How to stop pop-up ads from opening on their own
Solved
JR0810
-
88mustang -
88mustang -
Hello,
My problem, which is quite annoying for peaceful browsing on the internet, is the frequent opening of ad pages. So when I leave the connection on for a while, a ton of ads pop up. I must have picked up something bad while downloading something, I don't know. Anyway, is there a way to stop this? (besides formatting my computer)
Thank you
Johann
Configuration: Windows 7 / Firefox 20.0
My problem, which is quite annoying for peaceful browsing on the internet, is the frequent opening of ad pages. So when I leave the connection on for a while, a ton of ads pop up. I must have picked up something bad while downloading something, I don't know. Anyway, is there a way to stop this? (besides formatting my computer)
Thank you
Johann
Configuration: Windows 7 / Firefox 20.0
22 réponses
- 1
- 2
Suivant
Hello, first of all: What is your default browser? (Chrome remains one of the best, otherwise Firefox is pretty good).
With Chrome: Go here: https://chrome.google.com/webstore/search/adblock?hl=en
And download "adblock" (I personally downloaded both "adblock" AND "adblock plus") it's an extension that blocks all ads on all web pages, even Facebook, YouTube and Hulu.
It works automatically: just click on "Add to Chrome".
And what is your antivirus?
I hope I was able to help you.
With Chrome: Go here: https://chrome.google.com/webstore/search/adblock?hl=en
And download "adblock" (I personally downloaded both "adblock" AND "adblock plus") it's an extension that blocks all ads on all web pages, even Facebook, YouTube and Hulu.
It works automatically: just click on "Add to Chrome".
And what is your antivirus?
I hope I was able to help you.
reverde
Posted messages
46
Registration date
Status
Membre
Last intervention
1
I added "adblock" and "adblock plus" over a month ago, and I have never seen so many ads on Google Chrome as I do now. What can I do to stop them? I have dozens of them. My antivirus is Avast free, and my OS is Windows 7 Pro. If you have any ideas, I am going crazy with these damn ads. If you want to reach me via email, my email is antoine-cuenca@outlook.fr.
88mustang
Fabien, thank you very much.
Hello,
You must have downloaded a program offered in advertisements or on suspicious sites.
- Download AdwCleaner from Xplode to your desktop
- Run it
- Choose "Scan" and post the report
- The report is located here ==> C:\AdwCleaner[R1].txt
Smart
--
"If you have no ambitions, you settle on the edge of the abyss" (Kundera)
You must have downloaded a program offered in advertisements or on suspicious sites.
- Download AdwCleaner from Xplode to your desktop
- Run it
- Choose "Scan" and post the report
- The report is located here ==> C:\AdwCleaner[R1].txt
Smart
--
"If you have no ambitions, you settle on the edge of the abyss" (Kundera)
Hello,
With the Firefox, Opera, or Chrome browser, there is an extension called Adblock Plus, which allows you to block all those annoying ads.
http://adblockplus.org/en/features
See you!
With the Firefox, Opera, or Chrome browser, there is an extension called Adblock Plus, which allows you to block all those annoying ads.
http://adblockplus.org/en/features
See you!
The report is so long that it's not possible to post it entirely in the response, which proves that your computer is infected with several adware... To avoid such problems:
- Do not download any programs offered in advertisements or on suspicious sites. Note that some well-known sites like O1net, Softronic, Tuto4PC, etc. sometimes modify the programs offered for download to add adware ==> Always prefer downloading directly from the publisher's site.
- During the installation of a free program, read carefully and uncheck all additional programs that are offered, especially toolbars.
For your information, read these files on Potentially Unwanted Programs and Toolbars are not mandatory
- Relaunch AdwCleaner
- Click on [Delete]. Save any ongoing work, then accept the closing of running programs.
- Wait for the cleaning process to complete.
- Once the scan is finished, you will be prompted to restart.
- Upon rebooting the PC, a report will open. Post the content in your next response. To do this, host it on this site http://pjjoint.malekal.com/ and give me the link to access it
- Note: The report is also saved under C:\AdwCleaner[S1].txt
Smart
--
"If you have no ambitions, you settle at the edge of the fall" (Kundera)
- Do not download any programs offered in advertisements or on suspicious sites. Note that some well-known sites like O1net, Softronic, Tuto4PC, etc. sometimes modify the programs offered for download to add adware ==> Always prefer downloading directly from the publisher's site.
- During the installation of a free program, read carefully and uncheck all additional programs that are offered, especially toolbars.
For your information, read these files on Potentially Unwanted Programs and Toolbars are not mandatory
- Relaunch AdwCleaner
- Click on [Delete]. Save any ongoing work, then accept the closing of running programs.
- Wait for the cleaning process to complete.
- Once the scan is finished, you will be prompted to restart.
- Upon rebooting the PC, a report will open. Post the content in your next response. To do this, host it on this site http://pjjoint.malekal.com/ and give me the link to access it
- Note: The report is also saved under C:\AdwCleaner[S1].txt
Smart
--
"If you have no ambitions, you settle at the edge of the fall" (Kundera)
Attention to the download of cr@cks ==>
The dangers of cr@cks
We will run a diagnostic on the PC to see if there are any residues and/or other infections.
Download ZHPDiag (by Nicolas Coolman) to your desktop
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
Once the download is complete, double-click on ZHPDiag.exe and follow the instructions.
