Script ZHPFix FirewallRaz EmptyPrefetch EmptyTemp EmptyFlash SS - Demand [23/10/2006] [ 46640] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.266\McCHSvc.exe =>.McAfee, Inc.® [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified P2 - EXT: (...) -- C:\Users\Jean\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam P2 - FPN: [HKLM] [@viewpoint.com/VMP] - (.Copyright © 2000.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll =>PUP.Optional.MetaStream O2 - BHO: (no name) - {3049C3E9-B461-4BC5-8870-4C09146192CA} (.Orphan.) O2 - BHO: (no name) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} (.Orphan.) O39 - APT: Unknown - (...) -- C:\Windows\Tasks\DriverToolkit Autorun.job [46640] =>.Superfluous.DriverToolkit O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\DriverToolkit Autorun [46640] =>.Superfluous.DriverToolkit O42 - Logiciel: Easy Burner - (.Aedge Performance BCN SL.) [HKLM] -- {520C2939-555B-40BF-A91B-8B671AB560EB} =>.Superfluous.PCSpeedUp HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM] -- {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime O42 - Logiciel: Viewpoint Media Player - (..) [HKLM] -- ViewpointMediaPlayer =>PUP.Optional.MetaStream O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan =>.McAfee, Inc.® HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKLM\SOFTWARE\Symantec =>.Symantec HKLM\SOFTWARE\SymNRT =>.Symantec Corporation HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\?? ?? ???? ????? ??? ?? ???? HKLM\SOFTWARE\MetaStream =>PUP.Optional.MetaStream HKLM\SOFTWARE\Viewpoint =>PUP.Optional.MetaStream HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA} =>.Superfluous.Orphan O43 - CFD: 12/11/2009 - [0] D -- C:\Program Files\Convers3 =>.Superfluous.Empty O43 - CFD: 04/06/2015 - [0] D -- C:\Program Files\GUM3DBB.tmp O43 - CFD: 20/02/2009 - [] D -- C:\Program Files\Lavasoft =>.Lavasoft O43 - CFD: 16/03/2017 - [0] D -- C:\ProgramData\SWCUTemp O43 - CFD: 07/10/2015 - [0] D -- C:\Users\Jean\AppData\Local\{0477BA1E-DCD1-4EA1-B0ED-85EED89425E3} =>.Superfluous.Empty O43 - CFD: 25/02/2016 - [0] D -- C:\Users\Jean\AppData\Local\{65B57F2E-AD68-49CD-8E73-6C84BE10D5C3} =>.Superfluous.Empty O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\Viewpoint =>PUP.Optional.MetaStream O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Viewpoint =>PUP.Optional.MetaStream O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee O43 - CFD: 01/01/2009 - [] D -- C:\Program Files\McAfee.com =>.McAfee Inc. O43 - CFD: 01/12/2009 - [0] D -- C:\Program Files\Trend Micro =>.Trend Micro O43 - CFD: 12/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus =>.McAfee Inc. O43 - CFD: 01/12/2009 - [] D -- C:\ProgramData\Lavasoft =>.Lavasoft O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\McAfee Security Scan =>.McAfee O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\RogueKiller =>.Adlice O43 - CFD: 01/03/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\McAfee =>.McAfee O53 - SMSR:HKLM\...\startupreg\HP Officejet 6700 (NET) [Key] . (...) -- C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\KiesPreload [Key] . (...) -- C:\Program Files\Samsung\Kies\Kies.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\KiesTrayAgent [Key] . (...) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe (.not file.) O58 - SDL:2015/09/18 08:50:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\05C724AC.sys [46640] =>.Malwarebytes Corporation® (.Superfluous.Orphan) O58 - SDL:2015/09/13 08:05:24 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\400A7B71.sys [46640] =>.Malwarebytes Corporation® (.Superfluous.Orphan) O58 - SDL:2015/08/27 07:57:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\50AF4577.sys [46640] =>.Malwarebytes Corporation® (.Superfluous.Orphan) O58 - SDL:2015/09/15 08:11:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6F081C8A.sys [46640] =>.Malwarebytes Corporation® (.Superfluous.Orphan) O58 - SDL:2009/10/27 21:28:16 A . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\Windows\System32\drivers\SBREDrv.sys [46640] =>.SUNBELT SOFTWARE DISTRIBUTION® O69 - SBI: prefs.js [Jean - 14yb0u9e.default-1414569158826] user_pref("extensions.DigiHelp.is", "thin"); =>PUP.Optional.DigiHelp O69 - SBI: prefs.js [Jean - 14yb0u9e.default-1414569158826] user_pref("extensions.DigiHelp.ug", "7f3c5cce-3783-8be3-caca-598213c8302c"); =>PUP.Optional.DigiHelp O69 - SBI: prefs.js [Jean - 14yb0u9e.default-1414569158826] user_pref("keyword.URL", "https://fr.search.yahoo.com/yhs/search"); =>.Superfluous.YahooSearchProvided O87 - FAEL: "TCP Query User{9D9A2B91-753D-4E7E-AE8F-8076DC9FCE3D}C:\program files\google\google earth\plugin\geplugin.exe" [In-None-P6-TRUE] .(...) -- C:\program files\google\google earth\plugin\geplugin.exe (.not file.) O87 - FAEL: "UDP Query User{9154425B-DFCE-4511-A0E5-B02299EF5F8D}C:\program files\google\google earth\plugin\geplugin.exe" [In-None-P17-TRUE] .