Http://mystart.incredibar.com

Résolu/Fermé
anstein Messages postés 42 Date d'inscription mardi 8 novembre 2011 Statut Membre Dernière intervention 17 juillet 2013 - 30 oct. 2012 à 11:58
sergecp28 Messages postés 10 Date d'inscription samedi 3 novembre 2012 Statut Membre Dernière intervention 24 novembre 2014 - 4 nov. 2012 à 00:15
Bonjour,

Help :-) je ne peux pas me débarasser de la saleté de https://mystart.incredibar.com/ !!
J'ai aussi babylon qui traîne .

Qui aurai la gentillesse de m'aider ??
Bonne journée.
Anstein



12 réponses

kaneagle Messages postés 85143 Date d'inscription mercredi 27 mai 2009 Statut Modérateur Dernière intervention 13 avril 2024 14 277
30 oct. 2012 à 12:01
Bonjour,

Télécharge cet utilitaire --> AdwCleaner
et met-le sur le bureau.

Lance-le en tant qu'administrateur et clique sur suppression.

Redémarre le pc et poste le rapport.

0
anstein Messages postés 42 Date d'inscription mardi 8 novembre 2011 Statut Membre Dernière intervention 17 juillet 2013 2
30 oct. 2012 à 12:21
Bonjour Kaneagle,
Merci de te proposer ton aide, voisi le rapport.

# AdwCleaner v2.005 - Logfile created 10/30/2012 at 12:10:24
# Updated 14/10/2012 by Xplode
# Operating system : Windows 7 Professional Service Pack 1 (32 bits)
# User : Anne - PC-ANNE
# Boot Mode : Normal
# Running from : C:\Users\Anne\Desktop\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
File Deleted : C:\user.js
File Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\BrowserMngr_extensions.sqlite
File Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\browsermngr_prefs.js
File Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\searchplugins\bProtect.xml
File Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\searchplugins\MyStart Search.xml
Folder Deleted : C:\Program Files\Conduit
Folder Deleted : C:\Program Files\Yontoo
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\InstallMate
Folder Deleted : C:\ProgramData\Premium
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\Users\Anne\AppData\Local\APN
Folder Deleted : C:\Users\Anne\AppData\Local\Conduit
Folder Deleted : C:\Users\Anne\AppData\Local\Google\Chrome\User Data\Default\Extensions\elhjaoldnkkbifioodjndkijecdeinld
Folder Deleted : C:\Users\Anne\AppData\Local\TempDir
Folder Deleted : C:\Users\Anne\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\Anne\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\Anne\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Anne\AppData\LocalLow\incredibar.com
Folder Deleted : C:\Users\Anne\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Browser Manager
Folder Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\extensions\{ef79f67a-6ad7-4715-a0f8-932fca442023}
Folder Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\extensions\ffxtlbr@incredibar.com
Folder Deleted : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\extensions\plugin@yontoo.com
Folder Deleted : C:\Users\Anne\AppData\Roaming\OpenCandy

***** [Registry] *****

Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\bProtector
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Cr_Installer
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\Google\Chrome\Extensions\elhjaoldnkkbifioodjndkijecdeinld
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110011501160}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5911488E-9D1E-40EC-8CBB-06B231CC153F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6E13D095-45C3-4271-9475-F3B48227DD9F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E87806B5-E908-45FD-AF5E-957D83E58E68}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKCU\Software\Zugo
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\BabylonToolbar
Key Deleted : HKLM\Software\bProtector
Key Deleted : HKLM\Software\BrowserMngr
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT1561552
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2849852
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
Key Deleted : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\elhjaoldnkkbifioodjndkijecdeinld
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110011501160}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011501160}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2F603A45-D956-496B-81B5-50D782424976}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B85C4CB2-B352-4BD8-818C-BCE353599107}
Key Deleted : HKLM\Software\Tarma Installer
Key Deleted : HKLM\Software\Web Assistant
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}]

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

Replaced : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://mystart.incredibar.com/mb128?a=6OyGiEOPxe&i=26 --> hxxp://www.google.com
Deleted : [HKCU\Software\Microsoft\Internet Explorer\Main - bProtector Start Page]
Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls - Tabs] = hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=15&cc= --> hxxp://www.google.com

-\\ Mozilla Firefox v [Unable to get version]

Profile name : default
File : C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\prefs.js

C:\Users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\fvz0axk8.default\user.js ... Deleted !

