M3 - MFPP: Plugins - [karine2] -- C:\Documents and Settings\karine2\Application Data\Mozilla\Firefox\Profiles\7o07vmqb.default\searchplugins\conduit.xml
M2 - MFEP: prefs.js [karine2 - 7o07vmqb.default\cacaoweb@cacaoweb.org] [] cacaoweb v1.0.12 (.
http://www.cacaoweb.org/.)
M2 - MFEP: prefs.js [karine2 - 7o07vmqb.default\pink-bee@loic.com] [] Pink-bee v2.5.7 (.Loic (
loic48@hotmail.com).)
M2 - MFEP: prefs.js [karine2 - 7o07vmqb.default\{93fab190-da90-4f97-bbf7-a409b2926360}] [] smart bar 4 u Toolbar v2.7.1.3 (.Conduit Ltd..) .
M2 - MFEP: prefs.js [karine2 - 7o07vmqb.default\{E9A1DEE0-C623-4439-8932-001E7D17607D}] [] Ask Toolbar for Firefox v1.6.2.60 (.Ask.com.)
M2 - MFEP: prefs.js [karine2 - 7o07vmqb.default\{ff356687-aa08-463d-a46c-11c451824939}] [] Red Cats (blue flavor) v5.0.0 (.Red_Fat_Lazy_Cat.)
G2 - GCE: Preference [User Data\Default] [bjeikeheijdjdfjbmknpefojickbkmom] Offerbox v.2.2.3441.113 (Activé)
O2 - BHO: (no name) - {201f27d4-3704-41d6-89c1-aa35e39143ed} Clé orpheline
O2 - BHO: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} Clé orpheline
O2 - BHO: (no name) - {3248f342-70c6-418d-a300-b8e925e95556} Clé orpheline
O2 - BHO: (no name) - {4daac69c-cba7-45e2-9bc8-1044483d3352} Clé orpheline
O2 - BHO: (no name) - {ba14329e-9550-4989-b3f2-9732e92d17cc} Clé orpheline
O2 - BHO: (no name) - {FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C} Clé orpheline
O4 - HKCU\..\Run: [cacaoweb] C:\Program Files\cacaoweb\cacaoweb.exe (.not file.)
O4 - HKUS\S-1-5-21-920400336-3630095802-771258391-1005\..\Run: [cacaoweb] C:\Program Files\cacaoweb\cacaoweb.exe (.not file.)
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Navigateur OfferBox.lnk . (...) -- C:\Program Files\OfferBox\OfferBoxLauncher.exe (.not file.)
O8 - Extra context menu item: Add to Windows &Live Favorites - (.not file.) - http:\\favorites.live.com\quickadd.aspx
O41 - Driver: (vsdatant) . (. - .) - C:\Windows\System32\vsdatant.sys (.not file.)
O42 - Logiciel: Conduit Engine - (.Conduit Ltd..) [HKLM] – conduitEngine
O42 - Logiciel: Softonic_France Toolbar - (.Softonic_France.) [HKLM] -- Softonic_France Toolbar
[HKCU\Software\AppDataLow\AskBarDis]
[HKCU\Software\AskSBarVZ]
[HKCU\Software\Conduit]
[HKCU\Software\LanConfig]
[HKCU\Software\OfferBox]
[HKCU\Software\PopCap]
[HKCU\Software\PriceGong]
[HKCU\Software\Spointer]
[HKCU\Software\cacaoweb]
[HKCU\Software\conduitEngine]
[HKLM\Software\AskBarDis]
[HKLM\Software\Companion Wizard]
[HKLM\Software\Conduit]
[HKLM\Software\CrazyLoader]
[HKLM\Software\ImInstaller]
[HKLM\Software\OfferBox]
[HKLM\Software\Trymedia Systems]
O43 - CFD: 23/07/2009 - 20:26:10 - [1034473] ----D- C:\Program Files\AskBarDis
O43 - CFD: 09/04/2011 - 13:12:02 - [0] ----D- C:\Program Files\cacaoweb
O43 - CFD: 14/04/2010 - 20:36:42 - [1052792] ----D- C:\Program Files\Conduit
O43 - CFD: 09/04/2011 - 13:11:52 - [3933149] ----D- C:\Program Files\ConduitEngine
O43 - CFD: 24/11/2010 - 21:38:36 - [0] ----D- C:\Program Files\CrazyLoader
O43 - CFD: 11/07/2008 - 17:43:58 - [2030] ----D- C:\Program Files\GamesBar
O43 - CFD: 09/04/2011 - 08:37:46 - [70593184] --H-D- C:\Documents and Settings\karine2\Application Data\cacaoweb
O43 - CFD: 23/11/2010 - 23:02:10 - [10298] --H-D- C:\Documents and Settings\karine2\Application Data\CrazyLoader
