Supprimer PUP-FJD!130B801F7527

Fermé
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014 - Modifié par samgunsjovirow le 15/04/2014 à 11:57
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 - 18 avril 2014 à 08:36
Bonjour, j'ai beau chercher sur la toile je ne trouve pas la solution à mon problème qui commence à me prendre la tête. mon problème le voici:

Lorsque je vais sur internet (avec n'importe qu'elle opérateur de recherche) et que je fais une reherche puis que je clique pour ouvrir une page une autre page s'ouvre avec un site que je ne connais pas ( il change mais en générale ce sont les mêmes sites qui s'ouvre) ou des pub apprraisse en plein milieu de la page impossible à enlever. De plus j'ai fait un scan avec avira anti virus (version compléte) et il me trouve un dossier potentiellement dangereux qui est le suivant : PUP-FJD!130B801F7527 et il est impossible à supprimer ou à mettre en quarantaine il y a t'il un lien avec mon problème? comment faire pour le supprimer?
Je vous remerci d'avance!

La tit' Nini du web.
A voir également:

13 réponses

Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
15 avril 2014 à 11:57
Bonjour,
Tu as installé des adwares et programmes indésérables sur ton PC.
----------------------------
Télécharge : AdwCleaner (merci à Xplode)
Lance AdwCleaner
Clique sur Scanner puis Nettoyer, et patiente le temps du nettoyage.
Poste le rapport qui apparait en fin de recherche.
(Le rapport est sauvegardé aussi sous C:\AdwCleaner\AdwCleaner[x].txt)
----------------------------
Pour éviter d'avoir des publicités et des toolbars, tu peux lire <<< ceci >>>

@+
1
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014
15 avril 2014 à 21:06
Je te remerci énormément par ce que je désespérais! voilà le rapport (un peu long) :

# AdwCleaner v3.023 - Rapport créé le 15/04/2014 à 21:00:16
# Mis à jour le 01/04/2014 par Xplode
# Système d'exploitation : Windows 8.1 (64 bits)
# Nom d'utilisateur : latitnini - VIRGINIE
# Exécuté depuis : C:\Users\dossa_000\Downloads\adwcleaner.exe
# Option : Nettoyer

***** [ Services ] *****

[#] Service Supprimé : BackupStack
Service Supprimé : IePluginService
Service Supprimé : Re-markit
[#] Service Supprimé : savesenselive
[#] Service Supprimé : savesenselivem
[#] Service Supprimé : Software_update
[#] Service Supprimé : Software_update_m

***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\ProgramData\BitGuard
Dossier Supprimé : C:\ProgramData\Browser Manager
Dossier Supprimé : C:\ProgramData\BrowserProtect
Dossier Supprimé : C:\ProgramData\IePluginService
Dossier Supprimé : C:\ProgramData\SaveSenseLive
Dossier Supprimé : C:\ProgramData\Systweak
Dossier Supprimé : C:\ProgramData\WPM
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro
Dossier Supprimé : C:\Program Files (x86)\Advanced System Protector
Dossier Supprimé : C:\Program Files (x86)\Boxore
Dossier Supprimé : C:\Program Files (x86)\IminentToolbar
Dossier Supprimé : C:\Program Files (x86)\MyPC Backup
Dossier Supprimé : C:\Program Files (x86)\Mysearchdial
Dossier Supprimé : C:\Program Files (x86)\Nosibay
Dossier Supprimé : C:\Program Files (x86)\RegClean Pro
Dossier Supprimé : C:\Program Files (x86)\SaveSenseLive
Dossier Supprimé : C:\Program Files (x86)\SupTab
Dossier Supprimé : C:\Program Files (x86)\sweetpacks bundle uninstaller
Dossier Supprimé : C:\Users\dossa_000\AppData\Local\lollipop
Dossier Supprimé : C:\Users\dossa_000\AppData\Local\SaveSenseLive
Dossier Supprimé : C:\Users\DOSSA_~1\AppData\Local\Temp\Iminent
Dossier Supprimé : C:\Users\dossa_000\AppData\LocalLow\IminentToolbar
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\IminentToolbar
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mysearchdial
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Nosibay
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\SaveSense
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\SupTab
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Systweak
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\webssearches
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Dossier Supprimé : C:\Program Files (x86)\Software
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\Extensions\{2d7886a0-85bb-4bf2-b684-ba92b4b21d23}
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\Extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\Extensions\ffxtlbr@mysearchdial.com
Dossier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\Extensions\quick_start@gmail.com
Dossier Supprimé : C:\Users\dossa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcpfhaghaadpjpgocojgnlhjcieeooel
Dossier Supprimé : C:\Users\dossa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Fichier Supprimé : C:\END
Fichier Supprimé : C:\Users\Public\Desktop\Advanced System Protector.lnk
Fichier Supprimé : C:\Users\Public\Desktop\RegClean Pro.lnk
Fichier Supprimé : C:\WINDOWS\System32\roboot64.exe
Fichier Supprimé : C:\Users\dossa_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
Fichier Supprimé : C:\Users\dossa_000\Desktop\MyPC Backup.lnk
Fichier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\searchplugins\conduit-search.xml
Fichier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\searchplugins\iminent.xml
Fichier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\searchplugins\Mysearchdial.xml
Fichier Supprimé : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\user.js
Fichier Supprimé : C:\Users\dossa_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage
Fichier Supprimé : C:\Users\dossa_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
Fichier Supprimé : C:\Users\dossa_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
Fichier Supprimé : C:\WINDOWS\System32\Tasks\Advanced System Protector
Fichier Supprimé : C:\WINDOWS\System32\Tasks\Advanced System Protector_startup
Fichier Supprimé : C:\WINDOWS\Tasks\MySearchDial.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\MySearchDial
Fichier Supprimé : C:\WINDOWS\System32\Tasks\RegClean Pro
Fichier Supprimé : C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\RegClean Pro_DEFAULT
Fichier Supprimé : C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\RegClean Pro_UPDATES
Fichier Supprimé : C:\WINDOWS\Tasks\Re-markit Update.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\Re-markit Update
Fichier Supprimé : C:\WINDOWS\Tasks\SaveSense.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\SaveSense
Fichier Supprimé : C:\WINDOWS\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore
Fichier Supprimé : C:\WINDOWS\Tasks\SoftwareUpdateTaskMachineCore.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\SoftwareUpdateTaskMachineCore
Fichier Supprimé : C:\WINDOWS\Tasks\SoftwareUpdateTaskMachineUA.job
Fichier Supprimé : C:\WINDOWS\System32\Tasks\SoftwareUpdateTaskMachineUA

***** [ Raccourcis ] *****


***** [ Registre ] *****

Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [quick_start@gmail.com]
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.mysearchdialesrvc.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Iminent
Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore
Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd
Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd.1
Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr
Clé Supprimée : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\speedupmypc
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cltmngsvc.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Boxore Client]
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=3
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=9
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0053172.BHO
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0053172.BHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0053172.Sandbox
Clé Supprimée : HKLM\SOFTWARE\Classes\CrossriderApp0053172.Sandbox.1
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3004627E-F8E9-4E8B-909D-316753CBA923}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C358B3D0-B911-41E3-A276-E7D43A6BA56D}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511311172}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522312272}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555315572}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566316672}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544314472}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511311172}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511311172}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511311172}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{3004627E-F8E9-4E8B-909D-316753CBA923}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555315572}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566316672}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Donnée Restaurée : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Clé Supprimée : HKCU\Software\Boxore
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\IM
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\mysearchdial
Clé Supprimée : HKCU\Software\mysearchdial.com
Clé Supprimée : HKCU\Software\Nosibay
Clé Supprimée : HKCU\Software\powerpack
Clé Supprimée : HKCU\Software\SaveSenseLive
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\systweak
Clé Supprimée : HKCU\Software\TutoTag
Clé Supprimée : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Clé Supprimée : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Clé Supprimée : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Clé Supprimée : HKLM\Software\Boxore
Clé Supprimée : HKLM\Software\DealPlyLive
Clé Supprimée : HKLM\Software\free_soft_to_day
Clé Supprimée : HKLM\Software\IePlugin
Clé Supprimée : HKLM\Software\Iminent
Clé Supprimée : HKLM\Software\InstallCore
Clé Supprimée : HKLM\Software\PerformerSoft
Clé Supprimée : HKLM\Software\SaveSenseLive
Clé Supprimée : HKLM\Software\supTab
Clé Supprimée : HKLM\Software\supWPM
Clé Supprimée : HKLM\Software\systweak
Clé Supprimée : HKLM\Software\Tutorials
Clé Supprimée : HKLM\Software\Uniblue
Clé Supprimée : HKLM\Software\webssearchesSoftware
Clé Supprimée : HKLM\Software\Wpm
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean Pro_is1
Clé Supprimée : [x64] HKLM\SOFTWARE\Iminent
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Donnée Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\settin~1\systemk\syskldr.dll
Donnée Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\settin~1\systemk\x64\syskldr.dll
Donnée Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\linkey\ieexte~1\iedll64.dll

***** [ Navigateurs ] *****

-\\ Internet Explorer v11.0.9600.16518

Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v28.0 (en-US)

[ Fichier : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\prefs.js ]

