Script zhpfix [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : Out Of Date O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google O3 - Toolbar\WebBrowser: (no name) - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{0E5CBF21-D15F-11D0-8301-00AA005B4383} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{434D452D-5637-006A-76A7-7A786E7484D7} Clé orpheline O9 - Extra button: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} -- Clé orpheline O20 - AppInit_DLLs: . (...) - C:\Program Files\savesh~1\sprote~1.dll (.not file.) [HKCU\Software\WEDLMNGR] =>PUP.weDownloadManager [HKCU\Software\Yahoo] =>Toolbar.Yahoo [HKLM\Software\AskTBar] [HKLM\Software\SpeedBit] [HKLM\Software\Yahoo] =>Toolbar.Yahoo O43 - CFD: 24/03/2013 - 14:18:01 - [0] ----D C:\Program Files\BrowseToSave =>Adware.Browse2Save O43 - CFD: 09/09/2013 - 08:57:36 - [0,471] ----D C:\Program Files\SaveShare =>Adware.SaveShare O43 - CFD: 06/05/2013 - 12:32:25 - [4,021] ----D C:\Program Files\Yahoo! =>Toolbar.Yahoo O43 - CFD: 20/04/2013 - 13:10:21 - [2,682] ----D C:\Program Files\Fichiers communs\SpeedBit O43 - CFD: 24/03/2013 - 00:34:01 - [0,025] ----D C:\Documents and Settings\All Users\Application Data\BBrowosE22ssAve =>Adware.Browse2Save O43 - CFD: 20/04/2013 - 14:07:19 - [0] ----D C:\Documents and Settings\All Users\Application Data\Speedbit O43 - CFD: 06/05/2013 - 12:32:25 - [0] ----D C:\Documents and Settings\All Users\Application Data\Yahoo! =>Toolbar.Yahoo O43 - CFD: 06/09/2013 - 19:59:57 - [0] -SH-D C:\Documents and Settings\All Users\Application Data\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} O43 - CFD: 06/05/2013 - 12:32:45 - [0] ----D C:\Documents and Settings\Admin\Application Data\Yahoo! =>Toolbar.Yahoo O43 - CFD: 03/05/2013 - 12:55:36 - [0] ----D C:\Documents and Settings\Admin\Local Settings\Application Data\Yahoo =>Toolbar.Yahoo O47 - AAKE:Key Export SP - "C:\DOCUME~1\Admin\LOCALS~1\Temp\Rar$EXb0.873\CD_Root\AutoPlay\Docs\360_MEDINE_MescidiNebevi_IcAvlu.exe" [Enabled] .(...) -- C:\DOCUME~1\Admin\LOCALS~1\Temp\Rar$EXb0.873\CD_Root\AutoPlay\Docs\360_MEDINE_MescidiNebevi_IcAvlu.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\LiveSupport [Key] . (...) -- C:\Program Files\LiveSupport\LiveSupport.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Nexus [Key] . (...) -- C:\Program Files\Winstep\Nexus.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\PC Cleaners [Key] . (...) -- C:\Documents and Settings\All Users\Application Data\PC Cleaners\PCCleaners.exe (.not file.) =>Rogue.PCCleanerPro O69 - SBI: SearchScopes [HKCU] {A02F9F7C-CDB0-4630-A298-2D04CF92A083} - (Flickr) - http://www.flickr.com O69 - SBI: SearchScopes [HKCU] {E8BE4B28-72CB-414E-A10C-8EF9F748A191} - (eBay) - http://rover.ebay.com O69 - SBI: SearchScopes [HKCU] {FBF0DA46-1BCF-4BE9-BB29-60D25DFC6B04} - (Yahoo!) - http://fr.search.yahoo.com =>Toolbar.Yahoo O69 - SBI: SearchScopes [HKCR] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Web Search) - http://search.certified-toolbar.com =>PUP.CertifiedToolbar C:\Documents and Settings\Admin\Bureau\telephone\alcatel\firedongle_cracked_alcatel.exe C:\Documents and Settings\Admin\Mes documents\LEXAR\alcatel\firedongle_cracked_alcatel.exe [MD5.EFD915CC87234F29C3567126BBCB8DC8] [SPRF][04/07/2013] (.PC Cleaners - PC Cleaner Pro.) -- C:\Documents and Settings\All Users\Application Data\pclunst.exe [5400784] =>Rogue.PCCleanerPro [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\PC Cleaners] =>Rogue.PCCleanerPro^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>Toolbar.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>Toolbar.Tarma [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Disk Cleaner Service] =>Rogue.DiskCleaner [HKLM\Software\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj] =>PUP.Dealio [HKLM\Software\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp] =>PUP.Dealio [HKLM\Software\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk] =>PUP.Dealio [HKLM\Software\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje] =>Hijacker.TornTV [HKLM\Software\Classes\Toolbar3.SBCONVERT] =>Toolbar.Agent [HKLM\Software\Classes\Toolbar3.SBCONVERT.1] =>Toolbar.Agent [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111271165}] =>PUP.CrossRider [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110111271165}] =>PUP.CrossRider [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^ C:\Program Files\BrowseToSave =>Adware.Browse2Save^ C:\Program Files\SaveShare =>Adware.SaveShare^ C:\Program Files\Yahoo! =>Toolbar.Yahoo^ C:\Documents and Settings\All Users\Application Data\BBrowosE22ssAve =>Adware.Browse2Save^ C:\Documents and Settings\All Users\Application Data\Yahoo! =>Toolbar.Yahoo^ C:\Documents and Settings\Admin\Application Data\Yahoo! =>Toolbar.Yahoo^ C:\Documents and Settings\Admin\Local Settings\Application Data\Yahoo =>Toolbar.Yahoo^ C:\Documents and Settings\All Users\Application Data\InstallMate =>Toolbar.Tarma C:\Documents and Settings\All Users\Application Data\Software =>Adware.Boxore C:\Documents and Settings\All Users\Application Data\Disk Cleaner =>Rogue.DiskCleaner C:\Documents and Settings\Admin\Local Settings\Application Data\Software =>Adware.Boxore C:\Documents and Settings\Admin\Local Settings\Application Data\Temp\Iminent =>Adware.IMBooster C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google^ [HKCU\Software\WEDLMNGR] =>PUP.weDownloadManager^ [HKCU\Software\Yahoo] =>Toolbar.Yahoo^ [HKLM\Software\Yahoo] =>Toolbar.Yahoo^ C:\Documents and Settings\All Users\Application Data\pclunst.exe =>Rogue.PCCleanerPro^ SysRestore FirewallRAZ EmptyCLSID EmptyTemp EmptyFlash