Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e) (modifié)

Bonsoir

 

Petit nouveau sur ce forum,je vous prie de bien vouloir m'excuser si "je fais pas tout bien" ^^

Notez que je suis une vraie quiche en info alors soyez indulgents!

 

Voici mon problème: depuis quelques temps (depuis quand?) j'ai remarqué une activité suspecte de ma freebox. La led de connection s'affole (scintille vraiment rapidement) dès que j'allume mon PC et mon ping (visible depuis un jeu online) joue au yoyo entre 70 et ....1000m/s!! (autant dire que je n'ai plus aucun controle^^)

Une idée?

 

Antivir n'a rien détecté,CCleaner non plus,pas plus que malwarebytes.

Suite à la lecture de certains sujets, j'ai installé HiJackThis et je vous mets le rapport si j'ai compris comment ça marche^^

 

Mon fils et ma femme font n'importe quoi sue cet ordi alors je pense qu'il y a du ménage à faire !

Merci d'avance

 

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 00:28:08, on 21/03/2013

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v9.00 (9.00.8112.16470)

Boot mode: Normal

 

Running processes:

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe

C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

C:\Program Files (x86)\Skype\Phone\Skype.exe

C:\Users\User\AppData\Roaming\cacaoweb\cacaoweb.exe

C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe

c:\windows\system32\oem\setEvent.exe

C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe

C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe

C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe

C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe

C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe

C:\Program Files (x86)\Internet Explorer\IELowutil.exe

C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_x3812&r=17360910ln07973880t75lg9314333

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_x3812&r=17360910ln07973880t75lg9314333

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_x3812&r=17360910ln07973880t75lg9314333

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&m=aspire_x3812&r=17360910ln07973880t75lg9314333

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

R3 - URLSearchHook: (no name) - {D3D233D5-9F6D-436C-B6C7-E63F77503B30} - (no file)

R3 - URLSearchHook: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll

F2 - REG:system.ini: UserInit=userinit.exe,

O2 - BHO: uTorrentBar_FR - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll

O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll

O2 - BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\User\AppData\Roaming\Complitly\Complitly.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: AppGraffiti - {6F6A5334-78E9-4D9B-8182-8B41EA8C39EF} - C:\PROGRA~2\APPGRA~1\APPGRA~1.DLL

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll" (file missing)

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll

O3 - Toolbar: uTorrentBar_FR Toolbar - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll

O4 - HKLM\..\Run: [backupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k

O4 - HKLM\..\Run: [Hotkey Utility] C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe

O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"

O4 - HKLM\..\Run: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED

O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"

O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"

O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent

O4 - HKCU\..\Run: [Kujytuo] "C:\Users\User\AppData\Roaming\kujytuo.exe"

O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

O4 - HKCU\..\Run: [cacaoweb] "C:\Users\User\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer

O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000

O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll

O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe

O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe

O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe

O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE

O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe

O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Service Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe

O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe

O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe

O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe

O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe

O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe

O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe

O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe

O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe

O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe

 

--

End of file - 27624 bytes

Modifié par bibou57

Posté(e)

Bonjour,

 

Télécharger AdwCleaner

Sous Vista et Windows 7-> Exécuter en tant qu'administrateur

 

Cliquez sur Recherche et postez le rapport généré C:\AdwCleaner[R1].txt

130119125841364169.png

Afin de ne pas fausser les rapports,Recherche et Suppression ne doivent être lancés qu'une seule fois

NettoyageA faire sans délai

Relancez AdwCleaner avec droits administrateur

Cliquez sur Suppression et postez le rapport C:\AdwCleaner[s1].txt

 

Télécharger Junkware Removal Tool de thisisu

OS:Windows XP/Vista/7/8

Utilisable sur systèmes 32-bits et 64-bits

 

Clquez sur Jrt.exe avec droits administrateur.

