Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Suite à attaque de cheval de Troie


poseidon33

Messages recommandés

Nous ne pouvons accepter que tu mettes en cause la méthodologie utilisée par pear, qui fait partie des "piliers" de l'Equipe des Helpers spécialisés de la section Analyses et éradication des malwares.

Merci de t'abstenir à l'avenir de ce genre de commentaires déplacés et non fondés.

Je ne pense pas avoir mis en cause la méthodologie proposée par @pear mais si le programme lancé (MalwareByte comme préconisé) ne détecte rien alors que faire d'un rapport de résultat qui ne dit rien!!! Et je n'ai pas eu la réponse!

Tout est sous entendu chez vous. du style: "j'ai vu un malware mais continue à chercher comme un bon toutou!!!" et pourquoi pas "si tu es trop nul ou trop con, on ne va pas pouvoir faire quoi que soit pour toi!" ! Je n'ai jamais rien vu de pareil sur un site, jamais! D'abord on conseil HiJackthis, puis on dit que c'est hasbeen, puis qu'il faut installer deux autres détecteurs ( en version complète pourquoi pas ??) puis etc...

Mais toujours pas de pistes puisqu'il faut trouver tout seul!

Soit vous êtes frustrés soit vous avec un gros complexe.

Lien vers le commentaire
Partager sur d’autres sites

Pour mettre un frein à vos élucubrations et sous -entendus, voici la liste des indésirables trouvés sur votre machine:

 

PROCESSUS MALWARE (Rootkit, trojan, ver, spyware, adware,...)

M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla FireFox\extensions\[email protected] => Infection PUP (PUP.Dealio)

M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla FireFox\extensions\[email protected] => Infection BT (Adware.WidgiToolbar)

R3 - URLSearchHook: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) (4, 7, 0, 9) -- C:\Program Files\Dealio Toolbar\IE\4.7\dealioToolbarIE.dll => Infection PUP (PUP.Dealio)

O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) -- C:\Program Files\Dealio Toolbar\IE\4.7\dealioToolbarIE.dll => Infection PUP (PUP.Dealio)

O2 - BHO: OfferBox - {FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C} Clé orpheline => Infection BT (Hijack.Browser)

O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} . (.Spigot, Inc. - Widgi Toolbar for Internet Explorer.) -- C:\Program Files\Dealio Toolbar\IE\4.7\dealioToolbarIE.dll => Infection PUP (PUP.Dealio)

O4 - HKLM\..\Run: [Ad-Aware Browsing Protection] . (.Lavasoft - Ad-Aware Browsing Protection.) -- C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection\adawarebp.exe => Infection LOP (Possible)

O23 - Service: service de mise a jour pour I.P services (I.P services) . (.Pas de propriétaire - service.) - C:\Program Files\InstallPedia\service.exe => Infection BT (Adware.InstallPedia)

O42 - Logiciel: Dealio Toolbar v4.7 - (.Spigot, Inc..) [HKLM] -- {67EA4F15-C7C4-436A-B6A2-352BC2CE11DC} => Infection PUP (PUP.Dealio)

[HKCU\Software\AppDataLow\Software\Dealio] => Infection PUP (PUP.Dealio)

[HKCU\Software\AppDataLow\Software\Search Settings] => Infection PUP (PUP.Dealio)

[HKLM\Software\Application Updater] => Infection PUP (PUP.Dealio)

[HKLM\Software\Dealio] => Infection PUP (PUP.Dealio)

[HKLM\Software\InstallPedia] => Infection BT (Adware.InstallPedia)

[HKLM\Software\Search Settings] => Infection PUP (PUP.Dealio)

O43 - CFD: 04/11/2011 - 18:58:00 - [0,000] ----D- C:\Program Files\Application Updater => Infection PUP (PUP.Dealio)

O43 - CFD: 30/10/2011 - 20:02:48 - [1,340] ----D- C:\Program Files\Dealio Toolbar => Infection PUP (PUP.Dealio)

O43 - CFD: 18/10/2010 - 20:12:34 - [0,222] ----D- C:\Program Files\InstallPedia => Infection BT (Adware.InstallPedia)

O43 - CFD: 23/07/2011 - 15:41:20 - [0,091] ----D- C:\Program Files\OfferBox => Infection PUP (PUP.OfferBox)

O43 - CFD: 22/02/2011 - 09:43:52 - [0] ----D- C:\Program Files\Search Settings => Infection PUP (PUP.Dealio)

