cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.4.28.195 by Nicolas Coolman (28/04/2015)
~ Run by Pc (Administrator) (28/04/2015 19:01:12)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Netttoyer
~ Report : C:\Users\Pc\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Pc\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows VISTA, 32-bit Service Pack 2 (Build 6002)


---\\ Service. (4)
ARRET� : Service Mgr browsepulse (Heuristic.browsepulse)
ARRET� : Update Mgr browsepulse (Heuristic.browsepulse)
SUPPRIM� : Service Mgr browsepulse (PUP.BrowsePulse)
SUPPRIM� : Update Mgr browsepulse (PUP.BrowsePulse)


---\\ Navigateur internet. (26)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.AL", 2); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.aflt", "ast_ir_14_41_ch"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.appId", "{9CB2CD61-FFA0-406C-9D2D-8FDE6F4A4D8A}"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.cd", "2XzuyEtN2Y1L1Qzu0FtDyB0DyCzzyD0F0CtAyCyCtAtAyDzztN0D0Tzu0StCt[...] (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.cr", "1834510927"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.data.1475e97c0146bfb1c490339546d9e72ee", "1"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.data.a.aliveDate", "20141027"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.data.a.instlDate", "20141027"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.data.ccfc1eb13092ea34473c169417eefd00", "1"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.dfltLng", ""); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.dfltSrch", true); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.dnsErr", true); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.excTlbr", false); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.general.guid", "dbc4e56f-bbd1-4bcb-b837-4d0bbb499fb7"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.hmpg", true); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.id", "F07D685FC3663358"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.instlDay", "16355"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.instlRef", "142905_e"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.prdct", "astrmndasr"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.tlbrId", ""); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.vrsn", ""); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr.vrsni", ""); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr_i.newTab", true); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr_i.smplGrp", "none"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.astrmndasr_i.vrsnTs", "15:58:6"); (PUP.Astromenda)
SUPPRIM�: [ntgggxw4.default] - user_pref("extensions.browsepulse.cg", "97cc909b-6133-4951-959a-bee9a5bf4f3a"); (PUP.BrowsePulse)


---\\ Fichier h�te. (1)
~ Le fichier h�te est l�gitime. (20)


---\\ T�che planifi�e. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ Explorateur ( Dossiers, Fichiers ). (34)
DEPLAC� fichier: C:\Windows\Installer\18dca.msi [APN, LLC - ] (Adware.Bandoo)
DEPLAC� fichier: C:\Windows\Installer\2f64ef.msi [Tuguu SL - ] (PUP.VAFPlayer)
DEPLAC� fichier: C:\Users\Pc\Downloads\speedupmypc_113047_.exe [Uniblue Systems Ltd - SpeedUpMyPC Setup] (PUP.SpeedUpMyPC)
DEPLAC� fichier: C:\Users\Pc\Downloads\speedupmypc_188294_.exe [Uniblue Systems Ltd - SpeedUpMyPC Setup] (PUP.SpeedUpMyPC)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\supoptsetup.exe [Super PC Tools ltd - Fix PC problems and optimize performance] (PUP.SuperPCTools)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.plimus.com_0.localstorage (PUP.Plimus)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.plimus.com_0.localstorage-journal (PUP.Plimus)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_gameoapp.com_0.localstorage (PUP.Gameo)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_gameoapp.com_0.localstorage-journal (PUP.Gameo)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_startertv.fr_0.localstorage (Adware.StarterTV)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_startertv.fr_0.localstorage-journal (Adware.StarterTV)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.performersoft.com_0.localstorage (PUP.PerformerSoft)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.performersoft.com_0.localstorage-journal (PUP.PerformerSoft)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.systweak.com_0.localstorage (PUP.Systweak)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.systweak.com_0.localstorage-journal (PUP.Systweak)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.uniblue.com_0.localstorage (PUP.UniblueSystem)
DEPLAC� fichier*: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.uniblue.com_0.localstorage-journal (PUP.UniblueSystem)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\Ask Toolbar.ico (Toolbar.AskTBar)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\browse pulse.ico (PUP.BrowsePulse)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\Cool Smiley Bar for Facebook.ico (Adware.SmileyBar)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\Download & Install Packages.ico (Adware.InstallCore)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\Gameo.ico (PUP.Gameo)
DEPLAC� fichier: C:\Users\Pc\AppData\Local\Temp\Super Optimizer v3.2.ico (PUP.SuperOptimizer)
DEPLAC� fichier: C:\Windows\Installer\{4F524A2D-5637-4300-76A7-A758B70C1101}\ToolbarIcon.exe (Toolbar.AskTBar)
DEPLAC� dossier: C:\Users\Pc\AppData\Roaming\0D1F2W1G1I1F1T1QyE2W1L1G1Q1F2W1B (Adware.InstallCore)
DEPLAC� dossier: C:\Users\Pc\AppData\Roaming\1H1Q1V0B1L1G1N1V0M1P1Q1L1T0D1P1E2Z (Adware.InstallCore)
DEPLAC� dossier: C:\Program Files\browse pulse (PUP.BrowsePulse)
DEPLAC� dossier: C:\Program Files\Cool Smiley Bar for Facebook (Adware.SmileyBar)
DEPLAC� dossier: C:\Program Files\Enigma Software Group (PUP.EnigmaSoftware)
DEPLAC� dossier: C:\ProgramData\15066143569322538764 (Adware.CrossRider)