Deleted : user_pref("CT2849852.autoDisableScopes", 14);
Deleted : user_pref("avg.install.userHPSettings", "hxxp://search.babylon.com/?affID=114022&tt=120812_bandext_3[...]
Deleted : user_pref("avg.install.userSPSettings", "Search the web (Babylon)");
Deleted : user_pref("browser.newtab.url", "hxxp://mystart.incredibar.com/mb128?a=6OyGiEOPxe&i=26");
Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Deleted : user_pref("browser.search.defaultenginename", "MyStart Search");
Deleted : user_pref("browser.search.order.1", "Ask.com");
Deleted : user_pref("browser.search.selectedEngine", "MyStart Search");
Deleted : user_pref("browser.startup.homepage", "hxxp://mystart.incredibar.com/mb128?a=6OyGiEOPxe&i=26");
Deleted : user_pref("extensions.BabylonToolbar.admin", false);
Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Deleted : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
Deleted : user_pref("extensions.BabylonToolbar.autoRvrt", "false");
Deleted : user_pref("extensions.BabylonToolbar.babExt", "");
Deleted : user_pref("extensions.BabylonToolbar.babTrack", "affID=111020&tt=201208_mnt_n_3512_4");
Deleted : user_pref("extensions.BabylonToolbar.babext", "babExt");
Deleted : user_pref("extensions.BabylonToolbar.babtrack", "babTrack");
Deleted : user_pref("extensions.BabylonToolbar.bbDpng", "29");
Deleted : user_pref("extensions.BabylonToolbar.cntry", "CH");
Deleted : user_pref("extensions.BabylonToolbar.dfltLng", "en");
Deleted : user_pref("extensions.BabylonToolbar.dfltlng", "en");
Deleted : user_pref("extensions.BabylonToolbar.dfltsrch", "false");
Deleted : user_pref("extensions.BabylonToolbar.dp_alert", "0");
Deleted : user_pref("extensions.BabylonToolbar.dpk", "a239ee63432785bc9c5f6d9c56596c52");
Deleted : user_pref("extensions.BabylonToolbar.envrmnt", "production");
Deleted : user_pref("extensions.BabylonToolbar.excTlbr", false);
Deleted : user_pref("extensions.BabylonToolbar.firstrun", false);
Deleted : user_pref("extensions.BabylonToolbar.hdrMd5", "2289BEE0A4231EF42546694C6F2150AF");
Deleted : user_pref("extensions.BabylonToolbar.hmpg", false);
Deleted : user_pref("extensions.BabylonToolbar.hrdid", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.BabylonToolbar.id", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15580");
Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Deleted : user_pref("extensions.BabylonToolbar.instlday", "15580");
Deleted : user_pref("extensions.BabylonToolbar.instlref", "sst");
Deleted : user_pref("extensions.BabylonToolbar.isdcmntcmplt", "false");
Deleted : user_pref("extensions.BabylonToolbar.keywordurl", "");
Deleted : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.6.9.1210:21:26");
Deleted : user_pref("extensions.BabylonToolbar.lastdp", 29);
Deleted : user_pref("extensions.BabylonToolbar.mntrvrsn", "1.3.1");
Deleted : user_pref("extensions.BabylonToolbar.newTab", false);
Deleted : user_pref("extensions.BabylonToolbar.newtab", "false");
Deleted : user_pref("extensions.BabylonToolbar.newtaburl", "");
Deleted : user_pref("extensions.BabylonToolbar.pnu_base", "{\"newVrsn\":\"29\",\"lastVrsn\":\"29\",\"vrsnLoad\[...]
Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Deleted : user_pref("extensions.BabylonToolbar.prtnrid", "babylon");
Deleted : user_pref("extensions.BabylonToolbar.savedVrsnTs", "1");
Deleted : user_pref("extensions.BabylonToolbar.sg", "azb");
Deleted : user_pref("extensions.BabylonToolbar.smplGrp", "azb");
Deleted : user_pref("extensions.BabylonToolbar.smplgrp", "azb");
Deleted : user_pref("extensions.BabylonToolbar.srcExt", "ss");
Deleted : user_pref("extensions.BabylonToolbar.srcext", "ss");
Deleted : user_pref("extensions.BabylonToolbar.srch", "");
Deleted : user_pref("extensions.BabylonToolbar.srchprvdr", "");
Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Deleted : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...]
Deleted : user_pref("extensions.BabylonToolbar.tlbrid", "base");
Deleted : user_pref("extensions.BabylonToolbar.tlbrsrchurl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...]
Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.6.9.12");
Deleted : user_pref("extensions.BabylonToolbar.vrsnTs", "1.6.9.1210:21:26");
Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.6.9.12");
Deleted : user_pref("extensions.BabylonToolbar.vrsnts", "1.6.9.1210:21:26");
Deleted : user_pref("extensions.BabylonToolbar_i.babExt", "");
Deleted : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=111020&tt=201208_mnt_n_3512_4");
Deleted : user_pref("extensions.BabylonToolbar_i.newTab", false);
