cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2016.8.2.95 by Nicolas Coolman (2016/08/02)
~ Run by Fabien&Emilie (Administrator) (02/08/2016 20:14:23)
~ Site : https://www.nicolascoolman.com
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Users\Fabien&Emilie\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Fabien&Emilie\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (28)
DEPLACÉ fichier: C:\Windows\Temp\GUR9A3D.exe =>Heuristic.Suspect
DEPLACÉ fichier: C:\Users\Fabien&Emilie\Downloads\yesmessenger.exe [Rentabiliweb - YesMessenger] =>.Superfluous.Rentabiliweb
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage-journal =>.Superfluous.AkamaiHD
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d30ke5tqu2tkyx.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d30ke5tqu2tkyx.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.Superfluous.Atwola
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.Superfluous.Atwola
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.audienceinsights.net_0.localstorage =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.audienceinsights.net_0.localstorage-journal =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage =>PUP.Optional.ReMarkIt
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage-journal =>PUP.Optional.ReMarkIt
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.safesidetabsearch.com_0.localstorage =>PUP.Optional.Sidetab
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.safesidetabsearch.com_0.localstorage-journal =>PUP.Optional.Sidetab
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal =>PUP.Optional.Chatango
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage =>PUP.Optional.CouponTime
DEPLACÉ fichier: C:\Users\Fabien&Emilie\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage-journal =>PUP.Optional.CouponTime
DEPLACÉ dossier: C:\ProgramData\Essentware =>.Superfluous.Essentware
DEPLACÉ dossier: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime


---\\ Base de Registres ( Clés, Valeurs, Données ). (23)
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\atwola.com [] =>.Superfluous.Atwola
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.at.atwola.com [15] =>.Superfluous.Atwola
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8BCD73D9-EFDE-48A0-814D-01A8E666FB94} [Essentware] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E2949B99ECC29F428890D4A2E9EF93B [C:\Program Files\Essentware\PCKAV\engine\AvComponent.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Google Inc.] =>Heuristic.Suspect
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{16A94A89-66C4-4990-896C-5FC3E1557FFD} [TrialPolicy Class] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{16A94A89-66C4-4990-896C-5FC3E1557FFD}\InprocServer32 [C:\Program Files\Essentware\PCKAV\SharedNativeLibrary.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{2B5E8E95-F503-4530-A340-53DE89F3358F} [PSFactoryBuffer] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{2B5E8E95-F503-4530-A340-53DE89F3358F}\InprocServer32 [C:\Program Files\Essentware\PCKAV\PCKAVServicePS.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{40B50C00-06BB-415F-8F4E-6DEF53957ABA} [PCKAVShell64 Class] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{40B50C00-06BB-415F-8F4E-6DEF53957ABA}\InprocServer32 [C:\Program Files\Essentware\PCKAV\PCKAVShellExt64.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{723F0E89-F10C-4D28-A46C-934513EA963A} [RtpScanner Class] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{723F0E89-F10C-4D28-A46C-934513EA963A}\InprocServer32 [C:\Program Files\Essentware\PCKAV\engine\AvComponent.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{7A2BA8C4-F382-4DD1-A6D2-A86C6D66C4F9} [PSFactoryBuffer] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{7A2BA8C4-F382-4DD1-A6D2-A86C6D66C4F9}\InprocServer32 [C:\Program Files\Essentware\PCKAV\SharedNativeLibraryPS.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{8888A22B-3380-4C2B-950F-A5B6EC527A4B} [PSFactoryBuffer] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{8888A22B-3380-4C2B-950F-A5B6EC527A4B}\InprocServer32 [C:\Program Files\Essentware\PCKAV\engine\AvComponentPS.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{B462C1CA-E368-4321-B0B1-0453E4AB6FDB} [SecurityCenter Class] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{B462C1CA-E368-4321-B0B1-0453E4AB6FDB}\InprocServer32 [C:\Program Files\Essentware\PCKAV\engine\AvComponent.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{DEE0443A-95B1-41DF-B50A-409FDEA53644} [AviraGlobal Class] =>.Superfluous.Essentware
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{DEE0443A-95B1-41DF-B50A-409FDEA53644}\InprocServer32 [C:\Program Files\Essentware\PCKAV\engine\AvComponent.dll (Not File)] =>.Superfluous.Essentware
SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task ["C:\Program Files (x86)\QuickTime\qttask.exe" -atboottime] =>Riskware.QuickTime
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\MyPC Backup.lnk [0x020000000000000000000000] =>PUP.Optional.MyPCBackup


---\\ Récapitulatif des éléments trouvés sur votre station. (14)
https://www.anti-malware.top/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect
https://www.anti-malware.top/2016/05/02/superfluous-rentabiliweb/ =>.Superfluous.Rentabiliweb
https://www.nicolascoolman.fr/?p=5145 =>.Superfluous.AkamaiHD
https://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CloudfrontNet
https://www.anti-malware.top/2016/07/21/superfluous-atwola/ =>.Superfluous.Atwola
https://www.nicolascoolman.fr/?p=5145 =>.Superfluous.AudienceInsights
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic
https://www.nicolascoolman.fr/?p=398 =>PUP.Optional.ReMarkIt
https://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Sidetab
https://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Chatango
https://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CouponTime
https://www.anti-malware.top/2016/05/03/superfluous-essentware/ =>.Superfluous.Essentware
https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
https://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup


---\\ Nettoyage Additionnel. (12)
~ Suppression des Clés de registre Tracing. (10)
~ Suppression des anciens rapports ZHPCleaner. (2)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 506
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 51


~ End of clean in 00h00mn38s
~====================
ZHPCleaner-[R]-02082016-20_15_01.txt
ZHPCleaner-[R]-23012016-11_24_52.txt
ZHPCleaner-[S]-02082016-20_13_43.txt

Publicité


Signaler le contenu de ce document

Publicité