Ligne Supprimée : user_pref("browser.search.defaultenginename", "Mysearchdial");
Ligne Supprimée : user_pref("browser.search.order.1", "Mysearchdial");
Ligne Supprimée : user_pref("browser.search.selectedEngine", "Mysearchdial");
Ligne Supprimée : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1QzutAyCtBtAzzyBzztAtAyDyCyBzy0Dzz0DtN0D0Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtAtDyD1[...]
Ligne Supprimée : user_pref("extensions.aee5ad154f9094cc0aa51d7e94e3fb0af36204afdf43e49179c718384e2e4d3adcom53172.53172.internaldb.monetization_plugin_last_executable_request.value", "%22hxxp%3A//dde.storage.dmccint.co[...]
Ligne Supprimée : user_pref("extensions.crossrider.bic", "1456211830ef287343af3c3119d7c718");
Ligne Supprimée : user_pref("extensions.enabledAddons", "%7B2d7886a0-85bb-4bf2-b684-ba92b4b21d23%7D:3.0,%7B3306b4c0-319d-423b-a5d8-f6c757c446a5%7D:1.158,ee5ad154-f909-4cc0-aa51-d7e94e3fb0af%4036204afd-f43e-4917-9c71-83[...]
Ligne Supprimée : user_pref("extensions.iminent.admin", false);
Ligne Supprimée : user_pref("extensions.iminent.aflt", "orgnl");
Ligne Supprimée : user_pref("extensions.iminent.appId", "{0E4B2CAB-B859-4C57-B96E-63DDEC692BC4}");
Ligne Supprimée : user_pref("extensions.iminent.autoRvrt", "false");
Ligne Supprimée : user_pref("extensions.iminent.dfltLng", "");
Ligne Supprimée : user_pref("extensions.iminent.excTlbr", false);
Ligne Supprimée : user_pref("extensions.iminent.ffxUnstlRst", false);
Ligne Supprimée : user_pref("extensions.iminent.id", "a8969d8d000000000000020406080a0c");
Ligne Supprimée : user_pref("extensions.iminent.instlDay", "16162");
Ligne Supprimée : user_pref("extensions.iminent.instlRef", "");
Ligne Supprimée : user_pref("extensions.iminent.newTab", false);
Ligne Supprimée : user_pref("extensions.iminent.prdct", "iminent");
Ligne Supprimée : user_pref("extensions.iminent.prtnrId", "iminent");
Ligne Supprimée : user_pref("extensions.iminent.rvrt", "false");
Ligne Supprimée : user_pref("extensions.iminent.smplGrp", "none");
Ligne Supprimée : user_pref("extensions.iminent.tlbrId", "YBCPCSTIPO");
Ligne Supprimée : user_pref("extensions.iminent.tlbrSrchUrl", "hxxp://start.iminent.com/?ref=toolbarm#q=");
Ligne Supprimée : user_pref("extensions.iminent.vrsn", "1.8.28.3");
Ligne Supprimée : user_pref("extensions.iminent.vrsnTs", "1.8.28.311:06:11");
Ligne Supprimée : user_pref("extensions.iminent.vrsni", "1.8.28.3");
Ligne Supprimée : user_pref("extensions.mysearchdial.AL", 2);
Ligne Supprimée : user_pref("extensions.mysearchdial.aflt", "ir_14_16_ff");
Ligne Supprimée : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Ligne Supprimée : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzutAyCtBtAzzyBzztAtAyDyCyBzy0Dzz0DtN0D0Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StD0BtAtAyCyCzz0EtG0C0A0By[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.cntry", "FR");
Ligne Supprimée : user_pref("extensions.mysearchdial.cr", "1809688516");
Ligne Supprimée : user_pref("extensions.mysearchdial.dfltLng", "");
Ligne Supprimée : user_pref("extensions.mysearchdial.dfltSrch", true);
Ligne Supprimée : user_pref("extensions.mysearchdial.dnsErr", true);
Ligne Supprimée : user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,18285[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.excTlbr", false);
Ligne Supprimée : user_pref("extensions.mysearchdial.hdrMd5", "3565C6937C1A72727D512A55409869F0");
Ligne Supprimée : user_pref("extensions.mysearchdial.hmpg", true);
Ligne Supprimée : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1QzutAyCtBtAzzyBzztAtAyDyCyBzy0Dzz0DtN0D0Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtD[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.id", "3623878335679D8D");
Ligne Supprimée : user_pref("extensions.mysearchdial.instlDay", "16175");
Ligne Supprimée : user_pref("extensions.mysearchdial.instlRef", "140305_a");
Ligne Supprimée : user_pref("extensions.mysearchdial.lastB", "hxxp://start.mysearchdial.com/?f=1&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1QzutAyCtBtAzzyBzztAtAyDyCyBzy0Dzz0DtN0D0Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtA[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.29.011:17:30");
Ligne Supprimée : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1QzutAyCtBtAzzyBzztAtAyDyCyBzy0Dzz0DtN0D0Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyE[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"95\",\"lastVrsn\":\"95\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Ligne Supprimée : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Ligne Supprimée : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Ligne Supprimée : user_pref("extensions.mysearchdial.sg", "none");
Ligne Supprimée : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Ligne Supprimée : user_pref("extensions.mysearchdial.tlbrId", "base");
Ligne Supprimée : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=ir_14_16_ff&cd=2XzuyEtN2Y1L1QzutAyCtBtAzzyBzztAtAyDyCyBzy0Dzz0DtN0D0Tzu0SzztAyDtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutC[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.vrsn", "1.8.29.0");
Ligne Supprimée : user_pref("extensions.mysearchdial.vrsni", "1.8.29.0");
Ligne Supprimée : user_pref("extensions.mysearchdial_i.newTab", false);
Ligne Supprimée : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Ligne Supprimée : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.29.011:17:30");

[ Fichier : C:\Users\dossa_000\AppData\Roaming\Mozilla\Firefox\Profiles\597gvtft.default\prefs.js ]


-\\ Google Chrome v34.0.1847.116

[ Fichier : C:\Users\dossa_000\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [13155 octets] - [23/03/2014 22:14:01]
AdwCleaner[R1].txt - [34762 octets] - [15/04/2014 20:58:43]
AdwCleaner[S0].txt - [8582 octets] - [23/03/2014 22:15:44]
AdwCleaner[S1].txt - [25147 octets] - [15/04/2014 21:00:16]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [25208 octets] ##########

0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
15 avril 2014 à 22:27
Bonsoir,
Bien! :-)
-------------------
1/
Tu vas maintenant Réinitialiser, et reparémétrer tes navigateurs, supprimer/désactiver les extensions inutiles/parasites :
* Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
* Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
* Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=

2/
Télécharge: Junkware Removal Tool à partir ce lien : https://www.bleepingcomputer.com/download/junkware-removal-tool/dl/131/

!!! Ne clique pas sur Download !!! , attends simplement que la fenetre de telechargement arrive pour confirmation

* Enregistre ce fichier sur le bureau.

* Ferme tout tes navigateurs

Sous XP, double-clique sur l'icône et presse une touche lorsque cela sera demandé.
Sous Vista/7/8, clic droit et Exécuter en temps qu'administrateur.

* NB: Le bureau disparaitra un instant, c'est normal.

* Laisse le programme travailler ne touche plus à rien

* Poste le rapport généré à la fin de l'analyse.

Tuto : http://hackinginterdit.blogspot.fr/2013/02/junkware-removal-tool.html

Bonne soirée
0
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014
16 avril 2014 à 00:02
Re bonsoir voilà la suite mais sa contiu à le faire! j'ai des captures d'image si tu veux voir!


0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
16 avril 2014 à 08:44
Bonjour,
Re bonsoir voilà la suite mais sa contiu à le faire! j'ai des captures d'image si tu veux voir! 
Oui bien sure!
---------------
1/
Est ce que tu as supprimé/désactivé les extensions inutiles comme
demandé ci-dessus.

2/
Pour faire un diagnostique et lancer un script :
* Télécharge ZHPDiag de Nicolas Coolman à partir ce lien :
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
* Une fois le téléchargement achevé,
* Double-clique sur l'icône pour lancer le programme. Sous Vista , Seven ou Windows 8 clic droit « exécuter en tant qu'administrateur »
* Dans la fenêtre ZHPDiag qui vient de s'ouvrir , clique sur "Configurer"
* Clique sur la loupe en bas à gauche sans signe pour lancer l'analyse.
* Clique sur OUI à la question "Voulez-vous un rapport full options"
* Laisse l'outil travailler, il peut être assez long.
* Un rapport s'ouvre. Ce rapport se trouve également sur ton bureau
* Héberge le rapport ZHPDiag.txt de ton bureau sur : FEC Upload ou : malekal.com
* Fais copier/coller le lien fourni dans ta prochaine réponse

Aide ZHPDiag :http://nicolascoolman.webs.com/tutorials.htm

@+

0
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014
16 avril 2014 à 21:07
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
16 avril 2014 à 21:32
Bonsoir,
1/
Désinstalle depuis le panneau de configuration ;
- Logiciel: Boxore Client
- Logiciel: BrowseMark

2/
--> Copie tout le texte présent en gras ci-dessous (Sélectionne-le, clique droit dessus et choisis "Copier").