---\\ Base de Registres ( Cl�s, Valeurs, Donn�es ). (26)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\TypeLib\{02511508-4CCA-458D-AF69-3A8482103196} [browsepulseIEClientLib] (PUP.BrowsePulse)
SUPPRIM� cl�*: HKLM\SOFTWARE\browsepulse [] (Heuristic.browsepulse)
SUPPRIM� cl�*: HKLM\SYSTEM\CurrentControlSet\Services\Service Mgr browsepulse ["C:\ProgramData\5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15\plugincontainer.exe" (Not File)] (Heuristic.browsepulse)
SUPPRIM� cl�*: HKLM\SYSTEM\CurrentControlSet\Services\Update Mgr browsepulse ["C:\Program Files\Common Files\5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15\Updater.exe" (Not File)] (Heuristic.browsepulse)
SUPPRIM� cl�: HKLM\SYSTEM\CurrentControlSet\Services\Service Mgr browsepulse ["C:\ProgramData\5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15\plugincontainer.exe" (Not File)] (PUP.BrowsePulse)
SUPPRIM� cl�: HKLM\SYSTEM\CurrentControlSet\Services\Update Mgr browsepulse ["C:\Program Files\Common Files\5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15\Updater.exe" (Not File)] (PUP.BrowsePulse)
SUPPRIM� cl�: HKLM\SOFTWARE\Classes\TypeLib\{02511508-4CCA-458D-AF69-3A8482103196} [browsepulseIEClientLib] (PUP.BrowsePulse)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\AVSAudioEditor5.EditorChannels [] (PUP.Torch)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\AVSAudioEditor5.EditorChannels.1 [] (PUP.Torch)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\Cool Smiley Bar for Facebook.ScriptHostObject [] (Adware.SmileyBar)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\Cool Smiley Bar for Facebook.ScriptHostObject.1 [] (Adware.SmileyBar)
SUPPRIM� cl�*: HKLM\Software\Classes\Installer\Products\D2A425F473650034677A7A857BC01110 [Ask Toolbar] (Toolbar.AskTBar)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\CLSID\{5CABA49F-1222-46EF-8EA3-A43834D109C9} [SaveImage Class] (Adware.Multiplug)
SUPPRIM� cl�*: HKLM\SOFTWARE\Classes\CLSID\{94991B5A-F1C0-4d31-9744-EA7E2F2A3CCA} [EditorChannels Class] (PUP.Torch)
SUPPRIM� cl�: HKLM\SOFTWARE\browsepulse [] (PUP.BrowsePulse)
SUPPRIM� cl�*: HKLM\SOFTWARE\EnigmaSoftwareGroup [] (PUP.EnigmaSoftware)
SUPPRIM� cl�*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4F524A2D-5637-4300-76A7-A758B70C1101} [APN, LLC] (Adware.Bandoo)
SUPPRIM� cl�*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAAC247F-417F-4792-B02E-3C5332635380} [C:\Program Files\specialsavings (Not File)] (Adware.GamePlayLabs)
SUPPRIM� cl�*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\002311958A1B56AF3E6B149BEB47B734 [C:\Program Files\Tuguu SL\VAFPlayer\languages\Hungarian.gif (Not File)] (PUP.VAFPlayer)
SUPPRIM� cl�*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\020F274D2530A2E070E1DD90C81DE803 [C:\Program Files\Tuguu SL\VAFPlayer\languages\Portuguese.gif (Not File)] (PUP.VAFPlayer)
SUPPRIM� cl�: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4F524A2D-5637-4300-76A7-A758B70C1101} [Ask Toolbar] (Toolbar.AskTBar)
SUPPRIM� cl�: HKLM\Software\Classes\Installer\Products\D2A425F473650034677A7A857BC01110 [Ask Toolbar] (Toolbar.AskTBar)
SUPPRIM� cl�*: HKLM\Software\Classes\Installer\Features\D2A425F473650034677A7A857BC01110 [] (Toolbar.AskTBar)
SUPPRIM� cl�: HKLM\SOFTWARE\Classes\CLSID\{94991B5A-F1C0-4d31-9744-EA7E2F2A3CCA} [EditorChannels Class] (PUP.Torch)
SUPPRIM� cl�: HKLM\SOFTWARE\Classes\CLSID\{94991B5A-F1C0-4d31-9744-EA7E2F2A3CCA}\InprocServer32 [C:\Program Files\Common Files\AVSMedia\ActiveX\AVSAudioEditor5.dll] (PUP.Torch)
SUPPRIM� valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\LanguageShortcut ["C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"] ()


---\\ Bilan de la r�paration
~ R�paration r�alis�e avec succ�s.
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scann�s : 2949
~ Items trouv�s : 0
~ Items annul�s : 0
~ Items r�par�s : 90


End of clean at 19:01:57
===================
ZHPCleaner-[R]-28042015-19_01_57.txt
ZHPCleaner-[S]-28042015-19_00_41.txt

Publicité


Signaler le contenu de ce document

Publicité