~ ZHPFix v2020.7.29.218 by Nicolas Coolman (2020/07/29) ~ Run by reneb (Administrator) (03/08/2020 16:06:01) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Report : C:\Users\reneb\Desktop\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 19041) ---\\ SCRIPT DE L'UTILISATEUR. (51) Script ZHPFix CreateRestorePoint EmptyPrefetch Emptytemp Firewallraz EmptyCLSID EmptyFlash EmptyProxy G2 - GCE: Preference [reneb][User Data\Default\Extensions] [caljgklbbfbcjjanaijlacgncafpegll] Avira Password Manager =>.Avira Software G2 - GCE: Preference [reneb][User Data\Default\Extensions] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Operations GmbH & Co. KG =>.Avira Software B2 - EXT: [Avira Operations GmbH & Co. KG] C:\Users\reneb\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo =>.Avira Operations GmbH & Co. KG B2 - EXT: [Avira Operations GmbH & Co. KG] C:\Users\reneb\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngohaaocccbohaffogpbgfpmpgbcgccg =>.Avira Operations GmbH & Co. KG [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Avira SystrayStartTrigger =>.Avira Software HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira HKCU\SOFTWARE\Avira =>.Avira HKU\.DEFAULT\SOFTWARE\Avira =>.Avira HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Avira =>.Avira C:\ProgramData\Avira =>.Avira Software C:\Users\reneb\AppData\Local\Avira C:\Users\reneb\AppData\Local\AviraSpeedup G2 - GCE: Preference [reneb][User Data\Default\Extensions] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o C:\ProgramData\AVAST Software HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc. C:\ProgramData\mcafee HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender C:\ProgramData\Bitdefender C:\ProgramData\Bitdefender Agent C:\ProgramData\Spybot - Search & Destroy C:\Program Files (x86)\Spybot - Search & Destroy 2 HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\.DEFAULT\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited SR - Auto [00/00/0000] [ 0] HP JumpStart Bridge (HPJumpStartBridge) . (...) - Bridge\HPJumpStartBridge.exe (.not file.) [Unsigned] =>.Hewlett-Packard O4 - HKLM\..\Run: [BtServer] . (. - .) -- C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe (.Not File.) =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MyPhoneExplorer =>.SUP.Orphan HKLM\Software\Classes\CLSID\{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft [HKEY_USERS\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft HKLM\SOFTWARE\WOW6432Node\Glarysoft =>.GlarySoft HKCU\SOFTWARE\Glarysoft =>.GlarySoft HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Glarysoft =>.GlarySoft C:\ProgramData\GlarySoft C:\Users\reneb\AppData\Roaming\GlarySoft ---\\ LOGICIEL. (0) ---\\ SERVICE. (1) ARRETÉ : HKLM\SYSTEM\CurrentControlSet\Services\HPJumpStartBridge [No File found] ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (3) SUPPRIMÉ Dossier Chrome: C:\Users\reneb\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll SUPPRIMÉ Dossier Chrome: C:\Users\reneb\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk SUPPRIMÉ Dossier Chrome: C:\Users\reneb\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (25) DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\MBAMInstallerService.exe DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\AdobeARM.log DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\aria-debug-13092.log DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\chrome_installer.log DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\mbsetup.log DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\moz-update-newest-backup-update.log DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\moz-update-newest-last-update.log DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\StructuredQuery.log SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\reneb\AppData\Local\Temp\CR_614BB.tmp DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\wct8451.tmp DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon-14c8ae DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon-550563 DEPLACÉ Fichier Temp: C:\Users\reneb\AppData\Local\Temp\tmpaddon-d8188b SUPPRIMÉ Dossier : C:\ProgramData\Avira SUPPRIMÉ Dossier : C:\Users\reneb\AppData\Local\Avira SUPPRIMÉ Dossier : C:\Users\reneb\AppData\Local\AviraSpeedup SUPPRIMÉ Dossier : C:\ProgramData\AVAST Software SUPPRIMÉ Dossier : C:\ProgramData\mcafee SUPPRIMÉ Dossier : C:\ProgramData\Bitdefender SUPPRIMÉ Dossier : C:\ProgramData\Bitdefender Agent SUPPRIMÉ Dossier : C:\ProgramData\Spybot - Search & Destroy SUPPRIMÉ Dossier : C:\Program Files (x86)\Spybot - Search & Destroy 2 SUPPRIMÉ Dossier : C:\ProgramData\GlarySoft SUPPRIMÉ Dossier : C:\Users\reneb\AppData\Roaming\GlarySoft ---\\ REGISTRE ( Clés, Valeurs, Données ). (31) ABSENT Valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Avira [Avira ] SUPPRIMÉ Clé: HKCU\SOFTWARE\Avira [Avira ] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Avira [Avira ] ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Avira ABSENT Clé: HKLM\SOFTWARE\AVAST Software SUPPRIMÉ Clé: HKCU\SOFTWARE\AvastAdSDK [AvastAdSDK ] ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\AvastAdSDK SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\McAfee [McAfee ] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent [Bitdefender Agent ] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\SetID [SetID ] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited [Safer Networking Limited ] SUPPRIMÉ Clé: HKCU\SOFTWARE\Safer Networking Limited [Safer Networking Limited ] SUPPRIMÉ Clé: HKU\.DEFAULT\SOFTWARE\Safer Networking Limited [Safer Networking Limited ] ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Safer Networking Limited ABSENT Clé Service: HKLM\SYSTEM\CurrentControlSet\Services\HPJumpStartBridge ABSENT Valeur Run: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe (.Not File.) ] SUPPRIMÉ Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Glary Utilities [Glary Utilities ] SUPPRIMÉ Clé: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MyPhoneExplorer [MyPhoneExplorer ] SUPPRIMÉ Redémarrage Clé ^: HKLM\Software\Classes\CLSID\{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} SUPPRIMÉ Clé: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Glary Utilities [Glary Utilities ] SUPPRIMÉ Clé: HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Glary Utilities [Glary Utilities ] VERROUILLÉ Valeur : GUDelayStartup [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] VERROUILLÉ Valeur : GUDelayStartup [HKEY_USERS\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\Glarysoft [Glarysoft ] SUPPRIMÉ Clé: HKCU\SOFTWARE\Glarysoft [Glarysoft ] ABSENT Clé: HKU\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Glarysoft ~ EmptyProxy: Aucune modification. SUPPRIMÉ Valeur: Avira SystrayStartTrigger [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32] SUPPRIMÉ Valeur: GUDelayStartup [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] SUPPRIMÉ Valeur: GUDelayStartup [HKEY_USERS\S-1-5-21-318582263-2614346434-4216268105-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] ---\\ COMMANDE. (5) CreateRestorePoint: OK ~ EmptyPrefetch: Fichiers Prefetcher supprimés (298) ~ EmptyTemp: Dossier Local temp partiellement vidé (14) ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ~ EmptyFlash: Fichiers Temporaires supprimés. (2) ---\\ NON TRAITÉ. (1) Firewallraz ~ Le système a été redémarré. ***** ~ Fin de rapport terminé en 00mn00s