Script ZHPFix [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application G2 - GCE: Preference [User Data\Default] [mphpbdjcljebbcnfopfngmfdackbbdgf] DealPly Shopping v.3.5.0.0 (Désactivé) =>PUP.DealPly [MD5.00000000000000000000000000000000] [APT] [AutoKMS] (...) -- C:\Windows\AutoKMS\AutoKMS.exe (.not file.) [0] =>Trojan.Keygen O45 - LFCP:[MD5.A3014A00941D201515CC4D9A15108620] - 16/10/2013 - 17:00:04 ---A- - C:\Windows\Prefetch\DEALPLYLIVE.EXE-24881C14.pf =>PUP.DealPly O45 - LFCP:[MD5.7393149EF3D607AC072741C8231FF760] - 16/10/2013 - 17:00:05 ---A- - C:\Windows\Prefetch\DEALPLYLIVEHANDLER.EXE-5C4141A5.pf =>PUP.DealPly [MD5.3C74C26999F2060BC6302448F173A342] [SPRF][28/08/2013] (.Babylon Ltd. - Uninstaller Application.) -- C:\Users\yannick\AppData\Local\Temp\uninst1.exe [340464] =>Toolbar.Babylon [HKLM\Software\Google\Chrome\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf] =>PUP.DealPly^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AF2CF8FE20EBB4443855807CA5D6E7A3] =>Adware.Boxore [HKCU\Software\PartyFrance] =>Casino.OnlineGames [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Associations]:bak_Application =>Hijacker.Agent [HKLM\Software\Classes\Interface\{34F04421-91D1-4379-84C0-A3337B9B329C}] =>Toolbar.Kiwee [HKLM\Software\Classes\Interface\{6FF5D94E-4D97-40ED-BCFE-972920872F8C}] =>Toolbar.Kiwee [HKLM\Software\Classes\Interface\{82A33B3E-AD1E-447C-B3DD-EA92A3B17900}] =>Toolbar.Kiwee [HKLM\Software\Classes\Interface\{9A180B16-B066-4A23-83F8-D8E1FA5955EC}] =>Toolbar.Kiwee [HKLM\Software\Classes\Interface\{F440E13E-5C6B-4BA1-B49C-54248679ECE7}] =>Toolbar.Kiwee [HKCU\AppEvents\Schemes\Apps\Explorer\Navigating\Old_Current] =>PUP.MediaFinder [HKLM\Software\Wow6432Node\Connectify\OpenCandy] =>Adware.OpenCandy [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application^ C:\Users\yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf =>PUP.DealPly^ C:\Users\yannick\AppData\Local\Temp\uninst1.exe =>Toolbar.Babylon^ O4 - GS\Program [yannick]: Chilipoker.fr.lnk . (.Playtech - Playtech Client Engine Application.) -- C:\Poker\Chilipoker.fr\casino.exe O4 - GS\Accessories [yannick]: Run.lnk - Clé orpheline O4 - GS\Accessories [UpdatusUser]: Run.lnk - Clé orpheline O4 - GS\Accessories [postgres]: Run.lnk - Clé orpheline O4 - GS\Desktop [postgres]: PokerAce Hud.lnk . (...) -- C:\Program Files (x86)\PokerAce Hud\PAHud.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [PressePapier] Clé orpheline [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Daily 1)] (...) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Daily 2)] (...) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Daily 3)] (...) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Daily 4)] (...) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Ad-Aware Update (Weekly)] (...) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{04B2D83F-20B4-46EA-88CA-AD2DC7012047}] (...) -- C:\Users\yannick\Downloads\Pack FuckPSN\Pack FuckPSN\FuckPSN.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{05AE9A9C-FAAA-44F1-BD78-2D7CFB5B486D}] (...) -- C:\Users\yannick\Downloads\Pack FuckPSN\Pack FuckPSN\FuckPSN.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{09FF1D7F-B186-44CB-8FCD-BFCD38B027A0}] (...) -- C:\Users\yannick\Downloads\Pack FuckPSN\Pack FuckPSN\FuckPSN.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{0B5795CC-D4AD-4406-B503-DC7B86B0C604}] (...) -- C:\Users\yannick\Downloads\FILMS\PeugeotLaser\Virtual Floppy Drive\vfd21-050404\vfdwin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{10C82C99-AE5A-491D-A959-1D98317DC1F9}] (...) -- C:\Users\yannick\Downloads\Pack FuckPSN\Pack FuckPSN\FuckPSN.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{153DFF2C-0BC8-43D7-B2EC-BB0DB5595E27}] (...) -- E:\netsetup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{320274EF-E896-4FA3-9AD4-5B206FE5DC41}] (...) -- C:\Users\yannick\Downloads\Pack FuckPSN\Pack FuckPSN\FuckPSN.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{60FD5BEE-3BF8-4567-B1A1-F39885E3BB69}] (...) -- C:\Users\yannick\Pictures\bassin\AquaTechnoBase_V1_31.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{77608E1C-9157-4E98-9708-B3C80E9FAE46}] (...) -- C:\Users\yannick\Downloads\Pack FuckPSN\Pack FuckPSN\FuckPSN.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{87E8439F-B122-48EB-9C32-A3858DC38D7B}] (...) -- C:\Users\yannick\Desktop\SetupSoftPlug.msi" (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{AA204A66-3138-4C4D-988C-AFB8B4DF60D3}] (...) -- C:\Users\yannick\Downloads\FILMS\PeugeotLaser\Virtual Floppy Drive\vfd21-050404\vfdwin.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C5C4A0A7-4B3B-4FAD-B663-D483B7E9C06C}] (...) -- C:\Users\yannick\Desktop\SetupSoftPlug.msi" (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{EAE5B24F-549E-4CB4-87AD-E918B17DBB33}] (...) -- C:\Users\yannick\Pictures\bassin\AquaTechnoBase_V1_31.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{A278E060-17BB-4D9D-8774-BB4301A679FC}] (...) -- D:\autorun.exe (.not file.) [0] O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{3D4D238C-9C48-47CD-A95C-53259ACF9E56} Clé orpheline [HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] =>Toolbar.Bing [HKCU\Software\MCAFEE] O43 - CFD: 15/11/2012 - 10:21:59 - [0,010] ----D C:\ProgramData\McAfee EmptyFlash FirewallRaz EmptyTemp EMPTYCLSID ShortcutFix