Script ZHPFix FirewallRaz EmptyPrefetch EmptyTemp EmptyFlash [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS Client API DLL.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] © Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 [MD5.9AD0D1AAF2FDBE902FF6AC6F8C858C5F] - (.BitTorrent Inc. - WebHelper.) -- C:\Users\RA\AppData\Roaming\uTorrent\updates\3.4.5_41202\utorrentie.exe [336896] [PID.2380] Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 [MD5.9AD0D1AAF2FDBE902FF6AC6F8C858C5F] - (.BitTorrent Inc. - WebHelper.) -- C:\Users\RA\AppData\Roaming\uTorrent\updates\3.4.5_41202\utorrentie.exe [336896] [PID.2792] Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe © O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe © O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe © O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe © O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\RA\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe © Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1809513873-1977357641-2703349812-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe © O4 - HKUS\S-1-5-21-1809513873-1977357641-2703349812-1000\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\RA\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-21-1809513873-1977357641-2703349812-1000\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe © [MD5.00000000000000000000000000000000] [APT] [iToolsDaemon] (...) -- C:\Program Files (x86)\ThinkSky\iTools 3\iToolsDaemon.exe (.not file.) [0] Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 [MD5.00000000000000000000000000000000] [APT] [Lenovo\Lenovo Customer Feedback Program 64 35] (...) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe (.not file.) [0] Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 O43 - CFD: 2015/10/23 04:50:12 - [] D -- C:\Users\RA\AppData\Local\Temp O43 - CFD: 2015/09/15 02:44:00 - [0] SHD -- C:\Users\RA\AppData\Local\Temporary Internet Files Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 O45 - LFCP:[MD5.218465ACE0174C58936865D1BF882BCF] 2015/10/01 06:24:18 A -- C:\Windows\Prefetch\LUCKYBROWSE.EXE-B2199B63.pf =>PUP.Optional.LuckyBrowse O45 - LFCP:[MD5.5E299404A2CCF8D8EFBBBA3F2D3A9C3D] 2015/10/01 06:24:18 A -- C:\Windows\Prefetch\LUCKYBROWSESTARTER.EXE-7F3CB22C.pf =>PUP.Optional.LuckyBrowse Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 O53 - SMSR:HKLM\...\startupreg\avgnt [Key] . (...) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Avira Systray [Key] . (...) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (.not file.) Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 O87 - FAEL: "{38D28DA5-5972-40AF-9419-49C8C606077B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\LuckyBrowse\app\LuckyBrowse.exe (.not file.) =>PUP.Optional.LuckyBrowse O87 - FAEL: "{B225FAD3-DB00-4F68-AB40-5BA4D90F594B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\LuckyBrowse\app\LuckyBrowse.exe (.not file.) =>PUP.Optional.LuckyBrowse O87 - FAEL: "{E6503CE9-2A14-44B0-B568-0142A85A11BE}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\SimpleFiles.exe (.not file.) =>PUP.Optional.SimpleFiles O87 - FAEL: "{D700A30C-43DE-4E76-8A17-2794D2F910F7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\SimpleFiles.exe (.not file.) =>PUP.Optional.SimpleFiles O87 - FAEL: "{1CA9022D-50EE-47A9-A4EC-A2C258FA4959}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\downloader.exe (.not file.) =>PUP.Optional.SimpleFiles O87 - FAEL: "{DD476983-7F25-44FC-A458-3A031887F3AD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\downloader.exe (.not file.) =>PUP.Optional.SimpleFiles Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99 C:\Windows\Prefetch\LUCKYBROWSE.EXE-B2199B63.pf =>PUP.Optional.LuckyBrowse C:\Windows\Prefetch\LUCKYBROWSESTARTER.EXE-7F3CB22C.pf =>PUP.Optional.LuckyBrowse Read more at http://www.cjoint.com/c/EJxl31CSDlz#XuY1btIGkYtV36Te.99