cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
G2 - GCE: Preference [User Data\Default] [afjegdojkkoghnbiollpogeeimocanmk] SupraSavings v.5.0, (Activ�) =>PUP.SupraSavings
G2 - GCE: Preference [User Data\Default] [cjcmpicjhnkfmkehehaanpfijomlhbbp] BetterDeals-11 v.1.26.37, (Activ�) =>PUP.BetterDeals
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com =>Hijacker.SmartBar
[HKLM\Software\Wow6432Node\BetterDeals-11] =>PUP.BetterDeals
O44 - LFC:[MD5.13014E17D8DB6432FAB9BB94E01BDBF2] - 05/05/2014 - 15:57:35 ---A- . (.System Speedup - System Speedup.) -- C:\Windows\System32\roboot64.exe [19544] =>PUP.SystemSpeedup
O58 - SDL:18/03/2014 - 15:12:04 ---A- . (.SecureAssist - WFP driver.) -- C:\Windows\System32\Drivers\SAWFP64.sys [41768] =>PUP.SupraSavings
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil.dll [414208] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil64.dll [505344] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-helper.exe [318976] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\Uninstall.exe [115200] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-bg.exe [751616] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-bho64.dll [963072] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil.exe [343552] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-buttonutil64.exe [450560] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-chromeinstaller.exe [471040] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:52 ---A- . (.BetterDeals.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\BetterDeals-11.DIR\BetterDeals-11-firefoxinstaller.exe [732160] =>PUP.BetterDeals
O61 - LFC: 05/05/2014 - 19:12:53 ---A- . (...) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\SupTab.DIR\uninstall.exe [124585] =>PUP.SupTab
O61 - LFC: 05/05/2014 - 19:12:53 ---A- . (.Sien SA.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\igdhbblpcellaljokkpfhcjlagemhgjl.DIR\minibarchrome.exe [869184] =>PUP.Minibar
O61 - LFC: 05/05/2014 - 19:12:54 ---A- . (.Cherished Technololgy LIMITED.) -- C:\Users\alexandra\AppData\Roaming\ZHP\Quarantine\WPM.DIR\wprotectmanager.exe [566272] =>PUP.WpManager
[HKLM\Software\Google\Chrome\Extensions\afjegdojkkoghnbiollpogeeimocanmk] =>PUP.SupraSavings^
[HKLM\Software\Google\Chrome\Extensions\cjcmpicjhnkfmkehehaanpfijomlhbbp] =>PUP.BetterDeals^
C:\Users\alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\afjegdojkkoghnbiollpogeeimocanmk =>PUP.SupraSavings^
C:\Users\alexandra\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjcmpicjhnkfmkehehaanpfijomlhbbp =>PUP.BetterDeals^
[HKLM\Software\Wow6432Node\BetterDeals-11] =>PUP.BetterDeals^
[MD5.2A3FB4C98F139038E23330D2439DB8A4] - (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\alexandra\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [PID.2912]
R3 - URLSearchHook: (no name) [64Bits] - {e4f7b179-a3f6-47d8-9832-cb7b2627312a} . (.Microsoft Corporation - Navigateur Internet.) (No version) -- (.not file.)
SR - | Auto 21/01/2008 21504 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe
C:\Windows\system32\wuaueng.dll

FirewallRaz
PROXYFix
EmptyTemp
EmptyFlash
EmptyClsid
SysRestore

Publicité


Signaler le contenu de ce document

Publicité