Script zhpfix [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified G1 - GCS: Preference [User Data\Default] http://rws.search.ke.voila.fr G2 - GCE: Preference [User Data\Default] [amfclgbdpgndipgoegfpkkgobahigbcl] QuickShare Widget v.1.4, (Désactivé) =>PUP.QuickShare G2 - GCE: Preference [User Data\Default] [bopakagnckmlgajfccecajhnimjiiedh] McAfee Security Scan+ v.3.8.141.12 (Désactivé) G2 - GCE: Preference [User Data\Default] [fagpjgjmoaccgkkpjeoinehnoaimnbla] hola Toolbar v.1.1 (Désactivé) G2 - GCE: Preference [User Data\Default] [gaiilaahiahdejapggenmdmafpmbipje] DealPly v.3.5.3.0 (Désactivé) =>PUP.DealPly G2 - GCE: Preference [User Data\Default] [jcdgjdiieiljkfkdcloehkohchhpekkn] SweetIM for Facebook v.1.2.0.0 (Désactivé) =>PUP.SweetIM O3 - Toolbar: avast! Online Security - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O4 - GS\TaskBar [Kalinka]: HP Recommended.LNK . (...) -- C:\Program Files (x86)\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (.not file.) O4 - GS\Desktop [Kalinka]: ATTESTATION DE FORMATION.lnk . (...) -- C:\Users\Kalinka\Desktop\Docs HACCP\Face à face 2010\jeudi 20 et 27 janvier 2\ATTESTATION DE FORMATION.doc (.not file.) O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe O4 - HKCU\..\Run: [Hoolapp Android] C:\Users\Kalinka\AppData\Roaming\HOOLAP~1\Hoolapp.exe (.not file.) O4 - HKUS\S-1-5-21-99519806-947830735-3290860102-1001\..\Run: [Hoolapp Android] C:\Users\Kalinka\AppData\Roaming\HOOLAP~1\Hoolapp.exe (.not file.) O42 - Logiciel: QuickShare - (.Linkury Inc..) [HKLM][64Bits] -- {FFD64ABC-6A4B-4865-8323-44089793C57A} =>PUP.QuickShare [HKCU\Software\Hoolapp] O43 - CFD: 22/01/2014 - 20:11:31 - [43,420] ----D C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F} O45 - LFCP:[MD5.77DE0FD68E4ABB021C5B7822C883B142] - 23/03/2014 - 12:53:51 ---A- - C:\Windows\Prefetch\PLUS-HD-2.6-CODEDOWNLOADER.EX-FE314D94.pf =>Adware.PlusHD O45 - LFCP:[MD5.0B93244BEB099EE5EB0ADDCBAFF5F9EB] - 23/03/2014 - 12:53:51 ---A- - C:\Windows\Prefetch\PLUS-HD-2.6-ENABLER.EXE-BFFD0CE7.pf =>Adware.PlusHD O45 - LFCP:[MD5.9C03AD5C76E31A06B5DAD67B2491FED3] - 23/03/2014 - 12:53:53 ---A- - C:\Windows\Prefetch\IBSVC.EXE-3B798519.pf =>Adware.InstallBrain O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {85D9B06C-BEA1-4295-9090-5C26C8C4C101} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com =>Toolbar.eBay SS - | Demand 16/01/2014 289256 | (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [HKLM\Software\Google\Chrome\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl] =>PUP.QuickShare^ [HKLM\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje] =>PUP.DealPly^ [HKLM\Software\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn] =>PUP.SweetIM^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FFD64ABC-6A4B-4865-8323-44089793C57A}] =>PUP.QuickShare^ [HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] =>Toolbar.Bing [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110111991162}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111991162}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110111991162}] =>PUP.CrossRider [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ C:\Users\Kalinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl =>PUP.QuickShare^ C:\Users\Kalinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje =>PUP.DealPly^ C:\Users\Kalinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn =>PUP.SweetIM^ C:\Users\Kalinka\AppData\Local\Software =>Adware.Boxore C:\Users\Kalinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpfeggemggokijeahnacacopejaabljl =>Adware.PlusHD C:\Users\Kalinka\AppData\Local\Temp\uninst1.exe =>PUP.Babylon C:\Users\Kalinka\AppData\Local\Temp\BoxoreInstaller.exe =>Adware.Boxore C:\Users\Kalinka\AppData\Local\Temp\GoogleToolbarInstaller1.log =>PUP.Babylon Emptytemp Emptyflash