Script ZHPFix
EmptyPrefetch
ShortcutFix
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.457E712C53E5A77EDBAFE375C9D76A60] - (...) -- C:\Program Files (x86)\Re-markit Corp\Re-markit_wd.exe [77312] [PID.4596] =>PUP.ReMarkIt
[MD5.E484166BB6034411EAAAAA99D84FDDBD] - (...) -- C:\Program Files (x86)\BrowseMark\bin\BrowseMark.BrowserAdapter.exe [95520] [PID.7380] =>PUP.BrowseMark
O2 - BHO: BrowseMark [64Bits] - {aeac172e-2e4b-4b92-9af6-b0cdb1acecdb} . (.BrowseMark - BrowseMark.) -- C:\Program Files (x86)\BrowseMark\BrowseMarkbho.dll =>PUP.BrowseMark
O2 - BHO: Linkey [64Bits] - {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} Clé orpheline =>PUP.LinkeySearch
O4 - HKLM\..\Wow6432Node\Run: [fst_fr_134] Clé orpheline =>PUA.FSTfr9
O23 - Service: SecureAssist (SecureAssist) . (.SecureAssist - Pas de description.) - c:\Program Files\SupraSavings\SecureAssist.exe =>PUP.SupraSavings
O23 - Service: Update BrowseMark (Update BrowseMark) . (...) - C:\Program Files (x86)\BrowseMark\updateBrowseMark.exe =>PUP.BrowseMark
O23 - Service: Util BrowseMark (Util BrowseMark) . (...) - C:\Program Files (x86)\BrowseMark\bin\utilBrowseMark.exe =>PUP.BrowseMark
O23 - Service: xmkysecqun64 (xmkysecqun64) . (...) - C:\Program Files\003\xmkysecqun64.exe =>PUP.Agent
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Re-markit_wd.job [416] =>PUP.ReMarkIt
[MD5.FA85765FFD5EF9C465BC8F9594AD64D0] [APT] [83d9b0a0-1558-45c6-b9d7-8738a1bba066-1] (.High-QualityV8.) -- C:\Program Files (x86)\HQVid1.9v3\HQVid1.9v3-codedownloader.exe [477696] =>PUP.CrossRider
[MD5.96535A277FC5F5E0FA1818F72E27D829] [APT] [83d9b0a0-1558-45c6-b9d7-8738a1bba066-3] (.High-QualityV8.) -- C:\Program Files (x86)\HQVid1.9v3\83d9b0a0-1558-45c6-b9d7-8738a1bba066-3.exe [1861120] =>PUP.CrossRider
[MD5.CA909F33809F842E3E8CA6C074960215] [APT] [83d9b0a0-1558-45c6-b9d7-8738a1bba066-4] (.High-QualityV8.) -- C:\Program Files (x86)\HQVid1.9v3\83d9b0a0-1558-45c6-b9d7-8738a1bba066-4.exe [796672] =>PUP.CrossRider
[MD5.457E712C53E5A77EDBAFE375C9D76A60] [APT] [Re-markit_wd] (...) -- C:\Program Files (x86)\Re-markit Corp\Re-markit_wd.exe [77312] =>PUP.ReMarkIt
O41 - Driver: (wStLibG64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\wStLibG64.sys =>PUP.LinkiDoo
O42 - Logiciel: Boxore Client - (.Boxore OU.) [HKLM][64Bits] -- {0E365FDA-909F-4939-838A-261DD468D862} =>Adware.Boxore
O42 - Logiciel: BrowseMark - (.BrowseMark.) [HKLM][64Bits] -- BrowseMark =>PUP.BrowseMark
[HKCU\Software\AnyProtect] =>PUP.AnyProtect
[HKCU\Software\AppDataLow\Software\HQVid1.9v3] =>PUP.CrossRider
[HKCU\Software\AppDataLow\Software\Re_markit] =>PUP.ReMarkIt
[HKCU\Software\AppDataLow\Software\Rr Savings] =>PUP.SupraSavings
[HKCU\Software\AppDataLow\Software\Supra Savings] =>PUP.SupraSavings
[HKCU\Software\BrowseMark] =>PUP.BrowseMark
[HKCU\Software\Linkey] =>PUP.LinkeySearch
[HKCU\Software\SaveSense] =>PUP.SaveSense
[HKCU\Software\UpToDown] =>PUP.UpToDown
[HKLM\Software\LevelQualityWatcher] =>PUP.LevelQualityWatcher
[HKLM\Software\Rr Savings] =>PUP.SupraSavings
[HKLM\Software\Wow6432Node\BrowseMark] =>PUP.BrowseMark
[HKLM\Software\Wow6432Node\HQVid1.9v3] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\SupraSavings] =>PUP.SupraSavings
[HKLM\Software\Wow6432Node\SystemK] =>PUP.SystemK
[HKLM\Software\suprasavings] =>PUP.SupraSavings
O43 - CFD: 15/04/2014 - 21:06:20 - [5,992] ----D C:\Program Files (x86)\BrowseMark =>PUP.BrowseMark
O43 - CFD: 08/04/2014 - 21:10:17 - [6,762] ----D C:\Program Files (x86)\HQVid1.9v3 =>PUP.CrossRider
O43 - CFD: 15/04/2014 - 21:02:24 - [1,378] ----D C:\Program Files (x86)\Re-markit Corp =>PUP.ReMarkIt
O43 - CFD: 02/04/2014 - 11:10:54 - [0] ----D C:\Users\dossa_000\AppData\Local\Software
O44 - LFC:[MD5.0DE593914F0268FB2B4DE7B9C7B33057] - 02/04/2014 - 10:08:45 ---A- . (.SecureAssist - WFP driver.) -- C:\Windows\System32\Drivers\SAWFP64.sys [41768] =>PUP.SupraSavings
O44 - LFC:[MD5.43EC20A826D82342A05840B2F9859B6A] - 02/04/2014 - 10:08:51 ---A- . (...) -- C:\Windows\System32\SecureAssist.ini [5656] =>PUP.SupraSavings
O44 - LFC:[MD5.B3158EF2245F9008DA0EF8396AF4C87B] - 02/04/2014 - 10:08:51 ---A- . (...) -- C:\Windows\System32\SecureAssistOff.ini [2608] =>PUP.SupraSavings
O44 - LFC:[MD5.7A3D4ABB2134AD2DD0B237806E2D3E99] - 15/04/2014 - 20:41:05 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\wStLibG64.sys [61120] =>PUP.LinkiDoo
O45 - LFCP:[MD5.30A7328789846722D52E5D506B971EFB] - 05/04/2014 - 07:59:32 ---A- - C:\Windows\Prefetch\SPEEDUPMYPC.EXE-111C08DF.pf =>PUP.SpeedUpMyPC
O45 - LFCP:[MD5.C89DC68CF285CE1F50D94EEF5460D2A0] - 05/04/2014 - 07:59:42 ---A- - C:\Windows\Prefetch\SPEEDUPMYPC.TMP-EFE463D6.pf =>PUP.SpeedUpMyPC
O45 - LFCP:[MD5.0D9904525B7F4FE8A729ED65A2810770] - 05/04/2014 - 07:59:53 ---A- - C:\Windows\Prefetch\DEALPLY.EXE-EEA9ACFB.pf =>PUP.DealPly
O45 - LFCP:[MD5.33C72E627C6D2311E05E0DBF0032C626] - 05/04/2014 - 07:59:59 ---A- - C:\Windows\Prefetch\VOPACKAGE.EXE-008091E1.pf =>Adware.Downware
O45 - LFCP:[MD5.D49A713CE98FEB841763D9DAB06A03B3] - 05/04/2014 - 08:00:04 ---A- - C:\Windows\Prefetch\SAVESENSELIVE.EXE-859C5D70.pf =>PUP.SaveSense
O45 - LFCP:[MD5.287A7ECDB5231BD978C7EAC27A156C66] - 05/04/2014 - 08:00:05 ---A- - C:\Windows\Prefetch\SAVESENSELIVE.EXE-5EB94FFC.pf =>PUP.SaveSense
O45 - LFCP:[MD5.845030E75D58C161E4BE977DEFC2EE20] - 05/04/2014 - 08:00:18 ---A- - C:\Windows\Prefetch\VOPACKAGE.EXE-803D9B5B.pf =>Adware.Downware
O45 - LFCP:[MD5.75DA79E91F790A7798423BCB8307CB5F] - 05/04/2014 - 08:01:05 ---A- - C:\Windows\Prefetch\SPEEDUPMYPC-STANDALONE-SETUP.-5F58DF76.pf =>PUP.SpeedUpMyPC
O45 - LFCP:[MD5.0E710210B90A4141DD1560E44DB43C56] - 05/04/2014 - 08:01:05 ---A- - C:\Windows\Prefetch\SPEEDUPMYPC-STANDALONE-SETUP.-C13A9116.pf =>PUP.SpeedUpMyPC
O45 - LFCP:[MD5.EF3AE7532922613AEC75D43D8F722F9B] - 05/04/2014 - 08:03:51 ---A- - C:\Windows\Prefetch\ANYPROTECTTRAYICON.EXE-F030B920.pf =>PUP.AnyProtect
O45 - LFCP:[MD5.573D683348E54A3FF4FE0341CC0A6A95] - 05/04/2014 - 08:03:56 ---A- - C:\Windows\Prefetch\ANYPROTECT.EXE-7064871B.pf =>PUP.AnyProtect
O45 - LFCP:[MD5.2D2DA3E89DC769C95D1DE391EA859682] - 05/04/2014 - 11:18:30 ---A- - C:\Windows\Prefetch\SAVESENSEUPDATEVER.EXE-BEFF3041.pf =>PUP.SaveSense
O45 - LFCP:[MD5.836D7027B36AC1BEBF5E727358F098C3] - 05/04/2014 - 11:24:28 ---A- - C:\Windows\Prefetch\SPEEDUPMYPC.EXE-45524506.pf =>PUP.SpeedUpMyPC
O45 - LFCP:[MD5.2F149BC9CAAC91328BFD632F2971C14B] - 08/04/2014 - 20:04:59 ---A- - C:\Windows\Prefetch\LOLLIPOPINSTALLER_UNI.EXE-CBA7004E.pf =>Adware.Lollipop
O45 - LFCP:[MD5.976D381B4E7A93A8CD48D91330AE315A] - 08/04/2014 - 20:05:07 ---A- - C:\Windows\Prefetch\FREESOFTTODAY.EXE-86E0753D.pf =>Adware.FreeSoftToday
O45 - LFCP:[MD5.11BECAAF428B6CD5299AFBB2C007C9ED] - 08/04/2014 - 20:05:08 ---A- - C:\Windows\Prefetch\FREESOFTTODAY.TMP-85735FF0.pf =>Adware.FreeSoftToday
O45 - LFCP:[MD5.B01DE0871836B991A238D50C9214260C] - 08/04/2014 - 20:05:08 ---A- - C:\Windows\Prefetch\RE-MARKIT_2040-2082.EXE-20B74514.pf =>PUP.ReMarkIt
O45 - LFCP:[MD5.A52E02C622F1E95671D494FF30983D55] - 08/04/2014 - 20:05:30 ---A- - C:\Windows\Prefetch\FST_FR_134.EXE-CD55772E.pf =>PUA.FSTfr9
O45 - LFCP:[MD5.F3AE109D17F80A1A8D61B2697B4D643C] - 08/04/2014 - 20:05:42 ---A- - C:\Windows\Prefetch\RE-MARKIT158.EXE-B064A66A.pf =>PUP.ReMarkIt
O45 - LFCP:[MD5.4F0CE3F6E8A911F70F392BDD001EB070] - 08/04/2014 - 20:07:10 ---A- - C:\Windows\Prefetch\OPTIMIZERPRO.EXE-2D976296.pf =>PUP.OptimizerPro
O45 - LFCP:[MD5.B4629739819E328D429C2731DF396A47] - 08/04/2014 - 20:07:28 ---A- - C:\Windows\Prefetch\VOPACKAGE.EXE-D17C3237.pf =>Adware.Downware
O45 - LFCP:[MD5.A3FB93291B1FFC907C0CE460D6063143] - 08/04/2014 - 20:08:02 ---A- - C:\Windows\Prefetch\WPM.EXE-350E3C31.pf =>PUP.WpManager
O45 - LFCP:[MD5.F32BD42A674B321C14A9E43CB6723CBB] - 08/04/2014 - 20:08:20 ---A- - C:\Windows\Prefetch\SUPTAB.EXE-84914670.pf =>PUP.SupTab
O45 - LFCP:[MD5.73E7905D9D541BD0CD64D8EEBAA9BE00] - 08/04/2014 - 20:08:33 ---A- - C:\Windows\Prefetch\UPFST_FR_134.EXE-31772A1E.pf =>PUA.FSTfr9
O45 - LFCP:[MD5.B2F227F136E47FF4767496A67B33AE77] - 08/04/2014 - 20:08:40 ---A- - C:\Windows\Prefetch\OPTPROSTART.EXE-C9239E06.pf =>PUP.OptimizerPro
O45 - LFCP:[MD5.778E5607D97C185674DE222D6ABED635] - 08/04/2014 - 20:09:47 ---A- - C:\Windows\Prefetch\MEDIAPLAYERPLUS-CODEDOWNLOADE-78BAA525.pf =>PUP.CrossRider
O45 - LFCP:[MD5.547F111C501F9BF7869E299C013EBE33] - 08/04/2014 - 20:11:15 ---A- - C:\Windows\Prefetch\MEDIAPLAYERPLUS-BG.EXE-AC2C3500.pf =>PUP.CrossRider
O45 - LFCP:[MD5.11731E6502D88764CE84AA58570DC409] - 09/04/2014 - 09:25:48 ---A- - C:\Windows\Prefetch\RE-MARKIT_WD.EXE-3F882A46.pf =>PUP.ReMarkIt
O45 - LFCP:[MD5.40FAEA1940E69D5723AC260F63D0BC99] - 12/04/2014 - 19:36:03 ---A- - C:\Windows\Prefetch\SUPTAB.EXE-EBD7D757.pf =>PUP.SupTab
O45 - LFCP:[MD5.4A1E08B39332FAF6C959B7452882419E] - 14/04/2014 - 10:25:55 ---A- - C:\Windows\Prefetch\SAVESENSELIVEHANDLER.EXE-DBB83706.pf =>PUP.SaveSense
O45 - LFCP:[MD5.9BAFE762415072F4EE319A2E2553181C] - 15/04/2014 - 10:05:00 ---A- - C:\Windows\Prefetch\SAVESENSELIVE.EXE-EE14EAD5.pf =>PUP.SaveSense
O45 - LFCP:[MD5.F9002AB8E8C3DCB22F8037880D32F1ED] - 15/04/2014 - 10:16:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-58E57699.pf
O45 - LFCP:[MD5.461A3D161C296406B7AB08C20BAFCCA1] - 15/04/2014 - 10:17:23 ---A- - C:\Windows\Prefetch\MYSEARCHDIAL.EXE-569F0256.pf =>Adware.MyWebSearch
O45 - LFCP:[MD5.B153B86FBA4770CBC6FC4530A627687C] - 15/04/2014 - 10:18:01 ---A- - C:\Windows\Prefetch\MYSEARCHDIALSRV.EXE-D4E75505.pf =>Adware.MyWebSearch
O45 - LFCP:[MD5.E2C62FB5DFBC41021E520ECB299CEB1B] - 15/04/2014 - 10:19:14 ---A- - C:\Windows\Prefetch\BROWSEMARK.FIRSTRUN.EXE-E51BAE51.pf =>PUP.BrowseMark
O45 - LFCP:[MD5.FFF2A1CCBE406A46F80F38DA5ED35300] - 15/04/2014 - 10:21:35 ---A- - C:\Windows\Prefetch\MYPC BACKUP.EXE-EFC95E5E.pf =>PUP.MyPCBackup