/!\Users of Vista, Windows 7 and Windows 8: Right-click on the ZHPDiag.exe logo, "run as Administrator"
Don't forget to check the box that allows you to create a shortcut on the Desktop.
- Double-click on the ZHPDiag shortcut on your Desktop to launch it.
- If you have Avast 6 or 7 as your antivirus, choose "run normally" at the alert
- If you receive the message "Do you want to allow the following program..." answer Yes
(/!\The tool created 2 icons ZHPDiag and ZHPFix)
- Click on the screwdriver button at the top right and check all options
- Click on the magnifying glass in the top right without a sign to start the scan.
- Let the tool work, it may take a while.
- Close ZHPDiag at the end of the analysis.
- To send the report click on this link: http://pjjoint.malekal.com/
- Click on Browse and search the directory C:\ZHP
- Select the ZHPDiag.txt file, then click on "Open"
- Then click on "Send the file".
- Copy the link obtained in your reply.
Smart
--
"If you have no ambitions, you settle at the edge of the fall" (Kundera)
The dangers of cr@cks
We will run a diagnostic on the PC to see if there are any residues and/or other infections.
Download ZHPDiag (by Nicolas Coolman) to your desktop
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
Once the download is complete, double-click on ZHPDiag.exe and follow the instructions.
/!\Users of Vista, Windows 7 and Windows 8: Right-click on the ZHPDiag.exe logo, "run as Administrator"
Don't forget to check the box that allows you to create a shortcut on the Desktop.
- Double-click on the ZHPDiag shortcut on your Desktop to launch it.
- If you have Avast 6 or 7 as your antivirus, choose "run normally" at the alert
- If you receive the message "Do you want to allow the following program..." answer Yes
(/!\The tool created 2 icons ZHPDiag and ZHPFix)
- Click on the screwdriver button at the top right and check all options
- Click on the magnifying glass in the top right without a sign to start the scan.
- Let the tool work, it may take a while.
- Close ZHPDiag at the end of the analysis.
- To send the report click on this link: http://pjjoint.malekal.com/
- Click on Browse and search the directory C:\ZHP
- Select the ZHPDiag.txt file, then click on "Open"
- Then click on "Send the file".
- Copy the link obtained in your reply.
Smart
--
"If you have no ambitions, you settle at the edge of the fall" (Kundera)
Hello everyone, thanks for your quick responses! So I've had Firefox for a little while now to see if it would change anything. Firefox is buggy on my computer compared to Chrome. I tested AdBlock, but the issue is that these are pages that open, so I can block the ads inside the page, but the page still opens. Smart91, I'll send you the report as soon as I've re-downloaded Chrome because Firefox is crashing my entire computer!
See you!
See you!
OK. I'm waiting for the report
Smart
--
"If you have no ambitions, you settle at the edge of the abyss" (Kundera)
Smart
--
"If you have no ambitions, you settle at the edge of the abyss" (Kundera)
# AdwCleaner v2.300 - Report created on 05/10/2013 at 13:28:18
# Updated on 04/28/2013 by Xplode
# Operating system: Windows 7 Home Premium Service Pack 1 (64 bits)
# Username: Johann - JOHANN-PC
# Boot mode: Normal
# Run from: C:\Users\Johann\Downloads\adwcleaner.exe
# Option [Search]
***** [Services] *****
Present: BrowserProtect
Present: eSafeSvc
Present: SProtection
Present: vToolbarUpdater14.2.0
Present: WajamUpdater
***** [Files / Folders] *****
Folder Present: C:\Program Files (x86)\AVG Secure Search
Folder Present: C:\Program Files (x86)\Babylon
Folder Present: C:\Program Files (x86)\BabylonToolbar
Folder Present: C:\Program Files (x86)\Common Files\337
Folder Present: C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Present: C:\Program Files (x86)\Common Files\Umbrella
Folder Present: C:\Program Files (x86)\Complitly
Folder Present: C:\Program Files (x86)\Conduit
Folder Present: C:\Program Files (x86)\ConduitEngine
Folder Present: C:\Program Files (x86)\Delta
Folder Present: C:\Program Files (x86)\Desk 365
Folder Present: C:\Program Files (x86)\Fluendo
Folder Present: C:\Program Files (x86)\iMesh Applications\Mediabar
Folder Present: C:\Program Files (x86)\Iminent
Folder Present: C:\Program Files (x86)\Softonic_France
Folder Present: C:\Program Files (x86)\Tiger Savings
Folder Present: C:\Program Files (x86)\Trymedia
Folder Present: C:\Program Files (x86)\tuto4pc_fr_30
Folder Present: C:\Program Files (x86)\uTorrentBar_FR
Folder Present: C:\Program Files (x86)\Wajam
Folder Present: C:\Program Files (x86)\XfireXO
Folder Present: C:\Program Files (x86)\xfirexo
Folder Present: C:\Program Files\Babylon
Folder Present: C:\ProgramData\AVG Secure Search
Folder Present: C:\ProgramData\Babylon
Folder Present: C:\ProgramData\boost_interprocess
Folder Present: C:\ProgramData\BrowserProtect
Folder Present: C:\ProgramData\eSafe
Folder Present: C:\ProgramData\Iminent
Folder Present: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Babylon
Folder Present: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Folder Present: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tuto4pc
Folder Present: C:\ProgramData\Partner
Folder Present: C:\Users\Johann\AppData\Local\AVG Secure Search
Folder Present: C:\Users\Johann\AppData\Local\Babylon
Folder Present: C:\Users\Johann\AppData\Local\Conduit
Folder Present: C:\Users\Johann\AppData\Local\EoRezo
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\akdojefgphalhhkagafpcoakgboeokdl
