cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.4.29.197 by Nicolas Coolman (29/04/2015)
~ Run by mifer (Administrator) (29/04/2015 21:17:31)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Netttoyer
~ Report : C:\Users\mifer\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\mifer\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 81, 64-bit (Build 9600)


---\\ Service. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ Navigateur internet. (1)
REMPLAC� Chrome URL: hxxp://www.dregol.com/?f=7&a=drg_ggbg_15_18&cd=2XzuyEtN2Y1L1QzuyBzztByE0A0FtAtAtA0EyE0EyD0A0F0BtN0D0[...] (Hijacker.Browser)


---\\ Fichier h�te. (1)
~ Le fichier h�te est l�gitime. (21)


---\\ T�che planifi�e. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ Explorateur ( Dossiers, Fichiers ). (3)
DEPLAC� fichier*: C:\Users\mifer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.speedtest.net_0.localstorage (Adware.ScriptHost)
DEPLAC� fichier*: C:\Users\mifer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.speedtest.net_0.localstorage-journal (Adware.ScriptHost)
DEPLAC� dossier: C:\Users\mifer\AppData\Roaming\Run_dregol (Hijacker.Browser)


---\\ Base de Registres ( Cl�s, Valeurs, Donn�es ). (19)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ed8e593d-1965-4e45-9d55-d56162dcde14} [browse pulse] (PUP.BrowsePulse)
SUPPRIM� cl�: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.dregol.com/results.php?f=4&q={searchTerms}&a=drg_ggbg_15_18&cd=2XzuyEtN2Y1L1QzuyBzztByE0A[...]] [Dregol] (Hijacker.Browser)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.dregol.com/results.php?f=4&q={searchTerms}&a=drg_ggbg_15_18&cd=2XzuyEtN2Y1L1QzuyBzztByE0A[...]] [Dregol] (Hijacker.Browser)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Classes\TypeLib\{02511508-4CCA-458D-AF69-3A8482103196} [browsepulseIEClientLib] (PUP.BrowsePulse)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ed8e593d-1965-4e45-9d55-d56162dcde14} [browse pulse] (PUP.BrowsePulse)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ed8e593d-1965-4e45-9d55-d56162dcde14} [] (PUP.BrowsePulse)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ed8e593d-1965-4e45-9d55-d56162dcde14} [] (PUP.BrowsePulse)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{ed8e593d-1965-4e45-9d55-d56162dcde14} [browse pulse] (PUP.BrowsePulse)
SUPPRIM� cl�: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.dregol.com/results.php?f=4&q={searchTerms}&a=drg_ggbg_15_18&cd=2XzuyEtN2Y1L1QzuyBzztByE0A0FtAtAtA0EyE0EyD0A0F0BtN0D0Tzu0StCtBtCyEtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StC0BtB0B0B0FyD0CtG0FtB0D0CtGtDzy0CtBtG0DzztAyCtGyEyEzyyE0E0EyD0A0DzyyE0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDzzyDtDyDtCyB0FtG0C0E0C0BtGyEyByBtBtG0AzytA0EtGzy0EtCzz0DyCzy0D0C0Ezz0E2QtN0A0LzuyE&cr=2111619080&ir=] (Hijacker.Browser)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.dregol.com/results.php?f=4&q={searchTerms}&a=drg_ggbg_15_18&cd=2XzuyEtN2Y1L1QzuyBzztByE0A0FtAtAtA0EyE0EyD0A0F0BtN0D0Tzu0StCtBtCyEtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StC0BtB0B0B0FyD0CtG0FtB0D0CtGtDzy0CtBtG0DzztAyCtGyEyEzyyE0E0EyD0A0DzyyE0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDzzyDtDyDtCyB0FtG0C0E0C0BtGyEyByBtBtG0AzytA0EtGzy0EtCzz0DyCzy0D0C0Ezz0E2QtN0A0LzuyE&cr=2111619080&ir=] (Hijacker.Browser)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-1741913164-3577945201-2446040519-1001\Software\Vittalia [] (PUP.Vittalia)
SUPPRIM� cl�: HKCU\Software\Vittalia [] (PUP.Vittalia)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\dregol.com [] (Hijacker.Browser)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\gameoapp.com [68] (PUP.Gameo)
SUPPRIM� cl�*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\dregol.com [] (Hijacker.Browser)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Classes\TypeLib\{02511508-4CCA-458D-AF69-3A8482103196} [browsepulseIEClientLib] (PUP.BrowsePulse)
SUPPRIM� cl�: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{02511508-4CCA-458D-AF69-3A8482103196} [browsepulseIEClientLib] (PUP.BrowsePulse)
SUPPRIM� valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\\DelTr136250 [cmd.exe /c rd /s /q "C:\Users\mifer\AppData\Roaming\Run_Dregol"] (Hijacker.Browser)
SUPPRIM� valeur: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\DelTr136250 [cmd.exe /c rd /s /q "C:\Users\mifer\AppData\Roaming\Run_Dregol"] (Hijacker.Browser)


---\\ Bilan de la r�paration
~ R�paration r�alis�e avec succ�s.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scann�s : 3188
~ Items trouv�s : 0
~ Items annul�s : 0
~ Items r�par�s : 23


End of clean at 21:17:39
===================
ZHPCleaner-[R]-29042015-21_17_39.txt
ZHPCleaner-[S]-29042015-21_16_11.txt

Publicité


Signaler le contenu de ce document

Publicité