O45 - LFCP:[MD5.00BF45C62327673190C01B244A539B81] - 15/04/2014 - 10:21:50 ---A- - C:\Windows\Prefetch\ADVANCEDSYSTEMPROTECTOR.EXE-50542B42.pf =>PUP.AdvancedSystemProtector
O45 - LFCP:[MD5.8AF9E3D736DA00921908A6FD3D1D77DF] - 15/04/2014 - 20:00:21 ---A- - C:\Windows\Prefetch\BOXORE.EXE-BB3436B0.pf =>Adware.Boxore
O45 - LFCP:[MD5.BFF3A1045E1F4C3012FE5E5752947BAC] - 16/04/2014 - 08:16:16 ---A- - C:\Windows\Prefetch\UPDATEBROWSEMARK.EXE-B320CAB9.pf =>PUP.BrowseMark
O45 - LFCP:[MD5.93C5E545082CCE3825A8B79CCE2B6539] - 16/04/2014 - 08:16:23 ---A- - C:\Windows\Prefetch\UTILBROWSEMARK.EXE-D578ECA1.pf =>PUP.BrowseMark
O45 - LFCP:[MD5.D342832B77731DCB35B32F84730D65FD] - 16/04/2014 - 08:16:48 ---A- - C:\Windows\Prefetch\BROWSEMARK.BROWSERADAPTER.EXE-3DD132FA.pf =>PUP.BrowseMark
O45 - LFCP:[MD5.428D7557A23D2626F3AD92ACE161C2DD] - 30/03/2014 - 14:27:53 ---A- - C:\Windows\Prefetch\UNITYWEBPLAYER.EXE-53DFA23C.pf =>Adware.SocialSkinz
O50 - IFEO:Image File Execution Options - browsersafeguard.exe - tasklist.exe =>PUP.BrowserSafeguard
O50 - IFEO:Image File Execution Options - dprotectsvc.exe - tasklist.exe =>Trojan.Staser
O50 - IFEO:Image File Execution Options - protectedsearch.exe - tasklist.exe =>Spyware.ProtectedSearch
O50 - IFEO:Image File Execution Options - rjatydimofu.exe - tasklist.exe
O50 - IFEO:Image File Execution Options - snapdo.exe - tasklist.exe =>Hijacker.SmartBar
O50 - IFEO:Image File Execution Options - utiljumpflip.exe - tasklist.exe =>PUP.JumpFlip
O58 - SDL:[MD5.0DE593914F0268FB2B4DE7B9C7B33057] - 18/03/2014 - 14:12:04 ---A- . (.SecureAssist - WFP driver.) -- C:\Windows\System32\Drivers\SAWFP64.sys [41768] =>PUP.SupraSavings
O58 - SDL:[MD5.7A3D4ABB2134AD2DD0B237806E2D3E99] - 15/04/2014 - 20:41:05 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\wStLibG64.sys [61120] =>PUP.LinkiDoo
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\background.html [1705]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\chromeCoreFilesIndex.txt [853]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\manifest.xml [1838]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins.json [9114]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\1.js [6794]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\102.js [2048]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\103.js [2296]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\104.js [1289]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\119.js [5012]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\13.js [6993]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\14.js [20752]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\17.js [79864]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\177.js [31088]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\179.js [704]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\180.js [804]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\182.js [14181]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\183.js [2427]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\184.js [1273]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\19.js [7001]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\191.js [1153]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\207.js [1537]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\21.js [3560]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\22.js [8958]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\223.js [453]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\231.js [706]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\232.js [703]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\242.js [1057]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\246.js [2049]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\28.js [536]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\4.js [94050]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\47.js [7574]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\64.js [2200]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\72.js [46062]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\78.js [3187]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\80.js [62]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\91.js [151204]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\93.js [560]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\plugins\97.js [3157]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\userCode\background.js [440]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensionData\userCode\extension.js [756]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\actions\1.png [1223]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\icon128.png [5524]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\icon16.png [3235]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\icon48.png [4124]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\chrome.js [11499]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\cookie.js [11743]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\message.js [3346]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\monitor.js [2039]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\pageAction.js [1737]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\pageActionBG.js [2519]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\background.js [34941]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\app_api.js [6697]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\bg_app_api.js [4729]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\consts.js [429]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\cookie_store.js [5905]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\crossriderAPI.js [11366] =>PUP.CrossRider
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\delegate.js [2002]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\events.js [5757]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\extensionDataStore.js [6817]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\logFile.js [775]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\logging.js [944]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\onBGDocumentLoad.js [480]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\popupResource\newPopup.js [40]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\popupResource\popup.js [45]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\reports.js [4949]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\storageWrapper.js [903]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\updateManager.js [8324]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\util.js [5142]
O61 - LFC: 15/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_deghekbbihbapplmbffglehkdhkeibbm_0\1 [19456]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\xhr.js [2699]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\main.js [8491]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\platformVersion.js [409]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\manifest.json [1223]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\popup.html [139]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\deghekbbihbapplmbffglehkdhkeibbm\000005.ldb [721749]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\deghekbbihbapplmbffglehkdhkeibbm\CURRENT [16]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\deghekbbihbapplmbffglehkdhkeibbm\LOCK [0]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\deghekbbihbapplmbffglehkdhkeibbm\LOG [257]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\deghekbbihbapplmbffglehkdhkeibbm\LOG.old [262]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\deghekbbihbapplmbffglehkdhkeibbm\MANIFEST-000007 [101]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_deghekbbihbapplmbffglehkdhkeibbm_0.localstorage [3072]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_deghekbbihbapplmbffglehkdhkeibbm_0.localstorage-journal [3608]
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_fr.reimageplus.com_0.localstorage [3072] =>Rogue.ReimageRepair
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_fr.reimageplus.com_0.localstorage-journal [3608] =>Rogue.ReimageRepair
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_rvzr-a.akamaihd.net_0.localstorage [3072] =>PUP.AkamaiHD
O61 - LFC: 15/04/2014 - 21:00:44 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_rvzr-a.akamaihd.net_0.localstorage-journal [3608] =>PUP.AkamaiHD
O61 - LFC: 16/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\crossriderManifest.json [521] =>PUP.CrossRider
O61 - LFC: 16/04/2014 - 21:00:43 ---A- . (...) -- C:\Users\dossa_000\AppData\Roaming\Opera Software\Opera Stable\Extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\installer.js [777]
O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} - (default-search.net) - http://www.default-search.net =>Hijacker.SearchNet
O90 - PUC: "ADF563E0F909939438A862D14D868D26" . (.Boxore Client.) -- C:\WINDOWS\Installer\{0E365FDA-909F-4939-838A-261DD468D862}\boxore.ico =>Adware.Boxore
O90 - PUC: "BD04C21DD7DC68D42958E5F22E63394E" . (.SupraSavings.) -- c:\WINDOWS\Installer\{D12C40DB-CD7D-4D86-9285-5E2FE23693E4}\icon64.ico =>PUP.SupraSavings
[MD5.9A5263D3C011F34BFA10C5458CF27197] [WIS][02/04/2014] (.SupraSavings - SupraSavings.) -- C:\Windows\Installer\1d6870.msi [4997120] =>PUP.SupraSavings
[MD5.79BBAAC753ABDA50DF19030265F7D1A6] [WIS][10/04/2014] (.Boxore OU - Boxore Client Installer.) -- C:\Windows\Installer\7f2fa2a.msi [2473984] =>Adware.Boxore
