Script ZHPFix O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EF79F67A-6AD7-4715-A0F8-932FCA442023} Clé orpheline => Toolbar.Conduit O43 - CFD: 27/11/2012 - 15:56:24 - [23,535] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} => Toolbar.TuneUp O69 - SBI: SearchScopes [HKCU] {39905FA0-7B45-42B8-90C3-16D15CBB7115} - (eBay) - http://rover.ebay.com =>Toolbar.eBay [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D6533F74-218B-41BE-9D91-5BD471FECFFD}] =>Toolbar.Conduit [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E9E8EB35-FF77-455D-B677-91E5E4FC06C2}] =>Toolbar.Freemake C:\Users\Bruno\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjamchknccokmaecnbknhbfhaicfafd =>Toolbar.RadioPlayer [MD5.00000000000000000000000000000000] [APT] [Express Files Updater] (...) -- C:\Program Files (x86)\ExpressFiles\EFupdater.exe (.not file.) [0] =>Adware.ExpressFiles O41 - Driver: (iSafeNetFilter) . (. - .) - C:\Program Files (x86)\iSafe\iSafeNetFilter.sys (.not file.) =>Trojan.Staser O42 - Logiciel: Re-markit - (.Re-markit Software.) [HKLM][64Bits] -- {26929a71-d8ea-48d0-84f5-7572975aed95} =>PUP.ReMarkIt [HKLM\Software\Wow6432Node\Better-Surf] =>PUP.BetterSurf [HKLM\Software\Wow6432Node\SweetIM] =>PUP.SweetIM [HKLM\Software\Wow6432Node\iSafe] =>Trojan.Staser O43 - CFD: 01/01/2014 - 00:42:53 - [5,131] ----D C:\ProgramData\InstallMate =>PUP.Tarma O43 - CFD: 27/11/2012 - 15:40:33 - [0] ----D C:\Users\Bruno\AppData\Roaming\Ignite => Infection PUP (Adware.OpenCandy) O53 - SMSR:HKLM\...\startupreg\tuto4pc_fr_22 [Key] . (...) -- C:\Program Files (x86)\tuto4pc_fr_22\tuto4pc_fr_22.exe (.not file.) =>PUP.Eorezo [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{26929a71-d8ea-48d0-84f5-7572975aed95}] =>PUP.ReMarkIt^ [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\tuto4pc_fr_22] =>PUP.Eorezo^ [HKLM\Software\Wow6432Node\SweetIM] =>PUP.SweetIM [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma [HKLM\Software\Wow6432Node\Google\Chrome\Extensions\dcmagccbogebndpoodhhhafmofelpffh] =>PUP.RewardsArcade [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011221158}] =>PUP.CrossRider C:\ProgramData\InstallMate =>PUP.Tarma^ C:\Users\Bruno\AppData\LocalLow\searchcoreband =>Adware.Bandoo [HKLM\Software\Wow6432Node\Better-Surf] =>PUP.BetterSurf^ [HKLM\Software\Wow6432Node\iSafe] =>Trojan.Staser^ R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = erride; O20 - AppInit_DLLs: . (...) - C:\Program Files (x86)\GS-ENA~1\ASSIST~2.dll (.not file.) O23 - Service: GS-Supporter (e81a9dc1) . (...) - C:\Program Files (x86)\gs-ena~1\AssistantSvc.dll O23 - Service: SaismagServer (SaismagService) . (...) - H:\Saismag\SaismagServer.exe (.not file.) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GS-Enabler-S-960308484.job [440] [MD5.00000000000000000000000000000000] [APT] [{5E15EEFF-45D8-4B54-92EE-865233F5C95E}] (...) -- H:\Office10\MSOFFICE.exe (.not file.) [0] => Fichier absent [MD5.F8BCB551176FE79DE00A79508C620CC8] [APT] [{70C1015F-A9BE-44F2-93FB-46BA20DC6EE2}] (...) -- F:\Bruno STOCK\APPLIS\Traitement de Texte\SkZ-MS_Office_2010_x64\SkZ-Install_MS_Office_2010_x64.exe [294400] [MD5.00000000000000000000000000000000] [APT] [{89A90C70-2D82-4C6C-B179-CDC7220E5A8E}] (...) -- H:\Office10\MSOFFICE.exe (.not file.) [0] => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{9077B6EB-EBB2-42D4-ADF0-DFA1742C0C61}] (...) -- H:\Office10\MSOFFICE.exe (.not file.) [0] => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{927C8427-57F8-4BF3-818D-936B9F1DB6BD}] (...) -- H:\APPLI\DivX\DivXCodecUninstall.exe (.not file.) [0] => Fichier absent [MD5.00000000000000000000000000000000] [APT] [{AC02ED8C-917D-4793-9EA5-A2B342434A0F}] (...) -- C:\Users\Bruno\Downloads\avira_antivirus_premium_fr.exe (.not file.) [0] ShortcutFix FirewallRaz EmptyFlash Emptytemp SysRestore