~ ZHPFix v2018.10.24.186 by Nicolas Coolman (2018/10/24) ~ Run by Ezékiel (Administrator) (15/11/2018 14:43:21) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Certificate ZHPFix: Legal ~ State version : Version KO ~ Report : C:\Users\Ezékiel\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ SCRIPT DE L'UTILISATEUR. (54) Script ZHPFix EmptyCLSID Emptytemp EmptyFlash HKCU\SOFTWARE\SpeedBit HKU\S-1-5-21-106271892-404689023-3829762182-1001\SOFTWARE\SpeedBit O61 - LFC: 2018/11/14 12:50:22 A . (..) -- C:\Users\Ezékiel\Downloads\dap10_full.exe [10818216] O23 - Service: tscmon (tscmon) . (.Advanced System Repair Inc. - Advanced System Repair Pro Service.) - C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\tscmon.exe SR - Auto [14/11/2018] [ 1601872] tscmon (tscmon) . (.Advanced System Repair Inc..) - C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\tscmon.exe O38 - TASK: {16CE56A8-A09B-4D91-9E05-D78753984886} [64Bits][\AdvancedSystemRepairPro-Maintenance-Autorun] - (.Advanced System Repair Inc. - Advanced System Repair Pro UI.) -- C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\AdvancedSystemRepairPro.exe [16390992] C:\WINDOWS\System32\Tasks\AdvancedSystemRepairPro-Maintenance-Autorun - (.Advanced System Repair Inc..) -- C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\AdvancedSystemRepairPro.exe [/minimize] O4 - HKLM\..\Run: [WindowsDefender] . (. - .) -- C:\Program Files\Windows Defender\MSASCuiL.exe (.Not File.) [MD5.80EB5851BB731C3DAACD2901256479AB] - (.Advanced System Repair Inc. - Advanced System Repair Pro Service.) -- C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\tscmon.exe [1601872] [PID.404] O42 - Logiciel: Advanced System Repair Pro - (.Advanced System Repair, Inc..) [HKCU][64Bits] -- Advanced System Repair Pro HKLM\SOFTWARE\SlimWare Utilities Inc HKLM\SOFTWARE\WOW6432Node\SlimWare Utilities Inc O43 - CFD: 14/11/2018 - [] D -- C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2 O43 - CFD: 14/11/2018 - [] D -- C:\Users\Ezékiel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced System Repair Pro O45 - LFCP:[MD5.84EE65C2AAF398751BB1D943C2010716] 14/11/2018 A -- C:\WINDOWS\Prefetch\ADVANCEDSYSTEMREPAIRPRO.EXE-8FF700E2.pf O58 - SDL:2018/11/14 13:45:34 A . (...) -- C:\WINDOWS\System32\drivers\asrdmon.sys [18024] O61 - LFC: 2018/11/14 13:45:31 A . (.ASR DS Component.) -- C:\ProgramData\TSR7Settings\dsutil.exe [134656] O87 - FAEL: "{5F2FB1C7-77A8-42DD-8485-747FDE55AA84}" [In-None-P6-TRUE] .(...) -- c:\Program Files\CyberLink\PowerDirector12\PDR10.EXE (.not file.) O87 - FAEL: "{32ED4FB0-DE93-44CA-9E70-AD63C8640425}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{3F93860A-8327-4400-B031-21BF1A4D5F9E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{10B4B906-B11B-4662-A1AD-9774A0080C05}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{6C90A435-E913-4EBA-BAA5-7DA49A18ACF9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{1782A8C3-031D-4B62-8F3F-8C7B3415A014}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{51FE961F-39EE-4342-9A09-E544B39AE1BB}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{F0E5E4ED-CADE-48C1-93FB-8D2617D07E7C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (.not file.) O87 - FAEL: "{44C7EBC5-85FB-4218-9123-182A30239C81}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (.not file.) O87 - FAEL: "{6D35DD1C-65F0-4CD0-BCAE-32571892AC92}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (.not file.) O87 - FAEL: "{2212748A-C44A-45D2-8921-96DBCE6807A3}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (.not file.) C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\AdvancedSystemRepairPro.exe