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Folder Present: C:\Users\Johann\AppData\Local\lollipop
Folder Present: C:\Users\Johann\AppData\Local\moovida air
Folder Present: C:\Users\Johann\AppData\Local\OpenCandy
Folder Present: C:\Users\Johann\AppData\Local\PackageAware
Folder Present: C:\Users\Johann\AppData\Local\Temp\avg@toolbar
Folder Present: C:\Users\Johann\AppData\Local\Temp\Babylon
Folder Present: C:\Users\Johann\AppData\Local\Temp\boost_interprocess
Folder Present: C:\Users\Johann\AppData\Local\Temp\Desk365
Folder Present: C:\Users\Johann\AppData\Local\Temp\Iminent
Folder Present: C:\Users\Johann\AppData\Local\Tiger Savings
Folder Present: C:\Users\Johann\AppData\Local\Temp\tuto4pc_fr_30
Folder Present: C:\Users\Johann\AppData\Local\Wajam
Folder Present: C:\Users\Johann\AppData\LocalLow\AVG Secure Search
Folder Present: C:\Users\Johann\AppData\LocalLow\Conduit
Folder Present: C:\Users\Johann\AppData\LocalLow\ConduitEngine
Folder Present: C:\Users\Johann\AppData\LocalLow\mediabarim
Folder Present: C:\Users\Johann\AppData\LocalLow\Softonic_France
Folder Present: C:\Users\Johann\AppData\LocalLow\uTorrentBar_FR
Folder Present: C:\Users\Johann\AppData\Roaming\BabSolution
Folder Present: C:\Users\Johann\AppData\Roaming\Babylon
Folder Present: C:\Users\Johann\AppData\Roaming\BabylonToolbar
Folder Present: C:\Users\Johann\AppData\Roaming\Complitly
Folder Present: C:\Users\Johann\AppData\Roaming\Delta
Folder Present: C:\Users\Johann\AppData\Roaming\Desk 365
Folder Present: C:\Users\Johann\AppData\Roaming\eIntaller
Folder Present: C:\Users\Johann\AppData\Roaming\FissaSearch
Folder Present: C:\Users\Johann\AppData\Roaming\Iminent
Folder Present: C:\Users\Johann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Present: C:\Users\Johann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
Folder Present: C:\Users\Johann\AppData\Roaming\moovida-1
Folder Present: C:\Users\Johann\AppData\Roaming\Nosibay
Folder Present: C:\Users\Johann\AppData\Roaming\OfferBox
Folder Present: C:\Users\Johann\AppData\Roaming\OpenCandy
Folder Present: C:\Users\Johann\AppData\Roaming\pdfforge
Folder Present: C:\Windows\Installer\{4BD271AB-66E2-4D58-AF88-80FE3B0770C4}
Folder Present: C:\Windows\SysWOW64\BrowserProtect
File Present: C:\user.js
File Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
File Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
File Present: C:\Users\Johann\AppData\Roaming\BabMaint.exe
File Present: C:\Users\Johann\AppData\Roaming\Mozilla\Firefox\Profiles\7ji1rwh2.default\bprotector_extensions.sqlite
File Present: C:\Users\Johann\AppData\Roaming\Mozilla\Firefox\Profiles\7ji1rwh2.default\bprotector_prefs.js
File Present: C:\Users\Public\Desktop\Babylon.lnk
File Present: C:\Users\Public\Desktop\eBay.lnk
***** [Registry] *****
Key Present: HKCU\Software\AppDataLow\Software\Conduit
Key Present: HKCU\Software\AppDataLow\Software\conduitEngine
Key Present: HKCU\Software\AppDataLow\Software\conduitEngine
Key Present: HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Present: HKCU\Software\AppDataLow\Software\Crossrider
Key Present: HKCU\Software\AppDataLow\Software\SmartBar
Key Present: HKCU\Software\AppDataLow\Software\Softonic_France
Key Present: HKCU\Software\AppDataLow\Software\uTorrentBar_FR
Key Present: HKCU\Software\AppDataLow\Software\XfireXO
Key Present: HKCU\Software\AppDataLow\Toolbar
Key Present: HKCU\Software\AVG Secure Search
Key Present: HKCU\Software\Babylon
Key Present: HKCU\Software\BabylonToolbar
Key Present: HKCU\Software\BrowserMngr
Key Present: HKCU\Software\Complitly
Key Present: HKCU\Software\Conduit
Key Present: HKCU\Software\Cr_Installer
Key Present: HKCU\Software\DataMngr
Key Present: HKCU\Software\DataMngr_Toolbar
Key Present: HKCU\Software\Delta
Key Present: HKCU\Software\FissaSearch
Key Present: HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Key Present: HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Key Present: HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Key Present: HKCU\Software\Google\Chrome\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Key Present: HKCU\Software\Google\Chrome\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Key Present: HKCU\Software\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Key Present: HKCU\Software\IGearSettings
Key Present: HKCU\Software\Iminent
Key Present: HKCU\Software\InstallCore
Key Present: HKCU\Software\InstalledBrowserExtensions
Key Present: HKCU\Software\lollipop
Key Present: HKCU\Software\Microsoft\Babylon
Key Present: HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate this web page with Babylon
Key Present: HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate with Babylon
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D0F4A166-B8D4-48B8-9D63-80849FE137CB}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Key Present: HKCU\Software\Moovida
Key Present: HKCU\Software\Nosibay
Key Present: HKCU\Software\Offerbox
Key Present: HKCU\Software\Softonic
Key Present: HKCU\Software\Spointer
Key Present: HKCU\Software\Tutorials
Key Present: HKCU\Software\TutoTag
Key Present: HKCU\Software\Wajam
Key Present: HKCU\Software\dedfdee768ec45
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B41306C6-96D0-442A-BCC4-B0F621E82CE9}
Key Present: HKLM\Software\AVG Secure Search
Key Present: HKLM\Software\AVG Security Toolbar
Key Present: HKLM\Software\Babylon
Key Present: HKLM\Software\BabylonToolbar
Key Present: HKLM\Software\BrowserMngr
Key Present: HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Key Present: HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Present: HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634}
