Rapport de ZHPFix 2017.11.21.2 par Nicolas Coolman, Update du 21/11/2017 Fichier d'export Registre : Run by mgss at 02/03/2018 18:40:04 High Elevated Privileges : OK Windows 7 Business Edition, 32-bit Service Pack 1 (Build 7601) Recycle Bin emptied (00mn 02s) Prefetcher emptied ========== Software ========== REMOVES: 4shared Desktop ========== Registry keys ========== REMOVES: HKCU\SOFTWARE\Tencent REMOVES: HKLM\SOFTWARE\Microsoft\Tracing\tencentdl_RASAPI32 REMOVES: HKLM\SOFTWARE\Microsoft\Tracing\tencentdl_RASMANCS REMOVES: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension REMOVES: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension REMOVES: HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension ========== Registry values ========== ABSENT value Standard Profile: FirewallRaz : ABSENT value Domain Profile: FirewallRaz : REMOVES: FirewallRaz (Public) : {086823D3-4A76-4CAF-B569-9FB3BCF344B0} REMOVES: FirewallRaz (Public) : {1B5BD1EB-023E-4688-BE71-93DCD56899E0} REMOVES: FirewallRaz (Private) : TCP Query User{8DB92CF0-C6EA-4B46-A6DD-C92449EC432D}C:\users\mgss\desktop\nouveau dossier (20)\gxtool\gxtool\boot_file\boot.exe REMOVES: FirewallRaz (Private) : UDP Query User{2BA1F8C3-BAB9-4205-9FEF-A3DA5EBB5FC6}C:\users\mgss\desktop\nouveau dossier (20)\gxtool\gxtool\boot_file\boot.exe REMOVES: FirewallRaz (Private) : TCP Query User{308B5606-0592-4021-9870-787F5AF4682C}C:\users\mgss\desktop\dump geant-x6 hd fta 1.18+loader\gxdownloader\boot_file\boot.exe REMOVES: FirewallRaz (Private) : UDP Query User{03AE4603-5394-4824-A84E-02E0C4EE85B5}C:\users\mgss\desktop\dump geant-x6 hd fta 1.18+loader\gxdownloader\boot_file\boot.exe REMOVES: FirewallRaz (Private) : TCP Query User{E23CB235-C03C-46A6-9858-6FBC7827A9A7}C:\users\mgss\desktop\dump geant-x6 hd fta 1.18+loader\gxdownloader_boot_v1.0.3.2_gx6606_cby flashmen\gxdownloader_boot_v1.0.3.2_gx6606_cby flashmen\boot_file\boot.exe REMOVES: FirewallRaz (Private) : UDP Query User{7CE8DF1C-DEDB-41E1-91C5-4435A9A2018E}C:\users\mgss\desktop\dump geant-x6 hd fta 1.18+loader\gxdownloader_boot_v1.0.3.2_gx6606_cby flashmen\gxdownloader_boot_v1.0.3.2_gx6606_cby flashmen\boot_file\boot.exe REMOVES: FirewallRaz (Private) : TCP Query User{4A60BFDC-8360-401A-9F0A-9A475C59C19F}C:\users\mgss\desktop\gx6605_cool_geant_gn_x6hd fta_v1.04_20140710_qcsiu\gn x007\gn x007\loader\loader\boot_file\boot.exe REMOVES: FirewallRaz (Private) : UDP Query User{7DD4E1CD-5247-4750-92B9-B2C3A99BBE93}C:\users\mgss\desktop\gx6605_cool_geant_gn_x6hd fta_v1.04_20140710_qcsiu\gn x007\gn x007\loader\loader\boot_file\boot.exe REMOVES: FirewallRaz (Private) : TCP Query User{784CD82F-BA22-4937-897A-9A817FF7F774}C:\users\mgss\desktop\gxtool\gxtool\gxtool\boot_file\boot.exe REMOVES: FirewallRaz (Private) : UDP Query User{AC233EBB-274E-43DC-B612-828FEFCA6D40}C:\users\mgss\desktop\gxtool\gxtool\gxtool\boot_file\boot.exe REMOVES: FirewallRaz (None) : {56123A6F-13A6-49AC-AC74-D756B8E8E490} REMOVES: FirewallRaz (None) : {09A0EF17-5AF3-4EA1-85F3-A268E4F1BFDB} REMOVES: FirewallRaz (None) : {B44522AA-7A6D-457C-A421-88E3D986FC44} REMOVES: FirewallRaz (None) : {681F9539-6E28-4221-8830-B0F054CDDF8B} REMOVES: FirewallRaz (None) : {1AB1D934-D870-4AB9-A6C1-077C72154C1C} REMOVES: FirewallRaz (None) : {15321050-8436-4F1B-9977-D7950E97D566} REMOVES: FirewallRaz (None) : {D9C833F5-9263-4294-A54B-7A4752F36E6C} REMOVES: FirewallRaz (None) : {27A9B60A-1259-4F38-B285-931C294C7BF4} REMOVES: FirewallRaz (None) : {99D7730C-CD01-45C4-8326-7AF54E74A1F5} REMOVES: FirewallRaz (None) : {06F9A23A-15BA-4F20-92DD-E36DDB506C17} REMOVES: FirewallRaz (None) : {9C6B471B-42CB-4710-ADD5-F35E08BB6C6C} REMOVES: FirewallRaz (None) : {C770AAF8-781C-4070-8397-60F0E870D8FD} REMOVES: FirewallRaz (Private) : {5AAA2DC6-FDEA-4137-88CA-5597EF4D1256} REMOVES: FirewallRaz (Private) : {AC3AF47B-B5E5-455B-AC2C-62269394559A} REMOVES: FirewallRaz (Private) : TCP Query User{DB00FAE9-106E-4609-BD39-E37FD172FF96}C:\users\mgss\desktop\nouveau dossier (20)\otp_prog with get ip chip\hhhh\leevan.exe REMOVES: FirewallRaz (Private) : UDP Query User{17B4E7BB-48F7-4197-9497-4C3615F5FFA9}C:\users\mgss\desktop\nouveau dossier (20)\otp_prog with get ip chip\hhhh\leevan.exe ========== Folders ========== Deletes temporary Windows (4) REMOVES Flash Cookies (0) REMOVES: C:\Program Files\4shared Desktop ========== Files ========== Deletes temporary Windows (10) (135 928 octets) REMOVES Flash Cookies (0) (0 octets) REMOVES: c:\windows\autokms\autokms.exe REMOVES: c:\windows\prefetch\autokms.exe-2befcaed.pf REMOVES: C:\Windows\System32\Tasks\AutoKMS ========== Summary ========== 6 : Registry keys 30 : Registry values 3 : Folders 5 : Files 1 : Software End of clean in 00mn 18s ========== Path to file report ========== C:\Users\mgss\AppData\Roaming\ZHP\ZHPFix[R1].txt - 02/03/2018 18:40:06 [4860]