~ ZHPCleaner v2014.12.20.267 by Nicolas Coolman (20/12/2014) ~ Run by Rambaud (Administrator) (20/12/2014 22:07:40) ~ Forum : http://forum.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Réparer ~ Report : C:\Users\Rambaud\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Rambaud\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Windows 7, 64-bit Service Pack 1 (Build 7601) ---\\ Service. (5) SERVICE ARRETÉ : ccsvc_1.10.0.4 (PUP.ClickCaption) SERVICE ARRETÉ : ClaraUpdater (Adware.SupTab) SERVICE ARRETÉ : PCSUService (Rogue.PCSpeedUp) SERVICE ARRETÉ : serverca (Adware.Pirrit) SERVICE ARRETÉ : WindowsMangerProtect (PUP.Fuyu) ---\\ Navigateur internet. (65) REMPLACÉ Proxy: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride ( <-loopback> ) REMPLACÉ PARAMS: ProxyServer [http=127.0.0.1:50384;https=127.0.0.1:50384] (Hijacker.Proxy) REMPLACÉ PARAMS: ProxyEnable ( 1 ) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Amazon.lnk ( --sienium-shortcut http://www.amazon.com --location=1) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Facebook.lnk ( --sienium-shortcut https://www.facebook.com/ --location=1) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Hotmail.lnk ( --sienium-shortcut https://www.hotmail.com --location=1) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Internet Explorer.lnk (http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Search.lnk ( --sienium-shortcut https://www.google.com --location=1) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Wikipedia.lnk ( --sienium-shortcut http://www.wikipedia.org --location=1) REMPLACÉ Desktop: C:\Users\Rambaud\Desktop\Youtube.lnk ( --sienium-shortcut https://www.youtube.com --location=1) REMPLACÉ Quicklaunch: C:\Users\Rambaud\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk (http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX) REMPLACÉ TaskBar: C:\Users\Rambaud\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk (http://tikotin.com) REMPLACÉ TaskBar: C:\Users\Rambaud\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk (http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX) REMPLACÉ TaskBar: C:\Users\Rambaud\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk (http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX) REMPLACÉ Desktop: C:\Users\Public\Desktop\Google Chrome.lnk (http://tikotin.com) REMPLACÉ Desktop: C:\Users\Public\Desktop\Mozilla Firefox.lnk (http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX) REMPLACÉ SystemTools: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk (http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL ( hxxp://tikotin.com ) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page ( hxxp://tikotin.com ) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page ( hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd[...] ) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar ( hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd[...] ) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL ( hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd[...] ) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant ( hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd[...] ) REMPLACÉ IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchUrl\\Default ( hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd[...] ) REMPLACÉ IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Default_Page_URL ( hxxp://isearch.omiga-plus.com/?type=hp&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X[...] ) REMPLACÉ IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Default_Search_URL ( hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349[...] ) REMPLACÉ IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Start Page ( hxxp://isearch.omiga-plus.com/?type=hp&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X[...] ) REMPLACÉ IE Params: HKLM64\SOFTWARE\Microsoft\Internet Explorer\MAIN\\Search Page ( hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349[...] ) REMPLACÉ IE Params: HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Default_Page_URL ( hxxp://isearch.omiga-plus.com/?type=hp&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X[...] ) REMPLACÉ IE Params: HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Default_Search_URL ( hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349[...] ) REMPLACÉ IE Params: HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Start Page ( hxxp://isearch.omiga-plus.com/?type=hp&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X[...] ) REMPLACÉ IE Params: HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\\Search Page ( hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349[...] ) REMPLACÉ Firefox: [8tzb87m2.default] URL HomePage : hxxp://tikotin.com REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.m[...] (PUP.Monetization) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.crossrider.bic", "14a6916f8d0c7e63356fbe35f4cbdf87"); (PUP.CrossRider) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.DockingPositionDown", false); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.SmartbarDisabled", false); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.SmartbarStateMinimaized", false); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.Visibility", false); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.backPageCapacity", 3); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.backPageCounter", 0); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.backPageDay", 20); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.backPageLastEvent", "1418930590826"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.backPageMinInterval", 15); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.barcodeid", "148594"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.countryiso", "fr"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.downloadprovider", "ob_119_ch"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.fromautoupdate", "false"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.installationid", "3ff1b4ea-31d3-daf6-c596-f7ca4619d8fd"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.installdate", "20/12/2014"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.iswinxp", "false"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.keepAliveLastevent", "1419103390"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.helperbar.publisher", "shoppinghelper"); (PUP.HelperBar) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.quick_start.enable_search1", false); (PUP.QuickStart) REMPLACÉ: [8tzb87m2.default] - user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); (PUP.QuickStart) DEPLACÉ fichier: C:\Program Files (x86)\HQProVideo 1.6V20.12\HQProVideo 1.6V20.12-bho64.dll [HQProVideoV20.12 - HQProVideo 1.6V20.12 BHO] (PUP.CrossRider) SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10\@staging.google.com/globalUpdate Update;version=10 (PUP.GlobalUpdate) SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4\@staging.google.com/globalUpdate Update;version=4 (PUP.GlobalUpdate) ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (8) SUPPRIMÉ tâche: [APSnotifierPP1] [C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe ] (PUP.AnyProtect) SUPPRIMÉ tâche: [APSnotifierPP2] [C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe ] (PUP.AnyProtect) SUPPRIMÉ tâche: [APSnotifierPP3] [C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe ] (PUP.AnyProtect) SUPPRIMÉ tâche: [globalUpdateUpdateTaskMachineCore] [C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe ] (PUP.GlobalUpdate) SUPPRIMÉ tâche: [globalUpdateUpdateTaskMachineCore] [C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe ] (PUP.GlobalUpdate) SUPPRIMÉ tâche: [PC SpeedUp Service Deactivator] [C:\Program Files (x86)\Accelerer PC\PCSUSD.exe ] (Rogue.PCSpeedUp) SUPPRIMÉ tâche: [Run_Bobby_Browser] [C:\Users\Rambaud\AppData\Local\BoBrowser\Application\bobrowser.exe ] (PUP.BoBrowser) SUPPRIMÉ tâche: [WindApp Update] [C:\Users\Rambaud\AppData\Roaming\Store\WindApp\WindApp Update.exe ] (PUP.Nosibay) ---\\ Explorateur ( Dossiers, Fichiers ). (124) DEPLACÉ fichier: C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe [ClaraLabs - ClaraUpdater] (Adware.SupTab) DEPLACÉ fichier: C:\Program Files (x86)\Accelerer PC\PCSUService.exe (Rogue.PCSpeedUp) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\ConvertAd\CASrv.exe (Adware.Pirrit) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Roaming\MKDWNTET.exe [HQProVideoV20.12 - HQProVideo 1.6V20.12 exe] (Adware.Pirrit) DEPLACÉ fichier: C:\Windows\Tasks\MKDWNTET.job (Adware.Pirrit) DEPLACÉ fichier: C:\Windows\System32\Tasks\MKDWNTET (Adware.Pirrit) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Roaming\TOSWXS.exe [HQProVideoV20.12 - HQProVideo 1.6V20.12 exe] (Adware.Pirrit) DEPLACÉ fichier: C:\Windows\Tasks\TOSWXS.job (Adware.Pirrit) DEPLACÉ fichier: C:\Windows\System32\Tasks\TOSWXS (Adware.Pirrit) DEPLACÉ fichier: C:\Program Files (x86)\Accelerer PC\PCSUNotifier.exe (Rogue.PCSpeedUp) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\wincheck\wincheck.exe (PUP.Wincheck) SUPPRIMÉ fichier: [APSnotifierPP1] [ - ] C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (PUP.AnyProtect) SUPPRIMÉ fichier: [globalUpdateUpdateTaskMachineCore] [ - ] C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe (PUP.GlobalUpdate) SUPPRIMÉ fichier: [PC SpeedUp Service Deactivator] [ - ] C:\Program Files (x86)\Accelerer PC\PCSUSD.exe (Rogue.PCSpeedUp) SUPPRIMÉ fichier: [Run_Bobby_Browser] [ - ] C:\Users\Rambaud\AppData\Local\BoBrowser\Application\bobrowser.exe (PUP.BoBrowser) SUPPRIMÉ fichier: [WindApp Update] [ - ] C:\Users\Rambaud\AppData\Roaming\Store\WindApp\WindApp Update.exe (PUP.Nosibay) DEPLACÉ fichier: C:\Windows\Tasks\7933eea2-0685-4ba5-9a72-aec5b331c2f6-1.job (PUP.