Key Present: HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Present: HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Present: HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Key Present: HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Key Present: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Present: HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Key Present: HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}
Key Present: HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Present: HKLM\SOFTWARE\Classes\AppID\{B16632F1-24E0-4D99-A68D-70BFB6447C48}
Key Present: HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Present: HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Present: HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Present: HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Present: HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Present: HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Key Present: HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Key Present: HKLM\SOFTWARE\Classes\AppID\BabylonIEPI.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
Key Present: HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll
Key Present: HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Present: HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Present: HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Present: HKLM\SOFTWARE\Classes\b
Key Present: HKLM\SOFTWARE\Classes\BabyDict
Key Present: HKLM\SOFTWARE\Classes\BabyGloss
Key Present: HKLM\SOFTWARE\Classes\Babylon.dskBnd
Key Present: HKLM\SOFTWARE\Classes\Babylon.dskBnd.1
Key Present: HKLM\SOFTWARE\Classes\BabylonIEPI.BabylonIEBho
Key Present: HKLM\SOFTWARE\Classes\BabylonIEPI.BabylonIEBho.1
Key Present: HKLM\SOFTWARE\Classes\BabylonOfficeAddin.OfficeAddin
Key Present: HKLM\SOFTWARE\Classes\BabylonOfficeAddin.OfficeAddin.1
Key Present: HKLM\SOFTWARE\Classes\BabyOptFile
Key Present: HKLM\SOFTWARE\Classes\bbylnApp.appCore
Key Present: HKLM\SOFTWARE\Classes\bbylnApp.appCore.1
Key Present: HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Present: HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Present: HKLM\SOFTWARE\Classes\BrowserConnection.Loader
Key Present: HKLM\SOFTWARE\Classes\BrowserConnection.Loader.1
Key Present: HKLM\SOFTWARE\Classes\Conduit.Engine
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.BHO
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.BHO.1
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.Sandbox
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.Sandbox.1
Key Present: HKLM\SOFTWARE\Classes\delta.deltaappCore
Key Present: HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Key Present: HKLM\SOFTWARE\Classes\delta.deltadskBnd
Key Present: HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Key Present: HKLM\SOFTWARE\Classes\delta.deltaHlpr
Key Present: HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Key Present: HKLM\SOFTWARE\Classes\DnsBHO.BHO
Key Present: HKLM\SOFTWARE\Classes\DnsBHO.BHO.1
Key Present: HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Present: HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Present: HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Present: HKLM\SOFTWARE\Classes\esrv.BabylonESrvc
Key Present: HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1
Key Present: HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Key Present: HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Key Present: HKLM\SOFTWARE\Classes\Iminent
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Key Present: HKLM\Software\Classes\Installer\Features\112C48061A10E464790A9077E221B205
Key Present: HKLM\Software\Classes\Installer\Features\6207E55EA2FE71A4AA7ABD89AEF31D1B
Key Present: HKLM\Software\Classes\Installer\Features\BA172DB42E6685D4FA8808EFB370074C
Key Present: HKLM\Software\Classes\Installer\Products\112C48061A10E464790A9077E221B205
Key Present: HKLM\Software\Classes\Installer\Products\6207E55EA2FE71A4AA7ABD89AEF31D1B
Key Present: HKLM\Software\Classes\Installer\Products\BA172DB42E6685D4FA8808EFB370074C
Key Present: HKLM\SOFTWARE\Classes\Prod.cap
Key Present: HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Present: HKLM\SOFTWARE\Classes\S
Key Present: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Present: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Present: HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO
Key Present: HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO.1
Key Present: HKLM\SOFTWARE\Classes\Toolbar.CT2542115
Key Present: HKLM\SOFTWARE\Classes\Toolbar.CT2851639
Key Present: HKLM\SOFTWARE\Classes\Toolbar.CT3128284
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{5C9A2304-70A5-11D5-AFB0-0050DAC67890}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{A1489C85-4F6F-48C4-AC9E-18B63AF4703E}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{F310F027-15CB-4A7F-B10D-3A4AFB5013A5}
Key Present: HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Present: HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamBHO
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamBHO.1
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamDownloader
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamDownloader.1
Key Present: HKLM\Software\Conduit
Key Present: HKLM\Software\conduitEngine
Key Present: HKLM\Software\conduitEngine
Key Present: HKLM\Software\DataMngr
Key Present: HKLM\Software\Delta
Key Present: HKLM\Software\Desksvc
