Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015 Fichier d'export Registre : Run by ahmad at 3/7/2016 10:57:35 AM High Elevated Privileges : OK Windows 7 Ultimate Edition, 64-bit (Build 7600) Recycle Bin emptied (02mn AMs) Prefetcher emptied ========== Process memory ========== REMOVES: Memory Process: C:\Users\ahmad\AppData\Roaming\uTorrent\updates\3.4.5_41865\utorrentie.exe ========== Registry keys ========== REMOVES:* StartupReg: uTorrent ========== Registry values ========== ABSENT value Standard Profile: FirewallRaz : ABSENT value Domain Profile: FirewallRaz : REMOVES: FirewallRaz (Private) : TCP Query User{95333BDA-194B-4054-A845-8C1D0C1AB7F5}E:\far cry 4 gold edition-sc\bin\farcry4.exe REMOVES: FirewallRaz (Private) : UDP Query User{4E28534E-2640-4E1D-A128-EA3A2F2B4B53}E:\far cry 4 gold edition-sc\bin\farcry4.exe REMOVES RunValue: uTorrent REMOVES: {27E1D251-91A4-420D-822D-19181F5C836B} REMOVES: {F2293B23-E708-433A-A05F-6AF63B9D75E4} REMOVES: {C396F391-EA01-4284-AE2D-22E1EFBC287A} REMOVES: {70296C87-C778-4B7F-A18B-E64BE6EBD506} REMOVES: {348FB264-BE84-4A33-B9E8-9A17FCEA7CCE} REMOVES: {0041C97B-ED99-4669-9E84-87CECAC97A93} ========== Preferences browser ========== NOW Chrome File: C:\Users\ahmad\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences REMOVES Chrome Site: http://www.mystartsearch.com/ REMOVES Chrome Site: http://www.mystartsearch.com/ REMOVES Chrome Site: http://www.mystartsearch.com/ ========== Folders ========== Deletes temporary Windows (6) REMOVES Flash Cookies (0) REMOVES: C:\Program Files (x86)\AVG REMOVES: C:\Users\ahmad\AppData\Roaming\AVG ========== Files ========== Deletes temporary Windows (42) (18,351,380 octets) REMOVES Flash Cookies (0) (0 octets) REMOVES: c:\users\ahmad\appdata\roaming\utorrent\utorrent.exe ========== Scheduled task ========== REMOVES: updaie ========== Summary ========== 1 : Process memory 1 : Registry keys 11 : Registry values 4 : Folders 3 : Files 4 : Preferences browser 1 : Scheduled task End of clean in 10mn AMs ========== Path to file report ========== C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R1].txt - 3/7/2016 2:08:18 AM [1019] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R2].txt - 3/7/2016 2:10:12 AM [606] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R3].txt - 3/7/2016 2:10:19 AM [772] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R4].txt - 3/7/2016 2:10:23 AM [855] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R5].txt - 3/7/2016 2:10:47 AM [1021] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R6].txt - 3/7/2016 2:10:54 AM [1197] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R7].txt - 3/7/2016 10:49:06 AM [1019] C:\Users\ahmad\AppData\Roaming\ZHP\ZHPFix[R8].txt - 3/7/2016 10:57:38 AM [2718]