cjoint

Publicité


Publicité

Commentaire : voici le rapport d'expertise de mon ordinateur

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.10.20.184 by Nicolas Coolman (2017/10/20)
~ Run by mariefrance (Administrator) (23/10/2017 16:12:38)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : C:\Users\mariefrance\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\mariefrance\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)


---\\ Service. (3)
ARRETÉ : AppApcVerifier =>.SUP.EORezo
ARRETÉ : ByteFenceService =>.SUP.ByteFence
ARRETÉ : rtop =>.SUP.ByteFence


---\\ Navigateur internet. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (63)


---\\ Tâche planifiée. (2)
SUPPRIMÉ tâche: [Advanced-PC-Care_Logon] [C:\Program Files\Advanced-PC-Care\apc.exe] =>.SUP.AdvancedPCCare
SUPPRIMÉ tâche: [Yahoo! Powered notaf] [C:\Windows\Tasks\Yahoo! Powered notaf.job (Not File) ] =>Adware.YahooPowered


---\\ Explorateur ( Dossiers, Fichiers ). (19)
DEPLACÉ fichier: C:\Users\Public\Desktop\Advanced-PC-Care.lnk [Bad : C:\Program Files\Advanced-PC-Care\apc.exe](..) =>.SUP.AdvancedPCCare
DEPLACÉ fichier: C:\Users\mariefrance\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nahhmpbckpgdidfnmfkfgiflpjijilce_0.localstorage =>.SUP.SearchManager
DEPLACÉ fichier: C:\ProgramData\AppApcVerifier\AppVerifierapc.exe [AppApcVerifier - AppApcVerifier] =>.SUP.EORezo
DEPLACÉ fichier**: C:\Windows\Tasks\Yahoo! Powered notaf.job =>Adware.YahooPowered
DEPLACÉ fichier**: C:\ProgramData\efixmypc.com\Advanced-PC-Care\apcsrv.exe [advancedpccare.net - Advanced-PC-Care Setup] =>.SUP.AdvancedPCCare
DEPLACÉ fichier**: C:\Users\mariefrance\Desktop\cacaoweb.exe =>.SUP.CacaoWeb
DEPLACÉ fichier**: C:\Users\mariefrance\Downloads\cacaoweb (1).exe =>.SUP.CacaoWeb
DEPLACÉ fichier**: C:\Users\mariefrance\Downloads\cacaoweb (2).exe =>.SUP.CacaoWeb
DEPLACÉ fichier**: C:\Users\mariefrance\Downloads\cacaoweb.exe =>.SUP.CacaoWeb
DEPLACÉ fichier^: C:\Users\mariefrance\AppData\Roaming\cacaoweb\cacaoweb.exe =>.SUP.CacaoWeb
DEPLACÉ dossier*: C:\Users\mariefrance\AppData\Local\Google\Chrome\User Data\Default\Extensions\lameokaalbmnhgapanlloeichlbjloak =>.SUP.SearchManager
DEPLACÉ dossier*: C:\Users\mariefrance\AppData\Local\Google\Chrome\User Data\Default\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce =>.SUP.SearchManager
DEPLACÉ dossier^: C:\Program Files\Advanced-PC-Care =>.SUP.AdvancedPCCare
DEPLACÉ dossier^: C:\Program Files\ByteFence =>.SUP.ByteFence
DEPLACÉ dossier*: C:\ProgramData\AppApcVerifier =>.SUP.EORezo
DEPLACÉ dossier^: C:\ProgramData\ByteFence =>.SUP.ByteFence
DEPLACÉ dossier*: C:\ProgramData\Partner =>Toolbar.YahooPartner
DEPLACÉ dossier^: C:\Users\mariefrance\AppData\Roaming\cacaoweb =>.SUP.CacaoWeb
DEPLACÉ dossier*: C:\ProgramData\App-verifier =>.SUP.AdvancedPCCare


