Rapport de ZHPFix 2014.4.7.2 par Nicolas Coolman, Update du 07/04/2014 Fichier d'export Registre : Run by univers at 23/04/2014 22:32:52 High Elevated Privileges : OK Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Corbeille vidée (00mn 16s) Réparation des raccourcis navigateur ========== Processus mémoire ========== SUPPRIMÉ: Memory Process: C:\Users\univers\AppData\Local\Temp\uninst1.exe SUPPRIMÉ: Memory Process: C:\Users\univers\AppData\Local\Temp\BundleSweetIMSetup.exe SUPPRIMÉ: Memory Process: C:\Users\univers\AppData\Local\Temp\MybabylonTB.exe ========== Clés du Registre ========== SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchprotection.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchprotector.exe - tasklist.exe SUPPRIMÉ: SearchScopes :{52db1893-8a90-4192-aede-08e00b8f8} SUPPRIMÉ: [HKLM\Software\Classes\Installer\Products\\25BD30E1BC5D83343A835E62DDD4D41B] SUPPRIMÉ: [HKLM\Software\Classes\Installer\Features\25BD30E1BC5D83343A835E62DDD4D41B] SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\GoogleToolbarNotifier_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyDeltaTB_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyDeltaTB_RASMANCS SUPPRIMÉ: Service: BBSvc SUPPRIMÉ: Service: SeaPort SUPPRIMÉ: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1} SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\25BD30E1BC5D83343A835E62DDD4D41B SUPPRIMÉ: O50 - IFEO:Image File Execution Options - bpsvc.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - browsersafeguard.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - dprotectsvc.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - jumpflip - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - protectedsearch.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - rjatydimofu.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchinstaller.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchsettings.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - searchsettings64.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - snapdo.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - stinst32.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - stinst64.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - umbrella.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - utiljumpflip.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - volaro - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - vonteera - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - websteroids.exe - tasklist.exe SUPPRIMÉ: O50 - IFEO:Image File Execution Options - websteroidsservice.exe - tasklist.exe SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BabMaint_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora-chromeinstaller_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora-chromeinstaller_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora-codedownloader_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora-codedownloader_RASMANCS SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora-updater_RASAPI32 SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Pricora-updater_RASMANCS SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 SUPPRIMÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A ========== Valeurs du Registre ========== SUPPRIMÉ: Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Aucune Valeur Standard Profile: FirewallRaz : Aucune Valeur Domain Profile: FirewallRaz : SUPPRIMÉ: FirewallRaz (Domain) : {6B146ACC-3D9C-4FA9-8068-1DD8DDC91B3F} SUPPRIMÉ: FirewallRaz (Domain) : NetPres-In-TCP-NoScope SUPPRIMÉ: FirewallRaz (Domain) : NetPres-Out-TCP-NoScope SUPPRIMÉ: FirewallRaz (None) : NetPres-WSD-In-UDP SUPPRIMÉ: FirewallRaz (None) : NetPres-WSD-Out-UDP SUPPRIMÉ: FirewallRaz (Public) : NetPres-In-TCP SUPPRIMÉ: FirewallRaz (Public) : NetPres-Out-TCP SUPPRIMÉ: FirewallRaz (None) : {104111FD-9A31-4224-8B4C-2F5BCF9E936C} SUPPRIMÉ: FirewallRaz (None) : {5ECD8BB6-5238-4CDB-BE45-B07D00D0C60F} ========== Dossiers ========== SUPPRIMÉ Redémarrage:** C:\Program Files (x86)\Movies Toolbar SUPPRIMÉ: c:\users\univers\appdata\local\google\chrome\user data\default\extensions\algmakeomkafjglfhpomolfhjppoojff SUPPRIMÉS Flash Cookies (0) SUPPRIMÉS Temporaires Windows (464) ========== Fichiers ========== SUPPRIMÉ: c:\program files (x86)\microsoft\bingbar\bbsvc.exe SUPPRIMÉ: C:\Windows\Installer\1a65f.msi SUPPRIMÉ: c:\programdata\microsoft\windows\start menu\programs\bayam 7-13.lnk SUPPRIMÉ: c:\users\univers\desktop\video performer.lnk SUPPRIMÉ Redémarrage: c:\program files (x86)\movies toolbar\safetynut\safetycrt.dll SUPPRIMÉ: C:\Users\univers\AppData\Local\Temp\GoogleToolbarInstaller1.log SUPPRIMÉ: C:\Users\univers\AppData\Local\Temp\GoogleToolbarInstaller2.log SUPPRIMÉS Flash Cookies (0) (0 octets) SUPPRIMÉS Temporaires Windows (5776) (1 289 875 710 octets) ========== Autre ========== NON TRAITÉ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit NON TRAITÉ http://nicolascoolman.webs.com/apps/blog/show/27875657-toolbar-deltasearch ========== Récapitulatif ========== 3 : Processus mémoire 46 : Clés du Registre 12 : Valeurs du Registre 4 : Dossiers 9 : Fichiers 2 : Autre End of clean in 01mn 30s ========== Chemin de fichier rapport ========== C:\Users\univers\AppData\Roaming\ZHP\ZHPFix[R1].txt - 23/04/2014 22:33:08 [6557]