cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.4.2.58 by Nicolas Coolman (2017/04/02)
~ Run by Woom (Administrator) (03/04/2017 18:57:19)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Users\Woom\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Woom\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Fichier hôte. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Tâche planifiée. (1)
SUPPRIMÉ tâche: [JXXACJEFNP] [C:\ProgramData\fb85f4690d1a44e1bc7ba5ba794e7d75\fb85f4690d1a44e1bc7ba5ba794e7d75.exe (Not File) ] =>Heuristic.CrossRider


---\\ Explorateur ( Dossiers, Fichiers ). (66)
DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\Npchrome\npchrome.dll [Tencent - QQ2013 Chrome Plugin for Chrome V23.0.1271.] =>.Superfluous.Tencent
DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\NPQSCALL\npqscall.dll [Tencent - QQ2013 Firefox Plugin] =>.Superfluous.Tencent
DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.2.1\bin\npSSOAxCtrlForPTLogin.dll [Tencent - QQ QuickLogin Helper] =>.Superfluous.Tencent
DEPLACÉ fichier: C:\Users\Woom\AppData\Roaming\gameboxsetup.exe [Copyright © 2014-2017 Oasgames,Inc - NarutoOnline] =>Adware.Pirrit
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\3204.tmp.node =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\3776.tmp.node =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\384E.tmp.node =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\532A.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\532A.tmp.zip =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\535A.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\5445.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\560B.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\6691.tmp.node =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\CFG6942.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\CFGAD15.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\CProgram Files (x86)Opera43.0.2442.1144opera_autoupdate.download.lock =>.Superfluous.Temporary.Opera
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\CProgram Files (x86)Opera43.0.2442.1144opera_autoupdate.metrics.lock =>.Superfluous.Temporary.Opera
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\DB48.tmp.node =>.Superfluous.Temporary.Empty
DEPLACÉ fichier^: C:\Users\Woom\AppData\Local\Temp\etilqs_3qV4NjF6R8frWp0 =>.Superfluous.Temporary.Empty
DEPLACÉ fichier^: C:\Users\Woom\AppData\Local\Temp\etilqs_moqUUI0OVkJWeKH =>.Superfluous.Temporary.Empty
DEPLACÉ fichier^: C:\Users\Woom\AppData\Local\Temp\etilqs_njCqOJGhRUl9Fwy =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\F76E.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\F76E.tmp.zip =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\F7BD.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\F9B1.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\FAAA.tmp.node =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\FB77.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\LdeviceMgr.log =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\LuUpdater.log =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\MorphVOX_Pro_20170401183356.log =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\MorphVOX_Pro_20170401183356_000_MVMSI.log =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\operation_log.txt =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\opera_crashreporter.log =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\sna1180.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\sna7958.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\snaD780.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\tujF912.tmp =>.Superfluous.Temporary.Empty
DEPLACÉ fichier^: C:\Users\Woom\AppData\Local\Temp\~DF2A5BAD9F2346AC83.TMP =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Temp\~DF85E1F969DD5AB4B0.TMP =>.Superfluous.Temporary.Empty
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_morphvox-voice-changer.fr.softonic.com_0.localstorage =>.Superfluous.Softonic
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_morphvox-voice-changer.fr.softonic.com_0.localstorage-journal =>.Superfluous.Softonic
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_qq-messenger.fr.softonic.com_0.localstorage =>.Superfluous.Softonic
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_qq-messenger.fr.softonic.com_0.localstorage-journal =>.Superfluous.Softonic
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.lyrics.wikia.com_0.localstorage =>PUP.Optional.AddLyrics
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.lyrics.wikia.com_0.localstorage-journal =>PUP.Optional.AddLyrics
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Users\Woom\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.Superfluous.AudienceInsights
DEPLACÉ fichier: C:\Program Files (x86)\Tencent\QQIntl\Bin\QQ.exe [Tencent - QQ International] =>.Superfluous.Tencent
DEPLACÉ fichier: C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe [Tencent - 腾讯高速下载引擎] =>.Superfluous.Tencent
DEPLACÉ dossier: C:\Program Files (x86)\Freemake =>.Superfluous.Empty
DEPLACÉ dossier: C:\Program Files (x86)\Tencent =>.Superfluous.Tencent
DEPLACÉ dossier: C:\Program Files (x86)\Common Files\Tencent =>.Superfluous.Tencent
DEPLACÉ dossier: C:\Users\Public\Documents\Tencent =>.Superfluous.Tencent
DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software =>.Superfluous.Tencent
DEPLACÉ dossier: C:\windows\System32\config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\Users\Woom\AppData\Roaming\Tencent =>.Superfluous.Tencent
DEPLACÉ dossier: C:\Users\Woom\Documents\Tencent Files =>.Superfluous.Tencent
DEPLACÉ dossier: C:\Users\Woom\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\Users\Default\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\Users\Default User\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\windows\SysWOW64\config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports
DEPLACÉ dossier: C:\windows\Installer\MSI3393.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\windows\Installer\MSI81DF.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\windows\Installer\MSI851B.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\windows\Installer\MSI9C32.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\windows\Installer\MSIA4C4.tmp- =>.Superfluous.Empty


