cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.12.11.214 by Nicolas Coolman (2017/12/11)
~ Run by Patou (Administrator) (12/12/2017 16:50:15)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : C:\Users\Patou\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Patou\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 15063)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (1)
SUPPRIMÉ: [upgk86mw.default-1484042440583] - user_pref("extensions.webextensions.uuids", "{\"screenshots@mozilla.org\":\"7b9eadfd-83e8-48e1-9633-[...] =>.SUP.ProductivityBoss


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (7)
DEPLACÉ fichier: C:\Users\Patou\AppData\Roaming\Mozilla\Firefox\Profiles\upgk86mw.default-1484042440583\storage\default\https+++ol.uk.at.atwola.com\.metadata =>.SUP.Atwola
DEPLACÉ fichier: C:\Users\Patou\AppData\Roaming\Mozilla\Firefox\Profiles\upgk86mw.default-1484042440583\storage\default\https+++ol.uk.at.atwola.com\.metadata-v2 =>.SUP.Atwola
DEPLACÉ fichier: C:\Users\Patou\AppData\Roaming\Mozilla\Firefox\Profiles\upgk86mw.default-1484042440583\storage\default\https+++ol.uk.at.atwola.com\idb\12183338011.sqlite =>.SUP.Atwola
DEPLACÉ fichier: C:\Users\Patou\AppData\Roaming\Mozilla\Firefox\Profiles\upgk86mw.default-1484042440583\browser-extension-data\_e5Members_@www.productivityboss.com\storage.js =>.SUP.ProductivityBoss
DEPLACÉ dossier: C:\Users\Patou\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx]
DEPLACÉ dossier: C:\Users\Patou\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx]
DEPLACÉ dossier: C:\Users\Patou\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx]


---\\ Base de Registres ( Clés, Valeurs, Données ). (32)
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2757631152-642093996-825677532-1000\SOFTWARE\Classes\.gif [BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2757631152-642093996-825677532-1000\SOFTWARE\Classes\.jpeg [BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2757631152-642093996-825677532-1000\SOFTWARE\Classes\.jpg [BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2757631152-642093996-825677532-1000\SOFTWARE\Classes\.png [BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\atwola.com [] =>.SUP.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ol.uk.at.atwola.com [] =>.SUP.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\atwola.com [] =>.SUP.Atwola
SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ol.uk.at.atwola.com [123] =>.SUP.Atwola
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBF1710-6101-4DEC-B092-F6DED18169D1} [C:\Program Files (x86)\Freeven pro 1.2 (Not File)] =>PUP.Optional.Freeven
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\d173vqb05g6hza.cloudfront.net [67] =>.SUP.CloudfrontNet
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\d1qqddufal4d58.cloudfront.net [574] =>.SUP.CloudfrontNet
SUPPRIMÉ clé*: HKCU\Software\Mozilla\Extends [] =>PUP.Optional.FastStart
SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Mediaplayer\ShimInclusionList\bobrowser.exe [] =>Adware.BoBrowser
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [BoBrowser HTML Document] =>Adware.BoBrowser
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5 [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20 [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5 [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71371A90E93D605C8B0A71F163F625C [] =>PUP.Optional.Generic
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739 [] =>PUP.Optional.IMBooster
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Installer\Products\363FB0CBBA367FF4E81FEAD0F717B142 [LPT System Updater Service] =>.SUP.MyPopShop
SUPPRIMÉ clé: HKU\S-1-5-21-2757631152-642093996-825677532-1000\Software\Microsoft\Installer\Products\363FB0CBBA367FF4E81FEAD0F717B142 [LPT System Updater Service] =>.SUP.MyPopShop
SUPPRIMÉ valeur: HKLM64\Software\Classes\.htm\OpenWithProgIDs\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.html\OpenWithProgIDs\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.shtml\OpenWithProgIDs\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.webp\OpenWithProgIDs\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.xht\OpenWithProgIDs\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.gif\OpenWithProgids\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.jpeg\OpenWithProgids\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.jpg\OpenWithProgids\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.png\OpenWithProgids\\BoBrowsHTM.ETTB5FTEF2P5KKC3AFVMFMAGVU [] =>Adware.BoBrowser


---\\ Récapitulatif des éléments trouvés sur votre station. (10)
https://nicolascoolman.eu/2017/11/18/sup-productivityboss/ =>.SUP.ProductivityBoss
https://nicolascoolman.eu/2017/02/04/superfluous-atwola/ =>.SUP.Atwola
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx]
https://nicolascoolman.eu/2017/10/31/adware-bobrowser/ =>Adware.BoBrowser
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Freeven
https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.SUP.CloudfrontNet
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.FastStart
https://nicolascoolman.eu/2017/09/08/adware-imbooster/ =>PUP.Optional.IMBooster
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic
https://nicolascoolman.eu/2017/09/21/sup-mypopshop/ =>.SUP.MyPopShop


---\\ Nettoyage Additionnel. (12)
~ Suppression des Clés de registre Tracing. (12)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Google Chrome)
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 912
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 40


~ End of clean in 00h00mn54s
~====================
ZHPCleaner-[R]-12122017-16_51_09.txt
ZHPCleaner-[S]-12122017-16_43_39.txt

Publicité


Signaler le contenu de ce document

Publicité