Script ZHPFix G0 - GCSP: Preference [User Data\Default] http://www.default-search.net? =>Hijacker.SearchNet G1 - GCS: Preference [User Data\Default] http://search.conduit.com M2 - MFEP: prefs.js [soso - 9ltrz0l7.default\{0AF2132C-D508-1D6C-F240-7AAAB6C9E66D}] [] Ask New Tabs v5.0.0.12144 (..) =>Adware.Bandoo M2 - MFEP: prefs.js [soso - 9ltrz0l7.default\{35FB143E-3B2D-374D-E78E-3E8B20AB8C9C}] [] Settings Manager v5.0.0.12283 (..) =>PUP.SystemK O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{21FA44EF-376D-4D53-9B0F-8A89D3229068} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EE5D279F-081B-4404-994D-C6B60AAEBA6D} Clé orpheline O4 - GS\QuickLaunch [soso]: iLivid.lnk . (...) -- C:\Users\soso\AppData\Local\iLivid\iLivid.exe (.not file.) =>Adware.Bandoo O4 - GS\TaskBar [soso]: Mobogenie.lnk . (...) -- C:\Program Files (x86)\Mobogenie\Mobogenie.exe (.not file.) =>PUP.Mobogenie [MD5.00000000000000000000000000000000] [APT] [4633] (...) -- C:\Users\soso\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0] O39 - APT: - (..) -- C:\Windows\Tasks\Lyric Star Update.job [392] =>Adware.AddLyrics O39 - APT: - (..) -- C:\Windows\System32\Tasks\Lyric Star Update [392] =>Adware.AddLyrics O69 - SBI: SearchScopes [HKCU] {03F2C886-85BF-47C9-B347-81A3E370D63A} [DefaultScope] - (Mysearchdial) - http://start.mysearchdial.com =>Adware.MyWebSearch O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} - (default-search.net) - http://www.default-search.net =>Hijacker.SearchNet O90 - PUC: "A81E737A17150D040843D72D34240018" . (.Software Updater.) -- C:\Windows\Installer\{A737E18A-5171-40D0-8034-7DD243420081}\icon.ico =>PUP.Eorezo [MD5.F92D7841AE9454E855955BAF9CC88DCC] [WIS][18/02/2011] (.Secure Digital Services - Widestream6.) -- C:\Windows\Installer\29d5aec.msi [3361280] =>Adware.SPointer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\eorezo_RASAPI32 =>PUP.Eorezo HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\eorezo_RASMANCS =>PUP.Eorezo HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\HappyLyrics_2802-7edf9df5_RASAPI32 =>Adware.AddLyrics HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\HappyLyrics_2802-7edf9df5_RASMANCS =>Adware.AddLyrics HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iMeshMediaBar_RASAPI32 =>PUP.iMesh HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iMeshMediaBar_RASMANCS =>PUP.iMesh HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iMesh_V10_en_Setup_RASAPI32 =>PUP.iMesh HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iMesh_V10_en_Setup_RASMANCS =>PUP.iMesh HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\LyricStarUpdater_RASAPI32 =>Adware.AddLyrics HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\LyricStarUpdater_RASMANCS =>Adware.AddLyrics HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tiger savings-bg_RASAPI32 =>PUP.SpecialSavings HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tiger savings-bg_RASMANCS =>PUP.SpecialSavings HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Tiger Savings_RASAPI32 =>PUP.SpecialSavings HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Tiger Savings_RASMANCS =>PUP.SpecialSavings HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASAPI32 =>PUP.WebGet HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASMANCS =>PUP.WebGet HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASAPI32 =>PUP.WebGet HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASMANCS =>PUP.WebGet HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\widestream6_air_RASAPI32 =>Adware.SPointer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\widestream6_air_RASMANCS =>Adware.SPointer HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\YontooDesktop_RASAPI32 =>Adware.Yontoo HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\YontooDesktop_RASMANCS =>Adware.Yontoo [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =>Toolbar.Ask [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB525538DB364CE4495200ECDA84942C] =>Adware.SPointer [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =>Toolbar.Ask [HKLM\Software\Classes\Applications\iMeshV10 (1).exe] =>PUP.iMesh [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma [HKCU\Software\AppDataLow\Software\LyricStar] =>Adware.AddLyrics [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\eSafeSvc] =>PUP.eSafeSecurity [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110111271167}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110111271167}] =>PUP.CrossRider [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110111271167}] =>PUP.CrossRider [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}] =>Adware.Bandoo^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ C:\Users\soso\AppData\Roaming\Mozilla\Firefox\Profiles\9ltrz0l7.default\extensions\{0AF2132C-D508-1D6C-F240-7AAAB6C9E66D} =>Adware.Bandoo^ C:\Users\soso\AppData\Roaming\Mozilla\Firefox\Profiles\9ltrz0l7.default\extensions\{35FB143E-3B2D-374D-E78E-3E8B20AB8C9C} =>PUP.SystemK^ C:\Windows\Tasks\Lyric Star Update.job =>Adware.AddLyrics^ C:\Windows\System32\Tasks\Lyric Star Update =>Adware.AddLyrics C:\Windows\Installer\29d5aec.msi =>Adware.SPointer^ C:\Users\soso\AppData\Local\Temp\nsb9216.exe =>Toolbar.Conduit C:\Users\soso\AppData\Local\Temp\nsg962C.exe =>Toolbar.Conduit C:\Users\soso\AppData\Local\Temp\nshC741.exe =>Toolbar.Conduit C:\Users\soso\AppData\Local\Temp\nsnBF.exe =>Toolbar.Conduit C:\Users\soso\AppData\Local\Temp\nsr8E2F.exe =>Toolbar.Conduit C:\Users\soso\AppData\Local\Temp\nswBEC6.exe =>Toolbar.Conduit C:\Users\soso\AppData\Local\Temp\nswC359.exe =>Toolbar.Conduit FirewallRaz EmptyFlash Emptytemp ShortcutFix