cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.7.9.116 by Nicolas Coolman (2017/07/09)
~ Run by kocizirmi (Administrator) (01/08/2017 23:58:04)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version KO
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : C:\Users\kocizirmi\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\kocizirmi\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Professional, 32-bit Service Pack 1 (Build 7601)


---\\ Service. (2)
ARRETÉ : ByteFenceService =>.Superfluous.ByteFence
ARRETÉ : rtop =>.Superfluous.ByteFence


---\\ Navigateur internet. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (60)


---\\ Tâche planifiée. (1)
SUPPRIMÉ tâche: [AutoKMS] [C:\Windows\AutoKMS\AutoKMS.exe (Not File) ] =>HackTool.AutoKMS


---\\ Explorateur ( Dossiers, Fichiers ). (12)
DEPLACÉ fichier: C:\Users\kocizirmi\Desktop\ByteFence Anti-Malware.lnk [Bad : C:\Program Files\ByteFence\ByteFence.exe](.Byte Technologies LLC.) =>.Superfluous.ByteFence
DEPLACÉ fichier: C:\Users\kocizirmi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage =>.Superfluous.SearchManager
DEPLACÉ fichier: C:\Windows\AutoKMS\AutoKMS.exe [CODYQX4 - AutoKMS] =>HackTool.AutoKMS
DEPLACÉ fichier: C:\Users\kocizirmi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango
DEPLACÉ fichier: C:\Users\kocizirmi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal =>PUP.Optional.Chatango
DEPLACÉ fichier: C:\Windows\AutoKMS\AutoKMS.log =>HackTool.AutoKMS
DEPLACÉ dossier*: C:\Users\kocizirmi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej =>.Superfluous.SearchManager
DEPLACÉ dossier^: C:\Program Files\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier^: C:\ProgramData\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier*: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
DEPLACÉ dossier*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.Superfluous.ByteFence
DEPLACÉ dossier*: C:\Windows\AutoKMS =>HackTool.AutoKMS