C:\WINDOWS\System32\Tasks\AdvancedSystemRepairPro-Maintenance-Autorun C:\Users\Ezékiel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced System Repair Pro C:\WINDOWS\Prefetch\ADVANCEDSYSTEMREPAIRPRO.EXE-8FF700E2.pf C:\ProgramData\TSR7Settings\dsutil.exe C:\Users\Ezékiel\AppData\Local\Google\Chrome\User Data\Default\File System\000 C:\Users\Ezékiel\AppData\Local\Google\Chrome\User Data\Default\File System\001 C:\Users\Ezékiel\AppData\Local\Google\Chrome\User Data\Default\File System\009 HKLM\SOFTWARE\McAfee HKLM\SOFTWARE\WOW6432Node\McAfee O43 - CFD: 25/10/2018 - [] D -- C:\Program Files (x86)\McAfee O43 - CFD: 25/10/2018 - [] D -- C:\ProgramData\McAfee HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins HKCU\SOFTWARE\Mozilla HKU\S-1-5-21-106271892-404689023-3829762182-1001\SOFTWARE\Mozilla cmd: ipconfig /flushdns cmd: netsh winsock reset cmd: netsh advfirewall reset cmd: Netsh advfirewall set allprofiles state on ---\\ LOGICIEL. (1) DESINSTALLER : Advanced System Repair Pro ---\\ SERVICE. (1) ABSENT Service: tscmon [tscmon.exe] ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (0) ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (4) SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\EZKIEL~1\AppData\Local\Temp\~DFA40E62E9C79F20FC.TMP DEPLACÉ Fichier Temp*: C:\Users\EZKIEL~1\AppData\Local\Temp\scoped_dir18832 SUPPRIMÉ Dossier : C:\Program Files (x86)\McAfee SUPPRIMÉ Dossier : C:\ProgramData\McAfee ---\\ REGISTRE ( Clés, Valeurs, Données ). (16) ABSENT Valeur Run: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Program Files\Windows Defender\MSASCuiL.exe (.Not File.)] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{5F2FB1C7-77A8-42DD-8485-747FDE55AA84}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{32ED4FB0-DE93-44CA-9E70-AD63C8640425}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{3F93860A-8327-4400-B031-21BF1A4D5F9E}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{10B4B906-B11B-4662-A1AD-9774A0080C05}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{6C90A435-E913-4EBA-BAA5-7DA49A18ACF9}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{1782A8C3-031D-4B62-8F3F-8C7B3415A014}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{51FE961F-39EE-4342-9A09-E544B39AE1BB}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{F0E5E4ED-CADE-48C1-93FB-8D2617D07E7C}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{44C7EBC5-85FB-4218-9123-182A30239C81}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{6D35DD1C-65F0-4CD0-BCAE-32571892AC92}] ABSENT Valeur FirewallRules: HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules [{2212748A-C44A-45D2-8921-96DBCE6807A3}] SUPPRIMÉ Clé: HKLM\SOFTWARE\McAfee [McAfee] SUPPRIMÉ Clé: HKLM\SOFTWARE\Mozilla [Mozilla] SUPPRIMÉ Clé: HKLM\SOFTWARE\MozillaPlugins [MozillaPlugins] SUPPRIMÉ Clé: HKCU\SOFTWARE\Mozilla [Mozilla] ---\\ COMMANDE. (7) ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ~ EmptyTemp: Dossier Local temp partiellement vidé (2) ~ EmptyFlash: Dossier FlashPlayer vide. ~ Command spéciale exécutée avec succès: ipconfig /flushdns ~ Command spéciale exécutée avec succès: netsh winsock reset ~ Command spéciale exécutée avec succès: netsh advfirewall reset ~ Command spéciale exécutée avec succès: Netsh advfirewall set allprofiles state on ---\\ NON TRAITÉ. (1) [MD5.80EB5851BB731C3DAACD2901256479AB] - (.Advanced System Repair Inc. - Advanced System Repair Pro Service.) -- C:\Program Files (x86)\Advanced System Repair Pro 1.8.0.2\tscmon.exe ~ Le système a été redémarré. ***** ~ Fin de rapport terminé en 00h01mn12s