~ ZHPFix v2020.6.4.202 by Nicolas Coolman (2020/06/04) ~ Run by Dar DMANA (Administrator) (10/06/2020 01:36:12) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Certificate ZHPFix: Legal ~ State version : Version OK ~ Report : C:\Users\Dar DMANA\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 18362) ---\\ SCRIPT DE L'UTILISATEUR. (40) Start:: O4 - HKCU\..\Run: [utweb] . (. - .) -- C:\Users\Dar DMANA\AppData\Roaming\uTorrent Web\utweb.exe (.Not File.) =>.SUP.Orphan O4 - HKCU\..\Run: [Web Companion] . (. - .) -- C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [HDD Regenerator] . (. - .) -- C:\Program Files (x86)\HDD Regenerator\Shell.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-21-2349388272-3904653948-1086595618-1001\..\Run: [utweb] . (. - .) -- C:\Users\Dar DMANA\AppData\Roaming\uTorrent Web\utweb.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-21-2349388272-3904653948-1086595618-1001\..\Run: [Web Companion] . (. - .) -- C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (.Not File.) =>.SUP.Orphan IE Restricted Site Good: webcompanion.com =>PUP.Optional.LavasoftWebCompanion [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Web Companion =>PUP.Optional.LavasoftWebCompanion [HKEY_USERS\S-1-5-21-2349388272-3904653948-1086595618-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Web Companion =>PUP.Optional.LavasoftWebCompanion HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKCU\Software\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKCU\Software\undefined =>.SUP.Downloader HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\SOFTWARE\undefined =>.SUP.Downloader C:\Users\Dar DMANA\AppData\Roaming\Mozilla\Firefox\Profiles\hxw4b42f.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} =>.SUP.Orphan HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKCU\Software\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKCU\Software\undefined =>.SUP.Downloader HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\Connectify.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\Connectify.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\Connectify.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\Connectify.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.ApplicationCompany =>.SUP.Orphan.MUICache EmptyPrefetch EmptyClsid ---\\ LOGICIEL. (0) ---\\ SERVICE. (0) ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (0) ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (1) DEPLACÉ Fichier : C:\Users\Dar DMANA\AppData\Roaming\Mozilla\Firefox\Profiles\hxw4b42f.default\searchplugins\yahoo.xml ---\\ REGISTRE ( Clés, Valeurs, Données ). (33) SUPPRIMÉ Valeur Run: utweb [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\] SUPPRIMÉ Valeur Run: Web Companion [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\] SUPPRIMÉ Valeur Run: HDD Regenerator [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\] SUPPRIMÉ Valeur Run: OneDriveSetup [HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\] SUPPRIMÉ Valeur Run: OneDriveSetup [HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\] ABSENT Valeur Run: HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Users\Dar DMANA\AppData\Roaming\uTorrent Web\utweb.exe (.Not File.)] ABSENT Valeur Run: HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (.Not File.)] SUPPRIMÉ Clé: HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com [webcompanion.com ] SUPPRIMÉ Clé: HKCU\Software\Lavasoft\Web Companion [Web Companion ] SUPPRIMÉ Clé: HKCU\Software\undefined [undefined ] ABSENT Clé: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com SUPPRIMÉ Clé: HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion [Web Companion ] ABSENT Clé: HKLM\SOFTWARE\Lavasoft\Web Companion ABSENT Clé: HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\SOFTWARE\undefined SUPPRIMÉ Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 [WinRAR32 ] ABSENT Clé: HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} SUPPRIMÉ Clé: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 [WinRAR32 ] SUPPRIMÉ Clé: HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler [VMDiskMenuHandler ] ABSENT Clé: HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} ABSENT Clé: HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com ABSENT Clé: HKCU\Software\Lavasoft\Web Companion ABSENT Clé: HKCU\Software\undefined ABSENT Clé: HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion SUPPRIMÉ Valeur: Web Companion [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: Web Companion [HKEY_USERS\S-1-5-21-2349388272-3904653948-1086595618-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\Connectify.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\Connectify.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\Connectify.exe.FriendlyAppName [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\Connectify.exe.ApplicationCompany [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.FriendlyAppName [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files (x86)\Connectify\ConnectifyGopher.exe.ApplicationCompany [HKU\S-1-5-21-2349388272-3904653948-1086595618-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] ---\\ COMMANDE. (2) ~ EmptyPrefetch: Fichiers Prefetcher supprimés (244) ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ---\\ NON TRAITÉ. (0) ***** ~ Fin de rapport terminé en 00h00mn27s