Script zhpfix G1 - GCS: Preference [User Data\Default] http://dts.search.ask.com R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 11.0.07.) (No version) -- (.not file.) O3 - Toolbar: (no name) - [HKCU]{1E796980-9CC5-11D1-A83F-00C04FC99D61} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{0E5CBF21-D15F-11D0-8301-00AA005B4383} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O4 - HKLM\..\Run: [Starter] C:\Program Files\Driver-Soft\DriverGenius\StarterW3i.exe (.not file.) O9 - Extra button: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} -- Clé orpheline [MD5.F9D8F716896508EB088535DD4B4C296C] [APT] [Norton Security Scan for cnps] (.Symantec Corporation.) -- C:\Program Files\Norton Security Scan\Engine\4.1.0.28\Nss.exe [1419104] [MD5.00000000000000000000000000000000] [APT] [Reimage Reminder] (...) -- C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe (.not file.) [0] =>Rogue.ReimageRepair O39 - APT: At1 - (.Hewlett-Packard Co..) -- C:\WINDOWS\Tasks\At1.job [452] O39 - APT: At2 - (.Hewlett-Packard Co..) -- C:\WINDOWS\Tasks\At2.job [452] O39 - APT: At3 - (.Hewlett-Packard Co..) -- C:\WINDOWS\Tasks\At3.job [452] O39 - APT: At4 - (.Hewlett-Packard Co..) -- C:\WINDOWS\Tasks\At4.job [452] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1048] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1052] O39 - APT: Norton Security Scan for cnps - (.Symantec Corporation.) -- C:\WINDOWS\Tasks\Norton Security Scan for cnps.job [462] O39 - APT: - (..) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP - à la connexion.job [220] O39 - APT: - (..) -- C:\WINDOWS\Tasks\Notification de fin de service de Microsoft Windows XP -mensuellement.job [214] O39 - APT: Reimage Reminder - (...) -- C:\WINDOWS\Tasks\Reimage Reminder.job [272] =>Rogue.ReimageRepair [HKCU\Software\BearShare] =>PUP.BearShare [HKCU\Software\Reimage] =>Rogue.ReimageRepair [HKCU\Software\mediabarbs] =>PUP.BearShare [HKCU\Software\ƒAƒvƒŠƒP[ƒVƒ‡ƒ“ ƒEƒBƒU[ƒh‚Ŷ¬‚³‚ꂽƒ[ƒJƒ‹ ƒAƒvƒŠƒP[ƒVƒ‡ƒ“] [HKLM\Software\C07ft5Y] [HKLM\Software\Reimage] =>Rogue.ReimageRepair O43 - CFD: 24/05/2014 - 16:00:25 - [] ----D C:\Documents and Settings\All Users\Application Data\188F1432-103A-4ffb-80F1-36B633C5C9E1 O43 - CFD: 19/08/2010 - 14:06:10 - [] ----D C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521} O43 - CFD: 05/03/2010 - 18:58:20 - [] ----D C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD} O43 - CFD: 26/02/2010 - 00:50:54 - [] ----D C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} O43 - CFD: 18/03/2012 - 19:40:18 - [] ----D C:\Documents and Settings\cnps\Application Data\mediabarbs =>PUP.BearShare O45 - LFCP:[MD5.7D3B576F9E1C2247E098CC5199C6F248] - 02/08/2014 - 02:26:58 ---A- - C:\WINDOWS\Prefetch\PCSPEEDMAXIMIZER.EXE-395D5242.pf =>Rogue.PCSpeedMaximizer O45 - LFCP:[MD5.9422E3F4E298D28731E1D189CDDEED69] - 02/08/2014 - 00:18:59 ---A- - C:\WINDOWS\Prefetch\REIMAGEREMINDER.EXE-2C42FD6D.pf =>Rogue.ReimageRepair O51 - MPSK:{171f8a2e-c09a-11df-8a44-0023cdbfb859}\AutoRun\command. (...) -- F:\v.exe (.not file.) O51 - MPSK:{7d2d13b6-0d66-11de-b156-002264235519}\AutoRun\command. (...) -- C:\WINDOWS\system32\.\Recycler\svchost.exe (.not file.) O51 - MPSK:{a3da1b4a-b67b-11de-898e-00400b001021}\AutoRun\command - Clé orpheline O51 - MPSK:{b1c032ec-b678-11de-898c-00400b001021}\AutoRun\command. (...) -- G:\LaunchU3.exe (.not file.) O51 - MPSK:{b4b3b1c3-08e2-11de-b14a-806d6172696f}\AutoRun\command. (...) -- E:\autorun.exe (.not file.) O51 - MPSK:{bf71c714-1c18-11e0-8a6a-002264235519}\AutoRun\command. (...) -- C:\WINDOWS\system32\Recycle.exe (.not file.) O51 - MPSK:{c0d7ebca-1ee8-11df-8a15-00400b001021}\AutoRun\command. (...) -- F:\i.cmd (.not file.) O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Not Key.) O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (...) -- C:\Documents and Settings\cnps\Local Settings\Application Data\Torch\Application\torch.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Documents and Settings\cnps\Local Settings\Application Data\Torch\Application\torch.exe (.not file.) O69 - SBI: SearchScopes [HKCU] 0CDC057C242D459B8171F910C11AD02B - (Search the web (CT)) - http://search.creativetoolbars.com =>Adware.IMBooster [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\koyotesoftmoviestoolbarhaCR] =>PUP.MoviesToolbar^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\koyotesoftmoviestoolbarhaIE] =>PUP.MoviesToolbar^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair] =>Rogue.ReimageRepair^ [HKCU\Software\Reimage] =>Rogue.ReimageRepair [HKLM\Software\Reimage] =>Rogue.ReimageRepair C:\Documents and Settings\cnps\Application Data\mediabarbs =>PUP.BearShare^ C:\Documents and Settings\cnps\Application Data\wincorebsband =>PUP.iMesh C:\WINDOWS\Tasks\Reimage Reminder.job =>Rogue.ReimageRepair^ [HKCU\Software\BearShare] =>PUP.BearShare^ [HKCU\Software\mediabarbs] =>PUP.BearShare^ C:\WINDOWS\Reimage.ini =>Rogue.ReimageRepair Emptytemp Emptyflash