cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2016.7.5.82 by Nicolas Coolman (2016/07/05)
~ Run by sarah (Administrator) (06/07/2016 09:11:58)
~ Site : http://www.nicolascoolman.com
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Users\sarah\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\sarah\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586)


---\\ Service. (0)


---\\ Navigateur internet. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (60)


---\\ Tâche planifiée. (8)
SUPPRIMÉ tâche: [ByteFence] [C:\Program Files\ByteFence\ByteFence.exe] =>.Superfluous.ByteFence
SUPPRIMÉ tâche: [ByteFence Scan] [C:\Program Files\ByteFence\ByteFence.exe] =>.Superfluous.ByteFence
SUPPRIMÉ tâche: [System Healer Task] [C:\Program Files (x86)\SystemHealer\RescueMonitor.exe (Not File) ] =>PUP.Optional.SystemHealer
SUPPRIMÉ tâche: [System HealerPeriod] [C:\Program Files (x86)\SystemHealer\SystemHealer.exe (Not File) ] =>PUP.Optional.SystemHealer
SUPPRIMÉ tâche: [System HealerStartUp] [C:\Program Files (x86)\SystemHealer\SystemHealer.exe (Not File) ] =>PUP.Optional.SystemHealer
SUPPRIMÉ tâche: [SystemHealer Monitor] [C:\Program Files (x86)\SystemHealer\HealerConsole.exe (Not File) ] =>PUP.Optional.SystemHealer
SUPPRIMÉ tâche: [SystemHealer Run Delay] [C:\Program Files (x86)\SystemHealer\SystemHealer.exe (Not File) ] =>PUP.Optional.SystemHealer
SUPPRIMÉ tâche: [{71A58308-E830-14CD-514E-37844E7F7C16}] [C:\Users\sarah\AppData\Roaming\PriceFountainUpdateVer\pricefountainupdateverupdate.exe (Not File) ] =>PUP.Optional.PriceFountain


---\\ Explorateur ( Dossiers, Fichiers ). (49)
DEPLACÉ fichier: C:\Users\Public\Desktop\Launch System Healer.lnk [Bad : C:\Program Files (x86)\SystemHealer\SystemHealer.exe] =>PUP.Optional.SystemHealer
DEPLACÉ fichier: C:\Users\sarah\AppData\Roaming\Setup35611.exe =>PUP.Optional.Pirrit
DEPLACÉ fichier: C:\Program Files (x86)\SystemHealer\RescueMonitor.exe =>PUP.Optional.SystemHealer
DEPLACÉ fichier: C:\Users\sarah\AppData\Roaming\PriceFountainUpdateVer\pricefountainupdateverupdate.exe =>PUP.Optional.PriceFountain
DEPLACÉ fichier: C:\Windows\Tasks\System HealerPeriod.job =>PUP.Optional.SystemHealer
DEPLACÉ fichier: C:\Windows\Tasks\System HealerStartUp.job =>PUP.Optional.SystemHealer
DEPLACÉ fichier: C:\Windows\Prefetch\SYSTEMHEALER.EXE-1942CE3A.pf =>PUP.Optional.SystemHealer
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage-journal =>.Superfluous.AkamaiHD
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d19tqk5t6qcjac.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d19tqk5t6qcjac.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage =>PUP.Optional.PricePeep
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal =>PUP.Optional.PricePeep
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.bestpriceninja.com_0.localstorage =>PUP.Optional.BestPriceNinja
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.bestpriceninja.com_0.localstorage-journal =>PUP.Optional.BestPriceNinja
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage =>PUP.Optional.CouponTime
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage-journal =>PUP.Optional.CouponTime
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_utop.it_0.localstorage =>PUP.Optional.Browser
DEPLACÉ fichier: C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_utop.it_0.localstorage-journal =>PUP.Optional.Browser
DEPLACÉ dossier: C:\Program Files (x86)\SystemHealer =>PUP.Optional.SystemHealer
DEPLACÉ dossier^: C:\Program Files\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier: C:\ProgramData\99f86027-1007-0 =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\99f86027-2131-1 =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\99f86027-29e5-1 =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\99f86027-4943-0 =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\99f86027-5837-1 =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\99f86027-7563-0 =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier: C:\ProgramData\{03a6cf56-012c-1} =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\{1d9012ef-212c-0} =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\{23f66aee-012c-1} =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\{2e566fce-512c-0} =>.Superfluous.Polluteware
DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.Superfluous.ByteFence
DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer =>PUP.Optional.SystemHealer
DEPLACÉ dossier: C:\Users\sarah\AppData\Roaming\PriceFountainUpdateVer =>PUP.Optional.PriceFountain
DEPLACÉ dossier: C:\Users\sarah\AppData\Roaming\System Healer =>PUP.Optional.SystemHealer
DEPLACÉ dossier: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier: C:\windows\Installer\MSI39DF.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSICDB9.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSID192.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSID26E.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSID31B.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSID3E7.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSIE3DF.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSIE928.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSIEA14.tmp- =>Empty
DEPLACÉ dossier: C:\windows\Installer\MSIEA2B.tmp- =>Empty


