~ ZHPFix v2021.3.29.288 by Nicolas Coolman (2021/03/29) ~ Run by m_bac (Administrator) (30/03/2021 16:32:18) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Report : C:\Users\m_bac\OneDrive\Bureau\ZHPFix.txt ~ Quarantine : HKCU\SOFTWARE\ZHP\ZHPFix\Quarantine\ ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 19042) ---\\ SCRIPT DE L'UTILISATEUR. (55) Script ZHPFix CreateRestorePoint OPT:O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd® OPT:O4 - HKCU\..\Run: [CCleaner] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd® OPT:O4 - HKUS\S-1-5-21-2620245546-1894963123-4137140394-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd® OPT:O4 - HKUS\S-1-5-21-2620245546-1894963123-4137140394-1001\..\Run: [CCleaner] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd® C:\Users\m_bac\AppData\Roaming\Mozilla\Firefox\Profiles\dztyxzg5.default-release-1615629314380\extensions\helper@savefrom.net.xpi O69 - SBI: prefs.js [m_bac - dztyxzg5.default-release-1615629314380] user_pref("extensions.webextensions.ExtensionStorageIDB.migrated.helper@savefrom.net", true); HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\FAExt HKLM\Software\Classes\CLSID\{05672D66-9736-42F5-8BEB-FA1DD3CA51C4} [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\qBittorrent\qbittorrent.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\qBittorrent\qbittorrent.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.ApplicationCompany [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\qBittorrent\qbittorrent.exe.FriendlyAppName [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\qBittorrent\qbittorrent.exe.ApplicationCompany [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.FriendlyAppName [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.ApplicationCompany C:\Program Files\Mes_Drivers_3.0.4.exe HKLM\SYSTEM\CurrentControlSet\Services\mfevtp) C:\WINDOWS\system32\mfevtps.exe HKLM\SYSTEM\CurrentControlSet\Services\mfehidk) C:\WINDOWS\System32\drivers\mfehidk.sys HKLM\SYSTEM\CurrentControlSet\Services\mferkdet) C:\WINDOWS\System32\drivers\mferkdet.sys [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RealProtect HKLM\SOFTWARE\McAfee HKLM\SOFTWARE\WOW6432Node\McAfee [587CD21A05D34D3DDFAA9128521CF4FC] [28/02/2021] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfehidk.sys [587CD21A05D34D3DDFAA9128521CF4FC] [28/02/2021] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mferkdet.sys [587CD21A05D34D3DDFAA9128521CF4FC] [28/02/2021] (.McAfee, Inc..) - C:\WINDOWS\system32\mfevtps.exe HKCU\SOFTWARE\AvastAdSDK HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\SOFTWARE\AvastAdSDK HKCU\SOFTWARE\Chromium HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\SOFTWARE\Chromium C:\ProgramData\WinZip EmptyCLSID EmptyFlash EmptyTemp EmptyTracing EmptyPrefetch EmptyProxy EmptyRecycle WinsockFix Fin ---\\ LOGICIEL. (0) ---\\ SERVICE. (0) ---\\ TÂCHE PLANIFIÉE. (0) ---\\ NAVIGATEUR INTERNET. (0) ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (6) DEPLACÉ Fichier : C:\Program Files\Mes_Drivers_3.0.4.exe SUPPRIMÉ Dossier : C:\ProgramData\WinZip DEPLACÉ Fichier Temp: C:\Users\m_bac\AppData\Local\Temp\AdobeARM.log DEPLACÉ Fichier Temp: C:\Users\m_bac\AppData\Local\Temp\_iu14D2N.tmp SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\m_bac\AppData\Local\Temp\~nsuA.tmp SUPPRIMÉ Redémarrage Fichier Temp^: C:\Users\m_bac\AppData\Local\Temp\FXSAPIDebugLogFile.txt ---\\ REGISTRE ( Clés, Valeurs, Données ). (30) SUPPRIMÉ Valeur Run: CCleaner Smart Cleaning [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\] SUPPRIMÉ Valeur Run: CCleaner [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\] ABSENT Valeur Run: HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ [C:\Program Files\CCleaner\CCleaner64.exe ] SUPPRIMÉ Clé: HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\FAExt [FAExt] SUPPRIMÉ Redémarrage Clé ^: HKLM\Software\Classes\CLSID\{05672D66-9736-42F5-8BEB-FA1DD3CA51C4} SUPPRIMÉ Valeur : C:\Program Files\qBittorrent\qbittorrent.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur : C:\Program Files\qBittorrent\qbittorrent.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur : C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur : C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] ABSENT Valeur: HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache [] ABSENT Clé: HKLM\SYSTEM\CurrentControlSet\Services\mfevtp) ABSENT Clé: HKLM\SYSTEM\CurrentControlSet\Services\mfehidk) ABSENT Clé: HKLM\SYSTEM\CurrentControlSet\Services\mferkdet) ABSENT Valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [] SUPPRIMÉ Redémarrage Clé ^: HKLM\SOFTWARE\McAfee SUPPRIMÉ Clé: HKLM\SOFTWARE\WOW6432Node\McAfee [McAfee] SUPPRIMÉ Clé: HKCU\SOFTWARE\AvastAdSDK [AvastAdSDK] ABSENT Clé: HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\SOFTWARE\AvastAdSDK SUPPRIMÉ Clé: HKCU\SOFTWARE\Chromium [Chromium] ABSENT Clé: HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\SOFTWARE\Chromium ~ EmptyProxy: Aucune modification. SUPPRIMÉ Valeur: C:\Program Files\qBittorrent\qbittorrent.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files\qBittorrent\qbittorrent.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.FriendlyAppName [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.ApplicationCompany [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files\qBittorrent\qbittorrent.exe.FriendlyAppName [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Program Files\qBittorrent\qbittorrent.exe.ApplicationCompany [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.FriendlyAppName [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: C:\Users\m_bac\AppData\Local\Microsoft\OneDrive\OneDrive.exe.ApplicationCompany [HKU\S-1-5-21-2620245546-1894963123-4137140394-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] SUPPRIMÉ Valeur: RealProtect [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] ---\\ COMMANDE. (8) CreateRestorePoint: OK ~ EmptyCSID: Dossiers CLSID vides supprimés (0) ~ EmptyFlash: Dossier FlashPlayer vide. ~ EmptyTemp: Dossier Local temp partiellement vidé (4) ~ EmptyTracing: Clés tracing supprimées (13) ~ EmptyPrefetch: Fichiers Prefetcher supprimés (253) ~ EmptyRecycle: Corbeille vidée avec succès. ~ Command spéciale exécutée avec succès: Winsock ---\\ NON TRAITÉ. (3) [587CD21A05D34D3DDFAA9128521CF4FC] [28/02/2021] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfehidk.sys [587CD21A05D34D3DDFAA9128521CF4FC] [28/02/2021] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mferkdet.sys [587CD21A05D34D3DDFAA9128521CF4FC] [28/02/2021] (.McAfee, Inc..) - C:\WINDOWS\system32\mfevtps.exe ~ Le système a été redémarré. ***** ~ Fin de rapport terminé en 00mn00s