cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.3.17.126 by Nicolas Coolman (17/03/2015)
~ Run by Olivier (Administrator) (17/03/2015 19:53:01)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : R�parer
~ Report : C:\Users\Olivier\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Olivier\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 81, 64-bit (Build 9600)


---\\ Service. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ Navigateur internet. (15)
DEPLAC� fichier: C:\Users\Olivier\Desktop\GU Player.lnk [Bad : C:\Program Files (x86)\GU Player\GuPlayer.exe] (PUP.GUPlayer)
REMPLAC� IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL [hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01A[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page [hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01A[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Default_Page_URL [hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01A[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Default_Search_URL [hxxp://www.mystartsearch.com/web/?type=dspp&ts=1426596943&from=ima&uid=TOSHIBAXD[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Start Page [hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01A[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Search Page [hxxp://www.mystartsearch.com/web/?type=dspp&ts=1426596943&from=ima&uid=TOSHIBAXD[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Default_Page_URL [hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01A[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Default_Search_URL [hxxp://www.mystartsearch.com/web/?type=dspp&ts=1426596943&from=ima&uid=TOSHIBAXD[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Start Page [hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01A[...]] (PUP.StartSearch)
REMPLAC� IE Params: HKLM64\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Search Page [hxxp://www.mystartsearch.com/web/?type=dspp&ts=1426596943&from=ima&uid=TOSHIBAXD[...]] (PUP.StartSearch)
SUPPRIM� Firefox: [hu3ys8zf.default] URL HomePage : hxxp://www.mystartsearch.com/?type=hppp&ts=1426596943&from=ima&uid=TOSHIBAXDT01ACA100_24G2HHVMSXX24G2HHVM[...] (PUP.StartSearch)
DEPLAC� fichier: C:\Users\Olivier\AppData\Roaming\Mozilla\Firefox\Profiles\hu3ys8zf.default\extensions\fftoolbar2014@etech.com (Adware.FFToolBar)
DEPLAC� fichier*: C:\Users\Olivier\AppData\Roaming\Mozilla\Firefox\Profiles\hu3ys8zf.default\Extensions\fftoolbar2014@etech.com\chrome (Adware.FFToolBar)
DEPLAC� dossier: C:\Users\Olivier\AppData\Roaming\Mozilla\Firefox\Profiles\hu3ys8zf.default\Extensions\fftoolbar2014@etech.com (Adware.FFToolBar)


---\\ Fichier h�te. (1)
~ Le fichier h�te est l�gitime. (21)


---\\ T�che planifi�e. (2)
SUPPRIM� t�che: [Run_Bobby_Browser] [C:\Users\Olivier\AppData\Local\BoBrowser\Application\bobrowser.exe (Not File) ] (PUP.BoBrowser)
SUPPRIM� t�che: [Super Optimizer Schedule] [C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe (Not File) ] (PUP.SuperOptimizer)


