~ ZHPCleaner v2017.7.17.123 by Nicolas Coolman (2017/07/17) ~ Run by DIDIER (Administrator) (27/07/2017 18:51:58) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Illegal ~ Type : Scanner ~ Report : C:\Users\DIDIER\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\DIDIER\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 8.1 Connected, 64-bit (Build 9600) ---\\ Service. (2) [R] TROUVÉ : AdvancedSystemCareService10 =>.Superfluous.AdvancedSystemCare [R] TROUVÉ : SafetyBrowsingService =>.Superfluous.BalmainManagement ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (1) TROUVÉ tâche: [ASC10_PerformanceMonitor] [C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe] =>.Superfluous.AdvancedSystemCare ---\\ Explorateur ( Dossiers, Fichiers ). (32) TROUVÉ dossier: C:\Program Files (x86)\758290ba-2925-42b3-84cc-1d18efac50a6 =>Adware.CrossRider TROUVÉ dossier: C:\Program Files (x86)\850b14a9-df9b-49e0-86a9-17f782850ec2 =>Adware.CrossRider TROUVÉ dossier: C:\Program Files (x86)\944a24dd-a0cc-490f-82cd-62de3f479419 =>Adware.CrossRider TROUVÉ dossier: C:\Program Files (x86)\e1a759f4-ebc4-4717-b582-7e34310f774f =>Adware.CrossRider TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\mainservice_sb.exe [Copyright © 2015 - Service] =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\Public\Desktop\Advanced SystemCare 10.lnk =>.Superfluous.AdvancedSystemCare TROUVÉ fichier: C:\Users\DIDIER\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.Superfluous.Atwola TROUVÉ fichier: C:\Users\DIDIER\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.Superfluous.Atwola TROUVÉ fichier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit\SHAREit.lnk =>.Superfluous.SHAREit TROUVÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit =>.Superfluous.SHAREit TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\list1 =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\list2 =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\list3 =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\list4 =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\mainservice_sb.exe.config =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\MetroFramework.dll [Sven Walter - MetroFramework.dll] =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\MetroFramework.Fonts.dll [Sven Walter - MetroFramework.Fonts.dll] =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\netfilter.dll =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\sb_core.exe [Balmain Management Ltd - Safety Browsing] =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\sb_core.exe.config =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\settings.cache =>.Superfluous.BalmainManagement TROUVÉ fichier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\uninstaller.exe [Balmain Management Ltd - ] =>.Superfluous.BalmainManagement TROUVÉ dossier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\de-de =>.Superfluous.BalmainManagement TROUVÉ dossier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\es-es =>.Superfluous.BalmainManagement TROUVÉ dossier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\fr-fr =>.Superfluous.BalmainManagement TROUVÉ dossier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\it-it =>.Superfluous.BalmainManagement TROUVÉ dossier: C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing =>.Superfluous.BalmainManagement TROUVÉ dossier: C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare =>.Superfluous.AdvancedSystemCare TROUVÉ dossier: C:\ProgramData\Application Data\IObit\ASCDownloader =>.Superfluous.AdvancedSystemCare TROUVÉ dossier: C:\ProgramData\IObit\ASCDownloader =>.Superfluous.AdvancedSystemCare TROUVÉ dossier: C:\Users\DIDIER\AppData\Roaming\IObit\Advanced SystemCare =>.Superfluous.AdvancedSystemCare TROUVÉ dossier: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare =>.Superfluous.AdvancedSystemCare ---\\ Base de Registres ( Clés, Valeurs, Données ). (33) TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\082f40b1-b7a9-47aa-af16-bf7497eb259d [] =>Adware.CrossRider TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\4bd55b85-a18f-4c5e-94ea-74f6cd419f6e [] =>Adware.CrossRider TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\62f8f907-8c7b-4f50-b2ff-861d549f1f01 [] =>Adware.CrossRider TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\e072eb25-924b-4946-8cfa-49bc20028090 [] =>Adware.CrossRider TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\f6a3c0ab-7419-4ce7-91c2-e6a62b40d36f [] =>Adware.CrossRider TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\AdvancedSystemCareService10 [C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe](.IObit.) =>.Superfluous.AdvancedSystemCare TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\SafetyBrowsingService [C:\Users\DIDIER\AppData\Roaming\SafetyBrowsing\mainservice_sb.exe](.Copyright © 2015.) =>.Superfluous.BalmainManagement TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\AdvancedSystemCareService10 [C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe] =>.Superfluous.AdvancedSystemCare TROUVÉ clé: HKEY_USERS\S-1-5-21-3124055905-4228448261-740493662-1002\SOFTWARE\globalUpdate [] =>PUP.Optional.GlobalUpdate TROUVÉ clé: HKEY_USERS\S-1-5-21-3124055905-4228448261-740493662-1002\SOFTWARE\InstalledBrowserExtensions [] =>PUP.Optional.BrowserExtensions TROUVÉ clé: HKEY_USERS\S-1-5-21-3124055905-4228448261-740493662-1002\SOFTWARE\Safety Browsing [] =>.Superfluous.BalmainManagement TROUVÉ clé: HKEY_USERS\S-1-5-21-3124055905-4228448261-740493662-1002\SOFTWARE\Tuguu [] =>.Superfluous.VAFPlayer TROUVÉ clé: HKCU\Software\globalUpdate [] =>PUP.Optional.GlobalUpdate TROUVÉ clé: HKCU\Software\InstalledBrowserExtensions [] =>PUP.Optional.BrowserExtensions TROUVÉ clé: HKCU\Software\Safety Browsing [] =>.Superfluous.BalmainManagement TROUVÉ clé: HKCU\Software\Tuguu [] =>.Superfluous.VAFPlayer TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.audienceinsights.net [43] =>.Superfluous.AudienceInsights TROUVÉ clé: HKLM\SOFTWARE\Iobit\ASC [] =>.Superfluous.AdvancedSystemCare TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\SafetyBrowsingService [] =>.Superfluous.BalmainManagement TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\SafetyBrowsingService [] =>.Superfluous.BalmainManagement TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VisualDiscovery [service] =>PUP.Optional.VisualDiscovery TROUVÉ clé: [X64] HKLM\SOFTWARE\InstalledBrowserExtensions [] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe [] =>PUP.Optional.GlobalUpdate TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\GlobalUpdate [] =>PUP.Optional.GlobalUpdate TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions [] =>PUP.Optional.BrowserExtensions TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Safety Browsing [] =>.Superfluous.BalmainManagement TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\SupDp [] =>PUP.Optional.SupTab TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\VisualDiscovery [] =>PUP.Optional.VisualDiscovery TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Safety Browsing [Balmain Management Ltd] =>.Superfluous.BalmainManagement TROUVÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Pokki [0x020000000000000000000000] =>.Superfluous.SweetLabs TROUVÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\crossbrowse.lnk [0x020000000000000000000000] =>PUP.Optional.CrossBrowse TROUVÉ valeur: HKEY_USERS\S-1-5-21-3124055905-4228448261-740493662-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Pokki [0x020000000000000000000000] =>.Superfluous.SweetLabs TROUVÉ valeur: HKEY_USERS\S-1-5-21-3124055905-4228448261-740493662-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\crossbrowse.lnk [0x020000000000000000000000] =>PUP.Optional.CrossBrowse ---\\ Récapitulatif des éléments trouvés sur votre station. (13) https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AdvancedSystemCare https://nicolascoolman.eu/2017/03/13/superfluous-safetybrowsing/ =>.Superfluous.BalmainManagement https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/02/04/superfluous-atwola/ =>.Superfluous.Atwola https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.SHAREit https://www.nicolascoolman.com/fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.BrowserExtensions https://www.nicolascoolman.com/fr/pup-vafplayer/ =>.Superfluous.VAFPlayer https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AudienceInsights https://www.nicolascoolman.com/fr/link-655/ =>PUP.Optional.VisualDiscovery https://www.nicolascoolman.com/fr/pup-suptab/ =>PUP.Optional.SupTab https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.SweetLabs https://www.nicolascoolman.com/fr/pup-optional-crossbrowse =>PUP.Optional.CrossBrowse ---\\ Bilan de la réparation ~ Aucune réparation effectuée. ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 63497 ~ Items trouvés : 71 ~ Items annulés : 0 ~ Items réparés : 0 ~ End of search in 00h14mn42s ~==================== ZHPCleaner-[S]-27072017-19_06_40.txt