Script ZHPFix FirewallRaz EmptyPrefetch EmptyTemp EmptyFlash [MD5.00000000000000000000000000000000] [APT] [{3B99F534-EA4B-4ED1-99A9-7776829F4235}] (...) -- C:\Users\Ivan\AppData\Local\Temp\Temp1_Lan_Broadcom_14.4.2.2_W7x64_A.zip\LAN_Broadcom_14.4.2.2_W7x64\x64\setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{3F38F65D-DD04-4771-9DE7-2403716A6947}] (...) -- C:\Users\Ivan\AppData\Local\Temp\Temp1_VGA_AMD_8.861.0.0_W7x64_A.zip\VGA_AMD_8.861.0.0_W7x64\Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{6D38C381-2243-4791-91CE-3F8DBD6CD107}] (...) -- C:\Users\Ivan\AppData\Local\Temp\Temp1_TouchPad_Synaptics_15.1.6.0_W7x64_A.zip\Touchpad_Synaptics_15.1.6.0_W7x64\Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{82DD6EBF-E2DF-4CDF-8368-8A2725E73439}] (...) -- C:\Users\Ivan\AppData\Local\Temp\Temp1_Audio_Realtek_6.0.1.6339_W7x64_A.zip\Audio_Realtek_6.0.1.6339_W7x64\Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{BD27724E-F7C0-4D2C-A50C-3C1859358AA1}] (...) -- C:\Users\Ivan\AppData\Local\Temp\Temp1_TouchPad_ELANTECH_11.6.2.1_W7x64W7x86_A.zip\TouchPad_Elantech_11.6.2.1_W8x86x64\Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty G0 - GCSP: Preferences [User Data\Default][HomePage] http://me-cdn.effectivemeasure.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.startimes.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://download.avira.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://offers.avira.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://v2.auc.avira.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 O17 - HKLM\System\CCS\Services\Tcpip\..\{3C66491A-8F15-43BD-9AD7-C03B4A2262B5}: NameServer = 212.217.0.12 212.217.1.12 O17 - HKLM\System\CCS\Services\Tcpip\..\{8EBF4FC5-B138-4575-AD78-E109645A8911}: NameServer = 62.251.230.241 212.217.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{FEE8A8DA-8097-4DCE-92F4-34529D41600E}: NameServer = 212.217.0.12 212.217.1.12 O58 - SDL:2014/12/29 04:56:08 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv_x64.sys [35992] =>.Superfluous.VisicomManyCam O58 - SDL:2014/12/29 05:07:36 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [49304] =>.Superfluous.VisicomManyCam O61 - LFC: 2016/05/18 09:35:00 RA . (.BRD Cult.) -- C:\Users\Ivan\Downloads\[www.Cpasbien.pe] Malwarebytes.Anti-Malware.Premium.v2.0.2.1012.Multilingual.Incl.Keygen-BRD\Keygen\Keygen.exe [300544] =>.Superfluous.BRDCult O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\Ivan\AppData\Local\Torch\Application\torch.exe (.not file.) =>.Superfluous.Torch O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\Ivan\AppData\Local\Torch\Application\torch.exe (.not file.) =>.Superfluous.Torch O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\Ivan\AppData\Local\Torch\Application\torch.exe (.not file.) =>.Superfluous.Torch O87 - FAEL: "{1EE630F7-C089-44A7-84EE-B6098BA55541}" [In-None-P17-TRUE] .(...) -- C:\Users\Ivan\AppData\Local\Torch\Plugins\Hola\hola_plugin_x64.exe (.not file.) =>.Superfluous.Torch C:\Users\Ivan\Downloads\[www.Cpasbien.pe] Malwarebytes.Anti-Malware.Premium.v2.0.2.1012.Multilingual.Incl.Keygen-BRD\Keygen\Keygen.exe =>.Superfluous.BRDCult O87 - FAEL: "TCP Query User{7A4A63F1-811E-4055-A159-07F45FFD4E1F}C:\program files (x86)\connectify\connectify.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\connectify\connectify.exe (.not file.) O87 - FAEL: "UDP Query User{263C54D9-4FDF-40AC-8F83-4C9AE5ED74CC}C:\program files (x86)\connectify\connectify.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\connectify\connectify.exe (.not file.) O87 - FAEL: "TCP Query User{786FF9F6-5F27-4307-B488-242181C6ED57}C:\users\ivan\appdata\local\temp\rar$exa0.757\microsoft toolkit.exe" [In-None-P6-TRUE] .(...) -- C:\users\ivan\appdata\local\temp\rar$exa0.757\microsoft toolkit.exe (.not file.) O87 - FAEL: "UDP Query User{E70D043D-08D7-4597-8B4E-F0144F9FEFA8}C:\users\ivan\appdata\local\temp\rar$exa0.757\microsoft toolkit.exe" [In-None-P17-TRUE] .(...) -- C:\users\ivan\appdata\local\temp\rar$exa0.757\microsoft toolkit.exe (.not file.) O87 - FAEL: "{1EE630F7-C089-44A7-84EE-B6098BA55541}" [In-None-P17-TRUE] .(...) -- C:\Users\Ivan\AppData\Local\Torch\Plugins\Hola\hola_plugin_x64.exe (.not file.) =>.Superfluous.Torch O87 - FAEL: "{2470AB08-DFA1-4A30-B7E1-A742C682A7FD}" [In-None-P6-TRUE] .(...) -- C:\Torrentex\Torrentex.exe (.not file.) O87 - FAEL: "{9315CD44-E9C1-400B-A98D-E311292D5CE4}" [In-None-P17-TRUE] .(...) -- C:\Torrentex\Torrentex.exe (.not file.) O43 - CFD: 14/09/2014 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 22/03/2016 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 18/05/2016 - [] D -- C:\Users\Ivan\AppData\Local\Temp O43 - CFD: 13/09/2014 - [0] SHD -- C:\Users\Ivan\AppData\Local\Temporary Internet Files