cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.8.1.312 by Nicolas Coolman (2015/08/1)
~ Run by Evanio N Mariano (Administrator) (03/08/2015 21:16:57)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Reparo
~ Report : C:\Users\Evanio\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Evanio\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 8.1 Single Language, 64-bit (Build 9600)


---\\ Serviços (1)
SUPRIMIDO : wsfd_vw_1_10_0_20 =>PUP.Optional.Gen


---\\ Navegadores de Internet (2)
SUBSTITUIDO IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Default_Search_URL [hxxp://www.istartsurf.com/web/?type=ds&ts=1436926343&z=261ba1af1b7391cdbbac917g5[...]] =>PUP.Optional.IsStart
SUBSTITUIDO IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Search Page [hxxp://www.istartsurf.com/web/?type=ds&ts=1436926343&z=261ba1af1b7391cdbbac917g5[...]] =>PUP.Optional.IsStart


---\\ Arquivo hosts (1)
~ O arquivo hosts é legítimo (20)


---\\ Tarefas automáticas agendadas. (2)
SUPRIMIDO tarefas: [globalUpdateUpdateTaskMachineCore] [C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job (Not File) ] =>PUP.Optional.GlobalUpdate
SUPRIMIDO tarefas: [globalUpdateUpdateTaskMachineUA] [C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job (Not File) ] =>PUP.Optional.GlobalUpdate


---\\ Explorer ( Arquivos, Pastas) (26)
MOVIDO pasta: C:\Users\Evanio\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iLivid.lnk [Bad : C:\Users\Evanio\AppData\Local\iLivid\iLivid.exe] =>PUP.Optional.Bandoo
MOVIDO pasta: C:\Users\Evanio\AppData\Local\DF0604BD-97D1-47C4-AAB2-623E4D30B9D2\DF0604BD-97D1-47C4-AAB2-623E4D30B9D2.exe =>Adware¨Pirrit
MOVIDO pasta: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate
MOVIDO pasta: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate
MOVIDO pasta: C:\Windows\Prefetch\3D BUBBLESOUND.EXE-0711FD62.pf =>PUP.Optional.BubbleSound
MOVIDO pasta: C:\Windows\Prefetch\BOBROWSER.EXE-F1D73566.pf =>PUP.Optional.BoBrowser
MOVIDO pasta: C:\Windows\Prefetch\CROSSBROWSE.EXE-3A672F00.pf =>PUP.Optional.CrossBrowse
MOVIDO pasta: C:\Windows\Prefetch\PACKAGE_BOBROWSER_INSTALLER_M-6A90D3AF.pf =>PUP.Optional.BoBrowser
MOVIDO pasta: C:\Windows\Prefetch\PACKAGE_BUBBLESOUND_INSTALLER-C5D52826.pf =>PUP.Optional.BubbleSound
MOVIDO pasta: C:\Windows\Prefetch\PACKAGE_PCROSSBROWSER_INSTALL-2EF30761.pf =>PUP.Optional.CrossBrowser
MOVIDO arquivo: C:\Users\Evanio\AppData\Local\DF0604BD-97D1-47C4-AAB2-623E4D30B9D2 =>Adware¨Pirrit
MOVIDO arquivo: C:\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
MOVIDO arquivo: C:\ProgramData\17423361420062902849 =>PUP.Optional.CrossRider
MOVIDO arquivo: C:\ProgramData\4562091c00007a66 =>PUP.Optional.CrossRider
MOVIDO arquivo: C:\ProgramData\Browser =>PUP.Optional.SpeedBrowser
MOVIDO arquivo: C:\ProgramData\f1cc36e60c184a41 =>PUP.Optional.CrossRider
MOVIDO arquivo: C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
MOVIDO arquivo: C:\Users\Evanio\Documents\Optimizer Pro =>PUP.Optional.OptimizerPro
MOVIDO arquivo: C:\Users\Evanio\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
MOVIDO arquivo: C:\Users\Evanio\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
MOVIDO arquivo: C:\Users\Estela\AppData\Roaming\DSite =>PUP.Optional.SimpleSearches
MOVIDO arquivo: C:\Users\Estela\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
MOVIDO arquivo: C:\Users\RachãoPraiaClube\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
MOVIDO arquivo: C:\Users\Rachão-Rachinha\AppData\Roaming\PriceMeterUpdater =>PUP.Optional.PriceMeter
MOVIDO arquivo: C:\Users\Rachão-Rachinha\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
MOVIDO arquivo: C:\Users\Rachão-Rachinha\AppData\Local\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter


