Vous pensez être infecté, des pubs s'affichent quand vous naviguez sur internet ?
Perte de données, ralentissement système, virus USB ?
Désinfectez votre ordinateur gratuitement !
Avatar du membre
par Telma
#25013
-_-
J'ai réussi !voilà  le scan de ZHPdiag:
(trop long alors je le met ds deux msg!)

~ Rapport de ZHPDiag v2013.12.26.23 - Nicolas Coolman (26/12/2013)
~ Lancé par Marie-Estelle (30/12/2013 00:30:35)
~ Adresse du Site Web http://nicolascoolman.webs.com" onclick="window.open(this.href);return false;
~ Forums gratuits d'Assistance à  la désinfection : http://nicolascoolman.webs.com/apps/links/" onclick="window.open(this.href);return false;
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC):


---\\ Navigateurs Internet
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox 26.0 (Defaut)
GCIE: Google Chrome v31.0.1650.63
OBIE: Safari v5.31.22.7

---\\ Informations sur les produits Windows
~ Langage: Français
Windows Vista (TM) Home Premium, 32-bit Service Pack 2 (Build 6002)
Windows Server License Manager Script : OK
~ Vista, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : WQD8Q
Windows License : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection du système
Avira Free Antivirus v14.0.2.286

---\\ Logiciels d'optimisation du système
CCleaner v3.17 =>Piriform Ltd

---\\ Logiciels de partage PeerToPeer

---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Adobe Reader X
Java 7 Update 21

---\\ Informations sur le système
~ Processor: x86 Family 17 Model 3 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3069 MB (63% free)
System Restore: Activé (Enable)
System drive C: has 58 GB (25%) free of 224 GB

---\\ Mode de connexion au système
~ Computer Name: PC-MARIE-ESTELL
~ User Name: Marie-Estelle
~ All Users Names: Marie-Estelle, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Marie-Estelle\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Marie-Estelle\AppData\Roaming\
~ %Desktop% : C:\Users\Marie-Estelle\Desktop\
~ %Favorites% : C:\Users\Marie-Estelle\Favorites\
~ %LocalAppData% : C:\Users\Marie-Estelle\AppData\Local\
~ %StartMenu% : C:\Users\Marie-Estelle\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 58 Go of 224 Go)
D: Hard drive, Flash drive, Thumb drive (Free 2 Go of 9 Go)
E: CD-ROM drive (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Free 1 Go of 1 Go)
G: Floppy drive, Flash card reader, USB Key (Free 0 Go of 0 Go)



---\\ Etat du Centre de Sécurité Windows
~ Security Center: 42 Legitimates Filtered in 00mn 00s
Avatar du membre
par Telma
#25015
Suite :

---\\ Recherche particulière de fichiers génériques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.11/04/2009 - 07:27:36.) -- C:\Windows\Explorer.exe [2926592]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.21/01/2008 - 03:23:42.) -- C:\Windows\System32\Wininit.exe [96768]
[MD5.4CC9DF09C3D915BA0A101A11DB684F26] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.14/11/2013 - 23:42:41.) -- C:\Windows\System32\wininet.dll [1129472]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.11/04/2009 - 07:28:13.) -- C:\Windows\System32\Winlogon.exe [314368]
[MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14:58:27.) -- C:\Windows\system32\Drivers\AFD.sys [273408]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 - 07:32:26.) -- C:\Windows\system32\Drivers\atapi.sys [19944]
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 03:23:51.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]
[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.11/04/2009 - 05:39:17.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]
[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15:59:03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.11/04/2009 - 05:42:42.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152]
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Pilote de port i8042.) (.21/01/2008 - 03:23:20.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]
[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 03:24:25.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]
[MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14:24:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496]
[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.11/04/2009 - 05:45:37.) -- C:\Windows\system32\Drivers\netBT.sys [185856]
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.03/03/2013 - 20:07:52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232]
[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Pilote de port parallèle.) (.02/11/2006 - 09:51:30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 03:24:55.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 03:23:01.) -- C:\Windows\system32\Drivers\rdpdr.sys [248832]
[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.11/04/2009 - 05:45:22.) -- C:\Windows\system32\Drivers\smb.sys [66560]
[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.11/04/2009 - 05:45:56.) -- C:\Windows\system32\Drivers\tdx.sys [72192]
[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.21/08/2012 - 12:47:42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640]
~ Generic Processes: Scanned in 00mn 02s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/1055
~ Mes musiques (My Musics) : 123/2452
~ Mes Videos (My Videos) : 1/38
~ Mes Favoris (My Favorites) : 49/120
~ Mes Documents (My Documents) : 4/9523
~ Mon Bureau (My Desktop) : 1/1382
~ Menu demarrer (Programs) : 1/38
~ Hidden Files: Scanned in 00mn 06s



---\\ Processus lancés
[MD5.DD231039B13EC2ABDE315D76E658EF0E] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [684600] [PID.3752]
[MD5.4B555106290BD117334E9A08761C035A] - (...) -- ystem32\rundll32.exe [0] [PID.2304]
[MD5.870DF389D7676EDBB635141336A867C6] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8302080] [PID.2976]
[MD5.FE79366FECD444A16CCA9979134DBEA8] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376] [PID.1900]
[MD5.FDE9C7030FB1E9E2715E113EE6A10F90] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376] [PID.524]
[MD5.6F1E9AB820B3DD8BD38C0190A206205D] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [431672] [PID.1700]
[MD5.C7FBDD1ED42F82BFA35167A5C9803EA3] - (.Microsoft Corporation - PresentationFontCache.exe.) -- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [43904] [PID.4436]
[MD5.F401929EE0CC92BFE7F15161CA535383] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55184] [PID.1892]
[MD5.A19B0BB5A7EB6DF2DD4A0711D36955EE] - (.Hewlett-Packard - HP Health Check Service.) -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208] [PID.4092]
[MD5.862BB4CBC05D80C5B45BE430E5EF872F] - (.Microsoft Corporation - Service de gestion des licences Microsoft.) -- C:\Windows\system32\SLsvc.exe [3408896] [PID.1788]
[MD5.A1545B731579895D8CC44FC0481C1192] - (.Microsoft Corporation - Service de la passerelle de la couche Appli.) -- C:\Windows\System32\alg.exe [59392] [PID.2128]
[MD5.5DAF7081A4BB112FA3F1915819330A3E] - (...) -- C:\Program Files\ZHPDiag\pv.exe [61440] [PID.0]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://start.mysearchdial.com" onclick="window.open(this.href);return false; =>Adware.MyWebSearch
G2 - GCE: Preference [User Data\Default] [ndibdjnfmopecpmkdieinmbadjfpblof] AVG Secure Search v.15.5.0.2 (Désactivé) =>Toolbar.AVGSearch
G2 - GCE: Preference [User Data\Default] [pflphaooapbgpeakohlggbpidpppgdff] MySearchDial Nouvel onglet v.9.4.4 (Désactivé) =>Adware.MyWebSearch
~ Google Browser: 15 Legitimates Filtered in 00mn 02s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\prefs.js
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\user.js
M3 - MFPP: Plugins - [Marie-Estelle] -- C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\avg-secure-search.xml
M3 - MFPP: Plugins - [Marie-Estelle] -- C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\fissa.xml =>PUP.OfferBox
M3 - MFPP: Plugins - [Marie-Estelle] -- C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\Mysearchdial.xml =>Adware.MyWebSearch
M3 - MFPP: Plugins - [Marie-Estelle] -- C:\Program Files\Mozilla FireFox\searchplugins\avg-secure-search.xml
M2 - MFEP: prefs.js [Marie-Estelle - 3dhaobu0.default\@FissaPlugin] [] Fissa v1.0 (..) =>PUP.OfferBox
M2 - MFEP: prefs.js [Marie-Estelle - 3dhaobu0.default\zigboom.designs@gmail.com] [] BlackFox V2-Blue v2.1.6 (..)
M2 - MFEP: prefs.js [Marie-Estelle - 3dhaobu0.default\{19803860-b306-423c-bbb5-f60a7d82cde5}] [] WiseConvert 1.5 v10.23.0.822 (..) =>Toolbar.Conduit
M2 - MFEP: prefs.js [Marie-Estelle - 3dhaobu0.default\{635abd67-4fe9-1b23-4f01-e679fa7484c1}] [yahoo.ytff] Yahoo! Toolbar v3.1.0.20130818030116 (..)
M2 - MFEP: prefs.js [Marie-Estelle - 3dhaobu0.default\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}] [] MySearchDial NewTab v3.1.0.20130818030116 (..) =>Adware.MyWebSearch
P2 - FPN: [HKLM] [@viewpoint.com/VMP] - (.Pas de propriétaire - MetaStream 3 Plugin r4.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll =>Adware.MetaStream
~ Firefox Browser: 46 Legitimates Filtered in 00mn 02s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com" onclick="window.open(this.href);return false; =>Adware.MyWebSearch
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com" onclick="window.open(this.href);return false; =>Adware.MyWebSearch
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://start.mysearchdial.com" onclick="window.open(this.href);return false; =>Adware.MyWebSearch
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1
~ IE Browser: 12 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\Userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 20



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{A057A204-BACC-4D26-9E83-2DB586E27190} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{21FA44EF-376D-4D53-9B0F-8A89D3229068} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{472734EA-242A-422B-ADF8-83D1E48CC825} Clé orpheline
~ Toolbar: Scanned in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Aide et Support d'HP.lnk . (.Hewlett-Packard - HPHS Launcher.) -- C:\Windows\Help\OEM\scripts\HPHS_Launcher.exe
O4 - GS\Desktop [Public]: HP Total Care Advisor.lnk . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
O4 - GS\Desktop [Public]: Octave.lnk . (...) -- C:\Program Files\Octave\3.0.5_gcc-4.3.0\bin\octave-3.0.5.exe
O4 - GS\Program [Public]: cellule_3D.lnk . (...) -- C:\Program Files\planetes3D\planet3D.exe
O4 - GS\Program [Public]: HP Total Care Advisor.lnk . (.Hewlett-Packard - HP Advisor.) -- C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Pour les enfants.lnk . (.EasyBits Software AS - For Kids.) -- C:\Program Files\EasyBits For Kids\Promo\ezKidsReady.exe =>.EasyBits Software AS
O4 - GS\Program [Public]: QuickPlay Manager.lnk . (.CyberLink Corp. - HP QuickPlay Manage Program.) -- C:\Program Files\HP\QuickPlay\QPManager.exe
O4 - GS\Program [Public]: QuickPlay.lnk . (.CyberLink Corp. - HP QuickPlay.) -- C:\Program Files\HP\QuickPlay\QP.exe
O4 - GS\Program [Public]: Starzik Download Manager.lnk . (...) -- C:\Program Files\Starzik Download Manager\Starzik Download Manager.exe
O4 - GS\QuickLaunch [Marie-Estelle]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Marie-Estelle]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\QuickLaunch [Marie-Estelle]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Marie-Estelle]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [Marie-Estelle]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Marie-Estelle]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Marie-Estelle]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Marie-Estelle]: planete3D.lnk . (...) -- C:\Program Files\planetes3D\planet3D.exe
~ Global Startup: 73 Legitimates Filtered in 00mn 04s



---\\ Applications lancées au démarrage du sytème (O4)
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe
O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
O4 - HKLM\..\Run: [OnScreenDisplay] . (. Hewlett-Packard Development Company, L.P. - HP QuickTouch On Screen Display.) -- C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] . (.Hewlett-Packard Development Company, L.P. - HPWAMain Module.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] . (.Apple Inc. - AppleSyncNotifier.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] . (.Hewlett-Packard - HP Health Check Scheduler.) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Co
O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] . (.Research In Motion Limited - Launch Agent Service.) -- C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe =>.Samsung Electronics Co
O4 - HKLM\..\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [OfferBox] C:\Program Files\OfferBox\OfferBox.exe (.not file.) =>PUP.OfferBox
O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files\Samsung\Kies\Kies.exe
O4 - HKCU\..\Run: [KiesAirMessage] . (.Samsung Electronics - Pas de description.) -- C:\Program Files\Samsung\Kies\KiesAirMessage.exe
O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] Clé orpheline
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] Clé orpheline
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [OfferBox] C:\Program Files\OfferBox\OfferBox.exe (.not file.) =>PUP.OfferBox
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files\Samsung\Kies\Kies.exe
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [KiesAirMessage] . (.Samsung Electronics - Pas de description.) -- C:\Program Files\Samsung\Kies\KiesAirMessage.exe
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-1917961054-784476770-3265431197-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google
~ Application: Scanned in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: &Envoyer à  OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{212736AF-65FB-4B36-80D0-E3E27259B6CB}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\..\{3434B8B3-FC47-4D27-9E78-6631641D3D74}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{212736AF-65FB-4B36-80D0-E3E27259B6CB}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS1\Services\Tcpip\..\{3434B8B3-FC47-4D27-9E78-6631641D3D74}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{212736AF-65FB-4B36-80D0-E3E27259B6CB}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS3\Services\Tcpip\..\{3434B8B3-FC47-4D27-9E78-6631641D3D74}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\System32\browseui.dll
~ STS/SSO: Scanned in 00mn 00s



---\\ Tà¢ches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job [350]
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job [350]
[MD5.00000000000000000000000000000000] [APT] [AVG-Secure-Search-Update_JUNE2013_HP_rmv] (...) -- C:\Windows\TEMP\{42442D61-6FB2-4A99-80CC-3EC4D9DAA021}.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [AVG-Secure-Search-Update_JUNE2013_TB_rmv] (...) -- C:\Windows\TEMP\{26E15C44-6DA3-4EC0-8164-B7DB49238A7F}.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{035CB9B0-6A3E-4FE4-ACA5-FD5D6152ED3F}] (...) -- E:\.\Autorun.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{04D6F92F-F963-48C0-9F4B-4511D0CE659E}] (...) -- C:\Program Files\AIM6\uninst.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{4B671E64-3D31-445D-9676-FDA18A328F2A}] (...) -- C:\Program Files\QuickTime\QTSystem\QuickTime.cpl" -c QuickTime (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{7AF94D5F-8C16-4F20-A002-9E0F874B8576}] (...) -- E:\.\Autorun.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{85943581-0889-40CE-AB2D-C77F3FA636B7}] (...) -- C:\Users\Marie-Estelle\Downloads\601_b021_multilanguage.exe (.not file.) [0]
~ Scheduled Task: 28 Legitimates Filtered in 00mn 08s