(...) -- C:\program files\google\google earth\plugin\geplugin.exe (.not file.) O87 - FAEL: "{BA54A0B4-B8A9-43DE-B256-3E1CB3FB1FCA}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\AOL\1424365882\ee\aolsoftware.exe (.not file.) O87 - FAEL: "{4CECD492-CF30-4C77-8BE0-F95DFD4B8739}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\AOL\1424365882\ee\aolsoftware.exe (.not file.) O87 - FAEL: "{5DC9C564-5D3A-4981-BEBD-6030AAC7DF58}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\AOL\1424365882\ee\AOLDesktop.exe (.not file.) O87 - FAEL: "{F1ED7A0B-202E-49D4-9A87-55700E98FED9}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\AOL\1424365882\ee\AOLDesktop.exe (.not file.) O87 - FAEL: "{BB5A5339-D4FA-4C01-BDF0-9A2BB6573BA0}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS0C89\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{44B6F5DD-1941-4EAF-BD88-1BC7B31B1299}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS362B\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{7DCBAEF3-A495-43E7-BF6E-B9C24170F5F0}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS362B\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{03D718C8-E2BD-4BDF-A83A-A0D3085179A3}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS78CD\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B3E2996C-551F-4161-87F1-36DD83A71EE2}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS78CD\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{EE8B474A-0B03-406F-A549-C687DDC69D36}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS5C32\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{7DBCC26F-1A56-482D-A78A-FAA04588E1D3}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS5C32\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C24F17BE-B7C4-4A05-B428-FF400255A742}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS5CE3\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CFD5EF67-5957-4D07-9FD2-117D56765A54}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS5CE3\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2BE1F801-7C24-4E35-B5FA-45F5F4806EC6}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS1C7F\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1DC42B3E-67B4-484E-B8F1-3F209BAE30E8}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS1C7F\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{18D8CA62-97A1-4A71-87E1-3236D25C197B}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS04F9\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{3995FBA8-4C58-465D-B47A-5C7D2E110C6E}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS04F9\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{700F1144-7085-4C99-B472-DAA194C423C1}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS4E07\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{3F4A4876-931F-4CC0-AE2A-9DAD8A7CDBC7}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS4E07\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C787C629-5551-4556-A166-2E28C11C3453}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS6A27\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{F5DE9915-30FA-4A2D-8B49-2CA1EB904E2C}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS6A27\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2C01ADCA-6D12-4FDF-99F5-E8DFCD5FFE4A}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS319E\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{445BB19F-2959-4735-8B09-AF960B79B418}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS319E\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{63F0511D-C4F1-4EF7-B1F9-B4B32FB1F56C}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS0C70\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{998139DD-7E57-43D5-A693-498A4986ED6B}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS0C70\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6FBBB60B-A9AC-4A6C-AED3-C03300137B1C}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS0FD8\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{999441AB-7B94-41DF-A3D6-F7EB88F77F01}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS0FD8\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{77072B33-9B49-4E8F-A3AD-40C86BECF01C}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS1789\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{77BDE488-7964-413E-B379-A99AA183C48E}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS1789\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6C7163EC-C1AF-4FDF-9617-09E49A0D3F7B}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS1D6A\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{90615BA8-01C0-4A5F-A93E-E887FC7B2C00}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS1D6A\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{021589F1-6CC6-42AF-BA03-BD4A68ABCA3D}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS4D4A\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CCAB1D5D-0592-40FC-8FF8-66EEDA7192D0}" [In-None-P17-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS4D4A\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B0C4D578-69AA-4502-9D4B-5D0AC12ABFA1}" [In-None-P6-TRUE] .(...) -- C:\Users\Jean\AppData\Local\Temp\7zS7396\HPDiagnosticCoreUI.exe (.not file.) =>.Temporary file not necessary C:\Users\Jean\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll =>PUP.Optional.MetaStream HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3049C3E9-B461-4BC5-8870-4C09146192CA} =>.Superfluous.Orphan HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA6319C0-31B7-401E-A518-A07C3DB8F777} =>.Superfluous.Orphan HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP =>PUP.Optional.MetaStream HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{520C2939-555B-40BF-A91B-8B671AB560EB} =>.Superfluous.PCSpeedUp HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{520C2939-555B-40BF-A91B-8B671AB560EB} =>.Superfluous.PCSpeedUp HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer =>PUP.Optional.MetaStream HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer =>PUP.Optional.MetaStream HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime C:\Program Files\Viewpoint =>PUP.Optional.MetaStream C:\ProgramData\Viewpoint =>PUP.Optional.MetaStream C:\Windows\Tasks\DriverToolkit Autorun.job =>.Superfluous.DriverToolkit C:\Windows\System32\Tasks\DriverToolkit Autorun =>.Superfluous.DriverToolkit C:\Program Files\Convers3 =>.Superfluous.Empty C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet