Script ZHPFix EmptyFlash EmptyTemp EmptyCLSID EmptyPrefetch CreateRestorePoint O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] . (. - .) -- Teams.exe O4 - HKUS\S-1-5-21-2166786013-1892394450-2208912841-1001\..\Run: [com.squirrel.Teams.Teams] . (. - .) -- Teams.exe HKCU\Software\SSProtect HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} HKLM\SOFTWARE\POLICIES\Mozilla\Firefox HKLM\System\CurrentControlSet\Services\EventLog\Application\SecurityService HKLM\SOFTWARE\Reimage HKCU\SOFTWARE\Reimage HKU\S-1-5-21-2166786013-1892394450-2208912841-1001\SOFTWARE\Reimage C:\ProgramData\SecuritySuite C:\ProgramData\TotalAV HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} HKLM\Software\Wow6432Node\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 C:\Users\gross\AppData\Local\Google\Chrome\User Data\Default\File System\000 HKCU\Software\SSProtect HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} HKLM\SOFTWARE\POLICIES\Mozilla\Firefox HKLM\System\CurrentControlSet\Services\EventLog\Application\SecurityService C:\WINDOWS\Reimage.ini O42 - Logiciel: qBittorrent 4.3.1 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent [Unsigned] HKLM\SOFTWARE\WOW6432Node\qBittorrent O43 - CFD: 24/01/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent O43 - CFD: 26/12/2021 - [] D -- C:\Users\gross\AppData\Roaming\qBittorrent O43 - CFD: 20/12/2020 - [] D -- C:\Users\gross\AppData\Local\qBittorrent O87 - FAEL: "{87D61235-BE64-4679-9394-58DE72E24D19}" [In-None-P6-TRUE] .(...) -- D:\Programme D\qBittorrent\qbittorrent.exe [Unsigned] O87 - FAEL: "{D0416328-2729-4728-92CF-398EEC4BDE13}" [In-None-P17-TRUE] .(...) -- D:\Programme D\qBittorrent\qbittorrent.exe [Unsigned] O87 - FAEL: "TCP Query User{6C933252-4794-45AC-9857-2C4998B01B79}D:\programme d\qbittorrent\qbittorrent.exe" [In-None-P6-TRUE] .(...) -- D:\programme d\qbittorrent\qbittorrent.exe [Unsigned] O87 - FAEL: "UDP Query User{C400DC36-745C-4FD5-AAB6-CAC6C008C819}D:\programme d\qbittorrent\qbittorrent.exe" [In-None-P17-TRUE] .(...) -- D:\programme d\qbittorrent\qbittorrent.exe [Unsigned] O42 - Logiciel: qBittorrent 4.3.1 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent [Unsigned] =>.The qBittorrent project HKLM\SOFTWARE\Reimage =>SUP.Optional.ReimageRepair HKCU\SOFTWARE\Reimage =>SUP.Optional.ReimageRepair HKU\S-1-5-21-2166786013-1892394450-2208912841-1001\SOFTWARE\Reimage =>SUP.Optional.ReimageRepair C:\WINDOWS\Reimage.ini =>SUP.Optional.ReimageRepair https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>SUP.Optional.ReimageRepair HKLM\SOFTWARE\WOW6432Node\qBittorrent =>.uTorrent (P2P) O43 - CFD: 24/01/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent O43 - CFD: 26/12/2021 - [] D -- C:\Users\gross\AppData\Roaming\qBittorrent O43 - CFD: 20/12/2020 - [] D -- C:\Users\gross\AppData\Local\qBittorrent O87 - FAEL: "{87D61235-BE64-4679-9394-58DE72E24D19}" [In-None-P6-TRUE] .(...) -- D:\Programme D\qBittorrent\qbittorrent.exe [Unsigned] O87 - FAEL: "{D0416328-2729-4728-92CF-398EEC4BDE13}" [In-None-P17-TRUE] .(...) -- D:\Programme D\qBittorrent\qbittorrent.exe [Unsigned] O87 - FAEL: "TCP Query User{6C933252-4794-45AC-9857-2C4998B01B79}D:\programme d\qbittorrent\qbittorrent.exe" [In-None-P6-TRUE] .