Format du document : text/plain
Prévisualisation
~ ZHPCleaner v2016.12.24.222 by Nicolas Coolman (2016/12/24)
~ Run by Tarik (Administrator) (11/01/2017 22:13:52)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version :
~ Type : Nettoyer
~ Report : C:\Users\Tarik\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Tarik\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)
---\\ Service. (0)
---\\ Navigateur internet. (0)
~ Aucun élément malicieux ou superflu trouvé.
---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (13)
---\\ Tâche planifiée. (1)
SUPPRIMÉ tâche: [AutoKMS] [C:\Windows\AutoKMS\AutoKMS.exe (Not File) ] =>HackTool.AutoKMS
---\\ Explorateur ( Dossiers, Fichiers ). (34)
DEPLACÉ fichier: C:\Program Files\KMSpico\Service_KMS.exe [ - Service_KMS] =>HackTool.KMSpico
DEPLACÉ fichier: C:\Windows\AutoKMS\AutoKMS.exe [CODYQX4 - AutoKMS] =>HackTool.AutoKMS
DEPLACÉ fichier: C:\Windows\Installer\wix{0F48C84E-8DFE-48DB-A93F-AB122AAD616D}.SchedServiceConfig.rmi =>.Superfluous.Empty
DEPLACÉ fichier: C:\Windows\Installer\wix{B6DCCCD3-520D-4485-B642-FCC136CE12C3}.SchedServiceConfig.rmi =>.Superfluous.Empty
DEPLACÉ fichier: C:\Windows\AutoKMS\AutoKMS.log =>HackTool.AutoKMS
DEPLACÉ fichier: C:\Program Files\KMSpico\KMSELDI.exe [ - KMS GUI ELDI] =>HackTool.KMSpico
DEPLACÉ fichier: C:\Program Files\KMSpico\AutoPico.exe [ - AutoPico] =>HackTool.KMSpico
DEPLACÉ dossier: C:\Program Files\KMSpico =>HackTool.KMSpico
DEPLACÉ dossier: C:\ProgramData\KMSAutoS =>HackTool.WinActivator
DEPLACÉ dossier: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
DEPLACÉ dossier: C:\Windows\AutoKMS =>HackTool.AutoKMS
DEPLACÉ dossier: C:\Windows\System32\config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\Windows\System32\config\systemprofile\AppData\Local\LavasoftTcpService =>PUP.Optional.LavasoftWebCompanion
DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\MSfree Inc =>HackTool.WinActivator
DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\PackageAware =>PUP.Optional.BearShare
DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\Popcorn-Time-CE =>.Superfluous.PopcornTime
DEPLACÉ dossier: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\LavasoftTcpService =>PUP.Optional.LavasoftWebCompanion
DEPLACÉ dossier: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
DEPLACÉ dossier: C:\ProgramData\Microsoft\Blend =>Adware.Suspect
DEPLACÉ dossier: C:\Windows\Installer\MSI2E05.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI30D5.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI3D34.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI3DA0.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI5F7D.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI91CB.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI9600.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI9814.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI9AF2.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI9B3D.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSI9DB1.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIFB33.tmp- =>.Superfluous.Empty
---\\ Base de Registres ( Clés, Valeurs, Données ). (23)
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI [C:\Program Files\KMSpico\Service_KMS.exe (Not File)] =>HackTool.KMSpico
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-312584841-1094485216-218829181-1000\SOFTWARE\APN PIP [] =>.Superfluous.Conduit
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-312584841-1094485216-218829181-1000\SOFTWARE\Distromatic [] =>PUP.Optional.AlexaTB
SUPPRIMÉ clé: HKCU\Software\APN PIP [] =>.Superfluous.Conduit
SUPPRIMÉ clé: HKCU\Software\Distromatic [] =>PUP.Optional.AlexaTB
SUPPRIMÉ clé*: HKCU\Software\AppDataLow\Software\WinToFlash Suggestor [] =>PUP.Optional.WinToFlash
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [ScriptHelperApi Class] =>Toolbar.Agent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [ScriptHelperApi Class] =>Toolbar.Agent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\KMService [] =>PUP.Optional.Office
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico_is1 [KMSpico v9.2.3] =>HackTool.KMSpico
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\PIP [] =>Toolbar.Ask
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{F20936B2-EB69-4BEB-B996-C955215BF381} [C:\Program Files\KMSpico\KMSELDI.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{085C1504-B910-4638-A8FC-049901D7D58B} [C:\Program Files\KMSpico\KMSELDI.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{1887425A-1F30-49F4-BF3C-1DA69ADB3FE7} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{FE24C69E-C1FE-4DC2-89F1-7473F200E04E} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{982651A3-AB8A-41D9-A3A9-79E1F3F39D9A} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{6ADBF0A6-74B7-488A-9986-7786B76A6207} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{47D60DC1-3EF2-49B9-A38B-CEE7707DDE5A} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{E4DB4E7A-C3A4-4F4F-A57C-93D9A24401A4} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{61669B71-734F-4317-82DF-08A7E487C411} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{87BF6448-6524-4798-A197-CCBBF9DD94B3} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico
---\\ Récapitulatif des éléments trouvés sur votre station. (17)
https://www.anti-malware.top/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS
https://www.anti-malware.top/2016/09/08/hacktool-kmspico/ =>HackTool.KMSpico
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Empty
https://www.nicolascoolman.com/fr/hijacker-windows/ =>HackTool.WinActivator
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.CrashReports
https://www.anti-malware.top/2016/04/26/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion
https://www.nicolascoolman.com/fr/pup-bearshare/ =>PUP.Optional.BearShare
https://www.anti-malware.top/2016/09/28/superfluous-popcorntime/ =>.Superfluous.PopcornTime
https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>Adware.Suspect
https://www.nicolascoolman.com/fr/toolbar-conduit/ =>.Superfluous.Conduit
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.AlexaTB
https://www.nicolascoolman.com/fr/spyware-wintoflash/ =>PUP.Optional.WinToFlash
https://www.nicolascoolman.com/fr/?p=5143 =>Toolbar.Agent
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Camec
https://www.nicolascoolman.com/fr/hijacker-office/ =>PUP.Optional.Office
https://www.anti-malware.top/2016/09/22/toolbar-ask/ =>Toolbar.Ask
---\\ Nettoyage Additionnel. (80)
~ Suppression des Clés de registre Tracing. (80)
~ Suppression des anciens rapports ZHPCleaner. (0)
---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)
---\\ Statistiques
~ Items scannés : 771
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 59
~ End of clean in 00h00mn46s
~====================
ZHPCleaner-[R]-11012017-22_14_38.txt
ZHPCleaner-[S]-11012017-22_13_07.txt