Si votre antvirus râle,Vous le signalez comme acceptable dans les exceptions de votre antivirus

 

Une fenêtre noire s'ouvre qui vous dit de cliquer une touche pour lancer le scan.

 

L'outil va prendre quelques minutes pour fouiller votre machine.

Patientez jusqu'à l'apparition de Jrt.txt dont vous posterez le contenu.

 

Zhpdiag

 

Double-cliquer sur ZHPDiag.exe pour installer l'outil

Sur le bureau ,il devrait y avoir 3 icônes

zhp0710.png

 

Sous XP, double clic sur l'icône ZhpDiag

Sous Vista/7, faire un clic droit et Exécuter en tant qu'administrateur

 

120403104704343592.jpg

 

Cliquez sur le bouton12040309492645704.jpg

en haut, à droite et choisissez Tous

Pour éviter un blocage, décochez 045 et 061

 

Clic sur la Loupe loupe-334dd63.pngen haut, à gauche pour lancer le scan

Postez le rapport ZhpDiag.txt qui apparait sur le bureau

 

Comment poster les rapports

Cliquez sur ce bouton 120403100123645840.jpgen haut, à droite

Appuyez sur Parcourir et chercher le rapport ,

Cliquer sur Envoyer

>> dans la page suivante -->

Cliquer Pjjoint Uploader ,,

une adresse http//.. sera créée

Copier /coller cette adresse dans votre prochain message.

Posté(e) (modifié)

ok merci

 

alors j'ai tout fait et voilà ce que cela donne

 

R1

 

S1

 

JRT

 

ZHPDiag

 

A noter que ma connection a l'air beaucoup mieux (la led se repose de temps en temps^^) et mon ping tourne aux environs de 50m/s à peu près stable pour le moment

 

Y-a-t-il encore quelquechose à faire ou est-ce que le grang ménage de printemps est terminé?

 

Par contre,lors d'une erreur malheureuse de téléchargement de JRT je crois,j'ai choppé une saleté de mongolfière (AnySend) que je n'arrive plus à virer^^

 

Merci

Modifié par bibou57
Posté(e)

Pas si vite !

 

1)Vous avez Avira et McAfee.

Il n'en faut qu'un, impérativement!

 

Supprimez soit,Désinstallation Antivir

ou

Utilisez

AntiVir Registry Cleaner pour supprimer les entrées du registre,

 

soit Désinstallation Mc afee

 

ensuite on poursuit le nettoyage:

 

2)Vous devez trouver sur le bureau ou ,sinon, dans le dossier où vous avez installé Zhpdiag ces 3 icônes .

zhp0710.png

Cliquer sur l'icône Zhpfix

Sous Vista/7 clic-droit, "Exécuter En tant qu'Administrateur

Copiez/Collez les lignes vertes dans le cadre ci dessous:

pour cela;

Clic gauche maintenu enfoncé, Balayer l'ensemble du texte à copier avec la souris pour le mettre en surbrillance ,de gauche à droite et de haut en bas

Ctrl+c mettre le tout en mémoire

Ctrl+v pour inscrire le texte dans le Document ou, mieux, en cliquant le bouton Coller le presse papier au milieu,en haut, à gauche[1]

zhpfix16.png

 

G1 - GCS: Preference [user Data\Default] http://search.babylon.com => Infection PUP (Toolbar.Babylon)*

M3 - MFPP: Plugins - [user] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\babylon.xml => Infection PUP (Toolbar.Babylon)*

M2 - MFEP: prefs.js [user - af1r2d2g.default\cacaoweb@cacaoweb.org] [] cacaoweb v1.0.30 (.http://www.cacaoweb.org/.) => Infection PUP (PUP.CacaoWeb)*

O42 - Logiciel: BrowserProtect - (.Bit89 Inc.) [HKLM][64Bits] -- {15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} => Infection PUP (Toolbar.Babylon)*