---\\ Logiciels installés (O42)
O42 - Logiciel: OfferBox - (.Secure Digital Services.) [HKLM] -- {2C8574B5-6935-4FCE-860E-F4E8602378FF} =>Adware.SPointer
~ Logic: 51 Legitimates Filtered in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Babylon] =>PUP.Babylon
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\FissaSearch] =>PUP.OfferBox
[HKCU\Software\IGearSettings]
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\OfferBox] =>PUP.OfferBox
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\Vittalia] =>PUP.Vittalia
[HKCU\Software\WideStream] =>Adware.SPointer
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\mysearchdial.com] =>Adware.MyWebSearch
[HKLM\Software\MetaStream] =>Adware.MetaStream
~ Key Software: 332 Legitimates Filtered in 00mn 01s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 29/08/2010 - 23:15:42 - [0] ----D C:\Program Files\CrazyLoader =>Adware.SPointer
O43 - CFD: 12/12/2013 - 21:15:15 - [0,015] ----D C:\Program Files\MyPC Backup =>PUP.MyPCBackup
O43 - CFD: 18/11/2010 - 21:33:05 - [1,658] ----D C:\Program Files\planetes3D
O43 - CFD: 24/02/2010 - 10:33:36 - [1,760] ----D C:\Program Files\Spyware Doctor
O43 - CFD: 21/02/2013 - 21:26:24 - [0] ----D C:\Program Files\Widestream6 =>Adware.SPointer
O43 - CFD: 05/04/2011 - 10:38:07 - [0] --H-D C:\ProgramData\cJb31001dNaIa31001
O43 - CFD: 06/06/2012 - 19:13:46 - [0,024] ----D C:\Users\Marie-Estelle\AppData\Roaming\FissaSearch =>PUP.OfferBox
O43 - CFD: 17/06/2010 - 19:37:16 - [0,353] ----D C:\Users\Marie-Estelle\AppData\Roaming\OfferBox =>PUP.OfferBox
O43 - CFD: 04/04/2012 - 14:46:35 - [14,360] ----D C:\Users\Marie-Estelle\AppData\Roaming\OpenCandy =>Adware.OpenCandy
O43 - CFD: 06/06/2010 - 18:26:17 - [0,001] --H-D C:\Users\Marie-Estelle\AppData\Roaming\widestream =>Adware.SPointer
O43 - CFD: 17/05/2011 - 16:40:50 - [0,525] --H-D C:\Users\Marie-Estelle\AppData\Local\widestream6 Air =>Adware.SPointer
O43 - CFD: 04/07/2011 - 04:38:31 - [0,003] ----D C:\Users\Marie-Estelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CrazyLoader =>Adware.SPointer
~ 4 Dossiers CLSID vides (CLSID Empty Folders)
~ Program Folder: 233 Legitimates Filtered in 00mn 58s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.26B0F12F9A4C267AF5B2DA35F87A6EFA] - 23/12/2013 - 23:00:18 ---A- . (...) -- C:\Windows\System32\DOErrors.log [52]
O44 - LFC:[MD5.6361D50FE0AD8ECC249D6A7CB37B514B] - 29/12/2013 - 20:20:07 ----- . (...) -- C:\UsbFix [Scan 1] PC-MARIE-ESTELL.txt [12880]
O44 - LFC:[MD5.5F8BDF657FD65DE8803D7C494611679C] - 29/12/2013 - 20:43:49 ----- . (...) -- C:\UsbFix [Scan 2] PC-MARIE-ESTELL.txt [13094]
O44 - LFC:[MD5.36A47F2E5C9049A2464D134386FFBF23] - 29/12/2013 - 21:15:53 ---A- . (...) -- C:\UsbFix [Clean 1] PC-MARIE-ESTELL.txt [17272]
~ Files: 13 Legitimates Filtered in 01mn 31s



---\\ Enumération des clés de registre StartupReg (SMSR) (O53)
O53 - SMSR:HKLM\...\startupreg\AppleSyncNotifier [Key] . (...) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Veoh [Key] . (...) -- C:\Program Files\Veoh Networks\Veoh\VeohClient.exe (.not file.)
~ SMSR Keys: 8 Legitimates Filtered in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
~ MWPS: 15 Legitimates Filtered in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "AllowLegacyWebView"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "AllowUnhashedWebView"=1
~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.6216FD7FD227DE454238A702B218CEC7] - 29/10/2012 - 12:09:26 ---A- . (.Devguru Co., Ltd - Device Error Recovery SDK(x86).) -- C:\Windows\System32\Drivers\dgderdrv.sys [20032]
O58 - SDL:[MD5.23B62471681A124889978F6295B3F4C6] - 21/01/2008 - 03:23:22 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [342584]
O58 - SDL:[MD5.4CD6B056C5FD9E97C06FE74C81479517] - 24/01/2008 - 14:23:12 ---A- . (.ENE TECHNOLOGY INC. - ENE CIR Driver for eHome.) -- C:\Windows\System32\Drivers\enecir.sys [52736]
O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\Drivers\iteatapi.sys [35944]
O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\Drivers\iteraid.sys [35944]
O58 - SDL:[MD5.1FC8A7E5C3AED31F00940C6AB2FD9B49] - 31/07/2006 - 06:44:00 ---A- . (.Omnivision Technologies, Inc. - Stream Class Mini Driver.) -- C:\Windows\System32\Drivers\ov550i.sys [580992]
O58 - SDL:[MD5.A36EE93698802CD899F98BFD553D8185] - 27/07/2013 - 08:41:54 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\Windows\System32\Drivers\ssmdrv.sys [28520]
O58 - SDL:[MD5.6CC6C4B9D7B906A151AA094CA087B9F0] - 20/09/2012 - 05:35:36 ---A- . (.DEVGURU Co., LTD.(http://www.devguru.co.kr" onclick="window.open(this.href);return false;) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [83168]
O58 - SDL:[MD5.359FEE084F1173FFFFD7F9CCBD43D47F] - 20/09/2012 - 05:35:36 ---A- . (.DEVGURU Co., LTD.(http://www.devguru.co.kr" onclick="window.open(this.href);return false;) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [181344]
O58 - SDL:[MD5.E69A606872650B46DE54EC15DCC93529] - 21/07/2009 - 22:33:32 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\Drivers\stwrt.sys [409088]
O58 - SDL:[MD5.9224BB254F591DE4CA8D572A5F0D635C] - 21/01/2008 - 03:23:20 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\Drivers\uliahci.sys [238648]
O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\System32\Drivers\ulsata.sys [98408]
O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 21/01/2008 - 03:23:23 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\Drivers\ulsata2.sys [115816]
O58 - SDL:[MD5.EAFE1E00739AFE6C51487A050E772E17] - 15/02/2012 - 10:01:50 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl.sys [43520]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
~ Drivers: 15 Legitimates Filtered in 00mn 02s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 29/12/2013 - 00:35:34 ---A- . (...) -- C:\Users\Marie-Estelle\Documents\monAlbumPhoto\Rome\Rome.ldb [64]
O61 - LFC: 29/12/2013 - 00:35:34 ---A- . (...) -- C:\Users\Marie-Estelle\Documents\monAlbumPhoto\Rome\Rome.mapalb [688128]
O61 - LFC: 30/12/2013 - 00:35:00 ---A- . (...) -- C:\Users\Marie-Estelle\AppData\Roaming\ZHP\Log.txt [18561] =>.Nicolas Coolman
O61 - LFC: 30/12/2013 - 00:35:00 ---A- . (...) -- C:\Users\Marie-Estelle\AppData\Roaming\ZHP\TestsZHPDiag.txt [3056] =>.Nicolas Coolman
~ 3 Fichiers temporaires (Temporary files)
~ Files: 314 Legitimates Filtered in 02mn 58s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: UsbFix - (.El Desaparecido - http://www.usbfix.net" onclick="window.open(this.href);return false; - http://www.sosvirus.net" onclick="window.open(this.href);return false;.) [HKLM] -- Usbfix
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("CT3242339.http___pricegong_conduitapps_com_v4.APP_WIN_FEATURES.enc", "cmVzaXphYmxlPTAsc2F2ZWxvY2F0aW9uPTAsb3BlbnBvc2l0a[...] =>Adware.PriceGong
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("CT3242339.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"http://search.conduit.com/?ctid=CT3242339&octid=CT[...]
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("browser.search.order.1", "Mysearchdial"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.Fissa.lastRunTime", "Sat, 28 Aug 2010 18:09:57 GMT"); =>PUP.OfferBox
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.aflt", "irmsd1202aw"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCt[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.cntry", "FR"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.cr", "627028764"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.dfltLng", ""); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.dfltSrch", true); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.dnsErr", true); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.excTlbr", false); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.hdrMd5", "0A199B406364F49189CCE1F3B14CB697"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.hmpg", true); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=ir ... tAyE0EtBtA[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.id", "00234E2320037E44"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.instlDay", "16051"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.instlRef", ""); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.lastB", "http://start.mysearchdial.com/?f=1&a=ir ... yE0EtBtAtB[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.21.020:58:49"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=ir ... tBtAyE0EtB[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"89\",\"lastVrsn\":\"89\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"s[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.prdct", "mysearchdial"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.prtnrId", "mysearchdial"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.sg", "none"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.tlbrId", "base"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=ir ... tDtBtAyE0E[...] =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.vrsn", "1.8.21.0"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial.vrsni", "1.8.21.0"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial_i.hmpg", true); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial_i.newTab", false); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial_i.smplGrp", "none"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:58:49"); =>Adware.MyWebSearch
O69 - SBI: prefs.js [Marie-Estelle - 3dhaobu0.default] user_pref("plugin.state.npconduitfirefoxplugin", 2);
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Search the web) - http://search.babylon.com" onclick="window.open(this.href);return false; =>Adware.IMBooster
O69 - SBI: SearchScopes [HKCU] {114C8D1F-DE4F-4720-933A-00D3637B24BA} - (Google) - http://www.google.fr" onclick="window.open(this.href);return false;
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com" onclick="window.open(this.href);return false;
O69 - SBI: SearchScopes [HKCU] {b41306c6-96d0-442a-bcc4-b0f621e82ce9} - (Fissa) - http://www.fissa.com" onclick="window.open(this.href);return false; =>PUP.OfferBox
~ Keys: Scanned in 00mn 00s



---\\ Recherche particulière à  la racine du système (SPRF) (O84)
[MD5.EFB2EE170955A1DC38485D66EB480174] [SPRF][29/11/2009] (...) -- C:\ProgramData\ezsid.dat [32]
[MD5.F3793DD012EDADFE655CF93DD818855B] [SPRF][12/06/2013] (...) -- C:\Users\Marie-Estelle\AppData\Local\d3d9caps.dat [7620]
[MD5.C5650C059185D351AEF801D90A93B0D7] [SPRF][27/04/2011] (...) -- C:\Users\Marie-Estelle\AppData\Roaming\wklnhst.dat [1166]
[MD5.1027DF7F909776789D9D1C2C30410166] [SPRF][28/01/2013] (...) -- C:\Users\Marie-Estelle\Desktop\OOo_3.3.0_Win_x86_install-wJRE_fr.exe [152474936]
[MD5.6F678556A6FCE04FC94F3435F6313705] [SPRF][25/12/2008] (...) -- C:\Windows\Downloaded Program Files\unagiuninst.exe [38428]
~ Files: 6 Legitimates Filtered in 00mn 05s



---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "TCP Query User{8D1EEC39-0DB9-4591-97A8-8B8481061181}C:\program files\winamp\winamp.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files\winamp\winamp.exe (.not file.)
O87 - FAEL: "UDP Query User{39F01690-A65D-4079-8BFD-DF83BBCDAC78}C:\program files\winamp\winamp.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files\winamp\winamp.exe (.not file.)
O87 - FAEL: "TCP Query User{A7D07372-ADC0-4D00-8CB8-0A91F8EC5267}C:\program files\winamp\winamp.exe" |In - Private - P6 - TRUE | .(...) -- C:\program files\winamp\winamp.exe (.not file.)
O87 - FAEL: "UDP Query User{26BB64F8-EF4A-43A7-AD52-BAFC1227F783}C:\program files\winamp\winamp.exe" |In - Private - P17 - TRUE | .(...) -- C:\program files\winamp\winamp.exe (.not file.)
~ Firewall: 208 Legitimates Filtered in 00mn 01s



---\\ Enumère les codes produits des logiciels (PUC) (O90)
O90 - PUC: "5B4758C25396ECF468E04F8E063287FF" . (.OfferBox.) -- C:\Windows\Installer\{2C8574B5-6935-4FCE-860E-F4E8602378FF}\ARPPRODUCTICON.exe =>PUP.OfferBox
O90 - PUC: "EFE665B6D1CDF17439DD483862361F04" . (.OVT Scanner X86.) -- C:\Windows\Installer\{6B566EFE-DC1D-471F-93DD-84832663F140}\ARPPRODUCTICON.exe
~ Update Products: 119 Legitimates Filtered in 00mn 00s