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32 =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS =>PUP.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\Signup Wizard_RASAPI32 =>PUP.JDIBackup
HKLM\SOFTWARE\Microsoft\Tracing\Signup Wizard_RASMANCS =>PUP.JDIBackup
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_RASAPI32 =>PUP.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_RASMANCS =>PUP.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseMark_RASAPI32 =>PUP.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseMark_RASMANCS =>PUP.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilBrowseMark_RASAPI32 =>PUP.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilBrowseMark_RASMANCS =>PUP.BrowseMark
SR - | Auto 12/03/2014 1558032 | (SecureAssist) . (.SecureAssist.) - c:\Program Files\SupraSavings\SecureAssist.exe =>PUP.SupraSavings
SR - | Auto 16/04/2014 350496 | (Update BrowseMark) . (...) - C:\Program Files (x86)\BrowseMark\updateBrowseMark.exe =>PUP.BrowseMark
SR - | Auto 15/04/2014 350496 | (Util BrowseMark) . (...) - C:\Program Files (x86)\BrowseMark\bin\utilBrowseMark.exe =>PUP.BrowseMark
SR - | Auto 02/04/2014 706560 | (xmkysecqun64) . (...) - C:\Program Files\003\xmkysecqun64.exe =>PUP.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AEAC172E-2E4B-4B92-9AF6-B0CDB1ACECDB}] =>PUP.BrowseMark^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}] =>PUP.LinkeySearch^
[HKLM\SYSTEM\CurrentControlSet\Services\SecureAssist] =>PUP.SupraSavings^
[HKLM\SYSTEM\CurrentControlSet\Services\Update BrowseMark] =>PUP.BrowseMark^
[HKLM\SYSTEM\CurrentControlSet\Services\Util BrowseMark] =>PUP.BrowseMark^
[HKLM\SYSTEM\CurrentControlSet\Services\xmkysecqun64] =>PUP.Agent^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0E365FDA-909F-4939-838A-261DD468D862}] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\BrowseMark] =>PUP.BrowseMark^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160] =>Adware.PredictAd
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}] =>Adware.Bandoo^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0124B064795BB484FA494FC7CF204C0C] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01F8E7504D2D2644AB1185234D2AD5AC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04CDEDFDD6EF25443B78A49D1FE5B4F2] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\058911EBC07BAAE42B102E3F4B0D070D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\05CE306CC244D284D8D8090E404CD7D3] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\089527E77AD22E345B0066D226E44F46] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0BD0B15D6F0C2BF428B339B2D2D732C9] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C1AAA506D92B2D44BD6FEF6CDFB71E1] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CAEC9AFF1716FF4DBACEED82F88C702] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DD4444CBC682774C8E573CC73C5BC46] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F68250201451D64EA71E91BA19832DC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\126FFC99A0F214F41AE2D6C7A0FC09BF] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12F72EF2521177A4BB467FF35A881382] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14873772FE3926F4195C9280D52D3486] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14CF11D787D40BF458A3B5CB123733CE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\163A5460E4FB18343B4C0B781B27E813] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1705977FCB2F22F4D8A9AB847C3FB9CE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\19F133B6A0BA9B14493CE47703DF4CF3] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1C735C7A54F53574CA5AEA93D0D1F01E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1CE2260B068265A488410CA171D93778] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DF1DD2609A2135479C19D72E41B64AA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F72D9058D0863E4F8EB9FE6E980C385] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2217D47FAFB0AC547820199B3A026CFB] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22C5FD2815F5C7C4DB5F34F504BF9D96] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\26CF57FC035624845B9005289DFA1448] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2719056FB4CDD294887140382819FFF7] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2956CB28F45AAF746998774B3C9FF012] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2AD5E582EBA9ED54989A134D9250922B] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BB672F8D2CA64146B6688371E75C986] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2EA450B923F9C4D4BBEB203648FBFFDC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ECA942EFDBD22B4EBB7FE3AB9EDDBDD] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2F055C41FDCA50A43BE42A96D243AD47] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2F4EE319A22490145BC4AEBC53B616CA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\31E430E345D85D54CA33BC88AEFDB9D8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\358096DA35E67B5479C2E880DF0C10C1] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\37345F678B330594E9E4AC16908F78CF] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38641BF101151094F86DD62B534BDEC4] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38762340C83E6764B87807B67154F5A4] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3984BAF27BDA0DC4D8AED19FCB64BD7D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D82200490995CE42AB754DCD90AC44D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E9F0E4315A35D741873885200C6A454] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3F261C3E5AD56E54598E24B106813C7E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\40D753328E77EE842A82631EED62CEC5] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\40FDEFB25883CF140B9B5F89CB7E2871] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\412179CD2126BB34CAE51691856A3D68] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43218F63264345445A73071C174FEEE8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\439E8A02B7736CA488EECE28D7EE961A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\456D8CED0106E1649AE5CBD8082AC705] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\459277E8A0EE8894F9D7F807DF90506A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\463372A470C576443AE8802B1AC61D89] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\48F13E425ECD5F243A8A82AA2B65336D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B6F3AD0EE690D2478C7D0528AADF8C4] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4BB9D431259E08A499469636383B9935] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D3B0714BC82B2340AB18C031262573D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4D5809867D6C1D14180511D3AAD03F79] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4DB13DED48DC4494C90DE800D31B086C] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\52C608FC2A61CCE479768A9719CABF7B] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\56861F0CE995D0E45835F5D31E105D54] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\58E44D082625757499995F9516313A9C] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A52F724764B00747A637F14FBBBB830] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5B19839CB98BB914BA43E863BBE11B4E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\613DCE6E373581A40B6C88D4F7C09096] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6292C097F9759424BAFA3E32CD3DD562] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\62C171206461ED34885A4AE095F4A7AC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63E9F48D88AA940498502E29E3747471] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64747EAAAE2BA5141AEBCF4F6651A144] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6494B0B34076D6248B6E5F42E3252AD0] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6495111F730311440BBC3AAAF3B8C7AC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65273BD75ADFA9146A0950469941299A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6543EA2E8E729CF4789BCD7361D58C03] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\658DABBCADB609E429A6769C46FAADD0] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67A614CC45D7C5845BE2184211CC8F9C] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B6581D2CF6BB444D8ACBF79E3AF425B] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C0DB201BFD71284CB8CA279446863E8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EA4E994723ECC940AE01A2507673199] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F2331E07AF9B414DB15E2E7BAB7F880] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F3E6739E6CECC64D9B7E5D24CF60746] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\73268B3F6C2206C4BAF14E3C5B4BC494] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\73D229597C7281E409FDEB3079E30E5A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75A49DF39158638428A0F7797D4CD1E6] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D223AE12684124794DD7D3FB067886] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76937F723CDCAB547A9791D60867A5B5] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\78AD011E92C0B7D4A86E41451EC7A0F0] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79080E81959ECB54E9E7B3C67AE5781A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A8B37070412F4D47895AA40EFC2E39A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7F84DAA817EC0AB409DFE802184D5B09] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\82F14F44AA63A5945A2E960EF018794E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\831071FAC16E2DA4682F55E0B0DE6979] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\83D0F8F1641145A42B26F71D534E9A34] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\84072C174C7F25148BFB33ADE8C704E1] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\872C7B3D2887D4E4EBF645D7AB9374D1] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C00987A23C36B145AB60EE274936EB3] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D736B12592E2E94094267BC5B7AA7EB] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F3E0221A8351144BB04AEF5266143CB] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90E77522D1656DA4DABC673942243B44] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\920219BD6C542544893D7ECFCB5E2B6B] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\939840D09446FFF459FA6CB4F03C38BE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9459BDD3A7C686345A9B7A1AD1CC6BE4] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95AC1A94BAFFE3D41B23B2097BA8B190] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\983EBB458AA802846BBC74D26C3209C8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98A0180804723E24AAA941C0B046363D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\990A25796B2949842BACA56514B7316A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\999D63C685BF046489CA3126029FE837] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9AC4C1465926D52478BEC6D3DB946DD7] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CF7625ADC5FCFE43AD003DCC16B49CB] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A2D54AC8D24E8F94ABBB993A69EF13EC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A357C02D064283D41978AFEEE1A48E0F] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4022CA9531268145AD6F8FD7F4F01DC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5CDCC279604D6746A7DA9ED701BF41F] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6F4FE9AC6F165A4EAA8F90CE891C0DA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A960AC53CA238044A820A3B63D4536CA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AA3077BB9E4617440AF467D91146A8C4] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AAC05EAA51DC78A41A1DCE3B31038584] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD7957C966A13904EA466152B29EA9AF] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B13C910C1D6376A4BB2BDB9585253923] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1B5689BAD89AFD448923B5051E5BB50] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B2CE0F97DFABDE446811F33E7273BFE2] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B445461D74829AF4C8EF6C00B2861EF0] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B4D011D14FD2DB74A9090EA633C0B98E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B551BEBCA0334AA40978C2137FD21AB2] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B877893A942DC524580C7B45547FCBC8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC651C0803618C44DA6F1DDD51AF35BF] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BDE5B9F2A520B674BBB1BEAE5F5D51B8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE85C3D8F4816D4A9E5F4EAA4D80A2A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BFD48F71CCCEC97489147D4E852D3F6F] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C05694CDCD2DD724F90F13A20E67EC7C] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C42065D3060DD4648A38882BEA92941E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5F606FB1152E344981B09071C472211] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C77B53875F388AA4AA076F6F9D099011] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C85EA06E73FF0A240B4C287EE0D9521D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA30DE5A0DE293D4AA3BF5E13322823A] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA9ADF25A98C8074FA4CBBA3ED29FEFA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCE886225BDEB6C43868B0AEDB036B02] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CDD11BF4B1CAA584695EFBC611438213] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE1CCF5CABA1395409D54586592B319E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE7392F9B9A81FA4EA952625BD5534FE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D12B7976E5CA7C34D932C1A8A1BF61C8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D91D500D43BD91A44B02BDBE41E0523F] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DA2710A9158C6584C9677EB954F3AC97] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DCF07B57C9DC38E419CF122EA180585E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD2E1A561C7F1294BB3996EE77F6BBEE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DF14E9E130504B745A2AC47EF6145D24] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DF7A4CDE9ED9CD7479FF74F35FA4149E] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE39849AF921D045B613CD5852C76A6] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E03EC5B80A22A7D4C92AB528A3D323E8] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1B9E95AA2730744AB926911484F8AD5] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3436415FB2833843B9EE970079A87C0] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E3BBB86ACE9686A4281227D5F7EE95AE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E6B40E8EBBC3CD445BD2FC7D8FDCCFEC] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E77C3F952C1F0354FAFADB6B080ACCF7] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E84382A588F214C4C89C3DB758EA6AD6] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E89B10C102BBEF941A920EE2269747C0] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E9D73D5153C19FD48B6E10CB7E8572CE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EBAFF392ACA75ED4CA30BF821C1AE267] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ECFC746582988774684DB5D8D95F674D] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EECC799BFA63E6146A81EAAA53540EDE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F1547261AA1C98C48B0ECDBC767C76CE] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F1BDB464DE2D33547BB31C1B35D9C337] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F29CFDBF9B20AB8448A1BD73A3FE863F] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F5F8D8368E8CAE84188DE44DAF8C10F9] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FAB510A06C6F4B24AAD055CE6EEA27CD] =>Adware.Boxore^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:fst_fr_134 =>PUA.FSTfr9^
C:\Program Files (x86)\BrowseMark =>PUP.BrowseMark^
C:\Program Files (x86)\HQVid1.9v3 =>PUP.CrossRider^
C:\Program Files (x86)\Re-markit Corp =>PUP.ReMarkIt^
C:\Users\dossa_000\AppData\Local\Software =>Adware.Boxore
C:\Program Files (x86)\Re-markit Corp\Re-markit_wd.exe =>PUP.ReMarkIt^
C:\Program Files (x86)\BrowseMark\bin\BrowseMark.BrowserAdapter.exe =>PUP.BrowseMark^
C:\Windows\Tasks\Re-markit_wd.job =>PUP.ReMarkIt^
C:\Program Files (x86)\HQVid1.9v3\HQVid1.9v3-codedownloader.exe =>PUP.CrossRider^
C:\Program Files (x86)\HQVid1.9v3\83d9b0a0-1558-45c6-b9d7-8738a1bba066-3.exe =>PUP.CrossRider^
C:\Program Files (x86)\HQVid1.9v3\83d9b0a0-1558-45c6-b9d7-8738a1bba066-4.exe =>PUP.CrossRider^
[HKCU\Software\AnyProtect] =>PUP.AnyProtect^
[HKCU\Software\AppDataLow\Software\HQVid1.9v3] =>PUP.CrossRider^
[HKCU\Software\AppDataLow\Software\Re_markit] =>PUP.ReMarkIt^
[HKCU\Software\AppDataLow\Software\Rr Savings] =>PUP.SupraSavings^
[HKCU\Software\AppDataLow\Software\Supra Savings] =>PUP.SupraSavings^
[HKCU\Software\BrowseMark] =>PUP.BrowseMark^
[HKCU\Software\Linkey] =>PUP.LinkeySearch^
[HKCU\Software\SaveSense] =>PUP.SaveSense^
[HKCU\Software\UpToDown] =>PUP.UpToDown^
[HKLM\Software\LevelQualityWatcher] =>PUP.LevelQualityWatcher^
[HKLM\Software\Rr Savings] =>PUP.SupraSavings^
[HKLM\Software\Wow6432Node\BrowseMark] =>PUP.BrowseMark^
[HKLM\Software\Wow6432Node\HQVid1.9v3] =>PUP.CrossRider^
[HKLM\Software\Wow6432Node\SupraSavings] =>PUP.SupraSavings^
[HKLM\Software\Wow6432Node\SystemK] =>PUP.SystemK^
[HKLM\Software\suprasavings] =>PUP.SupraSavings^
C:\Windows\Installer\1d6870.msi =>PUP.SupraSavings^
C:\Windows\Installer\7f2fa2a.msi =>Adware.Boxore^
C:\Users\dossa_000\AppData\Local\Temp\BundleSweetIMSetup.exe =>PUP.SweetIM
C:\Users\dossa_000\AppData\Local\Temp\MybabylonTB.exe =>PUP.SweetIM
[HKCU\Software\Condut]
O43 - CFD: 23/12/2013 - 19:14:51 - [0,172] ----D C:\ProgramData\eBay =>Toolbar.eBay
O45 - LFCP:[MD5.1023C58BAA4AEEF25701F049C180CBC8] - 05/04/2014 - 11:15:59 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-2506B224.pf
O45 - LFCP:[MD5.5F2EC5B7DB44A01650D1B2554027C564] - 14/04/2014 - 10:23:16 ---A- - C:\Windows\Prefetch\CLTMNG.EXE-245516B1.pf
O45 - LFCP:[MD5.5A56C6DB5B7863FC6E23785A1543C890] - 14/04/2014 - 10:28:18 ---A- - C:\Windows\Prefetch\CLTMNGSVC.EXE-587D8E3B.pf
O45 - LFCP:[MD5.FE8752C105C7D7C78D35F0406E0883FD] - 26/03/2014 - 19:18:16 ---A- - C:\Windows\Prefetch\SOFTONICDOWNLOADER_POUR_BLUES-2CBAE5A4.pf =>Toolbar.Conduit
O45 - LFCP:[MD5.5D57306C5670E73719BE679E14169695] - 26/03/2014 - 19:20:09 ---A- - C:\Windows\Prefetch\SOFTONICDOWNLOADER_POUR_GOOGL-67FCCEC3.pf =>Toolbar.Conduit
O50 - IFEO:Image File Execution Options - searchprotection.exe - tasklist.exe =>Toolbar.Conduit
O50 - IFEO:Image File Execution Options - searchprotector.exe - tasklist.exe =>Toolbar.Conduit
O69 - SBI: SearchScopes [HKCU] {AC3D0FAB-600B-44BD-B69C-E0576479D72E} - (eBay) - http://rover.ebay.com =>Toolbar.eBay
C:\ProgramData\eBay =>Toolbar.eBay^
C:\Users\dossa_000\AppData\Local\Temp\nsbF549.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\nslB4.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\nss87A4.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\nst9717.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\nsu3C7E.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\nsv8DC0.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\nsy894.exe =>Toolbar.Conduit
C:\Users\dossa_000\AppData\Local\Temp\SPSetup.exe =>Toolbar.Conduit