Deleted : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Deleted : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
Deleted : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.6.9.1210:21:26");
Deleted : user_pref("extensions.Softonic.admin", false);
Deleted : user_pref("extensions.Softonic.aflt", "SD");
Deleted : user_pref("extensions.Softonic.autoRvrt", "false");
Deleted : user_pref("extensions.Softonic.cntry", "CH");
Deleted : user_pref("extensions.Softonic.cv", "cv5");
Deleted : user_pref("extensions.Softonic.dfltLng", "fr");
Deleted : user_pref("extensions.Softonic.dfltSrch", true);
Deleted : user_pref("extensions.Softonic.dfltlng", "fr");
Deleted : user_pref("extensions.Softonic.dfltsrch", true);
Deleted : user_pref("extensions.Softonic.dspNew", "Search the web (Softonic)");
Deleted : user_pref("extensions.Softonic.dspOld", "Search the web (Babylon)");
Deleted : user_pref("extensions.Softonic.envrmnt", "production");
Deleted : user_pref("extensions.Softonic.excTlbr", false);
Deleted : user_pref("extensions.Softonic.hdrMd5", "DF49E0FE62FD5BC0A857A9A3E16ADB30");
Deleted : user_pref("extensions.Softonic.hmpg", true);
Deleted : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=13&[...]
Deleted : user_pref("extensions.Softonic.hpNew", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=13&cc[...]
Deleted : user_pref("extensions.Softonic.hpOld", "hxxp://search.babylon.com/?affID=114022&tt=120812_bandext_32[...]
Deleted : user_pref("extensions.Softonic.hrdid", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.Softonic.id", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.Softonic.instlDay", "15564");
Deleted : user_pref("extensions.Softonic.instlRef", "MON00013");
Deleted : user_pref("extensions.Softonic.instlday", "15564");
Deleted : user_pref("extensions.Softonic.instlref", "MON00013");
Deleted : user_pref("extensions.Softonic.isdcmntcmplt", "false");
Deleted : user_pref("extensions.Softonic.keyWordUrl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=[...]
Deleted : user_pref("extensions.Softonic.keywordurl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=[...]
Deleted : user_pref("extensions.Softonic.lastVrsnTs", "1.6.7.40:35:17");
Deleted : user_pref("extensions.Softonic.mntrvrsn", "1.3.0");
Deleted : user_pref("extensions.Softonic.newTab", true);
Deleted : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=1[...]
Deleted : user_pref("extensions.Softonic.newtab", true);
Deleted : user_pref("extensions.Softonic.newtaburl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource=1[...]
Deleted : user_pref("extensions.Softonic.prdct", "Softonic");
Deleted : user_pref("extensions.Softonic.prtnrId", "softonic");
Deleted : user_pref("extensions.Softonic.prtnrid", "softonic");
Deleted : user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search set[...]
Deleted : user_pref("extensions.Softonic.sg", "az");
Deleted : user_pref("extensions.Softonic.smplGrp", "none");
Deleted : user_pref("extensions.Softonic.smplgrp", "none");
Deleted : user_pref("extensions.Softonic.srch", "");
Deleted : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");
Deleted : user_pref("extensions.Softonic.srchprvdr", "Search the web (Softonic)");
Deleted : user_pref("extensions.Softonic.tlbrId", "base");
Deleted : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource[...]
Deleted : user_pref("extensions.Softonic.tlbrid", "base");
Deleted : user_pref("extensions.Softonic.tlbrsrchurl", "hxxp://search.softonic.com/MON00013/tb_v1?SearchSource[...]
Deleted : user_pref("extensions.Softonic.vrsn", "1.6.7.4");
Deleted : user_pref("extensions.Softonic.vrsnTs", "1.6.7.40:35:17");
Deleted : user_pref("extensions.Softonic.vrsni", "1.6.7.4");
Deleted : user_pref("extensions.Softonic.vrsnts", "1.6.7.40:35:17");
Deleted : user_pref("extensions.Softonic_i.dnsErr", true);
Deleted : user_pref("extensions.Softonic_i.hmpg", true);
Deleted : user_pref("extensions.Softonic_i.newTab", true);
Deleted : user_pref("extensions.Softonic_i.smplGrp", "none");
Deleted : user_pref("extensions.Softonic_i.vrsnTs", "1.6.7.40:35:17");
Deleted : user_pref("extensions.incredibar.actvtyRptTime", "1348950765295");
Deleted : user_pref("extensions.incredibar.admin", false);
Deleted : user_pref("extensions.incredibar.aflt", "orgnl");
Deleted : user_pref("extensions.incredibar.afterInstallRpt", "sent");
Deleted : user_pref("extensions.incredibar.cntry", "CH");
Deleted : user_pref("extensions.incredibar.dfltLng", "EN");
Deleted : user_pref("extensions.incredibar.dfltSrch", false);
