~ ZHPFix v2018.9.7.170 by Nicolas Coolman (2018/09/07) ~ Run by zartog (Administrator) (14/09/2018 11:17:46) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Certificate ZHPFix: Legal ~ State version : Version OK ~ Report : C:\Users\zartog\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 17134) ---\\ SCRIPT DE L'UTILISATEUR. (41) Script ZHPFix EmptyCLSID EmptyFlash EmptyTemp EmptyTracing EmptyPrefetch EmptyProxy HKCU\Software\undefined O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) O108 - CMH3: 00avg [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.Orphan.) O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) O87 - FAEL: "{4CC9F6FD-4738-47BB-831A-6377D908F37A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (.not file.) O87 - FAEL: "{C0E6FB13-39C1-44FB-A6CF-45A3152316FE}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (.not file.) O87 - FAEL: "{EB6CF576-5B2B-4CF6-861E-F88998602D5F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\DriversCloud.com\DriversCloud.exe (.not file.) O87 - FAEL: "{56694E77-72F8-4B9E-9373-6B91324A00E5}" [In-None-P6-TRUE] .(...) -- C:\Program Files\DriversCloud.com\DriversCloud.exe (.not file.) O87 - FAEL: "{4F6D7E1B-419F-49D3-9619-DFB3E2874969}" [In-None-P6-TRUE] .(...) -- C:\Program Files\CCleaner\CCUpdate.exe (.not file.) O87 - FAEL: "{D34BC97C-DA6C-4A86-ADD4-AE1E8BF54F10}" [In-None-P17-TRUE] .(...) -- C:\Program Files\CCleaner\CCUpdate.exe (.not file.) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avg HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\7-Zip HKCU\Software\undefined O43 - CFD: 22/01/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\WOW6432Node\JavaSoft HKCU\SOFTWARE\JavaSoft HKU\S-1-5-21-1891206243-1577284348-927117614-1001\SOFTWARE\JavaSoft O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare Passport.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe SR - Auto [04/07/2018] [ 495720] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [MD5.783917D7B24034A340ADA00A6D916B1D] - (.Wondershare - Wondershare Passport.) -- C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720] [PID.3344] HKLM\SOFTWARE\Wondershare HKLM\SOFTWARE\WOW6432Node\Wondershare HKCU\SOFTWARE\Wondershare HKU\S-1-5-21-1891206243-1577284348-927117614-1001\SOFTWARE\Wondershare O43 - CFD: 18/07/2018 - [] D -- C:\Program Files (x86)\Wondershare O43 - CFD: 18/07/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare O43 - CFD: 18/07/2018 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 18/07/2018 - [] D -- C:\Users\zartog\AppData\Roaming\Wondershare Fin ---\\ LOGICIEL. (0) ---\\ SERVICE. (2) ARRETÉ : HKLM\SYSTEM\CurrentControlSet\Services\WsAppService [WsAppService.exe] ABSENT Service: WsAppService [WsAppService.exe] ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (0) ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (6) SUPPRIMÉ Dossier : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluge DEPLACÉ Fichier Service: C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe SUPPRIMÉ Dossier : C:\Program Files (x86)\Wondershare SUPPRIMÉ Dossier : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare SUPPRIMÉ Dossier : C:\ProgramData\Wondershare SUPPRIMÉ Dossier : C:\Users\zartog\AppData\Roaming\Wondershare ---\\ REGISTRE ( Clés, Valeurs, Données ). (17) SUPPRIMÉ Clé: HKCU\Software\undefined [undefined] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip [7-Zip1] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avg [00avg3] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip [7-Zip4] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\Folder\ShellEx\ContextMenuHandlers\7-Zip [7-Zip6] SUPPRIMÉ Valeur FirewallRules: {4CC9F6FD-4738-47BB-831A-6377D908F37A} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {C0E6FB13-39C1-44FB-A6CF-45A3152316FE} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {EB6CF576-5B2B-4CF6-861E-F88998602D5F} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {56694E77-72F8-4B9E-9373-6B91324A00E5} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {4F6D7E1B-419F-49D3-9619-DFB3E2874969} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {D34BC97C-DA6C-4A86-ADD4-AE1E8BF54F10} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Clé: HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} [{23170F69-40C1-278A-1000-000100020000}] SUPPRIMÉ Clé: HKLM\SOFTWARE\JavaSoft [JavaSoft] SUPPRIMÉ Clé: HKCU\SOFTWARE\JavaSoft [JavaSoft] SUPPRIMÉ Clé: HKLM\SOFTWARE\Wondershare [Wondershare] SUPPRIMÉ Clé: HKCU\SOFTWARE\Wondershare [Wondershare] ~ EmptyProxy: Aucune modification. ---\\ COMMANDE. (5) ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ~ EmptyFlash: Fichiers Temporaires supprimés. (2) ~ EmptyTemp: Fichiers Temporaires supprimés.(0) ~ EmptyTracing: Clés tracing supprimées (9) ~ EmptyPrefetch: Fichiers Prefetcher supprimés (261) ---\\ NON TRAITÉ. (1) [MD5.783917D7B24034A340ADA00A6D916B1D] - (.Wondershare - Wondershare Passport.) -- C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe ***** ~ Fin de rapport terminé en 00h00mn28s