~ ZHPCleaner v2017.8.15.140 by Nicolas Coolman (2017/08/15) ~ Run by Martin (Administrator) (16/08/2017 20:53:32) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Illegal ~ Type : Nettoyer ~ Report : C:\Users\Martin\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Martin\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 15063) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (1) SUPPRIMÉ tâche: [Yahoo! Powered rimim] [C:\Windows\System32\wscript.exe] =>Adware.YahooPowered ---\\ Explorateur ( Dossiers, Fichiers ). (4) DEPLACÉ fichier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nahhmpbckpgdidfnmfkfgiflpjijilce_0.localstorage =>.SUP.SearchManager DEPLACÉ fichier: C:\Windows\Tasks\Yahoo! Powered rimim.job =>Adware.YahooPowered DEPLACÉ dossier*: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\icfhggboopebcohpcffdgnbmodalpbic =>.SUP.Extension DEPLACÉ dossier*: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce =>.SUP.SearchManager ---\\ Base de Registres ( Clés, Valeurs, Données ). (12) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_30[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_30[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_30[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_30¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0D0CyE0AtA0E0E0DyC0Azzzz0AyEyDyCtN0D0Tzu0StBtDtAyEtN1L2XzutAtFtBzytFtCtDyEtFyDtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyC0DtCyE0E0DyDzytGyB0CtA0CtG0DtC0AyCtGtCzzzzzztG0D0AzztByByByC0F0DtDzz0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0Czy0C0AtByC0E0AtGtD0CtCyEtGyEtA0FtBtGzyzy0FtBtGyDyCzy0EyEzzyE0DyDtDzzzz2QtN0A0LzuyE%26cr%3D1953568414%26a%3Dwbf_dmontlsfs_17_30%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_30¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0D0CyE0AtA0E0E0DyC0Azzzz0AyEyDyCtN0D0Tzu0StBtDtAyEtN1L2XzutAtFtBzytFtCtDyEtFyDtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyC0DtCyE0E0DyDzytGyB0CtA0CtG0DtC0AyCtGtCzzzzzztG0D0AzztByByByC0F0DtDzz0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0Czy0C0AtByC0E0AtGtD0CtCyEtGyEtA0FtBtGzyzy0FtBtGyDyCzy0EyEzzyE0DyDtDzzzz2QtN0A0LzuyE%26cr%3D1953568414%26a%3Dwbf_dmontlsfs_17_30%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_30¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0D0CyE0AtA0E0E0DyC0Azzzz0AyEyDyCtN0D0Tzu0StBtDtAyEtN1L2XzutAtFtBzytFtCtDyEtFyDtCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyC0DtCyE0E0DyDzytGyB0CtA0CtG0DtC0AyCtGtCzzzzzztG0D0AzztByByByC0F0DtDzz0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0Czy0C0AtByC0E0AtGtD0CtCyEtGyEtA0FtBtGzyzy0FtBtGyDyCzy0EyEzzyE0DyDtDzzzz2QtN0A0LzuyE%26cr%3D1953568414%26a%3Dwbf_dmontlsfs_17_30%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.audienceinsights.net [43] =>.SUP.AudienceInsights SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\WebDiscoverBrowser [] =>PUP.Optional.WebDisco ---\\ Récapitulatif des éléments trouvés sur votre station. (6) https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SearchManager https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Extension https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AudienceInsights https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WebDisco ---\\ Nettoyage Additionnel. (15) ~ Suppression des Clés de registre Tracing. (15) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 724 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items réparés : 17 ~ End of clean in 00h00mn21s ~==================== ZHPCleaner-[R]-16082017-20_53_53.txt ZHPCleaner-[S]-16082017-20_53_06.txt