~ ZHPCleaner v2017.6.26.105 by Nicolas Coolman (2017/06/26) ~ Run by Paulette (Administrator) (29/06/2017 15:31:08) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Illegal ~ Type : Scanner ~ Report : C:\Users\Paulette\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Paulette\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 8, 64-bit (Build 9200) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (6) TROUVÉ: 127.0.0.1 www.nouveau-avast.com =>Trojan.CertLock TROUVÉ: 127.0.0.1 www.download-avast.com =>Trojan.CertLock TROUVÉ: 127.0.0.1 download-avast.com =>Trojan.CertLock TROUVÉ: 127.0.0.1 www.telecharger-avast.com =>Trojan.CertLock TROUVÉ: 127.0.0.1 telecharger-avast.com =>Trojan.CertLock ~ Nombre de redirections trouvées 9/18843 ---\\ Tâche planifiée. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Explorateur ( Dossiers, Fichiers ). (2) TROUVÉ fichier: C:\Windows\Prefetch\BROWSERPROTECT.EXE-C73693F7.pf =>PUP.Optional.Eazel TROUVÉ dossier: C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic ---\\ Base de Registres ( Clés, Valeurs, Données ). (19) TROUVÉ clé: HKEY_USERS\S-1-5-21-2286930325-316879762-422518837-1001\SOFTWARE\Magicbit [] =>.Superfluous.Magicbit TROUVÉ clé: HKCU\Software\Magicbit [] =>.Superfluous.Magicbit TROUVÉ clé: HKLM\SOFTWARE\Wow6432Node\Secure [] =>.Superfluous.SecurePCCleaner TROUVÉ clé: HKLM\SOFTWARE\Secure [] =>.Superfluous.SecurePCCleaner TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\IObitUnSvr [] =>.Superfluous.Elex TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Tracing\pcactivator_RASAPI32 [] =>.Superfluous.PCActivator TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Tracing\pcactivator_RASMANCS [] =>.Superfluous.PCActivator TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1672163f-8651-4c0d-9c05-4ba941123972} [C:\Users\Paulette\AppData\Roaming\BrowserExtensions (Not File)] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61db39d5-034c-45c0-8bb2-daf857edcf3b} [C:\Users\Paulette\AppData\Roaming\BrowserExtensions (Not File)] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-2286930325-316879762-422518837-1001\Products\7588A79F83A29EC45AA30FE794F1D28A [Snap.Do] =>PUP.Optional.SmartBar TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0338237183FFAC54ABE91AFF69A1ED42 [C:\?Program Files (x86)\IObit Apps Toolbar\FF\chrome\chrome.jar (Not File)] =>PUP.Optional.Dealio TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0EB2612497195754BBABF8D9F4116B34 [C:\Program Files (x86)\IObit Apps Toolbar\FF\components\iobitappsToolbarFF.dll (Not File)] =>PUP.Optional.Dealio TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\179893296AD828D4A9C17CC7DC633064 [C:\Program Files (x86)\IObit Apps Toolbar\WidgiHelper.exe (Not File)] =>PUP.Optional.Dealio TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1672163f-8651-4c0d-9c05-4ba941123972} [C:\Users\Paulette\AppData\Roaming\BrowserExtensions (Not File)] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61db39d5-034c-45c0-8bb2-daf857edcf3b} [C:\Users\Paulette\AppData\Roaming\BrowserExtensions (Not File)] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90E4CD0C-426F-4207-805B-7885AB32D43F} [C:\Users\Paulette\AppData\Roaming\BrowserExtensions (Not File)] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAE9BEC8-4723-4347-AFC6-25EE3326BA5B} [C:\Users\Paulette\AppData\Roaming\BrowserExtensions (Not File)] =>PUP.Optional.BrowserExtensions TROUVÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Advanced SystemCare 7 [0x020000000000000000000000] =>.Superfluous.AdvancedSystemCare TROUVÉ valeur: HKEY_USERS\S-1-5-21-2286930325-316879762-422518837-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Advanced SystemCare 7 [0x020000000000000000000000] =>.Superfluous.AdvancedSystemCare ---\\ Récapitulatif des éléments trouvés sur votre station. (11) https://nicolascoolman.eu/2017/06/26/trojan-certlock/ =>Trojan.CertLock https://www.nicolascoolman.com/fr/hijacker-eazel/ =>PUP.Optional.Eazel https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Magicbit https://www.anti-malware.top/2016/06/08/superfluous-securepccleaner/ =>.Superfluous.SecurePCCleaner https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.Superfluous.Elex https://nicolascoolman.eu/2017/01/02/superfluous-pcactivator/ =>.Superfluous.PCActivator https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.BrowserExtensions https://www.nicolascoolman.com/fr/hijacker-smartbar/ =>PUP.Optional.SmartBar https://www.nicolascoolman.com/fr/pup-dealio/ =>PUP.Optional.Dealio https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AdvancedSystemCare ---\\ Bilan de la réparation ~ Aucune réparation effectuée. ---\\ Statistiques ~ Items scannés : 105758 ~ Items trouvés : 32 ~ Items annulés : 0 ~ Items réparés : 0 ~ End of search in 00h04mn08s ~==================== ZHPCleaner-[S]-29062017-15_35_16.txt