[HKCU\Software\526d88be23ae841] => Infection PUP (Toolbar.Babylon)

[HKCU\Software\AppDataLow\Software\Smartbar] => Infection PUP (Hijacker.SmartBar)*

[HKCU\Software\DataMngr] => Infection PUP (PUP.BearShare)*

[HKCU\Software\DataMngr_Toolbar] => Infection PUP (PUP.BearShare)*

[HKCU\Software\InstallCore] => Infection PUP (Adware.InstallCore)

[HKLM\Software\Wow6432Node\526d88be23ae841] => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\DataMngr] => Infection PUP (PUP.BearShare)*

O43 - CFD: 21/03/2013 - 13:08:24 - [7,662] ----D C:\ProgramData\BrowserProtect => Infection PUP (Toolbar.Babylon)*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.smartbar.CTID", "CT2851639"); => Infection PUP (Hijacker.SmartBar)*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.smartbar.Uninstall", "0"); => Infection PUP (Hijacker.SmartBar)*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.smartbar.homepage", true); => Infection PUP (Hijacker.SmartBar)*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("browser.search.defaultthis.engineName", "InnoGames France Customized Web Search"); => Infection PUP (Adware.Bandoo)

O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Delta Search) - http://www.delta-search.com => Infection PUP (PUP.ClaroSearch)

[MD5.AD15E2F2099C9E639EFC5D87D7D5F09D] [sPRF][13/03/2012] (...) -- C:\Users\User\AppData\Roaming\kujytuo.exe [391528] => Infection Virale (Virus.Kujytuo)

[HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}] => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}] => Infection PUP (Toolbar.Babylon)

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] => Infection BT (PUP.ClaroSearch)

[HKLM\Software\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] => Infection BT (Adware.IncrediBar)

[HKLM\Software\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] => Infection BT (Adware.IncrediBar)

[HKLM\Software\Wow6432Node\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] => Infection BT (Adware.IncrediBar)

[HKLM\Software\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}] => Infection PUP (Adware.Funmoods)

[HKLM\Software\Wow6432Node\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}] => Infection PUP (Adware.Funmoods)

[HKLM\Software\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}] => Infection PUP (Adware.Funmoods)

[HKLM\Software\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}] => Infection PUP (Adware.Funmoods)

[HKLM\Software\Wow6432Node\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}] => Infection PUP (Adware.Funmoods)

[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}] => Infection BT (Toolbar.Babylon)

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings] => Infection PUP (PUP.BProtector)

[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}] => Toolbar.Bing

C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\Smartbar => Infection PUP (Hijacker.SmartBar)*

C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\Extensions\cacaoweb@cacaoweb.org => Infection PUP (PUP.CacaoWeb)*

C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\bprotector_extensions.sqlite => Infection PUP (PUP.BProtector)*

C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\bprotector_prefs.js => Infection PUP (PUP.BProtector)*

C:\Users\User\Downloads\cacaoweb.exe => Infection PUP (PUP.CacaoWeb)*

[HKCU\Software\526d88be23ae841]:GUID="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPCHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPCHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPCHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:HPIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:INSTALL_FOLDER_NAME="BrowserProtect" => Infection PUP (Toolbar.Babylon)*

[HKCU\Software\526d88be23ae841]:KWFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:KWFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:KWFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:NTCHREGEXP0="FO81jovjQUF+5S6+haV7vGe3TMfw8oqWAhSaKzFS9OtdgZ1j5X+B4jW/459R" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:NTFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:NTFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:NTFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:PROTECTOR_DLL_NAME="BrowserProtect.dll" => Infection PUP (Toolbar.Babylon)*

[HKCU\Software\526d88be23ae841]:PROTECT_EXE_NAME="BrowserProtect.exe" => Infection PUP (Toolbar.Babylon)*

[HKCU\Software\526d88be23ae841]:SECHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SECHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SECHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SEFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SEFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SEFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SEIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SEIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SEIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:SERVICE_NAME="BrowserProtect" => Infection PUP (Toolbar.Babylon)*