---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.899D66C970CC0581A87DD871DAEA812A] [WIS][06/03/2013] (.STARZIK INVEST - Starzik Download Manager.) -- C:\Windows\Installer\1533872.msi [48128]
[MD5.AA5F8DEF4C6C587D88EE5A7791B8D1D6] [WIS][06/06/2010] (.Secure Digital Services - OfferBox.) -- C:\Windows\Installer\4b06e9.msi [3062272] =>Adware.SPointer
~ WIS: 122 Legitimates Filtered in 00mn 15s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Auto 10/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - | Demand 12/12/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Auto 02/03/2009 81920 | (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e2247046\aestsrv.exe
SS - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SS - | Demand 03/04/2008 193840 | (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
SS - | Demand 21/12/2008 242424 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
SS - | Auto 11/12/2009 133104 | (gupdate1ca7aad806c04f5) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 11/12/2009 133104 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Auto 31/10/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 25/01/2008 148832 | (hpqwmiex) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
SS - | Auto 13/05/2011 26168 | (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\System32\Hpservice.exe
SS - | Demand 22/10/2004 73728 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
SS - | Demand 07/06/2012 821648 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SS - | Auto 26/02/2008 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
SS - | Demand 22/12/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 14/05/2008 292248 | (QPCapSvc) . (...) - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
SS - | Auto 14/05/2008 116112 | (QPSched) . (...) - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
SS - | Auto 26/03/2008 341328 | (Recovery Service for Windows) . (...) - C:\Windows\SMINST\BLService.exe
SS - | Auto 09/01/2007 272024 | (RichVideo) . (...) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
SS - | Auto 03/06/2013 162408 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Auto 21/07/2009 221266 | (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e2247046\STacSV.exe

SR - | Auto 19/12/2013 440376 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe
SR - | Auto 27/11/2013 440376 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 24/05/2012 55184 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 21/01/2008 21504 | C:\Windows\System32\ezsvc7.dll (ezSharedSvc) . (.EasyBits Sofware AS.) - C:\Windows\System32\svchost.exe
SR - | Auto 09/10/2008 94208 | (HP Health Check Service) . (.Hewlett-Packard.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
SR - | Auto 21/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 21/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

~ Services: Scanned in 00mn 17s



---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net" onclick="window.open(this.href);return false;

~ MBR: 1 Legitimates Filtered in 00mn 02s



---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog" onclick="window.open(this.href);return false;
Run by Marie-Estelle at 30/12/2013 00:39:09

********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 04s



---\\ Scan Additionnel (O88)
Database Version : 13013 - (26/12/2013)
Clés trouvées (Keys found) : 81
Valeurs trouvées (Values found) : 2
Dossiers trouvés (Folders found) : 18
Fichiers trouvés (Files found) : 6

[HKLM\Software\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof] =>Toolbar.AVGSearch^
[HKLM\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff] =>Adware.MyWebSearch^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2C8574B5-6935-4FCE-860E-F4E8602378FF}] =>Adware.SPointer^
[HKLM\Software\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}] =>Toolbar.AVGSearch
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] =>PUP.Babylon
[HKLM\Software\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}] =>Adware.MetaStream
[HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}] =>Adware.MetaStream
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2C8574B5-6935-4FCE-860E-F4E8602378FF}] =>PUP.OfferBox
[HKLM\Software\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{4897bba6-48d9-468c-8efa-846275d7701b}] =>Adware.SocialSkinz
[HKLM\Software\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}] =>PUP.Whitesmoke
[HKLM\Software\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}] =>PUP.Whitesmoke
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{723328FF-22D0-497f-9EB5-1AC919582DE1}] =>Adware.SPointer
[HKLM\Software\Classes\CLSID\{761f6a83-f007-49e4-8eac-cdb6808ef06f}] =>PUP.Eorezo
[HKLM\Software\Classes\CLSID\{76c45b18-a29e-43ea-aaf8-af55c2e1ae17}] =>PUP.Eorezo
[HKLM\Software\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}] =>PUP.Babylon
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{91C18ED5-5E1C-4AE5-A148-A861DE8C8E16}] =>PUP.Fbsearch
[HKLM\Software\Classes\CLSID\{96ef404c-24c7-43d0-9096-4ccc8bb7ccac}] =>PUP.Eorezo
[HKLM\Software\Classes\CLSID\{97720195-206a-42ae-8e65-260b9ba5589f}] =>PUP.Eorezo
[HKLM\Software\Classes\CLSID\{97d69524-bb57-4185-9c7f-5f05593b771a}] =>PUP.Eorezo
[HKLM\Software\Classes\CLSID\{986f7a5a-9676-47e1-8642-f41f8c3fcf82}] =>PUP.Eorezo
[HKLM\Software\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}] =>Toolbar.AVGSearch
[HKLM\Software\Classes\TypeLib\{9dbb28c1-1925-11d3-a498-00104b6eb52e}] =>Adware.MetaStream
[HKLM\Software\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>PUP.ToparcadeHits
[HKLM\Software\Classes\CLSID\{b18788a4-92bd-440e-a4d1-380c36531119}] =>PUP.Eorezo
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{b41306c6-96d0-442a-bcc4-b0f621e82ce9}] =>PUP.OfferBox
[HKLM\Software\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}] =>Toolbar.AVGSearch
[HKLM\Software\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}] =>Toolbar.Conduit
[HKCU\{D45817B8-3EAD-4d1d-8FCA-EC63A8E35DE2}] =>Adware.DoubleD
[HKLM\Software\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] =>Toolbar.AVGSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0626A63-410B-45E2-99A1-3F2475B2D695}] =>PUP.Fbsearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695}] =>PUP.Fbsearch
[HKLM\Software\Classes\AppID\ScriptHelper.EXE] =>Toolbar.AVGSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer] =>Adware.MetaStream
[HKLM\Software\Classes\axmetastream.metastreamctl] =>Adware.MetaStream
[HKLM\Software\Classes\axmetastream.metastreamctl.1] =>Adware.MetaStream
[HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary] =>Adware.MetaStream
[HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1] =>Adware.MetaStream
[HKLM\Software\Classes\URLSearchHook.ToolbarURLSearchHook] =>Toolbar.Agent
[HKLM\Software\Classes\urlsearchhook.toolbarurlsearchhook.1] =>Adware.Agent
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5B4758C25396ECF468E04F8E063287FF] =>PUP.OfferBox
[HKLM\Software\Classes\Installer\Features\5B4758C25396ECF468E04F8E063287FF] =>PUP.OfferBox
[HKLM\Software\Classes\Installer\Products\5B4758C25396ECF468E04F8E063287FF] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5B4758C25396ECF468E04F8E063287FF] =>PUP.OfferBox
[HKCU\Software\FissaSearch] =>PUP.OfferBox
[HKLM\Software\MetaStream] =>Adware.MetaStream
[HKCU\Software\OfferBox] =>PUP.OfferBox
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\Spointer] =>Adware.SPointer
[HKLM\Software\Viewpoint] =>Adware.MetaStream
[HKCU\Software\WideStream] =>Adware.SPointer
[HKLM\Software\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}] =>PUP.Babylon
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer] =>Adware.MetaStream
[HKLM\Software\MozillaPlugins\@viewpoint.com/VMP] =>Adware.MetaStream
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKLM\Software\Classes\AppID\secman.DLL] =>PUP.Babylon
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\48A0552292E14244E8F3980FD3D01541] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\503398D5204CBDD48A5EE476D0CFCFEC] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5BDF578D2C71DDC4997692F83B0A5C75] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67909B00FA069BE4E80548738FE558FB] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\698B1BCDAEA97B945AE4001A96F1E755] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E6611210321F8640B41F98B10A8BD0A] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ADFBDCA3E069A47B07ECC2CED1E2B2] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9ED6CAB2F119182EB7D8CE7156DC0915] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A3D6A80A87E22324A91C14AEBDF78525] =>PUP.OfferBox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B2F30BE10C5A9DD43A593262265CA298] =>PUP.OfferBox
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}] =>Adware.SimilarSites
[HKLM\Software\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}] =>Adware.BrowseFox
[HKLM\Software\Classes\protector_dll.protectorbho] =>PUP.BProtector
[HKLM\Software\Classes\protector_dll.protectorbho.1] =>PUP.BProtector
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1322A677E76161CFC67C36E4B6D42B49] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\281E074C2C4344E4A8BB2BAE65BE729B] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51C83A2C2B5C63748ACD3028A6DD53A5] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8385B8BE0F211B245956C67BB4BAC17E] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9CC2018422A9EAF40A57249F42102B13] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AA606EFD77B9CB34BB2DA2F45B67425E] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B767C33B25DCECA4FAD0D3B7D84B0A8E] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA177F87B6B147649BD37D43B50863E5] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEF27165872C9BEAACED23660032D2F2] =>PUP.Offerbox^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFAEE3E72CC44004C998EBEE081CA40A] =>PUP.Offerbox^
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:OfferBox =>PUP.OfferBox^
[HKCU\Software\Mozilla\Firefox\Extensions]:offerboxffx@offerbox.com =>PUP.OfferBox
C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof =>Toolbar.AVGSearch^
C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff =>Adware.MyWebSearch^
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\extensions\@FissaPlugin =>PUP.OfferBox^
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\extensions\{19803860-b306-423c-bbb5-f60a7d82cde5} =>Toolbar.Conduit^
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} =>Adware.MyWebSearch^
C:\Program Files\CrazyLoader =>Adware.SPointer^
C:\Program Files\MyPC Backup =>PUP.MyPCBackup^
C:\Program Files\Widestream6 =>Adware.SPointer^
C:\Users\Marie-Estelle\AppData\Roaming\FissaSearch =>PUP.OfferBox^
C:\Users\Marie-Estelle\AppData\Roaming\OfferBox =>PUP.OfferBox^
C:\Users\Marie-Estelle\AppData\Roaming\OpenCandy =>Adware.OpenCandy^
C:\Users\Marie-Estelle\AppData\Roaming\widestream =>Adware.SPointer^
C:\Users\Marie-Estelle\AppData\Local\widestream6 Air =>Adware.SPointer^
C:\Users\Marie-Estelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CrazyLoader =>Adware.SPointer^
C:\Program Files\Viewpoint =>Adware.MetaStream
C:\ProgramData\Viewpoint =>Adware.MetaStream
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OfferBox =>PUP.OfferBox
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Smartbar =>Hijacker.SmartBar
C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\SearchPlugins\fissa.xml =>PUP.OfferBox
[HKCU\Software\Babylon] =>PUP.Babylon^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
[HKCU\Software\Vittalia] =>PUP.Vittalia^
[HKCU\Software\mysearchdial.com] =>Adware.MyWebSearch^
C:\Windows\Installer\4b06e9.msi =>Adware.SPointer^
~ Additionnel Scan: 431394 Items scanned in 00mn 36s
Avatar du membre
par Telma
#25016
ET FIN !!!! :

---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blo ... ywebsearch" onclick="window.open(this.href);return false; =>Adware.MyWebSearch
~ http://nicolascoolman.webs.com/apps/blo ... p-offerbox" onclick="window.open(this.href);return false; =>PUP.OfferBox
~ http://nicolascoolman.webs.com/apps/blo ... ar-conduit" onclick="window.open(this.href);return false; =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blo ... metastream" onclick="window.open(this.href);return false; =>Adware.MetaStream
~ http://nicolascoolman.webs.com/apps/blo ... e-spointer" onclick="window.open(this.href);return false; =>Adware.SPointer
~ http://nicolascoolman.webs.com/apps/blo ... ar-babylon" onclick="window.open(this.href);return false; =>PUP.Babylon
~ http://nicolascoolman.webs.com/apps/blo ... nstallcore" onclick="window.open(this.href);return false; =>Adware.InstallCore
~ http://nicolascoolman.webs.com/apps/blo ... p-vittalia" onclick="window.open(this.href);return false; =>PUP.Vittalia
~ http://nicolascoolman.webs.com/apps/blo ... mypcbackup" onclick="window.open(this.href);return false; =>PUP.MyPCBackup
~ http://nicolascoolman.webs.com/apps/blo ... -opencandy" onclick="window.open(this.href);return false; =>Adware.OpenCandy
~ http://nicolascoolman.webs.com/apps/blo ... -pricegong" onclick="window.open(this.href);return false; =>Adware.PriceGong
~ http://nicolascoolman.webs.com/apps/blo ... -imbooster" onclick="window.open(this.href);return false; =>Adware.IMBooster
~ http://nicolascoolman.webs.com/apps/blo ... ocialskinz" onclick="window.open(this.href);return false; =>Adware.SocialSkinz
~ http://nicolascoolman.webs.com/apps/blo ... whitesmoke" onclick="window.open(this.href);return false; =>PUP.WhiteSmoke
~ http://nicolascoolman.webs.com/apps/blo ... pup-eorezo" onclick="window.open(this.href);return false; =>PUP.EoRezo
~ http://nicolascoolman.webs.com/apps/blo ... p-fbsearch" onclick="window.open(this.href);return false; =>PUP.Fbsearch
~ http://nicolascoolman.webs.com/apps/blo ... arcadehits" onclick="window.open(this.href);return false; =>PUP.ToparcadeHits
~ http://nicolascoolman.webs.com/apps/blo ... re-doubled" onclick="window.open(this.href);return false; =>Adware.DoubleD
~ http://nicolascoolman.webs.com/apps/blo ... milarsites" onclick="window.open(this.href);return false; =>Adware.SimilarSites
~ http://nicolascoolman.webs.com/apps/blo ... -browsefox" onclick="window.open(this.href);return false; =>Adware.BrowseFox
~ http://nicolascoolman.webs.com/apps/blo ... bprotector" onclick="window.open(this.href);return false; =>PUP.BProtector
~ http://nicolascoolman.webs.com/apps/blo ... r-smartbar" onclick="window.open(this.href);return false; =>Hijacker.SmartBar
~ MSI: 22 link(s) detected in 00mn 37s

~ 1613 Legitimates filtered by white list
End of the scan (726 lines in 09mn 12s)(0)

J'dois faire quoi now ?