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\7933eea2-0685-4ba5-9a72-aec5b331c2f6-2.job (PUP.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\7933eea2-0685-4ba5-9a72-aec5b331c2f6-4.job (PUP.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\7933eea2-0685-4ba5-9a72-aec5b331c2f6-5.job (PUP.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\7933eea2-0685-4ba5-9a72-aec5b331c2f6-5_user.job (PUP.CrossRider) DEPLACÉ fichier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6-2.exe (PUP.CrossRider) DEPLACÉ fichier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6-4.exe (PUP.CrossRider) DEPLACÉ fichier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6-5.exe (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\AnyProtectEx (PUP.AnyProtect) DEPLACÉ dossier: C:\Program Files (x86)\AnyProtectEx\product.guid [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Program Files (x86)\AnyProtectEx\Uninstall.exe [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Program Files (x86)\ClickCaption_1.10.0.4 (PUP.ClickCaption) DEPLACÉ dossier: C:\Program Files (x86)\ClickCaption_1.10.0.4\3rd Party Licenses [ - ] (PUP.ClickCaption) DEPLACÉ dossier: C:\Program Files (x86)\ClickCaption_1.10.0.4\Service [ - ] (PUP.ClickCaption) DEPLACÉ dossier: C:\Program Files (x86)\ClickCaption_1.10.0.4\terms-of-service.rtf [ - ] (PUP.ClickCaption) DEPLACÉ dossier: C:\Program Files (x86)\ClickCaption_1.10.0.4\Uninstall.exe [ - ] (PUP.ClickCaption) DEPLACÉ dossier: C:\Program Files (x86)\globalUpdate (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Program Files (x86)\globalUpdate\CrashReports [ - ] (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Program Files (x86)\globalUpdate\Update [ - ] (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12 (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6-2.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6-4.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6-5.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\7933eea2-0685-4ba5-9a72-aec5b331c2f6.xpi [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\background.html [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\HQProVideo 1.6V20.12-bg.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\HQProVideo 1.6V20.12-bho.dll [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\HQProVideo 1.6V20.12-codedownloader.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\HQProVideo 1.6V20.12.ico [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\Uninstall.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\HQProVideo 1.6V20.12\utils.exe [ - ] (PUP.CrossRider) DEPLACÉ dossier: C:\Program Files (x86)\PepperZip (PUP.PepperZip) DEPLACÉ dossier: C:\Program Files (x86)\PepperZip\pepperzip.dll [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\Program Files (x86)\PepperZip\PepperZip.exe [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\Program Files (x86)\PepperZip\PepperZip.url [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\Program Files (x86)\PepperZip\shell [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\Program Files (x86)\PepperZip\uninst.exe [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\Program Files (x86)\Wajam (PUP.Wajam) DEPLACÉ dossier: C:\Program Files (x86)\Wajam\uninstall.exe [ - ] (PUP.Wajam) DEPLACÉ dossier: C:\Program Files (x86)\Common Files\ClaraUpdater (Adware.SupTab) DEPLACÉ dossier: C:\ProgramData\IePluginServices (Trojan.SProtector) DEPLACÉ dossier: C:\ProgramData\IePluginServices\PluginService.exe [ - ] (Trojan.SProtector) DEPLACÉ dossier: C:\ProgramData\TVWizard (PUP.TVWizard) DEPLACÉ dossier: C:\ProgramData\TVWizard\app.dat [ - ] (PUP.TVWizard) DEPLACÉ dossier: C:\ProgramData\TVWizard\data.dat [ - ] (PUP.TVWizard) DEPLACÉ dossier: C:\ProgramData\TVWizard\TvWizard.ico [ - ] (PUP.TVWizard) DEPLACÉ dossier: C:\ProgramData\TVWizard\Uninstall.exe [ - ] (PUP.TVWizard) DEPLACÉ dossier: C:\ProgramData\WindowsMangerProtect (PUP.Fuyu) DEPLACÉ dossier: C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [ - ] (PUP.Fuyu) DEPLACÉ dossier: C:\ProgramData\WindowsMangerProtect\update [ - ] (PUP.Fuyu) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC (Rogue.PCSpeedUp) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC\Accelerer PC.lnk [ - ] (Rogue.PCSpeedUp) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC\Désinstaller Accelerer PC.lnk [ - ] (Rogue.PCSpeedUp) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP (Adware.GamesDesktop) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP\GamesDesktop.lnk [ - ] (Adware.GamesDesktop) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip (PUP.PepperZip) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip\PepperZip.lnk [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip\Uninstall.lnk [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip\Website.lnk [ - ] (PUP.PepperZip) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\AnyProtectEx (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\AnyProtectEx\installer [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\AnyProtectEx\language [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\AnyProtectEx\logs [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\AnyProtectEx\scan_results [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\AnyProtectEx\swf [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Nosibay (Adware.SPointer) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\VOPackage (Adware.Downware) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\VOPackage\VOPackage.exe [ - ] (Adware.Downware) DEPLACÉ dossier: C:\Users\Rambaud\Documents\Optimizer Pro (PUP.OptimizerPro) DEPLACÉ dossier: C:\Users\Rambaud\Documents\Optimizer Pro\CookiesException.txt [ - ] (PUP.OptimizerPro) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup\AnyProtect.lnk [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup\Uninstall.lnk [ - ] (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip (PUP.PepperZip) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage (Adware.Downware) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage\Configure.lnk [ - ] (Adware.Downware) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\ConvertAd (Adware.Pirrit) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\ConvertAd\carunasu.exe [ - ] (Adware.Pirrit) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\ConvertAd\ConvertAd.exe [ - ] (Adware.Pirrit) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\ConvertAd\Uninstall.exe [ - ] (Adware.Pirrit) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\globalUpdate (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\globalUpdate\CrashReports [ - ] (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\TVWizard (PUP.TVWizard) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\wincheck (PUP.Wincheck) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Local\wincheck\Uninstall.exe [ - ] (PUP.Wincheck) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Roaming\Bubble Dock.boostrap.log[] (PUP.BubbleDock) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Roaming\Bubble Dock.installation.log[] (PUP.BubbleDock) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Roaming\WindApp.boostrap.log[] (PUP.Nosibay) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Roaming\WindApp.installation.log[] (PUP.Nosibay) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fr.reimageplus.com_0.localstorage[] (Rogue.ReimageRepair) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_fr.reimageplus.com_0.localstorage-journal[] (Rogue.ReimageRepair) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal[] (PUP.SpecialSavings) DEPLACÉ fichier: C:\ProgramData\fpXLwRlOn\UlNIiEqk.exe [Small Island Development - TVWizard Service] (PUP.SmallIsland) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\goopdate.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\goopdateres_en.dll [globalUpdate - globalUpdate Update Resource DLL] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\npGoogleUpdate4.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\psmachine.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\psuser.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\t7145FFC5-EF2C-4750-9CC6-B934D573F69Bmp\tmp\wpm_v20.0.0.1277_.exe [Fuyu LIMITED - WindowsProtectManger Service] (PUP.Fuyu) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\is45637729\1645852_stp\clickcaption-setup-1.10.0.4.exe [ClickCaption - Click Caption Setup] (PUP.ClickCaption) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\GoogleCrashHandler.