[HKCU\Software\526d88be23ae841]:usrcheckbox="0" => Infection PUP (Toolbar.Babylon)

[HKCU\Software\526d88be23ae841]:version="2.6.1125.80" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:GUID="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPCHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPCHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPCHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:HPIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:INSTALL_FOLDER_NAME="BrowserProtect" => Infection PUP (Toolbar.Babylon)*

[HKLM\Software\Wow6432Node\526d88be23ae841]:KWFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:KWFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:KWFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:NTCHREGEXP0="FO81jovjQUF+5S6+haV7vGe3TMfw8oqWAhSaKzFS9OtdgZ1j5X+B4jW/459R" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:NTFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:NTFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:NTFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:PROTECTOR_DLL_NAME="BrowserProtect.dll" => Infection PUP (Toolbar.Babylon)*

[HKLM\Software\Wow6432Node\526d88be23ae841]:PROTECT_EXE_NAME="BrowserProtect.exe" => Infection PUP (Toolbar.Babylon)*

[HKLM\Software\Wow6432Node\526d88be23ae841]:SECHREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SECHREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SECHREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SEFFREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SEFFREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SEFFREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SEIEREGEXP0="FO81jovjQUF+5S6+hb1oqXHuCoautLvICxmXOjZS8Nofjp1mrjnE" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SEIEREGEXP1="FO81jovjQUF+5S6+hb1oqXHuCoao6JCRNVbcOGoRr/tSgZN57jqd6juo5odlV7RITopCig==" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SEIEREGEXP2="FO81jovjQUF+5S6+hb1oqXHuCoautLvIDR2ZNzsQ7eNQn5Fj3TmN4Df1q8U=" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:SERVICE_NAME="BrowserProtect" => Infection PUP (Toolbar.Babylon)*

[HKLM\Software\Wow6432Node\526d88be23ae841]:usrcheckbox="0" => Infection PUP (Toolbar.Babylon)

[HKLM\Software\Wow6432Node\526d88be23ae841]:version="2.6.1125.80" => Infection PUP (Toolbar.Babylon)

M3 - MFPP: Plugins - [user] -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\searchplugins\utorrentbarfr-customized-web-search.xml => P2P.µTorrent*

O4 - GS\Desktop: Command & Conquer 3 Les guerres du Tiberium - Raccourci.lnk - Clé orpheline => Orphean Key not necessary

O4 - GS\Desktop: Company of Heroes.lnk - Clé orpheline => Orphean Key not necessary

O4 - GS\Desktop: Corbeille - Raccourci.lnk - Clé orpheline => Orphean Key not necessary

[MD5.00000000000000000000000000000000] [APT] [{429325E0-7081-4664-A176-94BCFD80D5C7}] (...) -- C:\Users\User\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N2R1QDOR\epson324680eu[1].exe (.not file.) [0] => Empty File not necessary

[MD5.00000000000000000000000000000000] [APT] [{991961CC-8FB9-4048-AFAF-89F0CC477804}] (...) -- C:\Users\User\Downloads\epson324680eu(1).exe (.not file.) [0] => Empty File not necessary

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"http://uTorrent[...] => P2P.µTorrent*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"uTorrentBar_FR\[...] => P2P.µTorrent*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.smartbar.toolbarName", "uTorrentBar_FR "); => P2P.µTorrent*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("Smartbar.ConduitSearchEngineList", "uTorrentBar_FR Customized Web Search"); => P2P.µTorrent*

[MD5.EBA3048B54E275EA04A1EBB707326B61] [sPRF][21/03/2013] (.AnySend.com - AnySend Setup.) -- C:\Users\User\AppData\Local\Temp\AnySendSetup.exe [5413936] => Temporary file not necessary

