Script ZHPFix EmptyPrefetch FirewallRaz PROXYFix EmptyTemp EmptyFlash EmptyClsid SysRestore [MD5.6397C4EF252D9FD54E809C909ABCA43C] - (...) -- C:\Users\home\AppData\Local\fst_be_68\upfst_be_68.exe [3338232] [PID.2332] =>Adware.FreeSoftToday [MD5.FEE1CF0FB067C3599BDE77183ADCACE5] - (.Babylon Ltd. - Babylon Information Tool.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe [3576984] [PID.4636] =>PUP.Babylon [MD5.A1969F518C854D3B1B1E5129A857B06F] - (.Ginger Software - BabylonTC.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\TC\BabylonTC.exe [2898432] [PID.4024] =>PUP.Babylon R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com =>Hijacker.SmartBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://feed.snapdo.com =>Hijacker.SmartBar O2 - BHO: Babylon IE plugin [64Bits] - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} . (.Babylon Ltd. - Babylon Internet Explorer Addin.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll =>PUP.Babylon O4 - GS\Desktop [Public]: Babylon.lnk . (.Babylon Ltd. - Babylon Information Tool.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Babylon O4 - GS\QuickLaunch [home]: Babylon.lnk . (.Babylon Ltd. - Babylon Information Tool.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Babylon O4 - GS\TaskBar [home]: Babylon.lnk . (.Babylon Ltd. - Babylon Information Tool.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Babylon O4 - GS\TaskBar [home]: Browse and Search the Internet.lnk . (.Aztec Media Inc - Browse and Search the Internet.) -- C:\Program Files (x86)\Settings Manager\systemk\tbicon.exe =>PUP.SystemK O4 - HKLM\..\Wow6432Node\Run: [Babylon Client] . (.Babylon Ltd. - Babylon Information Tool.) -- C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Babylon O4 - HKLM\..\Wow6432Node\Run: [fst_be_90] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>Adware.FreeSoftToday O4 - HKLM\..\Wow6432Node\Run: [fst_be_98] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>Adware.FreeSoftToday O4 - HKLM\..\Wow6432Node\Run: [fst_be_99] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>Adware.FreeSoftToday O4 - HKLM\..\Wow6432Node\Run: [ConvertAd] C:\Users\home\AppData\Local\ConvertAd\ConvertAd.exe (.not file.) O4 - HKLM\..\Wow6432Node\RunOnce: [upfst_be_68.exe] . (...) -- C:\Users\home\AppData\Local\fst_be_68\upfst_be_68.exe =>Adware.FreeSoftToday O23 - Service: Universal Updater Service (UniversalUpdater) . (.Pas de propriétaire - Universal Updater.) - C:\Program Files (x86)\0ca45c95134d\cf3e08d747e4.exe =>Adware.IncrediBar O36 - AppCertDlls: (x86) . (...) -- c:\program files (x86)\settings manager\systemk\sysapcrt.dll =>PUP.SystemK [MD5.13BA6AA9321F39FD5CCF0ED29A52719E] [APT] [APSnotifierPP1] (.AnyProtect.com.) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [6427136] =>PUP.AnyProtect [MD5.13BA6AA9321F39FD5CCF0ED29A52719E] [APT] [APSnotifierPP2] (.AnyProtect.com.) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [6427136] =>PUP.AnyProtect [MD5.13BA6AA9321F39FD5CCF0ED29A52719E] [APT] [APSnotifierPP3] (.AnyProtect.com.) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [6427136] =>PUP.AnyProtect [MD5.00000000000000000000000000000000] [APT] [ASP] (...) -- C:\Program Files (x86)\RCP\systweakasp.