cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash
O23 - Service: Conexant SmartAudio service (SAService) . (...) - C:\WINDOWS\system32\SAsrv.exe (.not file.)
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (...) -- C:\Windows\System32\HMIPCore.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (...) -- C:\Windows\System32\HMIPCore.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (...) -- C:\Windows\System32\HMIPCore.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (...) -- C:\Windows\System32\HMIPCore.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000017\Winsock LSP File . (...) -- C:\Windows\System32\HMIPCore.dll (Not File) =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000001\Winsock LSP File . (.Hide My IP.) -- C:\WINDOWS\system32\HMIPCore64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000002\Winsock LSP File . (.Hide My IP.) -- C:\WINDOWS\system32\HMIPCore64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000003\Winsock LSP File . (.Hide My IP.) -- C:\WINDOWS\system32\HMIPCore64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000004\Winsock LSP File . (.Hide My IP.) -- C:\WINDOWS\system32\HMIPCore64.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries64\000000000017\Winsock LSP File . (.Hide My IP.) -- C:\WINDOWS\system32\HMIPCore64.dll =>Hijacker.Winsock
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files (x86)\Hide My IP 6 {7806CCD8DBEB3D3EFA6C9588EF41FEFC}
O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\KMSAuto =>HackTool.WinActivator
O43 - CFD: 30/01/2016 - [] AD -- C:\Users\akram\AppData\Local\Temp
O58 - SDL:2015/12/13 21:39:37 A . (...) -- C:\WINDOWS\System32\drivers\XXLHASP.sys [288768]
O61 - LFC: 2016/01/27 20:56:53 A . (.Runtime Engine Copyright © 2015 Indigo Rose Corporati.) -- C:\Users\akram\Documents\AutoPlay Media Studio 8\Projects\exo 2\CD_Root\autorun.exe [6427648]
O87 - FAEL: "{0FCC83CB-5764-4AC3-B2FE-A2C49C21D81E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIpSrv.exe {7806CCD8DBEB3D3EFA6C9588EF41FEFC}
C:\WINDOWS\system32\HMIPCore64.dll =>Hijacker.Winsock
C:\ProgramData\KMSAuto =>HackTool.WinActivator
http://www.nicolascoolman.fr/?p=1053 =>HackTool.WinActivator

Publicité


Signaler le contenu de ce document

Publicité