cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.9.24.356 by Nicolas Coolman (2015/09/24)
~ Run by sghed138551 (Administrator) (20/10/2015 21:32:37)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Users\sghed138551\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\sghed138551\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 8.1 Pro, 64-bit (Build 9600)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (29)
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.irmysearch.aflt", "dstrmsd"); =>PUP.Optional.MyWebSearch
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0AyCtCyBtAtC0CtB0AtCzzzytByBtCtCtN0D0Tzu0SyCz[...] =>PUP.Optional.MyWebSearch
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.irmysearch.cr", "1174804075"); =>PUP.Optional.MyWebSearch
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.irmysearch.instlRef", ""); =>PUP.Optional.MyWebSearch
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.aflt", "dstrmsd"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1Qzu0AyCtCyBtAtC0CtB0AtCzzzytByBtCtCtN0D0Tzu0Sy[...] =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.cr", "1174804075"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.dfltLng", ""); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.dfltSrch", true); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.dnsErr", true); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.excTlbr", false); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.hmpg", true); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=dstrmsd&cd=2XzuyE[...] =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.id", "A61731C2A1892711"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.instlDay", "16025"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.instlRef", ""); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=dstrmsd&cd=2Xzu[...] =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.prdct", "mysearchdial"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.prtnrId", "mysearchdial"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.tlbrId", "base"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=dstrmsd&cd=2X[...] =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.vrsn", "1.8.21.0"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial.vrsni", "1.8.21.0"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial_i.hmpg", true); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial_i.newTab", false); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial_i.smplGrp", "none"); =>PUP.Optional.MySearchDial
SUPPRIMÉ: [c0l7fy71.default] - user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.09:54:2"); =>PUP.Optional.MySearchDial


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (17)
DEPLACÉ fichier: C:\Users\sghed138551\AppData\Roaming\Mozilla\Firefox\Profiles\c0l7fy71.default\searchplugins\Mysearchdial.xml =>PUP.Optional.MySearchDial
DEPLACÉ fichier: C:\Users\sghed138551\AppData\Roaming\Mozilla\Firefox\Profiles\c0l7fy71.default\searchplugins\WebSearch.xml =>PUP.Optional.SimpleSearches
DEPLACÉ fichier: C:\END =>PUP.Optional.Conduit
DEPLACÉ fichier: C:\WINDOWS\System32\roboot64.exe [Systweak Inc., (www.systweak.com) - Regclean Pro] =>PUP.Optional.Systweak
DEPLACÉ dossier: C:\Users\sghed138551\AppData\Roaming\mysearchdial =>Heuristic.InstallCore
DEPLACÉ dossier: C:\Program Files (x86)\bestadblocker =>PUP.Optional.Adblocker
DEPLACÉ dossier: C:\Program Files (x86)\BuzzSearch =>PUP.Optional.BuzzSearch
DEPLACÉ dossier: C:\Program Files (x86)\Mysearchdial =>PUP.Optional.MySearchDial
DEPLACÉ dossier: C:\Program Files (x86)\PriceMinus =>PUP.Optional.Multiplug
DEPLACÉ dossier: C:\Program Files (x86)\PrriucaeMinus =>PUP.Optional.Multiplug
DEPLACÉ dossier: C:\Program Files (x86)\SearchProtect =>PUP.Optional.SearchProtect
DEPLACÉ dossier: C:\ProgramData\8074714752537064459 =>PUP.Optional.CrossRider
DEPLACÉ dossier: C:\Users\sghed138551\AppData\Roaming\Settings Manager =>PUP.Optional.SettingsManager
DEPLACÉ dossier: C:\Users\sghed138551\AppData\Roaming\Systweak =>PUP.Optional.Systweak
DEPLACÉ dossier: C:\Users\sghed138551\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup =>PUP.Optional.MyPCBackup
DEPLACÉ dossier: C:\Users\sghed138551\AppData\LocalLow\mysearchdial =>PUP.Optional.MySearchDial
DEPLACÉ dossier: C:\Users\sghed138551\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect


