cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash
HKLM\SOFTWARE\DtsEncodeTools =>PUP.Optional.WeatherTool
HKCU\SOFTWARE\25EA82822BDCCF2AB1105951F940DF49 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Yahoo =>.Yahoo!
O87 - FAEL: "TCP Query User{9C7424DC-C1D0-44A7-8A22-8A8E4785A93D}C:\users\ahmed\downloads\programs\ffinstonline.exe" [In-None-P6-TRUE] .(...) -- C:\users\ahmed\downloads\programs\ffinstonline.exe (.not file.)
O87 - FAEL: "UDP Query User{0B8DD996-FE70-4C1A-9295-DA078772CA04}C:\users\ahmed\downloads\programs\ffinstonline.exe" [In-None-P17-TRUE] .(...) -- C:\users\ahmed\downloads\programs\ffinstonline.exe (.not file.)
O87 - FAEL: "{832FB995-5119-47C2-8BA0-6F43B9B30076}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe (.not file.)
O87 - FAEL: "{0E0DF9E2-8703-49EF-8360-B804B3C0C716}" [Out-None-P17-TRUE] .(...) -- C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe (.not file.)
O87 - FAEL: "{EF0447AF-8F65-4558-AD6B-1CC0055D4785}" [In-None-P6-TRUE] .(...) -- C:\Users\ahmed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{54AB0218-5F32-422E-A58B-5725F62F7287}" [In-None-P17-TRUE] .(...) -- C:\Users\ahmed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
HKLM\SOFTWARE\Avg
HKCU\SOFTWARE\Avg
O43 - CFD: 24/10/2015 - [0] D -- C:\ProgramData\Avg
O43 - CFD: 23/10/2015 - [] D -- C:\Users\ahmed\AppData\Roaming\AVG
O43 - CFD: 24/10/2015 - [] D -- C:\Users\ahmed\AppData\Local\Avg
O43 - CFD: 23/10/2015 - [] D -- C:\Users\ahmed\AppData\Local\Avg2014
O43 - CFD: 24/10/2015 - [] D -- C:\Users\ahmed\AppData\Local\AvgSetupLog
O43 - CFD: 24/10/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg
[MD5.00000000000000000000000000000000] [APT] [TaskName] (...) -- Task To Run (.not file.) [0] (.Activate.) =>.Superfluous.Empty
MD5.00000000000000000000000000000000] [APT] [GridinSoft Anti-Malware] (...) -- C:\Program Files\GridinSoft Anti-Malware\gsam.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
MD5.00000000000000000000000000000000] [APT] [{1A9806CB-2646-499D-810E-A92B173225DF}] (...) -- F:\Ÿ¥ê§ 㭟ê\ê¤é§ ¤§ï§ ??\myEGY.TO.5763P876E2943.CRAZY\myEGY.TO.5763P876E2943.CRAZY\Redist\vcredist_x86.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{28A95FB9-230A-4893-8620-DC05EC7D831C}] (...) -- F:\Ÿ¥ê§ 㭟ê\ê¤é§ ¤§ï§ ??\myEGY.TO.5763P876E2943.CRAZY\myEGY.TO.5763P876E2943.CRAZY\Redist\vcredist_x86.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{8610F83D-69BE-482A-8568-BE672AAEE57F}] (...) -- F:\ê¤é§ ¤§ï§ ?(4)?\SetEdithomecast\SetEdithomecast\SetEditHomecast_installation_de.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{894FE5B0-8228-42BE-BC16-8EB102866CAB}] (...) -- F:\ ©Ÿê¤\wlsetup-web.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{8FAEA001-E26F-4AB6-BEA8-1AF3E14C5810}] (...) -- F:\ ©Ÿê¤\¥©ç Ÿéíïë§íª\¥©ç xp\Win Setup From USB_zyzoom\Win Setup From USB_zyzoom\Win Setup From USB_0-2-3.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{F5BAD9F8-13AB-4F43-A85D-B719E7E5B85E}] (...) -- F:\cakeshop2_setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 23/05/2016 - [] D -- C:\Users\ahmed\AppData\Local\Temp
O43 - CFD: 22/10/2015 - [] SHD -- C:\Users\ahmed\AppData\Local\Temporary Internet Files
O43 - CFD: 04/11/2015 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Adobe
O43 - CFD: 24/10/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg
O43 - CFD: 17/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft


Publicité


Signaler le contenu de ce document

Publicité