Script ZHPFix FirewallRaz EmptyPrefetch EmptyTemp R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer O23 - Service: KMS-R@1n (KMS-R@1n) . (...) - C:\Windows\KMS-R@1n.exe (.not file.) O23 - Service: PnkBstrB (PnkBstrB) . (...) - C:\Windows\System32\PnkBstrB.exe (.not file.) O87 - FAEL: "{6623C822-3ECA-480B-B253-CF9FD31CFA1A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (.not file.) O87 - FAEL: "{E1B7C7D8-34CC-466F-A276-5C31203E336E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (.not file.) O87 - FAEL: "{ABBACC46-797B-425A-8D3E-5C19824A72BD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Origin Games\Need for Speed\NFS16.exe (.not file.) O87 - FAEL: "{033B30B3-E3B1-47E2-90D2-8BD379DC1ED3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Origin Games\Need for Speed\NFS16.exe (.not file.) O87 - FAEL: "{5E11ACB5-3DBF-4DF7-8102-8A394689E918}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Origin Games\Need for Speed\NFS16_trial.exe (.not file.) O87 - FAEL: "{5D441CE7-BE4E-4FEC-BFE3-DD9CDB3DF857}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Origin Games\Need for Speed\NFS16_trial.exe (.not file.) O87 - FAEL: "{A7023042-D340-4F1E-871D-6C864711B99A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe (.not file.) O87 - FAEL: "{588A6DA8-80B0-44C1-9154-F0FFC8359A2F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe (.not file.) O87 - FAEL: "{5E246DC9-7AF1-4DD9-A774-AB448CF4FA02}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "{E013134D-D75C-4A1C-9A03-13FD1E6FADA3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "TCP Query User{7E2CFDF9-1B79-4FB4-B0E4-E913ACC05F83}C:\program files (x86)\origin games\battlefield 4\bf4.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\origin games\battlefield 4\bf4.exe (.not file.) O87 - FAEL: "UDP Query User{C98C2588-4568-4340-9DF1-B2CBE8452144}C:\program files (x86)\origin games\battlefield 4\bf4.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\origin games\battlefield 4\bf4.exe (.not file.) O87 - FAEL: "{3863908C-286D-409F-B85E-BB667D32AAE4}" [In-None-P6-TRUE] .(...) -- C:\Users\Reda\Downloads\Programs\fo3Installer.exe (.not file.) O87 - FAEL: "{BC492D94-E19D-4F33-99C5-C4B47DFBF8FE}" [In-None-P17-TRUE] .(...) -- C:\Users\Reda\Downloads\Programs\fo3Installer.exe (.not file.) O87 - FAEL: "TCP Query User{99E79161-097D-4450-93AB-1839E06715DB}E:\assassins creed iii\ac3sp.exe" [In-None-P6-TRUE] .(...) -- E:\assassins creed iii\ac3sp.exe (.not file.) O87 - FAEL: "UDP Query User{002C4D22-D5D6-48E8-A72C-BCD4DE84CF99}E:\assassins creed iii\ac3sp.exe" [In-None-P17-TRUE] .(...) -- E:\assassins creed iii\ac3sp.exe (.not file.) O87 - FAEL: "TCP Query User{D0EAF270-2CD8-4BC8-87B2-588E591D7D41}C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe (.not file.) O87 - FAEL: "UDP Query User{379AC13B-2508-4492-86E9-06BDE7AEABFF}C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe (.not file.) O87 - FAEL: "{B61AB0B5-26C7-42F3-9ADD-FAA809AAFBE8}" [In-None-P6-TRUE] .(...) -- C:\Users\Reda\Downloads\Compressed\EmbratoriaG6.5.2\EmbratoriaG6.5.2\libs.exe (.not file.) O87 - FAEL: "{A07BBE73-A034-4891-A793-E63C61D1D690}" [In-None-P17-TRUE] .(...) -- C:\Users\Reda\Downloads\Compressed\EmbratoriaG6.5.2\EmbratoriaG6.5.2\libs.exe (.not file.) O87 - FAEL: "{65527E2B-0DE1-4326-AF1A-B8EE6F59171D}" [In-None-P6-TRUE] .(...) -- C:\Windows\KMS-R@1n.exe (.not file.) =>HackTool.WinActivator O87 - FAEL: "{8C0EDFFA-4A75-49E3-8F35-D34EAB6A06C6}" [Out-None-P6-TRUE] .(...) -- C:\Windows\KMS-R@1n.exe (.not file.) =>HackTool.WinActivator C:\Windows\KMS-R@1nHook.exe =>HackTool.AutoKMS [MD5.DC30CFD21BBB742C10E3621D5B506780] - (...) -- C:\Windows\KMS-R@1nHook.exe [5120] [PID.5388] =>HackTool.AutoKMS G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://download.avira.com =>.Avira Software G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://offers.avira.com =>.Avira Software G0 - GCSP: Preferences [User Data\Default][HomePage] http://ogs.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://v2.auc.avira.com =>.Avira Software G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = buka.link:80 O17 - HKLM\System\CCS\Services\Tcpip\..\{2FFA1D41-53B2-4413-8CD3-0BB146963D90}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{4E86FCCD-6BB8-4342-A9A7-7EA6A27FC34D}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{5234A6F3-5CE9-41E6-94B9-6D5B50DA955B}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7C16F305-FE46-4FC2-8D7E-E82E941B7865}: DhcpNameServer = 192.168.43.1 =>.Local IP Adress