HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2007392 2014-04-01] (Wondershare) C:\Program Files (x86)\Common Files\Wondershare HKU\S-1-5-21-475818928-1566985967-3258346663-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [2374784 2014-08-23] (Microsoft Corporation) <==== ATTENTION HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://mysearch.avg.com?cid={FCA84EB8-624D-4F05-9C15-7F68C6D304FA}&mid=71faee80e0e247d2a1f441627233b89a-7d03489fdaec6857f67b2f3520a73aa5b9aae52c&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-08-30 15:40:51&v=18.1.9.786&pid=safeguard&sg=&sap=hp U0 Partizan; system32\drivers\Partizan.sys [X] C:\Users\DSW79\AppData\Local\Temp\nvSCPAPI.dll C:\Users\DSW79\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\DSW79\AppData\Local\Temp\nvStInst.exe C:\Users\DSW79\AppData\Local\Temp\Quarantine.exe