Deleted : user_pref("extensions.incredibar.dfltlng", "en");
Deleted : user_pref("extensions.incredibar.dfltsrch", "false");
Deleted : user_pref("extensions.incredibar.did", "10658");
Deleted : user_pref("extensions.incredibar.envrmnt", "production");
Deleted : user_pref("extensions.incredibar.excTlbr", false);
Deleted : user_pref("extensions.incredibar.hdrMd5", "D31A70868328B530D837119CCAC631FC");
Deleted : user_pref("extensions.incredibar.hmpg", false);
Deleted : user_pref("extensions.incredibar.hrdid", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.incredibar.id", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.incredibar.installerproductid", "26");
Deleted : user_pref("extensions.incredibar.instlDay", "15519");
Deleted : user_pref("extensions.incredibar.instlRef", "");
Deleted : user_pref("extensions.incredibar.instlday", "15519");
Deleted : user_pref("extensions.incredibar.instlref", "");
Deleted : user_pref("extensions.incredibar.isDcmntCmplt", true);
Deleted : user_pref("extensions.incredibar.isdcmntcmplt", "false");
Deleted : user_pref("extensions.incredibar.keywordurl", "");
Deleted : user_pref("extensions.incredibar.lastVrsnTs", "1.5.11.149:56:41");
Deleted : user_pref("extensions.incredibar.mntrvrsn", "1.2.0");
Deleted : user_pref("extensions.incredibar.newTab", false);
Deleted : user_pref("extensions.incredibar.newtab", "false");
Deleted : user_pref("extensions.incredibar.newtaburl", "");
Deleted : user_pref("extensions.incredibar.noFFXTlbr", false);
Deleted : user_pref("extensions.incredibar.ppd", "");
Deleted : user_pref("extensions.incredibar.prdct", "incredibar");
Deleted : user_pref("extensions.incredibar.productid", "26");
Deleted : user_pref("extensions.incredibar.prtnrId", "Incredibar");
Deleted : user_pref("extensions.incredibar.prtnrid", "Incredibar");
Deleted : user_pref("extensions.incredibar.sg", "none");
Deleted : user_pref("extensions.incredibar.smplGrp", "none");
Deleted : user_pref("extensions.incredibar.smplgrp", "none");
Deleted : user_pref("extensions.incredibar.srch", "");
Deleted : user_pref("extensions.incredibar.srchprvdr", "");
Deleted : user_pref("extensions.incredibar.tlbrId", "base");
Deleted : user_pref("extensions.incredibar.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyGiEOPxe&loc=IB_T[...]
Deleted : user_pref("extensions.incredibar.tlbrid", "base");
Deleted : user_pref("extensions.incredibar.tlbrsrchurl", "hxxp://mystart.Incredibar.com/?a=6OyGiEOPxe&loc=IB_T[...]
Deleted : user_pref("extensions.incredibar.upn2", "6OyGiEOPxe");
Deleted : user_pref("extensions.incredibar.upn2n", "92261662156890632");
Deleted : user_pref("extensions.incredibar.vrsn", "1.5.11.14");
Deleted : user_pref("extensions.incredibar.vrsnTs", "1.5.11.149:56:41");
Deleted : user_pref("extensions.incredibar.vrsni", "1.5.11.14");
Deleted : user_pref("extensions.incredibar.vrsnts", "1.5.11.149:56:41");
Deleted : user_pref("extensions.incredibar_i.aflt", "orgnl");
Deleted : user_pref("extensions.incredibar_i.dfltLng", "");
Deleted : user_pref("extensions.incredibar_i.did", "10658");
Deleted : user_pref("extensions.incredibar_i.excTlbr", false);
Deleted : user_pref("extensions.incredibar_i.id", "4c2b2965000000000000c417fef57027");
Deleted : user_pref("extensions.incredibar_i.installerproductid", "26");
Deleted : user_pref("extensions.incredibar_i.instlDay", "15641");
Deleted : user_pref("extensions.incredibar_i.instlRef", "");
Deleted : user_pref("extensions.incredibar_i.ms_url_id", "");
Deleted : user_pref("extensions.incredibar_i.newTab", false);
Deleted : user_pref("extensions.incredibar_i.ppd", "");
Deleted : user_pref("extensions.incredibar_i.prdct", "incredibar");
Deleted : user_pref("extensions.incredibar_i.productid", "26");
Deleted : user_pref("extensions.incredibar_i.prtnrId", "Incredibar");
Deleted : user_pref("extensions.incredibar_i.smplGrp", "none");
Deleted : user_pref("extensions.incredibar_i.tlbrId", "base");
Deleted : user_pref("extensions.incredibar_i.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyGiEOPxe&loc=IB[...]
Deleted : user_pref("extensions.incredibar_i.upn2", "6OyGiEOPxe");
Deleted : user_pref("extensions.incredibar_i.upn2n", "92261662156890632");
Deleted : user_pref("extensions.incredibar_i.vrsn", "1.5.11.14");
Deleted : user_pref("extensions.incredibar_i.vrsnTs", "1.5.11.1417:32:03");
Deleted : user_pref("extensions.incredibar_i.vrsni", "1.5.11.14");
Deleted : user_pref("sweetim.toolbar.urls.homepage", "hxxp://search.babylon.com/?affID=114022&tt=120812_bandex[...]

