Script ZHPFix EmptyFlash EmptyTemp FirewallRAZ ShortcutFix Prefetcher SysRestore O23 - Service: Update snipsmart (Update snipsmart) . (...) - C:\Program Files (x86)\snipsmart\updatesnipsmart.exe (.not file.) =>PUP.Optional.snipsmart [MD5.00000000000000000000000000000000] [APT] [ASP] (...) -- C:\Program Files (x86)\RCP\systweakasp.exe (.not file.) [0] (.Activate.) =>.Superfluous.Systweak [MD5.17B0ED32D0FD1DAF7839DFD06E80F956] [APT] [avastBCLRestartS-1-5-21-4137638789-2575107662-1946000985-1000] (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [881304] (.Activate.) =>.Google IncĀ® [MD5.00000000000000000000000000000000] [APT] [PCDDataUploadTask] (...) -- uaclauncher.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [PCDEventLauncherTask] (...) -- Inc. (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [SystemToolsDailyTest] (...) -- uaclauncher.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{D2261F49-8AAE-40D0-81C9-E9D86009124B}] (...) -- C:\Program Files (x86)\Google\Google SketchUp 7\uninstall.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty O39 - APT: ASP - (...) -- C:\Windows\System32\Tasks\ASP [3290] (.Orphean.) =>.Superfluous.Systweak O39 - APT: PCDDataUploadTask - (...) -- C:\Windows\System32\Tasks\PCDDataUploadTask [3336] (.Orphean.) =>.Superfluous.Orphean O39 - APT: PCDEventLauncherTask - (...) -- C:\Windows\System32\Tasks\PCDEventLauncherTask [3484] (.Orphean.) =>.Superfluous.Orphean O39 - APT: SystemToolsDailyTest - (...) -- C:\Windows\System32\Tasks\SystemToolsDailyTest [3212] (.Orphean.) =>.Superfluous.Orphean G0 - GCSP: Preferences [User Data\Default][HomePage] http://android.clients.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients4.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh4.googleusercontent.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://istart.webssearches.com/ =>PUP.Optional.IsStart G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.delta-homes.com/ =>PUP.Optional.Qvo6 P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml =>PUP.Optional.WebsSearches O4 - HKCU\..\Run: [WindApp] C:\Users\ph\AppData\Roaming\Store\WindApp\WindApp Update.exe (.not file.) =>PUP.Optional.Nosibay OPT:O4 - HKCU\..\Run: [Xvid] . (...) -- C:\Program Files (x86)\Xvid\CheckUpdate.ps1 O4 - HKCU\..\Run: [SysinfY2X] C/c start wscript /e:VBScript.Encode %temp%\SysinfY2X.db O4 - HKCU\..\Run: [moZe67] C/c start wscript /e:VBScript.Encode %temp%\moZe67.wav O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (.not file.) O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak HKLM\SOFTWARE\Wow6432Node\webssearchesSoftware =>PUP.Optional.WebsSearches HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\systweak =>.Superfluous.Systweak O43 - CFD: 03/11/2014 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore O43 - CFD: 04/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 03/11/2014 - [0] D -- C:\Users\ph\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock O43 - CFD: 03/11/2014 - [0] D -- C:\Users\ph\AppData\Roaming\Store =>PUP.Optional.Nosibay O43 - CFD: 03/11/2014 - [0] D -- C:\Users\ph\AppData\Roaming\Systweak =>.Superfluous.Systweak O43 - CFD: 06/11/2014 - [] D -- C:\Users\ph\AppData\Roaming\VOPackage =>PUP.Optional.Downware O43 - CFD: 03/11/2014 - [] D -- C:\Users\ph\AppData\Local\Software =>PUP.Optional.Boxore O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Internet Explorer\iexplore.ex http://istart.webssearches.com/ =>PUP.Optional.IsStart O69 - SBI: SearchScopes [HKCU] {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} - (Trovi search) - http://www.trovi.com/ =>PUP.Optional.Trovigo O87 - FAEL: "{92A603DC-F6B6-4623-89D4-C2333DD19CA6}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (.not file.) O87 - FAEL: "{A9931A81-8B4E-4B8C-962A-F6AB50B6C1F3}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (.not file.) O87 - FAEL: "{58AA6CAA-59AD-4BFC-8CDD-705587ACC2BF}" [In-None-P17-TRUE] .(...) -- C:\Program Files\dell stage\dell stage\accuweather\accuweather.exe (.not file.) O87 - FAEL: "{CA0AA714-D20C-4958-B880-4A5EE57CBF71}" [In-None-P17-TRUE] .(...) -- C:\Program Files\dell stage\musicstage\musicstageengine.exe (.not file.) O87 - FAEL: "{83122102-A8F7-4BF7-B5FC-0D917E360C93}" [In-None-P17-TRUE] .(...) -- C:\Program Files\dell stage\dell stage\stage_primary.exe (.not file.) O87 - FAEL: "TCP Query User{F68C95DE-42C4-40F4-85F8-A6D3BABB8DE5}C:\program files (x86)\konica minolta\ftp utility\kmftp.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\konica minolta\ftp utility\kmftp.exe (.not file.) O87 - FAEL: "UDP Query User{C71C37B4-43D6-49D3-A391-21F962334EDA}C:\program files (x86)\konica minolta\ftp utility\kmftp.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\konica minolta\ftp utility\kmftp.exe (.not file.) O87 - FAEL: "{05C7718D-C9D6-407B-82E6-A19E96DC4864}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.) O87 - FAEL: "{6D4CCF49-551B-459C-AC84-35B68525DC71}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.) HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASAPI32 =>PUP.Optional.BubbleDock HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASMANCS =>PUP.Optional.BubbleDock HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASAPI32 =>PUP.Optional.BubbleDock HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASMANCS =>PUP.Optional.BubbleDock HKLM\SYSTEM\CurrentControlSet\Services\Update snipsmart =>PUP.Optional.snipsmart C:\Windows\System32\Tasks\ASP =>.Superfluous.Systweak C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml =>PUP.Optional.WebsSearches HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak HKLM\SOFTWARE\Wow6432Node\webssearchesSoftware =>PUP.Optional.WebsSearches HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\systweak =>.Superfluous.Systweak C:\Program Files (x86)\Software =>PUP.Optional.Boxore C:\Users\ph\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock C:\Users\ph\AppData\Roaming\Store =>PUP.Optional.Nosibay C:\Users\ph\AppData\Roaming\Systweak =>.Superfluous.Systweak C:\Users\ph\AppData\Roaming\VOPackage =>PUP.Optional.Downware C:\Users\ph\AppData\Local\Software =>PUP.Optional.Boxore HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} =>PUP.Optional.Trovigo HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASAPI32 =>PUP.Optional.BubbleDock HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASMANCS =>PUP.Optional.BubbleDock HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASAPI32 =>PUP.Optional.BubbleDock HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASMANCS =>PUP.Optional.BubbleDock