cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2018.2.13.28 by Nicolas Coolman (2018/02/13)
~ Run by krystel (Administrator) (15/02/2018 18:32:30)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version KO
~ Certificate ZHPCleaner: Legal
~ Type : Nettoyer
~ Report : C:\Users\krystel\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\krystel\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)


---\\ ALTERNATE DATA STREAM (ADS). (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ SERVICE. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ NAVIGATEUR INTERNET. (3)
REMPLACÉ Google Chrome Preferences: "http://www.secury-search.com/" =>PUP.Optional.SecurySearch
SUPPRIMÉ donnée: HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings [Bad : Port=56245 <-Loopback>] =>Hijacker.Proxy
SUPPRIMÉ donnée: HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings [Bad : Port=56245 <-Loopback>] =>Hijacker.Proxy


---\\ FICHIER HÔTE. (1)
~ Le fichier hôte est légitime. (21)


---\\ TÂCHE PLANIFIÉE. (1)
SUPPRIMÉ tâche: [Yahoo! Powered lerif] [C:\Windows\Tasks\Yahoo! Powered lerif.job (Not File) ] =>Adware.YahooPowered


---\\ EXPLORATEUR ( Dossiers, Fichiers ). (28)
DEPLACÉ fichier: C:\Users\krystel\AppData\Roaming\Mozilla\Firefox\Profiles\mha4kykv.default\searchplugins\bing-lavasoft.xml =>PUP.Optional.LavasoftWebCompanion
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pilplloabdedfmialnfchjomjmpjcoej_0.localstorage =>.SUP.SearchManager
DEPLACÉ fichier: C:\Windows\Tasks\Yahoo! Powered lerif.job =>Adware.YahooPowered
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\oct231F.tmp [SweetLabs,Inc. - Pokki] =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\oct231F.tmp.exe [SweetLabs,Inc. - Pokki] =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\octAA51.tmp [SweetLabs,Inc. - Pokki] =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\octAA51.tmp.exe [SweetLabs,Inc. - Pokki] =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\Pokki-2018-02-11.log =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\Pokki-2018-02-12.log =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\Pokki-2018-02-13.log =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\Pokki-2018-02-14.log =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\Temp\Pokki-2018-02-15.log =>.SUP.SweetLabs
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\nsfCE8D.tmp [CMI Limited - Setup] =>.SUP.CMILimited
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\nsi1298.tmp [CMI Limited - Setup] =>.SUP.CMILimited
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\nsoDA76.tmp [CMI Limited - Setup] =>.SUP.CMILimited
DEPLACÉ fichier: C:\Users\krystel\AppData\Local\nss115A.tmp [CMI Limited - Setup] =>.SUP.CMILimited
DEPLACÉ fichier: C:\Users\krystel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Pokki Start Menu.lnk =>.SUP.SweetLabs
DEPLACÉ fichier^: C:\Program Files (x86)\Lavasoft\web companion =>PUP.Optional.LavasoftWebCompanion
DEPLACÉ fichier*: C:\Users\krystel\AppData\Roaming\Lavasoft\web companion =>PUP.Optional.LavasoftWebCompanion
DEPLACÉ fichier*: C:\ProgramData\Lavasoft\web companion =>PUP.Optional.LavasoftWebCompanion
DEPLACÉ dossier: C:\Users\krystel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej =>.SUP.SearchManager
DEPLACÉ dossier: C:\ProgramData\Trymedia =>PUP.Optional.Trymedia
DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverRestore =>.SUP.DriverRestore
DEPLACÉ dossier: C:\Users\krystel\AppData\Local\Temp\PokkiCrashReports =>.SUP.SweetLabs
DEPLACÉ dossier: C:\Users\Default\AppData\Local\Pokki =>.SUP.SweetLabs
DEPLACÉ dossier: C:\Users\Default User\AppData\Local\Pokki =>.SUP.SweetLabs
DEPLACÉ dossier: C:\Users\krystel\AppData\Local\Google\Update =>Heuristic.Suspect
DEPLACÉ dossier^: C:\Users\krystel\AppData\Local\SweetLabs App Platform =>.SUP.SweetLabs