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\GoogleUpdate.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\GoogleUpdateBroker.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\comh.335508\GoogleUpdateOnDemand.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\97c5351c-b596-4954-ab70-9cb1f313a5e1\lly_omiga-plus.exe [JWTab - Tab Syn] (Hijacker.WebsSearches) DEPLACÉ fichier: C:\Users\Rambaud\AppData\Local\Temp\66dfdf93-9b48-4538-8dca-0a346dfb18ec\1e98c05b-cc7d-4c31-8668-7ded630d6070.exe [ClaraLabs - ClaraSetup] (PUP.BoBrowser) DEPLACÉ fichier: C:\END (Toolbar.Conduit) DEPLACÉ dossier: C:\Users\Rambaud\AppData\Roaming\Store (PUP.Nosibay) ---\\ Base de Registres ( Clés, Valeurs, Données ). (134) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\ccsvc_1.10.0.4 ["C:\Program Files (x86)\ClickCaption_1.10.0.4\Service\ccsvc.exe"] (PUP.ClickCaption) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\ClaraUpdater [C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe] (Adware.SupTab) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate [C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /svc] (PUP.GlobalUpdate) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem [C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /medsvc] (PUP.GlobalUpdate) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\PCSUService [C:\Program Files (x86)\Accelerer PC\PCSUService.exe] (Rogue.PCSpeedUp) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\serverca [C:\Users\Rambaud\AppData\Local\ConvertAd\CASrv.exe] (Adware.Pirrit) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect [C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service] (PUP.Fuyu) SUPPRIMÉ clé: HKCU\Software\InstallCore\1I1T1Q1S [] (Heuristic.InstallCore) SUPPRIMÉ clé: HKCU\Software\InstallCore\Uninstall [] (Heuristic.InstallCore) SUPPRIMÉ: HKCR\CLSID\{11111111-1111-1111-1111-110611171162} [HQProVideo 1.6V20.12] (PUP.CrossRider) SUPPRIMÉ: [X64] HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171162} [255ab810f328013182ce5118752c52d60061762] (PUP.CrossRider) SUPPRIMÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171162} [255ab810f328013182ce5118752c52d60061762] (PUP.CrossRider) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} [http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd4FKxv_7MsGJK7UHchSaBWw86HL0EE-lauIFbgsw3scAh0jcEQrJNEr_lQKCJMPT9PydUmDizUF0WHiHQDZ5OYyqmbU5H85uXG7Wh0eFCVRKzvsbl4PoyzyTvjknQ,,&q={searchTerms}] [Web Search] (Hijacker.SmartBar) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} [http://isearch.omiga-plus.com/web/?type=ds&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX&q={searchTerms}] [omiga-plus] (Hijacker.OmigaPlus) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5} [http://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_l4MkPpONrsnaOqRYTCJ8HEP8FIXwd4FKxv_7MsGJK7UHchSaBWw86HL0EE-lauIFbgsw3scAh0jcEQrJNEr_lQKCJMPT9PydUmDizUF0WHiHQDZ5OYyqmbU5H85uXG7Wh0eFCVRKzvsbl4PoyzyTvjknA,,&q={searchTerms}] [Web Search] (Hijacker.SmartBar) SUPPRIMÉ clé: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Browser Infrastructure Helper [C:\Users\Rambaud\AppData\Local\Smartbar\Application\Smartbar.exe startup] (PUP.QuickShare) SUPPRIMÉ clé: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\WindApp ["C:\Users\Rambaud\AppData\Roaming\Store\WindApp\WindApp.exe" /winstartup] (PUP.Nosibay) SUPPRIMÉ clé: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\PCSpeedUp [C:\Program Files (x86)\Accelerer PC\PCSUNotifier.exe] (Rogue.PCSpeedUp) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_20 ["C:\Program Files (x86)\gmsd_fr_20\gmsd_fr_20.exe"] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\WinCheck [C:\Users\Rambaud\AppData\Local\wincheck\wincheck.exe] (PUP.Wincheck) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_21 ["C:\Program Files (x86)\gmsd_fr_21\gmsd_fr_21.exe"] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\upgmsd_fr_20.exe [C:\Users\Rambaud\AppData\Local\gmsd_fr_20\upgmsd_fr_20.exe -runonce -addpck] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\upgmsd_fr_21.exe [C:\Users\Rambaud\AppData\Local\gmsd_fr_20\upgmsd_fr_21.exe -runonce] (PUP.CrossRider) SUPPRIMÉ clé: HKCR\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} [Shopping Helper SmartbarEngine] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} [globalUpdate Update Plugin] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} [IESmartBar.SmartbarDisplayState] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} [globalUpdate.OneClickProcessLauncher] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} [IESmartBar.BandObjectAttribute] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} [Shopping