Script zhpfix O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O23 - Service: (vToolbarUpdater14.0.0) . (...) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.0.0\ToolbarUpdater.exe (.not file.) =>Toolbar.AVGSearch O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\temp_Plus-HD-3.5-enabler.job [1140] =>Adware.PlusHD [MD5.00000000000000000000000000000000] [APT] [temp_Plus-HD-3.5-enabler] (...) -- C:\Program Files\Plus-HD-3.5\Plus-HD-3.5-enabler.exe (.not file.) [0] =>Adware.PlusHD [MD5.00000000000000000000000000000000] [APT] [{9AB110CE-2B83-442C-8C87-5FB88C3370F6}] (...) -- E:\install.exe (.not file.) [0] O43 - CFD: 01/06/2013 - 19:57:29 - [23,535] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} O43 - CFD: 14/09/2013 - 06:15:40 - [0] ----D C:\ProgramData\?%?%8520-1533-40C5-AD09-953C574F14BCÄ%?% O43 - CFD: 06/10/2013 - 06:15:51 - [0] ----D C:\ProgramData\?&?&8520-1533-40C5-AD09-953C574F14BCÄ&?& O43 - CFD: 28/08/2013 - 06:34:42 - [0] ----D C:\ProgramData\?.?.8520-1533-40C5-AD09-953C574F14BCÄ.? O43 - CFD: 06/11/2013 - 06:53:39 - [0] ----D C:\ProgramData\?1?18520-1533-40C5-AD09-953C574F14BCÄ1?1 O43 - CFD: 13/10/2013 - 07:43:19 - [0] ----D C:\ProgramData\?2?28520-1533-40C5-AD09-953C574F14BCÄ2?2 O43 - CFD: 20/10/2013 - 07:15:02 - [0] ----D C:\ProgramData\?3?38520-1533-40C5-AD09-953C574F14BCÄ3?3 O43 - CFD: 19/10/2013 - 17:01:55 - [0] ----D C:\ProgramData\?4?48520-1533-40C5-AD09-953C574F14BCÄ4?4 O43 - CFD: 01/09/2013 - 18:13:54 - [0] ----D C:\ProgramData\?5?58520-1533-40C5-AD09-953C574F14BCÄ5?5 O43 - CFD: 02/11/2013 - 07:48:57 - [0] ----D C:\ProgramData\?8?88520-1533-40C5-AD09-953C574F14BCÄ8?8 O43 - CFD: 22/08/2013 - 06:13:21 - [0] ----D C:\ProgramData\?9?98520-1533-40C5-AD09-953C574F14BCÄ9?9 O43 - CFD: 20/11/2013 - 06:39:16 - [0] ----D C:\ProgramData\?;?;8520-1533-40C5-AD09-953C574F14BCÄ;?; O43 - CFD: 21/11/2013 - 06:22:05 - [0] ----D C:\ProgramData\?F?F8520-1533-40C5-AD09-953C574F14BCÄF?F O43 - CFD: 02/11/2013 - 14:48:11 - [0] ----D C:\ProgramData\?i?i8520-1533-40C5-AD09-953C574F14BCÄi?i O43 - CFD: 11/11/2013 - 07:55:46 - [0] ----D C:\ProgramData\?J?J8520-1533-40C5-AD09-953C574F14BCÄJ?J O43 - CFD: 21/08/2013 - 06:16:13 - [0] ----D C:\ProgramData\?N?N8520-1533-40C5-AD09-953C574F14BCÄN?N O43 - CFD: 10/10/2013 - 05:19:02 - [0] ----D C:\ProgramData\?PUP.Wajam O45 - LFCP:[MD5.E0B288A5D00C11A1EE4D69444F22472A] - 09/02/2014 - 09:28:00 ---A- - C:\WINDOWS\Prefetch\PLUS-HD-3.5-CODEDOWNLOADER.EX-9A5ECDDC.pf =>Adware.PlusHD O45 - LFCP:[MD5.7973A15F7B6F08D72C33B123FB73520D] - 09/02/2014 - 09:28:10 ---A- - C:\WINDOWS\Prefetch\PLUS-HD-3.5-FIREFOXINSTALLER.-8FCB1A87.pf =>Adware.PlusHD O45 - LFCP:[MD5.02749A6AAD3AE6036407FFF1D9758F4D] - 09/02/2014 - 09:29:00 ---A- - C:\WINDOWS\Prefetch\PLUS-HD-3.5-ENABLER.EXE-3EBB7FEF.pf =>Adware.PlusHD O51 - MPSK:{42d7da49-4c06-11e2-91b0-001a924134d6}\AutoRun\command. (...) -- L:\Samsung_Drive_Manager.exe (.not file.) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {105E99FF-8B9A-4492-B155-06194B9056D2} - (Bing) - http://www.bing.com O87 - FAEL: "{677D23EB-CCE0-4A1C-891F-736E0C40B921}" |In - Private - P6 - TRUE | .(...) -- E:\data\eSKernel.exe (.not file.) O87 - FAEL: "{B75040DC-D24E-4F4A-B592-E0640DECFB03}" |In - Private - P17 - TRUE | .(...) -- E:\data\eSKernel.exe (.not file.) O87 - FAEL: "{E9CCB1ED-2967-49B4-9258-FF02F05D6E00}" |In - Public - P6 - TRUE | .(...) -- E:\data\eSKernel.exe (.not file.) O87 - FAEL: "{28E648D4-18D9-43D5-B820-43DCD671A188}" |In - Public - P17 - TRUE | .