[MD5.02B6BFF59FBA5F4077585E08827A7256] [sPRF][21/03/2013] (...) -- C:\Users\User\AppData\Local\Temp\etime.dat [10] => Temporary file not necessary

[MD5.CBF9C44A4C35599989CA8BDA97DDC586] [sPRF][21/03/2013] (...) -- C:\Users\User\AppData\Local\Temp\uttD32B.tmp.bat [77] => Temporary file not necessary

C:\Users\User\AppData\LocalLow\uTorrentBar_FR => P2P.µTorrent*

M3 - MFPP: Plugins - [user] -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\searchplugins\conduit.xml => Toolbar.Conduit

M2 - MFEP: prefs.js [user - af1r2d2g.default\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}] [] uTorrentBar_FR v10.14.370.524 (.Conduit Ltd..) => Toolbar.Conduit*

M2 - MFEP: prefs.js [user - af1r2d2g.default\{6cba65db-3377-4af1-b6d8-2d57106ad569}] [] InnoGames France Community Toolbar v3.18.0.7 (.Conduit Ltd..) => Toolbar.Conduit*

O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}

O42 - Logiciel: Delta Chrome Toolbar - (.Visual Tools.) [HKLM][64Bits] -- Delta Chrome Toolbar => Toolbar.DeltaSearch

O42 - Logiciel: Delta toolbar - (.Delta.) [HKLM][64Bits] -- delta => Toolbar.DeltaSearch

O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM][64Bits] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} => Toolbar.Google

[HKCU\Software\Conduit] => Toolbar.Conduit

[HKLM\Software\Tarma Installer] => Toolbar.Tarma

O69 - SBI: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\searchplugins\conduit.xml => Toolbar.Conduit

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594..clientLogIsEnabled", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594..clientLogServiceUrl", "http://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594..uninstallLogServiceUrl", "http://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.ALLOW_SHOWING_HIDDEN_TOOLBAR", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.AboutPrivacyUrl", "http://www.conduit.com/privacy/Default.aspx"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.CT2832594", "CT2832594"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.CurrentServerDate", "21-3-2013"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.DSInstall", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.DialogsAlignMode", "LTR"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.DialogsGetterLastCheckTime", "Thu Mar 21 2013 14:20:19 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.DownloadReferralCookieData", ""); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.FirstServerDate", "21-3-2013"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.FirstTime", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.FirstTimeFF3", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.FirstTimeHiddenVer", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.FixPageNotFoundErrors", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.GroupingServerCheckInterval", 1440); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.GroupingServiceUrl", "http://grouping.services.conduit.com/"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.HPInstall", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.HasUserGlobalKeys", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.HomePageProtectorEnabled", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.HomepageBeforeUnload", "about:home"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.Initialize", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.InitializeCommonPrefs", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.InstallationAndCookieDataSentCount", 1); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.InstallationType", "Unknown"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.InstalledDate", "Thu Mar 21 2013 14:20:30 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsAlertDBUpdated", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsGrouping", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsInitSetupIni", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsMulticommunity", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsOpenThankYouPage", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsOpenUninstallPage", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.IsProtectorsInit", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.LanguagePackLastCheckTime", "Thu Mar 21 2013 14:20:19 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.LanguagePackReloadIntervalMM", 1440); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.LanguagePackServiceUrl", "http://translation.users.conduit.com/Translation.ashx"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.LastLogin_3.18.0.7", "Thu Mar 21 2013 14:20:36 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.LatestVersion", "3.18.0.7"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.Locale", "fr"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.MCDetectTooltipHeight", "83"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.MCDetectTooltipUrl", "http://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.MCDetectTooltipWidth", "295"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.MyStuffEnabledAtInstallation", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.OriginalFirstVersion", "3.18.0.7"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SavedHomepage", "http://search.conduit.com/?ctid=CT2851639&SearchSource=13&CUI=UN43462082750866248&UM=1"'>http://search.conduit.com/?ctid=CT2851639&SearchSource=13&CUI=UN43462082750866248&UM=1"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchCaption", "InnoGames France Customized Web Search"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchEngineBeforeUnload", "chrome://browser-region/locale/region.properties"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchFromAddressBarIsInit", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2832594&SearchSource=2&CUI=SB_CUI[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchInNewTabEnabled", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchInNewTabIntervalMM", 1440); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchInNewTabLastCheckTime", "Thu Mar 21 2013 14:20:36 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchInNewTabServiceUrl", "http://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID&UM=UM_ID"); => Toolbar.Conduit

