~ ZHPCleaner v2017.9.18.163 by Nicolas Coolman (2017/09/18) ~ Run by tinou (Administrator) (19/09/2017 21:13:03) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\tinou\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\tinou\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Service. (0) ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (2) REMPLACÉ: 0.0.0.1 mssplus.mcafee.com ~ Nombre de redirections trouvées 1/37 ---\\ Tâche planifiée. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Explorateur ( Dossiers, Fichiers ). (48) DEPLACÉ fichier: C:\Program Files (x86)\OfferBox\OfferBox.exe [Aedge Performance BCN SL - OfferBox] =>PUP.Optional.OfferBox DEPLACÉ fichier: C:\Program Files (x86)\OfferBox\OfferBoxUpdateService.exe [Aedge Performance BCN SL - OfferBox] =>PUP.Optional.OfferBox DEPLACÉ fichier: C:\Users\tinou\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe =>PUP.Optional.Dealply DEPLACÉ fichier: C:\Windows\System32\Tasks\DealPly =>PUP.Optional.Dealply DEPLACÉ fichier: C:\Windows\Prefetch\BROWSERPROTECT.EXE-7A0A81C8.pf =>PUP.Optional.Eazel DEPLACÉ fichier: C:\Windows\Prefetch\BUBBLE DOCK ADDONSUI.EXE-5F4F0B4D.pf =>Adware.BubbleDock DEPLACÉ fichier: C:\Windows\Prefetch\BUBBLE DOCK UPDATE.EXE-BFA99756.pf =>Adware.BubbleDock DEPLACÉ fichier: C:\Windows\Prefetch\BUBBLE DOCK.EXE-4838B1A7.pf =>Adware.BubbleDock DEPLACÉ fichier: C:\Windows\Prefetch\CACAOWEB.EXE-4515B582.pf =>.SUP.CacaoWeb DEPLACÉ fichier: C:\Windows\Prefetch\LBUBBLE DOCK.EXE-18514A53.pf =>Adware.BubbleDock DEPLACÉ fichier: C:\Windows\Prefetch\OFFERBOX.EXE-D78979DF.pf =>PUP.Optional.OfferBox DEPLACÉ fichier: C:\Windows\Prefetch\OFFERBOXUPDATESERVICE.EXE-50C7FAFB.pf =>PUP.Optional.OfferBox DEPLACÉ fichier: C:\Windows\Prefetch\SWEETIM.EXE-C8F96B16.pf =>.SUP.SweetIM DEPLACÉ fichier: C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-DCF7D160.pf =>.SUP.SweetIM DEPLACÉ fichier: C:\Users\tinou\Desktop\cacaoweb_fr_404668(1).exe =>.SUP.CacaoWeb DEPLACÉ fichier: C:\Users\tinou\AppData\Roaming\Bubble Dock.boostrap.log =>Adware.BubbleDock DEPLACÉ fichier: C:\Users\tinou\AppData\Roaming\Bubble Dock.installation.log =>Adware.BubbleDock DEPLACÉ fichier: C:\Users\tinou\AppData\Local\mysearchdial-speeddial.crx =>PUP.Optional.MySearchDial DEPLACÉ fichier^: C:\Users\tinou\AppData\Roaming\iWin =>PUP.Optional.iWinArcade DEPLACÉ fichier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk =>.SUP.Browser DEPLACÉ dossier*: C:\Users\tinou\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj =>Hijacker.Browser [http://www.sweetim.com/simgcbar/GCToolbarUpdate.xm] DEPLACÉ dossier*: C:\Program Files (x86)\Duuqu =>PUP.Optional.Duuqu DEPLACÉ dossier*: C:\Program Files (x86)\OfferBox =>PUP.Optional.OfferBox DEPLACÉ dossier*: C:\ProgramData\APN =>Toolbar.Ask DEPLACÉ dossier*: C:\ProgramData\Trymedia =>PUP.Optional.Trymedia DEPLACÉ dossier*: C:\Windows\System32\config\systemprofile\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect DEPLACÉ dossier*: C:\Users\tinou\AppData\Roaming\DealPly =>PUP.Optional.Dealply DEPLACÉ dossier*: C:\Users\tinou\AppData\Roaming\Nosibay =>PUP.Optional.SPointer DEPLACÉ dossier*: C:\Users\tinou\AppData\Roaming\OfferBox =>PUP.Optional.OfferBox DEPLACÉ dossier*: C:\Users\tinou\AppData\LocalLow\BabylonToolbar =>Adware.Babylon DEPLACÉ dossier*: C:\Users\tinou\AppData\LocalLow\Delta =>.SUP.DeltaSearch DEPLACÉ dossier*: C:\Users\tinou\AppData\LocalLow\Incredibar.com =>PUP.Optional.IncrediBar DEPLACÉ dossier*: C:\Users\tinou\AppData\LocalLow\mysearchdial =>PUP.Optional.MySearchDial DEPLACÉ dossier*: C:\Users\tinou\AppData\LocalLow\SweetIM =>.SUP.SweetIM DEPLACÉ dossier*: C:\Users\tinou\AppData\Local\PackageAware =>.SUP.BearShare DEPLACÉ dossier*: C:\Users\Default\AppData\Local\Duuqu =>PUP.Optional.Duuqu DEPLACÉ dossier: C:\Users\Default User\AppData\Local\Duuqu =>PUP.Optional.Duuqu DEPLACÉ dossier: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect DEPLACÉ dossier^: C:\Windows\System32\ljkb =>PUP.Optional.Perion DEPLACÉ dossier^: C:\Windows\System32\tprb =>PUP.Optional.Perion DEPLACÉ dossier*: C:\Windows\SysWOW64\mjcm =>PUP.Optional.Perion DEPLACÉ dossier*: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime DEPLACÉ dossier*: C:\Program Files (x86)\Software =>PUP.Optional.Boxore DEPLACÉ dossier*: C:\ProgramData\Ask =>Toolbar.Ask