EmptyCLSID
EmptyFlash
EmptyTemp


=> Puis lance ZHPFix depuis le raccourci situé sur ton Bureau.
(Sous Vista/Win7/Win8, il faut cliquer droit sur le raccourci de ZHPFix et choisir Exécuter en tant qu'administrateur)
=> Une fois ZHPFix ouvert, clique sur "importer" puis sur "ok" et ensuite colle le texte dans la fenêtre, clique sur GO en bas de page et confirme par oui pour lancer le nettoyage des données

=> laisse travailler l'outil et ne touche à rien ...
=> S'il t'est demandé de redémarrer le PC pour finir le nettoyage, fais le !


Une fois terminé, un nouveau rapport s'affiche : poste le contenu de ce dernier dans ta prochaine réponse ...
Ce rapport est copié sur le bureau

( ce rapport est en outre sauvegardé dans ce dossier C:/ZHP/ZHPDIAG)

===================================
Aide :http://helper-formation.fr/entraide/viewtopic.php?f=31&t=2333


0
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014
16 avril 2014 à 22:08
Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014
Fichier d'export Registre :
Run by latitnini at 16/04/2014 21:59:11
High Elevated Privileges : OK
Windows 8 Home Premium Edition, 64-bit Service Pack 1 (9600)

Corbeille vidée (00mn 04s)
Dossier Prefetcher vidé
Réparation des raccourcis navigateur

========== Processus mémoire ==========
SUPPRIMÉ Redémarrage: Memory Process: C:\Program Files (x86)\Re-markit Corp\Re-markit_wd.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\BundleSweetIMSetup.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\MybabylonTB.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nsbF549.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nslB4.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nss87A4.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nst9717.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nsu3C7E.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nsv8DC0.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\nsy894.exe
SUPPRIMÉ: Memory Process: C:\Users\dossa_000\AppData\Local\Temp\SPSetup.exe

========== Clés du Registre ==========
SUPPRIMÉ: Service: SecureAssist
SUPPRIMÉ: Service: xmkysecqun64
SUPPRIMÉ Driver Key: wStLibG64
SUPPRIMÉ: HKCU\Software\AnyProtect
SUPPRIMÉ: HKCU\Software\AppDataLow\Software\HQVid1.9v3
SUPPRIMÉ: HKCU\Software\AppDataLow\Software\Re_markit
SUPPRIMÉ: HKCU\Software\AppDataLow\Software\Rr Savings
SUPPRIMÉ: HKCU\Software\AppDataLow\Software\Supra Savings
SUPPRIMÉ: HKCU\Software\Linkey
SUPPRIMÉ: HKCU\Software\SaveSense
SUPPRIMÉ: HKCU\Software\UpToDown
SUPPRIMÉ:* HKLM\Software\LevelQualityWatcher
SUPPRIMÉ:* HKLM\Software\Rr Savings
SUPPRIMÉ: HKLM\Software\Wow6432Node\HQVid1.9v3
SUPPRIMÉ: HKLM\Software\Wow6432Node\SupraSavings
SUPPRIMÉ: HKLM\Software\Wow6432Node\SystemK
SUPPRIMÉ:* HKLM\Software\suprasavings
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - browsersafeguard.exe - tasklist.exe
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - dprotectsvc.exe - tasklist.exe
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - protectedsearch.exe - tasklist.exe
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - rjatydimofu.exe - tasklist.exe
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - snapdo.exe - tasklist.exe
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - utiljumpflip.exe - tasklist.exe
SUPPRIMÉ: SearchScopes :{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Products\\BD04C21DD7DC68D42958E5F22E63394E]
SUPPRIMÉ: [HKLM\Software\Classes\Installer\Features\BD04C21DD7DC68D42958E5F22E63394E]
SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32
SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS
SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32
SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS
SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\Signup Wizard_RASAPI32
SUPPRIMÉ:* HKLM\SOFTWARE\Microsoft\Tracing\Signup Wizard_RASMANCS
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_RASAPI32
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_RASMANCS
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseMark_RASAPI32
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseMark_RASMANCS
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilBrowseMark_RASAPI32
SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilBrowseMark_RASMANCS
SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}
SUPPRIMÉ:* HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}
SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
SUPPRIMÉ: HKCU\Software\Condut
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchprotection.exe - tasklist.exe
SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchprotector.exe - tasklist.exe
SUPPRIMÉ: SearchScopes :{AC3D0FAB-600B-44BD-B69C-E0576479D72E}

========== Valeurs du Registre ==========
SUPPRIMÉ RunValue: fst_fr_134

========== Eléments de donnée du Registre ==========
REMPLACÉ Value NoActiveDesktopChanges : Good (0) - Bad (1)

========== Dossiers ==========
Aucun dossiers CLSID Local utilisateur vide
SUPPRIMÉS Flash Cookies (0)
SUPPRIMÉS Temporaires Windows (3546)