:merci2:
[/font][/font]
Avatar du membre
par lilidurhone
#25106
:)

  • Télécharges Adwcleaner (de Xplode) sur ton Bureau !
  • Fais clic droit dessus, exécuter en tant qu'administrateur sous Windows : 7/8 et Vista
    1. Choisi l'option Scanner
    2. Clique sur Rapport
  • Copie et Colle le contenu du rapport

    Image
Avatar du membre
par Telma
#25127
Du coup je comprends pas... le scan d'avant à  servi à  rien??
Ou :riencompris

Il va servir à  quoi le suivant??
Pour mes clefs c'est bon?
je ne suis pas trop à  quoi serve tous ces logiciels?

:merci2:
Avatar du membre
par lilidurhone
#25143
Si si le scan zhpdiag a servi à  quelque chose :)

Il montre que l'infection USB a bien été éradiqué (donc tu peux utiliser tes clés ;) mais révèle la présence de logiciels potentiellement indésirables

Pour les éradiquer on va utiliser adwcleaner et JRT

Tu as compris ;)
Avatar du membre
par Telma
#25146
Ok nikel :D !

Voici donc le rapport :

# AdwCleaner v3.016 - Rapport créé le 30/12/2013 à  19:20:43
# Mis à  jour le 23/12/2013 par Xplode
# Système d'exploitation : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Nom d'utilisateur : Marie-Estelle - PC-MARIE-ESTELL
# Exécuté depuis : C:\Users\Marie-Estelle\Downloads\adwcleaner.exe
# Option : Scanner

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Présent : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Dossier Présent : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Dossier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Extensions\{19803860-b306-423c-bbb5-f60a7d82cde5}
Dossier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Dossier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Extensions\{AD9A41D2-9A49-4FA6-A79E-71A0785364C8}
Dossier Présent C:\Program Files\CrazyLoader
Dossier Présent C:\Program Files\MyPC Backup
Dossier Présent C:\Program Files\Viewpoint
Dossier Présent C:\Program Files\Widestream6
Dossier Présent C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OfferBox
Dossier Présent C:\ProgramData\Viewpoint
Dossier Présent C:\Users\Marie-Estelle\AppData\Local\widestream6 Air
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\FissaSearch
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CrazyLoader
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\CT3242339
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Smartbar
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\ValueApps
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\OfferBox
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\OpenCandy
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\pdfforge
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\Systweak
Dossier Présent C:\Users\Marie-Estelle\AppData\Roaming\widestream
Fichier Présent : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
Fichier Présent : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
Fichier Présent : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage
Fichier Présent : C:\Users\Marie-Estelle\AppData\Local\mysearchdial-speeddial.crx
Fichier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\avg-secure-search.xml
Fichier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\Fissa.xml
Fichier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\Mysearchdial.xml
Fichier Présent : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\user.js
Fichier Présent : C:\Windows\system32\roboot.exe

***** [ Raccourcis ] *****


***** [ Registre ] *****

Clé Présente : HKCU\Software\AppDataLow\{D45817B8-3EAD-4D1D-8FCA-EC63A8E35DE2}
Clé Présente : HKCU\Software\AppDataLow\Software\SmartBar
Clé Présente : HKCU\Software\Babylon
Clé Présente : HKCU\Software\Conduit
Clé Présente : HKCU\Software\FissaSearch
Clé Présente : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Clé Présente : HKCU\Software\IGearSettings
Clé Présente : HKCU\Software\InstallCore
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B41306C6-96D0-442A-BCC4-B0F621E82CE9}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2C8574B5-6935-4FCE-860E-F4E8602378FF}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyPC Backup
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\RegClean Pro_is1
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{723328FF-22D0-497F-9EB5-1AC919582DE1}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{91C18ED5-5E1C-4AE5-A148-A861DE8C8E16}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0626A63-410B-45E2-99A1-3F2475B2D695}
Clé Présente : HKCU\Software\mysearchdial.com
Clé Présente : HKCU\Software\Offerbox
Clé Présente : HKCU\Software\Softonic
Clé Présente : HKCU\Software\Spointer
Clé Présente : HKCU\Software\systweak
Clé Présente : HKCU\Software\Vittalia
Clé Présente : HKCU\Software\WideStream
Clé Présente : HKCU\Software\YahooPartnerToolbar
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Clé Présente : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Clé Présente : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Clé Présente : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Clé Présente : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Clé Présente : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Clé Présente : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{9DBB28C1-1925-11D3-A498-00104B6EB52E}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Clé Présente : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Clé Présente : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Clé Présente : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Clé Présente : HKLM\Software\MetaStream
Clé Présente : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Clé Présente : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{35F7D4DB-9C08-4E79-B281-87F35119D679}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEDE6463-84F4-457D-861A-2253EEA0C1E6}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695}
Clé Présente : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Clé Présente : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Clé Présente : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2C8574B5-6935-4FCE-860E-F4E8602378FF}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Clé Présente : HKLM\Software\systweak
Clé Présente : HKLM\Software\Viewpoint
Valeur Présente : HKCU\Software\Mozilla\Firefox\Extensions [offerboxffx@offerbox.com]

***** [ Navigateurs ] *****

-\\ Internet Explorer v9.0.8112.16526

Paramètre Présent : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://start.mysearchdial.com/?f=1&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=627028764&ir=" onclick="window.open(this.href);return false;
Paramètre Présent : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://start.mysearchdial.com/?f=1&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=627028764&ir=" onclick="window.open(this.href);return false;
Paramètre Présent : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://start.mysearchdial.com/?f=2&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=627028764&ir=" onclick="window.open(this.href);return false;

-\\ Mozilla Firefox v26.0 (fr)

[ Fichier : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\prefs.js ]

