Rapport de ZHPFix 2013.6.12.3 par Nicolas Coolman, Update du 12/06/2013 Fichier d'export Registre : Run by lionel at 18/06/2013 19:50:22 High Elevated Privileges : OK Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Corbeille vidée ========== Processus mémoire ========== SUPPRIME Memory Process: C:\Windows\AutoKMS.exe ========== Clé(s) du Registre ========== ERREUR Key: Service Legacy: LEGACY_ESGIGUARD SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5 SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0 SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770 SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6 SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98 SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836 ========== Valeur(s) du Registre ========== SUPPRIME {901B775F-F9F2-45D7-AF31-CB5FC1FE44C5} SUPPRIME {87B9B863-4117-4239-A272-39A7161ED75F} SUPPRIME RunValue: BrowserPlugInHelper SUPPRIME TCP Query User{01AE2D04-9802-4283-884A-9063BD6A8985}C:\windows\keygen.exe SUPPRIME UDP Query User{8B790000-BDA3-4364-A520-E2A9A0C8A38E}C:\windows\keygen.exe ABSENT Valeur Standard Profile: FirewallRaz : ABSENT Valeur Domain Profile: FirewallRaz : SUPPRIME FirewallRaz (Domain) : NetPres-In-TCP-NoScope SUPPRIME FirewallRaz (Domain) : NetPres-Out-TCP-NoScope SUPPRIME FirewallRaz (None) : NetPres-WSD-In-UDP SUPPRIME FirewallRaz (None) : NetPres-WSD-Out-UDP SUPPRIME FirewallRaz (Public) : NetPres-In-TCP SUPPRIME FirewallRaz (Public) : NetPres-Out-TCP SUPPRIME FirewallRaz (Private) : TCP Query User{991B9CFB-387A-48D9-A5B6-88EC7AAA5257}C:\program files (x86)\ares\ares.exe SUPPRIME FirewallRaz (Private) : UDP Query User{58574DAC-015B-45B8-AAF7-0E4511F14B4B}C:\program files (x86)\ares\ares.exe SUPPRIME FirewallRaz (Public) : TCP Query User{11972568-EF7D-43FD-BCF3-02E43BB1A30F}G:\ares\ares.exe SUPPRIME FirewallRaz (Public) : UDP Query User{50BE3DCD-2DF9-4366-9A12-108024DAC889}G:\ares\ares.exe SUPPRIME FirewallRaz (Private) : {50447400-39EB-4E3A-BC95-8AF040FAFAD5} SUPPRIME FirewallRaz (Private) : {1C64BEC7-6123-4F51-88F8-93E3E2849F95} SUPPRIME FirewallRaz (Public) : {32A68214-7E41-4EF3-B120-DFF2F5EE0F33} SUPPRIME FirewallRaz (Public) : {981280E8-7AF5-4546-B2D4-08D97B162EC9} SUPPRIME FirewallRaz (Private) : TCP Query User{F864FEFA-044D-47A2-BC79-B33B6A3F9D61}C:\program files (x86)\wondershare\allmytube\urlreqservice.exe SUPPRIME FirewallRaz (Private) : UDP Query User{6352EF0E-38C7-4C9B-96FD-9228D5BEE573}C:\program files (x86)\wondershare\allmytube\urlreqservice.exe ========== Dossier(s) ========== SUPPRIME Flash Cookies SUPPRIME Temporaires Windows ========== Fichier(s) ========== SUPPRIME File: c:\windows\autokms.exe ABSENT File: c:\program files (x86)\wondershare\allmytube\browserpluginhelper.exe SUPPRIME Flash Cookies SUPPRIME Temporaires Windows ========== Tache planifiée ========== SUPPRIME Task: {A03E3684-0B7D-44FF-A0D1-C031F4557F50} ========== Restauration Système ========== Point de restauration du système créé avec succès ========== Récapitulatif ========== 1 : Processus mémoire 15 : Clé(s) du Registre 23 : Valeur(s) du Registre 2 : Dossier(s) 4 : Fichier(s) 1 : Tache planifiée 1 : Restauration Système End of clean in 00mn 17s ========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 15/06/2013 09:29:32 [517] C:\ZHP\ZHPFix[R2].txt - 18/06/2013 18:25:33 [580] C:\ZHP\ZHPFix[R3].txt - 18/06/2013 18:32:00 [619] C:\ZHP\ZHPFix[R4].txt - 18/06/2013 19:50:22 [5050]