---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (85)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{631D544C-C037-45C5-87F7-C52AC48F2C12} [http://www.secury-search.com/fr/web?from=c5&q={searchTerms}] [Secury-search] =>PUP.Optional.SecurySearch
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_adsrch_16_37&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_adsrch_16_37&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_adsrch_16_37&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.SUP.SearchManager
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.SUP.SearchManager
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pilplloabdedfmialnfchjomjmpjcoej [] =>.SUP.SearchManager
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{631D544C-C037-45C5-87F7-C52AC48F2C12} [http://www.secury-search.com/fr/web?from=c5&q={searchTerms}] =>PUP.Optional.SecurySearch
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_adsrch_16_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEyEzz0AyD0B0AtBtAyCyD0CtBzzyB0AtN0D0Tzu0StCyBtBtDtN1L2XzutAtFtByEtFyCtFzytN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2SyD0DyB0BtDyDyEtDtGyCtCyDyDtGyCyCtA0AtGtC0Czy0DtG0A0D0FtDyDtDyEzzyCyB0BtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtAyDyB0CzzyByCtG0E0D0EyEtGyEyCtB0CtGzyyCzytDtG0FyE0D0FtAtDyD0FyBtB0Fzz2QtN0A0LzuyE%26cr%3D941706028%26a%3Dwncy_adsrch_16_37%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_adsrch_16_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEyEzz0AyD0B0AtBtAyCyD0CtBzzyB0AtN0D0Tzu0StCyBtBtDtN1L2XzutAtFtByEtFyCtFzytN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2SyD0DyB0BtDyDyEtDtGyCtCyDyDtGyCyCtA0AtGtC0Czy0DtG0A0D0FtDyDtDyEzzyCyB0BtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtAyDyB0CzzyByCtG0E0D0EyEtGyEyCtB0CtGzyyCzytDtG0FyE0D0FtAtDyD0FyBtB0Fzz2QtN0A0LzuyE%26cr%3D941706028%26a%3Dwncy_adsrch_16_37%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_adsrch_16_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuyEyEzz0AyD0B0AtBtAyCyD0CtBzzyB0AtN0D0Tzu0StCyBtBtDtN1L2XzutAtFtByEtFyCtFzytN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2SyD0DyB0BtDyDyEtDtGyCtCyDyDtGyCyCtA0AtGtC0Czy0DtG0A0D0FtDyDtDyEzzyCyB0BtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtAyDyB0CzzyByCtG0E0D0EyEtGyEyCtB0CtGzyyCzytDtG0FyE0D0FtAtDyD0FyBtB0Fzz2QtN0A0LzuyE%26cr%3D941706028%26a%3Dwncy_adsrch_16_37%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3903720869-3876561350-3014114460-1001\SOFTWARE\DriverRestore [] =>.SUP.DriverRestore
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3903720869-3876561350-3014114460-1001\SOFTWARE\eSupport.com [] =>PUP.Optional.eSupport
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3903720869-3876561350-3014114460-1001\SOFTWARE\nuevos-programas.com [] =>PUP.Optional.Generic
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3903720869-3876561350-3014114460-1001\SOFTWARE\rttasks [1] =>PUP.Optional.RocketTab
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3903720869-3876561350-3014114460-1001\SOFTWARE\Classes\pokki [URL:Pokki Protocol] =>.SUP.SweetLabs
SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\AnyProtect [] =>PUP.Optional.AnyProtect
SUPPRIMÉ clé: HKCU\Software\DriverRestore [] =>.SUP.DriverRestore
SUPPRIMÉ clé: HKCU\Software\eSupport.com [] =>PUP.Optional.eSupport
SUPPRIMÉ clé: HKCU\Software\nuevos-programas.com [] =>PUP.Optional.Generic
SUPPRIMÉ clé: HKCU\Software\rttasks [1] =>PUP.Optional.RocketTab
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_AP [Pokki] =>.SUP.SweetLabs
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SweetLabs_Start_Menu [Pokki] =>.SUP.SweetLabs
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1040EE15-296D-4AB3-AFDA-712B690F8B2} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{191C389A-889A-42FC-AF40-4EBB5D1D60CD} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C83DDD2-D2C8-4091-BF54-868F3354B87A} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1d2bfc54-fb8b-4430-b0da-aa77b01bd030} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B81FA41-AC2C-461E-862-CDAED5DF2F98} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2EBCF974-881A-4EE1-985C-369FEF040FC} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32CB9E7F-3BB-4F8C-9BA-15CCF871DF51} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34ADA4EF-8B01-48FF-AE15-062386CED12} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{399070C4-23FF-4716-BD7B-821C330AAC4} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3A212499-F8BA-4AA7-BA39-74A1C0A8290} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5541E9E1-1EF0-40A2-903A-614D727D4799} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57894A42-C437-4444-83AE-62DC452FCC12} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{592D57B1-E602-4315-AF1C-5445EDD433} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{593D9D9D-B677-4395-98B2-165B0529760} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BD42D1E-369F-439E-A0CE-4FFDE45C6349} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68EC91E6-1FA7-4C99-84A2-18690A3AC7B} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7EEC74BE-16A-4867-9FF4-818842416661} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80EFC8A-25B1-4430-9EE5-72DA59A588} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{815833A8-CA09-4390-8FD3-B9F2CCF29144} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82816E64-42B7-4788-991-1F2BC2B7DDA} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83E4A85A-C7A2-438F-8866-1FDB69A72256} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84C11AB9-8579-4621-AA54-7E6E0859E84} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{855810FA-6C05-4F78-B42-CC6CE430226} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{880B8102-29A9-4F49-AD9B-8CFD5BBC4CCC} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{897AEAE3-639A-4770-876C-E3C3D7343FFF} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89F67525-F5A1-4FE1-926E-77BFC135A6E5} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D63BE9C-8DF5-4878-9FA8-4347C47D483} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94D6B9B9-D23E-4C1A-BA4B-E17A1DE971DA} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{98208F10-5B8D-4C43-9155-F2EC712A3D0} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D427256-5532-4046-9BC-3C9EEA54F668} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A403D100-CD86-4918-87C2-88973428AD41} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8633CDE-1C4C-4278-9D25-B6F46F4E70FA} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA98E34E-389D-4515-A2A3-1646EC29C357} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B55BDE47-385E-411B-9C41-BFCC48F70E4} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8D5725-686B-4BCA-B9F4-A4E82E4DA3E} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BA142007-1BA4-4CE8-86E3-A9D3A312874D} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC3565FC-BC61-4796-A53E-89489A44880} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5B560A9-58BB-477C-B5A3-CD7F11ED541A} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D66353AA-38E0-46FF-B31-8D24CB386B7F} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D835B2D9-4860-410D-8555-A55B497F84A} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D870F186-AC33-49EB-B9B4-1BDE3D9D9579} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD570B65-A1FD-41A0-B285-27FF3BB3C15} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF46EB9F-41D6-4A00-AB93-216248236DC} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E43E2B6E-73F4-4D69-84B7-F92ED296FF38} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED775D87-3FC9-4253-879B-6F6F105756AF} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF10B3E2-FF4B-4C22-828F-EB40A844AA63} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F27E9AF4-E535-46A1-B565-70B6D2C18ED6} [C:\Program Files (x86)\HQProVideo 1.6V10.01 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4067C98-3A34-4A06-9B5-EED1EB5FF64} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6BF809B-6405-4F83-82DB-22139F6BB27} [C:\Program Files (x86)\Clip-High_D_06 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCD3AFC1-C94A-47A3-8328-C8AF4FCACF} [C:\Program Files (x86)\SmartSaver+ 21 (Not File)] =>Adware.CrossRider
SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\WCAssistantService [] =>PUP.Optional.LavasoftWebCompanion
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Trymedia Systems [] =>PUP.Optional.Trymedia
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ASPackage [] =>PUP.Optional.ASPackage
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\winsearch [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DriverRestore_RASAPI32 [] =>.SUP.DriverRestore
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DriverRestore_RASMANCS [] =>.SUP.DriverRestore
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Web Companion [C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize ] =>PUP.Optional.LavasoftWebCompanion
SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Pokki [0x020000000000000000000000] =>.SUP.SweetLabs


