Script zhpfix R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Google Inc. - Google Update.) (No version) -- (.not file.) O39 - APT: - (..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1750573336-3589473726-200751101-1000Core.job [1118] O39 - APT: - (..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1750573336-3589473726-200751101-1000UA.job [1140] O41 - Driver: (netfilter2) . (. - .) - C:\Windows\System32\drivers\netfilter2.sys (.not file.) [HKCU\Software\?? ?? ???? ????? ??? ?? ????] [HKLM\Software\McAfee] O43 - CFD: 16/02/2010 - 10:42:45 - [] ----D C:\Program Files\Alwil Software O43 - CFD: 12/07/2011 - 13:47:24 - [] ----D C:\Program Files\Spybot - Search & Destroy O43 - CFD: 16/02/2010 - 10:42:23 - [] ----D C:\ProgramData\Alwil Software O43 - CFD: 28/09/2009 - 10:54:44 - [] ----D C:\ProgramData\McAfee O43 - CFD: 18/06/2014 - 00:07:13 - [] ----D C:\ProgramData\Software =>Adware.Boxore O43 - CFD: 12/07/2011 - 13:21:42 - [] ----D C:\ProgramData\Spybot - Search & Destroy O53 - SMSR:HKLM\...\startupreg\command . (...) -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\KiesAirMessage [Key] . (...) -- C:\Program Files\Samsung\Kies\KiesAirMessage.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\KiesPreload [Key] . (...) -- C:\Program Files\Samsung\Kies\Kies.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\NTRedirect [Key] . (...) -- C:\Users\jean coco loulou\AppData\Roaming\BabSolution\Shared\enhancedNT.dll (.not file.) =>Hijacker.BabSolution O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Not Key.) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.google.com [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\NTRedirect] =>Hijacker.BabSolution^ [HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\HssSrv] =>Trojan.Adclicker [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity [HKLM\Software\Classes\CLSID\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011441179}] =>PUP.CrossRider C:\ProgramData\Software =>Adware.Boxore^ C:\ProgramData\{145B6A8D-C3A8-4F62-BF1A-E616EBBDF2B2} =>PUP.iMesh Emptytemp Emptyflash