---\\ Base de Registres ( Clés, Valeurs, Données ). (24)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_20&par[...]] [Search Provided by Yahoo] =>.Superfluous.YahooSearchProvided
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_20&par[...]] [Search Provided by Yahoo] =>.Superfluous.YahooSearchProvided
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_20&par[...]] [Search Provided by Yahoo] =>.Superfluous.YahooSearchProvided
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_20¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyDtDyCyD0FtAyE0Bzz0C0DzyyDyBzy0DtN0D0Tzu0StCyDzyzytN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0Dzz0B0EtAtGtA0FyCtDtG0ByBzyzztGtCyDyD0CtG0FtByC0FyCyByE0EtA0AtB0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CtByC0B0EtAtB0DtGzz0F0FyCtGyE0D0EtDtG0ByD0E0CtG0CyDyBtB0C0A0FtAzyyDyD0E2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCzyzzyD%26cr%3D52625068%26a%3Dwbf_togoo_16_20%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>.Superfluous.YahooSearchProvided
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_20¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyDtDyCyD0FtAyE0Bzz0C0DzyyDyBzy0DtN0D0Tzu0StCyDzyzytN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0Dzz0B0EtAtGtA0FyCtDtG0ByBzyzztGtCyDyD0CtG0FtByC0FyCyByE0EtA0AtB0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CtByC0B0EtAtB0DtGzz0F0FyCtGyE0D0EtDtG0ByD0E0CtG0CyDyBtB0C0A0FtAzyyDyD0E2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCzyzzyD%26cr%3D52625068%26a%3Dwbf_togoo_16_20%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>.Superfluous.YahooSearchProvided
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_20¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyDtDyCyD0FtAyE0Bzz0C0DzyyDyBzy0DtN0D0Tzu0StCyDzyzytN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StCyD0F0Dzz0B0EtAtGtA0FyCtDtG0ByBzyzztGtCyDyD0CtG0FtByC0FyCyByE0EtA0AtB0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CtByC0B0EtAtB0DtGzz0F0FyCtGyE0D0EtDtG0ByD0E0CtG0CyDyBtB0C0A0FtAzyyDyD0E2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCzyzzyD%26cr%3D52625068%26a%3Dwbf_togoo_16_20%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>.Superfluous.YahooSearchProvided
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\rtop [C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe (Not File)] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2425713496-2698560612-315914154-1001\SOFTWARE\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2425713496-2698560612-315914154-1001\SOFTWARE\ICSW1.22 [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2425713496-2698560612-315914154-1001\SOFTWARE\System Healer [] =>PUP.Optional.SystemHealer
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2425713496-2698560612-315914154-1001\SOFTWARE\Tuguu [] =>PUP.Optional.VAFPlayer
SUPPRIMÉ clé: HKCU\Software\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé: HKCU\Software\ICSW1.22 [] =>Adware.InstallCore
SUPPRIMÉ clé: HKCU\Software\System Healer [] =>PUP.Optional.SystemHealer
SUPPRIMÉ clé: HKCU\Software\Tuguu [] =>PUP.Optional.VAFPlayer
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MinxesQuakily [PriceFountain] =>PUP.Optional.PriceFountain
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{71A58308-E830-14CD-514E-37844E7F7C16} [Update for PriceFountain] =>PUP.Optional.PriceFountain
SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence [Byte Technologies LLC] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SystemHealer [SystemHealer] =>PUP.Optional.SystemHealer


---\\ Récapitulatif des éléments trouvés sur votre station. (15)
https://www.nicolascoolman.info/2016/04/29/superfluous-bytefence/ =>.Superfluous.ByteFence
http://www.nicolascoolman.fr/pup-optional-systemhealer/ =>PUP.Optional.SystemHealer
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PriceFountain
http://www.nicolascoolman.fr/?p=914 =>PUP.Optional.Pirrit
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.AkamaiHD
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CloudfrontNet
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PricePeep
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BestPriceNinja
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.AudienceInsights
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CouponTime
http://www.nicolascoolman.fr/?p=546 =>PUP.Optional.Browser
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Polluteware
https://www.nicolascoolman.info/2016/06/01/pup-optional-yahoosearchprovided/ =>.Superfluous.YahooSearchProvided
https://www.nicolascoolman.info/2016/04/22/adware-installcore/ =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=648 =>PUP.Optional.VAFPlayer


---\\ Nettoyage Additionnel. (37)
~ Suppression des Clés de registre Tracing. (37)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)
~ Le système a été redémarré.


---\\ Statistiques
~ Items scannés : 344
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 82


~ End of clean in 00h01mn02s
~====================
ZHPCleaner-[R]-06072016-09_13_00.txt
ZHPCleaner-[S]-06072016-09_10_52.txt

Publicité


Signaler le contenu de ce document

Publicité