Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015 Fichier d'export Registre : Run by youcef blako at 01-05-2017 23:06:58 High Elevated Privileges : OK Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601) Recycle Bin emptied (00mn 02s) Prefetcher emptied ========== Registry keys ========== REMOVES: HKCU\SOFTWARE\7866aac5b5fbfab6 REMOVES: HKCU\SOFTWARE\DLL-Files.com ========== Registry values ========== ABSENT value Standard Profile: FirewallRaz : ABSENT value Domain Profile: FirewallRaz : REMOVES: URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} ========== Elements of the registry data ========== REMOVES: R1 Search Page = about:NoAdd-ons REMOVES: R1 Search Page = about:SecurityRisk REMOVES: R5 AutoConfigProxy = wininet.dll ========== Preferences browser ========== NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://ak.imgfarm.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://ak.staticimgfarm.com REMOVES Chrome Site: http://ak.staticimgfarm.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://akz.imgfarm.com REMOVES Chrome Site: http://akz.imgfarm.com REMOVES Chrome Site: http://akz.imgfarm.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://anx.tb.ask.com REMOVES Chrome Site: http://anx.tb.ask.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://hp.myway.com REMOVES Chrome Site: http://hp.myway.com REMOVES Chrome Site: http://hp.myway.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://live.tb.ask.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences REMOVES Chrome Site: http://ttdetect.staticimgfarm.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences ABSENT Chrome Site: http://ak.ssl.imgfarm.com NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences ABSENT Chrome Site: http://fb-s-a-a.akamaihd.net NOW Chrome File: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Preferences ABSENT Chrome Site: http://www.facebook.com REMOVES Folder Chrome: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibopmonjjnejkdbimjbgdbekmfpogken REMOVES Folder Chrome: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\kohoehgoafblafjinhplmhcbphgaaobc REMOVES Folder Chrome: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\maoffpmgdffbgbncadalkhfhmlfihkgk REMOVES Folder Chrome: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda REMOVES Folder Chrome: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia REMOVES Folder Chrome: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ========== Folders ========== REMOVES: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibopmonjjnejkdbimjbgdbekmfpogken REMOVES: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\kohoehgoafblafjinhplmhcbphgaaobc REMOVES: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\maoffpmgdffbgbncadalkhfhmlfihkgk REMOVES: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda REMOVES: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia REMOVES: C:\Users\youcef blako\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm REMOVES: c:\programdata\microsoft\windows\start menu\programs\dll-files.com client ========== Other ========== NON-TREATY R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] NON-TREATY https://nicolascoolman.eu/2017/02/28/toolbar-ask/ NON-TREATY https://www.nicolascoolman.com/fr/pup-optional-dllfilesfixer/ NON-TREATY https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ ========== Summary ========== 2 : Registry keys 3 : Registry values 3 : Elements of the registry data 7 : Folders 32 : Preferences browser 4 : Other End of clean in 01mn 45s ========== Path to file report ========== C:\Users\youcef blako\AppData\Roaming\ZHP\ZHPFix[R1].txt - 01-05-2017 23:07:02 [4802]