Rapport de ZHPFix 2017.06.13.1 par Nicolas Coolman, Update du 13/06/2017 Fichier d'export Registre : Run by Mikael Pulla at 29.06.2017 18:38:23 High Elevated Privileges : OK Windows 8 Home Premium Edition, 64-bit Service Pack 1 (14393) Recycle Bin emptied (00mn 05s) Prefetcher emptied ========== Process memory ========== REMOVES: Memory Process: C:\Users\Mikael Pulla\dvm.exe REMOVES Reboot: Memory Process: D:\t411 download\SteamLibrary\steamapps\common\wallpaper_engine\wallpaper32.exe REMOVES Reboot: Memory Process: C:\Users\Mikael Pulla\AppData\Local\skms.exe REMOVES: Memory Process: C:\ProgramData\GPI\lasas.exe REMOVES: Memory Process: C:\Users\Mikael Pulla\AppData\Local\nvidm.exe REMOVES: Memory Process: C:\ProgramData\GPI\lasac.exe ========== Registry values ========== ABSENT value Domain Profile: FirewallRaz : REMOVES: FirewallRaz (None) : {102E1207-A2D2-4E95-8F82-85937C16D36D} REMOVES: FirewallRaz (None) : {9E14FF8A-FD0A-4744-B634-525CA2C0522D} REMOVES: FirewallRaz (Domain) : {E1797E61-C9B7-4CB9-82D3-9CFB0DBA0830} REMOVES: FirewallRaz (Domain) : {3720D681-FBB7-4924-85EF-5825A1D7F9EB} REMOVES: FirewallRaz (Domain) : {4A62ADD9-442C-401F-B597-4125DDD4F3C4} REMOVES: FirewallRaz (Domain) : {8BE2884C-CB64-4FF8-A388-BF19DBDDB85A} REMOVES: FirewallRaz (Domain) : {75550793-0398-4C13-B30F-F6B1C9E450E2} REMOVES: FirewallRaz (Domain) : {70D907AA-94A9-4D1E-977B-65DC3B73360E} REMOVES: FirewallRaz (Domain) : {E2C22F2A-DFC2-4C5F-9A07-5B3782EDBBA4} REMOVES: FirewallRaz (Domain) : {FFF363A9-BF71-45A8-B89D-0F135493F7F2} REMOVES: FirewallRaz (Private) : TCP Query User{74A3FA09-AB8A-4E6E-A442-87CB6DB3B813}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe REMOVES: FirewallRaz (Private) : UDP Query User{04545E28-205C-4B45-BB89-E49FBDEEF490}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe REMOVES: FirewallRaz (Domain) : {3F3885AB-9175-40A8-93E4-1F9953A25C86} REMOVES: FirewallRaz (Domain) : {547CC72C-F35A-4E99-BBB8-7C16DD39D896} REMOVES: FirewallRaz (Domain) : {6C557AD1-F032-46BF-B5BE-6B8335AAFF1C} REMOVES: FirewallRaz (Domain) : {02895259-ADC3-4732-A84A-7C61BA900FA9} REMOVES: FirewallRaz (Domain) : {96AFA8F4-1CBE-49E2-8C39-B4A4F95BED9D} REMOVES: FirewallRaz (Domain) : {62B66B3C-DC68-4FED-AAF3-EFAAA4A8D639} REMOVES: FirewallRaz (Domain) : {B48434C5-EB33-42FD-9DDF-A4A7F895C640} REMOVES: FirewallRaz (Domain) : {651260AC-3994-4ABF-AF99-729676A6E642} REMOVES: FirewallRaz (Domain) : {B7E27F79-B4DA-4872-9212-F75AC20DF1CA} REMOVES: FirewallRaz (Domain) : {097925EC-A979-4D77-BE3D-731FAD438963} REMOVES: FirewallRaz (Domain) : {9BE4533A-B0AB-428B-9D17-8E892832D44F} REMOVES: FirewallRaz (Domain) : {F9005F63-AA65-4435-ABEC-3ECD8703B32C} REMOVES: FirewallRaz (None) : {D9BFA40C-8ABD-43EC-A003-7EA70B7889E2} REMOVES: FirewallRaz (None) : {351E3334-3BA2-4842-9715-3C0A66464E51} REMOVES: FirewallRaz (None) : {1587213B-75D5-453C-9817-DBF489C8C5BF} REMOVES: FirewallRaz (Public) : {358263C2-592D-41B1-ABBC-AB8E19A4C814} REMOVES: FirewallRaz (Public) : {F6C7E332-BC17-4AD1-AD35-0CC0ACA5360C} REMOVES: FirewallRaz (None) : {24CA07BD-3F62-43D1-B37A-D95171F01B11} REMOVES: FirewallRaz (Private) : TCP Query User{02541BFB-488E-4253-83AF-DB6DFAA0BCFE}D:\t411 download\dead island definitive edition\deadislandgame.exe REMOVES: FirewallRaz (Private) : UDP Query User{0529A4CD-CB25-4AAB-AD75-EAA06EB15DF1}D:\t411 download\dead island definitive edition\deadislandgame.exe REMOVES: FirewallRaz (Private) : TCP Query User{459D6B49-80BC-414A-8EBB-B1A70F2D9CD0}C:\program files (x86)\overwatch\overwatch.exe REMOVES: FirewallRaz (Private) : UDP Query User{7C722455-A2D9-439E-B5D8-BEC16906F495}C:\program