script zhpfix [MD5.3E115DEC47B631CB71A66D25C5A4BE70] - (.tsvr.com - tsvr.com.) -- C:\Users\bencoco\AppData\Roaming\TSv\TSvr.exe [376592] [PID.3396] [MD5.0629E9B2030463AF26AEE266CAF5CC1F] - (.WFini LIMITED - WFini.) -- C:\ProgramData\jwinpj\WFini.exe [574648] [PID.3276] [MD5.5BCE955CF12AF3417F055DADC0212920] [APT] [Browser Updater Task(Core)] (.Tencent.) -- C:\Program Files (x86)\QQBrowser\Update\7175D37DB396D4F248305F12B164DA30\Update\BrowserUpdate.exe [690144] =>Adware.TencentAddressBar [MD5.00000000000000000000000000000000] [APT] [PenWes] (...) -- C:\Program Files (x86)\PenWes\dnshelper.exe (.not file.) [0] =>PUP.Penwes O42 - Logiciel: Anti virus et publicités sur Internet [16663] - (...) [HKLM][64Bits] -- Penwes =>PUP.Penwes O42 - Logiciel: Exploremedia 1.0 - (.Exploremedia.) [HKLM][64Bits] -- Exploremedia O42 - Logiciel: groover - (.groover.) [HKLM][64Bits] -- {A8875BF6-88BC-4979-8F45-D16C9B448D18} O42 - Logiciel: shopperz - (.shopperz.) [HKLM][64Bits] -- {180F4CD8-B890-4927-8B6A-5B4A7B489E9A} [HKCU\Software\Store] [HKCU\Software\Tutorials] =>AgenceExclusive [HKCU\Software\WTools] [HKLM\Software\SearchModule] [HKLM\Software\Wow6432Node\SearchModule] O43 - CFD: 26/04/2016 - 14:47:09 - [] ----D C:\Program Files (x86)\Exploremedia O43 - CFD: 25/04/2016 - 16:44:01 - [] ----D C:\Program Files (x86)\PenWes =>PUP.Penwes O43 - CFD: 26/04/2016 - 14:47:09 - [0] ----D C:\Program Files (x86)\PlayGem O43 - CFD: 23/04/2016 - 17:23:45 - [] ----D C:\ProgramData\Penwes =>PUP.Penwes O43 - CFD: 05/09/2015 - 13:48:21 - [] ----D C:\Users\bencoco\AppData\Roaming\RPEng O43 - CFD: 26/04/2016 - 14:47:47 - [0] ----D C:\Users\bencoco\AppData\Roaming\Store O43 - CFD: 25/04/2016 - 14:24:04 - [] ----D C:\Users\bencoco\AppData\Roaming\TSv [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Penwes] =>PUP.Penwes^ [HKCU\Software\Tutorials] =>Spyware.AgenceExclusive [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Penwes] =>PUP.Penwes C:\Program Files (x86)\PenWes =>PUP.Penwes^ C:\ProgramData\Penwes =>PUP.Penwes^ C:\Program Files (x86)\QQBrowser\Update\7175D37DB396D4F248305F12B164DA30\Update\BrowserUpdate.exe =>Adware.TencentAddressBar^ emptytemp emptyprefetch emptyclsid emptyflash sysrestore shortcutfix