O43 - CFD: 30/10/2011 - 20:02:48 - [4,360] ----D- C:\Program Files\Fichiers Communs\Spigot => Infection PUP (PUP.Dealio)

O43 - CFD: 26/01/2010 - 10:37:12 - [0,080] ----D- C:\Documents and Settings\GI\Application Data\Dealio => Infection PUP (PUP.Dealio)

O43 - CFD: 23/06/2011 - 09:31:32 - [0,272] ----D- C:\Documents and Settings\GI\Application Data\OfferBox => Infection PUP (PUP.OfferBox)

O43 - CFD: 30/10/2011 - 20:02:52 - [0] ----D- C:\Documents and Settings\GI\Application Data\Search Settings => Infection PUP (PUP.Dealio)

O43 - CFD: 02/11/2010 - 13:55:52 - [0] ----D- C:\Documents and Settings\GI\Local Settings\Application Data\OpenCandy => Infection PUP (Adware.OpenCandy)

O47 - AAKE:Key Export SP - "C:\Program Files\adawaretb\dtUser.exe" [Enabled] .(.Visicom Media Inc. - DTX broker.) -- C:\Program Files\adawaretb\dtUser.exe => Infection PUP (Adware.Bandoo)

O64 - Services: CurCS - 14/09/2010 - C:\Program Files\InstallPedia\service.exe (I.P services) .(.Pas de propriétaire - service.) - LEGACY_I.P_SERVICES => Infection BT (Adware.InstallPedia)

[HKLM\Software\Topala Software Solutions\OpenCandy] => Infection PUP (Adware.OpenCandy)

[HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1] => Infection BT

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}] => Infection BT (PUP.Dealio)

[HKLM\Software\Classes\CLSID\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}] => Infection BT (PUP.Dealio)

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}] => Infection BT (PUP.Dealio)

[HKLM\Software\Classes\CLSID\{08993a7c-e764-4172-9627-bfb5ea6897b2}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\CLSID\{128a6c66-ac6a-4617-8268-ab7f47b7215e}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}] => Infection BT (Adware.Hotbar)

[HKLM\Software\Classes\Interface\{4634804a-f0b0-4a74-a550-fc0eef8a4362}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\Interface\{4c07ea4f-5f52-4222-b170-4cd9ed33baea}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\CLSID\{571715d7-3395-4df0-b43c-784836209e60}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\Interface\{6612afdd-34ad-4b89-a236-7e6d07c3fdcd}] => Infection BT (Adware.Hotbar)

[HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\Interface\{c44feff4-ef0c-4cf7-83d0-92b4266a32b9}] => Infection BT (Adware.BHO)

[HKLM\Software\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}] => Infection BT (PUP.Dealio)

[HKLM\Software\Classes\TypeLib\{d2e5fa06-dcc7-46f9-beff-bfd06f69b9b2}] => Infection BT (Adware.ShopperReports)

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}] => Infection PUP (PUP.Dealio)

[HKLM\Software\Classes\TypeLib\{ED85AEBE-F834-4088-B5D3-97EB2478A6CD}] => Infection PUP (PUP.OfferBox)

[HKLM\Software\Classes\Interface\{f131923c-381d-4e4c-a472-4a17118fd742}] => Infection BT (Adware.BHO)

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}] => Infection BT (Hijack.Browser)

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}] => Infection BT (Hijack.Browser)

[HKLM\Software\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom] => Infection PUP (PUP.OfferBox)

[HKLM\SYSTEM\CurrentControlSet\Services\I.P services] => Infection BT (Adware.ClickPotato)

[HKCU\Software\AppDataLow\Software\dealio] => Infection PUP (PUP.Dealio)

[HKLM\Software\dealio] => Infection PUP (PUP.Dealio)

[HKLM\Software\Mozilla\Firefox\Extensions]:[email protected] => Infection PUP (PUP.OfferBox)

C:\Program Files\Application Updater => Infection PUP (PUP.Dealio)

C:\Program Files\Dealio Toolbar => Infection PUP (PUP.Dealio)

C:\Program Files\InstallPedia => Infection BT (Adware.InstallPedia)

C:\Program Files\OfferBox => Infection PUP (PUP.OfferBox)

C:\Program Files\Search Settings => Infection PUP (PUP.Dealio)

C:\Documents and Settings\GI\Application Data\Dealio => Infection PUP (PUP.Dealio)

C:\Documents and Settings\GI\Application Data\OfferBox => Infection PUP (PUP.OfferBox)

C:\Documents and Settings\GI\Application Data\Search Settings => Infection PUP (PUP.Dealio)

