Besoin d'aide pour analyser le rapport ZHPDiag
Résolu
Anna2390
Messages postés
66
Statut
Membre
-
Cesel45 Messages postés 13762 Date d'inscription Statut Contributeur Dernière intervention -
Cesel45 Messages postés 13762 Date d'inscription Statut Contributeur Dernière intervention -
Bonjour, quelqu'un pourrait il me dire si tout va bien?
le rapport : https://pjjoint.malekal.com/files.php?id=ZHPDiag_20141225_x12c15r15s15p9
Merci bien.
le rapport : https://pjjoint.malekal.com/files.php?id=ZHPDiag_20141225_x12c15r15s15p9
Merci bien.
11 réponses
-
Bonjour
En fait tout va mal.....
Le P2P est un vecteur d'infection (Bit Torrent)
Nettoyer ton PC est une bonne chose mais tu risques encore des attaques.
Utilise ce script : https://pjjoint.malekal.com/files.php?id=20141225_g910l7y5y5
La marche à suivre est indiqué.
Redémarre ton PC et refait un diagnostic.
-
-
excuse moi, je n'y connais rien... sur ZHPFix je dois cliquer sur importer ou bien configurer ou bien aucuns des deux, simplement redémarrer?
-
-
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question -
excuse moi, je n'y connais rien... sur ZHPFix je dois cliquer sur importer ou bien configurer ou bien aucuns des deux, simplement redémarrer?
Chronologiquement tu as collé le script / tu as cliqué l'icone / tu IMPORTES ton script.
Bon je regarde le résultat...
-
Ça na pas marché....
Refait la procédure comme décrit plus haut...
Avec le même script :
A l'attention de ceux qui parcourent le sujet:
/!\ Ce script est exclusivement réservé à l'utilisateur actuel du sujet, vous ne devez en aucun cas l'utiliser de votre propre chef sur un autre pc, sous risque d'endommager le système /!\
*****************************************************************
"Copie tout ce qui est écrit en dessous en gras"(Ligne "Script ZHPfix" inclus)
Puis clic sur l'icone du bureau ZHPfix.
**********************************
Script ZHPFix
SysRestore
O4 - GS\Program [eve52]: Update Checker.lnk . (.FileHippo.com - FileHippo.com Update Checker.) -- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe =>Adware.SmileyBar
[HKCU\Software\AppDataLow\Software\Smartbar] =>Hijacker.SmartBar
[HKCU\Software\Grand Virtual] =>PUP.GrandVirtual
[HKLM\Software\Tarma Installer] =>PUP.Tarma
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2724431.isPerformedSmartBarTransition", "true"); =>Hijacker.SmartBar
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2724431.smartbar.CTID", "CT2724431"); =>Hijacker.SmartBar
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2724431.smartbar.Uninstall", "0"); =>Hijacker.SmartBar
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2724431.smartbar.isHidden", true); =>Hijacker.SmartBar
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2724431.smartbar.toolbarName", "IncrediMail MediaBar Francais 2 "); =>Hijacker.SmartBar
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2851639.SearchProtectorEnabled", false); =>PUP.SearchProtect
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2851639.SearchProtectorToolbarDisabled", false); =>PUP.SearchProtect
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2851639.searchProtectorDialogDelayInSec", 10); =>PUP.SearchProtect
O69 - SBI: prefs.js [eve52 - 60jwgfxc.default] user_pref("CT2851639.searchProtectorEnableByLogin", true); =>PUP.SearchProtect
O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - (MyStart Search) - http://mystart.incredimail.com =>Spyware.VMNToolbar
HKLM\SOFTWARE\Microsoft\Tracing\UpdateChecker_RASAPI32 =>Adware.SmileyBar
HKLM\SOFTWARE\Microsoft\Tracing\UpdateChecker_RASMANCS =>Adware.SmileyBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ConduitInstaller_RASAPI32 =>Adware.Bloson
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ConduitInstaller_RASMANCS =>Adware.Bloson
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\YontooDesktop_RASAPI32 =>Adware.Yontoo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\YontooDesktop_RASMANCS =>Adware.Yontoo
[HKLM\Software\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}] =>Adware.Yontoo
[HKLM\Software\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}] =>Adware.Yontoo
[HKLM\Software\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}] =>Adware.Yontoo
[HKLM\Software\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}] =>Adware.Yontoo
[HKLM\Software\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}] =>Adware.Yontoo
[HKLM\Software\Wow6432Node\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}] =>Adware.Yontoo
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A}] =>Adware.IncrediBar
[HKLM\Software\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}] =>Adware.Yontoo
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}] =>Adware.Yontoo
[HKCU\Software\Grand Virtual] =>Spyware.AgenceExclusive
[HKLM\Software\Tarma Installer] =>PUP.Tarma
C:\Users\eve52\AppData\Roaming\Mozilla\Firefox\Profiles\60jwgfxc.default\Smartbar =>Hijacker.SmartBar
[HKCU\Software\AppDataLow\Software\Smartbar] =>Hijacker.SmartBar^
ProxyFix
EmptyFlash
FirewallRaz
EmptyTemp
ShortcutFix
EmptyPrefetch
EMPTYCLSID -
https://www.cjoint.com/?DLzqFW0KB74 cette fois ci c'est bon ;)
-
Ça va mieux comme ça...!!
-
-
Je peux mettre ton sujet en résolu..??
-
je pensais que c'été pas fini... oui tu peux dans ce cas, merci pour ton aide et bonne fêtes !