---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (18)
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SecurySearch
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered
https://nicolascoolman.eu/2017/03/12/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SearchManager
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SweetLabs
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.CMILimited
https://nicolascoolman.eu/2017/10/04/adware-trymedia/ =>PUP.Optional.Trymedia
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.DriverRestore
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.eSupport
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.RocketTab
https://www.nicolascoolman.com/fr/pup-anyprotect/ =>PUP.Optional.AnyProtect
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence
https://www.nicolascoolman.com/fr/pup-optional-aspackage/ =>PUP.Optional.ASPackage


---\\ NETTOYAGE ADDITIONNEL. (23)
~ Suppression des Clés de registre Tracing. (21)
~ Suppression des anciens rapports ZHPCleaner. (2)


---\\ BILAN DE LA REPARATION
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)
~ Le système a été redémarré.


---\\ STATISTIQUES
~ Items scannés : 1147
~ Items trouvés : 0
~ Items annulés : 0
~ Items options : 0/7
~ Gain de place (Octets) : 0


~ End of clean in 00h04mn11s

---\\ LISTE DES RAPPORTS (2)
ZHPCleaner-[S]-15022018-18_31_25.txt
ZHPCleaner-[R]-15022018-18_36_41.txt

Publicité


Signaler le contenu de ce document

Publicité