~ ZHPCleaner v2015.6.11.274 by Nicolas Coolman (2015\06\11) ~ Run by Gaele (Administrator) (11/06/2015 18:30:19) ~ Site : http://nicolascoolman.com/fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Netttoyer ~ Report : C:\Users\Gaele\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Gaele\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Deactivate ~ Boot Mode : Normal (Normal boot) ~ Windows 7, 32-bit Service Pack 1 (Build 7601) ---\\ Service. (7) ARRETÉ : Registry Helper Service (PUP.RegistryHelper) SUPPRIMÉ : {858f324f-6edd-4b93-ba9f-bf5085b16845}Gw (PUP.LinkiDoo) ARRETÉ : wovelivy (Heuristic.Salus) ARRETÉ : zedepory (Heuristic.Salus) ARRETÉ : 90a6795d (PUP.OptimizerPro) ARRETÉ : Update Mountain Bike (PUP.MountainBike) ARRETÉ : Util Mountain Bike (PUP.MountainBike) ---\\ Navigateur internet. (16) SUPPRIMÉ Firefox: [kbym0m4k.default] URL HomePage : hxxp://www.mystartsearch.com/?type=hppp&ts=1433961439&z=adba55458ffdbd12278bc0dg5zdc5[...] (PUP.StartSearch) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.defaultenginename", "mystartsearch"); (PUP.StartSearch) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.alias", "mystartsearch"); (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/web/favicon.ico"); (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.name", "mystartsearch"); (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.ptid", "cmi"); (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.uid", "CrucialXCT240M500SSD1_14210C26A17B0C26A17B"); (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=dspp&ts=1433961[...] (PUP.SearchEngine) SUPPRIMÉ: [kbym0m4k.default] - user_pref("browser.search.selectedEngine", "mystartsearch"); (PUP.StartSearch) SUPPRIMÉ: [kbym0m4k.default] - user_pref("extensions.quick_start.enable_search1", false); (PUP.QuickStart) SUPPRIMÉ: [kbym0m4k.default] - user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); (PUP.QuickStart) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\Mozilla\Firefox\Profiles\kbym0m4k.default\searchplugins\mystartsearch.xml (PUP.StartSearch) [EBDBB8963DD858CE4BCD87C0CD49C261] REMPLACÉ Quicklaunch: C:\Users\Gaele\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [Bad : http://www.mystartsearch.com/?type=sc&ts=1433961413&z=4f5d7f6c656f5ac02791ba5gazecac4taq2g4z5e0t&from=cmi&uid=CrucialXCT240M500SSD1_14210C26A17B0C26A17B] (Hijacker.Browser) REMPLACÉ Startup\Programs: C:\Users\Gaele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [Bad : http://www.mystartsearch.com/?type=sc&ts=1433961413&z=4f5d7f6c656f5ac02791ba5gazecac4taq2g4z5e0t&from=cmi&uid=CrucialXCT240M500SSD1_14210C26A17B0C26A17B] (Hijacker.Browser) REMPLACÉ SystemTools: C:\Users\Gaele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk [Bad : http://www.mystartsearch.com/?type=sc&ts=1433961413&z=4f5d7f6c656f5ac02791ba5gazecac4taq2g4z5e0t&from=cmi&uid=CrucialXCT240M500SSD1_14210C26A17B0C26A17B] (Hijacker.Browser) ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (13) SUPPRIMÉ tâche: [1837d7ab-a748-4970-9041-7152daebea8f-1-6] [C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-1-6.exe (Not File) ] (Adware.CrossRider) SUPPRIMÉ tâche: [1837d7ab-a748-4970-9041-7152daebea8f-1-7] [C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-1-7.exe (Not File) ] (Adware.CrossRider) SUPPRIMÉ tâche: [1837d7ab-a748-4970-9041-7152daebea8f-10_user] [C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-10.exe (Not File) ] (Adware.CrossRider) SUPPRIMÉ tâche: [1837d7ab-a748-4970-9041-7152daebea8f-4] [C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-4.exe (Not File) ] (Adware.CrossRider) SUPPRIMÉ tâche: [1837d7ab-a748-4970-9041-7152daebea8f-5] [C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-5.exe (Not File) ] (Adware.CrossRider) SUPPRIMÉ tâche: [1837d7ab-a748-4970-9041-7152daebea8f-5_user] [C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-5.exe (Not File) ] (Adware.CrossRider) SUPPRIMÉ tâche: [APSnotifierPP1] [C:\Program Files\AnyProtectEx\AnyProtect.exe (Not File) ] (PUP.AnyProtect) SUPPRIMÉ tâche: [APSnotifierPP2] [C:\Program Files\AnyProtectEx\AnyProtect.exe (Not File) ] (PUP.AnyProtect) SUPPRIMÉ tâche: [APSnotifierPP3] [C:\Program Files\AnyProtectEx\AnyProtect.exe (Not File) ] (PUP.AnyProtect) SUPPRIMÉ tâche: [Crossbrowse] [C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe (Not File) ] (PUP.CrossBrowse) SUPPRIMÉ tâche: [Optimizer Pro Schedule] [C:\Program Files\Optimizer Pro 3.96\OptProLauncher.exe (Not File) ] (PUP.OptimizerPro) SUPPRIMÉ tâche: [SmartWeb Upgrade Trigger Task] [C:\Users\Gaele\AppData\Local\SmartWeb\SmartWebHelper.exe (Not