cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2018.1.4.4 by Nicolas Coolman (2018/01/04)
~ Run by jpc (Administrator) (07/01/2018 18:07:46)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : C:\Users\jpc\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\jpc\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (4)
SUPPRIMÉ donnée: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride [Bad : <-loopback>;*.local] =>Hijacker.Proxy
SUPPRIMÉ donnée: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigUrl [Bad : http://nonestops.biz/wpad.dat?8638b3a5e4eb75f935e0c85516d7bbb819756121] =>Hijacker.Proxy
SUPPRIMÉ donnée: HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings [Bad : Port=52752 <-Loopback>] =>Hijacker.Proxy
SUPPRIMÉ donnée: HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings [Bad : Port=52752 <-Loopback>] =>Hijacker.Proxy


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (4)
DEPLACÉ fichier: C:\Users\jpc\Downloads\YOUR BEST OF ' NU DISCO HITS HQ VIDEO MIX ' REMIX 2016.mp3 =>Adware.CrossRider
DEPLACÉ fichier: C:\Users\jpc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GoodGameEmpire.lnk =>.SUP.GoodGameEmpire
DEPLACÉ fichier: C:\Windows\Reimage.ini =>.SUP.ReimageRepair
DEPLACÉ dossier*: C:\Program Files (x86)\Software =>PUP.Optional.Boxore


---\\ Base de Registres ( Clés, Valeurs, Données ). (40)
SUPPRIMÉ donnée: HKCR\.gif\\Default [Bad : BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ donnée: HKCR\.png\\Default [Bad : BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\findopolis [] =>PUP.Optional.FindoPolis
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297602849-3840827406-3618746197-1000\SOFTWARE\Classes\.gif [BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297602849-3840827406-3618746197-1000\SOFTWARE\Classes\.jpeg [BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297602849-3840827406-3618746197-1000\SOFTWARE\Classes\.jpg [BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297602849-3840827406-3618746197-1000\SOFTWARE\Classes\.pdf [BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297602849-3840827406-3618746197-1000\SOFTWARE\Classes\.png [BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2297602849-3840827406-3618746197-1000\SOFTWARE\Classes\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [BoBrowser HTML Document] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\AppDataLow\Software\Plus-HD-9.5 [] =>Adware.CrossRider
SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\AppDataLow\Software\videos MediaPlay-Air [] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16573731-7B5D-40D8-98DA-3FC685B53152} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F8038E4-1E09-455F-9E56-818E3D45291F} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C352416-B00-4B98-AFED-253EB8C147AD} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59EACDCB-DF79-4B61-B2C0-37F4F5D489B} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D9CF759-5BE2-4A25-AFF1-947BA172F29} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D93D9C4-2A7D-4555-ACDF-B15C8884AEE} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90AC6D5A-84E8-4E35-A3DD-ABDB5F940C8} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1DEC393-C650-4798-BD8B-F3A4B676893F} [C:\Program Files (x86)\videos MediaPlay-Air (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\TypeLib\{4911C564-1CDE-44CC-92ED-6DA256C696DC} [findopolisIEClientLib] =>Adware.Sambreel
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [BoBrowser HTML Document] =>Adware.BoBrowser
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update findopolis [] =>PUP.Optional.FindoPolis
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04C995CBC075A5D4BAFECCC7403ED78C [02:\Software\Boxore\BoxoreClient\version (Not File)] =>PUP.Optional.Boxore
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{4911C564-1CDE-44CC-92ED-6DA256C696DC} [findopolisIEClientLib] =>Adware.Sambreel
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ReimagePackage_RASAPI32 [] =>.SUP.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ReimagePackage_RASMANCS [] =>.SUP.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ReimageRepair(1)_RASAPI32 [] =>.SUP.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ReimageRepair(1)_RASMANCS [] =>.SUP.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ReimageRepair_RASAPI32 [] =>.SUP.ReimageRepair
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ReimageRepair_RASMANCS [] =>.SUP.ReimageRepair
SUPPRIMÉ valeur: HKLM64\Software\Classes\.htm\OpenWithProgIDs\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.html\OpenWithProgIDs\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.shtml\OpenWithProgIDs\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.webp\OpenWithProgIDs\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\Software\Classes\.xht\OpenWithProgIDs\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.gif\OpenWithProgids\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.jpeg\OpenWithProgids\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.jpg\OpenWithProgids\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.pdf\OpenWithProgids\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser
SUPPRIMÉ valeur: HKLM64\SOFTWARE\Classes\.png\OpenWithProgids\\BoBrowsHTML.4U2VEQBYVE2QTUQOX7QQV2BYMM [] =>Adware.BoBrowser


---\\ Récapitulatif des éléments trouvés sur votre station. (8)
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.GoodGameEmpire
https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.SUP.ReimageRepair
https://nicolascoolman.eu/2017/03/14/pup-optional-boxore/ =>PUP.Optional.Boxore
https://nicolascoolman.eu/2017/10/31/adware-bobrowser/ =>Adware.BoBrowser
https://www.nicolascoolman.com/fr/pup-findopolis/ =>PUP.Optional.FindoPolis
https://nicolascoolman.eu/2017/09/24/adware-sambreel/ =>Adware.Sambreel


---\\ Nettoyage Additionnel. (34)
~ Suppression des Clés de registre Tracing. (34)
~ Suppression des anciens rapports ZHPCleaner. (0)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 828
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 48


~ End of clean in 00h01mn00s
~====================
ZHPCleaner-[R]-07012018-18_08_46.txt
ZHPCleaner-[S]-07012018-18_07_09.txt

Publicité


Signaler le contenu de ce document

Publicité