cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.8.23.330 by Nicolas Coolman (2015/08/23)
~ Run by Ambroise (Administrator) (23/08/2015 16:49:26)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Documents and Settings\Ambroise\Bureau\ZHPCleaner.txt
~ Quarantine : C:\Documents and Settings\Ambroise\Application Data\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)


---\\ Service. (1)
WINSOCK [Protocol_Catalog9\Catalog_Entries]: Remise à zéro du socket qui gère la couche TCP/IP (Hijacker.Winsock)


---\\ Navigateur internet. (16)
SUPPRIMÉ: [nfc2ume2.default] - user_pref("browser.search.order.1", "Ask.com"); =>Toolbar.Ask
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var1", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var10", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var2", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var3", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var4", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var5", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var6", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var7", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var8", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.Var9", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.cache.tbs_include_xml_006938", "8/15/6/3/113"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.firstlaunch", "0"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.guid", "%7B5C99A684-D085-47C6-8454-82D8E4DD3DDB%7D"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6.userId", "%12"); =>PUP.Optional.IMBooster
SUPPRIMÉ: [nfc2ume2.default] - user_pref("id_imbooster4web_v6_installed_version", "1.0.1018.0"); =>PUP.Optional.IMBooster


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (20)


---\\ Tâche planifiée. (1)
SUPPRIMÉ tâche: [SoftwareUpdateTaskMachineUA] [C:\WINDOWS\Tasks\SoftwareUpdateTaskMachineUA.job (Not File) ] =>PUP.Optional.Boxore


---\\ Explorateur ( Dossiers, Fichiers ). (20)
DEPLACÉ fichier: C:\WINDOWS\Tasks\SoftwareUpdateTaskMachineUA.job =>PUP.Optional.Boxore
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew038ddc.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew1be6ce.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew1e2e87.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew383fe3.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew52db50.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew5abb60.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew682bfb.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew6dd31b.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew8f9473.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew9096c2.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonew9488c3.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonewb150c4.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonewbd67f6.exe =>PUP.Optional.CacaoWeb
DEPLACÉ fichier: C:\Documents and Settings\Ambroise\Local Settings\Temp\cacaonewd85097.exe =>PUP.Optional.CacaoWeb
DEPLACÉ dossier: C:\Documents and Settings\Ambroise\Application Data\cacaoweb =>PUP.Optional.CacaoWeb
DEPLACÉ dossier: C:\Documents and Settings\Ambroise\Application Data\Toolbar4 =>PUP.Optional.SocialSkinz
DEPLACÉ dossier: C:\Documents and Settings\Ambroise\Local Settings\Application Data\Temp\Iminent =>PUP.Optional.IMBooster
DEPLACÉ dossier: C:\Program Files\Software =>PUP.Optional.Boxore
DEPLACÉ dossier: C:\Documents and Settings\Ambroise\Local Settings\Application Data\Software =>PUP.Optional.Boxore


---\\ Base de Registres ( Clés, Valeurs, Données ). (37)
REMPLACÉ : HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 [C:\Program Files\Orange\Antivirus Firewall\FSPS\program\fslsp.dll] (Hijacker.Winsock)
REMPLACÉ : HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 [C:\Program Files\Orange\Antivirus Firewall\FSPS\program\fslsp.dll] (Hijacker.Winsock)
REMPLACÉ : HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 [C:\Program Files\Orange\Antivirus Firewall\FSPS\program\fslsp.dll] (Hijacker.Winsock)
REMPLACÉ : HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 [C:\Program Files\Orange\Antivirus Firewall\FSPS\program\fslsp.dll] (Hijacker.Winsock)
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\supdate ["C:\Program Files\Software\Update\SoftwareUpdate.exe" /svc (Not File)] =>PUP.Optional.SoftwareUpdater
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}\6.e [Iminent.Business] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} [Iminent.Business] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Boxore Client [C:\Program Files\Boxore\BoxoreClient\boxore.exe (Not File)] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\cacaoweb ["C:\Program Files\cacaoweb\cacaoweb.exe" -noplayer (Not File)] =>PUP.Optional.CacaoWeb
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2052111302-413027322-839522115-1004\Software\cacaoweb [C:\Program Files\cacaoweb\cacaoweb.exe (Not File)] =>PUP.Optional.CacaoWeb
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2052111302-413027322-839522115-1004\Software\Softonic [] =>PUP.Optional.Softonic
SUPPRIMÉ clé: HKCU\Software\cacaoweb [C:\Program Files\cacaoweb\cacaoweb.exe (Not File)] =>PUP.Optional.CacaoWeb
SUPPRIMÉ clé: HKCU\Software\Softonic [] =>PUP.Optional.Softonic
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0} [IescrtHlpr] =>PUP.Optional.Facemoods
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2} [IescrtBtn] =>PUP.Optional.Facemoods
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} [ITinyfyingArgs] =>PUP.Optional.RewardsArcade
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} [_TinyUrlArgs] =>PUP.Optional.RewardsArcade
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} [_RawDataArgs] =>PUP.Optional.RewardsArcade
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} [_DownloadArgs] =>PUP.Optional.RewardsArcade
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} [_LinkToPromoteArgs] =>PUP.Optional.RewardsArcade
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} [_ViralLinkArgs] =>PUP.Optional.RewardsArcade
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SearchAssistantOC.SearchAssistantOC [SearchAssistantOC] =>PUP.Optional.SearchAssist
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SearchAssistantOC.SearchAssistantOC.1 [SearchAssistantOC] =>PUP.Optional.SearchAssist
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Software.OneClickCtrl.8 [Software Update Plugin] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass [Software Update Core Class] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1 [Software Update Core Class] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine [SoftwareUpdate.OnDemandCOMClass] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0 [SoftwareUpdate.OnDemandCOMClass] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SrchUI.SearchAssistant [Search Assistant Control] =>PUP.Optional.SearchAssist
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SrchUI.SearchAssistant.1 [Search Assistant Control] =>PUP.Optional.SearchAssist
SUPPRIMÉ clé*: HKLM\Software\Classes\Installer\Products\64A6E60055D801F4BB8AC269354B72B8 [Software Update Helper] =>PUP.Optional.Boxore
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{2E71FD0F-AAB1-42c0-9146-6D2C4EDCF07D} [SearchAssistantOC] =>PUP.Optional.SearchAssist
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{B45FF030-4447-11D2-85DE-00C04FA35C89} [SearchAssistantOC] =>PUP.Optional.SearchAssist
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\facemoods [] =>PUP.Optional.Facemoods
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} [C:\Program Files\IMinent Toolbar (Not File)] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 [C:\Program Files\Iminent\inst\Bootstrapper\Bootstrapper.exe (Not File)] =>PUP.Optional.IMBooster


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)
~ Le système a été redémarré.


---\\ Statistiques
~ Items scannés : 2912
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 76


~ End of clean in 0 minutes
===================
ZHPCleaner-[R]-23082015-16_50_14.txt
ZHPCleaner-[S]-23082015-16_48_55.txt

Publicité


Signaler le contenu de ce document

Publicité