Key Present: HKLM\Software\eSafeSecControl
Key Present: HKLM\Software\FissaSearch
Key Present: HKLM\Software\Iminent
Key Present: HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{F72841F0-4EF1-4DF5-BCE5-B3AC8ACF5478}
Key Present: HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Key Present:
# Updated on 04/28/2013 by Xplode
# Operating system: Windows 7 Home Premium Service Pack 1 (64 bits)
# Username: Johann - JOHANN-PC
# Boot mode: Normal
# Run from: C:\Users\Johann\Downloads\adwcleaner.exe
# Option [Search]
***** [Services] *****
Present: BrowserProtect
Present: eSafeSvc
Present: SProtection
Present: vToolbarUpdater14.2.0
Present: WajamUpdater
***** [Files / Folders] *****
Folder Present: C:\Program Files (x86)\AVG Secure Search
Folder Present: C:\Program Files (x86)\Babylon
Folder Present: C:\Program Files (x86)\BabylonToolbar
Folder Present: C:\Program Files (x86)\Common Files\337
Folder Present: C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Present: C:\Program Files (x86)\Common Files\Umbrella
Folder Present: C:\Program Files (x86)\Complitly
Folder Present: C:\Program Files (x86)\Conduit
Folder Present: C:\Program Files (x86)\ConduitEngine
Folder Present: C:\Program Files (x86)\Delta
Folder Present: C:\Program Files (x86)\Desk 365
Folder Present: C:\Program Files (x86)\Fluendo
Folder Present: C:\Program Files (x86)\iMesh Applications\Mediabar
Folder Present: C:\Program Files (x86)\Iminent
Folder Present: C:\Program Files (x86)\Softonic_France
Folder Present: C:\Program Files (x86)\Tiger Savings
Folder Present: C:\Program Files (x86)\Trymedia
Folder Present: C:\Program Files (x86)\tuto4pc_fr_30
Folder Present: C:\Program Files (x86)\uTorrentBar_FR
Folder Present: C:\Program Files (x86)\Wajam
Folder Present: C:\Program Files (x86)\XfireXO
Folder Present: C:\Program Files (x86)\xfirexo
Folder Present: C:\Program Files\Babylon
Folder Present: C:\ProgramData\AVG Secure Search
Folder Present: C:\ProgramData\Babylon
Folder Present: C:\ProgramData\boost_interprocess
Folder Present: C:\ProgramData\BrowserProtect
Folder Present: C:\ProgramData\eSafe
Folder Present: C:\ProgramData\Iminent
Folder Present: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Babylon
Folder Present: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Folder Present: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tuto4pc
Folder Present: C:\ProgramData\Partner
Folder Present: C:\Users\Johann\AppData\Local\AVG Secure Search
Folder Present: C:\Users\Johann\AppData\Local\Babylon
Folder Present: C:\Users\Johann\AppData\Local\Conduit
Folder Present: C:\Users\Johann\AppData\Local\EoRezo
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\akdojefgphalhhkagafpcoakgboeokdl
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
Folder Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Folder Present: C:\Users\Johann\AppData\Local\lollipop
Folder Present: C:\Users\Johann\AppData\Local\moovida air
Folder Present: C:\Users\Johann\AppData\Local\OpenCandy
Folder Present: C:\Users\Johann\AppData\Local\PackageAware
Folder Present: C:\Users\Johann\AppData\Local\Temp\avg@toolbar
Folder Present: C:\Users\Johann\AppData\Local\Temp\Babylon
Folder Present: C:\Users\Johann\AppData\Local\Temp\boost_interprocess
Folder Present: C:\Users\Johann\AppData\Local\Temp\Desk365
Folder Present: C:\Users\Johann\AppData\Local\Temp\Iminent
Folder Present: C:\Users\Johann\AppData\Local\Tiger Savings
Folder Present: C:\Users\Johann\AppData\Local\Temp\tuto4pc_fr_30
Folder Present: C:\Users\Johann\AppData\Local\Wajam
Folder Present: C:\Users\Johann\AppData\LocalLow\AVG Secure Search
Folder Present: C:\Users\Johann\AppData\LocalLow\Conduit
Folder Present: C:\Users\Johann\AppData\LocalLow\ConduitEngine
Folder Present: C:\Users\Johann\AppData\LocalLow\mediabarim
Folder Present: C:\Users\Johann\AppData\LocalLow\Softonic_France
Folder Present: C:\Users\Johann\AppData\LocalLow\uTorrentBar_FR
Folder Present: C:\Users\Johann\AppData\Roaming\BabSolution
Folder Present: C:\Users\Johann\AppData\Roaming\Babylon
Folder Present: C:\Users\Johann\AppData\Roaming\BabylonToolbar
Folder Present: C:\Users\Johann\AppData\Roaming\Complitly
Folder Present: C:\Users\Johann\AppData\Roaming\Delta
Folder Present: C:\Users\Johann\AppData\Roaming\Desk 365
Folder Present: C:\Users\Johann\AppData\Roaming\eIntaller
Folder Present: C:\Users\Johann\AppData\Roaming\FissaSearch
Folder Present: C:\Users\Johann\AppData\Roaming\Iminent
Folder Present: C:\Users\Johann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Present: C:\Users\Johann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
Folder Present: C:\Users\Johann\AppData\Roaming\moovida-1
Folder Present: C:\Users\Johann\AppData\Roaming\Nosibay
Folder Present: C:\Users\Johann\AppData\Roaming\OfferBox
Folder Present: C:\Users\Johann\AppData\Roaming\OpenCandy
Folder Present: C:\Users\Johann\AppData\Roaming\pdfforge
Folder Present: C:\Windows\Installer\{4BD271AB-66E2-4D58-AF88-80FE3B0770C4}
Folder Present: C:\Windows\SysWOW64\BrowserProtect
File Present: C:\user.js
File Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
File Present: C:\Users\Johann\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
File Present: C:\Users\Johann\AppData\Roaming\BabMaint.exe
File Present: C:\Users\Johann\AppData\Roaming\Mozilla\Firefox\Profiles\7ji1rwh2.default\bprotector_extensions.sqlite
File Present: C:\Users\Johann\AppData\Roaming\Mozilla\Firefox\Profiles\7ji1rwh2.default\bprotector_prefs.js
File Present: C:\Users\Public\Desktop\Babylon.lnk
File Present: C:\Users\Public\Desktop\eBay.lnk