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchProtectorEnabled", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SearchProtectorToolbarDisabled", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SendProtectorDataViaLogin", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.ServiceMapLastCheckTime", "Thu Mar 21 2013 14:20:16 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SettingsLastCheckTime", "Thu Mar 21 2013 14:20:14 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.SettingsLastUpdate", "1363871564"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.TBHomePageUrl", "http://search.conduit.com/?ctid=CT2832594&SearchSource=13"'>http://search.conduit.com/?ctid=CT2832594&SearchSource=13"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.ThirdPartyComponentsInterval", 504); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.ThirdPartyComponentsLastCheck", "Thu Mar 21 2013 14:20:14 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.ThirdPartyComponentsLastUpdate", "1331805999"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.ToolbarShrinkedFromSetup", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.TrusteLinkUrl", "http://trust.conduit.com/CT2832594"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolb[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.UserID", "UN16660145172236851"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.alertChannelId", "1224657"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.backendstorage.activetoolbar", "737461656D6D65"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.backendstorage.toolbar_market", "656E"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.backendstorage.toolbarurl", "687474703A2F2F746F6F6C6261722E696E6E6F67616D65732E64652F746F6F6C626172732F737461[...] => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;se[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.globalFirstTimeInfoLastCheckTime", "Thu Mar 21 2013 14:20:19 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.homepageProtectorEnableByLogin", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.initDone", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.isAppTrackingManagerOn", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.myStuffEnabled", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.myStuffPublihserMinWidth", 400); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.myStuffSearchUrl", "http://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&oct[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.myStuffServiceIntervalMM", 1440); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.myStuffServiceUrl", "http://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE[...] => Toolbar.Conduit

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.navigateToUrlOnSearch", false); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.revertSettingsEnabled", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.searchProtectorDialogDelayInSec", 10); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.searchProtectorEnableByLogin", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.testingCtid", ""); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.toolbarAppMetaDataLastCheckTime", "Thu Mar 21 2013 14:20:19 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2832594.toolbarContextMenuLastCheckTime", "Thu Mar 21 2013 14:20:17 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.FirstTime", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.FirstTimeFF3", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN4346'>http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN4346[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.UserID", "UN43462082750866248"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.addressBarTakeOverEnabledInHidden", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.browser.search.defaultthis.engineName", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.enableFix404ByUser", "FALSE"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.firstTimeDialogOpened", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.fixPageNotFoundErrorByUser", "TRUE"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.fixPageNotFoundErrorInHidden", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.fixUrls", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.homepageuserchanged", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.isCheckedStartAsHidden", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.isFirstTimeToolbarLoading", "false"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.keyword", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"http://search.conduit.com/?ctid=CT2851639&octid=CT2[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.lastVersion", "10.14.370.524"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.mam_gk_installer_preapproved.enc", "RkFMU0U="); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.migrateAppsAndComponents", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"\",\"EB_MAIN_FRAME_TITLE\":\"\",\"E[...] => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.searchFromAddressBarEnabledByUser", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.searchInNewTabEnabledByUser", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.searchInNewTabEnabledInHidden", "true"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.searchUserMode", "1"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"3\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2851639\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.settingsINI", true); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.toolbarBornServerTime", "21-3-2013"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.toolbarCurrentServerTime", "21-3-2013"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639.toolbarLoginClientTime", "Thu Mar 21 2013 14:20:17 GMT+0100"); => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CT2851639_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1363872427239,\"isWithState\"[...] => Toolbar.Agent

