~ ZHPCleaner v2016.7.17.86 by Nicolas Coolman (2016/07/17) ~ Run by Anabelle (Administrator) (20/07/2016 20:03:58) ~ Site : http://www.nicolascoolman.com ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Nettoyer ~ Report : C:\Users\Anabelle\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Anabelle\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 10586) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (1) SUPPRIMÉ tâche: [LaunchPreSignup] [C:\Program Files (x86)\OLBPre\OLBPre.exe (Not File) ] =>PUP.Optional.MyPCBackup ---\\ Explorateur ( Dossiers, Fichiers ). (37) DEPLACÉ fichier: C:\Windows\System32\drivers\mcvidrv.sys [Visicom Media Inc. - ManyCam Virtual Webcam Driver] =>.Superfluous.VisicomMedia DEPLACÉ fichier: C:\Windows\System32\drivers\mcaudrv_x64.sys [Visicom Media Inc. - ManyCam Virtual Microphone] =>.Superfluous.VisicomMedia DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage-journal =>.Superfluous.AkamaiHD DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage =>PUP.Optional.PricePeep DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal =>PUP.Optional.PricePeep DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage =>PUP.Optional.ReMarkIt DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage-journal =>PUP.Optional.ReMarkIt DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage =>PUP.Optional.CouponTime DEPLACÉ fichier: C:\Users\Anabelle\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage-journal =>PUP.Optional.CouponTime DEPLACÉ fichier: C:\Users\Anabelle\AppData\Roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb DEPLACÉ dossier: C:\Program Files (x86)\DNS Unlocker =>PUP.Optional.DNSUnlocker DEPLACÉ dossier: C:\ProgramData\3fd3a47b-19f1-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\3fd3a47b-2923-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-2693-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-3667-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-3853-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-4465-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-4b31-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-4f77-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-5541-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-5a67-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-5be7-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-67d5-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-71d3-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\7ab03888-7bc3-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{0cb46ba9-712c-1} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{0d5b7b94-412c-1} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{0e3a7a57-612c-1} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{0e919525-612c-1} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{1351988d-512c-0} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{14a3ede0-512c-0} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{1b134339-012c-0} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\{34235c9f-712c-0} =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverRestore =>PUP.Optional.DriverRestore DEPLACÉ dossier: C:\Users\Anabelle\AppData\Roaming\cacaoweb =>.Superfluous.CacaoWeb DEPLACÉ dossier: C:\Users\Anabelle\AppData\Roaming\PriceFountain =>PUP.Optional.PriceFountain ---\\ Base de Registres ( Clés, Valeurs, Données ). (49) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\OldSearch [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OV[...]] [Default] =>.Superfluous.AkamaiHD SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OV[...]] [Default] =>.Superfluous.AkamaiHD SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\OldSearch [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OV[...]] [Default] =>.Superfluous.AkamaiHD SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OV[...]] [Default] =>.Superfluous.AkamaiHD SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1ef422df-c387-4f0d-88d1-b75bdfd51013} [Treasure Track] =>PUP.Optional.TreasureTrack SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1ef422df-c387-4f0d-88d1-b75bdfd51013} [] =>PUP.Optional.TreasureTrack SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1ef422df-c387-4f0d-88d1-b75bdfd51013} [] =>PUP.Optional.TreasureTrack SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1ef422df-c387-4f0d-88d1-b75bdfd51013} [Treasure Track] =>PUP.Optional.TreasureTrack SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\OldSearch [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OVV9IFldCJR9aFQQTSEcFME0FCFwEURNNfW1KBFgCVEdGFEtZAlI=&q={searchTerms}] =>.Superfluous.AkamaiHD SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OVV9IFldCJR9aFQQTSEcFME0FCFwEURNNfWpdAEsSSXtGN25RD10eVg==&q={searchTerms}] =>.Superfluous.AkamaiHD SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\OldSearch [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OVV9IFldCJR9aFQQTSEcFME0FCFwEURNNfW1KBFgCVEdGFEtZAlI=&q={searchTerms}] =>.Superfluous.AkamaiHD SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQleVV1FRA1BbQsLVAlcFVAVdhQAAApCDFcbcV0OVV9IFldCJR9aFQQTSEcFME0FCFwEURNNfWpdAEsSSXtGN25RD10eVg==&q={searchTerms}] =>.Superfluous.AkamaiHD SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ManyCam [C:\Windows\System32\drivers\mcvidrv.sys (Not File)] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\mcaudrv_simple [C:\Windows\System32\drivers\mcaudrv_x64.sys (Not