---\\ Base de Registres ( Clés, Valeurs, Données ). (39)
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_clkcntnw_17_42&[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_clkcntnw_17_42&[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_clkcntnw_17_42¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyByCyDyDyD0D0ByB0BtN0D0Tzu0StBtCtCzytN1L2XzutAtFtAyDtFtAtFyDyDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StAtCtA0Bzyzz0BzytGyC0DyEyCtG0EyCtD0CtGyCtDyDtAtGyDtBtD0DyD0CyCyEtCyEyEzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyDtAyD0AyC0B0CtGtA0DyD0EtGyE0E0B0AtGzz0AyCyBtGyCyEyBtC0AtDyCzzzztCtCtD2QtN0A0LzuyE%26cr%3D1930665319%26a%3Dwbf_clkcntnw_17_42%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_clkcntnw_17_42¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyByCyDyDyD0D0ByB0BtN0D0Tzu0StBtCtCzytN1L2XzutAtFtAyDtFtAtFyDyDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StAtCtA0Bzyzz0BzytGyC0DyEyCtG0EyCtD0CtGyCtDyDtAtGyDtBtD0DyD0CyCyEtCyEyEzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0DyDtAyD0AyC0B0CtGtA0DyD0EtGyE0E0B0AtGzz0AyCyBtGyCyEyBtC0AtDyCzzzztCtCtD2QtN0A0LzuyE%26cr%3D1930665319%26a%3Dwbf_clkcntnw_17_42%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\AppApcVerifier [C:\ProgramData\AppApcVerifier\AppVerifierapc.exe (Not File)] =>.SUP.EORezo
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ByteFenceService [C:\Program Files\ByteFence\ByteFenceService.exe] =>.SUP.ByteFence
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\rtop [C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe] =>.SUP.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1457406441-3839023157-1538546580-1001\SOFTWARE\ByteFence [] =>.SUP.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1457406441-3839023157-1538546580-1001\SOFTWARE\cacaoweb [C:\Users\mariefrance\AppData\Roaming\cacaoweb\cacaoweb.exe] =>.SUP.CacaoWeb
SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\ByteFence [] =>.SUP.ByteFence
SUPPRIMÉ clé: HKCU\Software\ByteFence [] =>.SUP.ByteFence
SUPPRIMÉ clé: HKCU\Software\cacaoweb [C:\Users\mariefrance\AppData\Roaming\cacaoweb\cacaoweb.exe] =>.SUP.CacaoWeb
SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKCU\Software\undefined [] =>.SUP.Downloader
SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\protector_dll.protectorbho [Google Toolbar Notifier BHO] =>Adware.BProtector
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1 [Google Toolbar Notifier BHO] =>Adware.BProtector
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector [Protector Class] =>Adware.BProtector
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1 [Protector Class] =>Adware.BProtector
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib [ProtectorLib Class] =>Adware.BProtector
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1 [ProtectorLib Class] =>Adware.BProtector
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\AppApcVerifier [] =>.SUP.EORezo
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\ByteFenceService [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\AppApcVerifier [] =>.SUP.EORezo
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\ByteFence [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASAPI32 [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASMANCS [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\ByteFence [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence [Byte Technologies LLC] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceScan_RASAPI32 [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceScan_RASMANCS [] =>.SUP.ByteFence
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\cacaoweb ["C:\Users\mariefrance\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer] =>.SUP.CacaoWeb
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{993C74B3-F955-40E8-AC51-EE8AA29533F1}C:\users\mariefrance\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\mariefrance\appdata\roaming\cacaoweb\cacaoweb.exe] =>.SUP.CacaoWeb
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{10184FCD-B199-4055-877D-57762587473F}C:\users\mariefrance\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\mariefrance\appdata\roaming\cacaoweb\cacaoweb.exe] =>.SUP.CacaoWeb


---\\ Récapitulatif des éléments trouvés sur votre station. (10)
https://www.nicolascoolman.com/fr/pup-eorezo/ =>.SUP.EORezo
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence
https://www.anti-malware.top/2016/04/23/superfluous-advancedpccare/ =>.SUP.AdvancedPCCare
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SearchManager
https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.SUP.CacaoWeb
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>Toolbar.YahooPartner
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Downloader
https://nicolascoolman.eu/2017/04/12/adware-bprotector/ =>Adware.BProtector


---\\ Nettoyage Additionnel. (23)
~ Suppression des Clés de registre Tracing. (23)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Mozilla Firefox)
~ Le système a été redémarré.


---\\ Statistiques
~ Items scannés : 852
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 63


~ End of clean in 00h02mn12s
~====================
ZHPCleaner-[R]-23102017-16_14_50.txt
ZHPCleaner-[S]-23102017-09_36_22.txt
ZHPCleaner-[S]-23102017-11_36_37.txt
ZHPCleaner-[S]-23102017-15_34_01.txt

Publicité


Signaler le contenu de ce document

Publicité