files (x86)\overwatch\overwatch.exe REMOVES: FirewallRaz (Domain) : {D3C59D1A-E9A8-4C5D-B87B-941376BA963F} REMOVES: FirewallRaz (Domain) : {412F1962-A07D-4C27-81BF-E191ADA08D4D} REMOVES: FirewallRaz (Private) : TCP Query User{30A9AE30-A7D4-4AEE-B1DA-6A49BF375CC4}C:\program files (x86)\vmpk\vmpk.exe REMOVES: FirewallRaz (Private) : UDP Query User{245B0714-220A-4099-926E-961633915F1F}C:\program files (x86)\vmpk\vmpk.exe REMOVES: FirewallRaz (Private) : TCP Query User{07614A10-07CB-425B-BC9A-E8AEA829C220}D:\t411 download\gh3.exe REMOVES: FirewallRaz (Private) : UDP Query User{1814E79F-E9C5-4D19-9E0B-48E1E65C72DB}D:\t411 download\gh3.exe REMOVES: FirewallRaz (Private) : TCP Query User{C7DA7D7B-26FA-414D-84B0-920F28EB7C48}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe REMOVES: FirewallRaz (Private) : UDP Query User{0E406633-01A6-43F3-A8E5-D93F087DBBBC}D:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe REMOVES: FirewallRaz (Private) : TCP Query User{DF65EF25-F09A-4129-97C6-DF7FA5EA9EDC}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe REMOVES: FirewallRaz (Private) : UDP Query User{3EDB81F8-0645-4939-987B-E373E24CDED5}D:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe REMOVES: FirewallRaz (Private) : TCP Query User{69781763-0237-4E89-A7B5-6B440F476A1F}C:\program files\java\jre1.8.0_131\bin\javaw.exe REMOVES: FirewallRaz (Private) : UDP Query User{17AA60B2-7DDD-4555-A718-F81CFD04AF54}C:\program files\java\jre1.8.0_131\bin\javaw.exe REMOVES: FirewallRaz (Private) : TCP Query User{A869B291-3484-4733-BAA9-C5D3A2047D21}D:\t411 download\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe REMOVES: FirewallRaz (Private) : UDP Query User{FD81C48B-5F7F-414A-8789-7088052A9509}D:\t411 download\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe REMOVES RunValue: WallpaperEngine REMOVES RunValue: 340513809940486e6d75faec061c1a34 ========== Preferences browser ========== REMOVES Folder Chrome: C:\Users\Mikael Pulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo REMOVES Folder Chrome: C:\Users\Mikael Pulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda REMOVES Folder Chrome: C:\Users\Mikael Pulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ========== Folders ========== Deletes temporary Windows (408) REMOVES Flash Cookies (0) REMOVES: C:\Users\Mikael Pulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo REMOVES: C:\Users\Mikael Pulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda REMOVES: C:\Users\Mikael Pulla\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia REMOVES: C:\Users\Mikael Pulla\AppData\Local\melo REMOVES: C:\Users\Mikael Pulla\AppData\Local\Setup178132515 REMOVES: C:\Users\Mikael Pulla\AppData\Local\Setup250523296 REMOVES: C:\Users\Mikael Pulla\AppData\Local\{B5F70934-5E12-42d2-882D-62D42EA1FA67} ========== Files ========== Deletes temporary Windows (1196) (712?674?239 octets) REMOVES Flash Cookies (0) (0 octets) REMOVES Reboot: d:\t411 download\steamlibrary\steamapps\common\wallpaper_engine\wallpaper32.exe REMOVES:** c:\programdata\gpi\lasas.exe REMOVES:* c:\users\mikael pulla\appdata\local\nvidm.exe REMOVES: c:\users\mikael pulla\appdata\local\google\chrome\user data\default\preferences ========== Scheduled task ========== REMOVES: dvm REMOVES: {1B3C5BF1-93F7-49DC-85D3-48E869DFC2F5} ========== Summary ========== 6 : Process memory 51 : Registry values 9 : Folders 6 : Files 3 : Preferences browser 2 : Scheduled task End of clean in 00mn 28s ========== Path to file report ========== C:\Users\Mikael Pulla\AppData\Roaming\ZHP\ZHPFix[R1].txt - 29.06.2017 18:38:29 [7572]