~ ZHPCleaner v2017.6.3.88 by Nicolas Coolman (2017/06/03) ~ Run by Karine (Administrator) (03/06/2017 17:40:28) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Nettoyer ~ Report : D:\Karine\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Karine\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 15063) ---\\ Service. (1) ARRETÉ : OtherSearch =>Adware.FastSearch ---\\ Navigateur internet. (0) ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (397) ---\\ Tâche planifiée. (3) SUPPRIMÉ tâche: [Online Application V2G1] [C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe (Not File) ] =>.Superfluous.Microleaves SUPPRIMÉ tâche: [System HealerPeriod] [C:\WINDOWS\Tasks\System HealerPeriod.job (Not File) ] =>PUP.Optional.SystemHealer SUPPRIMÉ tâche: [System HealerStartUp] [C:\WINDOWS\Tasks\System HealerStartUp.job (Not File) ] =>PUP.Optional.SystemHealer ---\\ Explorateur ( Dossiers, Fichiers ). (34) DEPLACÉ fichier: C:\Users\Public\Desktop\Launch System Healer.lnk [Bad : C:\Program Files (x86)\SystemHealer\SystemHealer.exe](..) =>PUP.Optional.SystemHealer DEPLACÉ fichier: C:\Program Files (x86)\YtubeABlckIE\kS_KMQZ.dll =>PUP.Optional.YouTubeAdBlock DEPLACÉ fichier: C:\WINDOWS\system32\drivers\NetUtils2016.sys =>.Superfluous.Netutils DEPLACÉ fichier: C:\Program Files (x86)\U9q3YrAz95\kl.dll =>Adware.FastSearch DEPLACÉ fichier: C:\WINDOWS\System32\drivers\Lace_wpf_x64.sys [Lace514 - ] =>Adware.Suspect DEPLACÉ fichier: C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [Microleaves LTD - Online.io Application] =>.Superfluous.Microleaves DEPLACÉ fichier: C:\Windows\Tasks\System HealerPeriod.job =>PUP.Optional.SystemHealer DEPLACÉ fichier: C:\Windows\Tasks\System HealerStartUp.job =>PUP.Optional.SystemHealer DEPLACÉ fichier: C:\Windows\Tasks\6E727987-C8EA-44DA-8749-310C0FBE3C3E.job =>Adware.CrossRider DEPLACÉ fichier: C:\Windows\Tasks\E3605470-291B-44EB-8648-745EE356599A.job =>Adware.CrossRider DEPLACÉ fichier: C:\END =>.Superfluous.Conduit DEPLACÉ fichier: C:\Windows\Temp\gAE60.tmp.exe =>Heuristic.Suspect DEPLACÉ fichier: C:\Windows\Temp\gB2E5.tmp.exe =>Heuristic.Suspect DEPLACÉ fichier: C:\Windows\Temp\gCC79.tmp.exe =>Heuristic.Suspect DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\4FE2.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\amipixel.cfg =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\Ins801A.tmp [Caphyon LTD - Custom action that tracks analytics data.] =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\JavaDeployReg.log =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\rsl6011.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\rsl66F7.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\rsl690A.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\rsl7FAF.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\rslACB2.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\rslACB3.tmp =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\~DF236E61831101AD2C.TMP =>.Superfluous.Temporary.Empty DEPLACÉ fichier: C:\Users\Karine\AppData\Local\Temp\~DFA5A592B58B613AD2.TMP =>.Superfluous.Temporary.Empty DEPLACÉ dossier: C:\Program Files (x86)\Microleaves =>.Superfluous.Microleaves DEPLACÉ dossier: C:\Program Files (x86)\SystemHealer =>PUP.Optional.SystemHealer DEPLACÉ dossier: C:\ProgramData\07cdb491-5757-0 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\07cdb491-7467-1 =>.Superfluous.Polluteware DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Healer =>PUP.Optional.SystemHealer DEPLACÉ dossier: C:\Users\Karine\AppData\Roaming\Microleaves =>.Superfluous.Microleaves DEPLACÉ dossier: C:\Users\Karine\AppData\Roaming\System Healer =>PUP.Optional.SystemHealer DEPLACÉ dossier: C:\Users\Karine\AppData\Roaming\Gplyra =>.Superfluous.Gplyra ---\\ Base de Registres ( Clés, Valeurs, Données ). (35) SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E3605470-291B-44EB-8648-745EE356599A} [YoutubeAdBlock] =>PUP.Optional.YouTubeAdBlock SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E3605470-291B-44EB-8648-745EE356599A} [] =>PUP.Optional.YouTubeAdBlock SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E3605470-291B-44EB-8648-745EE356599A} [] =>PUP.Optional.YouTubeAdBlock SUPPRIMÉ clé*: [X64] HKLM\Software\Classes\CLSID\{E3605470-291B-44EB-8648-745EE356599A} [YoutubeAdBlock] =>PUP.Optional.YouTubeAdBlock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E3605470-291B-44EB-8648-745EE356599A} [YoutubeAdBlock] =>PUP.Optional.YouTubeAdBlock SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E3605470-291B-44EB-8648-745EE356599A} [YoutubeAdBlock] =>PUP.Optional.YouTubeAdBlock SUPPRIMÉ clé*: HKCU\Software\WajIEnhance [] =>PUP.Optional.Wajam SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\JsZipProtect [C:\Program Files (x86)\Maoha\JiSuZip\JsZipProtect64.sys (Not File)] =>.Superfluous.Elex SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\JszipService [C:\Program Files (x86)\Maoha\JiSuZip\JszipSvc.exe (Not File)] =>.Superfluous.Elex SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\NetUtils2016 [C:\WINDOWS\system32\drivers\NetUtils2016.sys] =>.Superfluous.Netutils SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\OtherSearch [C:\Program Files (x86)\U9q3YrAz95\kl.dll (Not File)] =>Adware.FastSearch SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Lace514 [C:\WINDOWS\System32\drivers\Lace_wpf_x64.sys (Not File)] =>Adware.Suspect SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-2213222456-1334890690-3106081515-1003\SOFTWARE\System Healer [] =>PUP.Optional.SystemHealer SUPPRIMÉ clé: HKEY_USERS\S-1-5-21-2213222456-1334890690-3106081515-1003\SOFTWARE\WajIEnhance [] =>PUP.Optional.WaEnhance SUPPRIMÉ clé: HKCU\Software\System Healer [] =>PUP.Optional.SystemHealer SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akamaihd.net [] =>.Superfluous.AkamaiHD SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com [] =>Toolbar.Ask SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\cdncache-a.akamaihd.net [371] =>.Superfluous.AkamaiHD SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\fromdoctopdf.com [] =>.Superfluous.MindSpark SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\fromdoctopdf.dl.myway.com [12] =>.Superfluous.MindSpark SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\fromdoctopdf.dl.tb.ask.com [12] =>.Superfluous.MindSpark SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Soci2Sear Browser Enhancer [] =>PUP.Optional.Wajam SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\initialpage123Software [] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microleaves [] =>.Superfluous.Microleaves SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\OtherSearch [] =>Adware.FastSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Soci2Sear Browser Enhancer [] =>PUP.Optional.Wajam SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\6E727987-C8EA-44DA-8749-310C0FBE3C3E [Company Inc.] =>.Superfluous.SystemaLimited SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\OtherSearch [Skyler Emil] =>Adware.FastSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SystemHealer [SystemHealer] =>PUP.Optional.SystemHealer SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{442D70E1-78F2-4A34-B8AF-15FA40986168} [initialpage123 - Uninstall] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{486DC85F-8D64-47C0-A43E-4C15E727A21B} [initialpage123 - Uninstall] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FDB4ED50-4299-473A-A897-3FD22F06624D} [initialpage123 - Uninstall] =>Hijacker.Browser SUPPRIMÉ clé*: HKCU\SOFTWARE\60B31B2AB40C390B2020BCE70687C32E [] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\60B31B2AB40C390B2020BCE70687C32E [] =>Hijacker.Browser SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{E3605470-291B-44EB-8648-745EE356599A}\InprocServer32 [C:\Program Files (x86)\YtubeABlckIE\tby1FoYB.dll] =>Adware.Sambreel ---\\ Récapitulatif des éléments trouvés sur votre station. (21) https://nicolascoolman.eu/22017/04/04/adware-fastsearch/ =>Adware.FastSearch https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Microleaves https://www.nicolascoolman.com/fr/pup-optional-systemhealer/ =>PUP.Optional.SystemHealer https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.YouTubeAdBlock https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Netutils https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.Superfluous.Conduit https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary.Empty https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Polluteware https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Gplyra https://nicolascoolman.eu/2017/02/24/pup-optional-wajam/ =>PUP.Optional.Wajam https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.Superfluous.Elex https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WaEnhance https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AkamaiHD https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>.Superfluous.MindSpark https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.SystemaLimited https://www.nicolascoolman.com/fr/pup-optional-sambreel/ =>Adware.Sambreel ---\\ Nettoyage Additionnel. (43) ~ Suppression des Clés de registre Tracing. (43) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Google Chrome) ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 1592 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 74 ~ End of clean in 00h01mn00s ~==================== ZHPCleaner-[R]-03062017-14_56_20.txt ZHPCleaner-[R]-03062017-17_41_28.txt ZHPCleaner-[S]-03062017-14_53_58.txt ZHPCleaner-[S]-03062017-17_39_55.txt