-\\ Google Chrome v [Unable to get version]

File : C:\Users\Anne\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[S1].txt - [24521 octets] - [30/10/2012 12:10:24]

########## EOF - C:\AdwCleaner[S1].txt - [24582 octets] ##########
0
kaneagle Messages postés 85143 Date d'inscription mercredi 27 mai 2009 Statut Modérateur Dernière intervention 13 avril 2024 14 277
30 oct. 2012 à 12:29
Télécharge et installe --> MalwareBytes
Lance-le en tant qu'administrateur
Fais la mise à jour du produit
Lance le scan rapide.
Après le scan, clique sur afficher les résultats
Si positif, coche le tout
Supprime la sélection.

Poste le rapport dans ton prochain message.

0
anstein Messages postés 42 Date d'inscription mardi 8 novembre 2011 Statut Membre Dernière intervention 17 juillet 2013 2
30 oct. 2012 à 13:04
Voici le rapport demandé, j'ai dû coché 3 infections.

MBRCheck, version 1.2.3
(c) 2010, AD

Command-line:
Windows Version: Windows 7 Professional
Windows Information: Service Pack 1 (build 7601), 32-bit
Base Board Manufacturer: LENOVO
BIOS Manufacturer: LENOVO
System Manufacturer: LENOVO
System Product Name: 7440D77
Logical Drives Mask: 0x0000001c

