Script ZHPFIX G2 - GCE: Preference [User Data\Default] [pbpohikckhbcljgombipcdoinkaedlfa] Smart Display v.1.6 (Activé) =>Spyware.SmartDisplay R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> =>Hijacker.Proxy R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:49207;https=127.0.0.1:49207 =>Hijacker.Proxy O4 - GS\Desktop [Zaika]: Youtube Downloader HD.lnk . (...) -- C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe =>PUP.Dealio O20 - AppInit_DLLs: . (...) - c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll (.not file.) =>PUP.BitGuard [MD5.00000000000000000000000000000000] [APT] [BrowserSafeguard Update Task] (...) -- C:\Program Files (x86)\Browsersafeguard\uninstall.browsersafeguard.exe (.not file.) [0] =>PUP.BrowserSafeguard [HKCU\Software\BrowseForTheCause] =>Adware.BrowseForTheCause [HKCU\Software\BrowsersafeguardInstalled] =>PUP.BrowserSafeguard [HKLM\Software\Wow6432Node\VBMZ] =>PUP.Duuqu O45 - LFCP:[MD5.EE3763D841ECC1DF6F6F65BCBAF65A69] - 04/01/2014 - 10:04:40 ---A- - C:\Windows\Prefetch\BROWSERSAFEGUARD.EXE-4F271D84.pf =>PUP.BrowserSafeguard [HKLM\Software\Google\Chrome\Extensions\pbpohikckhbcljgombipcdoinkaedlfa] =>Spyware.SmartDisplay^ [HKCU\Software\BrowseForTheCause] =>Adware.BrowseForTheCause [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma [HKCU\Software\USyndication] =>Trojan.USyndication [HKCU\Software\usyndication.com] =>Trojan.USyndication [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^ C:\Users\Zaika\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbpohikckhbcljgombipcdoinkaedlfa =>Spyware.SmartDisplay^ [HKCU\Software\BrowsersafeguardInstalled] =>PUP.BrowserSafeguard^ O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline O4 - GS\Program [Zaika]: Create Amazing Presentations.lnk - Clé orpheline O4 - GS\Desktop [Zaika]: Bureau.lnk - Clé orpheline O4 - GS\Desktop [Zaika]: Create Amazing Presentations.lnk - Clé orpheline O44 - LFC:[MD5.4AE6FB0D10025C904C3347911635DFC7] - 01/01/2014 - 21:21:32 ----- . (...) -- C:\UsbFix [Scan 2] VAIO.txt [10768] O44 - LFC:[MD5.49B06FE573D9ED2202105224CDA7670F] - 02/01/2014 - 19:53:49 ----- . (...) -- C:\UsbFix [Scan 4] VAIO.txt [10951] O44 - LFC:[MD5.DAE5950EAACBDB53D45104A32049BF3C] - 04/01/2014 - 09:58:59 ---A- . (...) -- C:\UsbFix [Clean 1] VAIO.txt [14473] O45 - LFCP:[MD5.380A0C95F73536F4AABF361FA05784FC] - 03/01/2014 - 10:45:12 ---A- - C:\Windows\Prefetch\dynreservedpri.db O45 - LFCP:[MD5.2910E1F305438351BB9949EECE2EE000] - 04/01/2014 - 10:04:29 ---A- - C:\Windows\Prefetch\YANDEXDISK.EXE-E0A388BD.pf O45 - LFCP:[MD5.0A4E7CD2E9D8CFE213E359169D4E0368] - 04/01/2014 - 10:04:30 ---A- - C:\Windows\Prefetch\YANDEXDISKSTARTER.EXE-5E58F696.pf O45 - LFCP:[MD5.D5E4C3D6D0F194959B0EC0064CF53F92] - 04/01/2014 - 10:04:30 ---A- - C:\Windows\Prefetch\YANDEXDISKSTARTER.EXE-F1C051FD.pf O45 - LFCP:[MD5.72316BFB64F00882336019D4B3DED390] - 