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ConduitHomepagesList", "http://search.conduit.com/?ctid=CT2832594&SearchSource=13,http://search.condui[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ConduitSearchList", "InnoGames France Customized Web Search,InnoGames France Customized Web Search"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://Settings.toolbar.search.conduit.com/root/CT2832594/CT2832594", "\"76c63db45db2956c0cf3a21d[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://alerts.conduit-services.com/root/1224657/1220330/FR", "\"0\""); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://appsmetadata.toolbar.conduit-services.com/?ctid=CT2832594", "\"0\""); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=EB_LOCALE", "G9mW7heT/8xI[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=EB_LOCALE", "2E1/v7EfCEDbv[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=EB_LOCALE", "UgzXjW7BIkfd[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=EB_LOCALE", "4BgM4MhF/sOgPsD[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"0ea11bd291bce1:0\""); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.18.0.7", "\"0343677cfb1cd1:0\"")[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://servicemap.conduit-services.com/Toolbar/?ownerId=CT2832594", "\"4a0fdb8b7fdc48efd093643c7a[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"5f557fa45ff1a13a3b53882c18[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ETag.http://translation.toolbar.conduit-services.com/?locale=fr", "\"6fd1045af25322dd339b00de08178517\[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\User\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\af1r2d2g.defa[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.18.0.7"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ToolbarsList", "CT2832594"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ToolbarsList2", "CT2832594"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.ToolbarsList4", "CT2832594"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.globalUserId", "74a573de-9c77-4758-a520-d43ca49912bd"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2832594"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Thu Mar 21 2013 14:20:19 GMT+0100"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.alertEnabled", true); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Thu Mar 21 2013 14:20:24 GMT+0100"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.clientsServerUrl", "http://alert.client.conduit.com"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.locale", "en"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Thu Mar 21 2013 14:20:17 GMT+0100"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.servicesServerUrl", "http://alert.services.conduit.com"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.showTrayIcon", false); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.notifications.userId", "c3afec63-ad54-451e-8f4c-26c69a2ae84f"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.originalHomepage", "http://search.conduit.com/?ctid=CT2851639&SearchSource=13&CUI=UN43462082750866248&[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("Smartbar.ConduitHomepagesList", "http://search.conduit.com/?ctid=CT2851639&SearchSource=13&CUI=UN43462082750866248&UM=1[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("Smartbar.ConduitSearchUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN43462082[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2832594&SearchSource=3&q={searchTerms}"); => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("keyword.URL", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN43462082750866248&UM=1&q="[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("smartbar.conduitHomepageList", "http://search.conduit.com/?ctid=CT2851639&SearchSource=13&CUI=UN43462082750866248&UM=1"[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("smartbar.conduitSearchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN4[...] => Toolbar.Conduit*

O69 - SBI: prefs.js [user - af1r2d2g.default] user_pref("smartbar.originalHomepage", "http://search.conduit.com/?ctid=CT2832594&SearchSource=13"); => Toolbar.Conduit*

O69 - SBI: SearchScopes [HKCU] {F58C8E51-DF18-40D0-B5EA-3D87F17F09ED} - (uTorrentBar_FR Customized Web Search) - http://search.conduit.com => Toolbar.Conduit*

[MD5.B28C334C03CEE7C5E829C43AE75DAE5A] [sPRF][28/01/2013] (.Ask.com - AskIC Dynamic Link Library.) -- C:\Users\User\AppData\Local\Temp\AskSLib.dll [248008]

[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS] => Toolbar.Bing

[HKLM\Software\Classes\Installer\Features\90C64EA18BA25EE488BF80DCF07F2FFD] => Toolbar.Bing

