~ ZHPCleaner v2016.11.18.196 by Nicolas Coolman (2016/11/18) ~ Run by MATHIEU (Administrator) (18/11/2016 13:13:59) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Scanner ~ Report : C:\Users\MATHIEU\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\MATHIEU\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (3) TROUVÉ donnée: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigUrl [Bad : http://stoppblock.org/wpad.dat?073bff907f4f82011e79a5d8c047d2c914375000] =>Hijacker.Proxy TROUVÉ PARAMS: ProxyServer [localhost:8080] (User.Validation) TROUVÉ donnée: [X64] HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\Default [Bad : 0http://stoppblock.org/wpad.dat?073bff907f4f82011e79a5d8c047d2c914375000] =>Hijacker.Proxy ---\\ Fichier hôte. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Tâche planifiée. (1) TROUVÉ tâche: [DistromaticSearchProtect-hourly] [C:\Program Files (x86)\Amazon Browser Settings\AmznSearchProtect.exe] =>PUP.Optional.AlexaTB ---\\ Explorateur ( Dossiers, Fichiers ). (6) TROUVÉ fichier: C:\Program Files (x86)\Amazon Browser Settings\AmznSearchProtect.exe [Distromatic - Amazon Browser Settings] =>PUP.Optional.AlexaTB TROUVÉ fichier: C:\Windows\Installer\wix{CB3CA48C-95CB-412B-B7AE-6F2EA8F89907}.SchedServiceConfig.rmi =>.Superfluous.Empty TROUVÉ fichier: C:\ProgramData\Microsoft\Windows\Start Menu\SrpnFiles\SrpnFiles.lnk =>.Superfluous.SpringFiles TROUVÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\SrpnFiles =>.Superfluous.SpringFiles TROUVÉ dossier: C:\Users\MATHIEU\AppData\Local\CrashReportClient\Saved =>.Superfluous.CrashReports TROUVÉ dossier: C:\Users\MATHIEU\AppData\Local\CrashReportClient =>.Superfluous.CrashReports ---\\ Base de Registres ( Clés, Valeurs, Données ). (15) TROUVÉ clé: HKEY_USERS\S-1-5-21-3566931006-2317670463-643054084-1000\SOFTWARE\Distromatic [] =>PUP.Optional.AlexaTB TROUVÉ clé: HKEY_USERS\S-1-5-21-3566931006-2317670463-643054084-1000\SOFTWARE\SrpnFiles [] =>.Superfluous.SpringFiles TROUVÉ clé: HKCU\Software\Distromatic [] =>PUP.Optional.AlexaTB TROUVÉ clé: HKCU\Software\SrpnFiles [] =>.Superfluous.SpringFiles TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bestpriceninja.com [] =>PUP.Optional.BestPriceNinja TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pstatic.bestpriceninja.com [146] =>PUP.Optional.BestPriceNinja TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector [Protector Class] =>PUP.Optional.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1 [Protector Class] =>PUP.Optional.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib [ProtectorLib Class] =>PUP.Optional.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1 [ProtectorLib Class] =>PUP.Optional.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\SrpnFiles [] =>.Superfluous.SpringFiles TROUVÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{35F7C590-3038-4121-BFED-F1FC95904BB6} [C:\Program Files (x86)\SrpnFiles\SrpnFiles.exe] =>.Superfluous.SpringFiles TROUVÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{4173177F-0963-49B6-AFF2-20A7BE1CBD49} [C:\Program Files (x86)\SrpnFiles\SrpnFiles.exe] =>.Superfluous.SpringFiles TROUVÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{5445E94D-B6F0-41B8-8FFD-806F13DF1B0F} [C:\Program Files (x86)\SrpnFiles\downloader.exe] =>.Superfluous.SpringFiles TROUVÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{3446397E-6503-45FB-9052-B5F58326A48E} [C:\Program Files (x86)\SrpnFiles\downloader.exe] =>.Superfluous.SpringFiles ---\\ Récapitulatif des éléments trouvés sur votre station. (7) https://www.anti-malware.top/2016/06/09/pirate-de-serveur-proxy-hijacker-proxy/ =>Hijacker.Proxy https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.AlexaTB https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Empty https://www.anti-malware.top/2016/04/26/superfluous-springfiles/ =>.Superfluous.SpringFiles https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.CrashReports https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.BestPriceNinja https://www.anti-malware.top/2016/04/30/pup-optional-bprotector/ =>PUP.Optional.BProtector ---\\ Bilan de la réparation ~ Aucune réparation effectuée. ---\\ Statistiques ~ Items scannés : 62138 ~ Items trouvés : 25 ~ Items annulés : 0 ~ Items réparés : 0 ~ End of search in 00h12mn59s ~==================== ZHPCleaner-[R]-07102016-21_10_27.txt ZHPCleaner-[R]-07102016-21_17_14.txt ZHPCleaner-[R]-10022016-13_30_48.txt ZHPCleaner-[S]-07102016-21_09_22.txt ZHPCleaner-[S]-07102016-21_16_38.txt ZHPCleaner-[S]-18112016-13_26_58.txt