cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.4.5.158 by Nicolas Coolman (06/04/2015)
~ Run by HP (Administrator) (06/04/2015 21:02:48)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Netttoyer
~ Report : C:\Users\HP\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\HP\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)


---\\ Service. (0)
~ Aucun �l�ment malicieux trouv�.


---\\ Navigateur internet. (3)
REMPLAC� Proxy: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride ( )
DEPLAC� fichier: C:\Users\HP\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Powersuite.lnk [Bad : C:\Program Files (x86)\Uniblue\Powersuite\powersuite.exe] (PUP.UniblueSystem)
DEPLAC� fichier: C:\Users\Public\Desktop\Powersuite.lnk [Bad : C:\Program Files (x86)\Uniblue\Powersuite\powersuite.exe] (PUP.UniblueSystem)


---\\ Fichier h�te. (1)
~ Le fichier h�te est l�gitime. (15530)


---\\ T�che planifi�e. (2)
SUPPRIM� t�che: [AutoPico Daily Restart] [C:\Program Files\KMSpico\AutoPico.exe] (PUA.KMSpico)
SUPPRIM� t�che: [powersuite_monitor] [C:\Program Files (x86)\Uniblue\Powersuite\powersuite_monitor.exe] (PUP.UniblueSystem)


---\\ Explorateur ( Dossiers, Fichiers ). (58)
DEPLAC� fichier: C:\Program Files\KMSpico\Service_KMS.exe [ - Service_KMS] (PUA.KMSpico)
DEPLAC� fichier: C:\Program Files (x86)\2e90ddad-4915-416d-b31d-03fcef53ed58\6aa2c7c1-fdc3-445c-9894-c7a9b062ea9e.dll (PUP.CrossRider)
DEPLAC� dossier: C:\Program Files (x86)\2e90ddad-4915-416d-b31d-03fcef53ed58 (PUP.CrossRider)
DEPLAC� dossier: C:\Program Files (x86)\849b61b6-9dce-4498-ae44-7cecf1b8b877 (PUP.CrossRider)
DEPLAC� fichier: C:\Program Files\KMSpico\AutoPico.exe [ - AutoPico] (PUA.KMSpico)
DEPLAC� fichier: C:\Program Files (x86)\Uniblue\Powersuite\powersuite_monitor.exe [Uniblue Systems Ltd - Uniblue Powersuite Monitor] (PUP.UniblueSystem)
DEPLAC� dossier: C:\Program Files (x86)\Enigma Software Group\SpyHunter (PUP.EnigmaSoftware)
DEPLAC� dossier: C:\Program Files (x86)\Uniblue\Powersuite (PUP.UniblueSystem)
DEPLAC� dossier: C:\Program Files (x86)\Enigma Software Group (PUP.EnigmaSoftware)
DEPLAC� dossier: C:\Program Files (x86)\Uniblue (PUP.UniblueSystem)
DEPLAC� fichier: C:\Program Files\KMSpico\DevComponents.DotNetBar2.dll [DevComponents.com - DevComponents.DotNetBar] (PUA.KMSpico)
DEPLAC� fichier: C:\Program Files\KMSpico\KMSELDI.exe [ - KMS GUI ELDI] (PUA.KMSpico)
DEPLAC� fichier: C:\Program Files\KMSpico\unins000.dat (PUA.KMSpico)
DEPLAC� fichier: C:\Program Files\KMSpico\unins000.exe [ - Setup/Uninstall] (PUA.KMSpico)
DEPLAC� fichier: C:\Program Files\KMSpico\UninsHs.exe [Han-soft - Uninstall for InnoSetup by Han-soft] (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\cert (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\driver (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\icons (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\logs (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\scripts (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\sounds (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\x64 (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico\x86 (PUA.KMSpico)
DEPLAC� dossier: C:\Program Files\KMSpico (PUA.KMSpico)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\2544e9905b19ed48c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\37775abd6f6704a2c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\4775d99c57b1799ec074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\954accd1ef18255bc074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\ad5e6328e91d5a25c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\c5dda88116364677c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\cd5b15e575e1c3d0c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\d1b823d8a4cc4149c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\d38e8734560118a9c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\4048381586839420787\d6ae24e4beaa0e72c074ac9bffe4f8e4.ini (PUP.CrossRider)
DEPLAC� fichier: C:\ProgramData\Baidu Security\Duplicaterecord.js (Adware.BDPlugin)
DEPLAC� fichier: C:\ProgramData\Microsoft Toolkit\Settings.xml (Trojan.AutoKMS)
DEPLAC� dossier: C:\ProgramData\Baidu Security\RpData (Adware.BDPlugin)
DEPLAC� dossier: C:\ProgramData\4048381586839420787 (PUP.CrossRider)
DEPLAC� dossier: C:\ProgramData\Baidu Security (Adware.BDPlugin)
DEPLAC� dossier: C:\ProgramData\Microsoft Toolkit (Trojan.AutoKMS)
DEPLAC� dossier: C:\Users\Public\Documents\ShopperPro\JsDriver (PUP.ShopperPro)
DEPLAC� dossier: C:\Users\Public\Documents\ShopperPro (PUP.ShopperPro)
DEPLAC� fichier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\AutoPico.lnk (PUA.KMSpico)
DEPLAC� fichier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\KMSpico.lnk (PUA.KMSpico)
DEPLAC� fichier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\Log KMSpico.lnk (PUA.KMSpico)
DEPLAC� fichier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\Uninstall KMSpico.lnk (PUA.KMSpico)
DEPLAC� dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue\Powersuite (PUP.UniblueSystem)
DEPLAC� dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico (PUA.KMSpico)
DEPLAC� dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue (PUP.UniblueSystem)
DEPLAC� dossier: C:\Users\HP\AppData\Roaming\Uniblue\Powersuite (PUP.UniblueSystem)
DEPLAC� dossier: C:\Users\HP\AppData\Roaming\Enigma Software Group (PUP.EnigmaSoftware)
DEPLAC� dossier: C:\Users\HP\AppData\Roaming\Uniblue (PUP.UniblueSystem)
DEPLAC� dossier: C:\Users\HP\AppData\Local\CrashRpt\UnsentCrashReports (LOG.CrashReports)
DEPLAC� dossier: C:\Users\HP\AppData\Local\AVG Web TuneUp (Toolbar.AVGSafeGuard)
DEPLAC� dossier: C:\Users\HP\AppData\Local\CrashRpt (LOG.CrashReports)
DEPLAC� fichier: C:\spyhunter.log (Crapware.SpyHunter)
DEPLAC� fichier: C:\Windows\System32\roboot64.exe [solvusoft - WinThruster] (PUP.Systweak)
DEPLAC� fichier: C:\Users\HP\AppData\Roaming\appdataFr3.bin (PUP.Optional)


