
HKCU\Software\InstalledBrowserExtensions\Lyrics (PUP.Optional.Lyrics.A) -> Successfully quarantined and deleted.
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\BPROTECTSETTINGS (PUP.Optional.BProtector.A) -> Scheduled for deletion at restart.
HKCU\Software\Systweak\RegClean Pro (PUP.Optional.RegCleanerPro.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\WAJAM (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\DealPlyLive (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\qvo6Software (PUP.Optional.qvo6.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\TUTO4PC (PUP.Tuto4PC) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\TUTO4PC (Trojan.EORezo) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\DEALPLY (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo (PUP.Optional.Elex.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Google\Chrome\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\WAJAM (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\dealplylive (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\dealplylivem (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\WajamUpdaterV2 (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\Software\LyricsBuddy-1 (PUP.Optional.LyricsBuddy.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Doko Chrome Toolbar (PUP.Optional.BabSolution.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCR\CLSID\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCR\TypeLib\{44444444-4444-4444-4444-440344434444} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCR\Interface\{55555555-5555-5555-5555-550355435544} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
Registry value(s) detected: 10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|tuto4pc_fr_59 (Adware.Tuto4PC) -> Data: "C:\Program Files\tuto4pc_fr_59\tuto4pc_fr_59.exe" -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DealPly|Partner (PUP.Optional.DealPly.A) -> Data: sft3 -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> Data: http://www.doko-search.com/?babsrc=HP_ss&mntrId=547FD43D7E31A288&affID=125836&tsp=5036 -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> Data: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} -> Scheduled for deletion at restart.
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Data: 0Z1N1J -> Successfully quarantined and deleted.
HKCU\Software\Wajam|affiliate_id (PUP.Optional.Wajam.A) -> Data: 6447 -> Successfully quarantined and deleted.
HKLM\SOFTWARE\DealPly|ChromeCrxPath (PUP.Optional.DealPly.A) -> Data: C:\Program Files\DealPly\DealPly.crx -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Wajam|red (PUP.Optional.Wajam.A) -> Data: 4 -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\BitGuard|ImagePath (PUP.Optional.BitGuard.A) -> Data: C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe -> Successfully quarantined and deleted.
www.malwarebytes.org
Database version: v2013.10.15.02
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16721
Rachel :: MOUTREMER2 [administrator]
Protection: Enabled
15/10/2013 12:47:29
mbam-log-2013-10-15 (12-47-29).txt
Scan type: Full scan (C:\|D:\|E:\|)
Enabled scan options: Memory | Startup | Registry | File system | Heuristic/Extra | Heuristic/Shuriken | PUP | PUM
Disabled scan options: P2P
Element(s) scanned: 301422
Elapsed time: 32 minute(s), 6 second(s)
Memory processes detected: 5
C:\Program Files\tuto4pc_fr_59\tuto4pc_fr_59.exe (Adware.Tuto4PC) -> 2548 -> Scheduled for deletion at restart.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> 5712 -> Scheduled for deletion at restart.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.PerformerSoft.A) -> 5852 -> Scheduled for deletion at restart.
C:\ProgramData\eSafe\eGdpSvc.exe (PUP.Optional.Esafe.A) -> 2628 -> Scheduled for deletion at restart.
C:\Program Files\Wajam\Updater\WajamUpdaterV2.exe (PUP.Optional.Wajam.A) -> 5140 -> Scheduled for deletion at restart.
Memory modules detected: 1
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll (PUP.Optional.Protector) -> Scheduled for deletion at restart.
Registry key(s) detected: 143
HKLM\SYSTEM\CurrentControlSet\Services\BitGuard (PUP.Optional.PerformerSoft.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\wajam.WajamBHO.1 (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\wajam.WajamBHO (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Successfully quarantined and deleted.
HKCR\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho.1 (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho (Adware.Agent) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (Adware.Agent) -> Successfully quarantined and deleted.
HKCR\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634} (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassSvc.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassSvc (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Successfully quarantined and deleted.
HKCR\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{F48FC5B2-094A-44C7-B48C-289738C9582D} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3COMClassService.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3COMClassService (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{1E0C9B2A-6447-452C-B012-2314A0C29412} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{34A8CEB6-89BB-49F1-B5E4-0D0D6C21F3B1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CredentialDialogMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CredentialDialogMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{3A4DBD3A-98CC-41CE-AD21-352D42B6F754} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoCreateAsync.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoCreateAsync (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{4F8A50F6-69DE-4BE3-A33A-A1079B9AC0DB} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachineFallback.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachineFallback (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{501CB57A-D4E2-4855-96AD-EDB0A9083395} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreMachineClass.1 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreMachineClass (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5} (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\wajam.WajamDownloader.1 (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\wajam.WajamDownloader (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{6FF2C4DD-77A4-4BB5-BA4C-B42DEFBF9137} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.ProcessLauncher.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.ProcessLauncher (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{83ABA270-8390-4CA6-AE48-FC089F55629E} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.OnDemandCOMClassMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{8B218A5F-1A3D-4347-94EF-A79575EB8094} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.Update3WebControl.3 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{9BDB5E09-4BBA-4422-8C2B-529B281C32B8} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{ae48ed75-5a56-4c5f-bbce-6f1ac3875f66} (PUP.DealPly) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66} (PUP.DealPly) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66} (PUP.DealPly) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE48ED75-5A56-4C5F-BBCE-6F1AC3875F66} (PUP.DealPly) -> Successfully quarantined and deleted.
HKCR\CLSID\{C536F080-57B7-46D6-8894-C647553F2889} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.OneClickProcessLauncherMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.OneClickProcessLauncherMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C536F080-57B7-46D6-8894-C647553F2889} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{CA5D945F-E738-4D0B-A0B5-25AC51C64659} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreClass.1 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.CoreClass (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{F7698761-4ABA-45C2-A5BB-D2163922C725} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebSvc.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebSvc (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho.1 (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\PricePeep.PricePeepBho (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\CLSID\{FFCC53E6-2655-47FC-A89B-54E8D7F305D1} (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachine.1.0 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLiveUpdate.Update3WebMachine (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DEALPLYLIVE.EXE (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} (PUP.Optional.PerformerSoft.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\WsysSvc (PUP.Optional.Esafe.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WsysControl (PUP.Optional.Esafe.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.BHO (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.BHO.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.Sandbox (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0034344.Sandbox.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.BHO (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.BHO.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.Sandbox (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\CrossriderApp0041868.Sandbox.1 (PUP.Optional.CrossRider.A) -> Successfully quarantined and deleted.
HKCR\DealPlyLive.OneClickCtrl.9 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\AppID\DealPlyLive.exe (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCR\AppID\priam_bho.DLL (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKCR\AppID\PricePeep.DLL (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DealPlyLive (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DEALPLY (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Successfully quarantined and deleted.
HKCU\Software\AppDataLow\Software\PricePeep (PUP.Optional.PricePeep.A) -> Successfully quarantined and deleted.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> Successfully quarantined and deleted.
HKCU\Software\InstalledBrowserExtensions\Lyrics (PUP.Optional.Lyrics.A) -> Successfully quarantined and deleted.
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\BPROTECTSETTINGS (PUP.Optional.BProtector.A) -> Scheduled for deletion at restart.
HKCU\Software\Systweak\RegClean Pro (PUP.Optional.RegCleanerPro.A) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\WAJAM (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\DealPlyLive (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\qvo6Software (PUP.Optional.qvo6.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\TUTO4PC (PUP.Tuto4PC) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\TUTO4PC (Trojan.EORezo) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\DEALPLY (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo (PUP.Optional.Elex.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Google\Chrome\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9 (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\WAJAM (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\dealplylive (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\dealplylivem (PUP.Optional.DealPly.A) -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\WajamUpdaterV2 (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\Software\LyricsBuddy-1 (PUP.Optional.LyricsBuddy.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Doko Chrome Toolbar (PUP.Optional.BabSolution.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam (PUP.Optional.Wajam.A) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCR\CLSID\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCR\TypeLib\{44444444-4444-4444-4444-440344434444} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCR\Interface\{55555555-5555-5555-5555-550355435544} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Scheduled for deletion at restart.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311431144} (PUP.Optional.CrossRider.M) -> Successfully quarantined and deleted.
Registry value(s) detected: 10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|tuto4pc_fr_59 (Adware.Tuto4PC) -> Data: "C:\Program Files\tuto4pc_fr_59\tuto4pc_fr_59.exe" -> Successfully quarantined and deleted.
HKCU\SOFTWARE\DealPly|Partner (PUP.Optional.DealPly.A) -> Data: sft3 -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> Data: http://www.doko-search.com/?babsrc=HP_ss&mntrId=547FD43D7E31A288&affID=125836&tsp=5036 -> Successfully quarantined and deleted.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> Data: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} -> Scheduled for deletion at restart.
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Data: 0Z1N1J -> Successfully quarantined and deleted.
HKCU\Software\Wajam|affiliate_id (PUP.Optional.Wajam.A) -> Data: 6447 -> Successfully quarantined and deleted.
HKLM\SOFTWARE\DealPly|ChromeCrxPath (PUP.Optional.DealPly.A) -> Data: C:\Program Files\DealPly\DealPly.crx -> Successfully quarantined and deleted.
HKLM\SOFTWARE\Wajam|red (PUP.Optional.Wajam.A) -> Data: 4 -> Successfully quarantined and deleted.
HKLM\SYSTEM\CurrentControlSet\Services\BitGuard|ImagePath (PUP.Optional.BitGuard.A) -> Data: C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe -> Successfully quarantined and deleted.
Windows Vista/7 :
1. Open the Start menu. Now, go to Control Panel.
2. Open Uninstall a program.
3. Uninstall PC Speed Maximizer.
Windows 8:
1. Press the Windows key + r
2. Type "control panel" in the Run box and press enter.
3. Go to Uninstall a program.
4. Uninstall PC Speed Maximizer.
Windows XP :
1. Open the Start menu. Go to Control Panel.
2. Open Add or Remove Programs.
3. Remove PC Speed Maximizer.
1. Open the Start menu. Now, go to Control Panel.
2. Open Uninstall a program.
3. Uninstall PC Speed Maximizer.
Windows 8:
1. Press the Windows key + r
2. Type "control panel" in the Run box and press enter.
3. Go to Uninstall a program.
4. Uninstall PC Speed Maximizer.
Windows XP :
1. Open the Start menu. Go to Control Panel.
2. Open Add or Remove Programs.
3. Remove PC Speed Maximizer.
https://www.cjoint.com/?BExctLrpdht
Thank you!
https://pjjoint.malekal.com/files.php?read=ZHPDiag_20131129_q15m11t9p146
http://pjjoint.malekal.com/files.php?id=ZHPDiag_20131207_o8e9u11c13v8