Script Zhpfix O2 - BHO: McAfee WebAdvisor [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files\McAfee\WebAdvisor\x64\ieplugin.dll =>.McAfee, LLC® O4 - GS\TaskBar [Dany]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe =>.Safer-Networking Ltd.® O4 - GS\CommonDesktop [Public]: SpyHunter5.lnk . (.EnigmaSoft Limited - SpyHunter product..) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe =>.EnigmaSoft Limited® O4 - GS\ProgramsCommon [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe =>.Safer-Networking Ltd.® O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - GS\ProgramsCommon [Public]: HowToRemove.html.lnk . (...) C:\Users\Dany\AppData\Local\{98C5AE99-BC6D-C221-D1F5-E7C9F59D1B51}\HowToRemove\HowToRemove.html O42 - Logiciel: McAfee WebAdvisor - (.McAfee, LLC..) [HKLM][64Bits] -- {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} =>.McAfee, LLC® O42 - Logiciel: Spybot - Search & Destroy - (.Safer-Networking Ltd..) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 =>.Safer-Networking Ltd.® O42 - Logiciel: SpyHunter 5 - (.EnigmaSoft Limited.) [HKLM][64Bits] -- SpyHunter5 =>.EnigmaSoft Limited® HKCU\Software\ProductSetup HKU\.DEFAULT\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\S-1-5-21-54838542-3850726699-400929717-1001\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\EnigmaSoft =>.Enigma Software Group, LLC HKLM\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKLM\SOFTWARE\WOW6432Node\McAfee NGI =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited HKCU\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\dtc-pr HKLM64\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\ByteFence.exe HKLM\SOFTWARE\WOW6432Node\Conduit HKLM\SOFTWARE\WOW6432Node\Webteh HKCU\SOFTWARE\Conduit HKU\S-1-5-21-54838542-3850726699-400929717-1001\SOFTWARE\Conduit HKU\S-1-5-21-54838542-3850726699-400929717-1001\SOFTWARE\ProductSetup O43 - CFD: 09/09/2019 - [] D -- C:\Program Files\EnigmaSoft =>.Enigma Software Group, LLC O43 - CFD: 16/06/2019 - [] D -- C:\Program Files\McAfee =>.McAfee O43 - CFD: 07/09/2019 - [] D -- C:\Program Files\WinZip Driver Updater =>.SUP.WinzipSystemUtilities O43 - CFD: 10/09/2019 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2 =>.SaferNetworking O43 - CFD: 16/06/2019 - [] D -- C:\Program Files (x86)\Webteh =>.SUP.ABTeam O43 - CFD: 09/09/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft =>.Enigma Software Group, LLC O43 - CFD: 16/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft O43 - CFD: 16/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 =>.SaferNetworking O43 - CFD: 16/06/2019 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 09/09/2019 - [] D -- C:\ProgramData\Spybot - Search & Destroy =>.SaferNetworking O43 - CFD: 21/02/2016 - [0] SHD -- C:\Users\Dany\AppData\LocalLow\EmieBrowserModeList =>.ATTENTION O43 - CFD: 21/02/2016 - [0] SHD -- C:\Users\Dany\AppData\LocalLow\EmieSiteList =>.ATTENTION O43 - CFD: 21/02/2016 - [0] SHD -- C:\Users\Dany\AppData\LocalLow\EmieUserList =>.ATTENTION O45 - LFCP:[MD5.EE2F09C6E6880C42E00A87E31E3CCC70] 10/09/2019 A -- C:\WINDOWS\Prefetch\SEGURAZOCLIENT.EXE-1C334FE9.pf =>SUP.Optional.Segurazo O45 - LFCP:[MD5.AC559030CF8AF944DE12F01D87D2128C] 10/09/2019 A -- C:\WINDOWS\Prefetch\SEGURAZOSERVICE.EXE-38D69393.pf =>SUP.Optional.Segurazo O45 - LFCP:[MD5.19A0F1B01E4372D2BE5F29743F072172] 10/09/2019 A -- C:\WINDOWS\Prefetch\SEGURAZOUNINSTALLER.EXE-23769AFB.pf =>SUP.Optional.Segurazo O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH1: SDECon64 [64Bits] - {44176360-2BBF-4EC1-93CE-384B8681A0BC} . (.Safer-Networking Ltd. - Windows Explorer context menu integration.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll =>.Safer-Networking Ltd.® HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASAPI32 HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASMANCS HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS HKLM\SOFTWARE\Microsoft\Tracing\segurazoclient_RASAPI32 HKLM\SOFTWARE\Microsoft\Tracing\segurazoclient_RASMANCS HKLM\SOFTWARE\Microsoft\Tracing\SegurazoService_RASAPI32 HKLM\SOFTWARE\Microsoft\Tracing\SegurazoService_RASMANCS HKLM\SOFTWARE\Microsoft\Tracing\SegurazoUninstaller_RASAPI32 HKLM\SOFTWARE\Microsoft\Tracing\SegurazoUninstaller_RASMANCS C:\Program Files (x86)\Webteh C:\ProgramData\ByteFence C:\Users\Dany\AppData\LocalLow\Delta C:\WINDOWS\Prefetch\SEGURAZOCLIENT.EXE-1C334FE9.pf C:\WINDOWS\Prefetch\SEGURAZOSERVICE.EXE-38D69393.pf C:\WINDOWS\Prefetch\SEGURAZOUNINSTALLER.EXE-23769AFB.pf HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceService_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceService_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFence_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFence_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\segurazoclient_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\segurazoclient_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SegurazoService_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SegurazoService_RASMANCS HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SegurazoUninstaller_RASAPI32 HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SegurazoUninstaller_RASMANCS HKCU\Software\ProductSetup HKLM\SOFTWARE\dtc-pr HKLM64\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\ByteFence.exe [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\prismsetup.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\prismsetup.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\imedia-converter-deluxe-win-fr_setup_full1974.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\avc-free(1).exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\VdhCoAppSetup-1.2.4.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\VdhCoAppSetup-1.2.4.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\DVD Decrypter\DVDDecrypter.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\DVD Decrypter\DVDDecrypter.exe.ApplicationCompany [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\prismsetup.exe.FriendlyAppName [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\prismsetup.exe.ApplicationCompany [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\imedia-converter-deluxe-win-fr_setup_full1974.exe.FriendlyAppName [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\avc-free(1).exe.FriendlyAppName [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\VdhCoAppSetup-1.2.4.exe.FriendlyAppName [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Dany\Downloads\VdhCoAppSetup-1.2.4.exe.ApplicationCompany [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\DVD Decrypter\DVDDecrypter.exe.FriendlyAppName [HKU\S-1-5-21-54838542-3850726699-400929717-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\DVD Decrypter\DVDDecrypter.exe.ApplicationCompany C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft\WebCompanion EmptyPrefetch EmptyClsid