Posté le 23 février 2013
Télécharger | Reposter | Largeur fixe

:OTL
IE - HKU\S-1-5-21-1276466077-2483088546-1660750699-1000\..\URLSearchHook: {656180af-e96a-4fdf-885b-bde5f5c55e25} - No CLSID value found
FF - prefs.js..browser.search.selectedEngine: "Delta Search"
FF - prefs.js..browser.startup.homepage: "http://start.iminent.com/?appId=9329A547-0290-4C40-89F1-10FD6A94235B"
FF - prefs.js..browser.search.selectedEngine: "StartWeb"
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\SpecialSavings@SpecialSavings.com: C:\Users\RAYNIERE\AppData\Roaming\Mozilla\Extensions\SpecialSavings@SpecialSavings.com [2013/02/18 23:27:05 | 000,000,000 | ---D | M]
[2013/02/18 23:27:05 | 000,000,000 | ---D | M] (SpecialSavings) -- C:\Users\RAYNIERE\AppData\Roaming\mozilla\Extensions\SpecialSavings@SpecialSavings.com
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-1276466077-2483088546-1660750699-1000\..\Toolbar\WebBrowser: (no name) - {656180AF-E96A-4FDF-885B-BDE5F5C55E25} - No CLSID value found.
O4 - HKLM..\RunOnce: [awfrvlcmediaplayer1184] C:\Users\RAYNIERE\AppData\Local\Temp\BI_RunOnce.exe (Somoto Ltd.)
O20 - AppInit_DLLs: (c:\progra~3\browse~1\261095~1.52\{c16c1~1\browse~1.dll) - File not found
[2013/02/21 18:00:00 | 000,000,474 | ---- | M] () -- C:\Windows\tasks\ParetoLogic Registration3.job
[2012/12/11 22:40:03 | 000,000,000 | ---D | M] -- C:\Users\RAYNIERE\AppData\Roaming\ParetoLogic
[2012/12/12 23:31:55 | 000,000,448 | ---- | M] () -- C:\Windows\Tasks\ParetoLogic Update Version3.job
@Alternate Data Stream - 128 bytes -> C:\ProgramData\Temp:E5A9D792
@Alternate Data Stream - 123 bytes -> C:\ProgramData\Temp:2683706C

:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Unknown\shell\openas\command]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,75,00,\
6e,00,64,00,6c,00,6c,00,33,00,32,00,2e,00,65,00,78,00,65,00,20,00,25,00,53,\
00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,00,5c,00,73,00,\
79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,68,00,65,00,6c,00,6c,\
00,33,00,32,00,2e,00,64,00,6c,00,6c,00,2c,00,4f,00,70,00,65,00,6e,00,41,00,\
73,00,5f,00,52,00,75,00,6e,00,44,00,4c,00,4c,00,20,00,25,00,31,00,00,00

:files
ipconfig /flushdns /c

:Commands
[EMPTYTEMP]
[CREATERESTOREPOINT]

x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.