cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script zhpfix
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[MD5.83166BFFA8C4BBAC4413F47C865CC8EE] - (.Microsoft Corporation - Outil de notification de cadeaux MSN.) -- C:\Users\Geisha\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe [183096] [PID.2668]
G2 - GCE: Preference [User Data\Default] [bkomkajifikmkfnjgphkjcfeepbnojok] PriceGong v.5.6.12 (D�sactiv�) =>Adware.PriceGong
G2 - GCE: Preference [User Data\Default] [dffhljlmcohcioeilbnpmbchdcbhifdh] WiseConvert 1.5 v.10.26.4.512, (D�sactiv�) =>Toolbar.Conduit
G2 - GCE: Preference [User Data\Default] [ifohbjbgfchkkfhphahclmkpgejiplfo] Lightning Newtab v.1.1.8.5, (D�sactiv�) =>PUP.Elex
O3 - Toolbar: avast! Online Security - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O3 - Toolbar: ZoneAlarm Security Engine - [HKLM]{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} . (...) -- C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: avast! Online Security - [HKLM]{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O4 - GS\Startup [Geisha]: IMVU.lnk . (...) -- C:\Users\Geisha\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe (.not file.)
O4 - GS\Startup [Geisha]: Outil de notification de cadeaux MSN.lnk . (.Microsoft Corporation - Outil de notification de cadeaux MSN.) -- C:\Users\Geisha\AppData\Roaming\Microsoft\Outil de notification de cadeaux MSN\msnotif.exe
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (.not file.)
O23 - Service: SecureUpdate (SecureUpdateSvc) . (...) - C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe (.not file.)
O23 - Service: Util LinkSwift (Util LinkSwift) . (...) - C:\Program Files (x86)\LinkSwift\bin\utilLinkSwift.exe (.not file.) =>
[MD5.00000000000000000000000000000000] [APT] [Run RoboForm TaskBar Icon] (...) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{69389B01-D80B-40D7-B57A-B38C6B1853AF}] (...) -- C:\PROGRA~3\TARMAI~1\{889DF~1\Setup.exe (.not file.) [0] =>PUP.Tarma
[MD5.00000000000000000000000000000000] [APT] [{A4F0E42D-1D77-4DC7-B442-AC705933043A}] (...) -- C:\Program Files (x86)\ExpressFiles\uninstall.exe (.not file.) [0] =>Adware.ExpressFiles
[MD5.00000000000000000000000000000000] [APT] [{C900797B-AF34-4D89-9A2F-833642405A76}] (...) -- C:\Program Files\DomaIQ Uninstaller\DomaIQUninstall.exe (.not file.) [0] =>Adware.DomaIQ
O42 - Logiciel: delta-homes Browser Protecter - (.delta-homes.) [HKLM][64Bits] -- delta-homes Browser Protecter =>Toolbar.DeltaSearch
O45 - LFCP:[MD5.86D6CF53F072C265ED3356EAB178F340] - 08/02/2014 - 21:35:54 ---A- - C:\Windows\Prefetch\SOFTONICDOWNLOADER_POUR_SONY--1A194C97.pf =>Toolbar.Conduit
O45 - LFCP:[MD5.D4C4AFE07B9F7EBC7F2BD1BE92268020] - 10/02/2014 - 19:12:01 ---A- - C:\Windows\Prefetch\FILESCOUT.EXE-8F52B8B0.pf =>PUP.FileScout
O51 - MPSK:{10da4715-0da1-11e3-bed4-b888e35a35d2}\AutoRun\command. (...) -- E:\setup.exe (.not file.)
O51 - MPSK:{5578af78-3af6-11e2-be73-b888e35a35d2}\AutoRun\command. (...) -- E:\demarrer.html (.not file.)
O87 - FAEL: "{116DE8B2-E776-41FA-8537-9BFD71C59F3F}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{CEEDF318-DB9F-4BCA-8237-0B5AC40F95B5}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe (.not file.) =>PUP.SweetIM
O87 - FAEL: "{395BFE75-FDC2-4FEE-B5AC-7D40C8325138}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\ExpressFiles\expressdl.exe (.not file.) =>Adware.ExpressFiles
O87 - FAEL: "{F2263C37-F907-4B50-A9AB-8468EE0DC0FA}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\ExpressFiles\expressdl.exe (.not file.) =>Adware.ExpressFiles
O87 - FAEL: "{529D763A-461B-4FFF-9B8D-66AB3D67FA1E}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe (.not file.) =>Adware.ExpressFiles
O87 - FAEL: "{4D1BD5C4-F054-4363-860D-5432452AECC2}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\ExpressFiles\ExpressFiles.exe (.not file.) =>Adware.ExpressFiles
O87 - FAEL: "{37A72B85-0476-41AD-8D41-63328CE95451}" |In - Public - P6 - TRUE | .(...) -- C:\ProgramData\eSafe\eGdpSvc.exe (.not file.) =>PUP.eSafeSecurity
[MD5.B67811645C5A3B8E4E4B1A1DB1EE271C] [WIS][28/11/2012] (.Boxore OU. - Software Update Helper.) -- C:\Windows\Installer\ae456a.msi [45056] =>Adware.Boxore
SS - | Auto 10/07/1658 0 | (SecureUpdateSvc) . (...) - C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe
SS - | Auto 10/07/1658 0 | (Util LinkSwift) . (...) - C:\Program Files (x86)\LinkSwift\bin\utilLinkSwift.exe =>PUP.LinkSwift
[HKLM\Software\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok] =>Adware.PriceGong^
[HKLM\Software\Google\Chrome\Extensions\dffhljlmcohcioeilbnpmbchdcbhifdh] =>Toolbar.Conduit^
[HKLM\Software\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo] =>PUP.Elex^
[HKLM\SYSTEM\CurrentControlSet\Services\Util LinkSwift] =>PUP.LinkSwift^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\delta-homes Browser Protecter] =>Toolbar.DeltaSearch^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\1C875DDE39636004CA8CDAEC335B4160] =>Adware.PredictAd
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\BA086F2D38A8E1A47912955A68B3AD24] =>Adware.PredictAd
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Security Toolbar] =>Toolbar.ZoneAlarm
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\64A6E60055D801F4BB8AC269354B72B8] =>Adware.Boxore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1EAD96AE2CB1DE84BAA9425A8CCA0817] =>Adware.Boxore
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Protection_ZoneAlarm Toolbar] =>Toolbar.ZoneAlarm
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110111991162}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA71D41F6CC0B6247B05D473850A8AEA] =>Adware.Boxore^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =>Adware.Boxore^
C:\Users\Geisha\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok =>Adware.PriceGong^
C:\Users\Geisha\AppData\Local\Google\Chrome\User Data\Default\Extensions\dffhljlmcohcioeilbnpmbchdcbhifdh =>Toolbar.Conduit^
C:\Users\Geisha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo =>PUP.Elex^
C:\Windows\Installer\ae456a.msi =>Adware.Boxore^
C:\Users\Geisha\AppData\Local\Temp\uninst1.exe =>PUP.Babylon
C:\Users\Geisha\AppData\Local\Temp\SIMEEIInstaller.exe =>PUP.SweetIM
C:\Users\Geisha\AppData\Local\Temp\incredibar_installer.exe =>Adware.IncrediBar
C:\Users\Geisha\AppData\Local\Temp\conduitinstaller.exe =>Toolbar.Conduit
C:\Users\Geisha\AppData\Local\Temp\GUninstaller.exe =>PUP.Babylon
emptytemp
emptyflash

Publicité


Signaler le contenu de ce document

Publicité