04/01/2014 - 14:04:31 ---A- - C:\Windows\Prefetch\YUPDATE-EXEC.EXE-10BFD80F.pf O45 - LFCP:[MD5.B8C0A886384307205186CC27F66923EB] - 04/01/2014 - 16:43:09 ---A- - C:\Windows\Prefetch\INSTUP.EXE-993E6BBE.pf O45 - LFCP:[MD5.0D4350F587F0864B7943B587884B1B99] - 04/01/2014 - 16:44:14 ---A- - C:\Windows\Prefetch\REGSVR64.EXE-6CC67C55.pf O45 - LFCP:[MD5.522FFD2B99B78C85083760F2B88603EE] - 04/01/2014 - 16:44:46 ---A- - C:\Windows\Prefetch\SETUPINF64.EXE-A03609AE.pf O45 - LFCP:[MD5.377AF4493EB6453D1B443B96C9F19AC9] - 04/01/2014 - 21:20:15 ---A- - C:\Windows\Prefetch\UPNP.EXE-B956C208.pf O45 - LFCP:[MD5.24D4C406F0E8EFCE51857FE6AF593B53] - 04/01/2014 - 21:34:22 ---A- - C:\Windows\Prefetch\AVPUI.EXE-0014D051.pf O45 - LFCP:[MD5.1F0491EC710674E78570AA5E33D33C14] - 04/01/2014 - 23:11:41 ---A- - C:\Windows\Prefetch\VESMGRSUB.EXE-5F3BF9F4.pf O45 - LFCP:[MD5.600E5443BD63B16335C785745611F4A4] - 04/01/2014 - 23:14:14 ---A- - C:\Windows\Prefetch\AVPUI.EXE-0014D052.pf O45 - LFCP:[MD5.CF1E7493A4E61D9781B21539004D3BC8] - 04/01/2014 - 23:16:05 ---A- - C:\Windows\Prefetch\KLDW.EXE-0F3961E2.pf O45 - LFCP:[MD5.05822EE0BEF28552EF71EE024D7E083F] - 04/01/2014 - 23:20:48 ---A- - C:\Windows\Prefetch\BTPRELOAD.EXE-25904399.pf O45 - LFCP:[MD5.DE6714093AB27871C21E7947AEBD3365] - 04/01/2014 - 23:36:55 ---A- - C:\Windows\Prefetch\WGET.DAT-CE0B13B2.pf O45 - LFCP:[MD5.AC0D77F30D27277D36C3F0088F1AC4FA] - 04/01/2014 - 23:37:04 ---A- - C:\Windows\Prefetch\JRT.EXE-A1E501C6.pf O45 - LFCP:[MD5.B44F695FE5EDBE56ED56B6CEE5480540] - 04/01/2014 - 23:43:34 ---A- - C:\Windows\Prefetch\FC.EXE-7DF17DA8.pf O45 - LFCP:[MD5.83459C55D246A36BA2359F5F4F6C497D] - 04/01/2014 - 23:44:00 ---A- - C:\Windows\Prefetch\CUT.DAT-B1587AC3.pf O45 - LFCP:[MD5.4C0D3F99B42FF184CEDA6BF05DBD07F2] - 04/01/2014 - 23:44:40 ---A- - C:\Windows\Prefetch\FIND.EXE-FE8E5D50.pf O45 - LFCP:[MD5.881B1072D4E7ABC8793380D4DA771FF2] - 04/01/2014 - 23:45:37 ---A- - C:\Windows\Prefetch\SHORTCUT.DAT-995FF813.pf O45 - LFCP:[MD5.E8387C7D54C36FB6E23EC2BCB308A2DE] - 04/01/2014 - 23:45:46 ---A- - C:\Windows\Prefetch\NIRCMD.DAT-4742AE38.pf O45 - LFCP:[MD5.0DD699FFF8D951D8895A8E161091583D] - 05/01/2014 - 00:09:55 ---A- - C:\Windows\Prefetch\VCGU.EXE-70C9FDA9.pf O45 - LFCP:[MD5.EF2ADEBA14DA12797F94FA1A774C39EB] - 05/01/2014 - 00:09:55 ---A- - C:\Windows\Prefetch\VESSHELLEXEPROXY.EXE-7B0CBAD0.pf O63 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix [MD5.F0A5B44B9B8A23E2F2950B346B5C7718] [SPRF][23/12/2013] (...) -- C:\Users\Zaika\AppData\Local\Temp\Quarantine.exe [360051] O4 - HKUS\S-1-5-18\..\Run: [SearchProtect] Clé orpheline =>Toolbar.Conduit O69 - SBI: SearchScopes [HKCU] {02ABCB0B-D398-4E5E-B6F3-0D9F180D1123} [DefaultScope] - (eBay) - http://rover.ebay.com =>Toolbar.eBay [HKLM\Software\Wow6432Node\VBMZ] =>Toolbar.Conduit proxyfix sysrestore emptyflash emptytemp shortcutfix