======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======
Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web:
http://www.teamxscript.orgC:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 11:09:05 le 11/12/2011, Mode normal
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86)
Guillaume@GUIGUI (Acer Aspire 5315)
============== RECHERCHE ==============
Dossier trouvé: C:\Program Files\GamesBar
Dossier trouvé: C:\Users\Guillaume\AppData\Roaming\ItsLabel
Fichier trouvé: C:\Users\Guillaume\AppData\Local\akoiy.bat
Clé trouvée: HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}
Clé trouvée: HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}
Clé trouvée: HKLM\Software\Classes\SearchBar.Client
Clé trouvée: HKCU\Software\Spointer
Clé trouvée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}
Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}
Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Searchqu 101 MediaBar
Valeur trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo jimddp
Valeur trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo hpfanicgkffmccehnpkikogcffaepkfp
Valeur trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo dgnckdmmolaijpbbakmplfhlfpdhglgc
============== SCAN ADDITIONNEL ==============
-- C:\Users\Guillaume\AppData\Roaming\Mozilla\FireFox\Profiles\q2m28q5o.default --
Searchplugins\orange.xml (?)
Prefs.js - browser.startup.homepage,
hxxp://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPagePrefs.js - browser.search.selectedEngine, Orange
Prefs.js - keyword.URL,
hxxp://rws.search.ke.voila.fr/RW/S/opensearch_orange?rdata=========================================
**** Google Chrome Version [15.0.874.121] ****
Extension\ojpijjmpahflnipadmlpgbjmagmjchkk (C:\Users\GUILLA~1\AppData\Local\Temp\tbch.crx) (x)
-- C:\Users\Guillaume\AppData\Local\Google\Chrome\User Data\Default --
Preferences - default_search_provider: "Google" (Activé: true) (?)
Preferences - homepage:
hxxp://www.google.fr/Preferences - homepage_is_newtabpage: false
Plugin - Remoting Viewer (Activé: true) (internal-remoting-viewer) (x)
Plugin - Native Client (Activé: true) (C:\Users\Guillaume\AppData\Local\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll)
Plugin - Windows Live\u0099 Photo Gallery (Activé: true) (C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll)
Plugin - "Java" (Activé: true)
Plugin - "Silverlight" (Activé: true)
Plugin - "Remoting Viewer" (Activé: true)
Plugin - "Native Client" (Activé: true)
Plugin - "Windows Live\u0099 Photo Gallery" (Activé: true)
========================================
**** Internet Explorer Version [9.0.8112.16421] ****
HKCU_Main|Default_Page_URL -
hxxp://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultpageHKCU_Main|SearchMigratedDefaultURL -
hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7HKCU_Main|Start Page -
hxxp://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPageHKLM_Main|Default_Page_URL -
hxxp://fr.fr.acer.yahoo.comHKLM_Main|Default_Search_URL -
hxxp://go.microsoft.com/fwlink/?LinkId=54896HKLM_Main|Search Page -
hxxp://go.microsoft.com/fwlink/?LinkId=54896AboutUrls|Tabs -
hxxp://www.google.frHKCU_URLSearchHooks|{08C06D61-F1F3-4799-86F8-BE1A89362C85} - "Search Class" (C:\Program Files\Orange HSS\SearchURLHook\SearchPageURL.dll)
HKCU_URLSearchHooks|{ba14329e-9550-4989-b3f2-9732e92d17cc} (x)
HKCU_SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} - "Orange" (hxxp://rws.search.ke.voila.fr/RW/S/opensearch_orange?rdata={searchTerms})
HKCU_SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101} - "Web Search" (hxxp://www.searchqu.com/web?src=ieb&appid=311&systemid=101&sr=0&q={searchTerms})
HKLM_SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101} - "Web Search" (hxxp://www.searchqu.com/web?src=ieb&appid=311&systemid=101&sr=0&q={searchTerms})
HKCU_Toolbar\ShellBrowser|{5CBE3B7C-1E47-477E-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll)
HKCU_Toolbar\WebBrowser|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (x)
HKCU_Toolbar\WebBrowser|{EEE6C35B-6118-11DC-9C72-001320C79847} (x)
HKLM_Toolbar|{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll)
HKLM_Toolbar|{c9a6357b-25cc-4bcf-96c1-78736985d412} (mscoree.dll) (x)
HKCU_ElevationPolicy\{5C0D11B8-C5F6-4be3-AD2C-2B1A3EB94AB6} - C:\Users\Guillaume\AppData\Roaming\Spotify\spotify.exe (Spotify Ltd)
HKCU_ElevationPolicy\{6E86BDDD-9038-4f12-8572-4A859C76F21F} - C:\Program Files\RewardsArcade\RewardsArcade.exe (x)
HKCU_ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A} - C:\Users\Guillaume\AppData\Local\Google\Chrome\Application\14.0.835.202\chrome_launcher.exe (x)
HKLM_ElevationPolicy\{154873BF-2C27-4FF8-9B38-D3CC32465BB0} - C:\PROGRA~1\WI9130~1\Datamngr\ToolBar\dtUser.exe (x)
HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x)
HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (?)
HKLM_ElevationPolicy\{D14D55A6-409E-419E-8151-AEF41B909AFD} - C:\PROGRA~1\WI9130~1\Datamngr\ToolBar\dtUser.exe (x)
HKLM_Extensions\{CDB982ED-F9D6-4E3B-B94B-96F705D35AD1} - "searchweb" (C:\Program Files\searchweb\tbunss7A30.tmp\favicon.ico)
BHO\{02478D38-C3F9-4EFB-9B51-7695ECA05670} (?)
BHO\{1d970ed5-3eda-438d-bffd-715931e2775b} - "ToolbarOrange.InitToolbarBHO" (mscoree.dll) (x)
BHO\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - "ShowBarObj Class" (C:\Windows\system32\ActiveToolBand.dll)
BHO\{C0924543-15FD-4F3D-889C-0B4562A9CB45} - "TBSB02609 Class" (C:\Program Files\searchweb\tbunss7A30.tmp\tbcore3.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 0 Fichier(s)
C:\Ad-Report-SCAN[1].txt - 11/12/2011 11:09:15 (6347 Octet(s))
Fin à: 11:10:01, 11/12/2011
============== E.O.F ==============