~ ZHPCleaner v2016.12.24.222 by Nicolas Coolman (2016/12/24) ~ Run by Tarik (Administrator) (11/01/2017 22:13:52) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : ~ Type : Nettoyer ~ Report : C:\Users\Tarik\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Tarik\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Service. (0) ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (13) ---\\ Tâche planifiée. (1) SUPPRIMÉ tâche: [AutoKMS] [C:\Windows\AutoKMS\AutoKMS.exe (Not File) ] =>HackTool.AutoKMS ---\\ Explorateur ( Dossiers, Fichiers ). (34) DEPLACÉ fichier: C:\Program Files\KMSpico\Service_KMS.exe [ - Service_KMS] =>HackTool.KMSpico DEPLACÉ fichier: C:\Windows\AutoKMS\AutoKMS.exe [CODYQX4 - AutoKMS] =>HackTool.AutoKMS DEPLACÉ fichier: C:\Windows\Installer\wix{0F48C84E-8DFE-48DB-A93F-AB122AAD616D}.SchedServiceConfig.rmi =>.Superfluous.Empty DEPLACÉ fichier: C:\Windows\Installer\wix{B6DCCCD3-520D-4485-B642-FCC136CE12C3}.SchedServiceConfig.rmi =>.Superfluous.Empty DEPLACÉ fichier: C:\Windows\AutoKMS\AutoKMS.log =>HackTool.AutoKMS DEPLACÉ fichier: C:\Program Files\KMSpico\KMSELDI.exe [ - KMS GUI ELDI] =>HackTool.KMSpico DEPLACÉ fichier: C:\Program Files\KMSpico\AutoPico.exe [ - AutoPico] =>HackTool.KMSpico DEPLACÉ dossier: C:\Program Files\KMSpico =>HackTool.KMSpico DEPLACÉ dossier: C:\ProgramData\KMSAutoS =>HackTool.WinActivator DEPLACÉ dossier: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico DEPLACÉ dossier: C:\Windows\AutoKMS =>HackTool.AutoKMS DEPLACÉ dossier: C:\Windows\System32\config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports DEPLACÉ dossier: C:\Windows\System32\config\systemprofile\AppData\Local\LavasoftTcpService =>PUP.Optional.LavasoftWebCompanion DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\CrashRpt =>.Superfluous.CrashReports DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\MSfree Inc =>HackTool.WinActivator DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\PackageAware =>PUP.Optional.BearShare DEPLACÉ dossier: C:\Users\Tarik\AppData\Local\Popcorn-Time-CE =>.Superfluous.PopcornTime DEPLACÉ dossier: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports DEPLACÉ dossier: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\LavasoftTcpService =>PUP.Optional.LavasoftWebCompanion DEPLACÉ dossier: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime DEPLACÉ dossier: C:\ProgramData\Microsoft\Blend =>Adware.Suspect DEPLACÉ dossier: C:\Windows\Installer\MSI2E05.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI30D5.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI3D34.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI3DA0.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI5F7D.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI91CB.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9600.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9814.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9AF2.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9B3D.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSI9DB1.tmp- =>.Superfluous.Empty DEPLACÉ dossier: C:\Windows\Installer\MSIFB33.tmp- =>.Superfluous.Empty ---\\ Base de Registres ( Clés, Valeurs, Données ). (23) SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI [C:\Program Files\KMSpico\Service_KMS.exe (Not File)] =>HackTool.KMSpico SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-312584841-1094485216-218829181-1000\SOFTWARE\APN PIP [] =>.Superfluous.Conduit SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-312584841-1094485216-218829181-1000\SOFTWARE\Distromatic [] =>PUP.Optional.AlexaTB SUPPRIMÉ clé: HKCU\Software\APN PIP [] =>.Superfluous.Conduit SUPPRIMÉ clé: HKCU\Software\Distromatic [] =>PUP.Optional.AlexaTB SUPPRIMÉ clé*: HKCU\Software\AppDataLow\Software\WinToFlash Suggestor [] =>PUP.Optional.WinToFlash SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [ScriptHelperApi Class] =>Toolbar.Agent SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [ScriptHelperApi Class] =>Toolbar.Agent SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\KMService [] =>PUP.Optional.Office SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico_is1 [KMSpico v9.2.3] =>HackTool.KMSpico SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\PIP [] =>Toolbar.Ask SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{F20936B2-EB69-4BEB-B996-C955215BF381} [C:\Program Files\KMSpico\KMSELDI.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{085C1504-B910-4638-A8FC-049901D7D58B} [C:\Program Files\KMSpico\KMSELDI.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{1887425A-1F30-49F4-BF3C-1DA69ADB3FE7} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{FE24C69E-C1FE-4DC2-89F1-7473F200E04E} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{982651A3-AB8A-41D9-A3A9-79E1F3F39D9A} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{6ADBF0A6-74B7-488A-9986-7786B76A6207} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{47D60DC1-3EF2-49B9-A38B-CEE7707DDE5A} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{E4DB4E7A-C3A4-4F4F-A57C-93D9A24401A4} [C:\Program Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{61669B71-734F-4317-82DF-08A7E487C411} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{87BF6448-6524-4798-A197-CCBBF9DD94B3} [C:\Program Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico ---\\ Récapitulatif des éléments trouvés sur votre station. (17) https://www.anti-malware.top/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS https://www.anti-malware.top/2016/09/08/hacktool-kmspico/ =>HackTool.KMSpico https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Empty https://www.nicolascoolman.com/fr/hijacker-windows/ =>HackTool.WinActivator https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.CrashReports https://www.anti-malware.top/2016/04/26/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion https://www.nicolascoolman.com/fr/pup-bearshare/ =>PUP.Optional.BearShare https://www.anti-malware.top/2016/09/28/superfluous-popcorntime/ =>.Superfluous.PopcornTime https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>Adware.Suspect https://www.nicolascoolman.com/fr/toolbar-conduit/ =>.Superfluous.Conduit https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.AlexaTB https://www.nicolascoolman.com/fr/spyware-wintoflash/ =>PUP.Optional.WinToFlash https://www.nicolascoolman.com/fr/?p=5143 =>Toolbar.Agent https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Camec https://www.nicolascoolman.com/fr/hijacker-office/ =>PUP.Optional.Office https://www.anti-malware.top/2016/09/22/toolbar-ask/ =>Toolbar.Ask ---\\ Nettoyage Additionnel. (80) ~ Suppression des Clés de registre Tracing. (80) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 771 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 59 ~ End of clean in 00h00mn46s ~==================== ZHPCleaner-[R]-11012017-22_14_38.txt ZHPCleaner-[S]-11012017-22_13_07.txt