Kernel Drivers (total 203):
0x82C4A000 \SystemRoot\system32\ntkrnlpa.exe
0x82C13000 \SystemRoot\system32\halmacpi.dll
0x80BD4000 \SystemRoot\system32\kdcom.dll
0x83236000 \SystemRoot\system32\mcupdate_GenuineIntel.dll
0x832BB000 \SystemRoot\system32\PSHED.dll
0x832CC000 \SystemRoot\system32\BOOTVID.dll
0x832D4000 \SystemRoot\system32\CLFS.SYS
0x83316000 \SystemRoot\system32\CI.dll
0x833C1000 \SystemRoot\System32\drivers\xfmaspd.sys
0x8B201000 \SystemRoot\system32\drivers\Wdf01000.sys
0x8B272000 \SystemRoot\system32\drivers\WDFLDR.SYS
0x8B280000 \SystemRoot\system32\drivers\ACPI.sys
0x8B2C8000 \SystemRoot\system32\drivers\WMILIB.SYS
0x8B2D1000 \SystemRoot\system32\drivers\msisadrv.sys
0x8B2D9000 \SystemRoot\system32\drivers\pci.sys
0x8B303000 \SystemRoot\system32\drivers\vdrvroot.sys
0x8B30E000 \SystemRoot\System32\drivers\partmgr.sys
0x8B31F000 \SystemRoot\system32\DRIVERS\compbatt.sys
0x8B327000 \SystemRoot\system32\DRIVERS\BATTC.SYS
0x8B332000 \SystemRoot\system32\drivers\volmgr.sys
0x8B342000 \SystemRoot\System32\drivers\volmgrx.sys
0x8B38D000 \SystemRoot\system32\DRIVERS\pcmcia.sys
0x8B3BB000 \SystemRoot\System32\drivers\mountmgr.sys
0x8B3D1000 \SystemRoot\system32\drivers\atapi.sys
0x8B3DA000 \SystemRoot\system32\drivers\ataport.SYS
0x833CF000 \SystemRoot\system32\drivers\msahci.sys
0x833D9000 \SystemRoot\system32\drivers\PCIIDEX.SYS
0x833E7000 \SystemRoot\system32\drivers\amdxata.sys
0x83200000 \SystemRoot\system32\drivers\fltmgr.sys
0x8B400000 \SystemRoot\system32\drivers\fileinfo.sys
0x8B411000 \SystemRoot\system32\DRIVERS\MpFilter.sys
0x8B43C000 \SystemRoot\System32\Drivers\Ntfs.sys
0x8B56B000 \SystemRoot\System32\Drivers\msrpc.sys
0x8B596000 \SystemRoot\System32\Drivers\ksecdd.sys
0x8B638000 \SystemRoot\System32\Drivers\cng.sys
0x8B695000 \SystemRoot\System32\drivers\pcw.sys
0x8B6A3000 \SystemRoot\System32\Drivers\Fs_Rec.sys
0x8B6AC000 \SystemRoot\system32\drivers\ndis.sys
0x8B763000 \SystemRoot\system32\drivers\NETIO.SYS
0x8B7A1000 \SystemRoot\System32\Drivers\ksecpkg.sys
0x8B803000 \SystemRoot\System32\drivers\tcpip.sys
0x8B94E000 \SystemRoot\System32\drivers\fwpkclnt.sys
0x8B97F000 \SystemRoot\system32\drivers\vmstorfl.sys
0x8B988000 \SystemRoot\system32\drivers\volsnap.sys
0x8B9C7000 \SystemRoot\System32\Drivers\spldr.sys
0x8B9CF000 \SystemRoot\System32\drivers\rdyboost.sys
0x8B7C6000 \SystemRoot\System32\Drivers\mup.sys
0x8B7D6000 \SystemRoot\System32\drivers\hwpolicy.sys
0x8B600000 \SystemRoot\System32\DRIVERS\fvevol.sys
0x8B7DE000 \SystemRoot\system32\drivers\disk.sys
0x8B5A9000 \SystemRoot\system32\drivers\CLASSPNP.SYS
0x8FE2A000 \SystemRoot\system32\DRIVERS\cdrom.sys
0x8FE49000 \SystemRoot\System32\Drivers\Null.SYS
0x8FE50000 \SystemRoot\System32\Drivers\Beep.SYS
0x8FE57000 \SystemRoot\System32\drivers\vga.sys
0x8FE63000 \SystemRoot\System32\drivers\VIDEOPRT.SYS
0x8FE84000 \SystemRoot\System32\drivers\watchdog.sys
0x8FE91000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0x8FE99000 \SystemRoot\system32\drivers\rdpencdd.sys
0x8FEA1000 \SystemRoot\system32\drivers\rdprefmp.sys
0x8FEA9000 \SystemRoot\System32\Drivers\Msfs.SYS
0x8FEB4000 \SystemRoot\System32\Drivers\Npfs.SYS
0x8FEC2000 \SystemRoot\system32\DRIVERS\tdx.sys
0x8FED9000 \SystemRoot\system32\DRIVERS\TDI.SYS
0x8FEE5000 \SystemRoot\System32\DRIVERS\netbt.sys
0x8FF17000 \SystemRoot\system32\drivers\afd.sys
0x8FF71000 \SystemRoot\system32\DRIVERS\wfplwf.sys
0x8FF78000 \SystemRoot\system32\DRIVERS\pacer.sys
0x8FF97000 \SystemRoot\system32\DRIVERS\vwififlt.sys
0x8FFA8000 \SystemRoot\system32\DRIVERS\hssdrv6.sys