File) ] (PUP.SmartWebSearch) SUPPRIMÉ tâche: [T5sF4d2Z1rRsD] [C:\Users\Gaele\AppData\Roaming\T5sF4d2Z1rRsD.exe (Not File) ] (Heuristic.Pirrit) ---\\ Explorateur ( Dossiers, Fichiers ). (137) DEPLACÉ fichier: C:\Users\Gaele\Desktop\AnyProtect.lnk [Bad : C:\Program Files\AnyProtectEx\AnyProtect.exe] (PUP.AnyProtect) DEPLACÉ fichier: C:\Users\Gaele\Desktop\Optimizer Pro.lnk [Bad : C:\Program Files\Optimizer Pro 3.96\OptimizerPro.exe] (PUP.OptimizerPro) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Crossbrowse.lnk [Bad : C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe] (PUP.CrossBrowse) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Crossbrowse.lnk [Bad : C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe] (PUP.CrossBrowse) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [Bad : C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe] (PUP.CrossBrowse) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [Bad : C:\Users\Gaele\AppData\Local\SmartWeb\SmartWebHelper.exe] (PUP.SmartWebSearch) DEPLACÉ fichier: C:\Users\Public\Desktop\Crossbrowse.lnk [Bad : C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe] (PUP.CrossBrowse) DEPLACÉ fichier: C:\Users\Public\Desktop\Registry Helper.lnk [Bad : C:\Program Files\Registry Helper\RegistryHelper.exe] (PUP.RegistryHelper) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\Mozilla\Firefox\Profiles\kbym0m4k.default\searchplugins\mystartsearch.xml (PUP.StartSearch) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\T5sF4d2Z1rRsD.exe [Copyright 2001 - ] (Adware.Pirrit) DEPLACÉ fichier: C:\Windows\Tasks\T5sF4d2Z1rRsD.job (Adware.Pirrit) DEPLACÉ fichier: C:\Windows\System32\Tasks\T5sF4d2Z1rRsD (Adware.Pirrit) DEPLACÉ fichier: C:\Program Files\Registry Helper\RegistryHelperservice.exe [SafeApp Software, LLC - Registry Helper Service] (PUP.RegistryHelper) DEPLACÉ fichier: C:\Windows\System32\drivers\{858f324f-6edd-4b93-ba9f-bf5085b16845}Gw.sys [StdLib - StdLib] (PUP.LinkiDoo) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\EAEF5280-1433926883-11E3-85EB-10C37B6D421A\nse1E25.tmp (Heuristic.Salus) DEPLACÉ fichier: C:\Users\Gaele\AppData\Roaming\EAEF5280-1433926883-11E3-85EB-10C37B6D421A\hnsh8BCC.tmp (Heuristic.Salus) DEPLACÉ fichier: C:\Program Files\Optimizer Pro 3.96\OptProLauncher.exe (PUP.OptimizerPro) DEPLACÉ fichier: C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-1-6.exe [Cinema PlusV10.06 - CinemaPlus-3.2cV10.06 exe] (Adware.CrossRider) DEPLACÉ fichier: C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-1-7.exe [Cinema PlusV10.06 - CinemaPlus-3.2cV10.06 exe] (Adware.CrossRider) DEPLACÉ fichier: C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-10.exe [Cinema PlusV10.06 - CinemaPlus-3.2cV10.06 exe] (Adware.CrossRider) DEPLACÉ fichier: C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-4.exe [Cinema PlusV10.06 - CinemaPlus-3.2cV10.06 exe] (Adware.CrossRider) DEPLACÉ fichier: C:\Program Files\CinemaPlus-3.2cV10.06\1837d7ab-a748-4970-9041-7152daebea8f-5.exe [Cinema PlusV10.06 - CinemaPlus-3.2cV10.06 exe] (Adware.CrossRider) DEPLACÉ fichier: C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe (PUP.CrossBrowse) DEPLACÉ fichier: C:\Windows\Tasks\APSnotifierPP1.job (PUP.AnyProtect) DEPLACÉ fichier: C:\Windows\Tasks\APSnotifierPP2.job (PUP.AnyProtect) DEPLACÉ fichier: C:\Windows\Tasks\APSnotifierPP3.job (PUP.AnyProtect) DEPLACÉ fichier: C:\Windows\Tasks\Crossbrowse.job (PUP.CrossBrowse) DEPLACÉ fichier: C:\Windows\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-1-6.job (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-1-7.job (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-10_user.job (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-4.job (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-5.job (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-5_user.job (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\System32\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-1-6 (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\System32\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-1-7 (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\System32\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-10_user (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\System32\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-4 (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\System32\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-5 (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\System32\Tasks\1837d7ab-a748-4970-9041-7152daebea8f-5_user (Adware.CrossRider) DEPLACÉ fichier: C:\Windows\Installer\26a66.msi [globalupdate - Windows Installer XML Toolset (3.9.1208.0)] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\goopdate.