cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.8.1.132 by Nicolas Coolman (2017/08/01)
~ Run by admin (Administrator) (02/08/2017 21:44:15)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version KO
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : C:\Users\admin\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\admin\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 15063)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (2)
REMPLACÉ Google Chrome Preferences: "http://anx.tb.ask.com/" =>Toolbar.Ask
REMPLACÉ Google Chrome Preferences: "http://weatherblink.wdgserv.com/" =>.Superfluous.MindSpark


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (15)
DEPLACÉ fichier: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_indgeaefchmgkodcdihalgnbpmhlecic_0.localstorage-journal =>.Superfluous.MindSpark
DEPLACÉ fichier: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_indgeaefchmgkodcdihalgnbpmhlecic_0.localstorage =>.Superfluous.MindSpark
DEPLACÉ fichier: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lgfehfbnofiffladdncogfobimealokp_0.localstorage-journal =>Adware.Bandoo
DEPLACÉ fichier: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lgfehfbnofiffladdncogfobimealokp_0.localstorage =>Adware.Bandoo
DEPLACÉ fichier: C:\Windows\Prefetch\CACAOWEB.EXE-D717167C.pf =>.Superfluous.CacaoWeb
DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGE.EXE-4681D307.pf =>.Superfluous.ReimageRepair
DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEPACKAGE.EXE-89D1BCBC.pf =>.Superfluous.ReimageRepair
DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEREMINDER.EXE-302A39F5.pf =>.Superfluous.ReimageRepair
DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEREPAIR (2).EXE-E30032C9.pf =>.Superfluous.ReimageRepair
DEPLACÉ fichier: C:\Users\admin\AppData\Local\Microsoft\Windows\INetCache\IE\KAGDZTAN\ProtectorPackageRR2020x64[1].exe [Reimage - Reimage Protector Installation Package] =>.Superfluous.ReimageRepair
DEPLACÉ fichier: C:\Users\admin\AppData\Local\Microsoft\Windows\INetCache\IE\76XSVMV1\ReimagePackage1867x64[1].exe [Reimage - Reimage Package] =>.Superfluous.ReimageRepair
DEPLACÉ fichier: C:\Windows\Reimage.ini =>.Superfluous.ReimageRepair
DEPLACÉ dossier: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\indgeaefchmgkodcdihalgnbpmhlecic =>.Superfluous.MindSpark
DEPLACÉ dossier: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgfehfbnofiffladdncogfobimealokp =>Adware.Bandoo
DEPLACÉ dossier: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS


---\\ Base de Registres ( Clés, Valeurs, Données ). (29)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-634680179-3405317437-3485276150-1000\SOFTWARE\cacaoweb [C:\Users\admin\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] =>.Superfluous.CacaoWeb
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-634680179-3405317437-3485276150-1000\SOFTWARE\Reimage [] =>.Superfluous.ReimageRepair
SUPPRIMÉ clé: HKCU\Software\cacaoweb [C:\Users\admin\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] =>.Superfluous.CacaoWeb
SUPPRIMÉ clé: HKCU\Software\Reimage [] =>.Superfluous.ReimageRepair
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\atwola.com [] =>.Superfluous.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\chatango.com [] =>PUP.Optional.Chatango
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\hp-scan-and-capture-windows-10.fr.softonic.com [] =>.Superfluous.Softonic
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ol.uk.at.atwola.com [] =>.Superfluous.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\softonic.com [] =>.Superfluous.Softonic
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\st.chatango.com [] =>PUP.Optional.Chatango
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\atwola.com [] =>.Superfluous.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\chatango.com [] =>PUP.Optional.Chatango
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\hp-scan-and-capture-windows-10.fr.softonic.com [332] =>.Superfluous.Softonic
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ol.uk.at.atwola.com [123] =>.Superfluous.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\softonic.com [] =>.Superfluous.Softonic
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\st.chatango.com [] =>PUP.Optional.Chatango
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.audienceinsights.net [43] =>.Superfluous.AudienceInsights
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\S [] =>Toolbar.Agent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [ScriptHelperApi Class] =>Toolbar.Agent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [ScriptHelperApi Class] =>Toolbar.Agent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [ReiEngine Class] =>PUP.Optional.GetLiveSupport
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [ReiEngine Class] =>PUP.Optional.GetLiveSupport
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Reimage [] =>.Superfluous.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} [ReiEngine Class] =>.Superfluous.ReimageRepair
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>.Superfluous.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} [CompReg Class] =>.Superfluous.ReimageRepair
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>.Superfluous.ReimageRepair
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\cacaoweb ["C:\Users\admin\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer] =>.Superfluous.CacaoWeb
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\cacaoweb [0x020000000000000000000000] =>.Superfluous.CacaoWeb


---\\ Récapitulatif des éléments trouvés sur votre station. (12)
https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask
https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>.Superfluous.MindSpark
https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo
https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.Superfluous.CacaoWeb
https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.Superfluous.ReimageRepair
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/02/04/superfluous-atwola/ =>.Superfluous.Atwola
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Chatango
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Softonic
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AudienceInsights
https://www.nicolascoolman.com/fr/?p=5143 =>Toolbar.Agent
https://www.nicolascoolman.com/forum/post33206.html#p33206 =>PUP.Optional.GetLiveSupport


---\\ Nettoyage Additionnel. (10)
~ Suppression des Clés de registre Tracing. (10)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Mozilla Firefox)


---\\ Statistiques
~ Items scannés : 387
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 46


~ End of clean in 00h00mn45s
~====================
ZHPCleaner-[R]-02082017-21_45_00.txt
ZHPCleaner-[S]-02082017-21_43_41.txt

Publicité


Signaler le contenu de ce document

Publicité