Ligne Trouvée : user_pref("CT3242339./9B+7E+x305.enc", "JH4nQTM0NjN5RTo9KnIseXp+ejEoMztHSVNGLVhNUD0mPy0uMTVEO0ZOT1tWXmlbQm1iZVI7VEJDRklZUFtjfXN7blUhdXhlTmdVVllbbGNudnwmKzB7aTUqLXlie2lqbW4hdyMrNzt0NHxIPSBFQy93MX4gIyM2[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E,x305.enc", "JH4oQS8/Pjd5RTo9KnIseXt4fTEoMzxHSEAsV0xPPCU+LC4rL0M6RU5ZUFtXZ2pmQm1iRV5pVD1WREZDRltSXWZxbCFua1h9c2dQaVdZVlhuZXB5MycyfWo2Ky56Y3xqbGlqIngkLUY6PkVGSUxAS0RMJVBFSDV9[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E-x305.enc", "JH4pNjA8NjZ5RTo9KnIseXogezEoMz1GK1VKTUtHSVlNM1NdT0MsRTM0OTRKQUxWW15sZW5wbHFkc21NeG1wXUZfTU5TTWRbZnBVKHwgfXl7MC4kIjAjaTUqLW06K3xlfmxtcmskeiYwRDhGOEw7Ik1CRSZSQzV9[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E.:2z527.enc", "JCM=");
Ligne Trouvée : user_pref("CT3242339./9B+7E.x305.enc", "JH4qQTc3RDQzekY7PitzLXp9fCEyKTQ/VkZUUkxHSllaSFFQXlFSOWRZXEkySzk8Oz5QR1JdbGprb3htaFBqb3FxdCJWInZ5Zk9oVllYWm1kb3p7Mn1oNCkseGF6aGtqayB2Ii1zL3lFOj0qcix5fHt6MSgzPlFV[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E/x305.enc", "JH4rQTU2MnhEOTwpcSt4fHt3MCcyPkxDQ1NOLVhbPCU+LDAuNEM6RVFYYmleZ1pBbGFkUTpTQUVDSFhPWmZte3xxdHJucCF0dFsne35rVG1bX11hcml0IS8nJiY7MXE6KD46QjY+QTR7QDxIeyBNQk83Q0U9UFRE[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E06CG5EL8:.enc", "bm1sanJ0cHFucw==");
Ligne Trouvée : user_pref("CT3242339./9B+7E06CG5EL;8I:K.enc", "JH4tLyJqdHNycHh6dnd0eSQvS0lHT0I1fV1cPQ==");
Ligne Trouvée : user_pref("CT3242339./9B+7E0x305.enc", "JH4sQDpAd0M4OyhwKnd8dX0vJjE+QSlVR0hNUVpOWlkyXVJVQitEMjcwN0lAS1heaF5wbm5mdGJuaWtNeG1wXUZfTVJLUWRbZnMje3csKiovJWQwJSh0XXZkaWJne3J9KzZ0OjYyPUBANXxIPUAtdS98Inp+NCs2[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E1x305.enc", "JH4tQTE9QDJ5RTo9KnIsend5fjEoM0FHPkVHRUgvWk9SPyhBMC0vM0Y9SFZiZWhca2dfbXBgSHNoa1hBWklGSEtfVmFvfCF9dHR6eCdfKyAjb1hxYF1fYXZteCc3OjYwMio9QXZCNzonbyl3dHZ3LiUwPk5RTUhI[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E2x305.enc", "JH4uNUIxPT05OntHPD8sdC55IH0yKTRDVlVORy5ZTlEyXk9BKkM1NzIxSD9KWWVfX2JsW3FzaXVpdXRNeG1wUX5rYEliUlBUUWdeaXgoLXx8Yy8kJ3NcdWRmZmh6cXwsO0AwQDx0eDQ9MHxIPUAtdS99ICAgNCs2[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E31;CJ7FK;KG#NCEP@MC+VKN.enc", "JH5hOT8jayVzdHFxKiEsbkFPRE0yejRDUldHV1MvWk9RXExZTzdiV1pHPkksWFReak84UTxTSlU4ZGVuWkNcS15VYHJxdSJxJXRoUTFxbCIvfC8rclt6dVgwNnliezsxL2deWk5rMzc5Oz[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E31;CJ<<ADM\"MBE.enc", "JH5hOT8jayV2cHRyeysiLW9CUEVOM3s1SUlOUVovWk9SPzZBJGFWUVlUV1FKM0x5fE9GUTRxdGJWP1hKQ1tSXUBsbXZiS2RVVGdeaXt6fit6Ln1xWjp6dVgmNSkmNDs6fmchayN5JTpHNUdDK3MzLn[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E31;CJC<=FBJ#K@.enc", "JH5hOT8jayV1dnRxKiEsbkFPRE0yejRPSElSTlYvV0w+NUAjYFVQWFNWUEkySyh8TkVQM19bZXFWP1hKWlFcP3txfiQhdXh2eyR1Ji0pKSMvd3BZcmNmZ2h3bnlcKSozfmchbyN5JTc2OkY2STktdVU[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E31;CJC<=FBJ#NCF.enc", "JH5hOT8jayV1dndxKiEsbkFPRE0yejRPSElSTlYvWk9SPzZBJFBMVmJHMEk7S0JNMGxib3RxZmlnbHRmdn15eXMgaGFKY1RXWFloX2pNeXokb1hxYHNqdSMnLnliInxfLjwqRDU3Oi4nbyl6KyItPU[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E31;CJI5E K@C.enc", "JH5hOT8jayVzeHIpICttQE5DTDF5M1RAUCtWS047Mj0gXVJNVVBTTUYvSHV4S0JNMG1wXlI7VENWTVg7Z2hxXUZfTmFYY3B0e2dQb2p6KShuV3B3ITA1JTUxXUA7cCRec0dydmtJSnpMTXxPUCNRJTMwJ[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E31;CJzz>H:\"MBE.enc", "JH5hOT8jayV1dnlyeCsiLW9CUEVOM3s1KChLVUcvWk9SPzZBJGFkUkYvSDdKQUxZXWRQOVhTY3FwV0BZYGl4fW19eW9vcnx4IUwvKl9yTWI2YWVaODlpOzxrPj9xQHMifnUhPz85JW0nNkVKOkpGPD[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E3x305.enc", "JH4vQT87NjM/R0Y/fUk+QS52MH4iJCE1LDdHS1lXS0pIWFhOXjdiVzpTXkkySzo9PztQR1JibGJddXhtdmp8UXxxdGFKY1JVV1JoX2p6LSYsLCR+LzIuaTUqLXlie2ptb2khdyMzQUEzN0hHRz0/OyNOQ0YzezUk[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E4x305.enc", "JH4wLEB2Qjc6J28pd3t0di4lMEE+T0lKUitVVTojPCsvKClBOENUUV5dVmFfVmhcQm1iZVI7VENGSUpZUFtsaXp+IXAjcHZZJXl8XSp6bFVuXWBjY3NqdSckMTgxNzI2KHM/NDd3RTInbyl3en18LiUwQT5LSkNP[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E5x305.enc", "JH4xNkIrd0M4OyhwKnl1encvJjFDSz1JVkpQWS5ZTjFKVUApQjIuMy9HPklbXVlaal5YcHJiZ0l0aWxZQltLR0tRYFdidHwkc3N3JiAkICpiLiMmclt0ZGBkaXlwey42PS4uNDR3Qzh6ND8qcix7d3t+MSgzRURS[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E6x305.enc", "JH4yLD4yMjI4RT58SD1ALXUvfnskJDQrNklTVFJZWFpaUFJONmFWWUYvSDg1PTxNRE9ibG1rcnFqd2FNeG1wXUZfT0xUUWRbZnl7Jnh4KX4vKS0yMGczKCt3YHlpZm5qfnUhNDZAQ0Y8PXxIPUAtdS9+eyR+NCs2[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E7x305.enc", "JH4zPSw/Pj95RTo9KnIse3p5ejEoM0dRP0RVWUJMWjFcUVRBKkMzMjA3SD9KXmhWW1lwYG5sZmFkc0x3bG9cRV5OTUtRY1pleSR6KSN4emEtIiVxWnNjYmBleG96Ly8rODg0PEIwMjQ5QzY0SztJIk1CRTJ6NCQj[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E8x305.enc", "JH40PT87NTc7PzZ8R0csdC5+eCMyKTRJVlVARy5ZTlE+J0AwMjUzRTxHXFVYY2plbmJebGFrcGhzS3ZrbltEXU1PUk9iWWR5J3ZyKnkoYCwhJHBZcmJkZ2J3bnkvNCs8MXM/NHYwOyZuKHd5fHYtJC9EOVBCTFNM[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E9x305.enc", "JH41Myw/MnhEOTwpcSt7dXl5MCcySExPT0RQTEdUWFxQSDRfVFdELUY3MTU0S0JNY2tdX19zaWtKdWptWkNcTUdLSWFYY3kib3QlKCR5YCwhJHBZcmNdYGh3bnkwOjorKi50QDU4JW0nd3F0eywjLkRQQjlFR1Eq[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E:x305.enc", "JH42Mzs4MnhEOTwpcSt7dnl6MCcySUhVRUQsV0xPPCU+LyotLUM6RVxnVVteP2pfYk84UUI9QD9WTVhvemh4bHFxVCB0d2RNZldSVVNrYm0lfi16ZjInKnZfeGlkZm59dCA3QjIyMkZENXxHRyx0Ln55eyMzKjVM[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E;x305.enc", "JH43PzM/NzhCL3tHPD8sdC5+enoiMyo1TUYsV0xPPCU+LysrMUM6RV1jVldcXFpBbGFkUTpTREBARVhPWnJzcXp4bSJWInZ5Zk9oWVVVWW1kbygkLCcqMiEwJ205LjF9ZiBwbGxuJXsnPzpIfklJLnYwIXx8fTUs[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E<x305.enc", "JH44NDAwRC9GNkQ3fUk+QS52MCF9JCY1LDdQLk9HRzFcUVRBKkM0MTc4SD9KY19aamReYlpHcmdqV0BZSkdNTV5VYHlxJG53eCV2XSl9IW1Wb2BdY2J0a3YwJS0zKTk0cj4zNiNrJXVyeHUqISxFQUM4P0tFRSlU[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E=x305.enc", "JH45MzY/QUE3OTV8SD1ALXUvIH4gIjQrNlBUWVdMVU9RWzRfVFdELUY3Njc4S0JNZ2twbmBvYWZrY2ZNeG1wXUZfUE9QUGRbZiElfHlzemEtIiVxWnNkY2RjeG96NT0yM0A/Oz8zeEQ5PClxK3t6e3kwJzJMTU9F[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E>x305.enc", "JH46QTY/MjI4OHtHPD8sdC5+ICF8Myo1UE9TRkgvWk9SPyhBMjM0L0Y9SGNcXWZiakNuY2ZTPFVGR0hCWlFcd3B3cyAjcSFZJXl8aVJrXF1dYXBnci4hLiQ4KDg3Lyo6LnM/NDckbCZ2d3d6KyItSEtMR1FCRilU[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E?x305.enc", "JH47LS8vM0E0QDo6fUlMLXUvICMgfjQrNlJQTFJJVVJWUlw1YFVYRS5HODs4NkxDTmpwb19lY11zb2d1eGhMZXBrVCB0d2RNZldaV1RrYm0qIisvJS5oNCkseGF6a25rZyB2Ij5EQkEzNkE8PiBLQEMweDIjJiIn[...]
Ligne Trouvée : user_pref("CT3242339./9B+7E@x305.enc", "JH48QEIrd0M4OyhwKnt2fngvJjFOUlQ9KlVKLUZRPCU+MCszLEM6RWJnVlFiWWVfX0NuY0ZfalU+V0lETERcU157IXR8eCF0WiZ6fWpTbF5ZYGJxaHMxNCkmJm05LjF9ZiBxbHN0JXsnRDY5PT9FTD0kT0RHNHw2[...]
Ligne Trouvée : user_pref("CT3242339./9B+7EAx305.enc", "JH49PTc4d0M4OyhwKnt6dX4vJjFPT1RKUkBFSFZPWDFcUVRBKkM1NC83SD9KaGRrZF1eYmRiYW1pcXJrbHhqUXxxdGFKY1VUT1ZoX2opJSgnfDEnIjAgaTUqLXlie21sZ20hdyNBRS5EREk/fko/Qi93MSMifCI2[...]
Ligne Trouvée : user_pref("CT3242339./9B+7EBE3G=;D9N9=D.enc", "NywtMml1di46PHs6OUNKSUhBQ0smUUZJKWVQRlZJZXFzTTNLVw==");
Ligne Trouvée : user_pref("CT3242339./9B+7EBx305.enc", "JH4+OTFBMD0zRUA2Mn5KP0IvdzF7fSM1LDdWWUlITk9RUlxOTFVTW1RgWlo+aV5hTjdQOz1BVEtWdXVlbXNneW1tfFUhdXhlTmdSVFdrYm0tIiUuIGczKGokL3lie2ZoaiB2IkEvM3lFOj0qcix2eHkwJzJRQ1VD[...]
Ligne Trouvée : user_pref("CT3242339./9B+7ECx305.enc", "JH4/PTAwQzEuekY7PitzLXsgfjEoM1NRVlVRV1pPWExeM15TVkMsRTQ4NklAS2tZVmxoa0ZxZmlWP1hHS0hcU15+bGlWInZ5Zk9oV1tXbGNuLzEhJjAjNio1LCw6MTlxPTI1ImokcnZxKH4qSkE/TEVPPUBAUEQq[...]
Ligne Trouvée : user_pref("CT3242339./9B+7EDx305.enc", "JH5ANUIqNjh5RTo9KnIsfSAvJjFSR1Q8SEosV0wvSFM+J0AyM0M6RWZbaFBcXkBrbk84UUNDVEtWd2x5YW1vUXxxVHhzY0xlV1ZoX2osIS51IiRlLiN0XXZoZnlwez06LjIyNDExRTtDe0c8Pyx0LiB8MSgzVFJI[...]
Ligne Trouvée : user_pref("CT3242339./9B+7Etx305.enc", "JH5uLy47MjNCNXtEOStzLXp7e3wyKTQjUkxUV0dKTlBWXUphUV9dV1JVZD1oXWBNNk89Pj49VEtWRUhqc21pb1J9cnViS2RSU1NRaWBrWnt7dyYueWczKCt3YHlnaGdvfnUhcm01Pjg0OnxIPUAtdS98fXwkNCs2[...]
Ligne Trouvée : user_pref("CT3242339./9B-0?3G>D.enc", "Omg+PnA+c3B6dHdIeCB7e3ZKJSN7TyAqJShXJFgrWyctKFxd");
Ligne Trouvée : user_pref("CT3242339./9B-0?3G@6:5;.enc", "AA==");
Ligne Trouvée : user_pref("CT3242339./9B-0?3GFA7EF.enc", "Ky4sPQ==");
Ligne Trouvée : user_pref("CT3242339./9B-3=3ECCJA=F>.enc", "JH4zPSxFL0E1J28pe359ISAvJjE+Qkk1fTc4LzpJTV1RPygzOENdZVRpW2VUbVdpXV1oY2VTPHB2bGZ1Xg==");
Ligne Trouvée : user_pref("CT3242339./9B/556,BI5A>G.enc", "bm1sanJ0b21wcHN5cw==");
Ligne Trouvée : user_pref("CT3242339./9B/>01=9A6K6<IM;KRIE@PDAWM.enc", "amlrcnN0dXY=");
Ligne Trouvée : user_pref("CT3242339./9B3=>@44I48?.enc", "NywtMml1djNCNjNBSEd2IT8+SE9OTUZIUCtWS04uWVlZX0xWTzdkU1dQ");
Ligne Trouvée : user_pref("CT3242339./9B5BA==9CJAG.enc", "ajpuPXNvbm16R0dJSHl1SXxNfFFN");
Ligne Trouvée : user_pref("CT3242339./9B6B11G4C56B>F;P;ANR@P.enc", "bm1sanJ0cHFuc3RxeA==");
Ligne Trouvée : user_pref("CT3242339./9B9643G3/9E.enc", "ag==");
Ligne Trouvée : user_pref("CT3242339./9B;45>:BI9I7IE.enc", "Ky4sPQ==");
Ligne Trouvée : user_pref("CT3242339./9B<:222H64<.enc", "OT81Lz4=");
Ligne Trouvée : user_pref("CT3242339./9B<:222H64<L8DAJ.enc", "bXBwb3Z0dHl2dSp5cnJ6e3UgfA==");
Ligne Trouvée : user_pref("CT3242339./9B=+03EH8H8J?:.enc", "REM=");
Ligne Trouvée : user_pref("CT3242339./9B?+E2A52D8.enc", "NywtMml1di46PHs6OUNKSUhBQ0smUUZJKWVQRlZkcHJ5UVVeXlI=");
Ligne Trouvée : user_pref("CT3242339./9B?B0D:8AJ62<H.enc", "bQ==");
Ligne Trouvée : user_pref("CT3242339./9BA@0<0BI6A7GN:6@L?.enc", "bms=");
Ligne Trouvée : user_pref("CT3242339.1000082.isDisplayHidden", "true");
Ligne Trouvée : user_pref("CT3242339.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description\":\"California Rock\",\"url\":\"hxxp://feedlive.net/california.asx\"}");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_TMP_city", "PARIS");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_TMP_country", "FR");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_locId", "FRXX0076");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_location", "Paris, France");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_region", "FR");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_temp_dis", "c");
Ligne Trouvée : user_pref("CT3242339.1000234.TWC_wind_dis", "kmh");
Ligne Trouvée : user_pref("CT3242339.1000234.weatherData", "{\"icon\":\"30.png\",\"temperature\":\"1à‚°C\",\"temperatureClear\":\"1à‚°C\",\"highTemperature\":\"2à‚°C\",\"lowTemperature\":\"1à‚°C\",\"feelsLike\":\"1à‚°C\",[...]
Ligne Trouvée : user_pref("CT3242339.129498282976856742.isToggled_item0_12", "true");
Ligne Trouvée : user_pref("CT3242339.CBOpenMAMSettings.enc", "MA==");
Ligne Trouvée : user_pref("CT3242339.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"false\"}");
Ligne Trouvée : user_pref("CT3242339.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.FirstTime", "true");
Ligne Trouvée : user_pref("CT3242339.FirstTimeFF3", "true");
Ligne Trouvée : user_pref("CT3242339.LoginRevertSettingsEnabled", true);
Ligne Trouvée : user_pref("CT3242339.RevertSettingsEnabled", true);
Ligne Trouvée : user_pref("CT3242339.UserID", "UN40003974604697080");
Ligne Trouvée : user_pref("CT3242339.addressBarTakeOverEnabledInHidden", "true");
Ligne Trouvée : user_pref("CT3242339.cb_experience_000.enc", "Mg==");
Ligne Trouvée : user_pref("CT3242339.cb_firstuse0100.enc", "MQ==");
Ligne Trouvée : user_pref("CT3242339.cb_user_id_000.enc", "Q0I4ODI0MzUwNTQ1ODFfMTM1ODEwNzI0OTUxMV9GaXJlZm94");
Ligne Trouvée : user_pref("CT3242339.cbcountry_001.enc", "RlI=");
Ligne Trouvée : user_pref("CT3242339.cbfirsttime.enc", "U3VuIEphbiAxMyAyMDEzIDIwOjMzOjEyIEdNVCswMTAw");
Ligne Trouvée : user_pref("CT3242339.countryCode", "FR");
Ligne Trouvée : user_pref("CT3242339.enableAlerts", "never");
Ligne Trouvée : user_pref("CT3242339.enableFix404ByUser", "FALSE");
Ligne Trouvée : user_pref("CT3242339.event_data.enc", "JTVCJTVE");
Ligne Trouvée : user_pref("CT3242339.fired_events.enc", "AA==");
Ligne Trouvée : user_pref("CT3242339.firstTimeDialogOpened", "true");
Ligne Trouvée : user_pref("CT3242339.fixPageNotFoundErrorByUser", "TRUE");
Ligne Trouvée : user_pref("CT3242339.fixPageNotFoundErrorInHidden", "true");
Ligne Trouvée : user_pref("CT3242339.fixUrls", true);
Ligne Trouvée : user_pref("CT3242339.fullUserID", "UN40003974604697080.UP.20130701184147");
Ligne Trouvée : user_pref("CT3242339.hxxp___pricegong_conduitapps_com_v4.APP_WIN_FEATURES.enc", "cmVzaXphYmxlPTAsc2F2ZWxvY2F0aW9uPTAsb3BlbnBvc2l0aW9uPWFsaWdubWVudDpCO0wsdGl0bGViYXI9MA==");
Ligne Trouvée : user_pref("CT3242339.hxxp___www_socialgrowthtechnologies_com_couponbuddy_v001.APP_WIN_FEATURES.enc", "b3BlbnBvc2l0aW9uPW9mZnNldDo1MDs1MCxzYXZlbG9jYXRpb249MCxyZXNpemFibGU9bm8sc2Nyb2xsYmFycz1ubyx0aXRsZW[...]
Ligne Trouvée : user_pref("CT3242339.installType", "Unknown");
Ligne Trouvée : user_pref("CT3242339.isCheckedStartAsHidden", true);
Ligne Trouvée : user_pref("CT3242339.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.isFirstTimeToolbarLoading", "false");
Ligne Trouvée : user_pref("CT3242339.isNewTabEnabled", false);
Ligne Trouvée : user_pref("CT3242339.isPerformedSmartBarTransition", "true");
Ligne Trouvée : user_pref("CT3242339.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.key_date.enc", "MTM=");
Ligne Trouvée : user_pref("CT3242339.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT3242339&octid=CT3242339&SearchSource=15&CUI=UN40003974604697080&SSPV=&Lay=1&UM=\"}");
Ligne Trouvée : user_pref("CT3242339.lastVersion", "10.23.0.822");
Ligne Trouvée : user_pref("CT3242339.migrateAppsAndComponents", true);
Ligne Trouvée : user_pref("CT3242339.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxps%3A%2F%2Fwww.facebook.com%2F\",\"EB_MAIN_FRAME_TITLE\":\"Facebook\",\"EB_SEARCH_TERM\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp[...]
Ligne Trouvée : user_pref("CT3242339.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.revertSettingsEnabled", "false");
Ligne Trouvée : user_pref("CT3242339.search.searchAppId", "129888260397511660");
Ligne Trouvée : user_pref("CT3242339.search.searchCount", "1");
Ligne Trouvée : user_pref("CT3242339.searchInNewTabEnabled", "false");
Ligne Trouvée : user_pref("CT3242339.searchInNewTabEnabledByUser", "false");
Ligne Trouvée : user_pref("CT3242339.searchInNewTabEnabledInHidden", "true");
Ligne Trouvée : user_pref("CT3242339.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}");
Ligne Trouvée : user_pref("CT3242339.searchSuggestEnabledByUser", "false");
Ligne Trouvée : user_pref("CT3242339.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT3242339\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://WiseConvert15.OurToolbar.com//xpi\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"WiseConvert 1.5 \"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_Configuration_lastUpdate", "1388424921165");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1359201448747");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_appsMetadata_lastUpdate", "1359574321609");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_clientErrorLog_lastUpdate", "1358604708476");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1359385591496");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_location_lastUpdate", "1372272438557");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_login_10.13.40.15_lastUpdate", "1359385471968");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_login_10.14.42.7_lastUpdate", "1360864481297");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_login_10.14.65.43_lastUpdate", "1364160114594");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_login_10.15.0.562_lastUpdate", "1365950837984");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_login_10.15.2.523_lastUpdate", "1372272439772");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_login_10.16.4.519_lastUpdate", "1374883380023");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786_lastUpdate", "1359568748933");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855_lastUpdate", "1359568748830");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1359385591602");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_searchAPI_lastUpdate", "1388424920786");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_serviceMap_lastUpdate", "1388424920631");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_toolbarContextMenu_lastUpdate", "1359385591213");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_toolbarSettings_lastUpdate", "1388424920422");
Ligne Trouvée : user_pref("CT3242339.serviceLayer_services_translation_lastUpdate", "1388424920589");
Ligne Trouvée : user_pref("CT3242339.settingsINI", true);
Ligne Trouvée : user_pref("CT3242339.showToolbarPermission", "false");
Ligne Trouvée : user_pref("CT3242339.smartbar.CTID", "CT3242339");
Ligne Trouvée : user_pref("CT3242339.smartbar.Uninstall", "0");
Ligne Trouvée : user_pref("CT3242339.smartbar.toolbarName", "WiseConvert 1.5 ");
Ligne Trouvée : user_pref("CT3242339.toolbarBornServerTime", "13-1-2013");
Ligne Trouvée : user_pref("CT3242339.toolbarCurrentServerTime", "18-7-2013");
Ligne Trouvée : user_pref("CT3242339.toolbarLoginClientTime", "Sun Mar 24 2013 23:02:13 GMT+0100");
Ligne Trouvée : user_pref("CT3242339.url_history0001.enc", "aHR0cDovL3d3dy5nb29nbGUuZnIvc2VhcmNoP2hsPWZyJmNsaWVudD1maXJlZm94LWEmaHM9Y3lXJnJscz1vcmcubW96aWxsYTpmcjpvZmZpY2lhbCZxPWNvbmZlc3Npb25zK2ludGltZXMrbWFyaWFoK2Nh[...]
Ligne Trouvée : user_pref("CT3242339_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1388424912207,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Ligne Trouvée : user_pref("browser.search.order.1", "Mysearchdial");
Ligne Trouvée : user_pref("extensions.Fissa.lastRunTime", "Sat, 28 Aug 2010 18:09:57 GMT");
Ligne Trouvée : user_pref("extensions.mysearchdial.aflt", "irmsd1202aw");
Ligne Trouvée : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Ligne Trouvée : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R");
Ligne Trouvée : user_pref("extensions.mysearchdial.cntry", "FR");
Ligne Trouvée : user_pref("extensions.mysearchdial.cr", "627028764");
Ligne Trouvée : user_pref("extensions.mysearchdial.dfltLng", "");
Ligne Trouvée : user_pref("extensions.mysearchdial.dfltSrch", true);
Ligne Trouvée : user_pref("extensions.mysearchdial.dnsErr", true);
Ligne Trouvée : user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,18285[...]
Ligne Trouvée : user_pref("extensions.mysearchdial.excTlbr", false);
Ligne Trouvée : user_pref("extensions.mysearchdial.hdrMd5", "0A199B406364F49189CCE1F3B14CB697");
Ligne Trouvée : user_pref("extensions.mysearchdial.hmpg", true);
Ligne Trouvée : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1Czu[...]
Ligne Trouvée : user_pref("extensions.mysearchdial.id", "00234E2320037E44");
Ligne Trouvée : user_pref("extensions.mysearchdial.instlDay", "16051");
Ligne Trouvée : user_pref("extensions.mysearchdial.instlRef", "");
Ligne Trouvée : user_pref("extensions.mysearchdial.lastB", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutC[...]
Ligne Trouvée : user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.21.020:58:49");
Ligne Trouvée : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1C[...]
Ligne Trouvée : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"89\",\"lastVrsn\":\"89\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Ligne Trouvée : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Ligne Trouvée : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Ligne Trouvée : user_pref("extensions.mysearchdial.sg", "none");
Ligne Trouvée : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Ligne Trouvée : user_pref("extensions.mysearchdial.tlbrId", "base");
Ligne Trouvée : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L[...]
Ligne Trouvée : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
Ligne Trouvée : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
Ligne Trouvée : user_pref("extensions.mysearchdial_i.hmpg", true);
Ligne Trouvée : user_pref("extensions.mysearchdial_i.newTab", false);
Ligne Trouvée : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Ligne Trouvée : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:58:49");
Ligne Trouvée : user_pref("plugin.blocklisted.npviewpoint", true);
Ligne Trouvée : user_pref("plugin.state.npconduitfirefoxplugin", 2);
Ligne Trouvée : user_pref("plugin.state.npviewpoint", 0);
Ligne Trouvée : user_pref("smartbar.machineId", "/ZKAXXVZDMPPYKTR23S/FN7A7L8JFW5RV07LZCMYDLJ/ZWIXR/YVAKUCMQHW336NKXDSYDMOF8SDCBHZDE2M5W");
Ligne Trouvée : user_pref("valueApps.CT3242339.mam_gk_currentVersion", "312E31322E302E35");
Ligne Trouvée : user_pref("valueApps.CT3242339.mam_gk_currentVersion.storedInFile", false);
Ligne Trouvée : user_pref("valueApps.CT3242339.mam_gk_globalKeysMigratedToLocalStorage", "31");
Ligne Trouvée : user_pref("valueApps.CT3242339.mam_gk_globalKeysMigratedToLocalStorage.storedInFile", false);
Ligne Trouvée : user_pref("valueApps.CT3242339.mam_gk_migrated_from_ls", "31");
Ligne Trouvée : user_pref("valueApps.CT3242339.mam_gk_migrated_from_ls.storedInFile", false);