Helper Smartbar] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} [globalUpdate Update Plugin] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} [IESmartBar.SmartbarMenuForm] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} [IESmartBar.DockingPanel] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} [IESmartBar.IESmartBarBandObject] (Hijacker.SmartBar) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{100EB1FD-D03E-47FD-81F3-EE91287F9465} [ShopperReports.dll] (Adware.ShopperReports) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{258C9770-1713-4021-8D7E-1F184A2BD754} [ShoppingReport.dll] (Adware.ShoppingReport) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B} [BabylonToolbar.dll] (PUP.Babylon) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} [BabylonToolbar.dll] (PUP.Babylon) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC} [BabylonToolbarTlbr.dll] (PUP.Babylon) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{BDEA95CF-F0E6-41E0-BD3D-B00F39A4E939} [ShoppingReport.dll] (Adware.ShoppingReport) REMPLACÉ donnée: HKLM\...\FIREFOX.EXE\Shell\open\Command\\"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX (Hijacker.OmigaPlus) REMPLACÉ donnée: HKLM\...\IEXPLORE.EXE\Shell\open\Command\\C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1419102049&from=tugs&uid=HGSTXHTS545050A7E380_TE854349H42X5RH42X5RX (Hijacker.OmigaPlus) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611171162} [HQProVideo 1.6V20.12] (PUP.CrossRider) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172262} [255ab810f328013182ce5118752c52d60061762.Sandbox] (PUP.CrossRider) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175562} [ICrossriderBHO] (PUP.CrossRider) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176662} [ISandBox] (PUP.CrossRider) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174462} [] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220622172262} [255ab810f328013182ce5118752c52d60061762.Sandbox] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550655175562} [ICrossriderBHO] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660666176662} [ISandBox] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\4b005427-7b95-3e09-b516-ee495af0be43 [] (PUP.CrossRider) SUPPRIMÉ clé: HKCU\Software\Mozilla\Extends [] (PUP.FastStart) SUPPRIMÉ clé: HKCR\globalUpdate.OneClickCtrl.10 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdate.OneClickProcessLauncherMachine [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdate.OneClickProcessLauncherMachine.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CoCreateAsync [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CoCreateAsync.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CoreClass [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CoreClass.1 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CoreMachineClass [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CoreMachineClass.1 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CredentialDialogMachine [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.CredentialDialogMachine.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.OnDemandCOMClassMachine [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.OnDemandCOMClassMachine.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.OnDemandCOMClassMachineFallback [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.OnDemandCOMClassSvc [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.OnDemandCOMClassSvc.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.ProcessLauncher [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.ProcessLauncher.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3COMClassService [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3COMClassService.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3WebMachine [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3WebMachine.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3WebMachineFallback [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3WebMachineFallback.