vincentgruas
Participant
Nombre d'articles : 35

¤¤¤¤¤¤¤¤¤¤ | Shortcut_Module 13.11.2013.2 – g3n-h@ckm@n

17:08:29 – 27/11/2013

(884) — nvvsvc.exe
(904) — nvSCPAPISvr.exe
(1248) — nvxdsync.exe
(1260) — nvvsvc.exe
(1604) — spoolsv.exe
(1728) — PhotoshopElementsFileAgent.exe
(1796) — mDNSResponder.exe
(1924) — GREGsvc.exe
(1196) — mbamscheduler.exe
(1760) — WLIDSVC.EXE
(2056) — WLIDSVCM.EXE
(2824) — WUDFHost.exe
(2380) — taskhost.exe
(2980) — mbamgui.exe
(3088) — RAVCpl64.exe
(3216) — DEX_CX700_V1.EXE
(3276) — HotkeyUtility.exe
(3288) — wscript.exe
(3068) — SearchIndexer.exe
(3456) — wmpnetwk.exe
(4060) — USBVaccine.exe
(1396) — taskeng.exe
(1348) — DeviceDetector.exe
(4244) — IAStorDataMgrSvc.exe
(4300) — LMS.exe
(4324) — NASvc.exe
(4456) — UNS.exe
(4016) — explorer.exe
(4716) — OSPPSVC.EXE
(3652) — iexplore.exe
(5048) — iexplore.exe
(4948) — iexplore.exe
(1856) — SearchProtocolHost.exe
(1312) — SearchFilterHost.exe

¤¤¤¤¤¤¤¤¤¤ | Hijack Links

Disinfected : C:UsersAll UsersMicrosoftWindowsStart MenuProgramsPackard Bell – Security & SupportContact.lnk : C:Program FilesInternet Exploreriexplore.exe (hxxp://do-search.com/?type=sc&ts=1385130566&from=adks&uid=WDCXWD10EADX-22TDHB0_WD-WCAV5U53702437024″ onclick= »window.open(this.href);return false;)
Disinfected : C:UsersClient 1AppDataRoamingMicrosoftInternet ExplorerQuick LaunchLaunch Internet Explorer Browser.lnk : C:Program Files (x86)Internet Exploreriexplore.exe (hxxp://do-search.com/?type=sc&ts=1385130566&from=adks&uid=WDCXWD10EADX-22TDHB0_WD-WCAV5U53702437024″ onclick= »window.open(this.href);return false;)
Disinfected : C:UsersClient 1AppDataRoamingMicrosoftWindowsStart MenuProgramsInternet Explorer.lnk : C:Program FilesInternet Exploreriexplore.exe (hxxp://do-search.com/?type=sc&ts=1385130566&from=adks&uid=WDCXWD10EADX-22TDHB0_WD-WCAV5U53702437024″ onclick= »window.open(this.href);return false;)
Disinfected : C:UsersClient 1AppDataRoamingMicrosoftWindowsStart MenuProgramsAccessoriesSystem ToolsInternet Explorer (No Add-ons).lnk : C:Program FilesInternet Exploreriexplore.exe (hxxp://do-search.com/?type=sc&ts=1385130566&from=adks&uid=WDCXWD10EADX-22TDHB0_WD-WCAV5U53702437024″ onclick= »window.open(this.href);return false;)
Disinfected : C:UsersClient 1DesktopInternet Explorer.lnk : C:Program FilesInternet Exploreriexplore.exe (hxxp://do-search.com/?type=sc&ts=1385130566&from=adks&uid=WDCXWD10EADX-22TDHB0_WD-WCAV5U53702437024″ onclick= »window.open(this.href);return false;)

¤¤¤¤¤¤¤¤¤¤ | Hijack Internet Explorer

Repaired : [HKUS-1-5-21-474160798-1772334645-1997979657-1000SoftwareMicrosoftInternet ExplorerMain]|[Start Page] : http://www.google.fr/ » onclick= »window.open(this.href);return false; -> http://www.google.com/ » onclick= »window.open(this.href);return false;
Repaired : [HKUS-1-5-18SoftwareMicrosoftInternet ExplorerMain]|[Start Page] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome » onclick= »window.open(this.href);return false; -> http://www.google.com/ » onclick= »window.open(this.href);return false;
Repaired : [HKUS-1-5-21-474160798-1772334645-1997979657-1000SoftwareMicrosoftInternet ExplorerMain]|[Local Page] : C:Windowssystem32blank.htm -> C:WindowsSysWOW64blank.htm
Repaired : [HKLMSoftwareMicrosoftInternet ExplorerMain]|[Start Page] : http://www.google.com » onclick= »window.open(this.href);return false; -> http://go.microsoft.com/fwlink/?LinkId=69157 » onclick= »window.open(this.href);return false;
Repaired : [HKLMSoftwareMicrosoftInternet ExplorerMain]|[Default_Search_URL] : http://www.google.com » onclick= »window.open(this.href);return false; -> http://go.microsoft.com/fwlink/?LinkId=54896 » onclick= »window.open(this.href);return false;
Repaired : [HKLMSoftwareMicrosoftInternet ExplorerMain]|[Default_Page_URL] : http://www.google.com » onclick= »window.open(this.href);return false; -> http://go.microsoft.com/fwlink/?LinkId=69157 » onclick= »window.open(this.href);return false;
Repaired : [HKLMSoftwareMicrosoftInternet ExplorerMain]|[Search Page] : http://do-search.com/web/?type=ds&ts=1385130566&from=adks&uid=WDCXWD10EADX-22TDHB0_WD-WCAV5U53702437024&q= » onclick= »window.open(this.href);return false;{searchTerms} -> http://go.microsoft.com/fwlink/?LinkId=54896 » onclick= »window.open(this.href);return false;
Repaired : [HKUS-1-5-21-474160798-1772334645-1997979657-1000SoftwareMicrosoftWindowsCurrentVersionInternet settings]|[WarnonZoneCrossing] : 0 -> 1

¤¤¤¤¤¤¤¤¤¤ | Hijack Google Chrome

¤¤¤¤¤¤¤¤¤¤ | Hijack Firefox

¤¤¤¤¤¤¤¤¤¤ | Hijack StartMenuInternet

Repaired : [HKLMSoftwareClientsStartMenuInternetIExplore.exeshellopencommand] : iexplore.exe -> « C:Program Files (x86)Internet Exploreriexplore.exe »

¤¤¤¤¤¤¤¤¤¤ | TEMP Files

[All Users] TEMP Files deleted : 0 Ko
[Default User] TEMP Files deleted : 0 Ko
[Default] TEMP Files deleted : 0 Ko
[Public] TEMP Files deleted : 0 Ko
[Client 1] TEMP Files deleted : 9847 Ko

¤¤¤¤¤¤¤¤¤¤ |EOF| ¤¤¤¤¤¤¤¤¤¤