Rapport de ZHPFix 1.3.14 par Nicolas Coolman, Update du 05/02/2013 Fichier d'export Registre : Run by Ma Caille & KB at 08/02/2013 17:29:14 Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002) ========== Processus mémoire ========== ABSENT Memory Process: O34 - HKLM BootExecute: (sdnclean.exe) ========== Clé(s) du Registre ========== SUPPRIME Key: CLSID BHO: {2EECD738-5844-4a99-B4B6-146BF802613B} SUPPRIME Key: HKCU\Software\YahooPartnerToolbar SUPPRIME Key: HKLM\Software\BrowserChoice SUPPRIME Key: StartupReg: cacaoweb SUPPRIME Key: StartupReg: Canaveral SUPPRIME Key: StartupReg: Media Finder SUPPRIME Key: StartupReg: SetPanel SUPPRIME Key: StartupReg: YVIBBBHA8C SUPPRIME Key: HKLM\Software\Classes\CLSID\{35b8892d-c3fb-4d88-990d-31db2ebd72bd} SUPPRIME Key: HKLM\Software\Classes\Interface\{3f607e46-0d3c-4442-b1de-de7fa4768f5c} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{93e3d79c-0786-48ff-9329-93bc9f6dc2b3} SUPPRIME Key: HKLM\Software\Classes\Interface\{fe0273d1-99df-4ac0-87d5-1371c6271785} ABSENT Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C} SUPPRIME Key: HKLM\Software\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} SUPPRIME Key: HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4ccf-834A-2DDA4E29E39E} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} SUPPRIME Key: HKLM\Software\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{C31103D1-E584-4880-B1D3-6B1DF6FBDE22} SUPPRIME Key: HKLM\Software\Classes\AppID\{F54A0D21-6A53-460C-8301-C694EC9E1033} SUPPRIME Key: HKLM\Software\Classes\AppID\{F7BCCFD4-2FA6-477D-A1B0-EF7500B3C49E} SUPPRIME Key: HKLM\Software\Classes\AppID\NCTAudioCompress3.DLL SUPPRIME Key: HKLM\Software\Classes\AppID\NCTAudioFormatSettings3.DLL ABSENT Key: HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\cacaoweb ABSENT Key: HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\YVIBBBHA8C SUPPRIME Key: HKCU\Software\Classes\MF ABSENT Key: HKLM\SoftwareAdobe\OpenCandy ========== Valeur(s) du Registre ========== SUPPRIME AAKE KeyValue: C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe SUPPRIME AAKE KeyValue: C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe SUPPRIME AAKE KeyValue: C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe SUPPRIME AAKE KeyValue: C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe ABSENT TCP Query User{F9FB2108-13B8-4B3E-8E9A-5A34FA25285A}C:/program files/emule/emule.exe ABSENT UDP Query User{05EA8D65-ED34-485B-8786-45983C215CBD}C:/program files/emule/emule.exe ABSENT TCP Query User{32E5618C-2099-4EC7-89D4-D77AA07EB3F7}C:/users/ma caille & kb/appdata/roaming/cacaoweb/cacaoweb.exe ABSENT UDP Query User{845EEB67-2993-4B0F-A43C-3C573672FF2C}C:/users/ma caille & kb/appdata/roaming/cacaoweb/cacaoweb.exe ABSENT TCP Query User{8D21BA7F-D65C-48AE-9DB6-CB99BACE129A}C:/program files/emule/emule.exe ABSENT UDP Query User{F00F58B7-68A3-474B-90A3-FCE8643A678D}C:/program files/emule/emule.exe ProxyFix : Configuration proxy supprimée avec succès SUPPRIME ProxyServer Value SUPPRIME ProxyEnable Value SUPPRIME EnableHttp1_1 Value SUPPRIME ProxyHttp1.1 Value SUPPRIME ProxyOverride Value ========== Elément(s) de donnée du Registre ========== SUPPRIME R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer SUPPRIME AppInit: \Program Files\browse~1\261123~1.78\{16cdf~1\browse~1.dll SUPPRIME StartMenuInternet: C:\Users\Ma Caille & KB\AppData\Local\Google\Chrome\Application\old_chrome.exe ========== Dossier(s) ========== SUPPRIME Folder: C:\Program Files\rkfree SUPPRIME Folder: C:\ProgramData\rkfree SUPPRIME Folder: C:\Users\Ma Caille & KB\AppData\Local\PackageAware SUPPRIME Temporaires Windows: SUPPRIME Flash Cookies: ========== Fichier(s) ========== ABSENT File: \program files\browse~1\261123~1.78\{16cdf~1\browse~1.dll SUPPRIME c:\windows\tasks\check for updates (spybot - search & destroy).job SUPPRIME c:\windows\tasks\createchoiceprocesstask.job SUPPRIME c:\windows\tasks\googleupdatetaskmachinecore.job SUPPRIME c:\windows\tasks\googleupdatetaskmachineua.job SUPPRIME c:\windows\tasks\googleupdatetaskusers-1-5-21-275949672-3586657587-272430589-1000core1cdcf301dfffd10.job SUPPRIME c:\windows\tasks\googleupdatetaskusers-1-5-21-275949672-3586657587-272430589-1000ua.job SUPPRIME c:\windows\tasks\refresh immunization (spybot - search & destroy).job SUPPRIME c:\windows\tasks\scan the system (spybot - search & destroy).job SUPPRIME c:\program files\spybot - search & destroy 2\sdtray.exe SUPPRIME c:\program files\spybot - search & destroy 2\sdfssvc.exe SUPPRIME c:\program files\spybot - search & destroy 2\sdupdate.exe SUPPRIME c:\program files\spybot - search & destroy 2\sdupdsvc.exe ABSENT File: c:\users\ma caille & kb\appdata\roaming\cacaoweb\cacaoweb.exe ABSENT File: c:\windows\system32\sshnas21.dll ABSENT File: c:\program files\media finder\mf.ex ABSENT File: c:\acer\apanel\apanel.cmd ABSENT File: c:\users\ma caille & kb\appdata\local\temp\lz1.exe SUPPRIME c:\users\ma caille & kb\appdata\local\google\chrome\application\old_chrome.exe ABSENT Folder/File: c:\program files\rkfree ABSENT Folder/File: c:\programdata\rkfree SUPPRIME Temporaires Windows: SUPPRIME Flash Cookies: ========== Récapitulatif ========== 1 : Processus mémoire 32 : Clé(s) du Registre 16 : Valeur(s) du Registre 3 : Elément(s) de donnée du Registre 5 : Dossier(s) 23 : Fichier(s) End of clean in 00mn 57s ========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 08/02/2013 17:29:15 [6379]