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\goopdateres_en.dll [globalUpdate - globalUpdate Update Resource DLL] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\npglobalupdateUpdate4.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\psmachine.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\psuser.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\goopdate.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\goopdateres_en.dll [globalUpdate - globalUpdate Update Resource DLL] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\npglobalupdateUpdate4.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\psmachine.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\psuser.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\goopdate.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\goopdateres_en.dll [globalUpdate - globalUpdate Update Resource DLL] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\npglobalupdateUpdate4.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\psmachine.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\psuser.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\goopdate.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\goopdateres_en.dll [globalUpdate - globalUpdate Update Resource DLL] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\npglobalupdateUpdate4.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\psmachine.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\psuser.dll [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\is-O0KSI.tmp\sc-setup-1.10.0.16.exe [SuperClick - SC Setup] (PUP.SuperClick) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\is-DFOIR.tmp\sc-setup-1.10.0.16.exe [SuperClick - SC Setup] (PUP.SuperClick) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\globalupdate.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\globalupdateBroker.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\globalupdateCrashHandler.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.53995\globalupdateOnDemand.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\globalupdate.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\globalupdateBroker.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\globalupdateCrashHandler.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.438646\globalupdateOnDemand.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\globalupdate.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\globalupdateBroker.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\globalupdateCrashHandler.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.424542\globalupdateOnDemand.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\globalupdate.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\globalupdateBroker.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\globalupdateCrashHandler.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\comh.19900\globalupdateOnDemand.exe [globalUpdate - globalUpdate Update] (PUP.GlobalUpdate) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\1062015104811\Bubble Dock Uninstall.exe [Nosibay - Bubble Dock Uninstaller] (PUP.Nosibay) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\nstA21D.tmp [CMI Limited - Setup] (PUP.CMILimited) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\smt_oursurfing.exe [HTabp.com - HTabp] (Hijacker.OurSurfing) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\vitruvian-installer-hardwareprofile-v0001 (PUP.Vitruvian) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\vitruvian-installer-install-v0003 (PUP.Vitruvian) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\vitruvian-installer-processes-v0002 (PUP.Vitruvian) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\vitruvian-installer-scheduledtasks-v0001 (PUP.Vitruvian) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\vitruvian-installer-uninstall-v0002 (PUP.Vitruvian) DEPLACÉ fichier: C:\Users\Gaele\AppData\Local\Temp\Uninstall.exe [Copyright 2013 - ] (PUP.Optional) DEPLACÉ dossier: C:\Users\Gaele\AppData\Roaming\Opera Software\Opera Stable\Extensions\cgebikamhfcapmjlappmakjcjkemolno (PUP.MountainBike) DEPLACÉ dossier: C:\Users\Gaele\AppData\Roaming\EAEF5280-1433926883-11E3-85EB-10C37B6D421A (Heuristic.Salus) DEPLACÉ dossier: C:\Program Files\AnyProtectEx (PUP.AnyProtect) DEPLACÉ dossier: C:\Program Files\CinemaPlus-3.2cV10.06 (Adware.CrossRider) DEPLACÉ dossier^: C:\Program Files\Crossbrowse (PUP.CrossBrowse) DEPLACÉ dossier: C:\Program Files\Driver-Soft (PUP.DriverSoft) DEPLACÉ dossier: C:\Program Files\globalUpdate (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Program Files\gmsd_fr_640 (Adware.CrossRider) DEPLACÉ dossier: C:\Program Files\gmsd_fr_652 (Adware.CrossRider) DEPLACÉ dossier: C:\Program Files\MaxComputerCleaner_v27.474 (PUP.MaxComputerCleaner) DEPLACÉ dossier: C:\Program Files\MiuiTab (PUP.MiuiTab) DEPLACÉ dossier^: C:\Program Files\Mountain Bike (PUP.MountainBike) DEPLACÉ dossier: C:\Program Files\Optimizer Pro 3.96 (PUP.OptimizerPro) DEPLACÉ dossier: C:\Program Files\Registry Helper (PUP.RegistryHelper) DEPLACÉ dossier: C:\BreakingNewsAlert (PUP.BreakingNewsAlert) DEPLACÉ dossier: C:\ProgramData\DriverGenius (PUP.DriverGenius) DEPLACÉ dossier: C:\ProgramData\IHProtectUpDate (Adware.AgentODR) DEPLACÉ dossier: C:\ProgramData\MailUpdate (PUP.MailUpdate) DEPLACÉ dossier: C:\ProgramData\Registry Helper (PUP.RegistryHelper) DEPLACÉ dossier: C:\ProgramData\WindowsMangerProtect (PUP.Fuyu) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse (PUP.CrossBrowse) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP (Adware.GamesDesktop) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 (PUP.OptimizerPro) DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Helper (PUP.RegistryHelper) DEPLACÉ dossier: C:\Users\Gaele\AppData\Roaming\AnyProtectEx (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Gaele\AppData\Roaming\MailUpdate (PUP.MailUpdate) DEPLACÉ dossier: C:\Users\Gaele\AppData\Roaming\Optimizer Pro (PUP.OptimizerPro) DEPLACÉ dossier: C:\Users\Gaele\Documents\Optimizer Pro (PUP.OptimizerPro) DEPLACÉ dossier: C:\Users\Gaele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup (PUP.AnyProtect) DEPLACÉ dossier: C:\Users\Gaele\AppData\LocalLow\SmartWeb (PUP.SmartWebSearch) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\BreakingNewsAlert (PUP.BreakingNewsAlert) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\Crossbrowse (PUP.CrossBrowse) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\globalUpdate (PUP.GlobalUpdate) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\gmsd_fr_640 (Adware.CrossRider) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\gmsd_fr_652 (Adware.CrossRider) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\SmartWeb (PUP.SmartWebSearch) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\Temp\Mountain Bike (PUP.MountainBike) DEPLACÉ dossier: C:\Users\Gaele\AppData\Local\Temp\MovieDea_USB (PUP.MovieDea) DEPLACÉ dossier: C:\Users\Alex\AppData\LocalLow\SmartWeb (PUP.SmartWebSearch) DEPLACÉ dossier: C:\Users\Alex\AppData\Local\BreakingNewsAlert (PUP.BreakingNewsAlert) DEPLACÉ dossier: C:\Users\Alex\AppData\Local\gmsd_fr_640 (Adware.CrossRider) DEPLACÉ dossier: C:\Windows\Installer\MSI3F63.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSI43F9.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSI44D4.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSI6541.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSI65FE.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSIA277.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSIA305.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSIC086.tmp- (Empty) DEPLACÉ dossier: C:\Windows\Installer\MSIC0E5.tmp- (Empty) ---\\ Base de Registres ( Clés, Valeurs, Données ). (202) SUPPRIMÉ valeur: HKLM\SOFTWARE\Mozilla\Firefox\Extensions\\sweetsearch@gmail.com [C:\Users\Gaele\AppData\Roaming\Mozilla\Firefox\Profiles\kbym0m4k.default\extensions\sweetsearch@gmail.com] (PUP.SweetSearch) SUPPRIMÉ clé*: HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 [globalUpdate] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 [globalUpdate] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a8b71ba7-8a3a-46b8-b803-b4244d1ea31f} [Mountain Bike 1.0.0.7] (PUP.MountainBike) SUPPRIMÉ clé: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{a8b71ba7-8a3a-46b8-b803-b4244d1ea31f} [] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse [] (PUP.CrossBrowse) SUPPRIMÉ clé*: HKCU\Software\WajIEnhance [] (PUP.Wajam) SUPPRIMÉ clé*: HKCU\Software\WajIntEnhance [] (PUP.Wajam) SUPPRIMÉ clé*: HKCU\Software\T5sF4d2Z1rRsD [] (Adware.Pirrit) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\mailUpdate [C:\ProgramData\MailUpdate\mailUpdate.exe (Not File)] (PUP.MailUpdate) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Registry Helper Service [C:\Program Files\Registry Helper\RegistryHelperservice.exe (Not File)] (PUP.RegistryHelper) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\{858f324f-6edd-4b93-ba9f-bf5085b16845}Gw [C:\Windows\System32\drivers\{858f324f-6edd-4b93-ba9f-bf5085b16845}Gw.sys (Not File)] (PUP.LinkiDoo) SUPPRIMÉ clé*: HKLM\SOFTWARE\SearchProtect [] (Adware.Sambreel) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\Currentversion\Uninstall\SearchProtect [] (Adware.Sambreel) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\wovelivy [C:\Users\Gaele\AppData\Roaming\EAEF5280-1433926883-11E3-85EB-10C37B6D421A\nse1E25.tmp (Not File)] (Heuristic.Salus) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\zedepory [C:\Users\Gaele\AppData\Roaming\EAEF5280-1433926883-11E3-85EB-10C37B6D421A\hnsh8BCC.tmp (Not File)] (Heuristic.Salus) SUPPRIMÉ clé*: HKCU\Software\CinemaPlus-3.2cV10.06-nv-ie [] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\1ea97cb3-2e43-1b7b-593d-546c9c2a8b4b [] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\CinemaPlus-3.2cV10.06-nv-ie [] (Adware.CrossRider) SUPPRIMÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\{858f324f-6edd-4b93-ba9f-bf5085b16845}Gw [C:\Windows\System32\drivers\{858f324f-6edd-4b93-ba9f-bf5085b16845}Gw.sys (Not File)] (PUP.LinkiDoo) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\insvc_1.10.0.14 ["C:\Program Files\Infonaut_1.10.0.14\Service\insvc.exe" (Not File)] (Heuristic.Optional) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\90a6795d ["C:\Windows\system32\rundll32.exe" "c:\Program Files\Optimizer Pro 3.96\OptProMon.dll",ENT (Not File)] (PUP.OptimizerPro) SUPPRIMÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\mailUpdate [C:\ProgramData\MailUpdate\mailUpdate.exe (Not File)] (PUP.MailUpdate) SUPPRIMÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\Registry Helper Service [C:\Program Files\Registry Helper\RegistryHelperservice.exe (Not File)] (PUP.RegistryHelper) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Update Mountain Bike ["C:\Program Files\Mountain Bike\updateMountainBike.exe" (Not File)] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Util Mountain Bike ["C:\Program Files\Mountain Bike\bin\utilMountainBike.exe" (Not File)] (PUP.MountainBike) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\AnyProtect [] (PUP.AnyProtect) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\APN PIP [] (Toolbar.Agent) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\ArenaHD [] (Adware.CrossRider) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\AskPartnerNetwork [] (Toolbar.AskBar) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\CinemaPlus-3.2cV10.06 [] (Adware.CrossRider) SUPPRIMÉ clé: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\CinemaPlus-3.2cV10.06-nv-ie [] (Adware.CrossRider) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\Crossbrowse [] (PUP.CrossBrowse) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\CrossBrowser [] (PUP.CrossBrowser) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\globalUpdate [] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\HighDefAction [] (Adware.CrossRider) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\HomeTab [] (PUP.CertifiedToolbar) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\InstalledBrowserExtensions [] (PUP.BrowserExtensions) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\Linkey [] (PUP.LinkeySearch) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\Mountain Bike [] (PUP.MountainBike) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\Optimizer Pro [] (PUP.OptimizerPro) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\SearchProtectWS [] (PUP.SearchProtect) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\SimplyTech [] (PUP.SimplyTech) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\TNT2 [] (Adware.TidyNetwork) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\tstamptoken [] (PUP.MaxComputerCleaner) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\Tutorials [] (PUP.AgenceExclusive) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\TutoTag [] (PUP.AgenceExclusive) SUPPRIMÉ clé: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\WajIEnhance [] (PUP.Wajam) SUPPRIMÉ clé: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\WajIntEnhance [] (Adware.Multiplug) SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2033985820-3100686534-2682469723-1000\Software\YorkNewCin [] (Adware.CrossRider) SUPPRIMÉ clé: HKCU\Software\AnyProtect [] (PUP.AnyProtect) SUPPRIMÉ clé: HKCU\Software\APN PIP [] (Toolbar.Agent) SUPPRIMÉ clé: HKCU\Software\ArenaHD [] (Adware.CrossRider) SUPPRIMÉ clé: HKCU\Software\AskPartnerNetwork [] (Toolbar.AskBar) SUPPRIMÉ clé: HKCU\Software\CinemaPlus-3.2cV10.06 [] (Adware.CrossRider) SUPPRIMÉ clé: HKCU\Software\Crossbrowse [] (PUP.CrossBrowse) SUPPRIMÉ clé: HKCU\Software\CrossBrowser [] (PUP.CrossBrowser) SUPPRIMÉ clé: HKCU\Software\globalUpdate [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKCU\Software\HighDefAction [] (Adware.CrossRider) SUPPRIMÉ clé: HKCU\Software\HomeTab [] (PUP.CertifiedToolbar) SUPPRIMÉ clé: HKCU\Software\InstalledBrowserExtensions [] (PUP.BrowserExtensions) SUPPRIMÉ clé: HKCU\Software\Linkey [] (PUP.LinkeySearch) SUPPRIMÉ clé: HKCU\Software\Mountain Bike [] (PUP.MountainBike) SUPPRIMÉ clé: HKCU\Software\Optimizer Pro [] (PUP.OptimizerPro) SUPPRIMÉ clé: HKCU\Software\SearchProtectWS [] (PUP.SearchProtect) SUPPRIMÉ clé: HKCU\Software\SimplyTech [] (PUP.SimplyTech) SUPPRIMÉ clé: HKCU\Software\TNT2 [] (Adware.TidyNetwork) SUPPRIMÉ clé: HKCU\Software\tstamptoken [] (PUP.MaxComputerCleaner) SUPPRIMÉ clé*: HKCU\Software\Tutorials [] (PUP.AgenceExclusive) SUPPRIMÉ clé: HKCU\Software\TutoTag [] (PUP.AgenceExclusive) SUPPRIMÉ clé: HKCU\Software\YorkNewCin [] (Adware.CrossRider) SUPPRIMÉ clé*: HKCU\Software\AppDataLow\Software\Crossrider [] (Adware.CrossRider) SUPPRIMÉ clé*: HKCU\Software\AppDataLow\Software\SmartWeb [] (PUP.SmartWebSearch) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP [] (Adware.IMBooster) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar [] (Adware.IMBooster) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey [] (PUP.LinkeySearch) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect [] (PUP.SearchProtect) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com [] (PUP.Vosteran) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance [] (Adware.Multiplug) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\kingtopdeals.com [] (Adware.Multiplug) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\mystartsearch.com [] (PUP.StartSearch) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pricepeep.net [] (Adware.PricePeep) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pstatic.kingtopdeals.com [124] (Adware.Multiplug) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\re-markable.net [] (PUP.Re-Markable) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\searches.vi-view.com [335] (Hijacker.MyhomeViview) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\static.pricepeep00.pricepeep.net [509] (Adware.PricePeep) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\static.re-markable00.re-markable.net [1464] (PUP.Re-Markable) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\vi-view.com [] (Hijacker.MyhomeViview) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.mystartsearch.com [17915] (PUP.StartSearch) SUPPRIMÉ clé*: HKCU\Software\Mozilla\Extends [] (PUP.FastStart) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} [ITool] (Toolbar.Ask) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CRSBRWSHTML [Crossbrowse HTML Document] (PUP.CrossBrowse) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10 [globalUpdate Update Plugin] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine [globalUpdate.OneClickProcessLauncher] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0 [globalUpdate.OneClickProcessLauncher] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4 [globalUpdate Update Plugin] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync [CoCreateAsync] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0 [CoCreateAsync] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass [Google Update Core Class] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1 [Google Update Core Class] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass [Google Update Core Class] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1 [Google Update Core Class] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine [GoogleUpdate CredentialDialog] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0 [GoogleUpdate CredentialDialog] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine [Google Update Broker Class Factory] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0 [Google Update Broker Class Factory] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback [Google Update Legacy On Demand] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0 [Google Update Legacy On Demand] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc [Google Update Legacy On Demand] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0 [Google Update Legacy On Demand] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher [Google Update Process Launcher Class] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0 [Google Update Process Launcher