cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2016.4.26.191 by Nicolas Coolman (15/02/2016)
~ Run by André (Administrator) (15/02/2016 17:42:42)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version KO
~ Type : Reparo
~ Report : C:\Users\André\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\André\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 81, 64-bit (Build 9600)


---\\ Serviços (0)
~ Nenhum ítem malicioso foi encontrado.


---\\ Navegadores de Internet (10)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.alias", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.iconURL", "http://download.mpc.am/mpc/www/mpc.ico"); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.name", "MPC Safe Search "); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.ref", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.ts", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.type", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.uid", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.url", "http://search.mpc.am?q={searchTerms}&cx=partner-pub-37[...] (PUP.SearchEngine)
SUBSTITUIDO Chrome URL: {browser:{show_home_button:true},default_search_provider_data:{template_url_data:{alternate_urls:[{g[...] (Adware.IMBooster)
SUBSTITUIDO Proxy: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride ( )


---\\ Arquivo hosts (1)
~ O arquivo hosts é legítimo (1)


---\\ Tarefas automáticas agendadas. (0)
~ Nenhum ítem malicioso foi encontrado.


---\\ Explorer ( Arquivos, Pastas) (6)
MOVIDO pasta: C:\WINDOWS\Prefetch\MIXVIDEOPLAYER.EXE-A4A985A7.pf (PUP.MixVideoPlayer)
MOVIDO pasta: C:\WINDOWS\Prefetch\SEARCHPROTECTSERVICE.EXE-226A0DA6.pf (PUP.SearchProtect)
MOVIDO pasta: C:\WINDOWS\SECOH-QAD.exe (PUA.KMSpico)
MOVIDO arquivo: C:\Program Files\KMSpico (PUA.KMSpico)
MOVIDO arquivo: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico (PUA.KMSpico)
MOVIDO arquivo: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\PriceFountain (PUP.PriceFoutain)


---\\ Registro ( Chaves, Valores, Dados ) (7)
SUPRIMIDO dados: HKCR\UpAurorachprogid\Shell\Open\Command\\Default [Bad : [html] ] (Broken.OpenCommand)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Classes\SpeedUpMyPC [] (PUP.SpeedUpMyPC)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Classes\driverscanner [] (PUP.DriverScanner)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 [KMSpico] (PUA.KMSpico)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASAPI32 [] (PUP.MixVideoPlayer)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASMANCS [] (PUP.MixVideoPlayer)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\1832BFF4F2BF43989682B0AF5ECB8F68 [] (Hijacker.Browser)


---\\ Resultado de reparação
Reparação efectuada com sucesso
~ Este navegador está faltando ! (Opera Software)


---\\ Estatísticas
~ Items scan : 714
~ Items encontrado : 0
~ items cancelados : 0
~ Items réparo : 23


End of clean at 17:43:08
===================
ZHPCleaner-[R]-15022016-17_43_08.txt
ZHPCleaner-[S]-15022016-17_39_07.txt

~ ZHPCleaner v2016.4.26.191 by Nicolas Coolman (15/02/2016)
~ Run by André (Administrator) (15/02/2016 17:42:42)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version KO
~ Type : Reparo
~ Report : C:\Users\André\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\André\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows 81, 64-bit (Build 9600)


---\\ Serviços (0)
~ Nenhum ítem malicioso foi encontrado.


---\\ Navegadores de Internet (10)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.alias", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.iconURL", "http://download.mpc.am/mpc/www/mpc.ico"); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.name", "MPC Safe Search "); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.ref", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.ts", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.type", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.uid", ""); (PUP.SearchEngine)
SUPRIMIDO: [yjul70qi.default] - user_pref("browser.search.searchengine.url", "http://search.mpc.am?q={searchTerms}&cx=partner-pub-37[...] (PUP.SearchEngine)
SUBSTITUIDO Chrome URL: {browser:{show_home_button:true},default_search_provider_data:{template_url_data:{alternate_urls:[{g[...] (Adware.IMBooster)
SUBSTITUIDO Proxy: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride ( )


---\\ Arquivo hosts (1)
~ O arquivo hosts é legítimo (1)


---\\ Tarefas automáticas agendadas. (0)
~ Nenhum ítem malicioso foi encontrado.


---\\ Explorer ( Arquivos, Pastas) (6)
MOVIDO pasta: C:\WINDOWS\Prefetch\MIXVIDEOPLAYER.EXE-A4A985A7.pf (PUP.MixVideoPlayer)
MOVIDO pasta: C:\WINDOWS\Prefetch\SEARCHPROTECTSERVICE.EXE-226A0DA6.pf (PUP.SearchProtect)
MOVIDO pasta: C:\WINDOWS\SECOH-QAD.exe (PUA.KMSpico)
MOVIDO arquivo: C:\Program Files\KMSpico (PUA.KMSpico)
MOVIDO arquivo: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico (PUA.KMSpico)
MOVIDO arquivo: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\PriceFountain (PUP.PriceFoutain)


---\\ Registro ( Chaves, Valores, Dados ) (7)
SUPRIMIDO dados: HKCR\UpAurorachprogid\Shell\Open\Command\\Default [Bad : [html] ] (Broken.OpenCommand)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Classes\SpeedUpMyPC [] (PUP.SpeedUpMyPC)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Classes\driverscanner [] (PUP.DriverScanner)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 [KMSpico] (PUA.KMSpico)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASAPI32 [] (PUP.MixVideoPlayer)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASMANCS [] (PUP.MixVideoPlayer)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\1832BFF4F2BF43989682B0AF5ECB8F68 [] (Hijacker.Browser)


---\\ Resultado de reparação
Reparação efectuada com sucesso
~ Este navegador está faltando ! (Opera Software)


---\\ Estatísticas
~ Items scan : 714
~ Items encontrado : 0
~ items cancelados : 0
~ Items réparo : 23


End of clean at 17:43:08
===================
ZHPCleaner-[R]-15022016-17_43_08.txt
ZHPCleaner-[S]-15022016-17_39_07.txt

Publicité


Signaler le contenu de ce document

Publicité