~ ZHPFix v2019.1.11.7 by Nicolas Coolman (2019/01/11) ~ Run by x (Administrator) (19/01/2019 08:57:29) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Certificate ZHPFix: Legal ~ State version : Version OK ~ Report : C:\Users\x\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ SCRIPT DE L'UTILISATEUR. (33) Script ZHPFix SysRestore EmptyPrefetch ShortcutFix O87 - FAEL: "{D60A1C63-5256-4690-B501-C39C56400403}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe (.not file.) O87 - FAEL: "{86F4FED4-3EDE-4B7D-8753-C90C99C7F6FE}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.) O87 - FAEL: "{2C6F13A1-DD1F-4AF9-A734-BF7A0A432E90}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.) O87 - FAEL: "{A8E1D9E8-4C15-4B30-A49A-5D2E5F76DBEC}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.) O87 - FAEL: "{6B57536C-53D9-4356-B25A-5FB0B98BABF8}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.) O87 - FAEL: "{2095401B-82CB-4F1B-9130-077FB1FA1477}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.) O87 - FAEL: "{9966D6E8-2E08-4C92-B291-CEDDD1C21E32}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe (.not file.) O87 - FAEL: "{2FA2D885-3DD0-4BD8-8B31-227297A08952}" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.) O87 - FAEL: "{9685C323-BC27-415A-B74E-67245475672E}" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe (.not file.) O87 - FAEL: "{08E9BDE6-E9B5-451C-94FD-E10EAFC685B6}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\File System\000 C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\File System\001 C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\File System\005 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] . (. - .) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] . (. - .) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe (.Not File.) =>.SUP.Orphan O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [MD5.A21FF960819F07A88A274B1ECF3F3A86] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [908256] [PID.4020] =>.McAfee, Inc.® [MD5.C9DCE185C54143F6EFF166518FBB0BA5] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McTkSchedulerService.exe [15736] [PID.5376] =>.McAfee, Inc.® O4 - GS\ProgramsCommon [Public]: True Key.lnk . (...) C:\Program Files\Intel Security\True Key\Application\truekey.exe --open-source=startmenu =>.McAfee, Inc.® Emptytemp Emptyclsid FirewallRaz ---\\ LOGICIEL. (0) ---\\ SERVICE. (0) ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (0) ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (6) SUPPRIMÉ Dossier : C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\File System\000 SUPPRIMÉ Dossier : C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\File System\001 SUPPRIMÉ Dossier : C:\Users\x\AppData\Local\Google\Chrome\User Data\Default\File System\005 DEPLACÉ Fichier Temp: C:\Users\x\AppData\Local\Temp\AdobeARM.log SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\x\AppData\Local\Temp\~DF5896FD375FA881C3.TMP SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\x\AppData\Local\Temp\FXSAPIDebugLogFile.txt ---\\ REGISTRE ( Clés, Valeurs, Données ). (15) SUPPRIMÉ Valeur FirewallRules: {D60A1C63-5256-4690-B501-C39C56400403} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {86F4FED4-3EDE-4B7D-8753-C90C99C7F6FE} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {2C6F13A1-DD1F-4AF9-A734-BF7A0A432E90} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {A8E1D9E8-4C15-4B30-A49A-5D2E5F76DBEC} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {6B57536C-53D9-4356-B25A-5FB0B98BABF8} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {2095401B-82CB-4F1B-9130-077FB1FA1477} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {9966D6E8-2E08-4C92-B291-CEDDD1C21E32} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {2FA2D885-3DD0-4BD8-8B31-227297A08952} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {9685C323-BC27-415A-B74E-67245475672E} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Valeur FirewallRules: {08E9BDE6-E9B5-451C-94FD-E10EAFC685B6} [HKLM\SYSTEM\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules] SUPPRIMÉ Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 [WinRAR32] SUPPRIMÉ Clé: HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} [{B41DB860-8EE4-11D2-9906-E49FADC173CA}] SUPPRIMÉ Clé: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 [WinRAR32] SUPPRIMÉ Valeur Run: GarminExpressTrayApp [HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\] ABSENT Valeur Run: HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe (.Not File.) ] ---\\ COMMANDE. (3) ~ EmptyPrefetch: Fichiers Prefetcher supprimés (130) ~ EmptyTemp: Dossier Local temp partiellement vidé (3) ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ---\\ NON TRAITÉ. (5) SysRestore ShortcutFix [MD5.A21FF960819F07A88A274B1ECF3F3A86] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [908256] [PID.4020] [MD5.C9DCE185C54143F6EFF166518FBB0BA5] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McTkSchedulerService.exe [15736] [PID.5376] FirewallRaz ~ Le système a été redémarré. ***** ~ Fin de rapport terminé en 00h00mn28s