C:\Documents and Settings\GI\Local Settings\Application Data\OpenCandy => Infection PUP (Adware.OpenCandy)

SS - | Auto 8192 | service de mise a jour pour I.P services (I.P services) . (...) - C:\Program Files\InstallPedia\service.exe => Infection BT (Adware.InstallPedia)

TOOLBAR INUTILE (Navigateur internet)

M3 - MFPP: Plugins - [GI] -- C:\Documents and Settings\GI\Application Data\Mozilla\Firefox\Profiles\t82bgtw6.default\searchplugins\askcom.xml => Plugin Mozilla Firefox Ask.com

M2 - MFEP: prefs.js [GI - t82bgtw6.default\[email protected]] [] Ask Toolbar v (.Ask.com.) => Toolbar.Ask

M2 - MFEP: prefs.js [GI - t82bgtw6.default\{0b38152b-1b20-484d-a11f-5e04a9b0661f}] [] Winamp Toolbar v5.6.12.1 (.AOL LLC.) => Toolbar.WinAmp

M2 - MFEP: prefs.js [GI - t82bgtw6.default\{E9A1DEE0-C623-4439-8932-001E7D17607D}] [] Ask Toolbar for Firefox v1.03 (.Ask.com.) => Toolbar.Ask

R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} . (.Ask - Ask Toolbar.) (5.13.1.18107) -- C:\Program Files\Ask.com\GenericAskToolbar.dll

O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll

O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job => Toolbar.Ask

[MD5.617FD1B55ED546972E0E0921D77C5006] [APT] [scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe

O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} => Toolbar.Ask

O42 - Logiciel: Foxit Toolbar - (.Ask.com.) [HKLM] -- Ask Toolbar_is1 => Ask.com Foxit Toolbar

O42 - Logiciel: Winamp Toolbar - (.Pas de propriétaire.) [HKLM] -- Winamp Toolbar => Toolbar.WinAmp

[HKCU\Software\APN] => Toolbar.eBay

[HKCU\Software\AppDataLow\AskBarDis] => Toolbar.Ask

[HKCU\Software\AppDataLow\AskToolbarInfo] => Toolbar.Ask

[HKCU\Software\Ask.com] => Toolbar.Ask

[HKCU\Software\AskToolbar] => Toolbar.Ask

[HKCU\Software\Winamp Toolbar] => Toolbar.WinAmp

[HKLM\Software\APN] => Toolbar.eBay

[HKLM\Software\AskBarDis] => Toolbar.Ask

[HKLM\Software\AskToolbar] => Toolbar.Ask

O43 - CFD: 17/11/2011 - 21:01:12 - [2,757] ----D- C:\Program Files\Ask.com => Toolbar.Ask

O43 - CFD: 23/02/2010 - 19:05:54 - [0,956] ----D- C:\Program Files\AskBarDis => Toolbar.Ask

O43 - CFD: 28/02/2010 - 10:21:50 - [2,190] ----D- C:\Program Files\Winamp Toolbar => Toolbar.WinAmp

O43 - CFD: 16/12/2011 - 19:38:02 - [0,429] ----D- C:\Documents and Settings\GI\Local Settings\Application Data\AskToolbar => Toolbar.Ask

O43 - CFD: 04/03/2010 - 11:27:40 - [0,017] ----D- C:\Documents and Settings\GI\Local Settings\Application Data\Winamp Toolbar => Toolbar.WinAmp

O69 - SBI: C:\Documents and Settings\GI\Application Data\Mozilla\Firefox\Profiles\t82bgtw6.default\searchplugins\askcom.xml => Plugin Mozilla Firefox Ask.com

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.abar-war-timeout", "4000"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.autofill-competitor-query-enabled", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.autofill-text-highlight-enabled", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.cbid", "AU"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.config-updated", false); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.crumb", "2011.11.09+00.56.25-toolbar005iad-FR-UGFyaXMsRnJhbmNl"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.displaybehavior", ""); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.displaytext", ""); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.dtid", "aus002YYFR"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.dyn-weather-do-locid-lookup-weatherWidget", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.first-restart-after-config-update", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.fresh-install", false); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.l", "dis"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.last-config-req", "1324208244613"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.locale", "fr_FR"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.lstation", ""); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.o", "1665"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.overlay-reloaded-using-restart", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.pstate", ""); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.qsrc", "2871"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.r", "4"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.search-suggestions-enabled", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.silent-upgrade", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-first", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-interval", "1200000"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-max-char-ticker", "33"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-max-items", "30"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-native-on", true); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-speed", "10000"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.socialmini-transition-first-open", false); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.v", "3.13.1.100009"); => Toolbar.Ask

