Script ZHPFix G2 - GCE: Preference [User Data\Default] [afjegdojkkoghnbiollpogeeimocanmk] SupraSavings v.5.0, (Activé) =>PUP.SupraSavings G2 - GCE: Preference [User Data\Default] [cjcmpicjhnkfmkehehaanpfijomlhbbp] BetterDeals-11 v.1.26.37, (Activé) =>PUP.BetterDeals R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com =>Hijacker.SmartBar [HKLM\Software\Wow6432Node\BetterDeals-11] =>PUP.BetterDeals O44 - LFC:[MD5.13014E17D8DB6432FAB9BB94E01BDBF2] - 05/05/2014 - 15:57:35 ---A- . (.System Speedup - System Speedup.) -- C:\Windows\System32\roboot64.exe [19544] =>PUP.SystemSpeedup O58 - SDL:18/03/2014 - 15:12:04 ---A- . (.SecureAssist - WFP driver.) -- C:\Windows\System32\Drivers\SAWFP64.sys [41768] =>PUP.SupraSavings O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil.dll [414208] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil64.dll [505344] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-helper.exe [318976] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\Uninstall.exe [115200] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-bg.exe [751616] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-bho64.dll [963072] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil.exe [343552] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil64.exe [450560] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-chromeinstaller.exe [471040] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-firefoxinstaller.exe [732160] =>PUP.BetterDeals O61 - LFC: 05/05/2014 - 19:12:53 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\SupTab.DIR\uninstall.exe [124585] =>PUP.SupTab O61 - LFC: 05/05/2014 - 19:12:53 ---A- . (.Sien SA.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\igdhbblpcellaljokkpfhcjlagemhgjl.DIR\minibarchrome.exe [869184] =>PUP.Minibar O61 - LFC: 05/05/2014 - 19:12:54 ---A- . (.Cherished Technololgy LIMITED.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\WPM.DIR\wprotectmanager.exe [566272] =>PUP.WpManager [HKLM\Software\Google\Chrome\Extensions\afjegdojkkoghnbiollpogeeimocanmk] =>PUP.SupraSavings^ [HKLM\Software\Google\Chrome\Extensions\cjcmpicjhnkfmkehehaanpfijomlhbbp] =>PUP.BetterDeals^ C:\Users\alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk =>PUP.SupraSavings^ C:\Users\alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjcmpicjhnkfmkehehaanpfijomlhbbp =>PUP.BetterDeals^ [HKLM\Software\Wow6432Node\BetterDeals-11] =>PUP.BetterDeals^ [MD5.2A3FB4C98F139038E23330D2439DB8A4] - (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\alexandra\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [PID.2912] R3 - URLSearchHook: (no name) [64Bits] - {e4f7b179-a3f6-47d8-9832-cb7b2627312a} . (.Microsoft Corporation - Navigateur Internet.) (No version) -- (.not file.) SR - | Auto 21/01/2008 21504 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe C:\Windows\system32\wuaueng.dll FirewallRaz PROXYFix EmptyTemp EmptyFlash EmptyClsid SysRestore