cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application
O2 - BHO: (no name) [64Bits] - {41564952-412D-5637-4300-7A786E7484D7} Orphan key
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{A13C2648-91D4-4BF3-BC6D-0079707C4389} Orphan key
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} Orphan key
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{19AB3924-35C3-41AE-98B7-6A9CDF799AF2}: DhcpNameServer = 40.54.1.16
O17 - HKLM\System\CCS\Services\Tcpip\..\{AD3DDEB2-3553-4289-B15E-EF808FC2EC25}: DhcpNameServer = 172.20.10.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{19AB3924-35C3-41AE-98B7-6A9CDF799AF2}: DhcpDomain = wds-16.com
O17 - HKLM\System\CS1\Services\Tcpip\..\{19AB3924-35C3-41AE-98B7-6A9CDF799AF2}: DhcpNameServer = 40.54.1.16
O17 - HKLM\System\CS1\Services\Tcpip\..\{AD3DDEB2-3553-4289-B15E-EF808FC2EC25}: DhcpNameServer = 172.20.10.1
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
[MD5.00000000000000000000000000000000] [APT] [ASUS InstantOn Config] (...) -- C:\Program Files\ASUS\P4G\InsOnCfg.exe (.not file.) [0]
[HKLM\Software\Wow6432Node\ProtectExtension] =>PUP.ProtectExtension
O45 - LFCP:[MD5.503DE6B99CF838D56A6204234116C79E] - 8/23/2014 - 8:54:46 AM ---A- - C:\Windows\Prefetch\SIGNUP WIZARD.EXE-9554BD21.pf =>PUP.MyPCBackup
O45 - LFCP:[MD5.74DDE6955B4B145DBB26CB13B6721F71] - 9/11/2014 - 8:28:31 PM ---A- - C:\Windows\Prefetch\SOFTONICDOWNLOADER_FOR_MALWAR-A90C2D2C.pf =>Toolbar.Conduit
O45 - LFCP:[MD5.C8E294A2C0B024954DAE35FC83C725AF] - 9/11/2014 - 8:00:05 PM ---A- - C:\Windows\Prefetch\WISEENHANCE.PURBROWSE64.EXE-939E86A5.pf =>PUP.WiseEnhance
O61 - LFC: 6/21/2015 - 5:07:19 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\Quarantine.exe [610816]
O61 - LFC: 6/26/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\firefox.bat [152939]
O61 - LFC: 6/26/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\iexplore.bat [31058]
O61 - LFC: 6/26/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\runvalues.bat [7353]
O61 - LFC: 6/27/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\ask.bat [23026]
O61 - LFC: 6/27/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\get.bat [16970]
O61 - LFC: 6/27/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\misc.bat [144981]
O61 - LFC: 6/27/2015 - 5:07:18 AM ---A- . (...) -- C:\Users\USER\AppData\Local\Temp\jrt\mws.bat [14527]
O61 - LFC: 6/28/2015 - 5:07:19 AM ---A- . (.Babylon Software Ltd..) -- C:\Users\USER\AppData\Local\Temp\{5111D459-D8BD-4C26-BE8B-A15ED1ACBF69}\BException.dll [112640] =>PUP.Babylon
O61 - LFC: 6/28/2015 - 5:07:19 AM ---A- . (.Babylon Software Ltd..) -- C:\Users\USER\AppData\Local\Temp\{5111D459-D8BD-4C26-BE8B-A15ED1ACBF69}\BabyServices.dll [1079808] =>PUP.Babylon
[HKLM\Software\Classes\AppID\secman.DLL] =>PUP.Babylon
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified =>Hijacker.Application^
[HKLM\Software\Wow6432Node\ProtectExtension] =>PUP.ProtectExtension^

FirewallRaz
EmptyTemp
EmptyFlash
Proxyfix
Sysrestore

Publicité


Signaler le contenu de ce document

Publicité