0x8FFB7000 \SystemRoot\system32\DRIVERS\netbios.sys
0x8FFC5000 \SystemRoot\system32\DRIVERS\wanarp.sys
0x8FFD8000 \SystemRoot\system32\DRIVERS\termdd.sys
0x90A38000 \SystemRoot\system32\DRIVERS\rdbss.sys
0x90A79000 \SystemRoot\system32\drivers\nsiproxy.sys
0x90A83000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0x90A8D000 \SystemRoot\System32\drivers\discache.sys
0x90A99000 \SystemRoot\system32\drivers\csc.sys
0x90AFD000 \SystemRoot\System32\Drivers\dfsc.sys
0x90B15000 \SystemRoot\system32\DRIVERS\blbdrive.sys
0x90B23000 \SystemRoot\system32\DRIVERS\tunnel.sys
0x90B44000 \SystemRoot\system32\DRIVERS\intelppm.sys
0x90C1E000 \SystemRoot\system32\DRIVERS\igdkmd32.sys
0x9153E000 \SystemRoot\System32\drivers\dxgkrnl.sys
0x90B56000 \SystemRoot\System32\drivers\dxgmms1.sys
0x90B8F000 \SystemRoot\system32\DRIVERS\e1y6032.sys
0x915F5000 \SystemRoot\system32\DRIVERS\usbuhci.sys
0x92014000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0x9205F000 \SystemRoot\system32\DRIVERS\usbehci.sys
0x9206E000 \SystemRoot\system32\DRIVERS\HDAudBus.sys
0x96C1E000 \SystemRoot\system32\DRIVERS\NETw5s32.sys
0x96C00000 \SystemRoot\System32\drivers\vwifibus.sys
0x9208D000 \SystemRoot\system32\DRIVERS\1394ohci.sys
0x920BA000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0x96C0A000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0x920D2000 \SystemRoot\system32\DRIVERS\SynTP.sys
0x96C17000 \SystemRoot\system32\DRIVERS\USBD.SYS
0x9210D000 \SystemRoot\system32\DRIVERS\mouclass.sys
0x9211A000 \SystemRoot\system32\drivers\tpm.sys
0x96C19000 \SystemRoot\system32\DRIVERS\CmBatt.sys
0x92126000 \SystemRoot\system32\DRIVERS\ibmpmdrv.sys
0x9212A000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
0x92130000 \SystemRoot\system32\DRIVERS\wmiacpi.sys
0x92139000 \SystemRoot\system32\DRIVERS\CompositeBus.sys
0x92146000 \SystemRoot\system32\DRIVERS\AgileVpn.sys
0x92158000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0x92170000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0x9217B000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0x9219D000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0x921B5000 \SystemRoot\system32\DRIVERS\raspptp.sys
0x921CC000 \SystemRoot\system32\DRIVERS\rassstp.sys
0x921E3000 \SystemRoot\system32\DRIVERS\rdpbus.sys
0x971FD000 \SystemRoot\system32\DRIVERS\swenum.sys
0x90BC9000 \SystemRoot\system32\DRIVERS\ks.sys
0x921ED000 \SystemRoot\system32\DRIVERS\umbus.sys
0x9841F000 \SystemRoot\system32\DRIVERS\usbhub.sys
0x98463000 \SystemRoot\System32\Drivers\NDProxy.SYS
0x98474000 \SystemRoot\system32\drivers\CHDRT32.sys
0x984E9000 \SystemRoot\system32\drivers\portcls.sys
0x98518000 \SystemRoot\system32\drivers\drmk.sys
0x98531000 \SystemRoot\system32\DRIVERS\VSTAZL3.SYS
0x97A0A000 \SystemRoot\system32\DRIVERS\VSTDPV3.SYS
0x97B0C000 \SystemRoot\system32\DRIVERS\VSTCNXT3.SYS
0x97BC1000 \SystemRoot\system32\drivers\modem.sys
0x82200000 \SystemRoot\System32\win32k.sys
0x97BCE000 \SystemRoot\System32\drivers\Dxapi.sys
0x97BD8000 \SystemRoot\system32\DRIVERS\cdfs.sys
0x97BEE000 \SystemRoot\System32\Drivers\crashdmp.sys
0x9856E000 \SystemRoot\System32\Drivers\dump_dumpata.sys
0x97A00000 \SystemRoot\System32\Drivers\dump_msahci.sys
0x98579000 \SystemRoot\System32\Drivers\dump_dumpfve.sys
0x9858A000 \SystemRoot\system32\DRIVERS\hidusb.sys
0x98595000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0x985A8000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0x985AF000 \SystemRoot\system32\DRIVERS\mouhid.sys
0x985BA000 \SystemRoot\system32\DRIVERS\monitor.sys
0x82470000