---\\ Explorateur ( Dossiers, Fichiers ). (28)
DEPLAC� fichier: C:\Users\Olivier\AppData\Roaming\Mozilla\Firefox\Profiles\hu3ys8zf.default\searchplugins\mystartsearch.xml [] (PUP.StartSearch)
DEPLAC� fichier: C:\ProgramData\{02a37fc5-062f-5d1a-02a3-37fc5062ff14}\OptimizerProInstaller.exe [PCUtilities Software Limited - Optimizer Pro � Clean up your PC] (PUP.OptimizerPro)
DEPLAC� fichier: C:\ProgramData\{adc73209-ef99-58de-adc7-73209ef9c827}\SuperOptimizerInstaller.exe [Super PC Tools Ltd - Fix PC problems and optimize performance] (PUP.SuperPCTools)
DEPLAC� fichier: C:\Users\Olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OptimizerProInstaller.lnk (PUP.OptimizerPro)
DEPLAC� fichier: C:\Users\Olivier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperOptimizerInstaller.lnk (PUP.SuperPCTools)
DEPLAC� fichier: C:\ProgramData\84020d0000002414\BIT2DEC.tmp (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [SysTool PasSame LIMITED - Windows SysTool Service] (PUP.Fuyu)
DEPLAC� dossier: C:\ProgramData\IHProtectUpDate\update (Adware.AgentODR)
DEPLAC� dossier: C:\ProgramData\WindowsMangerProtect\update (PUP.Fuyu)
DEPLAC� dossier: C:\ProgramData\84020d0000002414 (PUP.CrossRider)
DEPLAC� dossier: C:\ProgramData\IHProtectUpDate (Adware.AgentODR)
DEPLAC� dossier: C:\ProgramData\WindowsMangerProtect (PUP.Fuyu)
DEPLAC� fichier: C:\Windows\Prefetch\BOBROWSER.EXE-F2DFFFC9.pf (PUP.BoBrowser)
DEPLAC� fichier: C:\Windows\Prefetch\BOXORE.EXE-43C373DB.pf (Adware.Boxore)
DEPLAC� fichier: C:\Windows\Prefetch\CLARAUPDATER.EXE-2E48CBCB.pf (Adware.SupTab)
DEPLAC� fichier: C:\Windows\Prefetch\GAMESDESKTOP-FRINSTALLER.TMP-8D3FE163.pf (Adware.GamesDesktop)
DEPLAC� fichier: C:\Windows\Prefetch\GAMESDESKTOP-FRINSTALLER.TMP-F7F53AEC.pf (Adware.GamesDesktop)
DEPLAC� fichier: C:\Windows\Prefetch\PREDM.TMP-F909461C.pf (Adware.Downware)
DEPLAC� fichier: C:\Windows\Prefetch\VUUPCINSTALLER.EXE-DDC4A55F.pf (PUP.VuuPC)
DEPLAC� fichier: C:\Users\Olivier\AppData\Local\Temp\ce98ac2e-20c0-4a93-86f6-bdb3e61caf55.exe [C.L.A.R.A - Dwl2] (Adware.SupTab)
DEPLAC� fichier: C:\Users\Olivier\AppData\Local\Temp\supoptsetup.exe [Super PC Tools ltd - Fix PC problems and optimize performance] (PUP.SuperPCTools)
DEPLAC� fichier*: C:\Users\Olivier\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage (PUP.StartSearch)
DEPLAC� fichier*: C:\Users\Olivier\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal (PUP.StartSearch)
DEPLAC� fichier*: C:\Users\Olivier\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage (PUP.SpecialSavings)
DEPLAC� fichier*: C:\Users\Olivier\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal (PUP.SpecialSavings)
DEPLAC� fichier: C:\Users\Olivier\AppData\Local\Temp\ClaraUpdater.exeea94b [ClaraLabs - ClaraUpdater] (Adware.SupTab)
DEPLAC� dossier: C:\Program Files (x86)\Software (Adware.Boxore)
DEPLAC� dossier: C:\Users\Olivier\AppData\Local\Software (Adware.Boxore)


