cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.3.16.125 by Nicolas Coolman (16/03/2015)
~ Run by christophe (Administrator) (16/03/2015 22:06:21)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : R�parer
~ Report : C:\Users\christophe\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\christophe\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)


---\\ Service. (1)



---\\ Navigateur internet. (4)
DEPLAC� fichier: C:\Users\christophe\Desktop\MyPC Backup.lnk [Bad : C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe] (PUP.MyPCBackup)
DEPLAC� fichier: C:\Users\christophe\Desktop\Sync Folder.lnk [Bad : C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe] (PUP.MyPCBackup)
DEPLAC� fichier: C:\Users\christophe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk [Bad : C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe] (PUP.MyPCBackup)
DEPLAC� fichier: C:\Users\Public\Desktop\FlvPlayer.lnk [Bad : C:\Program Files (x86)\FlvPlayer\FLVPlayerApp.exe] (PUP.FLVPlayer)


---\\ Fichier h�te. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ T�che planifi�e. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ Explorateur ( Dossiers, Fichiers ). (13)
DEPLAC� fichier: C:\Program Files (x86)\MyPC Backup\BackupStack.exe [Just Develop It - Backup Stack] (PUP.MyPCBackup)
DEPLAC� fichier: C:\ProgramData\iolo\fileinfo.dll (PUP.SafePCRepair)
DEPLAC� fichier: C:\ProgramData\iolo\Setup Log 2013-1-27.txt (PUP.SafePCRepair)
DEPLAC� dossier*: C:\ProgramData\iolo\logs (PUP.SafePCRepair)
DEPLAC� dossier*: C:\ProgramData\iolo\SCU (PUP.SafePCRepair)
DEPLAC� dossier*: C:\ProgramData\iolo (PUP.SafePCRepair)
DEPLAC� fichier: C:\Windows\Installer\3c991a.msi [Spigot, Inc. - InstallShield� 2012 Spring - Premier Edition 19] (PUP.Dealio)
DEPLAC� fichier: C:\Users\christophe\Desktop\FREE Games.url (Adware.ScriptHost)
DEPLAC� fichier: C:\Users\christophe\Downloads\Belles_d_downloader.exe [http://yourfiledownloader.com - YourFile Downloader] (PUP.YourFileDownloader)
DEPLAC� fichier: C:\Users\christophe\Downloads\Driverwhiz(1).exe [Driver Whiz - This installer database contains the logic and data required to install Driver Whiz.] (PUP.DriverWhiz)
DEPLAC� fichier: C:\Users\christophe\Downloads\Driverwhiz.exe [Driver Whiz - This installer database contains the logic and data required to install Driver Whiz.] (PUP.DriverWhiz)
DEPLAC� fichier: C:\Users\christophe\AppData\Roaming\Bubble Dock.installation.log (PUP.BubbleDock)
DEPLAC� fichier: C:\Users\CHRIST~1\AppData\Local\Temp\SearchProtectionSetup.exe (PUP.SearchProtect)