File)] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2381407644-2925066112-2361957852-1001\SOFTWARE\cacaoweb [C:\Users\Anabelle\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] =>.Superfluous.CacaoWeb SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2381407644-2925066112-2361957852-1001\SOFTWARE\DriverRestore [] =>PUP.Optional.DriverRestore SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2381407644-2925066112-2361957852-1001\SOFTWARE\eSupport.com [] =>PUP.Optional.eSupport SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2381407644-2925066112-2361957852-1001\SOFTWARE\ICSW1.14 [] =>Adware.InstallCore SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2381407644-2925066112-2361957852-1001\SOFTWARE\System Healer [] =>PUP.Optional.SystemHealer SUPPRIMÉ clé: HKCU\Software\cacaoweb [C:\Users\Anabelle\AppData\Roaming\cacaoweb\cacaoweb.exe (Not File)] =>.Superfluous.CacaoWeb SUPPRIMÉ clé: HKCU\Software\DriverRestore [] =>PUP.Optional.DriverRestore SUPPRIMÉ clé: HKCU\Software\eSupport.com [] =>PUP.Optional.eSupport SUPPRIMÉ clé: HKCU\Software\ICSW1.14 [] =>Adware.InstallCore SUPPRIMÉ clé: HKCU\Software\System Healer [] =>PUP.Optional.SystemHealer SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\coupontime.co [] =>PUP.Optional.CouponTime SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\download.manycam.com [] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\manycam.com [] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\shop.manycam.com [] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.coupontime00.coupontime.co [] =>PUP.Optional.CouponTime SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\coupontime.co [] =>PUP.Optional.CouponTime SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\download.manycam.com [] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\manycam.com [] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\shop.manycam.com [] =>.Superfluous.VisicomMedia SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.coupontime00.coupontime.co [2926] =>PUP.Optional.CouponTime SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\TypeLib\{00D02EC3-0B78-4444-BEF9-57815BD8B29C} [TreasureTrackIEClientLib] =>Adware.BrowseFox SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} [OCComSDK 1.0 Type Library] =>PUP.Optional.OpenCandy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\IntelliTerm_1.10.0.25 [] =>PUP.Optional.Generic SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{00D02EC3-0B78-4444-BEF9-57815BD8B29C} [TreasureTrackIEClientLib] =>Adware.BrowseFox SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} [OCComSDK 1.0 Type Library] =>PUP.Optional.OpenCandy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1 [www.dnsunlocker.com] =>PUP.Optional.DNSUnlocker SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b [] =>Hijacker.Browser SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\cacaoweb ["C:\Users\Anabelle\AppData\Roaming\cacaoweb\cacaoweb.exe" -noplayer] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\cacaoweb [0x020000000000000000000000] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\ManyCam [0x030000008A40BE18D568D101] =>.Superfluous.VisicomMedia SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{CD41176C-F210-4B3A-8ACA-6EF9BBC2CFC8}C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{A955C166-06C3-44A6-860F-4C0D9CC4D954}C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{F75D7459-A266-41AD-986F-48F7B401944B}C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{79D851DC-00C9-44CE-AC2D-E973BB117EF7}C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe [C:\users\anabelle\appdata\roaming\cacaoweb\cacaoweb.exe] =>.Superfluous.CacaoWeb ---\\ Récapitulatif des éléments trouvés sur votre station. (19) http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup https://www.nicolascoolman.info/2016/05/06/superfluous-visicommedia/ =>.Superfluous.VisicomMedia http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.AkamaiHD http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PricePeep http://www.nicolascoolman.fr/?p=398 =>PUP.Optional.ReMarkIt http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CouponTime https://www.nicolascoolman.info/2016/04/30/superfluous-cacaoweb/ =>.Superfluous.CacaoWeb http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DNSUnlocker http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Polluteware http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DriverRestore http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PriceFountain http://www.nicolascoolman.fr/pup-optional-treasuretrack/ =>PUP.Optional.TreasureTrack http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.eSupport https://www.nicolascoolman.info/2016/04/22/adware-installcore/ =>Adware.InstallCore http://www.nicolascoolman.fr/pup-optional-systemhealer/ =>PUP.Optional.SystemHealer http://www.nicolascoolman.fr/?p=347 =>Adware.BrowseFox http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy https://www.nicolascoolman.info/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic http://www.nicolascoolman.fr/hijacker-browser/ =>Hijacker.Browser ---\\ Nettoyage Additionnel. (15) ~ Suppression des Clés de registre Tracing. (15) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Mozilla Firefox) ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 251 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 87 ~ End of clean in 00h01mn00s ~==================== ZHPCleaner-[R]-20072016-20_04_58.txt ZHPCleaner-[S]-20072016-20_03_44.txt