[HKLM\Software\Classes\Installer\Products\90C64EA18BA25EE488BF80DCF07F2FFD] => Toolbar.Bing

[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\90C64EA18BA25EE488BF80DCF07F2FFD] => Toolbar.Bing

[HKLM\Software\Wow6432Node\Classes\Installer\Features\90C64EA18BA25EE488BF80DCF07F2FFD] => Toolbar.Bing

[HKLM\Software\Wow6432Node\Classes\Installer\Products\90C64EA18BA25EE488BF80DCF07F2FFD] => Toolbar.Bing

[HKLM\Software\Tarma Installer] => Toolbar.Tarma

[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}] => Toolbar.Bing

[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] => Toolbar.Bing

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] => Toolbar.Bing

[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] => Toolbar.Bing

[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] => Toolbar.Bing

C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\Conduit => Toolbar.Conduit

C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\af1r2d2g.default\SearchPlugins\conduit.xml => Toolbar.Conduit

O90 - PUC: "90C64EA18BA25EE488BF80DCF07F2FFD" . (.Bing Bar.) -- C:\Windows\Installer\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}\icon_installer_ico

 

 

EmptyFlash

EmptyTemp

EmptyClsid

FirewallRaz

Proxyfix

SysRestore

 

Cliquer sur "Go" |2]

 

Si vous ne voyez pas le boutonGo, cliquez sur le bouton du milieu, en haut, à gauche.[1]

Redémarrer pour achever le nettoyage.

 

Copier-coller,dans la réponse, le contenu du rapport ZHPFixReport.txt qui s'affiche .

Si besoin; il est enregistré sous C:\ZHP\ZHPFixReport.txt

 

 

3)

 

Téléchargez MBAM

Avant de lancer Mbam

Vous devez d'abord désactiver vos protections mais vous ne savez pas comment faire

Cliquer ici

Branchez tous les supports amovibles avant de faire ce scan (clé usb/disque dur externe etc)

Exécuter avec droits d'administrateur.

Sous Vista , désactiver l'Uac

 

Double cliquez sur l'icône Download_mbam-setup.exe pour lancer le processus d'installation.

Enregistrez le sur le bureau .

Fermer toutes les fenêtres et programmes

Suivez les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet)

N'apportez aucune modification aux réglages par défaut et, en fin d'installation,

Vérifiez que les options Update/Mises à jour et Launch/Exécuter soient cochées

 

MBAM démarrera automatiquement et enverra un message demandant de mettre à jour le programme avant de lancer une analyse.

cliquer sur OK pour fermer la boîte de dialogue..

Dans l'onglet "mise à jour", cliquez sur le bouton Recherche de mise à jour:

mbam.jpg

Si le pare-feu demande l'autorisation de connecter MBAM, acceptez

 

Une fois la mise à jour terminée, allez dans l'onglet Recherche.

 

Sélectionnez "Exécuter un examen complet"

Cliquez sur "Rechercher"

.L' analyse prendra un certain temps, soyez patient !

A la fin , un message affichera :

L'examen s'est terminé normalement.

Et un fichier Mbam.log apparaitra

 

 

Sélectionnez tout et cliquez sur Supprimer la sélection ,

MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

puis ouvrir le Bloc-notes et y copier le rapport d'analyse qui peut être retrouvé sous l'onglet Rapports/logs.

Copiez-collez ce rapport dans la prochaine réponse.

Posté(e)

Encore autre chose ?

 

Si vous pensez que votre problème a trouvé une solution, et afin que ceux qui la cherchent en profitent,

éditez votre premier message (Edition complète)et, dans le titre, inscrivez Résolu.

resolu.jpg

[1] En bas de votre premier message, cliquer sur [Modifier]

[2] En bas de l'éditeur qui s'ouvre, cliquer sur [utiliser l'éditeur complet]

[3] En haut de l'éditeur complet, ajouter [Résolu] au début du titre de votre sujet.

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...