---\\ Base de Registres ( Cl�s, Valeurs, Donn�es ). (81)
SUPPRIM� cl�^: [X64] HKLM\SYSTEM\CurrentControlSet\Services\BackupStack [C:\Program Files (x86)\MyPC Backup\BackupStack.exe] (PUP.MyPCBackup)
SUPPRIM� donn�e: HKCR\FirefoxHTML\Shell\Open\Command\\Default [Bad : "C:\_OTL\MovedFiles\11012013_200325\C_Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1"] (Broken.OpenCommand)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0C6D45F5-EBC9-3F58-288E-4B83D9E3CA18} [http://www.awesomehp.com/web/?type=ds&ts=1393872771&from=amt&uid=ST9500325AS_5VERNWHXXXXX5VERNWHX&q=[...]] [awesomehp] (PUP.Awesomehp)
SUPPRIM� valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Browser Extensions ["C:\Users\christophe\AppData\Roaming\Browser Extensions\CouponsHelper.exe"] (PUP.Dealio)
SUPPRIM� valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Search Protection ["C:\Users\christophe\AppData\Roaming\Search Protection\SP.EXE" /autostart] (PUP.SearchProtect)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-662707030-454650641-4265277125-1001\Software\ilividtoolbargaw [] (Adware.Bandoo)
SUPPRIM� cl�*: HKCU\Software\AppDataLow\Software\Browser Extensions [] (PUP.Dealio)
SUPPRIM� cl�*: HKCU\Software\AppDataLow\Software\Re_markit [] (PUP.ReMarkIt)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\VisualBee for Microsoft PowerPoint [VisualBee.com] (Adware.VisualBeeToolbar)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{3A787631-66A2-4634-B928-A37E73B58FB6} [Browser Extensions] (PUP.Dealio)
SUPPRIM� cl�*: HKCU\Software\Mozilla\Extends [] (PUP.FastStart)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Software.OneClickCtrl.9 [Software Update Plugin] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Software.OneClickProcessLauncherMachine [Software.OneClickProcessLauncher] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Software.OneClickProcessLauncherMachine.1.0 [Software.OneClickProcessLauncher] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Software.Update3WebControl.3 [Software Update Plugin] (PUP.Software.Updater)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.CoCreateAsync [CoCreateAsync] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.CoCreateAsync.1.0 [CoCreateAsync] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreMachineClass [Google Update Core Class] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreMachineClass.1 [Google Update Core Class] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.CredentialDialogMachine [SoftwareUpdate CredentialDialog] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.CredentialDialogMachine.1.0 [SoftwareUpdate CredentialDialog] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachineFallback [Google Update Legacy On Demand] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachineFallback.1.0 [Google Update Legacy On Demand] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassSvc [Google Update Legacy On Demand] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassSvc.1.0 [Google Update Legacy On Demand] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.ProcessLauncher [Google Update Process Launcher Class] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.ProcessLauncher.1.0 [Google Update Process Launcher Class] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3COMClassService [Update3COMClass] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3COMClassService.1.0 [Update3COMClass] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachine [Google Update Broker Class Factory] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachine.1.0 [Google Update Broker Class Factory] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachineFallback [SoftwareUpdate Update3Web] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachineFallback.1.0 [SoftwareUpdate Update3Web] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebSvc [SoftwareUpdate Update3Web] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebSvc.1.0 [SoftwareUpdate Update3Web] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Record\{181480C8-90AC-3430-B39A-CD121E034A1A} [IESmartBar.MSG] (Hijacker.SmartBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6} [IESmartBar.BandObjectStyle] (Hijacker.SmartBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E} [IESmartBar.POINT] (Hijacker.SmartBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Record\{8F54FA54-1DF8-3B20-890C-CDD95364BC95} [IESmartBar.DBIM] (Hijacker.SmartBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24} [IESmartBar.DESKBANDINFO] (Hijacker.SmartBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9} [IESmartBar.DBIMF] (Hijacker.SmartBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 [] (PUP.MyPCBackup)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS [] (PUP.MyPCBackup)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\DriverWhiz_RASAPI32 [] (PUP.DriverWhiz)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\DriverWhiz_RASMANCS [] (PUP.DriverWhiz)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup [JDi Backup Ltd] (PUP.MyPCBackup)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1672163f-8651-4c0d-9c05-4ba941123972} [C:\Users\christophe\AppData\Roaming\Browser Extensions] (PUP.Dealio)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61db39d5-034c-45c0-8bb2-daf857edcf3b} [C:\Users\christophe\AppData\Roaming\Browser Extensions] (PUP.Dealio)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SoftwareUpdate.exe [] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MyPC Backup [C:\Program Files (x86)\MyPC Backup\BackupStack.exe] (PUP.MyPCBackup)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\FlvPlayer [] (PUP.FLVPlayer)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FlvPlayer [FlvPlayer] (PUP.FLVPlayer)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 [] (PUP.AdvancedSystemProtector)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS [] (PUP.AdvancedSystemProtector)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_RASAPI32 [] (PUP.BrowseMark)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_RASMANCS [] (PUP.BrowseMark)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ExtensionUpdaterService_RASAPI32 [] (Adware.Incredibar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ExtensionUpdaterService_RASMANCS [] (Adware.Incredibar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FindRight_RASAPI32 [] (PUP.FindRight)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FindRight_RASMANCS [] (PUP.FindRight)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PCPerformer_RASAPI32 [] (PUP.PerformerSoft)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PCPerformer_RASMANCS [] (PUP.PerformerSoft)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmartbarExeInstaller_RASAPI32 [] (PUP.QuickShare)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SmartbarExeInstaller_RASMANCS [] (PUP.QuickShare)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseMark_RASAPI32 [] (PUP.BrowseMark)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBrowseMark_RASMANCS [] (PUP.BrowseMark)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateFindRight_RASAPI32 [] (PUP.FindRight)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateFindRight_RASMANCS [] (PUP.FindRight)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VisualBeeSilent_RASAPI32 [] (Adware.VisualBeeToolbar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\VisualBeeSilent_RASMANCS [] (Adware.VisualBeeToolbar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\YontooDesktop_RASAPI32 [] (Adware.Yontoo)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\YontooDesktop_RASMANCS [] (Adware.Yontoo)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{00448623-BC73-40FB-ACBD-B7A6CD21EB92} [C:\PROGRA~2\SEARCH~2\Datamngr\SRTOOL~1] (PUP.Datamngr)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1672163f-8651-4c0d-9c05-4ba941123972} [C:\Users\christophe\AppData\Roaming\Browser Extensions] (PUP.Dealio)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2e01cf6a-f456-47cc-867a-a738c5de1f52} [C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\] (Toolbar.BingBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30c5b07b-d841-4027-a7fd-a1e5437c7226} [C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\] (Toolbar.BingBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3620A722-5C32-441E-AE83-94CD5FF87A33} [C:\Program Files (x86)\Doko-Toolbar\dokotoolbar\1.8.26.9] (Hijacker.Doko)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61db39d5-034c-45c0-8bb2-daf857edcf3b} [C:\Users\christophe\AppData\Roaming\Browser Extensions] (PUP.Dealio)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{721205a9-1ada-44e7-9dd2-690a494836cc} [C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\] (Toolbar.BingBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAE9BEC8-4723-4347-AFC6-25EE3326BA5B} [C:\Users\christophe\AppData\Roaming\Browser Extensions] (PUP.Dealio)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f26780fb-59fd-45a9-b6a9-5264a036e865} [C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\] (Toolbar.BingBar)



---\\ Bilan de la r�paration
~ R�paration r�alis�e avec succ�s.
~ Ce navigateur est absent (Google Chrome)
~ Ce navigateur est absent (Opera Software)
~ Le syst�me a �t� red�marr�.


---\\ Statistiques
~ Items scann�s : 69631
~ Items trouv�s : 0
~ Items r�par�s : 22


End of clean at 22:12:28
===================
ZHPCleaner-[R]-16032015-22_12_28.txt

Publicité


Signaler le contenu de ce document

Publicité