***** [Registry] *****
Key Present: HKCU\Software\AppDataLow\Software\Conduit
Key Present: HKCU\Software\AppDataLow\Software\conduitEngine
Key Present: HKCU\Software\AppDataLow\Software\conduitEngine
Key Present: HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Present: HKCU\Software\AppDataLow\Software\Crossrider
Key Present: HKCU\Software\AppDataLow\Software\SmartBar
Key Present: HKCU\Software\AppDataLow\Software\Softonic_France
Key Present: HKCU\Software\AppDataLow\Software\uTorrentBar_FR
Key Present: HKCU\Software\AppDataLow\Software\XfireXO
Key Present: HKCU\Software\AppDataLow\Toolbar
Key Present: HKCU\Software\AVG Secure Search
Key Present: HKCU\Software\Babylon
Key Present: HKCU\Software\BabylonToolbar
Key Present: HKCU\Software\BrowserMngr
Key Present: HKCU\Software\Complitly
Key Present: HKCU\Software\Conduit
Key Present: HKCU\Software\Cr_Installer
Key Present: HKCU\Software\DataMngr
Key Present: HKCU\Software\DataMngr_Toolbar
Key Present: HKCU\Software\Delta
Key Present: HKCU\Software\FissaSearch
Key Present: HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Key Present: HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Key Present: HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
Key Present: HKCU\Software\Google\Chrome\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Key Present: HKCU\Software\Google\Chrome\Extensions\ifjamchknccokmaecnbknhbfhaicfafd
Key Present: HKCU\Software\Google\Chrome\Extensions\paoponfhfdfnjgddpnpjkambkcgdaaib
Key Present: HKCU\Software\IGearSettings
Key Present: HKCU\Software\Iminent
Key Present: HKCU\Software\InstallCore
Key Present: HKCU\Software\InstalledBrowserExtensions
Key Present: HKCU\Software\lollipop
Key Present: HKCU\Software\Microsoft\Babylon
Key Present: HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate this web page with Babylon
Key Present: HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate with Babylon
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E5025C2-8EA3-430D-80B8-A14151068A6D}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D0F4A166-B8D4-48B8-9D63-80849FE137CB}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Present: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}
Key Present: HKCU\Software\Moovida
Key Present: HKCU\Software\Nosibay
Key Present: HKCU\Software\Offerbox
Key Present: HKCU\Software\Softonic
Key Present: HKCU\Software\Spointer
Key Present: HKCU\Software\Tutorials
Key Present: HKCU\Software\TutoTag
Key Present: HKCU\Software\Wajam
Key Present: HKCU\Software\dedfdee768ec45
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Present: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B41306C6-96D0-442A-BCC4-B0F621E82CE9}
Key Present: HKLM\Software\AVG Secure Search
Key Present: HKLM\Software\AVG Security Toolbar
Key Present: HKLM\Software\Babylon
Key Present: HKLM\Software\BabylonToolbar
Key Present: HKLM\Software\BrowserMngr
Key Present: HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Key Present: HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Present: HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634}
Key Present: HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Present: HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Present: HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Key Present: HKLM\SOFTWARE\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Key Present: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Present: HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Key Present: HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}
Key Present: HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Present: HKLM\SOFTWARE\Classes\AppID\{B16632F1-24E0-4D99-A68D-70BFB6447C48}
Key Present: HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Present: HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Present: HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Present: HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Present: HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Present: HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Key Present: HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Key Present: HKLM\SOFTWARE\Classes\AppID\BabylonIEPI.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
Key Present: HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll
Key Present: HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Present: HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL
Key Present: HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Present: HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Present: HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Present: HKLM\SOFTWARE\Classes\b
Key Present: HKLM\SOFTWARE\Classes\BabyDict
Key Present: HKLM\SOFTWARE\Classes\BabyGloss
Key Present: HKLM\SOFTWARE\Classes\Babylon.dskBnd
Key Present: HKLM\SOFTWARE\Classes\Babylon.dskBnd.1
Key Present: HKLM\SOFTWARE\Classes\BabylonIEPI.BabylonIEBho
Key Present: HKLM\SOFTWARE\Classes\BabylonIEPI.BabylonIEBho.1
Key Present: HKLM\SOFTWARE\Classes\BabylonOfficeAddin.OfficeAddin
Key Present: HKLM\SOFTWARE\Classes\BabylonOfficeAddin.OfficeAddin.1
Key Present: HKLM\SOFTWARE\Classes\BabyOptFile
Key Present: HKLM\SOFTWARE\Classes\bbylnApp.appCore
Key Present: HKLM\SOFTWARE\Classes\bbylnApp.appCore.1
Key Present: HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Present: HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Present: HKLM\SOFTWARE\Classes\BrowserConnection.Loader
Key Present: HKLM\SOFTWARE\Classes\BrowserConnection.Loader.1