---\\ Base de Registres ( Clés, Valeurs, Données ). (52)
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}\1.0 [escortApp 1.0 Type Library] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} [escortApp 1.0 Type Library] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\escortApp.DLL\ [] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} [escortApp] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1834913581-721874356-3486338912-27259\Software\InstallCore [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1834913581-721874356-3486338912-27259\Software\mysearchdial [] =>PUP.Optional.Hotbar
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1834913581-721874356-3486338912-27259\Software\mysearchdial.com [] =>PUP.Optional.Hotbar
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1834913581-721874356-3486338912-27259\Software\Softonic [] =>PUP.Optional.Softonic
SUPPRIMÉ clé: HKCU\Software\InstallCore [] =>Adware.InstallCore
SUPPRIMÉ clé: HKCU\Software\mysearchdial [] =>PUP.Optional.Hotbar
SUPPRIMÉ clé: HKCU\Software\mysearchdial.com [] =>PUP.Optional.Hotbar
SUPPRIMÉ clé: HKCU\Software\Softonic [] =>PUP.Optional.Softonic
SUPPRIMÉ clé*: HKLM\SOFTWARE\Bench [] =>PUP.Optional.Generic
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\escort.escortIEPane [escortIEPane Object] =>PUP.Optional.Babylon
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\escort.escortIEPane.1 [escortIEPane Object] =>PUP.Optional.Funmoods
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\esrv.EXE [] =>PUP.Optional.Funmoods
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\escort.dll [] =>PUP.Optional.Babylon
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\AppID\escortapp.dll [] =>PUP.Optional.Babylon
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\escorteng.dll [] =>PUP.Optional.Babylon
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8} [] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} [esrv] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} [escortEng] =>PUP.Optional.Funmoods
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\esrv.mysearchdialESrvc [escrtSrvc Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\esrv.mysearchdialESrvc.1 [escrtSrvc Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Listbar.SSListBar [Sheridan ActiveListBar Control] =>PUP.Optional.BHO
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Listbar.SSListBar.1 [Sheridan ActiveListBar Control] =>PUP.Optional.BHO
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore [appCore Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore.1 [appCore Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd [CDskBnd Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd.1 [CDskBnd Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr [CescrtHlpr Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr.1 [CescrtHlpr Object] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\P824C7D5F_A122_4D41_A0FA_1938EF430CEB_.P824C7D5F_A122_4D41_A0FA_1938EF430CEB_ [bestadblocker] =>PUP.Optional.BestADBlocker
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\P824C7D5F_A122_4D41_A0FA_1938EF430CEB_.P824C7D5F_A122_4D41_A0FA_1938EF430CEB_.9 [bestadblocker] =>PUP.Optional.BestADBlocker
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup [MyPC Backup] =>PUP.Optional.MyPCBackup
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60405004-E845-421D-B5B1-2038E04A9313} [C:\Program Files (x86)\Coupon Alerts\ (Not File)] =>PUP.Optional.MindSpark
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MyPC Backup [C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Not File)] =>PUP.Optional.MyPCBackup
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\InstallCore [] =>Adware.InstallCore
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Systweak [] =>PUP.Optional.Systweak
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\esrv.EXE [] =>PUP.Optional.Funmoods
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\escort.dll [] =>PUP.Optional.Babylon
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\escortapp.dll [] =>PUP.Optional.Babylon
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\escorteng.dll [] =>PUP.Optional.Babylon
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8} [] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} [esrv] =>PUP.Optional.MySearchDial
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} [escortEng] =>PUP.Optional.Funmoods
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507} [bestadblocker] =>PUP.Optional.BestADBlocker
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613} [iKute Emoticons 4Facebook Status&Comment] =>PUP.Optional.Multiplug
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\MyPC Backup [C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Not File)] =>PUP.Optional.MyPCBackup
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8} [C:\Program Files (x86)\Mysearchdial\1.8.21.0\ (Not File)] =>PUP.Optional.Hotbar
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60405004-E845-421D-B5B1-2038E04A9313} [C:\Program Files (x86)\Coupon Alerts\ (Not File)] =>PUP.Optional.MindSpark
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_ADE6A4FA8B19F49B7CB961A496053907 ["C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window] =>PUP.Optional.CrossBrowse


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 4574
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 98


~ End of clean in 1 minutes
===================
ZHPCleaner-[R]-20102015-21_34_30.txt
ZHPCleaner-[S]-20102015-21_32_05.txt

Publicité


Signaler le contenu de ce document

Publicité