~ ZHPFix v2019.2.11.20 by Nicolas Coolman (2019/02/11) ~ Run by Jacky ADAM (Administrator) (27/02/2019 17:25:36) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Certificate ZHPFix: Legal ~ State version : Version OK ~ Report : C:\Users\jacky\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 17763) ---\\ SCRIPT DE L'UTILISATEUR. (68) Script ZHPFix EmptyCLSID EmptyFlash EmptyTemp EmptyTracing EmptyPrefetch EmptyProxy UnMaskSoftware: O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. (Hidden) O108 - CMH1: IXnView [64Bits] - {A5D35F9F-6A11-4EAA-B70B-7BB6FE32663A} . (.Orphan.) O108 - CMH1: PinToStartScreen [64Bits] - 470C0EBD-5D73-4d58-9CED-E91E22E23282 . (.Orphan.) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IXnView HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PinToStartScreen O43 - CFD: 13/05/2018 - [0] D -- C:\ProgramData\Reprise O17 - HKLM\System\CCS\Services\Tcpip\..\{2979e621-4d24-491e-8668-0dce2fcb9a5d}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{66965bf5-f562-4bf9-8470-5d11cf0ccd0e}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{6765d773-40ec-44b4-ae6d-6ed07d3632fd}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{67a46a7c-20bc-4b19-bb28-25fa329aaea0}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O23 - Service: Intel Security True Key (TrueKey) . (.McAfee, Inc. - Intel Security True Key.) - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe O23 - Service: Intel Security True Key Scheduler (TrueKeyScheduler) . (.McAfee, Inc. - Intel Security True Key.) - C:\Program Files\TrueKey\McTkSchedulerService.exe O23 - Service: Intel Security True Key Helper Service (TrueKeyServiceHelper) . (.McAfee, Inc. - McAfee TrueKey Service helper EXE.) - C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe SR - Auto [05/01/2017] [ 995800] Intel Security True Key (TrueKey) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe SR - Auto [05/01/2017] [ 16248] Intel Security True Key Scheduler (TrueKeyScheduler) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McTkSchedulerService.exe SR - Auto [05/01/2017] [ 86864] Intel Security True Key Helper Service (TrueKeyServiceHelper) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [MD5.B6A784DF9C081A9D5829C78E33BDCE42] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [995800] [PID.4724] [MD5.26EBE10498108E9EA746EF804AF4C680] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McTkSchedulerService.exe [16248] [PID.4756] [MD5.100F50AA137071A078B1BCED9414AFA1] - (.McAfee, Inc. - McAfee TrueKey Service helper EXE.) -- C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864] [PID.4820] O42 - Logiciel: Intel Security True Key - (.Intel Security.) [HKLM][64Bits] -- TrueKey HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\WOW6432Node\McAfee HKU\.DEFAULT\SOFTWARE\McAfee O43 - CFD: 27/03/2017 - [0] D -- C:\Program Files (x86)\McAfee O43 - CFD: 29/03/2017 - [] D -- C:\ProgramData\McAfee O43 - CFD: 27/03/2017 - [] D -- C:\Program Files (x86)\Common Files\McAfee HKLM\SOFTWARE\PDF Architect 6 O38 - TASK: {A7764FCB-CA20-45AC-93F4-234AD54A60CD} [64Bits][\Avast Software\Overseer] - (.AVAST Software - Avast Overseer.) -- C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1956536] C:\WINDOWS\System32\Tasks\Avast Software\Overseer - (.AVAST Software.) -- C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [/from_scheduler:1] HKLM\SOFTWARE\WOW6432Node\AVAST Software HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\AvastAdSDK HKCU\SOFTWARE\Browser Cleanup HKU\.DEFAULT\SOFTWARE\Avast Software HKU\.DEFAULT\SOFTWARE\Browser Cleanup HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\AVAST Software HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\AvastAdSDK HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\Browser Cleanup O43 - CFD: 05/10/2017 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 13/04/2017 - [0] D -- C:\Program Files (x86)\Common Files\AV O43 - CFD: 27/06/2018 - [] D -- C:\Users\jacky\AppData\Roaming\AVAST Software O43 - CFD: 27/06/2018 - [] D -- C:\Users\jacky\AppData\Local\AVAST Software HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent HKU\.DEFAULT\SOFTWARE\Bitdefender HKU\.DEFAULT\SOFTWARE\SetID O43 - CFD: 01/06/2018 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 01/06/2018 - [0] D -- C:\Users\jacky\AppData\Roaming\QuickScan HKLM\SOFTWARE\WOW6432Node\WildTangent O43 - CFD: 09/09/2016 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 09/09/2016 - [] D -- C:\Users\jacky\AppData\Roaming\WildTangent R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/ HKLM\SOFTWARE\WOW6432Node\Yahoo O69 - SBI: SearchScopes [HKCU] [64Bits]{3B6A4BA1-1EF1-4226-9F33-7CDEFD8E95C7} - (Yahoo Search) - http://fr.search.yahoo.com/ [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe HKCU\SOFTWARE\KasperskyLab HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\KasperskyLab O43 - CFD: 08/08/2017 - [0] D -- C:\ProgramData\Kaspersky Lab Fin ---\\ LOGICIEL. (1) DESINSTALLER : TrueKey ---\\ SERVICE. (6) ARRETÉ : HKLM\SYSTEM\CurrentControlSet\Services\TrueKey [McAfee.TrueKey.Service.exe] ARRETÉ : HKLM\SYSTEM\CurrentControlSet\Services\TrueKeyScheduler [McTkSchedulerService.exe] ARRETÉ : HKLM\SYSTEM\CurrentControlSet\Services\TrueKeyServiceHelper [McAfee.TrueKey.ServiceHelper.exe] ABSENT Service: TrueKey [McAfee.TrueKey.Service.exe] ABSENT Service: TrueKeyScheduler [McTkSchedulerService.exe] ABSENT Service: TrueKeyServiceHelper [McAfee.TrueKey.ServiceHelper.exe] ---\\ TÂCHE PLANIFIÉE. (2) SUPPRIMÉ Redémarrage Clé Tasks^: HKLM64\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7764FCB-CA20-45AC-93F4-234AD54A60CD} SUPPRIMÉ Redémarrage Clé Tasks^: HKLM64\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A7764FCB-CA20-45AC-93F4-234AD54A60CD} ---\\ NAVIGATEUR INTERNET. (2) REMPLACÉ Donnée Internet Explorer: http://fr.yahoo.com/ [HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page] REMPLACÉ Donnée SearchScopes: fr.search.yahoo.com/ [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3B6A4BA1-1EF1-4226-9F33-7CDEFD8E95C7}\\URL] ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (26) DEPLACÉ Fichier Temp: D:\TEMP\uninstallhb.exe DEPLACÉ Fichier Temp: D:\TEMP\AdobeARM.log SUPPRIMÉ Redémarrage Fichier Temp^: D:\TEMP\aria-debug-12004.log DEPLACÉ Fichier Temp: D:\TEMP\aria-debug-3660.log DEPLACÉ Fichier Temp: D:\TEMP\jusched.log DEPLACÉ Fichier Temp: D:\TEMP\LuUpdater.log DEPLACÉ Fichier Temp: D:\TEMP\StructuredQuery.log DEPLACÉ Fichier Temp: D:\TEMP\plfFCC5.tmp DEPLACÉ Fichier Temp: D:\TEMP\Setup Log 2019-02-26 #001.txt SUPPRIMÉ Dossier : C:\ProgramData\Reprise DEPLACÉ Fichier Service: C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe DEPLACÉ Fichier Service: C:\Program Files\TrueKey\McTkSchedulerService.exe DEPLACÉ Fichier Service: C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe SUPPRIMÉ Dossier : C:\Program Files (x86)\McAfee SUPPRIMÉ Dossier : C:\ProgramData\McAfee SUPPRIMÉ Dossier : C:\Program Files (x86)\Common Files\McAfee DEPLACÉ Fichier Tasks: C:\WINDOWS\System32\Tasks\Avast Software\Overseer SUPPRIMÉ Dossier : C:\ProgramData\AVAST Software SUPPRIMÉ Dossier : C:\Program Files (x86)\Common Files\AV SUPPRIMÉ Dossier : C:\Users\jacky\AppData\Roaming\AVAST Software SUPPRIMÉ Dossier : C:\Users\jacky\AppData\Local\AVAST Software SUPPRIMÉ Dossier : C:\ProgramData\BDLogging SUPPRIMÉ Dossier : C:\Users\jacky\AppData\Roaming\QuickScan SUPPRIMÉ Dossier : C:\ProgramData\WildTangent SUPPRIMÉ Dossier : C:\Users\jacky\AppData\Roaming\WildTangent SUPPRIMÉ Dossier : C:\ProgramData\Kaspersky Lab ---\\ REGISTRE ( Clés, Valeurs, Données ). (36) REMPLACÉ Donnée Software: 1 [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}\\SystemComponent] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\*\ShellEx\ContextMenuHandlers\IXnView [IXnView1] ABSENT Clé CMH: HKLM64\SOFTWARE\Classes\CLSID\A5D35F9F-6A11-4EAA-B70B-7BB6FE32663A} SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\*\ShellEx\ContextMenuHandlers\PinToStartScreen [PinToStartScreen1] ABSENT Clé CMH: HKLM64\SOFTWARE\Classes\CLSID\PinToStartScreen [64Bits] - 470C0EBD-5D73-4d58-9CED-E91E22E23282 ABSENT Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IXnView ABSENT Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PinToStartScreen REMPLACÉ Donnée TCPIP: 192.168.42.129 [HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{2979e621-4d24-491e-8668-0dce2fcb9a5d}\\DhcpNameServer] REMPLACÉ Donnée TCPIP: 192.168.42.129 [HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{66965bf5-f562-4bf9-8470-5d11cf0ccd0e}\\DhcpNameServer] REMPLACÉ Donnée TCPIP: 192.168.0.254 [HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{6765d773-40ec-44b4-ae6d-6ed07d3632fd}\\DhcpNameServer] REMPLACÉ Donnée TCPIP: 192.168.42.129 [HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{67a46a7c-20bc-4b19-bb28-25fa329aaea0}\\DhcpNameServer] ABSENT Clé Service: HKLM\SYSTEM\CurrentControlSet\Services\TrueKey ABSENT Clé Service: HKLM\SYSTEM\CurrentControlSet\Services\TrueKeyScheduler ABSENT Clé Service: HKLM\SYSTEM\CurrentControlSet\Services\TrueKeyServiceHelper SUPPRIMÉ Clé: HKLM\SOFTWARE\McAfee.com [McAfee.com] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\McAfee [McAfee] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\McAfee [McAfee] SUPPRIMÉ Clé: HKLM\SOFTWARE\PDF Architect 6 [PDF Architect 6] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\AVAST Software [AVAST Software] SUPPRIMÉ Clé: HKCU\SOFTWARE\AVAST Software [AVAST Software] SUPPRIMÉ Clé: HKCU\SOFTWARE\AvastAdSDK [AvastAdSDK] SUPPRIMÉ Clé: HKCU\SOFTWARE\Browser Cleanup [Browser Cleanup] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Avast Software [Avast Software] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Browser Cleanup [Browser Cleanup] ABSENT Clé: HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\AVAST Software ABSENT Clé: HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\AvastAdSDK ABSENT Clé: HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\Browser Cleanup SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent [Bitdefender Agent] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Bitdefender [Bitdefender] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\SetID [SetID] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\WildTangent [WildTangent] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Yahoo [Yahoo] SUPPRIMÉ Clé: HKCU\SOFTWARE\KasperskyLab [KasperskyLab] ABSENT Clé: HKU\S-1-5-21-3839344162-897147230-3294618674-1001\SOFTWARE\KasperskyLab ~ EmptyProxy: Aucune modification. SUPPRIMÉ Valeur: YahooMusicEngine.exe [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK] ---\\ COMMANDE. (5) ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ~ EmptyFlash: Fichiers Temporaires supprimés. (2) ~ EmptyTemp: Dossier Local temp partiellement vidé (9) ~ EmptyTracing: Clés tracing supprimées (7) ~ EmptyPrefetch: Fichiers Prefetcher supprimés (193) ---\\ NON TRAITÉ. (3) [MD5.B6A784DF9C081A9D5829C78E33BDCE42] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [MD5.26EBE10498108E9EA746EF804AF4C680] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McTkSchedulerService.exe [MD5.100F50AA137071A078B1BCED9414AFA1] - (.McAfee, Inc. - McAfee TrueKey Service helper EXE.) -- C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe ~ Le système a été redémarré. ***** ~ Fin de rapport terminé en 00h01mn09s