Key Present: HKLM\SOFTWARE\Classes\Conduit.Engine
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.BHO
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.BHO.1
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.Sandbox
Key Present: HKLM\SOFTWARE\Classes\CrossriderApp0012767.Sandbox.1
Key Present: HKLM\SOFTWARE\Classes\delta.deltaappCore
Key Present: HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Key Present: HKLM\SOFTWARE\Classes\delta.deltadskBnd
Key Present: HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
Key Present: HKLM\SOFTWARE\Classes\delta.deltaHlpr
Key Present: HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
Key Present: HKLM\SOFTWARE\Classes\DnsBHO.BHO
Key Present: HKLM\SOFTWARE\Classes\DnsBHO.BHO.1
Key Present: HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Present: HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Present: HKLM\SOFTWARE\Classes\escort.escrtBtn.1
Key Present: HKLM\SOFTWARE\Classes\esrv.BabylonESrvc
Key Present: HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1
Key Present: HKLM\SOFTWARE\Classes\esrv.deltaESrvc
Key Present: HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
Key Present: HKLM\SOFTWARE\Classes\Iminent
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Key Present: HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Key Present: HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Key Present: HKLM\Software\Classes\Installer\Features\112C48061A10E464790A9077E221B205
Key Present: HKLM\Software\Classes\Installer\Features\6207E55EA2FE71A4AA7ABD89AEF31D1B
Key Present: HKLM\Software\Classes\Installer\Features\BA172DB42E6685D4FA8808EFB370074C
Key Present: HKLM\Software\Classes\Installer\Products\112C48061A10E464790A9077E221B205
Key Present: HKLM\Software\Classes\Installer\Products\6207E55EA2FE71A4AA7ABD89AEF31D1B
Key Present: HKLM\Software\Classes\Installer\Products\BA172DB42E6685D4FA8808EFB370074C
Key Present: HKLM\SOFTWARE\Classes\Prod.cap
Key Present: HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\viprotocol
Key Present: HKLM\SOFTWARE\Classes\S
Key Present: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Present: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Present: HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO
Key Present: HKLM\SOFTWARE\Classes\SuggestMeYes.SuggestMeYesBHO.1
Key Present: HKLM\SOFTWARE\Classes\Toolbar.CT2542115
Key Present: HKLM\SOFTWARE\Classes\Toolbar.CT2851639
Key Present: HKLM\SOFTWARE\Classes\Toolbar.CT3128284
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{5C9A2304-70A5-11D5-AFB0-0050DAC67890}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{A1489C85-4F6F-48C4-AC9E-18B63AF4703E}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Key Present: HKLM\SOFTWARE\Classes\TypeLib\{F310F027-15CB-4A7F-B10D-3A4AFB5013A5}
Key Present: HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Present: HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamBHO
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamBHO.1
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamDownloader
Key Present: HKLM\SOFTWARE\Classes\wajam.WajamDownloader.1
Key Present: HKLM\Software\Conduit
Key Present: HKLM\Software\conduitEngine
Key Present: HKLM\Software\conduitEngine
Key Present: HKLM\Software\DataMngr
Key Present: HKLM\Software\Delta
Key Present: HKLM\Software\Desksvc
Key Present: HKLM\Software\eSafeSecControl
Key Present: HKLM\Software\FissaSearch
Key Present: HKLM\Software\Iminent
Key Present: HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{F72841F0-4EF1-4DF5-BCE5-B3AC8ACF5478}
Key Present: HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Key Present:
It's true that I don't pay enough attention to all of this! Thank you for the advice.
Here is the link for the deletion report:
https://pjjoint.malekal.com/files.php?id=20130510_t14f9q7y12u9
Here is the link for the deletion report:
https://pjjoint.malekal.com/files.php?id=20130510_t14f9q7y12u9
* Download and install Malwarebytes
* At the end of the installation, make sure the option "update Malwarebyte's Anti-Malware" is checked
* Launch MBAM and let the Updates download (otherwise do them manually at the program launch). This is very important
* Then go to the "Scan" tab, check "Run a Full scan" then "Scan"
* Don't worry, the scan may take several hours depending on the number of files and infections to analyze
* At the end of the scan, click on "Show Results"
* Check all detected items then click on "Remove Selected"
* Save the report
* If you are prompted to restart the computer, click on Yes
* A report will appear after the removal: post it in your next response.
Smart
--
""If you have no ambitions, you settle on the edge of the fall" (Kundera)
Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org
Database Version: v2013.05.11.05
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
Johann :: JOHANN-PC [administrator]
Protection: Enabled
11/05/2013 16:35:26
mbam-log-2013-05-11 (16-35-26).txt
Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File system | Heuristic/Extra | Heuristic/Shuriken | PUP | PUM
Scan options disabled: P2P
Item(s) scanned: 428069
Elapsed time: 2 hour(s), 58 minute(s), 56 second(s)
Memory processes detected: 0
(No threats detected)
Memory modules detected: 0
(No threats detected)
Registry keys detected: 0
(No threats detected)
Registry values detected: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Audio HD Driver (Trojan.Downloader) -> Data: C:\Users\Johann\AppData\Local\Temp\werfault32.exe -> Successfully quarantined and removed.
