Posté le 22 juillet 2014
Télécharger | Reposter | Largeur fixe

Script ZHPFix
O4 - GS\Desktop [jerrari]: AppsHat.lnk . (...) -- C:\Users\jerrari\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe (.not file.)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (...) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [Volaro Update] (...) -- C:\Program Files (x86)\Volaro\Updater\Updater.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{9D92A392-2DE6-4178-B1FE-10B3F113742C}] (...) -- C:\Users\jerrari\AppData\Roaming\omiga-plus\UninstallManager.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{C1ADF55A-B8BE-4BD9-88D6-23EEE4546E3F}] (...) -- C:\Users\jerrari\AppData\Roaming\omiga-plus\UninstallManager.exe (.not file.) [0]
O42 - Logiciel: UpdateChecker - (.Popajar, inc.) [HKCU][64Bits] -- Popajar, inc UpdateChecker
O42 - Logiciel: Volaro Updater - (.Volaro.) [HKLM][64Bits] -- Volaro Updater
O42 - Logiciel: Vonteera - (.Vonteera.) [HKLM][64Bits] -- Vonteera
O42 - Logiciel: WindowsMangerProtect20.0.0.502 - (.WindowsProtect LIMITED.) [HKLM][64Bits] -- WindowsMangerProtect
O42 - Logiciel: toolbar - (.Industriya.) [HKLM][64Bits] -- privitize
O42 - Logiciel: trolatunt - (.trolatunt.) [HKLM][64Bits] -- trolatunt
[HKCU\Software\Industriya]
[HKLM\Software\Wow6432Node\Industriya]
[HKLM\Software\Wow6432Node\Vontera]
C:\Users\jerrari\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
O45 - LFCP:[MD5.480D12F62F3784F30CE20DDFFB52C8B7] - 7/22/2014 - 12:02:20 AM ---A- - C:\Windows\Prefetch\APPSHAT_GENERIC.EXE-4F3F8077.pf
O45 - LFCP:[MD5.A0912F7CD664026E42CBE53844E0FCCD] - 7/22/2014 - 1:19:54 AM ---A- - C:\Windows\Prefetch\BICLIENT.EXE-CDBA7168.pf
O45 - LFCP:[MD5.30BB642A977ABBCC65D6BAA870CCFEA3] - 6/18/2013 - 11:54:42 PM ---A- - C:\Windows\Prefetch\LATESTDLMGR.EXE-348F04C9.pf
O45 - LFCP:[MD5.B5B26ADD46AFB6C5484F3EFCA7DF9A4D] - 7/22/2014 - 12:01:29 AM ---A- - C:\Windows\Prefetch\SMT_OMIGA-PLUS_NEW.EXE-8B56DE80.pf
O45 - LFCP:[MD5.FD609627ECA3ED33358A83D33F7996B5] - 7/22/2014 - 12:02:19 AM ---A- - C:\Windows\Prefetch\SUPIEPLUGINSERVICEUPDATE.EXE-64C891B3.pf
O45 - LFCP:[MD5.B5FA2C498710900CBFB8DBD1A74BB942] - 7/22/2014 - 12:02:19 AM ---A- - C:\Windows\Prefetch\SUPTAB_V5.8.8.619.EXE-F88AE162.pf
O45 - LFCP:[MD5.810052CCCC6F118827A4F7A9784756CD] - 7/22/2014 - 12:03:27 AM ---A- - C:\Windows\Prefetch\TROLATUNT.FIRSTRUN.EXE-B5862DEC.pf
O45 - LFCP:[MD5.5067AAB33FBEB9DEADEE54D83279B8DC] - 7/22/2014 - 12:03:05 AM ---A- - C:\Windows\Prefetch\TROLATUNTSETUP.EXE-AA6803F4.pf
O45 - LFCP:[MD5.C3F60D932FAF39A5E715D7C64BD4C89B] - 7/22/2014 - 12:03:25 AM ---A- - C:\Windows\Prefetch\TROLATUNT_SETUP.EXE-3EBC4A4C.pf
O45 - LFCP:[MD5.78DE06FBCD465C1101E646111A6AC243] - 7/22/2014 - 12:03:33 AM ---A- - C:\Windows\Prefetch\UPDATETROLATUNT.EXE-3338E1D4.pf
O45 - LFCP:[MD5.F4B99F62CCD53DC84D86B0911D9606DB] - 7/22/2014 - 12:02:59 AM ---A- - C:\Windows\Prefetch\WEBPLAYER.EXE-D13EE01F.pf
O45 - LFCP:[MD5.F90AD51ED4EA15DFDEEE83027B58AF48] - 7/22/2014 - 12:02:03 AM ---A- - C:\Windows\Prefetch\WPM_V20.0.0.502.EXE-525BD367.pf
O69 - SBI: SearchScopes [HKCU] 512314B7C08B4404BBD1B3050163A132 - (Search The Web (privitize)) - http://searchou.com
[MD5.0B8A80CA2CC6CE5A227AD84A13503E12] [SPRF][1/11/2014] (...) -- C:\Users\jerrari\AppData\Roaming\19AC.exe [1445440]
[MD5.0B8A80CA2CC6CE5A227AD84A13503E12] [SPRF][1/11/2014] (...) -- C:\Users\jerrari\AppData\Roaming\A6E1.exe [1445440]
[MD5.5A6783623C97890BBB8B98DC97A98A57] [SPRF][12/21/2013] (...) -- C:\Users\jerrari\AppData\Roaming\AC7A.exe [1450432]
[MD5.5A6783623C97890BBB8B98DC97A98A57] [SPRF][12/21/2013] (...) -- C:\Users\jerrari\AppData\Roaming\D4E3.exe [1450432]
[MD5.0B8A80CA2CC6CE5A227AD84A13503E12] [SPRF][1/11/2014] (...) -- C:\Users\jerrari\AppData\Roaming\DA89.exe [1445440]
O90 - PUC: "A8BE88F30B8922A46AC5E2B39615997F" . (.Smileys We Love Toolbar for IE.) -- C:\Windows\Installer\{3F88EB8A-98B0-4A22-A65C-2E3B695199F7}\_853F67D554F05449430E7E.exe
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\trolatunt_RASAPI32
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\trolatunt_RASMANCS
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatetrolatunt_RASAPI32
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatetrolatunt_RASMANCS
SS - | Auto 7/10/1658 0 | (WindowsMangerProtect) . (...) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Volaro Updater]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vonteera]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\privitize]
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\trolatunt]
[HKLM\Software\Classes\AppID\VONTEERA.DLL]
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\privitize]
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211701196}]
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31111111-1111-1111-1111-110211701196}]
O51 - MPSK:{c6e1803d-31ed-11e3-bee5-20689d35b45c}\AutoRun\command. (...) -- E:\Startme.exe (.not file.)
O4 - HKCU\..\RunOnce: [Application Restart #2] C:\Users\jerrari\AppData\Local\Pokki\Engine\pokki.exe (.not file.)
O4 - HKUS\S-1-5-21-3773975443-3318261197-1624942767-1001\..\RunOnce: [Application Restart #2] C:\Users\jerrari\AppData\Local\Pokki\Engine\pokki.exe (.not file.)
O43 - CFD: 1/20/2013 - 5:08:44 PM - [] ----D C:\Users\jerrari\AppData\Local\Avg2013
O43 - CFD: 1/20/2013 - 5:08:42 PM - [] ----D C:\ProgramData\AVG2013
O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Orphan key
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash

x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.