---\\ Base de Registres ( Cl�s, Valeurs, Donn�es ). (56)
SUPPRIM� cl�*: HKCU\Software\WajIntEnhance [ (Not File)] (PUP.Wajam)
SUPPRIM� cl�: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [http://www.mystartsearch.com/web/?utm_source=b&utm_medium=ima&utm_campaign=install_ie&utm_content=ds[...]] [mystartsearch] (PUP.StartSearch)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [http://www.mystartsearch.com/web/?type=dspp&ts=1426596943&from=ima&uid=TOSHIBAXDT01ACA100_24G2HHVMSX[...]] [mystartsearch] (PUP.StartSearch)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [http://www.mystartsearch.com/web/?type=dspp&ts=1426596943&from=ima&uid=TOSHIBAXDT01ACA100_24G2HHVMSX[...]] [mystartsearch] (PUP.StartSearch)
SUPPRIM� valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_965DAE29956A48EA5DA6AEE53C7410D7 ["C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window] (PUP.Vosteran)
SUPPRIM� valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Super Optimizer [C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe] (PUP.SuperOptimizer)
SUPPRIM� valeur: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_317 [] (PUP.CrossRider)
SUPPRIM� valeur: [X64] HKLM\SOFTWARE\Wow6432Node\Mozilla\Firefox\Extensions\\fftoolbar2014@etech.com [C:\Users\Olivier\AppData\Roaming\Mozilla\Firefox\Profiles\hu3ys8zf.default\extensions\fftoolbar2014@etech.com] (Adware.FFToolBar)
SUPPRIM� cl�*: HKCU\SOFTWARE\SearchProtectWS [ (Not File)] (PUP.SearchProtect)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\SearchProtect [ (Not File)] (PUP.SearchProtect)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\Currentversion\Uninstall\SearchProtect [ (Not File)] (PUP.SearchProtect)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\5f81e305-0672-059d-cf13-8d01a15f2b4a [] (PUP.CrossRider)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\APN PIP [ (Not File)] (Toolbar.Agent)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\BoBrowser [ (Not File)] (PUP.BoBrowser)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\Boxore [ (Not File)] (Adware.Boxore)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\HomeTab [ (Not File)] (PUP.CertifiedToolbar)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\Linkey [ (Not File)] (PUP.LinkeySearch)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\Optimizer Pro [ (Not File)] (PUP.OptimizerPro)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\SimplyTech [ (Not File)] (PUP.SimplyTech)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\Super Optimizer [ (Not File)] (PUP.SuperOptimizer)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1084681627-2230646171-734450553-1002\Software\TNT2 [ (Not File)] (Adware.TidyNetwork)
SUPPRIM� cl�*: HKCU\Software\AppDataLow\Software\DynConIE [ (Not File)] (PUP.DynConIE)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP [ (Not File)] (Adware.IMBooster)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar [ (Not File)] (Adware.IMBooster)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey [ (Not File)] (PUP.LinkeySearch)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect [ (Not File)] (PUP.SearchProtect)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com [ (Not File)] (PUP.Vosteran)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance [ (Not File)] (PUP.WajEnhance)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com [ (Not File)] (PUP.StartSearch)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com [ (Not File)] (PUP.SpecialSavings)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.mystartsearch.com [4160 (Not File)] (PUP.StartSearch)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com [72 (Not File)] (PUP.SpecialSavings)
SUPPRIM� cl�*: HKCU\Software\Mozilla\Extends [ (Not File)] (PUP.FastStart)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} [IOutlookSecurityManager2 (Not File)] (PUP.WhiteSmoke)
SUPPRIM� cl�*: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect [ (Not File)] (PUP.Fuyu)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SoftwareUpdate.exe [ (Not File)] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork [ (Not File)] (Toolbar.AskBar)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Boxore [ (Not File)] (Adware.Boxore)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Clara [ (Not File)] (Adware.SupTab)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Conduit [ (Not File)] (Toolbar.Conduit)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP [ (Not File)] (Adware.GamesDesktop)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\IHProtect [ (Not File)] (Adware.AgentODR)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Iminent [ (Not File)] (Adware.IMBooster)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware [ (Not File)] (PUP.StartSearch)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\SupDp [ (Not File)] (PUP.SupTab)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\supTab [ (Not File)] (PUP.SupTab)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Tutorials [ (Not File)] (PUP.AgenceExclusive)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\WajIntEnhance [ (Not File)] (PUP.WajEnhance)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} [IOutlookSecurityManager2 (Not File)] (PUP.WhiteSmoke)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\GU Player [GU Player (remove only) (Not File)] (PUP.GUPlayer)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\I - Cinema [ (Not File)] (PUP.CrossRider)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP [ (Not File)] (Adware.IMBooster)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar [ (Not File)] (Adware.IMBooster)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Linkey [ (Not File)] (PUP.LinkeySearch)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com [ (Not File)] (PUP.Vosteran)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance [ (Not File)] (PUP.WajEnhance)



---\\ Bilan de la r�paration
~ R�paration r�alis�e avec succ�s.
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scann�s : 88648
~ Items trouv�s : 0
~ Items r�par�s : 101


End of clean at 19:59:49
===================
ZHPCleaner-[R]-17032015-19_59_49.txt

Publicité


Signaler le contenu de ce document

Publicité