~ ZHPCleaner v2016.4.14.55 by Nicolas Coolman (2016/04/14) ~ Run by Bénédicte (Administrator) (17/04/2016 13:39:49) ~ Site : http://www.nicolascoolman.com ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Nettoyer ~ Report : C:\Users\Bénédicte\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Bénédicte\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (60) ---\\ Tâche planifiée. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Explorateur ( Dossiers, Fichiers ). (10) DEPLACÉ fichier: C:\Users\Public\Desktop\DriverEasy.lnk [Bad : C:\Program Files (x86)\Easeware\DriverEasy\DriverEasy.exe] =>.Superfluous.Easeware DEPLACÉ fichier: C:\Windows\Prefetch\QKSEESVC.EXE-FF99B657.pf =>.Superfluous.TaiwanShuiMu DEPLACÉ fichier: C:\Users\Bénédicte\Downloads\cacaoweb.exe =>.Superfluous.CacaoWeb DEPLACÉ fichier: C:\Users\Bénédicte\Downloads\DriverEasy_Setup.exe [Easeware - DriverEasy Setup] =>.Superfluous.Easeware DEPLACÉ dossier: C:\Program Files (x86)\ACGPro =>.Superfluous.XinZhou DEPLACÉ dossier: C:\Program Files (x86)\GtkFree =>.Superfluous.XinZhou DEPLACÉ dossier: C:\Program Files (x86)\WinTaske =>PUP.Optional.YesSearches DEPLACÉ dossier: C:\Program Files\Easeware =>.Superfluous.Easeware DEPLACÉ dossier: C:\Users\Bénédicte\AppData\Roaming\Easeware =>.Superfluous.Easeware DEPLACÉ dossier: C:\Users\Bénédicte\AppData\Roaming\eCyber =>PUP.Optional.Elex ---\\ Base de Registres ( Clés, Valeurs, Données ). (45) REMPLACÉ donnée: HKLM\...\SafeZoneStable\Shell\open\Command\\"C:\Program Files\AVAST Software\SZBrowser\Launcher.exe" http://www.piesearch.com/?uid=cd8346df-3102-40be-8b4d-b6da1215dcf9 =>PUP.Optional.PieSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.001 [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.7z [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.arj [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.bz2 [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.bzip2 [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.cab [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.cpio [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.deb [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.dmg [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.fat [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.gz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.gzip [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.hfs [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.iso [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.lha [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.lzh [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.lzma [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.ntfs [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.rar [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.rpm [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.squashfs [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.swm [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tar [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.taz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tbz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tbz2 [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tgz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.tpz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.txz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.vhd [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.wim [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.xar [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.xz [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.z [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\WinZippers.zip [WinZip] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\qkseeService [] =>.Superfluous.TaiwanShuiMu SUPPRIMÉ clé*: [X64] HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\winzipersvc [] =>.Superfluous.WinZipper SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DriverEasy_is1 [Easeware] =>.Superfluous.Easeware SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\WinZiper [] =>.Superfluous.WinZipper SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\cacaoweb ["C:\Users\Bénédicte\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{C9E8F993-3F6B-4D37-A7CF-88A5D556ED4B}C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{A43B9929-768C-49D0-83F5-390BEA5DA91E}C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{3BCF83C6-6935-44E8-9739-D81B6B07110E}C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{3F37C7CD-D5A8-42A5-A2EB-53798988C44E}C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\bénédicte\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb ---\\ Récapitulatif des éléments trouvés sur votre station. (8) http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Easeware http://www.nicolascoolman.fr/http://www.nicolascoolman.com/forum/post33454.html#p33454 =>.Superfluous.TaiwanShuiMu http://www.nicolascoolman.fr/?p=338 =>.Superfluous.CacaoWeb http://www.nicolascoolman.fr/http://www.nicolascoolman.com/forum/post33181.html#p33181 =>.Superfluous.XinZhou http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.YesSearches http://www.nicolascoolman.fr/?p=996 =>PUP.Optional.Elex http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PieSearch http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.WinZipper ---\\ Nettoyage Additionnel. (25) ~ Suppression des Clés de registre Tracing. (25) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Mozilla Firefox) ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 327 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 55 ~ End of clean in 00h00mn49s =================== ZHPCleaner-[R]-17042016-13_40_38.txt ZHPCleaner-[S]-17042016-12_23_51.txt