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [LaunchSignup] (...) -- C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe (.not file.) [0] =>PUP.JDIBackup [MD5.00000000000000000000000000000000] [APT] [PC Performer Logon Scan] (...) -- C:\Program Files (x86)\PC Performer\PCPerformer.exe (.not file.) [0] =>Rogue.PCPerformer [MD5.00000000000000000000000000000000] [APT] [PC Performer Scheduled Scan] (...) -- C:\Program Files (x86)\PC Performer\PCPerformer.exe (.not file.) [0] =>Rogue.PCPerformer [MD5.00000000000000000000000000000000] [APT] [{47720D99-E835-44EE-A7B3-C4299A106039}] (...) -- C:\Users\home\AppData\Roaming\sweet-page\UninstallManager.exe (.not file.) [0] =>PUP.SweetPage [MD5.1D9F1E5D1D6765B71D496E103ABF2F8C] [APT] [{6A68F93D-8BBE-44C9-ABBB-7875C8593C37}] (.Babylon Ltd..) -- C:\Users\home\Documents\CC+\Utilitaires\Babylon9_setup.exe [889968] =>PUP.Babylon [MD5.00000000000000000000000000000000] [APT] [{BCAE9910-D920-4C9D-8847-A25839D336BF}] (...) -- C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe (.not file.) [0] =>PUP.SearchProtect O39 - APT: APSnotifierPP1 - (.AnyProtect.com.) -- C:\Windows\Tasks\APSnotifierPP1.job [378] =>PUP.AnyProtect O39 - APT: APSnotifierPP1 - (.AnyProtect.com.) -- C:\Windows\System32\Tasks\APSnotifierPP1 [378] =>PUP.AnyProtect O39 - APT: APSnotifierPP2 - (.AnyProtect.com.) -- C:\Windows\Tasks\APSnotifierPP2.job [376] =>PUP.AnyProtect O39 - APT: APSnotifierPP2 - (.AnyProtect.com.) -- C:\Windows\System32\Tasks\APSnotifierPP2 [376] =>PUP.AnyProtect O39 - APT: APSnotifierPP3 - (.AnyProtect.com.) -- C:\Windows\Tasks\APSnotifierPP3.job [376] =>PUP.AnyProtect O39 - APT: APSnotifierPP3 - (.AnyProtect.com.) -- C:\Windows\System32\Tasks\APSnotifierPP3 [376] =>PUP.AnyProtect O41 - Driver: ({49ae2e47-5ec4-48ed-9fbc-0a5ab39ede5a}w64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\{49ae2e47-5ec4-48ed-9fbc-0a5ab39ede5a}w64.sys =>PUP.LinkiDoo O41 - Driver: ({55dce8ba-9dec-4013-937e-adbf9317d990}w64) . (.StdLib - StdLib.) - C:\Windows\System32\drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys =>PUP.LinkiDoo O42 - Logiciel: FreeSoftToday 005.100 - (.FREESOFTTODAY.) [HKLM][64Bits] -- fst_be_100_is1 =>Adware.FreeSoftToday O42 - Logiciel: WindowsMangerProtect20.0.0.502 - (.WindowsProtect LIMITED.) [HKLM][64Bits] -- WindowsMangerProtect =>PUP.Fuyu [HKCU\Software\AnyProtect] =>PUP.AnyProtect [HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] [HKCU\Software\Babylon] =>PUP.Babylon [HKCU\Software\Gameo] [HKCU\Software\InstallCore] =>Adware.InstallCore [HKCU\Software\Linkey] =>PUP.LinkeySearch [HKCU\Software\Smartbar] =>Hijacker.SmartBar [HKCU\Software\SupHpUISoft] =>PUP.CrossRider [HKCU\Software\SystemK] =>PUP.SystemK [HKCU\Software\TutoTag] =>PUP.AgenceExclusive [HKCU\Software\Tutorials] =>PUP.AgenceExclusive [HKCU\Software\freesofttoday] =>Adware.FreeSoftToday [HKCU\Software\globalUpdate] [HKLM\Software\Wow6432Node\Babylon] =>PUP.Babylon [HKLM\Software\Wow6432Node\DownloaderAssistant] [HKLM\Software\Wow6432Node\FREESOFTTODAY] =>Adware.FreeSoftToday [HKLM\Software\Wow6432Node\SPPDCOM] [HKLM\Software\Wow6432Node\SearchProtect] =>PUP.SearchProtect [HKLM\Software\Wow6432Node\SystemK] =>PUP.SystemK [HKLM\Software\Wow6432Node\TermTutor] [HKLM\Software\Wow6432Node\Tutorials] =>PUP.AgenceExclusive [HKLM\Software\Wow6432Node\supTab] =>PUP.SupTab [HKLM\Software\Wow6432Node\supWPM] =>PUP.WpManager [HKLM\Software\Wow6432Node\supWindowsMangerProtect] =>PUP.Fuyu [HKLM\Software\Wow6432Node\sweet-pageSoftware] =>PUP.SweetPage O43 - CFD: 5/11/2014 - 01:00:36 - [] ----D C:\Program Files (x86)\AnyProtectEx =>PUP.AnyProtect O43 - CFD: 20/05/2014 - 22:34:39 - [] ----D C:\Program Files (x86)\Babylon =>PUP.Babylon O43 - CFD: 9/11/2014 - 01:23:19 - [] ----D C:\Program Files (x86)\fst_be_100 =>Adware.FreeSoftToday O43 - CFD: 9/11/2014 - 01:24:57 - [] ----D C:\Program Files (x86)\fst_be_68 =>Adware.FreeSoftToday O43 - CFD: 15/09/2014 - 21:25:58 - [] ----D C:\Program Files (x86)\globalUpdate O43 - CFD: 15/09/2014 - 11:14:35 - [] ----D C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect O43 - CFD: 18/07/2014 - 23:01:36 - [] ----D C:\Program Files (x86)\Settings Manager =>PUP.SystemK O43 - CFD: 10/11/2014 - 21:07:59 - [] ----D C:\ProgramData\Babylon =>PUP.Babylon O43 - CFD: 5/11/2014 - 17:10:59 - [] ----D C:\ProgramData\IePluginServices =>PUP.IePluginService O43 - CFD: 9/09/2014 - 16:14:40 - [] ----D C:\ProgramData\systemk =>PUP.SystemK O43 - CFD: 9/11/2014 - 01:26:28 - [] ----D C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu O43 - CFD: 20/08/2014 - 15:32:20 - [] -SH-D C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} O43 - CFD: 4/11/2014 - 23:53:00 - [] -SH-D C:\Users\home\AppData\Roaming\AnyProtectEx =>PUP.AnyProtect O43 - CFD: 9/11/2014 - 17:09:43 - [] ----D C:\Users\home\AppData\Roaming\Babylon =>PUP.Babylon O43 - CFD: 20/08/2014 - 15:28:38 - [] ----D C:\Users\home\AppData\Roaming\OpenCandy =>Adware.OpenCandy O43 - CFD: 12/08/2014 - 13:50:07 - [0] ----D C:\Users\home\AppData\Roaming\sweet-page =>PUP.SweetPage O43 - CFD: 20/05/2014 - 22:36:03 - [] ----D C:\Users\home\AppData\Local\Babylon =>PUP.Babylon O43 - CFD: 8/11/2014 - 17:48:54 - [] ----D C:\Users\home\AppData\Local\fst_be_100 =>Adware.FreeSoftToday O43 - CFD: 10/11/2014 - 21:10:21 - [] ----D C:\Users\home\AppData\Local\fst_be_68 =>Adware.FreeSoftToday O43 - CFD: 9/08/2014 - 21:54:36 - [] ----D C:\Users\home\AppData\Local\Gameo O43 - CFD: 15/09/2014 - 13:57:29 - [] ----D C:\Users\home\AppData\Local\globalUpdate O45 - LFCP:[MD5.0CEE3855FD21DA2901A7D00673CF0BC0] - 7/11/2014 - 23:56:10 ---A- - C:\Windows\Prefetch\ANYPROTECT.EXE-3685BDD1.pf =>PUP.AnyProtect O45 - LFCP:[MD5.18B67EF6E56C9D5D8E014F44C59A7554] - 10/11/2014 - 15:22:31 ---A- - C:\Windows\Prefetch\BABYLON.EXE-FBAA6259.pf =>PUP.Babylon O45 - LFCP:[MD5.8ED37116891E793C844F00ED5326BE7D] - 10/11/2014 - 21:08:10 ---A- - C:\Windows\Prefetch\BABYLONHELPER64.EXE-B98EF153.pf =>PUP.Babylon O45 - LFCP:[MD5.ED46E801C8649CB9632FB918353284AF] - 10/11/2014 - 21:08:12 ---A- - C:\Windows\Prefetch\BABYLONTC.EXE-9AD1F6DB.pf =>PUP.Babylon O45 - LFCP:[MD5.EECA7B824B98CD57BB2060181BAC70C0] - 10/11/2014 - 21:10:21 ---A- - C:\Windows\Prefetch\UPFST_BE_68.EXE-BCACB896.pf =>Adware.FreeSoftToday O58 - SDL:7/08/2014 - 12:27:58 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{49ae2e47-5ec4-48ed-9fbc-0a5ab39ede5a}w64.sys [61584] =>PUP.LinkiDoo O58 - SDL:7/08/2014 - 13:09:20 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys [61584] =>PUP.LinkiDoo O61 - LFC: 4/11/2014 - 22:06:37 ---A- . (...) -- C:\Users\home\AppData\Local\fst_be_68\Download\setup_recover_fst_be_99.exe [1746480] =>Adware.FreeSoftToday O61 - LFC: 8/11/2014 - 22:06:36 ---A- . (...) -- C:\Users\home\AppData\Local\fst_be_68\Download\setup_recover_fst_be_100.exe [1746728] =>Adware.FreeSoftToday O61 - LFC: 8/11/2014 - 22:06:41 ---A- . (...) -- C:\Users\home\AppData\Local\Temp\nspFCC8.tmp\UAC.dll [30208] O64 - Services: CurCS - 7/08/2014 - C:\Windows\System32\drivers\{49ae2e47-5ec4-48ed-9fbc-0a5ab39ede5a}w64.sys ({49ae2e47-5ec4-48ed-9fbc-0a5ab39ede5a}w64) .(.StdLib - StdLib.) - LEGACY_{49AE2E47-5EC4-48ED-9FBC-0A5AB39EDE5A}W64 =>PUP.LinkiDoo O64 - Services: CurCS - 7/08/2014 - C:\Windows\System32\drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys ({55dce8ba-9dec-4013-937e-adbf9317d990}w64) .(.StdLib - StdLib.) - LEGACY_{55DCE8BA-9DEC-4013-937E-ADBF9317D990}W64 =>PUP.LinkiDoo O69 - SBI: SearchScopes [HKCU] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Web Search) - http://feed.snapdo.com =>Hijacker.SmartBar O90 - PUC: "A11F9D919B5FD5F4EBD23ACE088AFBE8" . (.Babylon.) -- C:\Windows\Installer\{19D9F11A-F5B9-4F5D-BE2D-A3EC80A8BF8E}\BabylonSetup.ico =>PUP.Babylon [MD5.7026674D8D33E237179696CFB12E3246] [WIS][1/12/2013] (.Babylon Ltd. - Babylon Client Installer.) -- C:\Windows\Installer\37459b.msi [10988032] =>PUP.Babylon HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.MyPCBackup HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabylonTC_RASAPI32 =>PUP.Babylon HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabylonTC_RASMANCS =>PUP.Babylon HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Babylon_RASAPI32 =>PUP.Babylon HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Babylon_RASMANCS =>PUP.Babylon HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Smartbar_RASAPI32 =>Hijacker.SmartBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Smartbar_RASMANCS =>Hijacker.SmartBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateDealKeeper_RASAPI32 =>PUP.DealKeeper HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateDealKeeper_RASMANCS =>PUP.DealKeeper HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilDealKeeper_RASAPI32 =>PUP.DealKeeper HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilDealKeeper_RASMANCS =>PUP.DealKeeper [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}] =>PUP.Babylon^ [HKLM\SYSTEM\CurrentControlSet\Services\UniversalUpdater] =>Adware.IncrediBar^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\fst_be_100_is1] =>Adware.FreeSoftToday^ [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect] =>PUP.Fuyu^ [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}] =>Hijacker.SmartBar [HKLM\Software\Classes\Interface\{5F339F0B-716F-408F-A627-DEEB5DEB4020}] =>PUP.Babylon [HKLM\Software\Wow6432Node\Classes\Interface\{5F339F0B-716F-408F-A627-DEEB5DEB4020}] =>PUP.Babylon [HKCU\Software\Microsoft\Office\Word\Addins\BabylonOfficeAddin.OfficeAddin] =>PUP.Babylon [HKCU\Software\Microsoft\Office\PowerPoint\Addins\BabylonOfficeAddin.OfficeAddin] =>PUP.Babylon [HKLM\Software\Classes\protector_dll.protectorbho.1] =>PUP.BProtector [HKLM\Software\Classes\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}] =>Adware.Agent [HKLM\Software\Classes\protector_dll.protectorbho] =>PUP.BProtector [HKLM\Software\Classes\SpeedUpMyPC] =>PUP.SpeedUpMyPC [HKLM\Software\Wow6432Node\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb] =>PUP.Babylon [HKCU\Software\Tutorials] =>Spyware.AgenceExclusive [HKLM\Software\Wow6432Node\Tutorials] =>Spyware.AgenceExclusive [HKLM\Software\Wow6432Node\Microsoft\Tracing\Babylon_RASAPI32] =>PUP.Babylon [HKLM\Software\Wow6432Node\Microsoft\Tracing\Babylon_RASMANCS] =>PUP.Babylon [HKLM\Software\Classes\Prod.cap] =>PUP.Babylon [HKCU\Software\InstallCore] =>Adware.InstallCore [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}] =>PUP.Babylon [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}] =>PUP.Babylon [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}] =>PUP.Babylon [HKLM\Software\Classes\BabyDict] =>PUP.Babylon [HKLM\Software\Classes\BabyGloss] =>PUP.Babylon [HKLM\Software\Classes\BabyOptFile] =>PUP.Babylon [HKLM\Software\Classes\AppID\{B16632F1-24E0-4D99-A68D-70BFB6447C48}] =>PUP.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{B16632F1-24E0-4D99-A68D-70BFB6447C48}] =>PUP.Babylon [HKLM\Software\Classes\AppID\{C0CEA572-2978-4DFC-A672-8100FF0E276A}] =>PUP.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{C0CEA572-2978-4DFC-A672-8100FF0E276A}] =>PUP.Babylon [HKLM\Software\Classes\TypeLib\{0C2E529C-A82C-4AC6-8807-0B51F7AD7BB2}] =>PUP.Babylon [HKLM\Software\Classes\TypeLib\{A1489C85-4F6F-48C4-AC9E-18B63AF4703E}] =>PUP.Babylon [HKLM\Software\Classes\TypeLib\{F310F027-15CB-4A7F-B10D-3A4AFB5013A5}] =>PUP.Babylon [HKLM\Software\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] =>PUP.Babylon [HKLM\Software\Wow6432Node\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] =>PUP.Babylon [HKLM\Software\Classes\AppID\BabylonHelper.EXE] =>PUP.Babylon [HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro [HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503}] =>Adware.Bandoo^ [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:Babylon Client =>PUP.Babylon^ [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]:upfst_be_68.exe =>Adware.FreeSoftToday^ C:\Program Files (x86)\AnyProtectEx =>PUP.AnyProtect^ C:\Program Files (x86)\Babylon =>PUP.Babylon^ C:\Program Files (x86)\fst_be_100 =>Adware.FreeSoftToday^ C:\Program Files (x86)\fst_be_68 =>Adware.FreeSoftToday^ C:\Program Files (x86)\SearchProtect =>PUP.SearchProtect^ C:\Program Files (x86)\Settings Manager =>PUP.SystemK^ C:\ProgramData\Babylon =>PUP.Babylon^ C:\ProgramData\IePluginServices =>PUP.IePluginService^ C:\ProgramData\systemk =>PUP.SystemK^ C:\ProgramData\WindowsMangerProtect =>PUP.Fuyu^ C:\Users\home\AppData\Roaming\AnyProtectEx =>PUP.AnyProtect^ C:\Users\home\AppData\Roaming\Babylon =>PUP.Babylon^ C:\Users\home\AppData\Roaming\OpenCandy =>Adware.OpenCandy^ C:\Users\home\AppData\Roaming\sweet-page =>PUP.SweetPage^ C:\Users\home\AppData\Local\Babylon =>PUP.Babylon^ C:\Users\home\AppData\Local\fst_be_100 =>Adware.FreeSoftToday^ C:\Users\home\AppData\Local\fst_be_68 =>Adware.FreeSoftToday^ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Babylon =>PUP.Babylon C:\Users\home\AppData\Local\fst_be_68\upfst_be_68.exe =>Adware.FreeSoftToday^ C:\Program Files (x86)\Babylon\Babylon-Pro\Babylon.exe =>PUP.Babylon^ C:\Program Files (x86)\Babylon\Babylon-Pro\TC\BabylonTC.exe =>PUP.Babylon^ C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe =>PUP.AnyProtect^ C:\Users\home\Documents\CC+\Utilitaires\Babylon9_setup.exe =>PUP.Babylon^ C:\Windows\Tasks\APSnotifierPP1.job =>PUP.AnyProtect^ C:\Windows\System32\Tasks\APSnotifierPP1 =>PUP.AnyProtect^ C:\Windows\Tasks\APSnotifierPP2.job =>PUP.AnyProtect^ C:\Windows\System32\Tasks\APSnotifierPP2 =>PUP.AnyProtect^ C:\Windows\Tasks\APSnotifierPP3.job =>PUP.AnyProtect^ C:\Windows\System32\Tasks\APSnotifierPP3 =>PUP.AnyProtect^ [HKCU\Software\AnyProtect] =>PUP.AnyProtect^ [HKCU\Software\Babylon] =>PUP.Babylon^ [HKCU\Software\Linkey] =>PUP.LinkeySearch^ [HKCU\Software\Smartbar] =>Hijacker.SmartBar^ [HKCU\Software\SupHpUISoft] =>PUP.CrossRider^ [HKCU\Software\SystemK] =>PUP.SystemK^ [HKCU\Software\TutoTag] =>PUP.AgenceExclusive^ [HKCU\Software\freesofttoday] =>Adware.FreeSoftToday^ [HKLM\Software\Wow6432Node\Babylon] =>PUP.Babylon^ [HKLM\Software\Wow6432Node\FREESOFTTODAY] =>Adware.FreeSoftToday^ [HKLM\Software\Wow6432Node\SearchProtect] =>PUP.SearchProtect^ [HKLM\Software\Wow6432Node\SystemK] =>PUP.SystemK^ [HKLM\Software\Wow6432Node\supTab] =>PUP.SupTab^ [HKLM\Software\Wow6432Node\supWPM] =>PUP.WpManager^ [HKLM\Software\Wow6432Node\supWindowsMangerProtect] =>PUP.Fuyu^ [HKLM\Software\Wow6432Node\sweet-pageSoftware] =>PUP.SweetPage^ C:\Windows\Installer\37459b.msi =>PUP.Babylon^ O2 - BHO: Google Toolbar Helper [64Bits] - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll O3 - Toolbar: (no name) - [HKLM]{ae07101b-46d4-4a98-af68-0333ea26e113} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Clé orpheline O3 - Toolbar\WebBrowser: (no name) - [HKCU]{D7E97865-918F-41E4-9CD0-25AB1C574CE8} Clé orpheline [HKCU\Software\ForumerIT] [HKLM\Software\Wow6432Node\InstallIQ] O43 - CFD: 6/10/2014 - 23:03:23 - [] ----D C:\ProgramData\Yahoo! Companion HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS [HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS] [HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] [HKLM\Software\Wow6432Node\InstallIQ] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] [HKLM\Software\Wow6432Node\Microsoft\Tracing\apnstub_RASMANCS] [HKLM\Software\Wow6432Node\Microsoft\Tracing\apnstub_RASAPI32] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion] [HKLM\Software\Classes\Interface\{928FE5E7-D557-46B7-8AF6-17ACCE1FB4ED}] [HKLM\Software\Wow6432Node\Classes\Interface\{928FE5E7-D557-46B7-8AF6-17ACCE1FB4ED}] [HKLM\Software\Classes\.bdc] [HKLM\Software\Classes\.bgl] [HKLM\Software\Classes\.bof] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}] [HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks]:{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar]:{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKCU\Software\ForumerIT] SS - | Disabled 27/08/2014 706864 | (LavasoftAdAwareService11) . (...) - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.3.6321.0\AdAwareService.exe R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank [MD5.00000000000000000000000000000000] [APT] [{92C1FC16-F726-469C-9662-3AF66DE404EB}] (...) -- D:\Setup.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{D0F98932-8C93-4CBA-A9C4-C3F0A17010FA}] (...) -- D:\autorun.exe (.not file.) [0]