cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPFix v2020.7.29.218 by Nicolas Coolman (2020/07/29)
~ Run by reneb (Administrator) (03/08/2020 16:06:01)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Report : C:\Users\reneb\Desktop\ZHPFix.txt
~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 19041)



---\\ SCRIPT DE L'UTILISATEUR. (51)
Script ZHPFix
CreateRestorePoint
EmptyPrefetch
Emptytemp
Firewallraz
EmptyCLSID
EmptyFlash
EmptyProxy
G2 - GCE: Preference [reneb][User Data\Default\Extensions] [caljgklbbfbcjjanaijlacgncafpegll] Avira Password Manager =>.Avira Software
G2 - GCE: Preference [reneb][User Data\Default\Extensions] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Operations GmbH & Co. KG =>.Avira Software
B2 - EXT: [Avira Operations GmbH & Co. KG] C:\Users\reneb\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo =>.Avira Operations GmbH & Co. KG
B2 - EXT: [Avira Operations GmbH & Co. KG] C:\Users\reneb\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg =>.Avira Operations GmbH & Co. KG
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Avira SystrayStartTrigger =>.Avira Software
HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira
HKCU\SOFTWARE\Avira =>.Avira
HKU\.DEFAULT\SOFTWARE\Avira =>.Avira
HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Avira =>.Avira
C:\ProgramData\Avira =>.Avira Software
C:\Users\reneb\AppData\Local\Avira
C:\Users\reneb\AppData\Local\AviraSpeedup
G2 - GCE: Preference [reneb][User Data\Default\Extensions] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
C:\ProgramData\AVAST Software
HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc.
C:\ProgramData\mcafee
HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender
C:\ProgramData\Bitdefender
C:\ProgramData\Bitdefender Agent
C:\ProgramData\Spybot - Search & Destroy
C:\Program Files (x86)\Spybot - Search & Destroy 2
HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited
HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKU\.DEFAULT\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
SR - Auto [00/00/0000] [ 0] HP JumpStart Bridge (HPJumpStartBridge) . (...) - Bridge\HPJumpStartBridge.exe (.not file.) [Unsigned] =>.Hewlett-Packard
O4 - HKLM\..\Run: [BtServer] . (. - .) -- C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe (.Not File.) =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MyPhoneExplorer =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
[HKEY_USERS\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
HKLM\SOFTWARE\WOW6432Node\Glarysoft =>.GlarySoft
HKCU\SOFTWARE\Glarysoft =>.GlarySoft
HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Glarysoft =>.GlarySoft
C:\ProgramData\GlarySoft
C:\Users\reneb\AppData\Roaming\GlarySoft


---\\ LOGICIEL. (0)


---\\ SERVICE. (1)
ARRETÉ : HKLM\SYSTEM\CurrentControlSet\Services\HPJumpStartBridge [No File found]


---\\ TÂCHE PLANIFIÉE. (0)


---\\ NAVIGATEUR INTERNET. (3)
SUPPRIMÉ Dossier Chrome: C:\Users\reneb\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll
SUPPRIMÉ Dossier Chrome: C:\Users\reneb\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk
SUPPRIMÉ Dossier Chrome: C:\Users\reneb\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki


---\\ EXPLORATEUR ( Dossiers, Fichiers ). (25)
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\MBAMInstallerService.exe
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\AdobeARM.log
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\aria-debug-13092.log
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\chrome_installer.log
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\mbsetup.log
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\moz-update-newest-backup-update.log
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\moz-update-newest-last-update.log
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\StructuredQuery.log
SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\reneb\AppData\Local\Temp\CR_614BB.tmp
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\wct8451.tmp
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon-14c8ae
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon-550563
DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon-d8188b
SUPPRIMÉ Dossier : C:\ProgramData\Avira
SUPPRIMÉ Dossier : C:\Users\reneb\AppData\Local\Avira
SUPPRIMÉ Dossier : C:\Users\reneb\AppData\Local\AviraSpeedup
SUPPRIMÉ Dossier : C:\ProgramData\AVAST Software
SUPPRIMÉ Dossier : C:\ProgramData\mcafee
SUPPRIMÉ Dossier : C:\ProgramData\Bitdefender
SUPPRIMÉ Dossier : C:\ProgramData\Bitdefender Agent
SUPPRIMÉ Dossier : C:\ProgramData\Spybot - Search & Destroy
SUPPRIMÉ Dossier : C:\Program Files (x86)\Spybot - Search & Destroy 2
SUPPRIMÉ Dossier : C:\ProgramData\GlarySoft
SUPPRIMÉ Dossier : C:\Users\reneb\AppData\Roaming\GlarySoft


---\\ REGISTRE ( Clés, Valeurs, Données ). (31)
ABSENT Valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 []
SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Avira [Avira ]
SUPPRIMÉ Clé: HKCU\SOFTWARE\Avira [Avira ]
SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Avira [Avira ]
ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Avira
ABSENT Clé: HKLM\SOFTWARE\AVAST Software
SUPPRIMÉ Clé: HKCU\SOFTWARE\AvastAdSDK [AvastAdSDK ]
ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\AvastAdSDK
SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\McAfee [McAfee ]
SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent [Bitdefender Agent ]
SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\SetID [SetID ]
SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited [Safer Networking Limited ]
SUPPRIMÉ Clé: HKCU\SOFTWARE\Safer Networking Limited [Safer Networking Limited ]
SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Safer Networking Limited [Safer Networking Limited ]
ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Safer Networking Limited
ABSENT Clé Service: HKLM\SYSTEM\CurrentControlSet\Services\HPJumpStartBridge
ABSENT Valeur Run: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe (.Not File.) ]
SUPPRIMÉ Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Glary Utilities [Glary Utilities ]
SUPPRIMÉ Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MyPhoneExplorer [MyPhoneExplorer ]
SUPPRIMÉ Redémarrage Clé ^: HKLM\Software\Classes\CLSID\{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF}
SUPPRIMÉ Clé: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Glary Utilities [Glary Utilities ]
SUPPRIMÉ Clé: HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Glary Utilities [Glary Utilities ]
VERROUILLÉ Valeur : GUDelayStartup [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]
VERROUILLÉ Valeur : GUDelayStartup [HKEY_USERS\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]
SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Glarysoft [Glarysoft ]
SUPPRIMÉ Clé: HKCU\SOFTWARE\Glarysoft [Glarysoft ]
ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Glarysoft
~ EmptyProxy: Aucune modification.
SUPPRIMÉ Valeur: Avira SystrayStartTrigger [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]
SUPPRIMÉ Valeur: GUDelayStartup [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]
SUPPRIMÉ Valeur: GUDelayStartup [HKEY_USERS\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]


---\\ COMMANDE. (5)
CreateRestorePoint: OK
~ EmptyPrefetch: Fichiers Prefetcher supprimés (298)
~ EmptyTemp: Dossier Local temp partiellement vidé (14)
~ EmptyCSID: Dossiers CLSID vides supprimés (0)
~ EmptyFlash: Fichiers Temporaires supprimés. (2)


---\\ NON TRAITÉ. (1)
Firewallraz

~ Le système a été redémarré.

***** ~ Fin de rapport terminé en 00mn00s

Publicité


Signaler le contenu de ce document

Publicité