(...) -- D:\programme d\qbittorrent\qbittorrent.exe [Unsigned] O87 - FAEL: "UDP Query User{C400DC36-745C-4FD5-AAB6-CAC6C008C819}D:\programme d\qbittorrent\qbittorrent.exe" [In-None-P17-TRUE] .(...) -- D:\programme d\qbittorrent\qbittorrent.exe [Unsigned] O23 - Service: McAfee CSP Service (mccspsvc) . (.McAfee, Inc. - McAfee CSP Service Host.) - C:\Program Files\Common Files\McAfee\CSP\2.6.319.0\McCSPServiceHost.exe =>.McAfee, Inc.® O23 - Service: Intel Security PEF Service (PEFService) . (.Intel Security, Inc. - Intel Security PEF Service.) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc.® SR - Auto [27/09/2017] [ 2145496] McAfee CSP Service (mccspsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\CSP\2.6.319.0\McCSPServiceHost.exe =>.McAfee, Inc.® SR - Auto [24/09/2017] [ 1046456] Intel Security PEF Service (PEFService) . (.Intel Security, Inc..) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc.® [MD5.50999D0BD02CEAC6A7B6BF6DB60A8AE5] - (.Intel Security, Inc. - Intel Security PEF Service.) -- C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1046456] [PID.4760] =>.McAfee, Inc.® C:\Users\gross\AppData\Roaming\Mozilla\Firefox\Profiles\0xv19li6.default\browser-extension-data\{4ED1F68A-5463-4931-9384-8FFF5ED91D92} =>McAfee Inc. O42 - Logiciel: Intel Security Software Manager - (.Intel Security.) [HKLM][64Bits] -- Intel Security Software Manager =>.McAfee, Inc.® HKLM\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\McAfee.logging =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc. HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc. O43 - CFD: 13/12/2017 - [] D -- C:\Program Files (x86)\Common Files\McAfee =>.McAfee [587CD21A05D34D3DDFAA9128521CF4FC] [04/10/2017] (.McAfee, Inc..) - C:\Program Files (x86)\Common Files\McAfee\Installer\mcinst.exe =>.McAfee, Inc. [6385A608FBD858EB4471A022CCE76B8F] [24/09/2017] (.McAfee, Inc..) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc. [6385A608FBD858EB4471A022CCE76B8F] [27/09/2017] (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\CSP\2.6.319.0\McCSPServiceHost.exe =>.McAfee, Inc. HKLM\SOFTWARE\trendmicro =>.TrendMicro HKLM\SOFTWARE\WOW6432Node\trendmicro =>.TrendMicro G2 - GCE: Preference [gross][User Data\Default\Extensions] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security & Privacy =>.Avast Software s.r.o P2 - EXT FILE: (.Avast Software s.r.o.) -- C:\Users\gross\AppData\Roaming\Mozilla\Firefox\Profiles\0xv19li6.default\extensions\wrc@avast.com.xpi [Unsigned] =>.Avast Software s.r.o [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastUI.exe =>.Avast Software s.r.o [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:AvastUI.exe =>.Avast Software s.r.o HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKU\.DEFAULT\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKU\S-1-5-21-2166786013-1892394450-2208912841-1001\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 07/12/2019 - [] DC -- C:\Users\gross\AppData\Local\AVAST Software =>.AVAST Software O58 - SDL:2018/04/04 09:26:11 A . (...) -- C:\WINDOWS\System32\drivers\lpsport.sys [61304] =>.AVG Technologies CZ, s.r.o.® [266D333EDE17A8B472053E4FA3934572] [04/04/2018] (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\lpsport.sys =>.AVG Technologies CZ, s.r.o.