========== Fichiers ==========
SUPPRIMÉ: c:\program files\suprasavings\secureassist.exe
SUPPRIMÉ Redémarrage: c:\program files\003\xmkysecqun64.exe
SUPPRIMÉ: c:\windows\tasks\re-markit_wd.job
SUPPRIMÉ Redémarrage: c:\windows\system32\drivers\sawfp64.sys
SUPPRIMÉ Redémarrage: c:\windows\system32\secureassist.ini
SUPPRIMÉ Redémarrage: c:\windows\system32\secureassistoff.ini
SUPPRIMÉ Redémarrage: c:\windows\system32\drivers\wstlibg64.sys
SUPPRIMÉ: c:\windows\prefetch\speedupmypc.exe-111c08df.pf
SUPPRIMÉ: c:\windows\prefetch\speedupmypc.tmp-efe463d6.pf
SUPPRIMÉ: c:\windows\prefetch\dealply.exe-eea9acfb.pf
SUPPRIMÉ: c:\windows\prefetch\vopackage.exe-008091e1.pf
SUPPRIMÉ: c:\windows\prefetch\savesenselive.exe-859c5d70.pf
SUPPRIMÉ: c:\windows\prefetch\savesenselive.exe-5eb94ffc.pf
SUPPRIMÉ: c:\windows\prefetch\vopackage.exe-803d9b5b.pf
SUPPRIMÉ: c:\windows\prefetch\speedupmypc-standalone-setup.-5f58df76.pf
SUPPRIMÉ: c:\windows\prefetch\speedupmypc-standalone-setup.-c13a9116.pf
SUPPRIMÉ: c:\windows\prefetch\anyprotecttrayicon.exe-f030b920.pf
SUPPRIMÉ: c:\windows\prefetch\anyprotect.exe-7064871b.pf
SUPPRIMÉ: c:\windows\prefetch\savesenseupdatever.exe-beff3041.pf
SUPPRIMÉ: c:\windows\prefetch\speedupmypc.exe-45524506.pf
SUPPRIMÉ: c:\windows\prefetch\lollipopinstaller_uni.exe-cba7004e.pf
SUPPRIMÉ: c:\windows\prefetch\freesofttoday.exe-86e0753d.pf
SUPPRIMÉ: c:\windows\prefetch\freesofttoday.tmp-85735ff0.pf
SUPPRIMÉ: c:\windows\prefetch\re-markit_2040-2082.exe-20b74514.pf
SUPPRIMÉ: c:\windows\prefetch\fst_fr_134.exe-cd55772e.pf
SUPPRIMÉ: c:\windows\prefetch\re-markit158.exe-b064a66a.pf
SUPPRIMÉ: c:\windows\prefetch\optimizerpro.exe-2d976296.pf
SUPPRIMÉ: c:\windows\prefetch\vopackage.exe-d17c3237.pf
SUPPRIMÉ: c:\windows\prefetch\wpm.exe-350e3c31.pf
SUPPRIMÉ: c:\windows\prefetch\suptab.exe-84914670.pf
SUPPRIMÉ: c:\windows\prefetch\upfst_fr_134.exe-31772a1e.pf
SUPPRIMÉ: c:\windows\prefetch\optprostart.exe-c9239e06.pf
SUPPRIMÉ: c:\windows\prefetch\mediaplayerplus-codedownloade-78baa525.pf
SUPPRIMÉ: c:\windows\prefetch\mediaplayerplus-bg.exe-ac2c3500.pf
SUPPRIMÉ: c:\windows\prefetch\re-markit_wd.exe-3f882a46.pf
SUPPRIMÉ: c:\windows\prefetch\suptab.exe-ebd7d757.pf
SUPPRIMÉ: c:\windows\prefetch\savesenselivehandler.exe-dbb83706.pf
SUPPRIMÉ: c:\windows\prefetch\savesenselive.exe-ee14ead5.pf
SUPPRIMÉ: c:\windows\prefetch\softwarecrashhandler.exe-58e57699.pf
SUPPRIMÉ: c:\windows\prefetch\mysearchdial.exe-569f0256.pf
SUPPRIMÉ: c:\windows\prefetch\mysearchdialsrv.exe-d4e75505.pf
SUPPRIMÉ: c:\windows\prefetch\browsemark.firstrun.exe-e51bae51.pf
SUPPRIMÉ: c:\windows\prefetch\mypc backup.exe-efc95e5e.pf
SUPPRIMÉ: c:\windows\prefetch\advancedsystemprotector.exe-50542b42.pf
SUPPRIMÉ: c:\windows\prefetch\boxore.exe-bb3436b0.pf
SUPPRIMÉ: c:\windows\prefetch\updatebrowsemark.exe-b320cab9.pf
SUPPRIMÉ: c:\windows\prefetch\utilbrowsemark.exe-d578eca1.pf
SUPPRIMÉ: c:\windows\prefetch\browsemark.browseradapter.exe-3dd132fa.pf
SUPPRIMÉ: c:\windows\prefetch\unitywebplayer.exe-53dfa23c.pf
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\background.html
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\chromecorefilesindex.txt
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\manifest.xml
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins.json
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\1.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\102.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\103.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\104.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\119.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\13.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\14.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\17.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\177.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\179.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\180.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\182.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\183.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\184.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\19.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\191.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\207.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\21.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\22.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\223.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\231.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\232.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\242.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\246.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\28.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\4.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\47.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\64.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\72.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\78.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\80.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\91.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\93.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\plugins\97.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\usercode\background.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\extensiondata\usercode\extension.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\actions\1.png
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\icon128.png
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\icon16.png
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\icons\icon48.png
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\chrome.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\cookie.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\message.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\monitor.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\pageaction.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\api\pageactionbg.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\background.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\app_api.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\bg_app_api.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\consts.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\cookie_store.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\crossriderapi.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\delegate.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\events.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\extensiondatastore.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\logfile.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\logging.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\onbgdocumentload.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\popupresource\newpopup.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\popupresource\popup.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\reports.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\storagewrapper.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\updatemanager.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\util.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\databases\chrome-extension_deghekbbihbapplmbffglehkdhkeibbm_0\1
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\xhr.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\main.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\platformversion.js
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\manifest.json
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\popup.html
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local extension settings\deghekbbihbapplmbffglehkdhkeibbm\000005.ldb
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local extension settings\deghekbbihbapplmbffglehkdhkeibbm\current
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local extension settings\deghekbbihbapplmbffglehkdhkeibbm\lock
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local extension settings\deghekbbihbapplmbffglehkdhkeibbm\log
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local extension settings\deghekbbihbapplmbffglehkdhkeibbm\log.old
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local extension settings\deghekbbihbapplmbffglehkdhkeibbm\manifest-000007
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local storage\chrome-extension_deghekbbihbapplmbffglehkdhkeibbm_0.localstorage
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local storage\chrome-extension_deghekbbihbapplmbffglehkdhkeibbm_0.localstorage-journal
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local storage\http_rvzr-a.akamaihd.net_0.localstorage
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\local storage\http_rvzr-a.akamaihd.net_0.localstorage-journal
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\crossridermanifest.json
SUPPRIMÉ: c:\users\dossa_000\appdata\roaming\opera software\opera stable\extensions\deghekbbihbapplmbffglehkdhkeibbm\1.26.35_0\js\lib\installer.js
SUPPRIMÉ: c:\program files\003\xmkysecqun64.exe
SUPPRIMÉ: C:\Windows\Installer\1d6870.msi
SUPPRIMÉ: c:\windows\prefetch\cltmng.exe-2506b224.pf
SUPPRIMÉ: c:\windows\prefetch\cltmng.exe-245516b1.pf
SUPPRIMÉ: c:\windows\prefetch\cltmngsvc.exe-587d8e3b.pf
SUPPRIMÉ: c:\windows\prefetch\softonicdownloader_pour_blues-2cbae5a4.pf
SUPPRIMÉ: c:\windows\prefetch\softonicdownloader_pour_googl-67fccec3.pf
SUPPRIMÉS Flash Cookies (0) (0 octets)
SUPPRIMÉS Temporaires Windows (10816) (621 758 613 octets)

========== Tache planifiée ==========
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-1
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-1
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-3
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-3
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-3
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-3
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-4
SUPPRIMÉ: 83d9b0a0-1558-45c6-b9d7-8738a1bba066-4
SUPPRIMÉ: Re-markit_wd
SUPPRIMÉ: Re-markit_wd


========== Récapitulatif ==========
11 : Processus mémoire
47 : Clés du Registre
1 : Valeurs du Registre
1 : Eléments de donnée du Registre
3 : Dossiers
144 : Fichiers
10 : Tache planifiée


End of clean in 00mn 58s

========== Chemin de fichier rapport ==========
C:\Users\dossa_000\AppData\Roaming\ZHP\ZHPFix[R1].txt - 16/04/2014 21:59:16 [22104]


0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
17 avril 2014 à 09:03
Bonjour,
Il manque le rapport JRT demandé : ici en 2/

@+
0
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014
17 avril 2014 à 11:05
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 8.1 x64
Ran by latitnini on 16/04/2014 at 9:12:44,24
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 16/04/2014 at 9:24:33,95
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



désolé j'avais oublier

0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
17 avril 2014 à 11:41
Bien! :-)
1/
* Télécharge MBAM et installe le selon l'emplacement par défaut
https://www.malwarebytes.com/mwb-download/
* Mets le à jour puis lance un examen "Menaces".
* A la fin du scan, clic sur "Mettre tous en quarantaine" en bas à gauche.
* Redémarre l'ordinateur si besoin.
* Après redémarrage, relance Malwarebytes.
* Vas chercher le rapport dans l'onglet "Historique".
* Clic à gauche sur l'onglet Journaux de l'application.
* Double-clic sur le journal d'examen pour l'afficher.
* En bas à gauche choisis "Copier dans le presse papier"
* colle le rapport le contenu du journal ici
=================================
Si tu as besoin d'aide tu peux voir ce tutoriel : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

2/
Lance Avira antivir puis poste le rapport de scan stp

@+
0
Latitnini Messages postés 8 Date d'inscription jeudi 4 juillet 2013 Statut Membre Dernière intervention 17 avril 2014
17 avril 2014 à 23:00
alwarebytes Anti-Malware
www.malwarebytes.org


Protection, 17/04/2014 18:52:22, SYSTEM, VIRGINIE, Protection, Malware Protection, Starting,
Protection, 17/04/2014 18:52:22, SYSTEM, VIRGINIE, Protection, Malware Protection, Started,
Protection, 17/04/2014 18:52:22, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Starting,
Protection, 17/04/2014 18:52:22, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Started,
Update, 17/04/2014 18:52:36, SYSTEM, VIRGINIE, Manual, Rootkit Database, 2014.2.20.1, 2014.3.27.1,
Update, 17/04/2014 18:52:49, SYSTEM, VIRGINIE, Manual, Malware Database, 2014.3.4.9, 2014.4.17.5,
Protection, 17/04/2014 18:52:50, SYSTEM, VIRGINIE, Protection, Refresh, Starting,
Protection, 17/04/2014 18:52:51, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Stopping,
Protection, 17/04/2014 18:52:51, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Stopped,
Protection, 17/04/2014 18:52:56, SYSTEM, VIRGINIE, Protection, Refresh, Success,
Protection, 17/04/2014 18:52:56, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Starting,
Protection, 17/04/2014 18:52:57, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Started,
Protection, 17/04/2014 19:16:22, SYSTEM, VIRGINIE, Protection, Malware Protection, Starting,
Protection, 17/04/2014 19:16:23, SYSTEM, VIRGINIE, Protection, Malware Protection, Started,
Protection, 17/04/2014 19:16:24, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Starting,
Protection, 17/04/2014 19:16:29, SYSTEM, VIRGINIE, Protection, Malicious Website Protection, Started,

(end)


j'ai Mcafee internet security c'est pareille?( l'autre c'est terminer alors j'ai installer celui là)
0
Fish66 Messages postés 17505 Date d'inscription dimanche 24 juillet 2011 Statut Contributeur sécurité Dernière intervention 16 juin 2021 1 318
18 avril 2014 à 08:36
Bonjour,
1/
Le rapport ci-dessus n'est pas celui attendu, refais la procédure de Malwarebytes stp
Aide : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

2/
Je te conseille de désinstaller McAfee et de réinstaller Avira (ou Avast).

@+
0