Script zhpfix [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 4.5.2f1.) -- C:\Users\elsa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll O3 - Toolbar: avast! Online Security - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (...) -- (.not file.) O3 - Toolbar: (no name) - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} Clé orpheline O4 - HKUS\.DEFAULT\..\RunOnce: [SpUninstallDeleteDir] Clé orpheline O4 - HKUS\S-1-5-18\..\RunOnce: [SpUninstallDeleteDir] Clé orpheline O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (...) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe (.not file.) =>PUP.Fuyu [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineCore] (...) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001Core] (...) -- C:\Users\elsa\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001UA] (...) -- C:\Users\elsa\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [PrivacyDR_Popup] (...) -- C:\Program Files (x86)\Privacy DR\Splash.exe (.not file.) [0] =>PUP.PrivacyDr [MD5.00000000000000000000000000000000] [APT] [PrivacyDR_Start] (...) -- C:\Program Files (x86)\Privacy DR\PrivacyDR.exe (.not file.) [0] =>PUP.PrivacyDr [MD5.00000000000000000000000000000000] [APT] [Update Service SimpleFiles] (...) -- C:\Program Files (x86)\SimpleFilesUpdater\SimpleFilesUpdater.exe (.not file.) [0] =>Adware.SimpleFiles [MD5.ED5C6930B15D49452A3DA16F98286DF9] [APT] [YourFile DownloaderInstaller Starter] (.http://yourfiledownloader.net.) -- C:\Users\elsa\AppData\Local\Temp\install187677517.exe [7107976] =>PUP.YourFileDownloader [MD5.00000000000000000000000000000000] [APT] [{970314AB-7868-454B-B863-6D970F31384B}] (...) -- D:\jeux pas encore sauvegard‚s\soap op‚ra dash\Soap Opera Dash.exe.exe (.not file.) [0] O39 - APT: GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001Core - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001Core.job [1050] O39 - APT: GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001Core - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001Core [1050] O39 - APT: GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001UA - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001UA.job [1102] O39 - APT: GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001UA - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-433999865-1449587028-200866840-1001UA [1102] O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer [HKCU\Software\AppDataLow\Software\Unity] [HKCU\Software\PrivacyDRLanguage] =>PUP.PrivacyDr [HKCU\Software\SimpleFiles] =>Adware.SimpleFiles [HKCU\Software\Unity] [HKLM\Software\Wow6432Node\SimpleFiles] =>Adware.SimpleFiles O43 - CFD: 16/11/2013 - 15:24:43 - [] ----D C:\ProgramData\McAfee O43 - CFD: 08/10/2013 - 19:59:52 - [] ----D C:\ProgramData\Norton O43 - CFD: 08/10/2013 - 19:57:56 - [] ----D C:\ProgramData\NortonInstaller O43 - CFD: 13/08/2014 - 19:15:17 - [] ----D C:\Users\elsa\AppData\Roaming\SimpleFiles =>Adware.SimpleFiles O43 - CFD: 25/10/2013 - 15:35:57 - [] ----D C:\Users\elsa\AppData\Roaming\Unity O43 - CFD: 13/08/2014 - 19:15:09 - [] ----D C:\Users\elsa\AppData\Local\Comodo O43 - CFD: 06/08/2014 - 17:45:58 - [] ----D C:\Users\elsa\AppData\Local\Unity O61 - LFC: 13/08/2014 - 21:01:14 ---A- . (.http://yourfiledownloader.net.) -- C:\Users\elsa\AppData\Local\Temp\install187677517.exe [7107976] O61 - LFC: 13/08/2014 - 21:01:25 ---A- . (.http://yourfiledownloader.net.) -- C:\Users\elsa\Downloads\lodyssee_des_zoombinis_jeu_pc_ludo_educatif_multilangue_downloader.exe [7107976] O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Opera\Launcher.exe" http://istart.webssearches.com =>Hijacker.WebsSearches O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Mysearchdial) - http://start.mysearchdial.com =>Adware.MyWebSearch O87 - FAEL: "{170A1C7D-DF22-4ACF-97F1-599CD6F37B5F}" | In - Private - P6 - TRUE | .(.http://yourfiledownloader.net - YourFile Downloader.) -- C:\Users\elsa\Downloads\lodyssee_des_zoombinis_jeu_pc_ludo_educatif_multilangue_downloader.exe =>PUP.YourFileDownloader O87 - FAEL: "{05B65C7C-1089-492D-941E-1891C0D81BDE}" | In - Private - P17 - TRUE | .(.http://yourfiledownloader.net - YourFile Downloader.) -- C:\Users\elsa\Downloads\lodyssee_des_zoombinis_jeu_pc_ludo_educatif_multilangue_downloader.exe =>PUP.YourFileDownloader O87 - FAEL: "{C159CB6B-6EC8-4D5A-ACA3-66DC250F1124}" | In - Private - P6 - TRUE | .(.New Monte Inc - SimpleFiles Installer.) -- C:\Users\elsa\Downloads\lodyssee_des_zoombinis_jeu_pc_ludo_educatif_multilangue_downloader (1).exe =>Adware.SimpleFiles O87 - FAEL: "{D9114C63-2E6A-4FDA-B68B-DCD8A2539489}" | In - Private - P17 - TRUE | .(.New Monte Inc - SimpleFiles Installer.) -- C:\Users\elsa\Downloads\lodyssee_des_zoombinis_jeu_pc_ludo_educatif_multilangue_downloader (1).exe =>Adware.SimpleFiles HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PrivacyDR_RASAPI32 =>PUP.PrivacyDr HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PrivacyDR_RASMANCS =>PUP.PrivacyDr SS - | Auto 10/07/1658 0 | (WindowsMangerProtect) . (...) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Fuyu [HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect] =>PUP.Fuyu^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CE681A67-9477-CBE6-EB9D-FE534875F98D}] =>PUP.CostMin^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C9A6357B-25CC-4BCF-96C1-78736985D412}] =>Toolbar.Orange [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ C:\Users\elsa\AppData\Roaming\SimpleFiles =>Adware.SimpleFiles^ C:\Users\elsa\AppData\Local\Temp\install187677517.exe =>PUP.YourFileDownloader^ [HKCU\Software\PrivacyDRLanguage] =>PUP.PrivacyDr^ [HKCU\Software\SimpleFiles] =>Adware.SimpleFiles^ [HKLM\Software\Wow6432Node\SimpleFiles] =>Adware.SimpleFiles^ C:\Users\elsa\AppData\Local\Temp\nsqD085.exe =>Toolbar.Conduit C:\Users\elsa\AppData\Local\Temp\nss6F7E.exe =>Toolbar.Conduit C:\Users\elsa\AppData\Local\Temp\nsv4D79.exe =>Toolbar.Conduit C:\Users\elsa\AppData\Local\Temp\SearchProtectINT.exe =>Toolbar.Conduit C:\Users\elsa\AppData\Local\Temp\SPSetup.exe =>Toolbar.Conduit Emptytemp Emptyflash