O43 - CFD: 07/04/2011 - 18:38:58 - [254995] --H-D- C:\Documents and Settings\karine2\Application Data\OfferBox
O43 - CFD: 04/04/2011 - 19:27:02 - [1760688] --H-D- C:\Documents and Settings\karine2\Application Data\PriceGong
O43 - CFD: 16/03/2011 - 22:18:10 - [6322707] --H-D- C:\Documents and Settings\karine2\Local Settings\Application Data\Conduit
O43 - CFD: 18/12/2010 - 09:46:48 - [35297] --H-D- C:\Documents and Settings\karine2\Local Settings\Application Data\ConduitEngine
O43 - CFD: 23/11/2010 - 23:40:26 - [153222] --H-D- C:\Documents and Settings\karine2\Local Settings\Application Data\crazyloader Air
O47 - AAKE:Key Export SP - "C:\WINDOWS\System32\RUNDLL32.EXE" [Enabled] Clé orpheline
O47 - AAKE:Key Export SP - "C:\Program Files\LimeWire\LimeWire.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) -- C:\Program Files\LimeWire\LimeWire.exe (.not file.)
O47 - AAKE:Key Export SP - "C:\Program Files\CrazyLoader\crazyloader.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) -- C:\Program Files\CrazyLoader\crazyloader.exe (.not file.)
O47 - AAKE:Key Export SP - "C:\Documents and Settings\karine2\Local Settings\Temp\jdic_0_9_5\IeEmbed.exe" [Enabled] .(.Pas de propriétaireC:\Documents and Settings\karine2\Local Settings\Temp\jdic_0_9_5\IeEmbed.exe (.not file.)
O47 - AAKE:Key Export SP - "C:\Program Files\cacaoweb\cacaoweb.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) -- C:\Program Files\cacaoweb\cacaoweb.exe (.not file.)
O59 - HSMI:Heuristic Search MagicControl Infection - C:\windows\pack.epk
O61 - LFC:Last File Created 07/04/2011 - 17:38:56 ---A- C:\Documents And Settings\karine2\Application Data\OfferBox\config.dat [253105]
O61 - LFC:Last File Created 09/04/2011 - 11:08:08 --HA- C:\Documents And Settings\karine2\Application Data\cacaoweb\adstorage.db [74]
O61 - LFC:Last File Created 09/04/2011 - 12:11:09 --HA- C:\Documents And Settings\karine2\Application Data\OfferBox\config.xml [1890]
O61 - LFC:Last File Created 09/04/2011 - 14:33:52 --HA- C:\Documents And Settings\karine2\Application Data\cacaoweb\storage.db [225]
O64 - Services: CurCS - (.not file.) - SSHNAS (SSHNAS) .(...) - LEGACY_SSHNAS
O69 - SBI: C:\Documents and Settings\karine2\Application Data\Mozilla\Firefox\Profiles\7o07vmqb.default\searchplugins\conduit.xml
O69 - SBI: prefs.js [karine2 - 7o07vmqb.default] user_pref("CT1721964.SearchEngine", "Recherche||http://search.conduit.com/Results.aspx?
O69 - SBI: prefs.js [karine2 - 7o07vmqb.default] user_pref("CT1721964.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT1721964
O69 - SBI: prefs.js [karine2 - 7o07vmqb.default] user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT1721964&SearchSource=
O69 - SBI: prefs.js [karine2 - 7o07vmqb.default] user_pref("extensions.snipit.askTbInstalled", true);
O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Softonic_France Customized Web Search) -
http://search.conduit.com O69 - SBI: SearchScopes [HKCU] {E08A9998-D98F-476f-8F5C-37C80FE0A4DA} - (Jeux.fr) -
http://search.conduit.com O81 - IFC: Internet Feature Controls [HKUS\.DEFAULT] [FEATURE_BROWSER_EMULATION] -- svchost.exe
O81 - IFC: Internet Feature Controls [HKUS\S-1-5-18] [FEATURE_BROWSER_EMULATION] -- svchost.exe
FirewallRaz
EmptyFlash
Emptytemp