Script ZHPFix [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent] =>P2P.µTorrent^ [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0A94B111-4504-4e26-AB05-E61E474AA38B}] =>Toolbar.AskTBar [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0A94B111-4504-4e26-AB05-E61E474AA38B}] =>Toolbar.AskTBar [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3017FB3E-9A77-4396-88C5-0EC9548FB42F}] =>Toolbar.Agent [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3017FB3E-9A77-4396-88C5-0EC9548FB42F}] =>Toolbar.Agent [HKLM\Software\Classes\CLSID\{6BC38BF4-E84D-46E1-920B-42D31AEA617E}] =>Toolbar.Agent [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion] =>Toolbar.Yahoo [HKLM\Software\Classes\Installer\Features\4301AEBD288588A40833184CFEC0AF92] =>Adware.iWinArcade [HKLM\Software\Classes\Installer\Products\4301AEBD288588A40833184CFEC0AF92] =>Adware.iWinArcade [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4301AEBD288588A40833184CFEC0AF92] =>Adware.iWinArcade [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\80F08842F9EA1BE4BA4922DA74CDB698] =>Adware.iWinArcade [HKLM\Software\Classes\Toolbar3.SBCONVERT] =>Toolbar.Agent [HKLM\Software\Classes\Toolbar3.SBCONVERT.1] =>Toolbar.Agent [HKCU\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]:{f4d76f09-7896-458a-890f-e1f05c46069f} =>Adware.BHO [HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{f4d76f09-7896-458a-890f-e1f05c46069f} =>Adware.BHO C:\Program Files\uTorrent =>P2P.µTorrent^ C:\Documents and Settings\LG\Application Data\uTorrent =>P2P.µTorrent^ [HKCU\Software\BitTorrent] =>P2P.BitTorrent^ [HKCU\Software\Conduit] =>Toolbar.Conduit^ [HKCU\Software\ForumerIT] =>Toolbar.Forumer^ [HKCR\CLSID\{30E7F2A0-EC4C-11ce-8865-00805F742EF6}] (SpeedDial) =>PUP.SpeedDial^ [HKCR\CLSID\{30E7F2A0-EC4C-11ce-8865-00805F742EF6}] (SpeedDial) =>PUP.SpeedDial O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - http://search.live.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {5D0EB3EB-F3A5-41BB-9F18-E69D98A7B3E0} - (Search) - http://mn.iamwired.net O69 - SBI: SearchScopes [HKCU] {649C9397-C2BE-4A3E-9CC6-16AEB2DEA135} [DefaultScope] - (Hotspot Shield Customized Web Search) - http://trovi.com =>Hijacker.TroviCom O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (@ieframe.dll,-12512) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {8DB827E2-4E2D-49E8-8570-527C4147BB6A} - (Ask Search) - http://websearch.ask.com =>Toolbar.Ask O69 - SBI: SearchScopes [HKCU] {9B6103C1-F818-48a8-9683-314055BE6075} - (MyStart Search) - http://mystart.hiyo.com =>Spyware.VMNToolbar O69 - SBI: SearchScopes [HKCU] {A042205C-9FAE-46C3-B962-E5F17C83FBEC} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {A4BBE3D6-6826-4207-B09F-27076109D723} - (SpeedBit Search) - http://search.speedbit.com [HKCU\Software\ForumerIT] =>Toolbar.Forumer [HKCU\Software\Conduit] =>Toolbar.Conduit O42 - Logiciel: Yahoo! Toolbar - (...) [HKLM] -- Yahoo! Companion O3 - Toolbar\WebBrowser: (no name) - [HKCU]{01E04581-4EEE-11D0-BFE9-00AA005B4383} Orphan key O3 - Toolbar\WebBrowser: (no name) - [HKCU]{0E5CBF21-D15F-11D0-8301-00AA005B4383} Orphan key O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Orphan key O3 - Toolbar\WebBrowser: (no name) - [HKCU]{F4D76F09-7896-458A-890F-E1F05C46069F} Orphan key P2 - FPN:Firefox Plugin Navigator . (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay.xml =>Toolbar.eBay O43 - CFD: 25/04/2015 - 01:14:01 ? - [0] ----D C:\Program Files\AVAST Software O43 - CFD: 25/04/2015 - 01:14:01 ? - [0] ----D C:\Program Files\AVAST Software O43 - CFD: 16/07/2014 - 05:28:04 ? - [] ----D C:\Program Files\Baidu Security [HKLM\Software\Baidu Security] [HKLM\Software\Baidu_Drp_pos] [HKCU\Software\Baidu Security] [HKCU\Software\Baidu] O64 - Services: CurCS - 11/03/2014 - C:\WINDOWS\system32\drivers\Bhbase.sys (Bhbase) .(.Baidu, Inc. - Baidu Antivirus Hook Base.) - LEGACY_BHBASE O58 - SDL:11/03/2014 - 06:14:02 ? ---A- . (.Baidu, Inc. - Baidu Antivirus Hook Base.) -- C:\WINDOWS\system32\Drivers\Bhbase.sys [47456] O43 - CFD: 16/07/2014 - 05:34:41 ? - [] ----D C:\Documents and Settings\LG\Application Data\Baidu Security O43 - CFD: 24/07/2014 - 05:51:15 ? - [] ----D C:\Documents and Settings\All Users\Application Data\Baidu Security O43 - CFD: 18/07/2014 - 08:48:29 ? - [] ----D C:\Program Files\AVG [HKCU\Software\AVG] O43 - CFD: 18/07/2014 - 08:50:51 ? - [] ----D C:\Documents and Settings\LG\Local Settings\Application Data\AVG O43 - CFD: 31/01/2014 - 01:35:37 ? - [] ----D C:\Documents and Settings\LG\Local Settings\Application Data\Avg2013 O47 - AAKE:Key Export SP - "C:\Program Files\uTorrent\uTorrent.exe" [Enabled] .(.BitTorrent, Inc..) -- C:\Program Files\uTorrent\uTorrent.exe =>P2P.BitTorrent O43 - CFD: 19/05/2013 - 10:07:01 ? - [] ----D C:\Documents and Settings\LG\Application Data\uTorrent =>P2P.µTorrent O43 - CFD: 28/03/2011 - 05:17:52 ? - [] ----D C:\Program Files\uTorrent =>P2P.µTorrent [HKCU\Software\BitTorrent] =>P2P.BitTorrent O42 - Logiciel: µTorrent - (...) [HKLM] -- uTorrent =>P2P.µTorrent O4 - GS\Desktop [AllUsers]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe =>P2P.BitTorrent µTorrent v2.2.1 =>P2P.µTorrentO17 - HKLM\System\CCS\Services\Tcpip\..\{B5755E9E-1A2C-469D-A32C-0362762BF57B}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{C923B781-83FA-4E60-AB45-79E252183D85}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{C923B781-83FA-4E60-AB45-79E252183D85}: DhcpDomain = lan O17 - HKLM\System\CS1\Services\Tcpip\..\{B5755E9E-1A2C-469D-A32C-0362762BF57B}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{C923B781-83FA-4E60-AB45-79E252183D85}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{C923B781-83FA-4E60-AB45-79E252183D85}: DhcpDomain = lan O17 - HKLM\System\CS2\Services\Tcpip\..\{B5755E9E-1A2C-469D-A32C-0362762BF57B}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{C923B781-83FA-4E60-AB45-79E252183D85}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{C923B781-83FA-4E60-AB45-79E252183D85}: DhcpDomain = lan O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 FirewallRaz EmptyTemp EmptyFlash Proxyfix Sysrestore