G2 - GCE: Preference [User Data\Default] [pbpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.5 (Activé) G2 - GCE: Preference [User Data\Default] [pioliciekajfgilkenamlbghbpgpipdm] Interest Recognizer for Widestream6 v.3.0.1474.124 (Activé) [MD5.00000000000000000000000000000000] [APT] [RunAsStdUser Task] (...) -- C:\Program Files\FREEzeFrog\bin\2.0.15.0\FREEzeFrogSA.exe (.not file.) O42 - Logiciel: Boxore Client - (.Boxore OU.) [HKLM] -- {0E25BB07-62EB-476F-87FC-6AF426AB059E} O43 - CFD: 19/03/2013 - 21:52:01 - [2,431] ----D C:\Program Files\Boxore O43 - CFD: 28/12/2011 - 17:36:17 - [0] ----D C:\Users\Evy\AppData\Local\Software O45 - LFCP:[MD5.8E60A4BDAD331310237A93866CC14BEC] - 08/07/2013 - 08:14:00 ---A- - C:\Windows\Prefetch\SOFTWARECRASHHANDLER.EXE-7008C063.pf O69 - SBI: SearchScopes [HKCU] {40716810-51E0-451A-90A1-E0E71EB98F5B} - (Yahoo-Mp3Tube) - http://mp3tubetoolbarsearch.com O87 - FAEL: "TCP Query User{64BF1420-B236-4652-8724-36943E8896C6}C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe" |In - Public - P6 - TRUE | .(...) -- C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) O87 - FAEL: "UDP Query User{56CB6278-0C2E-442F-BB43-AB94E9F2A3E3}C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe" |In - Public - P17 - TRUE | .(...) -- C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) O87 - FAEL: "TCP Query User{B6A6DA1E-9543-4B3C-A826-C90AB9AB8659}C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe" |In - Private - P6 - TRUE | .(...) -- C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) O87 - FAEL: "UDP Query User{890F95E3-3D98-46D0-91CE-44915E3DB2A9}C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe" |In - Private - P17 - TRUE | .(...) -- C:\users\evy\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) [HKLM\Software\Classes\Widestream6.Spointer.1] [HKLM\Software\Classes\Widestream6.SpointerCtrl.1] [HKLM\Software\Classes\Widestream6.SpointerWebDisp.1] [HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790475B1765B5637AB99] C:\Program Files\Boxore C:\Users\Evy\AppData\Local\Software C:\Users\Evy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa C:\Users\Evy\Downloads\cacaoweb.exe C:\Users\Evy\AppData\Local\Temp\GoogleToolbarInstaller1.log C:\Users\Evy\AppData\Local\Temp\GoogleToolbarInstaller2.log O90 - PUC: "70BB52E0BE26F67478CFA64F62BA50E9" . (.Boxore Client.) -- C:\windows\Installer\{0E25BB07-62EB-476F-87FC-6AF426AB059E}\boxore.ico ~ http://nicolascoolman.webs.com/apps/blog/show/27556476-adware-spointer ~ http://nicolascoolman.webs.com/apps/blog/show/28740985-adware-freeze ~ http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore ~ http://nicolascoolman.webs.com/apps/blog/show/27134028-adware-mp3tube ~ http://nicolascoolman.webs.com/apps/blog/show/27566847-pup-cacaoweb ~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon O45 - LFCP:[MD5.2CEDECE526D794E6321580EA92E6434F] - 05/07/2013 - 21:32:32 ---A- - C:\Windows\Prefetch\MPAS-D_BD_1.153.1042.0.EXE-B836D0DA.pf O45 - LFCP:[MD5.F33C423DB0E2176728410D2FCF263643] - 06/07/2013 - 00:04:15 ---A- - C:\Windows\Prefetch\INSTALL_FLASHPLAYER11X32AX_GT-164D582B.pf O45 - LFCP:[MD5.F5D0A3A446275C125C7E6DB10CE0FB46] - 06/07/2013 - 00:04:25 ---A- - C:\Windows\Prefetch\INSTALL_FLASHPLAYER11X32AX_GT-F02BEA9E.pf O45 - LFCP:[MD5.8798A5FD5D5FC5E12393B56892D04A90] - 