Registry data items detected: 0
(No threats detected)
Folders detected: 0
(No threats detected)
Files detected: 10
C:\Users\Johann\Downloads\SoftonicDownloader_for_magix-music-maker.exe (PUP.OfferBundler.ST) -> No action taken.
C:\Users\Johann\AppData\Local\Temp\tool.exe (Adware.Dropper) -> Successfully quarantined and removed.
C:\Users\Johann\Desktop\Paxk office proII 2010\mini-KMS_Activator_v1.052.exe (Riskware.Keygen) -> Successfully quarantined and removed.
C:\Users\Johann\Documents\CROSSFIRE ZP MEGA HACK PACK2010\Some HACKz\PerX.exe (HackTool.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\cfwallhack.rar (HackTool.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\CROSSFIRE ZP MEGA HACK PACK2010.rar (HackTool.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\Patch (1).zip (Trojan.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\Patch (2).zip (Trojan.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\Patch.zip (Trojan.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\PlayerPlusX.exe (Adware.Boxore) -> Successfully quarantined and removed.
(end)
www.malwarebytes.org
Database Version: v2013.05.11.05
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 8.0.7601.17514
Johann :: JOHANN-PC [administrator]
Protection: Enabled
11/05/2013 16:35:26
mbam-log-2013-05-11 (16-35-26).txt
Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File system | Heuristic/Extra | Heuristic/Shuriken | PUP | PUM
Scan options disabled: P2P
Item(s) scanned: 428069
Elapsed time: 2 hour(s), 58 minute(s), 56 second(s)
Memory processes detected: 0
(No threats detected)
Memory modules detected: 0
(No threats detected)
Registry keys detected: 0
(No threats detected)
Registry values detected: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Audio HD Driver (Trojan.Downloader) -> Data: C:\Users\Johann\AppData\Local\Temp\werfault32.exe -> Successfully quarantined and removed.
Registry data items detected: 0
(No threats detected)
Folders detected: 0
(No threats detected)
Files detected: 10
C:\Users\Johann\Downloads\SoftonicDownloader_for_magix-music-maker.exe (PUP.OfferBundler.ST) -> No action taken.
C:\Users\Johann\AppData\Local\Temp\tool.exe (Adware.Dropper) -> Successfully quarantined and removed.
C:\Users\Johann\Desktop\Paxk office proII 2010\mini-KMS_Activator_v1.052.exe (Riskware.Keygen) -> Successfully quarantined and removed.
C:\Users\Johann\Documents\CROSSFIRE ZP MEGA HACK PACK2010\Some HACKz\PerX.exe (HackTool.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\cfwallhack.rar (HackTool.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\CROSSFIRE ZP MEGA HACK PACK2010.rar (HackTool.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\Patch (1).zip (Trojan.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\Patch (2).zip (Trojan.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\Patch.zip (Trojan.Agent) -> Successfully quarantined and removed.
C:\Users\Johann\Downloads\PlayerPlusX.exe (Adware.Boxore) -> Successfully quarantined and removed.
(end)
Can you be more explicit? Do you have an error message? What exactly is happening?
Smart
--
"If you have no ambitions, you settle on the edge of the fall" (Kundera)
Smart
--
"If you have no ambitions, you settle on the edge of the fall" (Kundera)
When I start the download and it asks me to wait for the download to begin, nothing happens. And when I try to click on the link:
(If the download doesn’t work, please choose one of the following links:
FTP Zebulon.fr N°1
=> the page opens and I get a loading error message:
The timeout has been exceeded
It might be an internet speed problem because I have a public SFR Wi-Fi connection at the moment.
(If the download doesn’t work, please choose one of the following links:
FTP Zebulon.fr N°1
=> the page opens and I get a loading error message:
The timeout has been exceeded
It might be an internet speed problem because I have a public SFR Wi-Fi connection at the moment.
"because I have a public sfr wifi connection at the moment"
That's quite possible, the file to download is 16 MB. Can't you get another connection?
Smart
--
"If you have no ambitions, you settle at the edge of the fall" (Kundera)
That's quite possible, the file to download is 16 MB. Can't you get another connection?
Smart
--
"If you have no ambitions, you settle at the edge of the fall" (Kundera)
https://pjjoint.malekal.com/files.php?id=ZHPDiag_20130521_f10r13v15c5h12
Hi! Here’s the link! I didn't have much time these last few days.
See you!
Hi! Here’s the link! I didn't have much time these last few days.
See you!
Curious that there is still so much adware.
First, you will do this:
Restart MBAM (Malwarebytes) and clear the quarantine.
Then restart AdwCleaner and choose uninstall.
Then re-download the latest version of AdwCleaner
- Launch AdwCleaner
- Click on [Delete]. Save all ongoing work and accept the closure of running programs.
- Wait for the cleaning process to finish.
- Once the scan is complete, you will be prompted to restart.
- Upon restarting the PC, a report will open. Post the content in your next reply.
Smart
--
"If you have no ambitions, you settle on the edge of the fall" (Kundera)
First, you will do this:
Restart MBAM (Malwarebytes) and clear the quarantine.
Then restart AdwCleaner and choose uninstall.
Then re-download the latest version of AdwCleaner
- Launch AdwCleaner
- Click on [Delete]. Save all ongoing work and accept the closure of running programs.
- Wait for the cleaning process to finish.
- Once the scan is complete, you will be prompted to restart.
- Upon restarting the PC, a report will open. Post the content in your next reply.
Smart
--
"If you have no ambitions, you settle on the edge of the fall" (Kundera)
- 1
- 2
Suivant