---\\ Registro ( Chaves, Valores, Dados ) (61)
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&fr[...]] [Bing] (PUP.Optional.IsStart)
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&fr[...]] [e] (PUP.Optional.IsStart)
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&fr[...]] [] (PUP.Optional.IsStart)
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{747D42F5-1D2D-4C8B-A22A-A439A35CF639} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&fr[...]] [] (PUP.Optional.IsStart)
SUBSTITUIDO dados: HKLM\...\IEXPLORE.EXE\Shell\open\Command\\C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1436926102&z=cb58fa798f86a6c12aacd30g9zecbqeteoeq8eebde&from=smt&uid=ST1000LM024XHN-M101MBB_S2VMJ5DC801054801054 (PUP.Optional.IsStart)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 [globalUpdate] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 [globalUpdate] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&from=smt&uid=ST1000LM024XHN-M101MBB_S2VMJ5DC801054801054&ts=1436926134&type=default&q={searchTerms}] =>PUP.Optional.IsStart
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&from=smt&uid=ST1000LM024XHN-M101MBB_S2VMJ5DC801054801054&ts=1436926134&type=default&q={searchTerms}] =>PUP.Optional.IsStart
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&from=smt&uid=ST1000LM024XHN-M101MBB_S2VMJ5DC801054801054&ts=1436926134&type=default&q={searchTerms}] =>PUP.Optional.IsStart
SUPRIMIDO chave: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{747D42F5-1D2D-4C8B-A22A-A439A35CF639} [http://www.istartsurf.com/web/?utm_source=b&utm_medium=smt&utm_campaign=install_ie&utm_content=ds&from=smt&uid=ST1000LM024XHN-M101MBB_S2VMJ5DC801054801054&ts=1436926134&type=default&q={searchTerms}] =>PUP.Optional.IsStart
SUPRIMIDO chave*: HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate [C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe (Not File)] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem [C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe (Not File)] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: HKCU\Software\BrowserV14.07-nv [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\I - Cinema-nv [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\BrowserV14.07-nv-ie [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\I - Cinema-nv-ie [] =>PUP.Optional.CrossRider
SUPRIMIDO chave: [X64] HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate [C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe (Not File)] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave: [X64] HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem [C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe (Not File)] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: [X64] HKLM\SYSTEM\CurrentControlSet\Services\wsfd_vw_1_10_0_20 [C:\WINDOWS\System32\drivers\wsfd_vw_1_10_0_20.sys (Not File)] =>PUP.Optional.Gen
SUPRIMIDO chave*: HKEY_USERS\S-1-5-21-122634110-2796016627-362079612-1001\Software\Conduit [] =>PUP.Optional.Conduit
SUPRIMIDO chave*: HKCU\Software\ArenaHD [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\BoBrowser [] =>PUP.Optional.BoBrowser
SUPRIMIDO chave*: HKCU\Software\BrowserV14.07 [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\Crossbrowse [] =>PUP.Optional.CrossBrowse
SUPRIMIDO chave*: HKCU\Software\CrossBrowser [] =>PUP.Optional.CrossBrowser
SUPRIMIDO chave*: HKCU\Software\gamesdesktop [] =>PUP.Optional.GamesDesktop
SUPRIMIDO chave*: HKCU\Software\globalUpdate [] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: HKCU\Software\HighDefAction [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\I - Cinema [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\InstalledBrowserExtensions [] =>PUP.Optional.BrowserExtensions
SUPRIMIDO chave*: HKCU\Software\YorkNewCin [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\AppDataLow\Software\Crossrider [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: HKCU\Software\AppDataLow\Software\DynConIE [] =>PUP.Optional.DynConIE
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Classes\Applications\iLividSetup-r905-n-bi.exe [] =>PUP.Optional.Bandoo
SUPRIMIDO chave*: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect [] =>PUP.Optional.Fuyu
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\ArenaHD [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\HighDefAction [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\YorkNewCin [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe [] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\ArenaHD [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Clara [] =>PUP.Optional.SupTab
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Crossbrowse [] =>PUP.Optional.CrossBrowse
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\GlobalUpdate [] =>PUP.Optional.GlobalUpdate
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\HighDefAction [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\IHProtect [] =>PUP.Optional.AgentODR
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware [] =>PUP.Optional.IsStart
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\SupDp [] =>PUP.Optional.SupTab
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\supTab [] =>PUP.Optional.SupTab
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect [] =>PUP.Optional.Fuyu
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Tutorials [] =>PUP.Optional.AgenceExclusive
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\WordShark_1.10.0.20 [] =>PUP.Optional.WordShark
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\YorkNewCin [] =>PUP.Optional.CrossRider
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} [] =>PUP.Optional.Graftor
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ScanTack_RASAPI32 [] =>PUP.Optional.Sambreel
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ScanTack_RASMANCS [] =>PUP.Optional.Sambreel
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateScanTack_RASAPI32 [] =>PUP.Optional.Sambreel
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateScanTack_RASMANCS [] =>PUP.Optional.Sambreel
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSharkAutoUpdateClient_RASAPI32 [] =>PUP.Optional.WordShark
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSharkAutoUpdateClient_RASMANCS [] =>PUP.Optional.WordShark
SUPRIMIDO valor: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\3D BubbleSound ["C:\Program Files\BubbleSound\3D BubbleSound.exe"] =>PUP.Optional.BubbleSound


---\\ Resultado de reparação
Reparação efectuada com sucesso
~ Este navegador está faltando ! (Mozilla Firefox)
~ Este navegador está faltando ! (Opera Software)


---\\ Estatísticas
~ Items scan : 727
~ Items encontrado : 0
~ items cancelados : 0
~ Items réparo : 94


End of clean in 1 minutes
===================
ZHPCleaner-[R]-03082015-21_18_14.txt
ZHPCleaner-[S]-01082015-11_55_50.txt
ZHPCleaner-[S]-03082015-21_15_30.txt

Publicité


Signaler le contenu de ce document

Publicité