Rapport de ZHPFix 1.3.15 par Nicolas Coolman, Update du 14/02/2013 Fichier d'export Registre : Run by patsong at 15/02/2013 21:22:46 Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) ========== Logiciel(s) ========== ABSENT Software Key: SoftwareUpdater ABSENT Uninstall Process: c:\program files (x86)\packard bell games\john deere drive green\uninstall\uninstaller.exe ABSENT Uninstall Process: c:\program files (x86)\packard bell games\uninstall.exe SUPPRIME Slingo Deluxe ABSENT Software Key: {C28D96C0-6A90-459E-A077-A6706F4EC0FC} ========== Processus mémoire ========== SUPPRIME Memory Process: C:\Users\patsong\AppData\Local\Temp\uninst1.exe SUPPRIME Memory Process: C:\Users\patsong\AppData\Local\Temp\WLM2011Installer.exe ========== Module(s) mémoire ========== SUPPRIME Memory Module: C:\Users\patsong\AppData\Local\Temp\tbWise.dll ========== Clé(s) du Registre ========== SUPPRIME [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WildTangent packardbell Master Uninstall] SUPPRIME Key: Service Legacy: LEGACY_NPF SUPPRIME Key*: SearchScopes :{6A1806CD-94D4-4689-BA73-E35EA1EA9990} ABSENT Pointeurs: ChromeHTML(html) Default= SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{493CCB71-DCAD-4257-9F08-8750F63BD792} ABSENT Key: \Software\Classes\Installer\Products\\0C69D82C09A6E9540A776A07F6E40CCF SUPPRIME Key: Service: GamesAppService ========== Valeur(s) du Registre ========== SUPPRIME {2559F035-527A-4DD9-B1F5-AB8E0C912DD7} SUPPRIME {3BF7EC64-53D6-4CA6-99FD-DE1382EBDB89} ABSENT Valeur Standard Profile: FirewallRaz : ABSENT Valeur Domain Profile: FirewallRaz : SUPPRIME FirewallRaz (Domain) : NetPres-In-TCP-NoScope SUPPRIME FirewallRaz (Domain) : NetPres-Out-TCP-NoScope SUPPRIME FirewallRaz (None) : NetPres-WSD-In-UDP SUPPRIME FirewallRaz (None) : NetPres-WSD-Out-UDP SUPPRIME FirewallRaz (Public) : NetPres-In-TCP SUPPRIME FirewallRaz (Public) : NetPres-Out-TCP SUPPRIME FirewallRaz (Public) : TCP Query User{8817B050-F2EB-420F-92EA-08D653D46539}C:\games\world_of_tanks\wotlauncher.exe SUPPRIME FirewallRaz (Public) : UDP Query User{209F54A0-3C61-475B-8F1F-331046D09704}C:\games\world_of_tanks\wotlauncher.exe SUPPRIME FirewallRaz (Public) : {7B57B784-17A2-4488-B44B-C9A2389136F0} ========== Dossier(s) ========== SUPPRIME Folder: C:\Users\patsong\AppData\Local\{0D8F4C25-0406-4179-99CF-03E5C10F3836} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{1D02EC51-8602-472C-B1A3-3049037AB078} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{1ED3A256-EDDE-4222-90BD-1333C6CC592E} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{22E2E79A-53EA-4C22-9AD1-04FCE8D7A1F3} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{24FBF4C0-8895-497D-9F2F-001C92DE7A11} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{2693BC3B-E147-4854-9FFD-35C35629111A} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{274D8875-3ACC-4257-9EE3-500604DB295E} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{28EA46F6-17A1-4F69-A134-8628FE85A9FC} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{2BE9BC86-A8DF-4A6E-B298-3B2AE4CAC69F} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{390A398D-72F2-44E1-9BCA-2324114DDD9B} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{39327358-9000-4230-9BDD-7ECCDEBDDCE9} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{3B2CB36F-000F-4DE2-BE7C-00E095D6EEF3} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{450CD02A-5ED9-4D22-8049-3E72F41F081F} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{4DD5B046-E0AF-45D8-9897-2BD1F2A5E82C} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{4F889D2A-07A9-4FF4-91B8-8036001B7EAC} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{4F924806-92CC-4637-8663-631AC04AA4D4} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{503A4557-C61A-4B8C-8E32-431FDB1949E6} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{51D0E7C8-9647-4962-B6DA-748401CC1CB8} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{54A63ABB-B79D-4D05-B04D-C2781308E26C} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{5D125009-D598-422D-A141-34D55AB69514} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{5E5A0C37-D12D-43C0-B564-57E1AE2C8CC1} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{6451B06A-CEED-46A5-83D7-F8CE37EFE665} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{6910B0A6-B945-4DCE-93B3-EAE9DABA56CC} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{6BAC6E2E-1DDE-41C7-800A-B680C9BC0E19} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{7A454FFF-C521-4B57-826A-F340734CCBA3} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{7E7DFECE-2B74-4E55-829F-724AEA0A61A5} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{80967FD9-B598-4F22-B894-7E19819CE4B2} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{80DD3B38-29EA-445F-A2BB-D2D528BC4C4E} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{825F9328-2332-4C3E-9AD8-DF6802B243DB} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{82C2845C-C059-414F-B56B-4172416FBC7E} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{8AFC667D-C7A2-435F-9067-794AA4663B6F} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{9015F69B-BB5B-4BCB-B020-E73DFC3598F0} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{94A0FEE1-1066-442D-9FE2-5B1F21823308} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{95561496-CB88-4B2B-9769-B9973FC5EAA5} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{A2E95666-D795-420D-9D41-6375079ED4FD} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{ACCFAD3C-DEE4-4A72-93CC-DDE2312D8FC8} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{ADEC997B-40F0-43AC-B3A1-6248E6E1AF2F} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{AE899AE3-F6E0-449C-B4A6-BF61C94ECDB1} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{B6F57B5E-AA53-4A47-B096-061872ACCB0D} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{C74DDB05-1732-4F94-8877-9E3E611955D7} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{CA39A288-0860-4979-AABC-8324316C15F2} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{D74FC225-278B-47DC-9776-74B54696BBDA} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{DA7D4B63-C14C-4116-BE09-1D3710EFD7BC} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{E70F1297-E64B-4DF7-817E-109DDD2E6803} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{E903AD41-EE4B-4C44-9B60-A3F683EBFAF4} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{ECD82167-B5D9-4319-9731-BD9F44A778EA} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{ED566C6F-0166-4459-9CDB-B694EBA2E7D9} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{ED83326D-2A69-4CB1-A08F-35E07616AAD1} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{F49810C6-0990-4514-A33F-324216DADC42} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{F5018DA8-DB79-462B-96A6-6F5DC546B44B} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{FB275CD1-A807-4DB8-95B5-4598B10AEA7C} SUPPRIME Folder: C:\Users\patsong\AppData\Local\{FB784DCF-2C54-482E-BF2D-19FBD283AD9F} ========== Fichier(s) ========== ABSENT Folder/File: c:\users\patsong\appdata\local\temp\instloffer.exe SUPPRIME File*: c:\users\patsong\appdata\local\temp\uninst1.exe ABSENT Folder/File: c:\users\patsong\appdata\local\temp\uninst1.exe ABSENT File: c:\users\patsong\desktop\adwcleaner[s1] - raccourci.lnk ABSENT File: c:\adwcleaner[s1].txt SUPPRIME c:\windows\tasks\googleupdatetaskmachinecore.job SUPPRIME c:\windows\tasks\googleupdatetaskmachineua.job SUPPRIME c:\windows\popcinfo.dat SUPPRIME File: c:\users\patsong\appdata\local\temp\tbwise.dll SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\index.dat SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\svyem0pa\config[4].xml SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\teiwpx0t\990[1].png SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\xz16n212\scf[1].htm SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\svyem0pa\pixel[2].gif SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\1hx8k3z5\3ce9758c094f719bdea184f4ec5e[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\1hx8k3z5\71c9806b42ae2604b124e1133804e[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\1hx8k3z5\9fb1d9d3c1d573aeeecd39838dc3[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\1hx8k3z5\d08d9de3467347ec464d6336287f9[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\1hx8k3z5\ed4f46efb0be9458c66cc841719[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\svyem0pa\2fb4fc48a11ce2cf287c5dbb19142[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\svyem0pa\32388d96fd5c8ac553c6d1d5e8fe98[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\svyem0pa\9cd82ebbe761b0d3862554b1cb4546[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\svyem0pa\b95c5becd65cf7e2f77bcb097a27c[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\teiwpx0t\598fd4d246e374d28aaa1ea072466[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\teiwpx0t\e463693ff5f95c373228afd3f8c476[1].jpg SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\xz16n212\01[2].js SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\xz16n212\b5271793[6].htm SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\teiwpx0t\b5271793[5].htm SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\xz16n212\b5271793[7].htm SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\teiwpx0t\click[1].js SUPPRIME c:\users\patsong\appdata\local\temp\fichiers internet temporaires\content.ie5\xz16n212\file[1] SUPPRIME c:\users\patsong\appdata\roaming\malwarebytes\malwarebytes' anti-malware\logs\mbam-log-2013-02-14 (14-43-40).txt SUPPRIME File: c:\users\patsong\appdata\local\temp\acrord32_sbx\fichiers internet temporaires\content.ie5\index.dat SUPPRIME File*: c:\users\patsong\appdata\local\temp\wlm2011installer.exe SUPPRIME c:\program files (x86)\wildtangent games\app\gamesappservice.exe SUPPRIME Temporaires Windows: SUPPRIME Flash Cookies: ========== Tache planifiée ========== SUPPRIME Task: {90C0F5D6-CCD5-4F1D-9F24-FB7CFCA517E4} SUPPRIME Task: {ED0FFC47-4585-477F-8AC5-C7651DEBCF24} ========== Restauration Système ========== Point de restauration du système créé avec succès ========== Récapitulatif ========== 2 : Processus mémoire 1 : Module(s) mémoire 7 : Clé(s) du Registre 13 : Valeur(s) du Registre 52 : Dossier(s) 37 : Fichier(s) 5 : Logiciel(s) 2 : Tache planifiée 1 : Restauration Système End of clean in 09mn 18s ========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 15/02/2013 21:22:47 [11165]