DEPLACÉ dossier*: C:\ProgramData\Software =>PUP.Optional.Boxore DEPLACÉ dossier*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime DEPLACÉ dossier*: C:\Users\tinou\AppData\Local\SWDS =>PUP.Optional.InstallBrain DEPLACÉ dossier*: C:\Users\tinou\AppData\Local\Software =>PUP.Optional.Boxore ---\\ Base de Registres ( Clés, Valeurs, Données ). (132) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} [http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele1202&cd=2XzuyEtN2Y1L1QzuyCtD0E0B[...]] [Mysearchdial] =>PUP.Optional.MySearchDial SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} [http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele1202&cd=2XzuyEtN2Y1L1QzuyCtD0E0B[...]] [Mysearchdial] =>PUP.Optional.MySearchDial SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [http://mystart.incredibar.com/?a=6PQU6seXfr&loc=skw&search={searchTerms}&i=26] [MyStart Search] =>PUP.Optional.VMNToolbar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [] =>Hijacker.Browser SUPPRIMÉ clé*: HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje [C:\Program Files (x86)\DealPly\DealPly.crx (Not File)] =>PUP.Optional.Dealply SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} [http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele1202&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzytBtAtA0E0A0C0DtC0BtCtN0D0Tzu0SyBtBzztN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=813377877&ir=] =>PUP.Optional.MySearchDial SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} [http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tele1202&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzytBtAtA0E0A0C0DtC0BtCtN0D0Tzu0SyBtBzztN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=813377877&ir=] =>PUP.Optional.MySearchDial SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [http://mystart.incredibar.com/?a=6PQU6seXfr&loc=skw&search={searchTerms}&i=26] =>PUP.Optional.VMNToolbar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\1916A2AF346D399F50313C393200F14140456616 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\2A83E9020591A55FC6DDAD3FB102794C52B24E70 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\2B84BFBB34EE2EF949FE1CBE30AA026416EB2216 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\305F8BD17AA2CBC483A4C41B19A39A0C75DA39D6 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\367D4B3B4FCBBC0B767B2EC0CDB2A36EAB71A4EB [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\3A850044D8A195CD401A680C012CB0A3B5F8DC08 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\40AA38731BD189F9CDB5B9DC35E2136F38777AF4 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\43D9BCB568E039D073A74A71D8511F7476089CC3 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\471C949A8143DB5AD5CDF1C972864A2504FA23C9 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\51C3247D60F356C7CA3BAF4C3F429DAC93EE7B74 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\5DE83EE82AC5090AEA9D6AC4E7A6E213F946E179 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\61793FCBFA4F9008309BBA5FF12D2CB29CD4151A [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\637162CC59A3A1E25956FA5FA8F60D2E1C52EAC6 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\63FEAE960BAA91E343CE2BD8B71798C76BDB77D0 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\6431723036FD26DEA502792FA595922493030F97 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\7D7F4414CCEF168ADF6BF40753B5BECD78375931 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\80962AE4D6C5B442894E95A13E4A699E07D694CF [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\86E817C81A5CA672FE000F36F878C19518D6F844 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\8E5BD50D6AE686D65252F843A9D4B96D197730AB [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\9845A431D51959CAF225322B4A4FE9F223CE6D15 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\B533345D06F64516403C00DA03187D3BFEF59156 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\B86E791620F759F17B8D25E38CA8BE32E7D5EAC2 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\C060ED44CBD881BD0EF86C0BA287DDCF8167478C [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\CEA586B2CE593EC7D939898337C57814708AB2BE [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\D018B62DC518907247DF50925BB09ACF4A5CB3AD [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\F8A54E03AADC5692B850496A4C4630FFEAA29D83 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\FA6660A94AB45F6A88C0D7874D89A863D74DEE97 [Avast Software] =>PUM.Misplaced.Certificate SUPPRIMÉ clé*: HKCU\Software\InstallCore\1I1T1Q1S [] =>Heuristic.InstallCore SUPPRIMÉ clé*: HKCU\Software\InstallCore\Uninstall [] =>Heuristic.InstallCore SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\OfferBox update service [C:\Program Files (x86)\OfferBox\OfferBoxUpdateService.exe (Not File)] =>PUP.Optional.OfferBox SUPPRIMÉ clé^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C32CDC0-2DA3-41E9-AB3A-34AC2FDE3548} [C:\Users\tinou\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe (Not File)] =>PUP.Optional.Dealply SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\cacaoweb [C:\Users\tinou\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] =>.SUP.CacaoWeb SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\DataMngr [] =>PUP.Optional.Datamngr SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\Duuqu [] =>PUP.Optional.FrameFox SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\FileScout [] =>PUP.Optional.FileScout SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\InstallCore [] =>Adware.InstallCore SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\mysearchdial [] =>PUP.Optional.Hotbar SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\mysearchdial.com [] =>PUP.Optional.Hotbar SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\Nosibay [] =>PUP.Optional.SPointer SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\OfferBox [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\Softonic [] =>.SUP.Softonic SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\WNLT [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-741369950-133640842-550786739-1000\SOFTWARE\YahooPartnerToolbar [] =>Toolbar.YahooPartner SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\AskPartnerNetwork [] =>PUP.Optional.APNToolBar SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\OfferBox [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\WNLT [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé: HKCU\Software\cacaoweb [C:\Users\tinou\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] =>.SUP.CacaoWeb SUPPRIMÉ clé: HKCU\Software\DataMngr [] =>PUP.Optional.Datamngr SUPPRIMÉ clé: HKCU\Software\Duuqu [] =>PUP.Optional.FrameFox SUPPRIMÉ clé: HKCU\Software\FileScout [] =>PUP.Optional.FileScout SUPPRIMÉ clé: HKCU\Software\InstallCore [] =>Adware.InstallCore SUPPRIMÉ clé: HKCU\Software\mysearchdial [] =>PUP.Optional.Hotbar SUPPRIMÉ clé: HKCU\Software\mysearchdial.com [] =>PUP.Optional.Hotbar SUPPRIMÉ clé: HKCU\Software\Nosibay [] =>PUP.Optional.SPointer SUPPRIMÉ clé: HKCU\Software\OfferBox [] =>PUP.Optional.OfferBox SUPPRIMÉ clé: HKCU\Software\Softonic [] =>.SUP.Softonic SUPPRIMÉ clé: HKCU\Software\WNLT [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé: HKCU\Software\YahooPartnerToolbar [] =>Toolbar.YahooPartner SUPPRIMÉ clé*: HKCU\Software\TeleCharger [] =>.SUP.Downloader SUPPRIMÉ clé*: HKLM\SOFTWARE\Wow6432Node\Policies\Google\Update [] =>PUM.Security.Hijack SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\d [escrtAx Object] =>PUP.Optional.Generic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Prod.cap [] =>PUP.Optional.ClaroSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\OfferBoxUI.TheBoxCtrl [OfferBoxUI.TheBoxCtrl] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\OfferBoxUI.TheBoxCtrl.1 [OfferBoxUI.TheBoxCtrl] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\SearchBar.Client [SearchBar.Client] =>Toolbar.Agent SUPPRIMÉ clé*: [X64] HKLM\Software\Classes\Installer\Products\547B38670606DF14AA57B0BB83F3AE4D [SweetIM for Messenger 3.7] =>.SUP.SweetIM SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Applications\iLividSetupV1.exe [] =>Adware.Bandoo SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Applications\OfferBox.exe [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\DomaIQ [] =>PUP.Optional.DomaIQ SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\DomaIQ10_RASAPI32 [] =>PUP.Optional.DomaIQ SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\DomaIQ10_RASMANCS [] =>PUP.Optional.DomaIQ SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DuuquUpdate.exe [] =>PUP.Optional.FrameFox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094 [C:\Program Files (x86)\SweetIM\Messenger\msvcr71.dll (Not File)] =>.SUP.SweetIM SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078 [] =>PUP.Optional.Generic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E [] =>PUP.Optional.Generic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Babylon [] =>Adware.Babylon SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Boxore [] =>PUP.Optional.Boxore SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Conduit [] =>.SUP.Conduit SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\DataMngr [] =>PUP.Optional.Datamngr SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\OfferBox [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\SPPDCOM [] =>.SUP.PCSpeedUp SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Trymedia Systems [] =>PUP.Optional.Trymedia SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\OfferBox [Aedge Performance BCN SL] =>.SUP.PCSpeedUp SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0A2C4AA6-FD0B-4DC3-BA6F-79FAC6BFCDAC} [QwertyBox Team] =>PUP.Optional.Duuqu SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7683B745-6060-41FD-AA75-0BBB383FEAD4} [SweetIM Technologies Ltd.] =>.SUP.SweetIM SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{774C0434-9948-4DEE-A14E-69CDD316E36C} [SweetIM Technologies Ltd.] =>.SUP.SweetIM SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ApnStub_RASAPI32 [] =>Toolbar.Ask SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ApnStub_RASMANCS [] =>Toolbar.Ask SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASAPI32 [] =>PUP.Optional.Boxore SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\boxore_RASMANCS [] =>PUP.Optional.Boxore SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASAPI32 [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock BSetup_RASMANCS [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock Update_RASAPI32 [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock Update_RASMANCS [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock UpSetup_RASAPI32 [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock UpSetup_RASMANCS [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASAPI32 [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Bubble Dock_RASMANCS [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IncredibarToolbar_RASAPI32 [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IncredibarToolbar_RASMANCS [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\incredibar_install_RASAPI32 [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\incredibar_install_RASMANCS [] =>PUP.Optional.IncrediBar SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Install_BubbleDock_RASAPI32 [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Install_BubbleDock_RASMANCS [] =>Adware.BubbleDock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASAPI32 [] =>Adware.Babylon SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MyBabylonTB_RASMANCS [] =>Adware.Babylon SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\OfferBoxHTTPProxy_RASAPI32 [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\OfferBoxHTTPProxy_RASMANCS [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\OfferBoxUpdateService_RASAPI32 [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\OfferBoxUpdateService_RASMANCS [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\offerbox_RASAPI32 [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\offerbox_RASMANCS [] =>PUP.Optional.OfferBox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_pour_in-poculis-mahjong_RASAPI32 [] =>.SUP.Softonic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_pour_in-poculis-mahjong_RASMANCS [] =>.SUP.Softonic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASAPI32 [] =>.SUP.SweetIM SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\SweetIM_RASMANCS [] =>.SUP.SweetIM SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASAPI32 [] =>PUP.Optional.Generic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASMANCS [] =>PUP.Optional.Generic SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\UpdateTask_RASAPI32 [] =>PUP.Optional.UpdateTask SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\UpdateTask_RASMANCS [] =>PUP.Optional.UpdateTask SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847} [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer (Not File)] =>.SUP.SweetIM SUPPRIMÉ clé*: HKCU\SOFTWARE\5a57d68be03dbe40 [browsemngr.exe] =>Hijacker.Browser SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\offerbox [C:\Program Files (x86)\OfferBox\OfferBox.exe] =>PUP.Optional.OfferBox ---\\ Récapitulatif des éléments trouvés sur votre station. (46) https://www.nicolascoolman.com/fr/pup-offerbox/ =>PUP.Optional.OfferBox https://www.nicolascoolman.com/fr/pup-dealply/ =>PUP.Optional.Dealply https://www.nicolascoolman.com/fr/hijacker-eazel/ =>PUP.Optional.Eazel https://nicolascoolman.eu/2017/09/08/adware-bubbledock/ =>Adware.BubbleDock https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.SUP.CacaoWeb https://nicolascoolman.eu/2017/09/08/sup-sweetim/ =>.SUP.SweetIM https://www.anti-malware.top/2016/04/29/superfluous-montiera/ =>PUP.Optional.MySearchDial https://www.nicolascoolman.com/fr/adware-iwinarcade/ =>PUP.Optional.iWinArcade https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Browser https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Hijacker.Browser [http://www.sweetim.com/simgcbar/GCToolbarUpdate.xm] https://www.nicolascoolman.com/fr/pup-duuqu/ =>PUP.Optional.Duuqu https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://www.nicolascoolman.com/fr/adware-trymedia/ =>PUP.Optional.Trymedia https://nicolascoolman.eu/2017/02/07/pup-optional-searchprotect/ =>PUP.Optional.SearchProtect https://www.nicolascoolman.com/fr/adware-spointer/ =>PUP.Optional.SPointer https://nicolascoolman.eu/2017/03/03/adware-babylon/ =>Adware.Babylon https://www.nicolascoolman.com/fr/toolbar-deltasearch/ =>.SUP.DeltaSearch https://www.nicolascoolman.com/fr/adware-incredibar/ =>PUP.Optional.IncrediBar https://nicolascoolman.eu/2017/09/15/sup-bearshare/ =>.SUP.BearShare https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Perion https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime https://nicolascoolman.eu/2017/03/14/pup-optional-boxore/ =>PUP.Optional.Boxore https://www.nicolascoolman.com/fr/adware-installbrain/ =>PUP.Optional.InstallBrain https://www.nicolascoolman.com/fr/spyware-vmntoolbar/ =>PUP.Optional.VMNToolbar https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser https://nicolascoolman.eu/2017/06/26/trojan-certlock/ =>PUM.Misplaced.Certificate https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Heuristic.InstallCore https://www.nicolascoolman.com/fr/pup-datamngr/ =>PUP.Optional.Datamngr https://www.nicolascoolman.com/fr/pup-framefox/ =>PUP.Optional.FrameFox https://www.nicolascoolman.com/fr/pup-filescout/ =>PUP.Optional.FileScout https://nicolascoolman.eu/2017/03/12/adware-installcore-2/ =>Adware.InstallCore https://www.nicolascoolman.com/fr/adware-hotbar/ =>PUP.Optional.Hotbar https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Softonic https://www.nicolascoolman.com/fr/?p=5143 =>Toolbar.YahooPartner https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.APNToolBar https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Downloader https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUM.Security.Hijack https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://www.nicolascoolman.com/fr/pup-clarosearch/ =>PUP.Optional.ClaroSearch https://www.nicolascoolman.com/fr/?p=5143 =>Toolbar.Agent https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo https://www.nicolascoolman.com/fr/adware-domaiq/ =>PUP.Optional.DomaIQ https://nicolascoolman.eu/2017/09/08/adware-imbooster/ =>PUP.Optional.IMBooster https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.SUP.Conduit https://nicolascoolman.eu/2017/03/05/superfluous-pcspeeduppro/ =>.SUP.PCSpeedUp https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.UpdateTask ---\\ Nettoyage Additionnel. (161) ~ Suppression des Clés de registre Tracing. (161) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ~ Le système a été redémarré. ---\\ Statistiques ~ Items scannés : 961 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 182 ~ End of clean in 00h42mn06s ~==================== ZHPCleaner-[R]-19092017-21_55_09.txt ZHPCleaner-[S]-19092017-20_43_21.txt