Rapport de ZHPFix 2013.6.12.3 par Nicolas Coolman, Update du 12/06/2013 Fichier d'export Registre : Run by Jean at 22/06/2013 12:47:35 High Elevated Privileges : OK Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002) Corbeille vidée ========== Logiciel(s) ========== ABSENT Uninstall Process: c:\program files\delta\delta\1.8.16.16\guninstaller.exe ========== Processus mémoire ========== SUPPRIME Memory Process: C:\Users\Jean\AppData\Roaming\BabMaint.exe ========== Clé(s) du Registre ========== SUPPRIME [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\delta] SUPPRIME Key: CLSID BHO: {C1AF5FA5-852C-4C90-812E-A7F75E011D87} SUPPRIME Key: CLSID: [HKLM\SOFTWARE\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] SUPPRIME Key: CLSID: [HKLM\SOFTWARE\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}] ABSENT Key: Service: BrowserProtect SUPPRIME Key: HKCU\Software\BabSolution SUPPRIME Key: HKCU\Software\BabylonToolbar SUPPRIME Key*: HKCU\Software\DataMngr SUPPRIME Key*: HKCU\Software\DataMngr_Toolbar SUPPRIME Key: HKCU\Software\Delta ABSENT Key: HKCU\Software\?? ?? ???? ????? ??? ?? ???? SUPPRIME Key: HKLM\Software\Babylon SUPPRIME Key*: HKLM\Software\DataMngr SUPPRIME Key: HKLM\Software\Delta SUPPRIME Key: HKLM\Software\MetaStream ERREUR Key: Service Legacy: LEGACY_LBD SUPPRIME Key: SearchScopes :{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SUPPRIME Key: SearchScopes :{7a14ea26-cbb6-4fd1-b802-49415c8e9ee6} SUPPRIME Key: HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} ABSENT Key: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9} SUPPRIME Key: HKLM\Software\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} SUPPRIME Key: HKLM\Software\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} SUPPRIME Key: HKLM\Software\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} SUPPRIME Key: HKLM\Software\Classes\AppID\escort.dll SUPPRIME Key: HKLM\Software\Classes\AppID\escortapp.dll SUPPRIME Key: HKLM\Software\Classes\AppID\escorteng.dll SUPPRIME Key: HKLM\Software\Classes\AppID\esrv.EXE SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer SUPPRIME Key: HKLM\Software\Classes\escort.escortIEPane SUPPRIME Key: HKLM\Software\Classes\escort.escortIEPane.1 ABSENT Key: HKCU\Software\DataMngr ABSENT Key: HKLM\Software\DataMngr SUPPRIME Key: HKLM\Software\Viewpoint ABSENT Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} ABSENT Key: HKLM\Software\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} ABSENT Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer SUPPRIME Key: HKLM\Software\Classes\Prod.cap ABSENT Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3} ABSENT Key: HKLM\Software\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Delta SUPPRIME Key: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} SUPPRIME Key: HKLM\Software\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26} SUPPRIME Key: HKLM\Software\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B} SUPPRIME Key: HKLM\Software\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE} SUPPRIME Key: HKLM\Software\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} SUPPRIME Key: HKLM\Software\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D} SUPPRIME Key: HKLM\Software\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B} SUPPRIME Key: HKLM\Software\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8} SUPPRIME Key: HKLM\Software\Classes\delta.deltaappCore SUPPRIME Key: HKLM\Software\Classes\delta.deltaappCore.1 SUPPRIME Key: HKLM\Software\Classes\delta.deltadskBnd SUPPRIME Key: HKLM\Software\Classes\delta.deltadskBnd.1 ABSENT Key: HKLM\Software\Classes\AppID\ESRV.EXE SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Delta Chrome Toolbar SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion SUPPRIME Key: HKCU\Software\AOLToolbar SUPPRIME Key: HKLM\Software\Google\Chrome\Extensions\mocblcnaofikinigmceddfghppkkjbog SUPPRIME Key: HKLM\Software\Classes\delta.deltaHlpr SUPPRIME Key: HKLM\Software\Classes\delta.deltaHlpr.1 