cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Script ZHPFix
EmptyCLSID
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash
[MD5.00000000000000000000000000000000] [APT] [Go_Palikan] (...) -- C:\Users\ginette\AppData\Local\{CD7BF~1\UNINST~1.EXE (.not file.) [0] (.Activate.) =>PUP.Optional.GoPalikan
[MD5.00000000000000000000000000000000] [APT] [Palikan tito] (...) -- C:\ProgramData\{24AECC6D-742C-1DEB-C5AA-6D691528BEE7}\2.3.7.56\noda.txt 433a2f50726f6772616d446174612f7b32344145434336442d373432432d314445422d433541412d3644363931353238424545377d2f322e332e372e35362f7469746f2e646c6c 687474703a2f2f73616 (.not file.) [0] (.Activate.) =>PUP.Optional.GoPalikan
[MD5.00000000000000000000000000000000] [APT] [Price Fountain] (...) -- C:\Users\ginette\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE (.not file.) [0] (.Activate.) =>PUP.Optional.PriceFountain
O39 - APT: Go_Palikan - (...) -- C:\Windows\Tasks\Go_Palikan.job [278] (.Orphan.) =>PUP.Optional.GoPalikan
O39 - APT: Price Fountain - (...) -- C:\Windows\Tasks\Price Fountain.job [300] (.Orphan.) =>PUP.Optional.PriceFountain
O39 - APT: Go_Palikan - (...) -- C:\Windows\System32\Tasks\Go_Palikan [3226] (.Orphan.) =>PUP.Optional.GoPalikan
O39 - APT: Palikan tito - (...) -- C:\Windows\System32\Tasks\Palikan tito [4180] (.Orphan.) =>PUP.Optional.GoPalikan
O39 - APT: Price Fountain - (...) -- C:\Windows\System32\Tasks\Price Fountain [3248] (.Orphan.) =>PUP.Optional.PriceFountain
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.palikan.com/ =>PUP.Optional.GoPalikan
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.palikan.com/ =>PUP.Optional.GoPalikan
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.palikan.com/ =>PUP.Optional.GoPalikan
HKCU\SOFTWARE\CoinisRS =>Adware.InstallCore
HKCU\SOFTWARE\palikan =>PUP.Optional.GoPalikan
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
O43 - CFD: 05/02/2016 - [0] D -- C:\Users\ginette\AppData\Roaming\PriceFountain =>PUP.Optional.PriceFountain
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Palikan) - http://www.palikan.com/ =>PUP.Optional.GoPalikan
C:\Windows\Tasks\Go_Palikan.job =>PUP.Optional.GoPalikan
C:\Windows\Tasks\Price Fountain.job =>PUP.Optional.PriceFountain
C:\Windows\System32\Tasks\Go_Palikan =>PUP.Optional.GoPalikan
C:\Windows\System32\Tasks\Palikan tito =>PUP.Optional.GoPalikan
C:\Windows\System32\Tasks\Price Fountain =>PUP.Optional.PriceFountain
HKCU\SOFTWARE\CoinisRS =>Adware.InstallCore
HKCU\SOFTWARE\palikan =>PUP.Optional.GoPalikan
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\MCAFEE
C:\Users\ginette\AppData\Roaming\PriceFountain =>PUP.Optional.PriceFountain
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} =>PUP.Optional.GoPalikan
[MD5.00000000000000000000000000000000] [APT] [SpyHunter4Startup] (...) -- C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
O39 - APT: SpyHunter4Startup - (...) -- C:\Windows\System32\Tasks\SpyHunter4Startup [3338] (.Orphan.) =>.Superfluous.Orphan
HKCU\SOFTWARE\IM
O43 - CFD: 10/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AllGamesHome.com
O43 - CFD: 07/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
O43 - CFD: 30/07/2016 - [0] D -- C:\ProgramData\565cee60-2ce1-1 =>.Superfluous.Polluteware
O43 - CFD: 30/07/2016 - [0] D -- C:\ProgramData\565cee60-4741-0 =>.Superfluous.Polluteware
O43 - CFD: 08/07/2015 - [] D -- C:\ProgramData\IM
O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\McAfee Security Scan
O43 - CFD: 30/07/2016 - [0] D -- C:\Users\ginette\AppData\Roaming\Solvusoft
O43 - CFD: 10/01/2016 - [] D -- C:\Users\ginette\AppData\Local\IM
O43 - CFD: 10/01/2016 - [0] D -- C:\Users\ginette\AppData\Local\{3F539275-871C-4FA1-9E06-F8612233C3E4} =>.Superfluous.Empty
O43 - CFD: 12/01/2016 - [0] D -- C:\Users\ginette\AppData\Local\{8E10A036-8AB2-48A3-B306-EA1C13B7BCB7} =>.Superfluous.Empty
O43 - CFD: 13/01/2016 - [0] D -- C:\Users\ginette\AppData\Local\{C49D3EC4-F78F-4C7E-8E45-F1B0CC0FC5F8} =>.Superfluous.Empty
O43 - CFD: 08/07/2015 - [] D -- C:\ProgramData\McAfee
O53 - SMSR:HKLM\...\startupreg\IncrediMail [Key] . (...) -- C:\Program Files (x86)\IncrediMail\bin\IncMail.exe (.not file.)
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence
C:\ProgramData\565cee60-2ce1-1 =>.Superfluous.Polluteware
C:\ProgramData\565cee60-4741-0 =>.Superfluous.Polluteware
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence




Publicité


Signaler le contenu de ce document

Publicité