---\\ Base de Registres ( Clés, Valeurs, Données ). (14)
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/npchrome [] =>.Superfluous.Tencent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/npqscall [] =>.Superfluous.Tencent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@qq.com/TXSSO [Tencent] =>.Superfluous.Tencent
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297191282-3261169449-934711237-1001\SOFTWARE\Tencent [] =>.Superfluous.Tencent
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297191282-3261169449-934711237-1001\SOFTWARE\Classes\Tencent [] =>.Superfluous.Tencent
SUPPRIMÉ clé: HKCU\Software\Tencent [] =>.Superfluous.Tencent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Tencent [TencentProtocol] =>.Superfluous.Tencent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Tencent [] =>.Superfluous.Tencent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3CA54984-A14B-42FE-9FF1-7EA90151D725} [Tencent Technology(Shenzhen) Company Limited] =>.Superfluous.Tencent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FA39976-7194-44E8-8DD9-A9781D289934} [C:\Program Files (x86)\Tencent\QQIntl\Plugin\Com.Tencent.QQPet\bin\QQPet (Not File)] =>.Superfluous.Tencent
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{323B1EBB-DDF0-4E08-BC55-7991F8E3A47B} [C:\Program Files (x86)\Tencent\QQIntl\Bin\QQ.exe] =>.Superfluous.Tencent
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{C7BE5367-E601-4178-B600-C5E579FFE8AC} [C:\Program Files (x86)\Tencent\QQIntl\Bin\QQ.exe] =>.Superfluous.Tencent
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{69879CF9-0722-4F91-80B4-6AE5426E09BE} [C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe] =>.Superfluous.Tencent
SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{5126F620-52C9-497D-8718-2A9920EDA1D8} [C:\Program Files (x86)\Common Files\Tencent\QQDownload\119\Tencentdl.exe] =>.Superfluous.Tencent


---\\ Récapitulatif des éléments trouvés sur votre station. (10)
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Heuristic.CrossRider
https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.Superfluous.Tencent
https://nicolascoolman.eu/2017/02/25/adware-pirrit/ =>Adware.Pirrit
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary.Empty
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary.Opera
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Softonic
https://nicolascoolman.eu/2017/02/24/pup-optional-addlyrics/ =>PUP.Optional.AddLyrics
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AudienceInsights
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Empty
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.CrashReports


---\\ Nettoyage Additionnel. (26)
~ Suppression des Clés de registre Tracing. (24)
~ Suppression des anciens rapports ZHPCleaner. (2)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Le système a été redémarré.


---\\ Statistiques
~ Items scannés : 966
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 81


~ End of clean in 00h00mn52s
~====================
ZHPCleaner-[R]-03042017-18_58_11.txt
ZHPCleaner-[R]-17012017-01_10_02.txt
ZHPCleaner-[S]-03042017-18_56_39.txt

Publicité


Signaler le contenu de ce document

Publicité