Rapport de ZHPFix 2017.06.13.1 par Nicolas Coolman, Update du 13/06/2017 Fichier d'export Registre : Run by Admin at 01/07/2017 7:07:33 PM High Elevated Privileges : OK Windows 7 Business Edition, 64-bit Service Pack 1 (Build 7601) Recycle Bin emptied (01mn AMs) Prefetcher emptied ========== Registry keys ========== REMOVES:³ StartupReg: CryptoMill Refresh REMOVES:³ StartupReg: Malwarebytes TrayApp REMOVES:³ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} ========== Registry values ========== ABSENT value Standard Profile: FirewallRaz : ABSENT value Domain Profile: FirewallRaz : No value present in the exception of registry key (FirewallRaz) ProxyFix : Proxy configuration successfully removed REMOVES ProxyServer Value REMOVES ProxyEnable Value REMOVES EnableHttp1_1 Value REMOVES ProxyHttp1.1 Value REMOVES ProxyOverride Value ========== Preferences browser ========== REMOVES Folder Chrome: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ========== Folders ========== No folders empty CLSID Local user REMOVES: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm REMOVES: c:\users\admin\appdata\local\google\chrome\user data\default\local extension settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi REMOVES Reboot:** C:\ProgramData\CryptoMill REMOVES Reboot:** C:\ProgramData\{84D73B3F-42D0-4EB8-AD7B-1D2D666A3C77} REMOVES: C:\Users\Admin\AppData\Local\TempTaskUpdateDetection64FE4213-1458-4946-B0B5-7A272A7C8C53 ========== Files ========== Deletes temporary Windows (23) (1,455,831 octets) REMOVES Flash Cookies (0) (0 octets) REMOVES: c:\users\admin\appdata\local\google\chrome\user data\default\preferences ========== Summary ========== 3 : Registry keys 9 : Registry values 6 : Folders 3 : Files 1 : Preferences browser End of clean in 02mn AMs ========== Path to file report ========== C:\Users\Admin\AppData\Roaming\ZHP\ZHPFix[R1].txt - 01/07/2017 3:00:20 PM [3160] C:\Users\Admin\AppData\Roaming\ZHP\ZHPFix[R2].txt - 01/07/2017 7:07:34 PM [2126]