cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2016.4.14.55 by Nicolas Coolman (2016/04/14)
~ Run by Marie AGOSTINI (Administrator) (16/04/2016 18:46:54)
~ Site : http://www.nicolascoolman.com
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Users\Marie AGOSTINI\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Marie AGOSTINI\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)


---\\ Service. (2)
ARRETÉ : winzipersvc =>.Superfluous.WinZipper
ARRETÉ : IhPul =>PUP.Optional.Elex


---\\ Navigateur internet. (4)
REMPLACÉ Chrome Preferences: "http://www.piesearch.com/" =>PUP.Optional.PieSearch
REMPLACÉ Quicklaunch: C:\Users\Marie AGOSTINI\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk [Bad : http://www.piesearch.com/?uid=91cd794f-e1f7-4941-bd00-1b796833240b] =>Hijacker.Browser
REMPLACÉ TaskBar: C:\Users\Marie AGOSTINI\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk [Bad : http://www.piesearch.com/?uid=91cd794f-e1f7-4941-bd00-1b796833240b] =>Hijacker.Browser
REMPLACÉ Desktop: C:\Users\Public\Desktop\Google Chrome.lnk [Bad : http://www.piesearch.com/?uid=91cd794f-e1f7-4941-bd00-1b796833240b] =>Hijacker.Browser


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (15)
DEPLACÉ fichier: C:\Users\Marie AGOSTINI\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe [Copyright © 2015 - MalwareProtectionClient] =>.Superfluous.MalwareProtection
DEPLACÉ fichier: C:\Program Files (x86)\WinZipper\winzipersvc.exe [Winzipper Pvt Ltd. - Winzipper service] =>.Superfluous.WinZipper
DEPLACÉ fichier: C:\Users\Marie AGOSTINI\AppData\Roaming\TSv\TSvr.exe [tsvr.com - tsvr.com] =>PUP.Optional.Elex
DEPLACÉ fichier: C:\END =>.Superfluous.Conduit
DEPLACÉ fichier: C:\Users\Marie AGOSTINI\Downloads\setup.exe [Jawego Partners LLC - Secure PC Cleaner] =>.Superfluous.JawegoPartners
DEPLACÉ fichier: C:\Users\Marie AGOSTINI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.piesearch.com_0.localstorage =>PUP.Optional.PieSearch
DEPLACÉ fichier: C:\Users\Marie AGOSTINI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.piesearch.com_0.localstorage-journal =>PUP.Optional.PieSearch
DEPLACÉ fichier: C:\Users\Marie AGOSTINI\AppData\Local\Temp\bitool.dll [Copyright (C) 2014 - ] =>PUP.Optional.AdOffer
DEPLACÉ dossier: C:\Program Files (x86)\SearchesToYesbnd =>PUP.Optional.YesSearches
DEPLACÉ dossier: C:\Program Files (x86)\Winsere =>PUP.Optional.YesSearches
DEPLACÉ dossier: C:\Program Files (x86)\WinTaske =>PUP.Optional.YesSearches
DEPLACÉ dossier: C:\Program Files (x86)\WinZipper =>.Superfluous.WinZipper
DEPLACÉ dossier: C:\Users\Marie AGOSTINI\AppData\Roaming\eCyber =>PUP.Optional.Elex
DEPLACÉ dossier: C:\Users\Marie AGOSTINI\AppData\Local\MalwareProtectionLive =>.Superfluous.MalwareProtection
DEPLACÉ dossier: C:\Users\Marie AGOSTINI\AppData\Roaming\Tsv =>PUP.Optional.Elex


---\\ Base de Registres ( Clés, Valeurs, Données ). (46)
REMPLACÉ donnée: HKLM\...\IEXPLORE.EXE\Shell\open\Command\\C:\Program Files\Internet Explorer\iexplore.exe http://www.piesearch.com/?uid=91cd794f-e1f7-4941-bd00-1b796833240b =>PUP.Optional.PieSearch
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\winzipersvc [C:\Program Files (x86)\WinZipper\winzipersvc.exe (Not File)] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\IhPul [C:\Users\Marie AGOSTINI\AppData\Roaming\TSv\TSvr.exe (Not File)] =>PUP.Optional.Elex
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.001 [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.7z [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.arj [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.bz2 [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.bzip2 [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.cab [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.cpio [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.deb [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.dmg [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.fat [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.gz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.gzip [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.hfs [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.iso [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.lha [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.lzh [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.lzma [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.ntfs [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.rar [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.rpm [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.squashfs [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.swm [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tar [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.taz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tbz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tbz2 [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tgz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tpz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.txz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.vhd [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.wim [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.xar [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.xz [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.z [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.zip [WinZip] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\winzipersvc [] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\WinZiper [] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\yessearchesSoftware [] =>PUP.Optional.YesSearches
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MalwareProtectionLive [Malware Protection Live] =>.Superfluous.MalwareProtection
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WinZip [Winzipper Pvt Ltd.] =>.Superfluous.WinZipper
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{DC638EEA-2BA2-4459-9C46-85A2F0BE6040} [wzShellContextMenu Class] =>.Superfluous.WinZipper
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{DC638EEA-2BA2-4459-9C46-85A2F0BE6040}\InprocServer32 [C:\Program Files (x86)\WinZipper\wzShellctx64.dll (Not File)] =>.Superfluous.WinZipper
SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\MalwareProtectionLive [C:\Users\Marie AGOSTINI\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe] =>.Superfluous.MalwareProtection


---\\ Récapitulatif des éléments trouvés sur votre station. (9)
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.WinZipper
http://www.nicolascoolman.fr/?p=996 =>PUP.Optional.Elex
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PieSearch
http://www.nicolascoolman.fr/hijacker-browser/ =>Hijacker.Browser
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.MalwareProtection
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.JawegoPartners
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.AdOffer
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.YesSearches


---\\ Nettoyage Additionnel. (24)
~ Suppression des Clés de registre Tracing. (24)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 244
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 67


~ End of clean in 00h00mn54s
===================
ZHPCleaner-[R]-16042016-18_47_48.txt
ZHPCleaner-[S]-16042016-18_46_24.txt

Publicité


Signaler le contenu de ce document

Publicité