Meilleures salutaions.
Anstein
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
kaneagle Messages postés 85143 Date d'inscription mercredi 27 mai 2009 Statut Modérateur Dernière intervention 13 avril 2024 14 277
30 oct. 2012 à 13:07
Ce n'est pas le rapport de malwarebytes ?
0
anstein Messages postés 42 Date d'inscription mardi 8 novembre 2011 Statut Membre Dernière intervention 17 juillet 2013 2
30 oct. 2012 à 13:26
Bouh, je sais pas ce que j'ai envoyé :-) sorry , voici le rapport en question.

Malwarebytes Anti-Malware (Essai) 1.65.1.1000
www.malwarebytes.org

Version de la base de données: v2012.10.30.04

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Anne :: PC-ANNE [administrateur]

Protection: Activé

30.10.2012 13:12:56
mbam-log-2012-10-30 (13-12-56).txt

Type d'examen: Examen rapide
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 193540
Temps écoulé: 3 minute(s), 37 seconde(s)

Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)

Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)

Fichier(s) détecté(s): 0
(Aucun élément nuisible détecté)

(fin)
0
kaneagle Messages postés 85143 Date d'inscription mercredi 27 mai 2009 Statut Modérateur Dernière intervention 13 avril 2024 14 277
30 oct. 2012 à 15:58
Ca donne quoi mainteneant avec les navigateurs ?
0
anstein Messages postés 42 Date d'inscription mardi 8 novembre 2011 Statut Membre Dernière intervention 17 juillet 2013 2
30 oct. 2012 à 16:43
Après avoir redémarré mon ordi ,
Internet explorer n'a plus Babylon
Mozilla est redevenu normal et
google chrome a encore affiché une fois ,https://mystart.incredibar.com/

Après plusieurs essais, tout à l'air ok.
0
kaneagle Messages postés 85143 Date d'inscription mercredi 27 mai 2009 Statut Modérateur Dernière intervention 13 avril 2024 14 277
30 oct. 2012 à 19:38
Lance AdwClesaner et clique sur désinstaller.

Si le problème persite avec google chrome, réinitialise-le.
Regarde --> ici

Bonne soirée.
0
anstein Messages postés 42 Date d'inscription mardi 8 novembre 2011 Statut Membre Dernière intervention 17 juillet 2013 2
31 oct. 2012 à 08:41
Voilà j'ai désinstallé Adwcleaner .
C'est nickel, mon ordi fonctionne à merveille.

Un tout grand merci pour m'avoir apporté ton aide.
Bonne journée.
Anstein
0
kaneagle Messages postés 85143 Date d'inscription mercredi 27 mai 2009 Statut Modérateur Dernière intervention 13 avril 2024 14 277
31 oct. 2012 à 10:49
De rien.
Bonne journée.
0
sergecp28 Messages postés 10 Date d'inscription samedi 3 novembre 2012 Statut Membre Dernière intervention 24 novembre 2014 6
4 nov. 2012 à 00:15
J'ai suivi les conseils, et je pensais que c'était supprimé
hélas, au boot le lendemain, c'est revenu sur Firefox

J'ai trouvé ce tutoriel, et en suivant les procédures pour Firefox et Google (puisque j'utilise les 2). Cela a l'air nickel maintenant.

c'est ici :
http://www.poubnews.com/comment-supprimer-definitivement-le-malware-mystart-de-incredibar
0