O69 - SBI: prefs.js [GI - t82bgtw6.default] user_pref("extensions.asktb.volume", ""); => Toolbar.Ask

O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} [DefaultScope] - (Ask Search) - http://websearch.ask.com => Toolbar.Agent

[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] => Toolbar.Ask

[HKLM\Software\Classes\askibar.popswatterbarbutton] => Toolbar.Ask

[HKLM\Software\Classes\askibar.popswatterbarbutton.1] => Toolbar.Ask

[HKLM\Software\Classes\askibar.popswattersettingscontrol] => Toolbar.Ask

[HKLM\Software\Classes\askibar.popswattersettingscontrol.1] => Toolbar.Ask

[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] => Toolbar.Ask

[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] => Toolbar.Ask

[HKLM\Software\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}] => Toolbar.Ask

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}] => Toolbar.Agent

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{201f27d4-3704-41d6-89c1-aa35e39143ed}] => Toolbar.Ask

[HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] => Toolbar.Ask

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3041d03e-fd4b-44e0-b742-2d9b88305f98}] => Toolbar.AskTBar

[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37F4A335-D085-423e-A425-0370799166FB}] => Toolbar.Ask

[HKLM\Software\Classes\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}] => Toolbar.SweetIM

[HKLM\Software\Classes\Interface\{6612AFDD-34AD-4B89-A236-7E6D07C3FDCD}] => Toolbar.Ask

[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] => Toolbar.Ask

[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] => Toolbar.Ask

[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] => Toolbar.Ask

[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] => Toolbar.Ask

[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] => Toolbar.Ask

[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] => Toolbar.Ask

[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] => Toolbar.Ask

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] => Toolbar.Ask

[HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}] => Toolbar.Ask

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] => Toolbar.Ask

[HKLM\Software\Classes\TypeLib\{ed85aebe-f834-4088-b5d3-97eb2478a6cd}] => Toolbar.Ask

[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] => Toolbar.Ask

[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] => Toolbar.Ask

[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] => Toolbar.Ask

[HKCU\Software\APN] => Toolbar.eBay

[HKLM\Software\APN] => Toolbar.eBay

[HKCU\Software\Ask.com] => Toolbar.Ask

[HKCU\Software\Ask.com] => Toolbar.Ask

[HKCU\Software\AskToolbar] => Toolbar.Ask

[HKLM\Software\AskToolbar] => Toolbar.Ask

[HKCU\Software\AppDataLow\AskToolbarInfo] => Toolbar.Ask

[HKCU\Software\Winamp Toolbar] => Toolbar.WinAmp

[HKLM\Software\Winamp Toolbar] => Toolbar.WinAmp

[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Ask Toolbar_is1] => Toolbar.Ask

[HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks]:{00000000-6E41-4FD3-8538-502F5495E5FC} => Toolbar.Ask

[HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{3041d03e-fd4b-44e0-b742-2d9b88305f98} => Toolbar.AskTBar

[HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{D4027C7F-154A-4066-A1AD-4243D8127440} => Toolbar.Ask

[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} => Toolbar.Ask

C:\Program Files\Ask.com => Toolbar.Ask

C:\Program Files\AskBarDis => Toolbar.Ask

C:\Program Files\Winamp Toolbar => Toolbar.WinAmp

C:\Documents and Settings\GI\Local Settings\Application Data\AskToolbar => Toolbar.Ask

C:\Documents and Settings\GI\Local Settings\Application Data\Winamp Toolbar => Toolbar.WinAmp

C:\Documents and Settings\GI\Application Data\Mozilla\Firefox\Profiles\t82bgtw6.default\Extensions\[email protected] => Toolbar.Ask

  • Upvote 2
Lien vers le commentaire
Partager sur d’autres sites

poseidon33,

 

J'accède à ta demande et te coupe l'accès au forum Zebulon !

 

C'est toi qui infectes ton ordinateur, c'est toi qui demandes à être dépanné, ne confonds pas !!! :( Un peu plus de politesse t'irait bien !

 

> merci de me radier de la liste des membres

Non je ne te radierai pas de la liste des membres ! Ce serait un peu trop facile d'insulter les membres de Zebulon et de vouloir effacer toute trace de tes méfaits !

  • Upvote 2
Lien vers le commentaire
Partager sur d’autres sites

Invité
Ce sujet ne peut plus recevoir de nouvelles réponses.
  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...