Script ZHPFix [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank O3 - Toolbar\WebBrowser: (no name) - [HKCU]{D3028143-6145-4318-99D3-3EDCE54A95A9} Orphan key O3 - Toolbar\WebBrowser: (no name) - [HKCU]{88C7F2AA-F93F-432C-8F0E-B7D85967A527} Orphan key O4 - GS\QuickLaunch [Polentzi]: µTorrent.lnk . (...) -- C:\Program Files (x86)\uTorrent\uTorrent.exe (.not file.) [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineCore] (...) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [GPUP] (...) -- C:\Program Files (x86)\GetPrivate\gpup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Optimizer Pro Schedule] (...) -- C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [TaskUserUpdate_wp] (...) -- C:\Users\Polentzi\AppData\Roaming\~aoyglgn.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [WIN-fdfEfEfAfC] (...) -- C:\Users\Polentzi\AppData\Roaming\~dgmgesr.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{066A6D1A-6F7A-4F08-813C-9C54C00873E6}] (...) -- C:\Program Files (x86)\Computer Updater\uninst.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{9E303E7A-6478-4DF9-9C78-F85B34750309}] (...) -- C:\Users\Polentzi\AppData\Roaming\omiga-plus\UninstallManager.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{EEF65099-D955-47EB-BE9D-23DB0403B1F7}] (...) -- C:\Users\Polentzi\AppData\Roaming\v9\UninstallManager.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{F5E6CB08-B43A-44E0-A7EC-6A29B5B8309F}] (...) -- C:\Program Files\Alwil Software\Avast5\aswRundll.exe (.not file.) [0] [HKCU\Software\McAfee] [HKCU\Software\BitTorrent] [HKCU\Software\IncrediMail] [HKCU\Software\UsbFix] [HKCU\Software\eMule] O43 - CFD: 2014/02/11 - 11:46:30 - [] ----D C:\ProgramData\Beware O43 - CFD: 2011/02/20 - 15:38:03 - [] ----D C:\ProgramData\eMule O43 - CFD: 2012/06/26 - 21:47:51 - [] ----D C:\ProgramData\McAfee O43 - CFD: 2011/06/09 - 22:57:06 - [] ----D C:\Users\Polentzi\AppData\Roaming\BitTorrent O43 - CFD: 2014/07/16 - 23:35:43 - [] ----D C:\Users\Polentzi\AppData\Roaming\deluge O43 - CFD: 2014/02/11 - 11:35:14 - [] ----D C:\Users\Polentzi\AppData\Roaming\uTorrent O43 - CFD: 2011/02/20 - 15:37:28 - [] ----D C:\Users\Polentzi\AppData\Local\eMule O53 - SMSR:HKLM\...\startupreg\cacaoweb [Key] . (...) -- C:\Users\Polentzi\AppData\Roaming\cacaoweb\cacaoweb.exe (.not file.) O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O61 - LFC: 2014/07/17 - 23:34:14 ---A- . (...) -- C:\Users\Polentzi\AppData\Local\Temp\fullpackage_temp1405620394\tmp\SupTab_v5.8.8.496.exe [2493320] O63 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\alloplayer (2)_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\alloplayer (2)_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent-7_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent-7_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BitTorrent_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Install_BubbleDock_FR_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pctuto_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\pctuto_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora 12_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SupTab_v5_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SupTab_v5_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\UpdatePCTuto_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\UpdatePCTuto_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\upstv_fr_4_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utorrent (1)_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utorrent (1)_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrentBarToolbarHelper1_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VuuPC_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\wpm_v20_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\wpm_v20_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\wp_update_RASMANCS [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\cacaoweb] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C9A6357B-25CC-4BCF-96C1-78736985D412}] [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] C:\ProgramData\Beware C:\Users\Polentzi\AppData\Roaming\BitTorrent C:\Users\Polentzi\AppData\Roaming\uTorrent EmptyFlash EmptyPrefetch ShortCutFix FirewallRAZ EmptyTemp SysRestore