---\\ Base de Registres ( Cl�s, Valeurs, Donn�es ). (13)
SUPPRIM� cl�^: HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI [C:\Program Files\KMSpico\Service_KMS.exe (Not File)] (PUA.KMSpico)
SUPPRIM� cl�*: HKCU\Software\Ge-Force-nv-ie [] (Heuristic.CrossRider)
SUPPRIM� cl�*: HKCU\Software\Sense-nv-ie [] (Heuristic.CrossRider)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Sense-nv-ie [] (Heuristic.CrossRider)
SUPPRIM� donn�e: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations\\Application [Bad : http://www.fileextensionpro.com/redir.aspx?s=obrdcbv1_0_0_0_0,5ffd930c-dcba-4bd8-a98b-663d35f75a9c,&LangID=%04x&Ext=%s] (Hijacker.Association)
SUPPRIM� cl�*: HKEY_USERS\S-1-5-21-2015983719-3380230615-3773191670-1000\Software\AVG Web TuneUp [] (Toolbar.AVGSafeGuard)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico_is1 [KMSpico v9.1.3] (PUA.KMSpico)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\18.4.0 (Not File)] (Toolbar.AVGSearch)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp [] (Toolbar.AVGSafeGuard)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\EnigmaSoftwareGroup [] (PUP.EnigmaSoftware)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Uniblue [] (PUP.UniblueSystem)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{793A260C-CDBF-499C-ABBA-B51E8E076867}_is1 [Uniblue Systems Limited] (PUP.UniblueSystem)
SUPPRIM� cl�*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\18.4.0 (Not File)] (Toolbar.AVGSearch)



---\\ Bilan de la r�paration
~ R�paration r�alis�e avec succ�s.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)
~ Le syst�me a �t� red�marr�.


---\\ Statistiques
~ Items scann�s : 99125
~ Items trouv�s : 0
~ Items r�par�s : 77


End of clean at 21:08:34
===================
ZHPCleaner-[R]-06042015-21_08_34.txt

Publicité


Signaler le contenu de ce document

Publicité