~ ZHPCleaner v2015.12.7.393 by Nicolas Coolman (2015/12/07) ~ Run by Alain (Administrator) (07/12/2015 22:12:10) ~ Site : http://www.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Nettoyer ~ Report : C:\Users\Alain\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Alain\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (0) ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Explorateur ( Dossiers, Fichiers ). (28) DEPLACÉ fichier: C:\Users\Public\Desktop\Tencent QQ.lnk [Bad : C:\Program Files (x86)\Tencent\QQIntl\Bin\QQ.exe] =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\Npchrome\npchrome.dll [Tencent - QQ2013 Chrome Plugin for Chrome V23.0.1271.] =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\NPQSCALL\npqscall.dll [Tencent - QQ2013 Firefox Plugin] =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.2.1\bin\npSSOAxCtrlForPTLogin.dll [Tencent - QQ QuickLogin Helper] =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Windows\Temp\contentDATs.exe [McAfee, Inc. - McAfee Scanner Content Installer] =>Heuristique.Suspect DEPLACÉ fichier: C:\Windows\Temp\SecurityScan_Release.exe [McAfee, Inc. - McAfee Security Scan Plus Installer] =>Heuristique.Suspect DEPLACÉ fichier: C:\Windows\Prefetch\3D BUBBLESOUND.EXE-0711FD62.pf =>PUP.Optional.BubbleSound DEPLACÉ fichier: C:\Windows\Prefetch\OLBPRE.EXE-2CA25D00.pf =>PUP.Optional.MyPCBackup DEPLACÉ fichier: C:\Windows\Prefetch\TENCENTDL.EXE-6C7826D4.pf =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Windows\Prefetch\TENCENTDL.EXE-A7F9CAAB.pf =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Users\Alain\AppData\Local\Temp\qqsafeud.exe [Tencent - QQ安全组件] =>PUP.Optional.TencentAddressBar DEPLACÉ fichier: C:\Users\Alain\AppData\Local\Temp\is-1USTO.tmp\sp-standalone-setup.exe [Uniblue Systems Limited - SpeedUpMyPC Setup] =>.Superfluous.Uniblue DEPLACÉ fichier: C:\Users\Alain\AppData\Local\Temp\92e436ae-eb8b-4900-b38a-dc230d9eb1c4\speedupmypc.exe [Uniblue Systems Limited - SpeedUpMyPC Setup] =>.Superfluous.Uniblue DEPLACÉ fichier: C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic DEPLACÉ fichier: C:\Users\Alain\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic DEPLACÉ fichier: C:\Users\Alain\AppData\Local\Temp\mypcbackup_ppi_pp.7z =>PUP.Optional.MyPCBackup DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe [Tencent - 腾讯高速下载引擎] =>PUP.Optional.TencentAddressBar DEPLACÉ dossier^: C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar DEPLACÉ dossier: C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar DEPLACÉ dossier: C:\Users\Public\Documents\Tencent =>PUP.Optional.TencentAddressBar DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software =>PUP.Optional.TencentAddressBar DEPLACÉ dossier^: C:\Users\Alain\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar DEPLACÉ dossier^: C:\Users\Alain\Documents\Tencent Files =>PUP.Optional.TencentAddressBar DEPLACÉ dossier: C:\Users\Alain\AppData\Local\Temp\olbpre =>PUP.Optional.MyPCBackup DEPLACÉ dossier: C:\Users\Alain\AppData\Local\Temp\92e436ae-eb8b-4900-b38a-dc230d9eb1c4 =>PUP.Optional.SpeedUpMyPC DEPLACÉ dossier: C:\Users\Alain\AppData\Local\Temp\ac87854b-98ee-459e-bf64-867ac48e84ff =>PUP.Optional.SpeedUpMyPC DEPLACÉ dossier: C:\Users\Alain\AppData\Local\Temp\ac944d46-1644-47f5-b814-dfe48a46b8a8 =>PUP.Optional.SpeedUpMyPC DEPLACÉ dossier: C:\WINDOWS\Installer\MSI4261.tmp- =>Empty ---\\ Base de Registres ( Clés, Valeurs, Données ). (23) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7CC2457F-6C49-444B-868F-5A965C63D593} [http://www.cassiopessa.com/results.php?f=4&q={searchTerms}&a=csp_tuto16_15_49&cd=2XzuyEtN2Y1L1Qzuzy0[...]] [Cassiopesa] =>PUP.Optional.Cassiopesa SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/npchrome [] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/npqscall [] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/TXSSO [Tencent] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7CC2457F-6C49-444B-868F-5A965C63D593} [http://www.cassiopessa.com/results.php?f=4&q={searchTerms}&a=csp_tuto16_15_49&cd=2XzuyEtN2Y1L1Qzuzy0C0DtBtC0EyDzztAzytA0A0C0DtBzytN0D0Tzu0StCyEtAtCtN1L2XzutAtFtCtBtFyDtFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2SyEtD0AzyzytCyB0FtGyE0E0AyEtGyB0C0ByDtGtB0Czy0FtGtD0ByCyCyByEtAyEyDyDtDtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0C0A0B0EyEyCyEtBtG0D0BtCtBtGyEyDtAtCtG0B0EtDyBtG0CyDtCtB0AyE0CtCyD0AzztB2QtN0A0LzuyE&cr=689634122&ir=] =>PUP.Optional.Cassiopesa SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2000584756-3521489315-1775466080-1001\SOFTWARE\Tencent [] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2000584756-3521489315-1775466080-1001\SOFTWARE\Classes\Tencent [] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé: HKCU\Software\Tencent [] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cassiopesa.com [2074] =>PUP.Optional.Multiplug SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.audienceinsights.net [43] =>PUP.Optional.Generic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Tencent [TencentProtocol] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\DtsEncodeTools [] =>PUP.Optional.WeatherTool SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Tencent [] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3CA54984-A14B-42FE-9FF1-7EA90151D725} [Tencent Technology(Shenzhen) Company Limited] =>PUP.Optional.TencentAddressBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FA39976-7194-44E8-8DD9-A9781D289934} [C:\Program Files (x86)\Tencent\QQIntl\Plugin\Com.Tencent.QQPet\bin\QQPet (Not File)] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{39CFF6A9-D38F-42B1-83D4-5651E3B2379A} [C:\Program Files (x86)\Tencent\QQIntl\Bin\QQ.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{F242C892-FD87-48EF-91B6-E14EE5D713DD} [C:\Program Files (x86)\Tencent\QQIntl\Bin\QQ.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{61D6B197-703F-4DF6-B98D-374547FDFCE4} [C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{4B376E5D-FC6B-449C-A885-A3CF2C684DC4} [C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{85FA2DF5-718C-47EB-9C34-C8221C3E034C}C:\program files (x86)\tencent\qqintl\bin\qq.exe [C:\program files (x86)\tencent\qqintl\bin\qq.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{9D6B908F-E0D0-46E0-883B-13AB0B04C41D}C:\program files (x86)\tencent\qqintl\bin\qq.exe [C:\program files (x86)\tencent\qqintl\bin\qq.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{1272AC8B-7075-401B-83C9-169D0AB434F9} [C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe] =>PUP.Optional.TencentAddressBar SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{4BAD60C7-65FC-478E-8AA8-E346E662124D} [C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe] =>PUP.Optional.TencentAddressBar ---\\ Récapitulatif des éléments trouvés sur votre station. (10) http://www.nicolascoolman.fr/?p=368 =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/?p=4664 =>Heuristique.Suspect http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BubbleSound http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Uniblue http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Generic http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SpeedUpMyPC http://www.nicolascoolman.fr/?p=2587 =>PUP.Optional.Cassiopesa http://www.nicolascoolman.fr/?p=1402 =>PUP.Optional.Multiplug http://www.nicolascoolman.fr/?p=5054 =>PUP.Optional.WeatherTool ---\\ Nettoyage Additionnel. (4) ~ Suppression des Clés de registre Tracing. (4) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ~ Le système a été redémarré. ---\\ Statistiques ~ Items scannés : 1201 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 51 ~ End of clean in 1 minutes =================== ZHPCleaner-[R]-07122015-22_13_33.txt ZHPCleaner-[S]-07122015-21_50_20.txt ZHPCleaner-[S]-07122015-21_53_00.txt ZHPCleaner-[S]-07122015-21_53_32.txt ZHPCleaner-[S]-07122015-22_08_46.txt