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3WebSvc [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\globalUpdateUpdate.Update3WebSvc.1.0 [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCR\IESmartBar.BandObjectAttribute [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\IESmartBar.BHO [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\IESmartBar.DockingPanel [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\IESmartBar.IESmartBar [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\IESmartBar.IESmartBarBandObject [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\IESmartBar.SmartbarDisplayState [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCR\IESmartBar.SmartbarMenuForm [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCU\Software\AnyProtect [] (PUP.AnyProtect) SUPPRIMÉ clé: HKCU\Software\BoBrowser [] (PUP.BoBrowser) SUPPRIMÉ clé: HKCU\Software\globalUpdate [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCU\Software\InstallCore [] (Adware.InstallCore) SUPPRIMÉ clé: HKCU\Software\InstalledBrowserExtensions [] (Adware.VidSaver) SUPPRIMÉ clé: HKCU\Software\Nosibay [] (Adware.SPointer) SUPPRIMÉ clé: HKCU\Software\Optimizer Pro [] (PUP.OptimizerPro) SUPPRIMÉ clé: HKCU\Software\Smartbar [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCU\Software\SmartbarBackup [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCU\Software\SmartbarLog [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKCU\Software\Speedchecker Limited [] (PUP.InternetSpeedChecker) SUPPRIMÉ clé: HKCU\Software\SupHpUISoft [] (PUP.CrossRider) SUPPRIMÉ clé: HKCU\Software\Tutorials [] (PUP.AgenceExclusive) SUPPRIMÉ clé: HKCU\Software\TutoTag [] (PUP.AgenceExclusive) SUPPRIMÉ clé: HKCU\Software\AppDataLow\Software\Crossrider [] (PUP.CrossRider) SUPPRIMÉ clé: HKCU\Software\AppDataLow\Software\HQProVideo 1.6V20.12 [] (PUP.CrossRider) SUPPRIMÉ clé: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\BoBrowser [BoBrowser] (PUP.BoBrowser) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\isearch.omiga-plus.com [] (Hijacker.OmigaPlus) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\omiga-plus.com [] (Hijacker.OmigaPlus) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\re-markable.net [] (PUP.Re-Markable) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searches.omiga-plus.com [] (Hijacker.OmigaPlus) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.re-markable00.re-markable.net [] (PUP.Re-Markable) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com [] (PUP.SpecialSavings) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com [] (PUP.SpecialSavings) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices [] (PUP.IePluginService) SUPPRIMÉ clé: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect [] (PUP.Fuyu) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\InstalledBrowserExtensions [] (Adware.VidSaver) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Speedchecker Limited [] (PUP.InternetSpeedChecker) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\ClickCaption_1.10.0.4 [] (PUP.ClickCaption) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP [] (Adware.GamesDesktop) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\GlobalUpdate [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\HQProVideo 1.6V20.12 [] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions [] (Adware.VidSaver) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\omiga-plusSoftware [] (Hijacker.OmigaPlus) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Speedchecker Limited [] (PUP.InternetSpeedChecker) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\SupDp [] (PUP.SupTab) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\supTab [] (PUP.SupTab) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect [] (PUP.Fuyu) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\supWPM [] (PUP.WpManager) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Tutorials [] (PUP.AgenceExclusive) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect [CMI Limited] (PUP.AnyProtect) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ClickCaption_1.10.0.4 [ClickCaption] (PUP.ClickCaption) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_20_is1 [GAMESDESKTOP] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_21_is1 [GAMESDESKTOP] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\HQProVideo 1.6V20.12 [HQProVideoV20.12] (PUP.CrossRider) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage [CMI Limited] (Adware.Downware) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\wincheck [WinCheck] (PUP.Wincheck) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Smartbar_RASAPI32 [] (Hijacker.SmartBar) SUPPRIMÉ clé: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Smartbar_RASMANCS [] (Hijacker.SmartBar) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 47973 ~ Items trouvés : 13 ~ Items réparés : 326 End of clean at 22:15:04