06/07/2013 - 00:06:16 ---A- - C:\Windows\Prefetch\INSTALL_FLASHPLAYER11X32AX_GT-6B432FDA.pf O45 - LFCP:[MD5.4FC0FC90705236F42D9022870D601BCF] - 06/07/2013 - 00:07:04 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARSTANDALONESETUP_-DBA5655F.pf O45 - LFCP:[MD5.210F4286A342781E0C29377339B6E8AF] - 06/07/2013 - 00:07:04 ---A- - C:\Windows\Prefetch\GTB.EXE-213EE184.pf O45 - LFCP:[MD5.C84032C5BEBF94502BAC5B48B984CC5B] - 06/07/2013 - 00:07:12 ---A- - C:\Windows\Prefetch\GOOGLEUPDATERSERVICE_B33FC4DD-054D7B63.pf O45 - LFCP:[MD5.B9FDD48FF5A3316A634CD8D2DD5FAA49] - 06/07/2013 - 00:07:13 ---A- - C:\Windows\Prefetch\SEARCHWITHGOOGLEUPDATE_58D2CE-6A91CE5E.pf O45 - LFCP:[MD5.93A4F0F4F48BBC31B3228D320034BA79] - 06/07/2013 - 00:07:14 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARINSTALLER_FULL_S-9D251B42.pf O45 - LFCP:[MD5.497E9138FCDB9ABF797D13BF7BD44B23] - 06/07/2013 - 00:07:15 ---A- - C:\Windows\Prefetch\GOOGLETOOLBARMANAGER_E6C807F3-4F0E422E.pf O45 - LFCP:[MD5.DDAEA0D0A05EFB28D98D44208FD36573] - 06/07/2013 - 00:07:21 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-3AA1BFD4.pf O45 - LFCP:[MD5.064331C87BD08D536C2672C6521307EF] - 07/07/2013 - 20:40:40 ---A- - C:\Windows\Prefetch\DEVICEDISPLAYOBJECTPROVIDER.E-D37241ED.pf O45 - LFCP:[MD5.D1054C8BADD92B8CF1B2C9D92050D1E1] - 08/07/2013 - 12:14:01 ---A- - C:\Windows\Prefetch\SOFTWAREUPDATE.EXE-4D528A03.pf O45 - LFCP:[MD5.BEDEF74DCED6506F353A4A5E43240A20] - 08/07/2013 - 18:06:53 ---A- - C:\Windows\Prefetch\APPLEPHOTOSTREAMSDOWNLOADER.E-92402CB4.pf O45 - LFCP:[MD5.564957EB97143949CC94E9B94B01E09C] - 08/07/2013 - 18:10:13 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2900431811-4106917416-381626465-1001.db O45 - LFCP:[MD5.E27CE9743F21A0832387D9CB4CDE384A] - 08/07/2013 - 18:10:14 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2900431811-4106917416-381626465-1001.db O45 - LFCP:[MD5.12B31C89155966284096A4CB82923B59] - 08/07/2013 - 18:20:37 ---A- - C:\Windows\Prefetch\FLASHUTIL32_11_7_700_224_ACTI-5CBA9703.pf O61 - LFC: 05/07/2013 - 22:45:13 ---A- C:\Users\Evy\AppData\Local\Temp\wmplog03.sqm [1662] O61 - LFC: 08/07/2013 - 11:20:34 ---A- C:\Users\Evy\AppData\Local\Temp\CRX_75DAF8CB7768\crl-set [366] O61 - LFC: 08/07/2013 - 11:20:34 ---A- C:\Users\Evy\AppData\Local\Temp\CRX_75DAF8CB7768\manifest.json [34] O61 - LFC: 08/07/2013 - 11:49:43 ---A- C:\Users\Evy\AppData\Local\Temp\wlmail1768976332\6C0785AE6F76\Writer_Config.cab [26214] O61 - LFC: 08/07/2013 - 18:19:05 ---A- C:\Users\Evy\AppData\Local\Temp\au-descriptor-1.7.0_25-b17.xml [8818] [MD5.18DA3D776ABD24350C0B3B1F201335D0] [SPRF][02/04/2011] (.Hook Network - Pas de description.) -- C:\Users\Evy\AppData\Local\Temp\IE9PinnedSitesHelper_installer.exe [669376] [MD5.EB2D86F9F8862496EB76B136704974DD] [SPRF][04/06/2010] (.Microsoft Corporation - Microsoft Malware Protection Engine.) -- C:\Users\Evy\AppData\Local\Temp\mpengine.dll [5310288] [MD5.719AF0A81B65A4AEB4BA7BD6644BB1A7] [SPRF][02/03/2011] (...) -- C:\Users\Evy\AppData\Local\Temp\WLM2011Installer.exe [1289216] O4 - GS\QuickLaunch: Infotravail.lnk - Clé orpheline O4 - GS\Desktop: Ordinateur - Raccourci.lnk - Clé orpheline [MD5.00000000000000000000000000000000] [APT] [{FE9F3D6E-E78B-4E2B-8199-65313CB2764D}] (...) -- C:\Program Files\TR-2.0.1\bin\tr-launcher.exe (.not file.) [0]