cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2015.6.27.283 by Nicolas Coolman (2015\06\27)
~ Run by Camille (Administrator) (28/06/2015 21:06:53)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Netttoyer
~ Report : C:\Users\Camille\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Camille\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
~ Windows VISTA, 32-bit Service Pack 2 (Build 6002)


---\\ Service. (0)
~ Aucun élément malicieux trouvé.


---\\ Navigateur internet. (1)
DEPLACÉ fichier: C:\Program Files\SGPSA\SearchAssistant.dll [Make The Web Better, LLC - ] (PUP.SearchAssist) [5E58968F209A4E038D42905699E145D5]


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (20)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (51)
DEPLACÉ fichier: C:\Program Files\SGPSA\SearchAssistant.dll [Make The Web Better, LLC - ] (PUP.SearchAssist)
DEPLACÉ fichier: C:\Program Files\SGPSA\ie3sh.exe [Copyright (C) 2009 - IE3SH Application] (PUP.Fbsearch)
DEPLACÉ dossier: C:\Program Files\Fast Browser Search (PUP.Fbsearch)
DEPLACÉ dossier: C:\Program Files\Fluendo (Adware.SPointer)
DEPLACÉ dossier: C:\Program Files\OfferBox (PUP.OfferBox)
DEPLACÉ dossier: C:\Program Files\Search Guard Plus (PUP.Fbsearch)
DEPLACÉ dossier: C:\Program Files\Search Guard PlusU (PUP.Fbsearch)
DEPLACÉ dossier: C:\Program Files\SGPSA (PUP.Fbsearch)
DEPLACÉ dossier: C:\Windows\Installer\MSI135F.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI2649.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI284C.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI29E3.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI2B4B.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI2EF9.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI3033.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI31E9.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI342B.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI367D.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI4677.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI4A23.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI6D6D.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI6E19.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI6F1F.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI70B0.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI71E9.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI73CD.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI75B2.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI790D.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI7ED8.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI7FF2.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI8CEC.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI9077.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI92AA.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI9884.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI998E.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI9A98.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI9B74.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI9C8E.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSI9D4A.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIAEA3.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIB29A.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIB3E2.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIB6DF.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIB8C3.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIBD08.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIBE7F.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSID55F.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIDD1A.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIE0D5.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIE47E.tmp- (Empty)
DEPLACÉ dossier: C:\Windows\Installer\MSIE698.tmp- (Empty)


