Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015 Fichier d'export Registre : Run by pharo at 01/05/2017 15:59:00 High Elevated Privileges : OK Windows 8 Home Premium Edition, 64-bit Service Pack 1 (14393) Corbeille vidée (00mn 03s) Dossier Prefetcher vidé ========== Clés du Registre ========== SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\DBD8E19C5D935DE6CC0BE2733CBAC71C SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Anerfersypruhety SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Anikuy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Annerkphequs SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Arulientkjt SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Boxfat SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Chervepygrivther SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Chivich SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Chovuph SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Chqucultgrusdom SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Cibaghclimit SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Clicerpy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Clocitgrikuing SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Clpyfuzay SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Clsuty SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Coalush SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Coatessoduy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Cowertherlhight SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Dkaingvverge SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Drenertain SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Drirodom SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Femaly SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Fihockzopught SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Fuhelyclile SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\getrtr SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Ghllycljerdom SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Grazry SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Grebuckgertok SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Grunickghidodom SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Grunuied SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Hvelekrasy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Irishqle SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Kiherent SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Ksasypretaent SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Kuruculthafoing SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Ladaghphemach SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Mewient SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\MicroRay SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Muhach SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Ovoghaterwe SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Permersy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Plerdeck SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Plermatyqueght SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Plusosedonution SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Prtely SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Prumertionwihadom SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Pufspreekaph SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Qecaent SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Reikuse SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Rucult SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Shipry SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Shojiingqpertion SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Shzagh SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Sirertherqerpok SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Sjokohaty SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Staage SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Stelityfoduther SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Stiwerleckervuward SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Thirerchthkit SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Thogph SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Tizeried SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Tudopy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Vmagephahoy SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Wukiingplte SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\xjket.exe SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Zotchghocty SUPPRIMÉ: HKCU\SOFTWARE\Boxfat SUPPRIMÉ: HKCU\SOFTWARE\Fix It SUPPRIMÉ: [HKLM\SOFTWARE\Classes\CLSID\{8D58F49E-03A6-11E7-8708-64006A5CFC23}] ========== Valeurs du Registre ========== Aucune Valeur Standard Profile: FirewallRaz : Aucune Valeur Domain Profile: FirewallRaz : SUPPRIMÉ: FirewallRaz (None) : MCX-Prov-Out-TCP SUPPRIMÉ: FirewallRaz (None) : MCX-McrMgr-Out-TCP SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{371D586E-4A4D-47B4-AA25-FD10D38FE34B}C:\gog games\worms forts - under siege\wf.exe SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{87713C5D-E62A-4B92-9D42-5A421005387A}C:\gog games\worms forts - under siege\wf.exe SUPPRIMÉ: FirewallRaz (Private) : UDP Query User{133B56E5-C27D-4209-8C15-7040F1C540FD}C:\program files (x86)\dassault systemes\b17\intel_a\code\bin\cnext.exe SUPPRIMÉ: FirewallRaz (Private) : TCP Query User{1895AC22-9605-4E35-8057-8E23E51FD0D9}C:\program files (x86)\dassault systemes\b17\intel_a\code\bin\cnext.exe SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{B9EB2835-579C-40F5-9C2D-DDB38DC700ED}C:\program files (x86)\dassault systemes\b17\intel_a\code\bin\cnext.exe SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{B023B4FE-F33B-4A28-A506-2870F2534167}C:\program files (x86)\dassault systemes\b17\intel_a\code\bin\cnext.exe SUPPRIMÉ: FirewallRaz (None) : {3AA58FEA-182A-4021-9038-E5A24BDDF522} SUPPRIMÉ: FirewallRaz (None) : {00EBA2BB-8050-41CB-B8B4-4BFC5388ABF7} SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{B47039D9-DE83-4585-B113-8A57D55366FD}C:\program files (x86)\dassault systemes\b19\intel_a\code\bin\orbixd.exe SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{420D0E2B-C5FE-4C4B-80B3-273BE6A63AF8}C:\program files (x86)\dassault systemes\b19\intel_a\code\bin\orbixd.exe SUPPRIMÉ: FirewallRaz (Public) : TCP Query User{DA2390B8-9E45-4290-8747-36A54D8D54F3}C:\program files (x86)\dassault systemes\b19\intel_a\code\bin\cnext.exe SUPPRIMÉ: FirewallRaz (Public) : UDP Query User{54DBE0C2-4E81-46AF-9E09-550E1C92F2BC}C:\program files (x86)\dassault systemes\b19\intel_a\code\bin\cnext.exe SUPPRIMÉ: FirewallRaz (Public) : {151719D9-78EC-4CC6-9F26-900787EB2079} SUPPRIMÉ: FirewallRaz (Public) : {F7E9BA01-85C1-4A36-B0FD-159C8BBFF4CA} SUPPRIMÉ: FirewallRaz (Public) : {97890926-8BFD-4DA4-A6F7-26F6BF456007} SUPPRIMÉ: FirewallRaz (None) : {2A281D89-C19A-4684-9FE1-EEC657D3BC04} SUPPRIMÉ: FirewallRaz (None) : {095C47C3-8568-408B-8754-937ADBE1AC89} SUPPRIMÉ: FirewallRaz (Public) : {106E2BD2-2758-48EF-8472-18607A606C1D} SUPPRIMÉ: FirewallRaz (Public) : {6F38373A-0728-48FA-9383-B8AFE05F1B72} SUPPRIMÉ: FirewallRaz (Private) : {8B1A3FF9-03DB-483C-87B4-E4FE9B16970E} SUPPRIMÉ: FirewallRaz (Private) : {F34AB7F8-61D0-460D-BB25-9677F23898EC} SUPPRIMÉ ShellExecuteHooks: {8D58F49E-03A6-11E7-8708-64006A5CFC23} ========== Dossiers ========== SUPPRIMÉS Temporaires Windows (18) SUPPRIMÉ: C:\Program Files\f0qglkhl SUPPRIMÉ: C:\Users\pharo\AppData\Roaming\dgVoodoo SUPPRIMÉ: C:\Users\pharo\AppData\Local\Plgerk SUPPRIMÉ: C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DevelopmentFiles ========== Fichiers ========== SUPPRIMÉS Temporaires Windows (489) (28 904 994 octets) SUPPRIMÉ Redémarrage: c:\windows\system32\tasks\dropboxoem SUPPRIMÉ Redémarrage: c:\windows\system32\tasks\onedrive standalone update task SUPPRIMÉ Redémarrage: c:\windows\system32\tasks\onedrive standalone update task v2 ========== Autre ========== NON TRAITÉ E0 - Microsoft Edge: HKU\S-1-5-21-1647999032-2720263849-2965543480-1001\HomeButtonPage ========== Récapitulatif ========== 69 : Clés du Registre 26 : Valeurs du Registre 5 : Dossiers 4 : Fichiers 1 : Autre End of clean in 00mn 33s ========== Chemin de fichier rapport ========== C:\Users\pharo\AppData\Roaming\ZHP\ZHPFix[R1].txt - 01/05/2017 15:59:05 [7260]