======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 ======= Mis à jour par TeamXscript le 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: http://www.teamxscript.org C:\Program Files (x86)\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 01:15:48 le 09/11/2012, Mode normal Microsoft Windows 7 Édition Familiale Premium Service Pack 1 (X64) nozar@NOZAR-PC (Acer Aspire 5551G) ============== RECHERCHE ============== Dossier trouvé: C:\Users\nozar\AppData\LocalLow\PriceGong Clé trouvée: HKCU\Software\AppDataLow\Software\PriceGong ============== SCAN ADDITIONNEL ============== **** Mozilla Firefox Version [16.0.2 (fr)] **** HKLM_MozillaPlugins\Adobe Reader (x) HKCU_MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin (x) Searchplugins\bing.xml ( hxxp://www.bing.com/search) Components\browsercomps.dll (Mozilla Foundation) HKLM_Extensions|{B7082FAA-CB62-4872-9106-E42DD88EDE45} - C:\Program Files (x86)\McAfee\SiteAdvisor HKLM_Extensions|webbooster@iminent.com - C:\Program Files (x86)\Iminent\webbooster@iminent.com (x) -- C:\Users\nozar\AppData\Roaming\Mozilla\FireFox\Profiles\c4mthaxc.default -- Extensions\cacaoweb@cacaoweb.org (cacaoweb) Extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829} (PriceGong ) Searchplugins\sweetim.xml (?) User.js - browser.startup.homepage, hxxp://allssearch.com/ Prefs.js - browser.download.lastDir, C:\\Users\\nozar\\Desktop Prefs.js - browser.search.defaultenginename, Prefs.js - browser.search.selectedEngine, Prefs.js - browser.startup.homepage, hxxp://allssearch.com/ Prefs.js - browser.startup.homepage_override.buildID, 20121024073032 Prefs.js - browser.startup.homepage_override.mstone, 16.0.2 Prefs.js - keyword.URL, hxxp://search.sweetim.com/search.asp?barid={895DC52B-7D79-43D2-9092-2CC3A67A2C91}&src=2&q= Prefs.js - sweetim.toolbar.previous.browser.startup.homepage, Prefs.js - sweetim.toolbar.previous.keyword.URL, hxxp://search.sweetim.com/search.asp?barid={895DC52B-7D79-43D2-9092-2CC3A67A2C91}&... ======================================== **** Internet Explorer Version [9.0.8112.16421] **** HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896 HKCU_Main|Start Page - hxxp://fr.msn.com/ HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Start Page - hxxp://fr.msn.com/ HKLM_Toolbar|{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} (c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll) HKLM_Toolbar|{8dcb7100-df86-4384-8842-8fa844297b3f} ("C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll") (x) HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll) HKCU_ElevationPolicy\{0BAD1BBA-FF88-4031-9E07-C2511A0F0FA7} - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) HKCU_ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} - C:\Users\nozar\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe (Skype Limited) HKLM_ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a} - C:\Windows\SysWOW64\wpcer.exe (x) HKLM_ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695} - C:\Windows\SysWOW64\winfxdocobj.exe (x) HKLM_ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} - C:\Users\nozar\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe (Skype Limited) HKLM_ElevationPolicy\{44D1B085-E495-4b5f-9EE6-34795C46E7E7} - C:\Program Files (x86)\Java\jre7\bin\jp2launcher.exe (Oracle Corporation) HKLM_ElevationPolicy\{5852F5ED-8BF4-11D4-A245-0080C6F74284} - C:\Program Files (x86)\Java\jre7\bin\javaws.exe (Oracle Corporation) HKLM_ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} - C:\Program Files (x86)\allsearch\tbunsh66A5.tmp\TbHelper2.exe (x) HKLM_ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} - C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (x) HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files (x86)\Internet Explorer\iedw.exe (x) HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files (x86)\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (?) HKLM_ElevationPolicy\{aa851425-0109-43f3-9ed2-7b7090125861} - C:\Program Files (x86)\Microsoft\BingBar\BingBar.exe (Microsoft Corporation.) HKLM_ElevationPolicy\{B43A0C1E-B63F-4691-B68F-CD807A45DA01} - C:\Windows\system32\TSWbPrxy.exe (x) HKLM_ElevationPolicy\{C8FE2181-CAE7-49EE-9B04-DB7EB4DA544A} - C:\Program Files (x86)\Java\jre7\bin\ssvagent.exe (Oracle Corporation) HKLM_ElevationPolicy\{DAABE21E-DB8C-49b8-9511-9E6547ECBC5F} - c:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe (McAfee, Inc.) HKLM_ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08} - C:\Program Files (x86)\Iminent\Iminent.exe (x) BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll) BHO\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} - "McAfee SiteAdvisor BHO" (c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll) BHO\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "Bing Bar Helper" ("C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll") (x) ======================================== C:\Program Files (x86)\Ad-Remover\Quarantine: 32 Fichier(s) C:\Program Files (x86)\Ad-Remover\Backup: 15 Fichier(s) C:\Ad-Report-CLEAN[1].txt - 09/11/2012 01:11:54 (5886 Octet(s)) C:\Ad-Report-SCAN[1].txt - 09/11/2012 01:15:55 (5764 Octet(s)) Fin à: 01:16:51, 09/11/2012 ============== E.O.F ==============