---\\ Base de Registres ( Clés, Valeurs, Données ). (77)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{18EAB056-9057-F224-FD4C-1F6569C4D8D2} [http://www.plusnetwork.com/s/?q={searchTerms}&iesrc={referrer:source?}] [Ask] (Hijacker.PlusNetwork)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{19F2B849-4ADE-4d4b-85F9-C31C643DBDE9} [http://fastbrowsersearch.com/results/results.aspx?q={searchTerms}&c=web&s=DSP&v=19&tid={D4225B52-47C[...]] [Fast Browser Search] (PUP.Fbsearch)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{439C2789-0E58-4135-B1A2-4D69734CE4B0} [http://www.fastbrowsersearch.com/results/results.aspx?q={searchTerms}&c=web&s=DSP&v=19&tid={D4225B52[...]] [Fast Browser Search] (PUP.Fbsearch)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8} [http://www.searchqu.com/web?src=ieb&q={SearchTerms}] [Web Search] (Adware.Bandoo)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} [http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2269050] [DVDVideoSoftTB Customized Web Search] (PUP.Conduit)
SUPPRIMÉ clé: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} [http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2269050] [DVDVideoSoftTB Customized Web Search] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\Software\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom [C:\Program Files\OfferBox\OfferBoxChromeExtension.crx (Not File)] (PUP.OfferBox)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} [] (PUP.SearchAssist)
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} [] (PUP.SearchAssist)
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} [] (PUP.SearchAssist)
SUPPRIMÉ clé*: HKLM\Software\Classes\CLSID\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} [BrowserHelper Class] (PUP.SearchAssist)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{18EAB056-9057-F224-FD4C-1F6569C4D8D2} [http://www.plusnetwork.com/s/?q={searchTerms}&iesrc={referrer:source?}] (Hijacker.PlusNetwork)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{19F2B849-4ADE-4d4b-85F9-C31C643DBDE9} [http://fastbrowsersearch.com/results/results.aspx?q={searchTerms}&c=web&s=DSP&v=19&tid={D4225B52-47CE-405d-B613-771F95EFBAA9}] (PUP.Fbsearch)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{439C2789-0E58-4135-B1A2-4D69734CE4B0} [http://www.fastbrowsersearch.com/results/results.aspx?q={searchTerms}&c=web&s=DSP&v=19&tid={D4225B52-47CE-405d-B613-771F95EFBAA9}] (PUP.Fbsearch)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8} [http://www.searchqu.com/web?src=ieb&q={SearchTerms}] (Adware.Bandoo)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} [http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2269050] (PUP.Conduit)
SUPPRIMÉ clé: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} [http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2269050] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0 [BandooCore 1.0 Type Library] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971} [BandooCore 1.0 Type Library] (Adware.Bandoo)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\cacaoweb [C:\Users\Camille\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] (PUP.CacaoWeb)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\FBSearch [] (PUP.Fbsearch)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\FissaSearch [] (PUP.OfferBox)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\Moovida [] (Adware.SPointer)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\OfferBox [] (PUP.OfferBox)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\SGPUpdater [] (PUP.Fbsearch)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\Softonic [] (PUP.Softonic)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\Spointer [] (Adware.SPointer)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4262783951-599161281-768627045-1000\Software\YahooPartnerToolbar [] (Toolbar.YahooPartner)
SUPPRIMÉ clé: HKCU\Software\cacaoweb [C:\Users\Camille\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] (PUP.CacaoWeb)
SUPPRIMÉ clé: HKCU\Software\FBSearch [] (PUP.Fbsearch)
SUPPRIMÉ clé: HKCU\Software\FissaSearch [] (PUP.OfferBox)
SUPPRIMÉ clé: HKCU\Software\Moovida [] (Adware.SPointer)
SUPPRIMÉ clé: HKCU\Software\OfferBox [] (PUP.OfferBox)
SUPPRIMÉ clé: HKCU\Software\SGPUpdater [] (PUP.Fbsearch)
SUPPRIMÉ clé: HKCU\Software\Softonic [] (PUP.Softonic)
SUPPRIMÉ clé: HKCU\Software\Spointer [] (Adware.SPointer)
SUPPRIMÉ clé: HKCU\Software\YahooPartnerToolbar [] (Toolbar.YahooPartner)
SUPPRIMÉ clé*: HKCU\Software\AppDataLow\Software\Conduit [] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\protector_dll.protectorbho [Google Toolbar Notifier BHO] (PUP.BProtector)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1 [Google Toolbar Notifier BHO] (PUP.BProtector)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\URLSearchHook.ToolbarURLSearchHook [ToolbarURLSearchHook Class] (Adware.Softomate)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\urlsearchhook.toolbarurlsearchhook.1 [ToolbarURLSearchHook Class] (Adware.Softomate)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{4897bba6-48d9-468c-8efa-846275d7701b} [IToolbarURLSearchHook] (Adware.SocialSkinz)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5} [IGetResourceCallback] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\AppID\bandoocore.exe [] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\AppID\BHO.DLL [] (Toolbar.Agent)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.BandooCore [BandooCore Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1 [BandooCore Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr [ResourcesMngr Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1 [ResourcesMngr Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr [SettingsMngr Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1 [SettingsMngr Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr [StatisticMngr Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1 [StatisticMngr Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\PCMService.PCMSystemTrayRec [PCMSystemTrayRec Class] (Adware.CasClient)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\PCMService.PCMSystemTrayRec.1 [PCMSystemTrayRec Class] (Adware.CasClient)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SearchAssistant.BrowserHelper [BrowserHelper Class] (PUP.SearchAssist)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\SearchAssistant.BrowserHelper.1 [BrowserHelper Class] (PUP.SearchAssist)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Toolbar.CT2095689 [] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Toolbar.CT2269050 [] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644} [BandooCore] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1} [Conduit Community Alerts] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C} [BandooCore Class] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Applications\moovida.exe [] (Adware.SPointer)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Bandoo [] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Conduit [] (PUP.Conduit)
SUPPRIMÉ clé*: HKLM\SOFTWARE\OfferBox [] (PUP.OfferBox)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4e1d-BDD0-1E9C9B7799CC} [C:\Program Files\Bandoo (Not File)] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12} [C:\Program Files\Bandoo (Not File)] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A} [C:\Program Files\Bandoo (Not File)] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4fde-B055-AE7B0F4CF080} [C:\Program Files\Bandoo (Not File)] (Adware.Bandoo)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\moovida.exe [] (Adware.SPointer)
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\moovida_win32_release.exe [] (Adware.SPointer)
SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}\InprocServer32 [C:\Program Files\Conduit\Community Alerts\Alert.dll] (PUP.Conduit)
SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6}\InprocServer32 [C:\Program Files\SGPSA\SearchAssistant.dll (Not File)] (PUP.SearchAssist)
SUPPRIMÉ valeur: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\cacaoweb ["C:\Users\Camille\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer] (PUP.CacaoWeb)
SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\FBSSA [C:\Program Files\SGPSA\ie3sh.exe] (PUP.Fbsearch)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 654
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 129


End of clean at 21:08:26
===================
ZHPCleaner-[R]-28062015-21_08_26.txt
ZHPCleaner-[S]-28062015-21_06_21.txt

Publicité


Signaler le contenu de ce document

Publicité