-\\ Google Chrome v31.0.1650.63

[ Fichier : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Trouvée : icon_url
Trouvée : search_url
Trouvée : keyword

*************************

AdwCleaner[R0].txt - [35593 octets] - [30/12/2013 19:20:43]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [35654 octets] ##########
Avatar du membre
par lilidurhone
#25153
Bien ;)
  • Fais clic droit dessus, exécuter en tant qu'administrateur sous Windows : 7/8 et Vista,sinon double-clique pour XP
    1. Choisis l'option Scanner
    2. Choisis l'option Nettoyer
  • Accepte l'avertissement en cliquant sur OK

    Image
  • Accepte les avertissements/informations en cliquant sur OK
  • Copie et Colle le contenu du rapport qui apparaît au redémarrage du PC
Avatar du membre
par Telma
#25154
Voilà  le rapoprt :

# AdwCleaner v3.016 - Rapport créé le 30/12/2013 à  20:24:56
# Mis à  jour le 23/12/2013 par Xplode
# Système d'exploitation : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Nom d'utilisateur : Marie-Estelle - PC-MARIE-ESTELL
# Exécuté depuis : C:\Users\Marie-Estelle\Downloads\adwcleaner.exe
# Option : Nettoyer

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\ProgramData\Viewpoint
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OfferBox
Dossier Supprimé : C:\Program Files\CrazyLoader
Dossier Supprimé : C:\Program Files\MyPC Backup
Dossier Supprimé : C:\Program Files\Viewpoint
Dossier Supprimé : C:\Program Files\Widestream6
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Local\widestream6 Air
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\FissaSearch
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\OfferBox
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\OpenCandy
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\pdfforge
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Systweak
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\widestream
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CrazyLoader
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Smartbar
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\ValueApps
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\CT3242339
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Extensions\{AD9A41D2-9A49-4FA6-A79E-71A0785364C8}
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\Extensions\{19803860-b306-423c-bbb5-f60a7d82cde5}
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Dossier Supprimé : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Fichier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
Fichier Supprimé : C:\Windows\system32\roboot.exe
Fichier Supprimé : C:\Users\Marie-Estelle\AppData\Local\mysearchdial-speeddial.crx
Fichier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\avg-secure-search.xml
Fichier Supprimé : C:\Program Files\Mozilla Firefox\searchplugins\avg-secure-search.xml
Fichier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\Fissa.xml
Fichier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\searchplugins\Mysearchdial.xml
Fichier Supprimé : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\user.js
Fichier Supprimé : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage

***** [ Raccourcis ] *****


***** [ Registre ] *****

Valeur Supprimée : HKCU\Software\Mozilla\Firefox\Extensions [offerboxffx@offerbox.com]
Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
[#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{35F7D4DB-9C08-4E79-B281-87F35119D679}
[#] Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEDE6463-84F4-457D-861A-2253EEA0C1E6}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl
Clé Supprimée : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1
Clé Supprimée : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary
Clé Supprimée : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Clé Supprimée : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Clé Supprimée : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Clé Supprimée : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Clé Supprimée : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Clé Supprimée : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook
Clé Supprimée : HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook.1
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{9DBB28C1-1925-11D3-A498-00104B6EB52E}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{723328FF-22D0-497F-9EB5-1AC919582DE1}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{91C18ED5-5E1C-4AE5-A148-A861DE8C8E16}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0626A63-410B-45E2-99A1-3F2475B2D695}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B41306C6-96D0-442A-BCC4-B0F621E82CE9}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Clé Supprimée : HKCU\Software\Babylon
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\FissaSearch
Clé Supprimée : HKCU\Software\IGearSettings
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\mysearchdial.com
Clé Supprimée : HKCU\Software\Offerbox
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\Spointer
Clé Supprimée : HKCU\Software\systweak
Clé Supprimée : HKCU\Software\Vittalia
Clé Supprimée : HKCU\Software\WideStream
Clé Supprimée : HKCU\Software\YahooPartnerToolbar
Clé Supprimée : HKCU\Software\AppDataLow\{D45817B8-3EAD-4D1D-8FCA-EC63A8E35DE2}
Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartBar
Clé Supprimée : HKLM\Software\MetaStream
Clé Supprimée : HKLM\Software\systweak
Clé Supprimée : HKLM\Software\Viewpoint
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2C8574B5-6935-4FCE-860E-F4E8602378FF}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2C8574B5-6935-4FCE-860E-F4E8602378FF}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyPC Backup
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\RegClean Pro_is1
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer
Clé Supprimée : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Clé Supprimée : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Clé Supprimée : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536

***** [ Navigateurs ] *****

-\\ Internet Explorer v9.0.8112.16526

Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]

-\\ Mozilla Firefox v26.0 (fr)

[ Fichier : C:\Users\Marie-Estelle\AppData\Roaming\Mozilla\Firefox\Profiles\3dhaobu0.default\prefs.js ]