SUPPRIME Key: HKLM\Software\Classes\esrv.deltaESrvc SUPPRIME Key: HKLM\Software\Classes\esrv.deltaESrvc.1 ABSENT Key: HKLM\Software\Classes\AppID\escort.DLL ABSENT Key: HKLM\Software\Classes\AppID\escortApp.DLL ABSENT Key: HKLM\Software\Classes\AppID\escortEng.DLL SUPPRIME Key: HKLM\Software\Classes\AppID\escorTlbr.DLL ========== Valeur(s) du Registre ========== SUPPRIME Toolbar: {82E1477C-B154-48D3-9891-33D83C26BCD3} ABSENT Valeur Standard Profile: FirewallRaz : ABSENT Valeur Domain Profile: FirewallRaz : ========== Elément(s) de donnée du Registre ========== SUPPRIME AppInit: \ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll ========== Préférences navigateur ========== PRESENT Chrome File: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Preferences SUPPRIME Chrome Site: http://www.delta-search.com SUPPRIME Chrome Site: http://www.delta-search.com SUPPRIME Chrome Site: http://www.delta-search.com SUPPRIME Folder Chrome: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde SUPPRIME Folder Chrome: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmijdhkcgeclpfjmibnginbbkfcbpep ABSENT Folder Chrome: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfbddbdpnahdahmamlolacimfdbeckk SUPPRIME Mozilla Pref: http://search.babylon.com SUPPRIME Mozilla Pref: user_pref("browser.startup.homepage", "http://search.babylon.com/?affID=119556&tt=080413_new&babsrc=HP_ss_din2g&mntrId=F04300030D0[...] ========== Dossier(s) ========== SUPPRIME Folder: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde SUPPRIME Folder: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmijdhkcgeclpfjmibnginbbkfcbpep SUPPRIME Folder: C:\Users\Jean\AppData\Roaming\Mozilla\Firefox\Profiles\h7ss5f6e.default\extensions\plugin@searchgby(83).com SUPPRIME Folder: C:\Program Files\Delta SUPPRIME Reboot Folder**: C:\ProgramData\BrowserProtect SUPPRIME Folder: C:\Users\Jean\AppData\Roaming\BabSolution SUPPRIME Folder: C:\Users\Jean\AppData\Roaming\Delta SUPPRIME Folder: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\extensions\ffxtlbr@delta.com SUPPRIME Flash Cookies SUPPRIME Temporaires Windows ========== Fichier(s) ========== SUPPRIME File: c:\users\jean\appdata\local\google\chrome\user data\default\preferences SUPPRIME File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\searchplugins\aol-search.xml SUPPRIME File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\searchplugins\babylon.xml SUPPRIME File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\searchplugins\browserprotect.xml SUPPRIME File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\searchplugins\delta.xml SUPPRIME File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\searchplugins\wibeez.xml SUPPRIME File: c:\program files\mozilla firefox\searchplugins\babylon.xml SUPPRIME File: c:\program files\delta\delta\1.8.16.16\bh\delta.dll SUPPRIME File: c:\program files\delta\delta\1.8.16.16\deltatlbr.dll SUPPRIME Reboot \programdata\browserprotect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\browserprotect.dll SUPPRIME Reboot c:\programdata\browserprotect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\browserprotect.exe SUPPRIME File: c:\users\jean\appdata\roaming\babmaint.exe ABSENT Folder/File: c:\users\jean\appdata\roaming\babsolution ABSENT Folder/File: c:\users\jean\appdata\local\google\chrome\user data\default\extensions\eooncjejnppfjjklapaamhcdmjbilmde ABSENT Folder/File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\bprotector_extensions.sqlite ABSENT Folder/File: c:\users\jean\appdata\roaming\mozilla\firefox\profiles\h7ss5f6e.default\bprotector_prefs.js SUPPRIME Flash Cookies SUPPRIME Temporaires Windows ========== Récapitulatif ========== 1 : Processus mémoire 73 : Clé(s) du Registre 3 : Valeur(s) du Registre 1 : Elément(s) de donnée du Registre 10 : Dossier(s) 18 : Fichier(s) 1 : Logiciel(s) 9 : Préférences navigateur End of clean in 00mn 31s ========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 22/06/2013 12:47:35 [9685]