---\\ Base de Registres ( Clés, Valeurs, Données ). (51)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ansft_17_31_dop[...]] [Yahoo! Powered Search] =>Adware.YahooPowered
SUPPRIMÉ clé: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ansft_17_31_dop[...]] [Yahoo! Powered Search] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.Superfluous.SearchManager
SUPPRIMÉ clé*: HKLM\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.Superfluous.SearchManager
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ansft_17_31_dopc¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Ddz%26pa%3Dwinyahoo%26cd%3D2XzuyEtN2Y1L1QzutDtD0AtC0BtDyCtCtD0BtD0CzzyByCyCtN0D0Tzu0StBtDtAzytN1L2XzuyEtFzztFtCtFyDtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StDyDyDtDyB0EyB0AtGyCyB0F0CtGtA0FtByEtGyEyD0D0CtGtC0CyDzytD0E0B0A0FyD0CtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBzz1Ozy1RyByC1QtG1T1PtDyDtGyEyB1R1RtG1SyC1Q1PtGyEtCtCyE1SyC1S1RtAtAtBtC2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtAyDzzyCtN1Q2Z1B1P1RzutCyDtDtCyDzztBtByEzy%26cr%3D29018576%26a%3Dwny_ansft_17_31_dopc%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ansft_17_31_dopc¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Ddz%26pa%3Dwinyahoo%26cd%3D2XzuyEtN2Y1L1QzutDtD0AtC0BtDyCtCtD0BtD0CzzyByCyCtN0D0Tzu0StBtDtAzytN1L2XzuyEtFzztFtCtFyDtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StDyDyDtDyB0EyB0AtGyCyB0F0CtGtA0FtByEtGyEyD0D0CtGtC0CyDzytD0E0B0A0FyD0CtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBzz1Ozy1RyByC1QtG1T1PtDyDtGyEyB1R1RtG1SyC1Q1PtGyEtCtCyE1SyC1S1RtAtAtBtC2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtAyDzzyCtN1Q2Z1B1P1RzutCyDtDtCyDzztBtByEzy%26cr%3D29018576%26a%3Dwny_ansft_17_31_dopc%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\1916A2AF346D399F50313C393200F14140456616 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\2A83E9020591A55FC6DDAD3FB102794C52B24E70 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\2B84BFBB34EE2EF949FE1CBE30AA026416EB2216 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\305F8BD17AA2CBC483A4C41B19A39A0C75DA39D6 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\367D4B3B4FCBBC0B767B2EC0CDB2A36EAB71A4EB [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\3A850044D8A195CD401A680C012CB0A3B5F8DC08 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\40AA38731BD189F9CDB5B9DC35E2136F38777AF4 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\43D9BCB568E039D073A74A71D8511F7476089CC3 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\471C949A8143DB5AD5CDF1C972864A2504FA23C9 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\51C3247D60F356C7CA3BAF4C3F429DAC93EE7B74 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\5DE83EE82AC5090AEA9D6AC4E7A6E213F946E179 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\61793FCBFA4F9008309BBA5FF12D2CB29CD4151A [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\637162CC59A3A1E25956FA5FA8F60D2E1C52EAC6 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\63FEAE960BAA91E343CE2BD8B71798C76BDB77D0 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\6431723036FD26DEA502792FA595922493030F97 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\7D7F4414CCEF168ADF6BF40753B5BECD78375931 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\80962AE4D6C5B442894E95A13E4A699E07D694CF [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\86E817C81A5CA672FE000F36F878C19518D6F844 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\8E5BD50D6AE686D65252F843A9D4B96D197730AB [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9845A431D51959CAF225322B4A4FE9F223CE6D15 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\B533345D06F64516403C00DA03187D3BFEF59156 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\B86E791620F759F17B8D25E38CA8BE32E7D5EAC2 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\C060ED44CBD881BD0EF86C0BA287DDCF8167478C [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\CEA586B2CE593EC7D939898337C57814708AB2BE [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\D018B62DC518907247DF50925BB09ACF4A5CB3AD [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\F8A54E03AADC5692B850496A4C4630FFEAA29D83 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\FA6660A94AB45F6A88C0D7874D89A863D74DEE97 [Avast Software] =>PUM.Misplaced.Certificate
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ByteFenceService [C:\Program Files\ByteFence\ByteFenceService.exe] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\rtop [C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-732781786-1964966407-2896998247-1001\SOFTWARE\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé: HKCU\Software\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKCU\Software\undefined [] =>.Superfluous.Downloader
SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\ByteFenceService [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SOFTWARE\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceScan_RASAPI32 [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceScan_RASMANCS [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ICReinstall_Microsoft Toolkit 2_RASAPI32 [] =>HackTool.WinActivator
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\ICReinstall_Microsoft Toolkit 2_RASMANCS [] =>HackTool.WinActivator
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\Microsoft Toolkit 2_RASAPI32 [] =>HackTool.WinActivator
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Tracing\Microsoft Toolkit 2_RASMANCS [] =>HackTool.WinActivator
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence [Byte Technologies LLC] =>.Superfluous.ByteFence


---\\ Récapitulatif des éléments trouvés sur votre station. (9)
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.Superfluous.ByteFence
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.SearchManager
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Chatango
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered
https://nicolascoolman.eu/2017/06/26/trojan-certlock/ =>PUM.Misplaced.Certificate
https://nicolascoolman.eu/2017/03/12/adware-installcore-2/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Downloader
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator


---\\ Nettoyage Additionnel. (15)
~ Suppression des Clés de registre Tracing. (15)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)
~ Le système a été redémarré.


---\\ Statistiques
~ Items scannés : 377
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 66


~ End of clean in 00h01mn59s
~====================
ZHPCleaner-[R]-02082017-00_00_03.txt
ZHPCleaner-[S]-01082017-23_56_37.txt

Publicité


Signaler le contenu de ce document

Publicité