~ ZHPFix v2019.9.23.141 by Nicolas Coolman (2019/09/23) ~ Run by PRO TECT (Administrator) (27/10/2019 12:23:29) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Certificate ZHPFix: Legal ~ State version : Version OK ~ Report : C:\Users\PRO TECT\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 18362) ---\\ SCRIPT DE L'UTILISATEUR. (31) Script Zhpfix O4 - HKCU\..\Run: [Google Update] . (. - .) -- C:\Users\PRO TECT\AppData\Local\Google\Update\1.3.35.301\GoogleUpdateCore.exe (.Not File.) O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-21-2437508156-3550100517-302183195-1001\..\Run: [Google Update] . (. - .) -- C:\Users\PRO TECT\AppData\Local\Google\Update\1.3.35.301\GoogleUpdateCore.exe (.Not File.) G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://feed.plusnetwork.com/ G2 - GCE: Preference [PRO TECT][User Data\Default\Extensions] [emhginjpijfggbofeediiojmdlmlkoik] Avast Passwords G2 - GCE: Preference [PRO TECT][User Data\Default\Extensions] [nabmpeienmkmicpjckkgihobgleppbkc] [http://qaloqum.com/update] Internal Chromium Extension [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GoogleChromeAutoLaunch_0FB7D4D0123FEF37A5B6640B489AC04B [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_D9EE5DA2E08D4180840F746DA77FA0FC [HKEY_USERS\S-1-5-21-2437508156-3550100517-302183195-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GoogleChromeAutoLaunch_0FB7D4D0123FEF37A5B6640B489AC04B [HKEY_USERS\S-1-5-21-2437508156-3550100517-302183195-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_D9EE5DA2E08D4180840F746DA77FA0FC [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:QuickTime Task O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O90 - PUC: "57DB95FFA664A5D4DA32AA8DC7F54DC4" [HKLM] . (.QuickTime 7.) -- C:\WINDOWS\Installer\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}\Installer.ico C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik C:\Users\PRO TECT\AppData\Local\chromium\User Data\Default\Extensions\nabmpeienmkmicpjckkgihobgleppbkc HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\File System\010 C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\File System\011 EmptyPrefetch EmptyClsid ---\\ LOGICIEL. (0) ---\\ SERVICE. (0) ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (3) DEPLACÉ Fichier Chrome: C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\Preferences DEPLACÉ Fichier Chrome: C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences SUPPRIMÉ Dossier Chrome: C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (4) SUPPRIMÉ Dossier : C:\Users\PRO TECT\AppData\Local\chromium\User Data\Default\Extensions\nabmpeienmkmicpjckkgihobgleppbkc SUPPRIMÉ Dossier : C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\File System\010 SUPPRIMÉ Dossier : C:\Users\PRO TECT\AppData\Local\Google\Chrome\User Data\Default\File System\011 SUPPRIMÉ Dossier EmptyCLSID: C:\ProgramData\{EF76D34A-C75E-AB32-9F06-831A77EE5BC2} ---\\ REGISTRE ( Clés, Valeurs, Données ). (20) SUPPRIMÉ Valeur Run: Google Update [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\] SUPPRIMÉ Valeur Run: OneDriveSetup [HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\] SUPPRIMÉ Valeur Run: OneDriveSetup [HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\] ABSENT Valeur Run: HKU\S-1-5-21-2437508156-3550100517-302183195-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Users\PRO TECT\AppData\Local\Google\Update\1.3.35.301\GoogleUpdateCore.exe (.Not File.)] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 [WinRAR321] ABSENT Clé CMH: HKLM64\SOFTWARE\Classes\CLSID\B41DB860-8EE4-11D2-9906-E49FADC173CA} SUPPRIMÉ Clé CMH: HKLM64\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 [WinRAR322] SUPPRIMÉ Clé CMH: HKLM64\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 [WinRAR326] SUPPRIMÉ Clé Product: HKLM64\Software\Classes\Installer\Products\57DB95FFA664A5D4DA32AA8DC7F54DC4 [QuickTime 7] ABSENT Clé: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} SUPPRIMÉ Clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} [{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}] ABSENT Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 ABSENT Clé: HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} ABSENT Clé: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 ABSENT Clé: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 SUPPRIMÉ Valeur: GoogleChromeAutoLaunch_0FB7D4D0123FEF37A5B6640B489AC04B [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: AvastBrowserAutoLaunch_D9EE5DA2E08D4180840F746DA77FA0FC [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: GoogleChromeAutoLaunch_0FB7D4D0123FEF37A5B6640B489AC04B [HKEY_USERS\S-1-5-21-2437508156-3550100517-302183195-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: AvastBrowserAutoLaunch_D9EE5DA2E08D4180840F746DA77FA0FC [HKEY_USERS\S-1-5-21-2437508156-3550100517-302183195-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: QuickTime Task [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32] ---\\ COMMANDE. (2) ~ EmptyPrefetch: Fichiers Prefetcher supprimés (253) ~ EmptyCSID: Dossiers CLSID vides supprimés (1) ---\\ NON TRAITÉ. (0) ***** ~ Fin de rapport terminé en 00h00mn26s