Script ZHPFix O4 - GS\Desktop [Administrateur]: SpyHunter.lnk . (...) -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\SpyHunter4.exe (.not file.) =>Crapware.SpyHunter O42 - Logiciel: SpyHunter - (.Enigma Software Group USA, LLC.) [HKLM][64Bits] -- {86CA3695-A412-4BAE-92B6-49A60C2AC663} =>Crapware.SpyHunter O43 - CFD: 13/09/2013 - 19:07:25 - [0,005] ----D C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter O61 - LFC: 13/09/2013 - 18:04:14 ---A- . (...) -- C:\Users\Administrateur\AppData\Local\Temp\SHSetup.exe [46974032] =>Crapware.SpyHunter O64 - Services: CurCS - 02/03/2011 - Pas de propriétaire (esgiguard) .(...) - LEGACY_ESGIGUARD =>Crapware.SpyHunter [MD5.9FF765D961D3C51E709781AA4061C5BB] [SPRF][13/09/2013] (...) -- C:\Users\Administrateur\AppData\Local\Temp\SHSetup.exe [46974032] =>Crapware.SpyHunter [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86CA3695-A412-4BAE-92B6-49A60C2AC663}] =>Crapware.SpyHunter^ C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter^ C:\Users\Administrateur\AppData\Local\Temp\SHSetup.exe =>Crapware.SpyHunter^ C:\Users\Administrateur\Desktop\SpyHunter.lnk =>Crapware.SpyHunter Malware (10) O4 - GS\Desktop [Administrateur]: QRegDefrag.exe - Raccourci.lnk . (...) -- C:\Program Files (x86)\Quicksys\RegDefrag\QRegDefrag.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [{0F9B805C-B0BB-4CAB-9103-5167819043A5}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{17343709-6FFD-4A9B-B2EF-8D8E31E5D121}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{23EE175E-A6C7-4428-B9BE-06C2098CD22D}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{39EE6D11-0ED9-4267-A17A-64EA21E0C8A4}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{54582E2D-F5F9-41A5-997C-2046EC7BB4F7}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{7756C0FB-EA8D-42E2-8754-591CD90B18C8}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{7992A46E-4877-4437-9FE8-D748E3E60BFC}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{DC8285FC-FE2F-4447-B124-CC6DBDC0A6EE}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{EDDE856F-D478-4FB8-9744-EA0E8DC9DEB9}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{FAF5ED85-0D63-44C6-BE41-94B64A3DE610}] (...) -- D:\Robert\T‚l‚chargements\930-fra-xp.exe (.not file.) [0] O45 - LFCP:[MD5.40623D1CD2330C223C86BB6D22F5DEF3] - 11/09/2013 - 12:05:49 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.00C478CD3D8902D3CFD5C0F6EA369ECE] - 13/09/2013 - 10:27:48 ---A- - C:\Windows\Prefetch\AgCx_S2_S-1-5-21-2851782335-3773044986-3138838024-500.snp.db O45 - LFCP:[MD5.CCD641D0A48E782EDE73C317FF420E83] - 13/09/2013 - 10:29:23 ---A- - C:\Windows\Prefetch\AgCx_SC3_3EF8216D737FCB8B.db O45 - LFCP:[MD5.2E9A374654DE8A458EA081ACA785AFBE] - 14/09/2013 - 20:24:52 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2851782335-3773044986-3138838024-1000.db O45 - LFCP:[MD5.D106E7792EBB653A7861D10D5217DCE9] - 14/09/2013 - 20:24:52 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2851782335-3773044986-3138838024-1000.db O45 - LFCP:[MD5.84E652D313931A10834BCFA2D2687A4A] - 15/09/2013 - 10:46:27 ---A- - C:\Windows\Prefetch\AVAST.SETUP-78AEAC94.pf O45 - LFCP:[MD5.4B4AAB36ED8F91D5E27D03E8F692F6B9] - 15/09/2013 - 11:20:14 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-3C3FF0EA.pf O45 - LFCP:[MD5.AEB421D6F685F2B36DED2848F7674B61] - 27/08/2013 - 17:09:34 ---A- - C:\Windows\Prefetch\AgCx_S1_S-1-5-21-2851782335-3773044986-3138838024-1000.snp.db O45 - LFCP:[MD5.C1A59FF9F6365C14BC056EDB4A034E0E] - 27/08/2013 - 19:42:06 ---A- - C:\Windows\Prefetch\AgCx_SC3_5F14ACE2EC02BBC5.db O53 - SMSR:HKLM\...\startupreg\EaseUS EPM tray [Key] . (...) -- C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe (.not file.) O61 - LFC: 14/09/2013 - 22:28:09 ---A- . (...) -- C:\Users\Administrateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6168397779.data [751] O61 - LFC: 14/09/2013 - 22:28:09 ---A- . (...) -- C:\Users\Administrateur\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6168397779.quar [3469871] [MD5.2CD1C1CC771F73F27E14BBDC71ED8988] [SPRF][19/12/2012] (...) -- C:\ProgramData\1355954546.bdinstall.bin [41307] [MD5.7A0976A880584E0E4D2373946BE26056] [SPRF][01/01/2013] (...) -- C:\ProgramData\1357054776.bdinstall.bin [26668] [MD5.3BF79E6868B44D3ADB2796BA99521891] [SPRF][07/09/2013] (...) -- C:\Users\Administrateur\AppData\Local\Temp\Quarantine.exe [344583] Superflu (26) [MD5.90E1D86D979B92738A47D7072CB22DA8] [SPRF][07/07/2010] (...) -- C:\ProgramData\FullRemove.exe [131472] Variable (1) O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline O69 - SBI: SearchScopes [HKCU] {4902A00E-D4F0-4F08-9DA5-E2CA8FC2C593} - (Ask Search) - http://websearch.ask.com =>Toolbar.Ask Superflu (3)