Ligne Supprimée : user_pref("CT3242339./9B+7E+x305.enc", "JH4nQTM0NjN5RTo9KnIseXp+ejEoMztHSVNGLVhNUD0mPy0uMTVEO0ZOT1tWXmlbQm1iZVI7VEJDRklZUFtjfXN7blUhdXhlTmdVVllbbGNudnwmKzB7aTUqLXlie2lqbW4hdyMrNzt0NHxIPSBFQy93MX4gIyM2[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E,x305.enc", "JH4oQS8/Pjd5RTo9KnIseXt4fTEoMzxHSEAsV0xPPCU+LC4rL0M6RU5ZUFtXZ2pmQm1iRV5pVD1WREZDRltSXWZxbCFua1h9c2dQaVdZVlhuZXB5MycyfWo2Ky56Y3xqbGlqIngkLUY6PkVGSUxAS0RMJVBFSDV9[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E-x305.enc", "JH4pNjA8NjZ5RTo9KnIseXogezEoMz1GK1VKTUtHSVlNM1NdT0MsRTM0OTRKQUxWW15sZW5wbHFkc21NeG1wXUZfTU5TTWRbZnBVKHwgfXl7MC4kIjAjaTUqLW06K3xlfmxtcmskeiYwRDhGOEw7Ik1CRSZSQzV9[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E.:2z527.enc", "JCM=");
Ligne Supprimée : user_pref("CT3242339./9B+7E.x305.enc", "JH4qQTc3RDQzekY7PitzLXp9fCEyKTQ/VkZUUkxHSllaSFFQXlFSOWRZXEkySzk8Oz5QR1JdbGprb3htaFBqb3FxdCJWInZ5Zk9oVllYWm1kb3p7Mn1oNCkseGF6aGtqayB2Ii1zL3lFOj0qcix5fHt6MSgzPlFV[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E/x305.enc", "JH4rQTU2MnhEOTwpcSt4fHt3MCcyPkxDQ1NOLVhbPCU+LDAuNEM6RVFYYmleZ1pBbGFkUTpTQUVDSFhPWmZte3xxdHJucCF0dFsne35rVG1bX11hcml0IS8nJiY7MXE6KD46QjY+QTR7QDxIeyBNQk83Q0U9UFRE[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E06CG5EL8:.enc", "bm1sanJ0cHFucw==");
Ligne Supprimée : user_pref("CT3242339./9B+7E06CG5EL;8I:K.enc", "JH4tLyJqdHNycHh6dnd0eSQvS0lHT0I1fV1cPQ==");
Ligne Supprimée : user_pref("CT3242339./9B+7E0x305.enc", "JH4sQDpAd0M4OyhwKnd8dX0vJjE+QSlVR0hNUVpOWlkyXVJVQitEMjcwN0lAS1heaF5wbm5mdGJuaWtNeG1wXUZfTVJLUWRbZnMje3csKiovJWQwJSh0XXZkaWJne3J9KzZ0OjYyPUBANXxIPUAtdS98Inp+NCs2[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E1x305.enc", "JH4tQTE9QDJ5RTo9KnIsend5fjEoM0FHPkVHRUgvWk9SPyhBMC0vM0Y9SFZiZWhca2dfbXBgSHNoa1hBWklGSEtfVmFvfCF9dHR6eCdfKyAjb1hxYF1fYXZteCc3OjYwMio9QXZCNzonbyl3dHZ3LiUwPk5RTUhI[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E2x305.enc", "JH4uNUIxPT05OntHPD8sdC55IH0yKTRDVlVORy5ZTlEyXk9BKkM1NzIxSD9KWWVfX2JsW3FzaXVpdXRNeG1wUX5rYEliUlBUUWdeaXgoLXx8Yy8kJ3NcdWRmZmh6cXwsO0AwQDx0eDQ9MHxIPUAtdS99ICAgNCs2[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E31;CJ7FK;KG#NCEP@MC+VKN.enc", "JH5hOT8jayVzdHFxKiEsbkFPRE0yejRDUldHV1MvWk9RXExZTzdiV1pHPkksWFReak84UTxTSlU4ZGVuWkNcS15VYHJxdSJxJXRoUTFxbCIvfC8rclt6dVgwNnliezsxL2deWk5rMzc5Oz[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E31;CJ<<ADM\"MBE.enc", "JH5hOT8jayV2cHRyeysiLW9CUEVOM3s1SUlOUVovWk9SPzZBJGFWUVlUV1FKM0x5fE9GUTRxdGJWP1hKQ1tSXUBsbXZiS2RVVGdeaXt6fit6Ln1xWjp6dVgmNSkmNDs6fmchayN5JTpHNUdDK3MzLn[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E31;CJC<=FBJ#K@.enc", "JH5hOT8jayV1dnRxKiEsbkFPRE0yejRPSElSTlYvV0w+NUAjYFVQWFNWUEkySyh8TkVQM19bZXFWP1hKWlFcP3txfiQhdXh2eyR1Ji0pKSMvd3BZcmNmZ2h3bnlcKSozfmchbyN5JTc2OkY2STktdVU[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E31;CJC<=FBJ#NCF.enc", "JH5hOT8jayV1dndxKiEsbkFPRE0yejRPSElSTlYvWk9SPzZBJFBMVmJHMEk7S0JNMGxib3RxZmlnbHRmdn15eXMgaGFKY1RXWFloX2pNeXokb1hxYHNqdSMnLnliInxfLjwqRDU3Oi4nbyl6KyItPU[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E31;CJI5E K@C.enc", "JH5hOT8jayVzeHIpICttQE5DTDF5M1RAUCtWS047Mj0gXVJNVVBTTUYvSHV4S0JNMG1wXlI7VENWTVg7Z2hxXUZfTmFYY3B0e2dQb2p6KShuV3B3ITA1JTUxXUA7cCRec0dydmtJSnpMTXxPUCNRJTMwJ[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E31;CJzz>H:\"MBE.enc", "JH5hOT8jayV1dnlyeCsiLW9CUEVOM3s1KChLVUcvWk9SPzZBJGFkUkYvSDdKQUxZXWRQOVhTY3FwV0BZYGl4fW19eW9vcnx4IUwvKl9yTWI2YWVaODlpOzxrPj9xQHMifnUhPz85JW0nNkVKOkpGPD[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E3x305.enc", "JH4vQT87NjM/R0Y/fUk+QS52MH4iJCE1LDdHS1lXS0pIWFhOXjdiVzpTXkkySzo9PztQR1JibGJddXhtdmp8UXxxdGFKY1JVV1JoX2p6LSYsLCR+LzIuaTUqLXlie2ptb2khdyMzQUEzN0hHRz0/OyNOQ0YzezUk[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E4x305.enc", "JH4wLEB2Qjc6J28pd3t0di4lMEE+T0lKUitVVTojPCsvKClBOENUUV5dVmFfVmhcQm1iZVI7VENGSUpZUFtsaXp+IXAjcHZZJXl8XSp6bFVuXWBjY3NqdSckMTgxNzI2KHM/NDd3RTInbyl3en18LiUwQT5LSkNP[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E5x305.enc", "JH4xNkIrd0M4OyhwKnl1encvJjFDSz1JVkpQWS5ZTjFKVUApQjIuMy9HPklbXVlaal5YcHJiZ0l0aWxZQltLR0tRYFdidHwkc3N3JiAkICpiLiMmclt0ZGBkaXlwey42PS4uNDR3Qzh6ND8qcix7d3t+MSgzRURS[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E6x305.enc", "JH4yLD4yMjI4RT58SD1ALXUvfnskJDQrNklTVFJZWFpaUFJONmFWWUYvSDg1PTxNRE9ibG1rcnFqd2FNeG1wXUZfT0xUUWRbZnl7Jnh4KX4vKS0yMGczKCt3YHlpZm5qfnUhNDZAQ0Y8PXxIPUAtdS9+eyR+NCs2[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E7x305.enc", "JH4zPSw/Pj95RTo9KnIse3p5ejEoM0dRP0RVWUJMWjFcUVRBKkMzMjA3SD9KXmhWW1lwYG5sZmFkc0x3bG9cRV5OTUtRY1pleSR6KSN4emEtIiVxWnNjYmBleG96Ly8rODg0PEIwMjQ5QzY0SztJIk1CRTJ6NCQj[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E8x305.enc", "JH40PT87NTc7PzZ8R0csdC5+eCMyKTRJVlVARy5ZTlE+J0AwMjUzRTxHXFVYY2plbmJebGFrcGhzS3ZrbltEXU1PUk9iWWR5J3ZyKnkoYCwhJHBZcmJkZ2J3bnkvNCs8MXM/NHYwOyZuKHd5fHYtJC9EOVBCTFNM[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E9x305.enc", "JH41Myw/MnhEOTwpcSt7dXl5MCcySExPT0RQTEdUWFxQSDRfVFdELUY3MTU0S0JNY2tdX19zaWtKdWptWkNcTUdLSWFYY3kib3QlKCR5YCwhJHBZcmNdYGh3bnkwOjorKi50QDU4JW0nd3F0eywjLkRQQjlFR1Eq[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E:x305.enc", "JH42Mzs4MnhEOTwpcSt7dnl6MCcySUhVRUQsV0xPPCU+LyotLUM6RVxnVVteP2pfYk84UUI9QD9WTVhvemh4bHFxVCB0d2RNZldSVVNrYm0lfi16ZjInKnZfeGlkZm59dCA3QjIyMkZENXxHRyx0Ln55eyMzKjVM[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E;x305.enc", "JH43PzM/NzhCL3tHPD8sdC5+enoiMyo1TUYsV0xPPCU+LysrMUM6RV1jVldcXFpBbGFkUTpTREBARVhPWnJzcXp4bSJWInZ5Zk9oWVVVWW1kbygkLCcqMiEwJ205LjF9ZiBwbGxuJXsnPzpIfklJLnYwIXx8fTUs[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E<x305.enc", "JH44NDAwRC9GNkQ3fUk+QS52MCF9JCY1LDdQLk9HRzFcUVRBKkM0MTc4SD9KY19aamReYlpHcmdqV0BZSkdNTV5VYHlxJG53eCV2XSl9IW1Wb2BdY2J0a3YwJS0zKTk0cj4zNiNrJXVyeHUqISxFQUM4P0tFRSlU[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E=x305.enc", "JH45MzY/QUE3OTV8SD1ALXUvIH4gIjQrNlBUWVdMVU9RWzRfVFdELUY3Njc4S0JNZ2twbmBvYWZrY2ZNeG1wXUZfUE9QUGRbZiElfHlzemEtIiVxWnNkY2RjeG96NT0yM0A/Oz8zeEQ5PClxK3t6e3kwJzJMTU9F[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E>x305.enc", "JH46QTY/MjI4OHtHPD8sdC5+ICF8Myo1UE9TRkgvWk9SPyhBMjM0L0Y9SGNcXWZiakNuY2ZTPFVGR0hCWlFcd3B3cyAjcSFZJXl8aVJrXF1dYXBnci4hLiQ4KDg3Lyo6LnM/NDckbCZ2d3d6KyItSEtMR1FCRilU[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E?x305.enc", "JH47LS8vM0E0QDo6fUlMLXUvICMgfjQrNlJQTFJJVVJWUlw1YFVYRS5HODs4NkxDTmpwb19lY11zb2d1eGhMZXBrVCB0d2RNZldaV1RrYm0qIisvJS5oNCkseGF6a25rZyB2Ij5EQkEzNkE8PiBLQEMweDIjJiIn[...]
Ligne Supprimée : user_pref("CT3242339./9B+7E@x305.enc", "JH48QEIrd0M4OyhwKnt2fngvJjFOUlQ9KlVKLUZRPCU+MCszLEM6RWJnVlFiWWVfX0NuY0ZfalU+V0lETERcU157IXR8eCF0WiZ6fWpTbF5ZYGJxaHMxNCkmJm05LjF9ZiBxbHN0JXsnRDY5PT9FTD0kT0RHNHw2[...]
Ligne Supprimée : user_pref("CT3242339./9B+7EAx305.enc", "JH49PTc4d0M4OyhwKnt6dX4vJjFPT1RKUkBFSFZPWDFcUVRBKkM1NC83SD9KaGRrZF1eYmRiYW1pcXJrbHhqUXxxdGFKY1VUT1ZoX2opJSgnfDEnIjAgaTUqLXlie21sZ20hdyNBRS5EREk/fko/Qi93MSMifCI2[...]
Ligne Supprimée : user_pref("CT3242339./9B+7EBE3G=;D9N9=D.enc", "NywtMml1di46PHs6OUNKSUhBQ0smUUZJKWVQRlZJZXFzTTNLVw==");
Ligne Supprimée : user_pref("CT3242339./9B+7EBx305.enc", "JH4+OTFBMD0zRUA2Mn5KP0IvdzF7fSM1LDdWWUlITk9RUlxOTFVTW1RgWlo+aV5hTjdQOz1BVEtWdXVlbXNneW1tfFUhdXhlTmdSVFdrYm0tIiUuIGczKGokL3lie2ZoaiB2IkEvM3lFOj0qcix2eHkwJzJRQ1VD[...]
Ligne Supprimée : user_pref("CT3242339./9B+7ECx305.enc", "JH4/PTAwQzEuekY7PitzLXsgfjEoM1NRVlVRV1pPWExeM15TVkMsRTQ4NklAS2tZVmxoa0ZxZmlWP1hHS0hcU15+bGlWInZ5Zk9oV1tXbGNuLzEhJjAjNio1LCw6MTlxPTI1ImokcnZxKH4qSkE/TEVPPUBAUEQq[...]
Ligne Supprimée : user_pref("CT3242339./9B+7EDx305.enc", "JH5ANUIqNjh5RTo9KnIsfSAvJjFSR1Q8SEosV0wvSFM+J0AyM0M6RWZbaFBcXkBrbk84UUNDVEtWd2x5YW1vUXxxVHhzY0xlV1ZoX2osIS51IiRlLiN0XXZoZnlwez06LjIyNDExRTtDe0c8Pyx0LiB8MSgzVFJI[...]
Ligne Supprimée : user_pref("CT3242339./9B+7Etx305.enc", "JH5uLy47MjNCNXtEOStzLXp7e3wyKTQjUkxUV0dKTlBWXUphUV9dV1JVZD1oXWBNNk89Pj49VEtWRUhqc21pb1J9cnViS2RSU1NRaWBrWnt7dyYueWczKCt3YHlnaGdvfnUhcm01Pjg0OnxIPUAtdS98fXwkNCs2[...]
Ligne Supprimée : user_pref("CT3242339./9B-0?3G>D.enc", "Omg+PnA+c3B6dHdIeCB7e3ZKJSN7TyAqJShXJFgrWyctKFxd");
Ligne Supprimée : user_pref("CT3242339./9B-0?3G@6:5;.enc", "AA==");
Ligne Supprimée : user_pref("CT3242339./9B-0?3GFA7EF.enc", "Ky4sPQ==");
Ligne Supprimée : user_pref("CT3242339./9B-3=3ECCJA=F>.enc", "JH4zPSxFL0E1J28pe359ISAvJjE+Qkk1fTc4LzpJTV1RPygzOENdZVRpW2VUbVdpXV1oY2VTPHB2bGZ1Xg==");
Ligne Supprimée : user_pref("CT3242339./9B/556,BI5A>G.enc", "bm1sanJ0b21wcHN5cw==");
Ligne Supprimée : user_pref("CT3242339./9B/>01=9A6K6<IM;KRIE@PDAWM.enc", "amlrcnN0dXY=");
Ligne Supprimée : user_pref("CT3242339./9B3=>@44I48?.enc", "NywtMml1djNCNjNBSEd2IT8+SE9OTUZIUCtWS04uWVlZX0xWTzdkU1dQ");
Ligne Supprimée : user_pref("CT3242339./9B5BA==9CJAG.enc", "ajpuPXNvbm16R0dJSHl1SXxNfFFN");
Ligne Supprimée : user_pref("CT3242339./9B6B11G4C56B>F;P;ANR@P.enc", "bm1sanJ0cHFuc3RxeA==");
Ligne Supprimée : user_pref("CT3242339./9B9643G3/9E.enc", "ag==");
Ligne Supprimée : user_pref("CT3242339./9B;45>:BI9I7IE.enc", "Ky4sPQ==");
Ligne Supprimée : user_pref("CT3242339./9B<:222H64<.enc", "OT81Lz4=");
Ligne Supprimée : user_pref("CT3242339./9B<:222H64<L8DAJ.enc", "bXBwb3Z0dHl2dSp5cnJ6e3UgfA==");
Ligne Supprimée : user_pref("CT3242339./9B=+03EH8H8J?:.enc", "REM=");
Ligne Supprimée : user_pref("CT3242339./9B?+E2A52D8.enc", "NywtMml1di46PHs6OUNKSUhBQ0smUUZJKWVQRlZkcHJ5UVVeXlI=");
Ligne Supprimée : user_pref("CT3242339./9B?B0D:8AJ62<H.enc", "bQ==");
Ligne Supprimée : user_pref("CT3242339./9BA@0<0BI6A7GN:6@L?.enc", "bms=");
Ligne Supprimée : user_pref("CT3242339.1000082.isDisplayHidden", "true");
Ligne Supprimée : user_pref("CT3242339.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description\":\"California Rock\",\"url\":\"hxxp://feedlive.net/california.asx\"}");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_TMP_city", "PARIS");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_TMP_country", "FR");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_locId", "FRXX0076");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_location", "Paris, France");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_region", "FR");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_temp_dis", "c");
Ligne Supprimée : user_pref("CT3242339.1000234.TWC_wind_dis", "kmh");
Ligne Supprimée : user_pref("CT3242339.1000234.weatherData", "{\"icon\":\"30.png\",\"temperature\":\"1à‚°C\",\"temperatureClear\":\"1à‚°C\",\"highTemperature\":\"2à‚°C\",\"lowTemperature\":\"1à‚°C\",\"feelsLike\":\"1à‚°C\",[...]
Ligne Supprimée : user_pref("CT3242339.129498282976856742.isToggled_item0_12", "true");
Ligne Supprimée : user_pref("CT3242339.CBOpenMAMSettings.enc", "MA==");
Ligne Supprimée : user_pref("CT3242339.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"false\"}");
Ligne Supprimée : user_pref("CT3242339.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.FirstTime", "true");
Ligne Supprimée : user_pref("CT3242339.FirstTimeFF3", "true");
Ligne Supprimée : user_pref("CT3242339.LoginRevertSettingsEnabled", true);
Ligne Supprimée : user_pref("CT3242339.RevertSettingsEnabled", true);
