cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.8.4.133 by Nicolas Coolman (2017/08/04)
~ Run by Jo (Administrator) (04/08/2017 15:41:08)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : F:\Bureau\ZHPCleaner.txt
~ Quarantine : C:\Users\Jo\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 15063)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (7)
SUPPRIMÉ: [0dhs1qde.default] - user_pref("browser.search.hiddenOneOffs", "Search Provided by Yahoo,Yahoo"); =>.Superfluous.YahooSearchProvided
SUPPRIMÉ: [0dhs1qde.default] - user_pref("extensions.CrazyScore.cg", "ed418500-5801-4925-979d-000abd789c78"); =>PUP.Optional.CrazyScore
SUPPRIMÉ: [0dhs1qde.default] - user_pref("extensions.GreatFind.cg", "5833fc62-4aad-4e8a-983f-004fafe0c8de"); =>Adware.Sambreel
REMPLACÉ Google Chrome Secure Preferences: "http://astromenda.com/?f=7&a=ast_tele_14_49_ch&cd=2XzuyEtN2Y1L1QzuyEzzyD0BtAzy0A0AtDyC0F0F0EtDtDtCtN0D0Tzu0SzyyDtCtN1L2XzutBtFtBtCtFtCzztFyEtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyC0AyBtAtC0CyB0CtGyByD0A0FtGyE0EtD0CtG0FtDzz0AtGyC0AzyzyyEzyyB0AzzyDyBtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyB0DtCtC0BzztC0EtG0AtBzzzytGyBtA0EtBtGyBtAtAyBtGyEyC0Ezy0CzytAyE0CyB0Fzz2Q&cr=140332152&ir=" =>PUP.Optional.Astromenda
REMPLACÉ Google Chrome Secure Preferences: "http://isearch.omiga-plus.com/?type=hp&ts=1421828936&from=ild&uid=WDCXWD10EALS-002BA0_WD-WCATR117618876188" =>Adware.OmigaPlus
REMPLACÉ Google Chrome Secure Preferences: "http://www.mystartsearch.com/?type=hppp&ts=1422813110&from=smt&uid=3219913727_198264_E29FC833" =>PUP.Optional.StartSearch
SUPPRIMÉ donnée: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride [Bad : ;192.168.*.*;*.local] =>Hijacker.Proxy


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (27)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (52)
DEPLACÉ fichier: C:\Users\Jo\AppData\Local\Temp\etilqs_J2h9VtVhob5TAtK =>PUP.Optional.Bang5mai
DEPLACÉ fichier: C:\Users\Jo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d14qd3he45186l.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Jo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d14qd3he45186l.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Jo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_deazs14tb5j7o.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Jo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_deazs14tb5j7o.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier*: C:\Users\Jo\AppData\Roaming\PDAppFlex =>Trojan.Elpman
DEPLACÉ dossier: C:\Program Files (x86)\InterLok =>.Superfluous.Empty
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\PackageAware =>PUP.Optional.BearShare
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign00b52e220414d8c0 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign0f359c0477c4e2d1 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign1a9c1b7869969cf8 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign2421241b42fcde1e =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign28190ee026bdbbb1 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign313d587e02340389 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign325c2fc1e838d13d =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign44924b2075a3acbf =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign5af85c33e6acbd51 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign5b2ec29750780cbc =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign5c2eec21b7eb1e37 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign66fad769d9f1798e =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign6b4856a8a6d8a88d =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign6c579075058e5eee =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign7b285758a37e4d2a =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign7df2018ba3a38942 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign7e7564aadf134a9a =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign8656df1a0f59a3ac =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign865e02673423b779 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign8be7f8dbb8ab00bf =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign8caa8da35fd7b8cc =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign8e2c800075093f2e =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsign9de7ff49c65de868 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigna72a9cfcfe50af53 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigna9e4ccfe53ca660f =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignac9e5f60e25df7de =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignb4d63da90b6a0b2e =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignc6b990873ebd88b1 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignc6ffa5295ee796fa =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigncacb4cd379e7b505 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigncaf4df9b06a06509 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignd0fb7970adf30f1c =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignd4c0c6badf6bc778 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignd74ee593a54e5a63 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignd955eac07d7d1993 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignda15f1af4fd723d6 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigndb83461d9016de7a =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigne3a06736cdeb57e7 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigne4b921d9c7789fa7 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsigned1e3bfdb6462ee3 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignef53e290deb497e8 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Users\Jo\AppData\Local\Tempzxpsignf8f6a9966ec1b869 =>.Superfluous.Temporary
DEPLACÉ dossier: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime


---\\ Base de Registres ( Clés, Valeurs, Données ). (6)
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ManyCam [C:\WINDOWS\System32\DRIVERS\mcvidrv_x64.sys] =>.Superfluous.VisicomMedia
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\mcaudrv_simple [C:\WINDOWS\System32\drivers\mcaudrv_x64.sys] =>.Superfluous.VisicomMedia
SUPPRIMÉ clé*: HKLM\SOFTWARE\Wow6432Node\Policies\Google\Update [] =>PUM.Security.Hijack
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\S [] =>Toolbar.Agent
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\CrazyScore [] =>PUP.Optional.CrazyScore
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{44C0EC7E-CF09-4569-B34B-0A9347D72596} [Spigot, Inc.] =>PUP.Optional.Dealio


---\\ Récapitulatif des éléments trouvés sur votre station. (18)
https://nicolascoolman.eu/2017/04/06/superfluous-yahoosearchprovided/ =>.Superfluous.YahooSearchProvided
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.CrazyScore
https://www.nicolascoolman.com/fr/pup-optional-sambreel/ =>Adware.Sambreel
https://www.nicolascoolman.com/fr/pup-astromenda/ =>PUP.Optional.Astromenda
https://nicolascoolman.eu/2017/02/28/adware-omigaplus/ =>Adware.OmigaPlus
https://www.nicolascoolman.com/fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://www.nicolascoolman.com/fr/pup-optional-bang5mai/ =>PUP.Optional.Bang5mai
https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.Superfluous.CloudfrontNet
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.Elpman
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Empty
https://www.nicolascoolman.com/fr/pup-bearshare/ =>PUP.Optional.BearShare
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary
https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime
https://nicolascoolman.eu/2017/03/18/superfluous-visicommedia/ =>.Superfluous.VisicomMedia
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUM.Security.Hijack
https://www.nicolascoolman.com/fr/?p=5143 =>Toolbar.Agent
https://www.nicolascoolman.com/fr/pup-dealio/ =>PUP.Optional.Dealio


---\\ Nettoyage Additionnel. (13)
~ Suppression des Clés de registre Tracing. (13)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.


---\\ Statistiques
~ Items scannés : 1833
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 65


~ End of clean in 00h00mn52s
~====================
ZHPCleaner-[R]-04082017-15_42_00.txt
ZHPCleaner-[R]-12052015-16_15_11.txt
ZHPCleaner-[S]-04082017-15_39_46.txt
ZHPCleaner-[S]-12052015-16_13_38.txt

Publicité


Signaler le contenu de ce document

Publicité