Script ZHPFix P2 - FPN: [HKLM] [@viewpoint.com/VMP] - (.Pas de propriétaire - MetaStream 3 Plugin r4.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll =>Adware.MetaStream R3 - URLSearchHook: agihelper.AGUtils - {0BC6E3FA-78EF-4886-842C-5A1258C4455A} . (.Pas de propriétaire - MetaStream 3 Plugin r4.) (No version) -- (.not file.) =>Adware.MetaStream R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Pas de propriétaire - MetaStream 3 Plugin r4.) (No version) -- (.not file.) =>Adware.MetaStream O2 - BHO: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{6638A9DE-0745-4292-8A2E-AE530E7B9B3F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{EEE6C35B-6118-11DC-9C72-001320C79847} Clé orpheline O42 - Logiciel: Favorit (xhycsct) - (...) [HKLM] -- xhycsct =>Adware.Favorit [HKLM\Software\MetaStream] =>Adware.MetaStream [HKLM\Software\OpenCandy] =>Adware.OpenCandy O43 - CFD: 17/01/2009 - 10:51:30 - [2,174] ----D C:\Users\geant\AppData\Local\live-player O59 - HSMI:Heuristic Search MagicControl Infection - (...) -- C:\Users\geant\AppData\Local\gnmut_nav.dat O59 - HSMI:Heuristic Search MagicControl Infection - (...) -- C:\Users\geant\AppData\Local\gnmut_navps.dat O59 - HSMI:Heuristic Search MagicControl Infection - (...) -- C:\Users\geant\AppData\Local\gnmut.dat O69 - SBI: SearchScopes [HKCU] {0BC6E3FA-78EF-4886-842C-5A1258C4455A} [DefaultScope] - (Search the Web) - http://search.imgag.com =>Adware.IMBooster O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Search the web) - http://isearch.babylon.com =>Adware.IMBooster O69 - SBI: SearchScopes [HKCU] {EEE6C360-6118-11DC-9C72-001320C79847} - (SweetIM Search) - http://search.sweetim.com =>PUP.SweetIM O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0BC6E3FA-78EF-4886-842C-5A1258C4455A} [DefaultScope] - (Search the Web) - http://search.imgag.com =>Adware.IMBooster O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0BC6E3FA-78EF-4886-842C-5A1258C4455A} [DefaultScope] - (Search the Web) - http://search.imgag.com =>Adware.IMBooster [MD5.020953145015A725E7C5545054B4F3E6] [SPRF][16/09/2013] (...) -- C:\Users\geant\AppData\Local\gnmut.dat [3232] [MD5.FA8FA231AECAEACB1D2966E3715A3FB7] [SPRF][09/09/2010] (...) -- C:\Users\geant\AppData\Local\gnmut_nav.dat [305012] [MD5.C8E2D492F5849B9A2CB6B877D808BAC3] [SPRF][16/09/2013] (...) -- C:\Users\geant\AppData\Local\gnmut_navps.dat [3248] WARNING : Adware.Navipromo/MagicControl found in registry or folder [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\xhycsct] =>Adware.Favorit^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}] =>Toolbar.Kiwee [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}] =>Toolbar.Kiwee [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}] =>Toolbar.Kiwee [HKLM\Software\Classes\CLSID\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}] =>Toolbar.Kiwee [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0bc6e3fa-78ef-4886-842c-5a1258c4455a}] =>Toolbar.Kiwee [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}] =>Toolbar.Babylon [HKLM\Software\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}] =>Adware.MetaStream [HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}] =>Adware.MetaStream [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{23a287db-449a-462f-bde1-8635a61671ce}] =>Adware.BHO [HKLM\Software\Classes\Interface\{3e16a203-c0aa-4d44-acc5-38a70a8c76da}] =>Toolbar.Kiwee [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}] =>Toolbar.Kiwee [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6638a9de-0745-4292-8a2e-ae530e7b9b3f}] =>Toolbar.Kiwee [HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6e15d3c4-c6fc-4f02-b130-77cc5b1f09db}] =>Toolbar.Kiwee [HKLM\Software\Classes\CLSID\{761f6a83-f007-49e4-8eac-cdb6808ef06f}] =>PUP.Eorezo [HKLM\Software\Classes\CLSID\{76c45b18-a29e-43ea-aaf8-af55c2e1ae17}] =>PUP.Eorezo [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87A0B80B-5BA7-4CB0-9553-105D68777D60}] =>Adware.BHO [HKLM\Software\Classes\CLSID\{96ef404c-24c7-43d0-9096-4ccc8bb7ccac}] =>PUP.Eorezo [HKLM\Software\Classes\CLSID\{97720195-206a-42ae-8e65-260b9ba5589f}] =>PUP.Eorezo [HKLM\Software\Classes\CLSID\{97d69524-bb57-4185-9c7f-5f05593b771a}] =>PUP.Eorezo [HKLM\Software\Classes\CLSID\{986f7a5a-9676-47e1-8642-f41f8c3fcf82}] =>PUP.Eorezo [HKLM\Software\Classes\AppID\{a5461fca-320c-4d6f-a150-a53823ce8142}] =>Toolbar.Kiwee [HKLM\Software\Classes\CLSID\{b18788a4-92bd-440e-a4d1-380c36531119}] =>PUP.Eorezo [HKLM\Software\Classes\TypeLib\{c7403c30-3644-43d8-a82f-4bd84b9682d9}] =>Toolbar.Kiwee [HKLM\Software\Classes\AppID\contenthandler.dll] =>Toolbar.Kiwee [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Live-Player] =>Adware.Navipromo [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer] =>Adware.MetaStream [HKLM\Software\Classes\ag.mediaplayercom] =>Toolbar.Kiwee [HKLM\Software\Classes\agihelper.agutils] =>Adware.BHO [HKLM\Software\Classes\axmetastream.metastreamctl] =>Adware.MetaStream [HKLM\Software\Classes\axmetastream.metastreamctl.1] =>Adware.MetaStream [HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary] =>Adware.MetaStream [HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1] =>Adware.MetaStream [HKLM\Software\Classes\contenthandler.contentselection] =>Toolbar.Kiwee [HKLM\Software\Classes\contenthandler.contentselection.1] =>Toolbar.Kiwee [HKLM\Software\Classes\imside1egate.application.1] =>Adware.BHO [HKLM\Software\Classes\kiweeietoolbar.kiweetoolbar] =>Toolbar.Kiwee [HKLM\Software\Classes\kiweeietoolbar.kiweetoolbar.1] =>Toolbar.Kiwee [HKLM\Software\Classes\kiweeietoolbar.toolbarinfo] =>Toolbar.Kiwee [HKLM\Software\Classes\kiweeietoolbar.toolbarinfo.1] =>Toolbar.Kiwee [HKLM\Software\MetaStream] =>Adware.MetaStream [HKLM\Software\Viewpoint] =>Adware.MetaStream [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer] =>Adware.MetaStream [HKLM\Software\MozillaPlugins\@viewpoint.com/VMP] =>Adware.MetaStream [HKLM\Software\Classes\Prod.cap] =>Toolbar.Babylon [HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks]:{0BC6E3FA-78EF-4886-842C-5A1258C4455A} =>Adware.MetaStream^ [HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{6638a9de-0745-4292-8a2e-ae530e7b9b3f} =>Toolbar.Kiwee [HKLM\Software\Mozilla\Firefox\Extensions]:toolbar@kiwee.com =>Toolbar.Kiwee C:\Program Files\Viewpoint =>Adware.MetaStream C:\ProgramData\Viewpoint =>Adware.MetaStream C:\Users\geant\AppData\Roaming\AGI =>Toolbar.Kiwee C:\Users\geant\AppData\Local\Live-Player =>Adware.Navipromo C:\Users\geant\AppData\LocalLow\AGI =>Toolbar.Kiwee C:\Users\geant\AppData\LocalLow\Kiwee Toolbar =>Toolbar.Kiwee C:\Program Files\MediaCoder\OpenCandy =>Adware.OpenCandy [HKLM\Software\OpenCandy] =>Adware.OpenCandy^ [HKCU\Software\Regsk] [MD5.204358C6C762132B3A8572F1A83195E1] [SPRF][17/09/2013] (...) -- C:\ProgramData\nvModes.dat [108937] [HKCU\Software\AGI] [HKLM\Software\AGI] O43 - CFD: 14/01/2009 - 20:51:30 - [0,000] ----D C:\Users\geant\AppData\Roaming\agi O43 - CFD: 15/04/2012 - 17:36:27 - [0] ----D C:\Users\geant\AppData\Local\Pando O2 - BHO: Download Manager Browser Helper Object - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} . (.Protect Software GmbH - Download Manager Helper.) -- C:\Program Files\Common Files\fluxDVD\Download Manager\XEBDLHelper.dll O3 - Toolbar: @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation - Bing Bar.) -- C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll =>Toolbar.Bing O3 - Toolbar\WebBrowser: (no name) - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} Clé orpheline [HKCU\Software\Softonic] =>Toolbar.Conduit [HKCU\Software\YahooPartnerToolbar] =>Toolbar.Yahoo [HKCU\Software\yahooinstall] =>Toolbar.Yahoo [HKLM\Software\Conduit] =>Toolbar.Conduit [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}] =>Toolbar.Ask [HKCU\Software\Softonic] =>Toolbar.Conduit [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{8dcb7100-df86-4384-8842-8fa844297b3f} =>Toolbar.Bing^ C:\Users\geant\AppData\LocalLow\Conduit =>Toolbar.Conduit C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll =>Toolbar.Bing^ [HKCU\Software\YahooPartnerToolbar] =>Toolbar.Yahoo^ [HKCU\Software\yahooinstall] =>Toolbar.Yahoo^ [HKLM\Software\Conduit] =>Toolbar.Conduit^