Class] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine [Google Update Broker Class Factory] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0 [Google Update Broker Class Factory] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback [GoogleUpdate Update3Web] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0 [GoogleUpdate Update3Web] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc [GoogleUpdate Update3Web] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0 [GoogleUpdate Update3Web] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E [globalupdate Helper] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} [globalUpdate Update Plugin] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} [globalUpdate.OneClickProcessLauncher] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} [globalUpdate Update Plugin] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\mailUpdate [] (PUP.MailUpdate) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Registry Helper Service [] (PUP.RegistryHelper) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Mountain Bike [] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util Mountain Bike [] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect [] (PUP.Fuyu) SUPPRIMÉ clé*: HKLM\SOFTWARE\ArenaHD [] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\AskPartnerNetwork [] (Toolbar.AskBar) SUPPRIMÉ clé*: HKLM\SOFTWARE\CinemaPlus-3.2cV10.06 [] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\Conduit [] (PUP.Conduit) SUPPRIMÉ clé*: HKLM\SOFTWARE\Crossbrowse [] (PUP.CrossBrowse) SUPPRIMÉ clé*: HKLM\SOFTWARE\FFPluginHp [] (PUP.SweetSearch) SUPPRIMÉ clé*: HKLM\SOFTWARE\GAMESDESKTOP [] (Adware.GamesDesktop) SUPPRIMÉ clé*: HKLM\SOFTWARE\GlobalUpdate [] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\HighDefAction [] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\IHProtect [] (Adware.AgentODR) SUPPRIMÉ clé*: HKLM\SOFTWARE\Iminent [] (Adware.IMBooster) SUPPRIMÉ clé*: HKLM\SOFTWARE\Infonaut_1.10.0.14 [] (PUP.Infonaut) SUPPRIMÉ clé*: HKLM\SOFTWARE\InstalledBrowserExtensions [] (PUP.BrowserExtensions) SUPPRIMÉ clé*: HKLM\SOFTWARE\MaxComputerCleaner [] (PUP.MaxComputerCleaner) SUPPRIMÉ clé*: HKLM\SOFTWARE\Mountain Bike [] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SOFTWARE\mystartsearchSoftware [] (PUP.StartSearch) SUPPRIMÉ clé*: HKLM\SOFTWARE\Registry Helper [] (PUP.RegistryHelper) SUPPRIMÉ clé*: HKLM\SOFTWARE\searchult [] (PUP.Optional) SUPPRIMÉ clé*: HKLM\SOFTWARE\SupDp [] (Adware.SupTab) SUPPRIMÉ clé*: HKLM\SOFTWARE\SuperClick_1.10.0.16 [] (PUP.SuperClick) SUPPRIMÉ clé*: HKLM\SOFTWARE\supTab [] (Adware.SupTab) SUPPRIMÉ clé*: HKLM\SOFTWARE\supWindowsMangerProtect [] (PUP.Fuyu) SUPPRIMÉ clé*: HKLM\SOFTWARE\Tutorials [] (PUP.AgenceExclusive) SUPPRIMÉ clé*: HKLM\SOFTWARE\WajIntEnhance [] (Adware.Multiplug) SUPPRIMÉ clé*: HKLM\SOFTWARE\YorkNewCin [] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect [CMI Limited] (PUP.CMILimited) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaPlus-3.2cV10.06 [Cinema PlusV10.06] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse [The Crossbrowse Authors] (PUP.CrossBrowse) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_640_is1 [GAMESDESKTOP] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_652_is1 [GAMESDESKTOP] (Adware.CrossRider) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP [] (Adware.IMBooster) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar [] (Adware.IMBooster) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey [] (PUP.LinkeySearch) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mountain Bike [Mountain Bike] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1 [PCUtilities Software Limited] (PUP.OptimizerPro) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Registry Helper [SafeApp Software, LLC] (PUP.RegistryHelper) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SmartWeb [SoftBrain Technologies Ltd.] (PUP.SmartWebSearch) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage [] (Adware.Downware) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com [] (PUP.Vosteran) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance [] (Adware.Multiplug) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [globalupdate Inc.] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298} [C:\Program Files\globalUpdate\Update (Not File)] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} [C:\Program Files\globalUpdate\Update\1.3.25.0 (Not File)] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe [] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\crossbrowse.exe [C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe] (PUP.CrossBrowse) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\RegistryHelper.exe [C:\Program Files\Registry Helper\RegistryHelper.exe (Not File)] (PUP.RegistryHelper) SUPPRIMÉ clé*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Windesk Winsearch.exe [C:\Program Files\WindeskWinsearch\Windesk Winsearch.exe (Not File)] (PUP.WindeskWinsearch) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{4C836512-BB70-11D2-A5A7-00105A9C91C6} [Xceed Compression Control] (PUP.DriverSoft) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{4C836512-BB70-11D2-A5A7-00105A9C91C6}\InprocServer32 [C:\Program Files\Driver-Soft\DriverGenius\XceedZip.dll (Not File)] (PUP.DriverSoft) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}\InprocServer32 [C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll (Not File)] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52} [Manager Class] (PUP.MountainBike) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}\InprocServer32 [C:\Program Files\Mountain Bike\bin\858f324f6edd4b93ba9fbf5085b16845.dll] (PUP.MountainBike) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{6FDBBC21-E399-4542-B4CE-86326E1F0727} [AlphaImageControl.aicAlphaImage] (PUP.DriverSoft) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{6FDBBC21-E399-4542-B4CE-86326E1F0727}\InprocServer32 [C:\Program Files\Driver-Soft\DriverGenius\AlphaImageControl.ocx (Not File)] (PUP.DriverSoft) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{BADB1512-759C-4792-A18A-DD6BDC4E1991} [AlphaImageControl.ppgSourceImage] (PUP.DriverSoft) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{BADB1512-759C-4792-A18A-DD6BDC4E1991}\InprocServer32 [C:\Program Files\Driver-Soft\DriverGenius\AlphaImageControl.ocx (Not File)] (PUP.DriverSoft) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}\InprocServer32 [C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll (Not File)] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC} [PSFactoryBuffer] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}\InprocServer32 [C:\Program Files\globalUpdate\Update\1.3.25.0\psmachine.dll (Not File)] (PUP.GlobalUpdate) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{DB797690-40E0-11D2-9BD5-0060082AE372} [Xceed Zip Control] (PUP.DriverSoft) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{DB797690-40E0-11D2-9BD5-0060082AE372}\InprocServer32 [C:\Program Files\Driver-Soft\DriverGenius\XceedZip.dll (Not File)] (PUP.DriverSoft) SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A} [] (PUP.GlobalUpdate) SUPPRIMÉ clé: HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}\InprocServer32 [C:\Program Files\globalUpdate\Update\1.3.25.0\psmachine.dll (Not File)] (PUP.GlobalUpdate) SUPPRIMÉ valeur: HKLM\Software\Classes\.htm\OpenWithProgIDs\\CRSBRWSHTML [] (PUP.CrossBrowse) SUPPRIMÉ valeur: HKLM\Software\Classes\.html\OpenWithProgIDs\\CRSBRWSHTML [] (PUP.CrossBrowse) SUPPRIMÉ valeur: HKLM\Software\Classes\.shtml\OpenWithProgIDs\\CRSBRWSHTML [] (PUP.CrossBrowse) SUPPRIMÉ valeur: HKLM\Software\Classes\.webp\OpenWithProgIDs\\CRSBRWSHTML [] (PUP.CrossBrowse) SUPPRIMÉ valeur: HKLM\Software\Classes\.xht\OpenWithProgIDs\\CRSBRWSHTML [] (PUP.CrossBrowse) SUPPRIMÉ valeur: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_B779233798461D4E02700700CAC2833A ["C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window] (PUP.CrossBrowse) SUPPRIMÉ valeur: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Optimizer Pro [C:\Program Files\Optimizer Pro 3.96\OptProLauncher.exe] (PUP.OptimizerPro) SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_640 ["C:\Program Files\gmsd_fr_640\gmsd_fr_640.exe"] (Adware.CrossRider) SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SmartWeb [C:\Users\Gaele\AppData\Local\SmartWeb\SmartWebHelper.exe] (PUP.SmartWeb) SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_652 ["C:\Program Files\gmsd_fr_652\gmsd_fr_652.exe"] (Adware.CrossRider) SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Registry Helper ["C:\Program Files\Registry Helper\RegistryHelper.Exe" /boot] (PUP.RegistryHelper) SUPPRIMÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\\upgmsd_fr_640.exe [C:\Users\Gaele\AppData\Local\gmsd_fr_640\upgmsd_fr_640.exe -runonce] (Adware.CrossRider) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Google Chrome) ~ Le système a été redémarré. ---\\ Statistiques ~ Items scannés : 886 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 377 End of clean at 18:34:07 =================== ZHPCleaner-[R]-11062015-18_34_07.txt ZHPCleaner-[S]-11062015-18_29_46.txt