(...) -- E:\data\eSKernel.exe (.not file.) O87 - FAEL: "{E1245F19-3AE3-4FB6-B8E6-C350A235DCDB}" |In - None - P17 - TRUE | .(...) -- C:\Program Files\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster O87 - FAEL: "{0AC24030-7D79-4084-9AA2-BBDAFF0C6B1E}" |In - None - P17 - TRUE | .(...) -- C:\Program Files\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster O87 - FAEL: "{7892E7F0-2E04-4CE7-A0DD-0F5753AF716B}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM O87 - FAEL: "{0FB7CF2B-6991-412F-9139-5CC2208193ED}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM O90 - PUC: "878DB8CB4A19DDE498F8860E7543864B" . (.Iminent.) -- C:\Windows\Installer\{BC8BD878-91A4-4EDD-898F-68E0573468B4}\imbooster.ico =>Adware.IMBooster O90 - PUC: "B8713814E4D47A84297554B49AA067E0" . (.SweetPacks Toolbar for Internet Explorer 4.6.) -- C:\Windows\Installer\{4183178B-4D4E-48A7-9257-454BA90A760E}\ARPPRODUCTICON.exe =>PUP.SweetIM [MD5.A41CE7138CB96B9686FB0A808231BDB5] [WIS][24/11/2012] (.IMinent - IMinent Toolbar.) -- C:\Windows\Installer\36d92b.msi [208384] =>Adware.IMBooster [MD5.1646E3D2849898BB1E637034307C85D3] [WIS][11/12/2012] (.Babylon Ltd - Babylon Chrome Toolbar.) -- C:\Windows\Installer\3f7c5d.msi [34304] =>PUP.Babylon [MD5.8F550F62F9871CDBC66FEBBC110E1A41] [WIS][25/11/2012] (.Iminent - Iminent.) -- C:\Windows\Installer\65f15e.msi [1605120] =>Adware.IMBooster [MD5.F7C05D5EFCF04FEA7BD899D7FC1CA0BE] [WIS][25/11/2012] (.Boxore OU - Boxore Client Installer.) -- C:\Windows\Installer\65f168.msi [480256] =>Adware.Boxore SS - | Auto 10/07/1658 0 | (vToolbarUpdater14.0.0) . (...) - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.0.0\ToolbarUpdater.exe =>Toolbar.AVGSearch [HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater14.0.0] =>Toolbar.AVGSearch^ [HKLM\Software\Classes\Installer\Features\878DB8CB4A19DDE498F8860E7543864B] =>Adware.IMBooster [HKLM\Software\Classes\Installer\Products\878DB8CB4A19DDE498F8860E7543864B] =>Adware.IMBooster [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\878DB8CB4A19DDE498F8860E7543864B] =>Adware.IMBooster [HKLM\Software\Classes\Installer\Features\758F5690DAAD39F40845E0E23C8C5C0B] =>PUP.SweetIM [HKLM\Software\Classes\Installer\Products\758F5690DAAD39F40845E0E23C8C5C0B] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\758F5690DAAD39F40845E0E23C8C5C0B] =>PUP.SweetIM [HKLM\Software\Classes\Installer\Features\B8713814E4D47A84297554B49AA067E0] =>PUP.SweetIM [HKLM\Software\Classes\Installer\Products\B8713814E4D47A84297554B49AA067E0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B8713814E4D47A84297554B49AA067E0] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A] =>Adware.IMBooster [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011441179}] =>PUP.CrossRider [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\38D5CDD0A851B3940A43CC50ABBA251C] =>Adware.Boxore^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094] =>PUP.SweetIM^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\305B09CE8C53A214DB58887F62F25536] =>PUP.SweetIM^ C:\Users\lacreuse\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbffombmdffoemfimpemoaaplncjdgfm =>Toolbar.IncrediMail C:\WINDOWS\Tasks\temp_Plus-HD-3.5-enabler.job =>Adware.PlusHD^ C:\Windows\Installer\36d92b.msi =>Adware.IMBooster^ C:\Windows\Installer\3f7c5d.msi =>PUP.Babylon^ C:\Windows\Installer\65f15e.msi =>Adware.IMBooster^ C:\Windows\Installer\65f168.msi =>Adware.Boxore^ FirewallRAZ EmptyCLSID EmptyTemp EmptyFlash