Ligne Supprimée : user_pref("CT3242339.UserID", "UN40003974604697080");
Ligne Supprimée : user_pref("CT3242339.addressBarTakeOverEnabledInHidden", "true");
Ligne Supprimée : user_pref("CT3242339.cb_experience_000.enc", "Mg==");
Ligne Supprimée : user_pref("CT3242339.cb_firstuse0100.enc", "MQ==");
Ligne Supprimée : user_pref("CT3242339.cb_user_id_000.enc", "Q0I4ODI0MzUwNTQ1ODFfMTM1ODEwNzI0OTUxMV9GaXJlZm94");
Ligne Supprimée : user_pref("CT3242339.cbcountry_001.enc", "RlI=");
Ligne Supprimée : user_pref("CT3242339.cbfirsttime.enc", "U3VuIEphbiAxMyAyMDEzIDIwOjMzOjEyIEdNVCswMTAw");
Ligne Supprimée : user_pref("CT3242339.countryCode", "FR");
Ligne Supprimée : user_pref("CT3242339.enableAlerts", "never");
Ligne Supprimée : user_pref("CT3242339.enableFix404ByUser", "FALSE");
Ligne Supprimée : user_pref("CT3242339.event_data.enc", "JTVCJTVE");
Ligne Supprimée : user_pref("CT3242339.fired_events.enc", "AA==");
Ligne Supprimée : user_pref("CT3242339.firstTimeDialogOpened", "true");
Ligne Supprimée : user_pref("CT3242339.fixPageNotFoundErrorByUser", "TRUE");
Ligne Supprimée : user_pref("CT3242339.fixPageNotFoundErrorInHidden", "true");
Ligne Supprimée : user_pref("CT3242339.fixUrls", true);
Ligne Supprimée : user_pref("CT3242339.fullUserID", "UN40003974604697080.UP.20130701184147");
Ligne Supprimée : user_pref("CT3242339.hxxp___pricegong_conduitapps_com_v4.APP_WIN_FEATURES.enc", "cmVzaXphYmxlPTAsc2F2ZWxvY2F0aW9uPTAsb3BlbnBvc2l0aW9uPWFsaWdubWVudDpCO0wsdGl0bGViYXI9MA==");
Ligne Supprimée : user_pref("CT3242339.hxxp___www_socialgrowthtechnologies_com_couponbuddy_v001.APP_WIN_FEATURES.enc", "b3BlbnBvc2l0aW9uPW9mZnNldDo1MDs1MCxzYXZlbG9jYXRpb249MCxyZXNpemFibGU9bm8sc2Nyb2xsYmFycz1ubyx0aXRsZW[...]
Ligne Supprimée : user_pref("CT3242339.installType", "Unknown");
Ligne Supprimée : user_pref("CT3242339.isCheckedStartAsHidden", true);
Ligne Supprimée : user_pref("CT3242339.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.isFirstTimeToolbarLoading", "false");
Ligne Supprimée : user_pref("CT3242339.isNewTabEnabled", false);
Ligne Supprimée : user_pref("CT3242339.isPerformedSmartBarTransition", "true");
Ligne Supprimée : user_pref("CT3242339.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.key_date.enc", "MTM=");
Ligne Supprimée : user_pref("CT3242339.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT3242339&octid=CT3242339&SearchSource=15&CUI=UN40003974604697080&SSPV=&Lay=1&UM=\"}");
Ligne Supprimée : user_pref("CT3242339.lastVersion", "10.23.0.822");
Ligne Supprimée : user_pref("CT3242339.migrateAppsAndComponents", true);
Ligne Supprimée : user_pref("CT3242339.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxps%3A%2F%2Fwww.facebook.com%2F\",\"EB_MAIN_FRAME_TITLE\":\"Facebook\",\"EB_SEARCH_TERM\":\"\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp[...]
Ligne Supprimée : user_pref("CT3242339.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.revertSettingsEnabled", "false");
Ligne Supprimée : user_pref("CT3242339.search.searchAppId", "129888260397511660");
Ligne Supprimée : user_pref("CT3242339.search.searchCount", "1");
Ligne Supprimée : user_pref("CT3242339.searchInNewTabEnabled", "false");
Ligne Supprimée : user_pref("CT3242339.searchInNewTabEnabledByUser", "false");
Ligne Supprimée : user_pref("CT3242339.searchInNewTabEnabledInHidden", "true");
Ligne Supprimée : user_pref("CT3242339.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}");
Ligne Supprimée : user_pref("CT3242339.searchSuggestEnabledByUser", "false");
Ligne Supprimée : user_pref("CT3242339.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT3242339\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://WiseConvert15.OurToolbar.com//xpi\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"WiseConvert 1.5 \"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_Configuration_lastUpdate", "1388424921165");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1359201448747");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_appsMetadata_lastUpdate", "1359574321609");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_clientErrorLog_lastUpdate", "1358604708476");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1359385591496");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_location_lastUpdate", "1372272438557");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_login_10.13.40.15_lastUpdate", "1359385471968");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_login_10.14.42.7_lastUpdate", "1360864481297");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_login_10.14.65.43_lastUpdate", "1364160114594");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_login_10.15.0.562_lastUpdate", "1365950837984");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_login_10.15.2.523_lastUpdate", "1372272439772");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_login_10.16.4.519_lastUpdate", "1374883380023");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786_lastUpdate", "1359568748933");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855_lastUpdate", "1359568748830");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1359385591602");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_searchAPI_lastUpdate", "1388424920786");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_serviceMap_lastUpdate", "1388424920631");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_toolbarContextMenu_lastUpdate", "1359385591213");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_toolbarSettings_lastUpdate", "1388424920422");
Ligne Supprimée : user_pref("CT3242339.serviceLayer_services_translation_lastUpdate", "1388424920589");
Ligne Supprimée : user_pref("CT3242339.settingsINI", true);
Ligne Supprimée : user_pref("CT3242339.showToolbarPermission", "false");
Ligne Supprimée : user_pref("CT3242339.smartbar.CTID", "CT3242339");
Ligne Supprimée : user_pref("CT3242339.smartbar.Uninstall", "0");
Ligne Supprimée : user_pref("CT3242339.smartbar.toolbarName", "WiseConvert 1.5 ");
Ligne Supprimée : user_pref("CT3242339.toolbarBornServerTime", "13-1-2013");
Ligne Supprimée : user_pref("CT3242339.toolbarCurrentServerTime", "18-7-2013");
Ligne Supprimée : user_pref("CT3242339.toolbarLoginClientTime", "Sun Mar 24 2013 23:02:13 GMT+0100");
Ligne Supprimée : user_pref("CT3242339.url_history0001.enc", "aHR0cDovL3d3dy5nb29nbGUuZnIvc2VhcmNoP2hsPWZyJmNsaWVudD1maXJlZm94LWEmaHM9Y3lXJnJscz1vcmcubW96aWxsYTpmcjpvZmZpY2lhbCZxPWNvbmZlc3Npb25zK2ludGltZXMrbWFyaWFoK2Nh[...]
Ligne Supprimée : user_pref("CT3242339_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1388424912207,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Ligne Supprimée : user_pref("browser.search.order.1", "Mysearchdial");
Ligne Supprimée : user_pref("extensions.Fissa.lastRunTime", "Sat, 28 Aug 2010 18:09:57 GMT");
Ligne Supprimée : user_pref("extensions.mysearchdial.aflt", "irmsd1202aw");
Ligne Supprimée : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Ligne Supprimée : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R");
Ligne Supprimée : user_pref("extensions.mysearchdial.cntry", "FR");
Ligne Supprimée : user_pref("extensions.mysearchdial.cr", "627028764");
Ligne Supprimée : user_pref("extensions.mysearchdial.dfltLng", "");
Ligne Supprimée : user_pref("extensions.mysearchdial.dfltSrch", true);
Ligne Supprimée : user_pref("extensions.mysearchdial.dnsErr", true);
Ligne Supprimée : user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,18285[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.excTlbr", false);
Ligne Supprimée : user_pref("extensions.mysearchdial.hdrMd5", "0A199B406364F49189CCE1F3B14CB697");
Ligne Supprimée : user_pref("extensions.mysearchdial.hmpg", true);
Ligne Supprimée : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1Czu[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.id", "00234E2320037E44");
Ligne Supprimée : user_pref("extensions.mysearchdial.instlDay", "16051");
Ligne Supprimée : user_pref("extensions.mysearchdial.instlRef", "");
Ligne Supprimée : user_pref("extensions.mysearchdial.lastB", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutC[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.21.020:58:49");
Ligne Supprimée : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1C[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"89\",\"lastVrsn\":\"89\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Ligne Supprimée : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Ligne Supprimée : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Ligne Supprimée : user_pref("extensions.mysearchdial.sg", "none");
Ligne Supprimée : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Ligne Supprimée : user_pref("extensions.mysearchdial.tlbrId", "base");
Ligne Supprimée : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=irmsd1202aw&cd=2XzuyEtN2Y1L1QzutDtDtBtAyE0EtBtAtBtDtDtAyB0EyEyEtN0D0Tzu0CyBtCtBtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L[...]
Ligne Supprimée : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
Ligne Supprimée : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
Ligne Supprimée : user_pref("extensions.mysearchdial_i.hmpg", true);
Ligne Supprimée : user_pref("extensions.mysearchdial_i.newTab", false);
Ligne Supprimée : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Ligne Supprimée : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:58:49");
Ligne Supprimée : user_pref("plugin.blocklisted.npviewpoint", true);
Ligne Supprimée : user_pref("plugin.state.npconduitfirefoxplugin", 2);
Ligne Supprimée : user_pref("plugin.state.npviewpoint", 0);
Ligne Supprimée : user_pref("smartbar.machineId", "/ZKAXXVZDMPPYKTR23S/FN7A7L8JFW5RV07LZCMYDLJ/ZWIXR/YVAKUCMQHW336NKXDSYDMOF8SDCBHZDE2M5W");
Ligne Supprimée : user_pref("valueApps.CT3242339.mam_gk_currentVersion", "312E31322E302E35");
Ligne Supprimée : user_pref("valueApps.CT3242339.mam_gk_currentVersion.storedInFile", false);
Ligne Supprimée : user_pref("valueApps.CT3242339.mam_gk_globalKeysMigratedToLocalStorage", "31");
Ligne Supprimée : user_pref("valueApps.CT3242339.mam_gk_globalKeysMigratedToLocalStorage.storedInFile", false);
Ligne Supprimée : user_pref("valueApps.CT3242339.mam_gk_migrated_from_ls", "31");
Ligne Supprimée : user_pref("valueApps.CT3242339.mam_gk_migrated_from_ls.storedInFile", false);

-\\ Google Chrome v31.0.1650.63

[ Fichier : C:\Users\Marie-Estelle\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Supprimée : icon_url
Supprimée : search_url
Supprimée : keyword

*************************

AdwCleaner[R0].txt - [35735 octets] - [30/12/2013 19:20:43]
AdwCleaner[S0].txt - [35668 octets] - [30/12/2013 20:24:56]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [35729 octets] ##########

C'est bientôt fini j'imagine?

bonsoir oki pour la fermeture je m'en charge car[…]

how to clean junk files

Hello don't use this program , it's a bullshit :)

Bonjour https://www.aht.li/3213847/AdsFix.exe b[…]

De rien Bon WE :)