~ ZHPCleaner v2017.12.8.213 by Nicolas Coolman (2017/12/08) ~ Run by utilisateur (Administrator) (08/12/2017 21:41:17) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Scanner ~ Report : C:\Users\utilisateur\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\utilisateur\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Service. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Navigateur internet. (42) TROUVÉ: [893eop4p.default] - user_pref("extensions.ShopperReports@ShopperReports.com.install-event-fired", true); =>PUP.Optional.ShopperReports TROUVÉ: [893eop4p.default] - user_pref("extensions.dealply.lastHeartBitDate", "2016_3_8"); =>PUP.Optional.Dealply TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.admin", false); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.aflt", "babsst"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.autoRvrt", "false"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.dfltLng", "en"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.excTlbr", false); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.id", "1eb1b53b00000000000090fba62e5342"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.instlDay", "15742"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.instlRef", "sst"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.newTab", false); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.prdct", "delta"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.prtnrId", "delta"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.rvrt", "false"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.smplGrp", "none"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.tlbrId", "base"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.tlbrSrchUrl", ""); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.vrsn", "1.8.10.0"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.vrsnTs", "1.8.10.013:31:34"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.delta.vrsni", "1.8.10.0"); =>.SUP.DeltaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.admin", false); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.aflt", "babsst"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.appId", "{8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B}"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.autoRvrt", "false"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.dfltLng", "en"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.excTlbr", false); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.ffxUnstlRst", false); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.id", "1eb1b53b00000000000090fba62e5342"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.instlDay", "15831"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.instlRef", "sst"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.newTab", false); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.prdct", "holasearch"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.prtnrId", "holasearch"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.rvrt", "false"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.smplGrp", "none"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.tlbrId", "base"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.tlbrSrchUrl", ""); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.vrsn", "1.8.16.16"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.vrsnTs", "1.8.16.1616:51:08"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.holasearch.vrsni", "1.8.16.16"); =>PUP.Optional.HolaSearch TROUVÉ: [893eop4p.default] - user_pref("extensions.putlockerdownloader2@putlockerdownloader.com.install-event-fired", true); =>PUP.Optional.PutLocker ---\\ Fichier hôte. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (1) TROUVÉ tâche: [{92E74111-1F65-4829-B20D-6BED47F6FD80}] [C:\Users\utilisateur\AppData\Roaming\FissaSearch\FissaUninstaller.exe (Not File) ] =>PUP.Optional.OfferBox ---\\ Explorateur ( Dossiers, Fichiers ). (13) TROUVÉ fichier: C:\Users\utilisateur\AppData\Roaming\PB-SX3 BOX.exe =>Adware.Pirrit TROUVÉ fichier: C:\Users\utilisateur\AppData\Roaming\PB-SX3 BOX.exe =>Adware.Suspect TROUVÉ dossier: C:\Users\utilisateur\AppData\Roaming\PDAppFlex =>Trojan.Elpman TROUVÉ fichier: C:\Users\utilisateur\AppData\Roaming\PB-SX3 BOX.exe =>Adware.GenericTask TROUVÉ dossier: C:\Program Files (x86)\Disc Soft\DAEMON Tools Lite =>.SUP.Empty TROUVÉ dossier: C:\Program Files (x86)\Disc Soft =>.SUP.Empty TROUVÉ fichier: C:\ProgramData\Microsoft Toolkit\Settings.xml =>HackTool.AutoKMS TROUVÉ dossier: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS TROUVÉ dossier: C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic TROUVÉ dossier: C:\Users\utilisateur\AppData\LocalLow\Delta =>.SUP.DeltaSearch TROUVÉ dossier: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime TROUVÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime TROUVÉ dossier: C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>PUP.Optional.DomaIQ ---\\ Base de Registres ( Clés, Valeurs, Données ). (13) TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 10 ["C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto (Not File)] =>.SUP.AdvancedSystemCare TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 7 ["C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto (Not File)] =>.SUP.AdvancedSystemCare TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 8 ["C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (Not File)] =>.SUP.AdvancedSystemCare TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Akamai NetSession Interface ["C:\Users\utilisateur\AppData\Local\Akamai\netsession_win.exe" (Not File)] =>.SUP.AkamaiHD TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ebcxomcd ["c:\users\utilisateur\appdata\local\lollipop\ebcxomcd.exe" ebcxomcd (Not File)] =>PUP.Optional.Lollipop TROUVÉ clé: HKCU\Software\AppDataLow\Software\Smartbar [] =>Adware.QuickShare TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.protectorbho [Google Toolbar Notifier BHO] =>Adware.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1 [Google Toolbar Notifier BHO] =>Adware.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector [Protector Class] =>Adware.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1 [Protector Class] =>Adware.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib [ProtectorLib Class] =>Adware.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1 [ProtectorLib Class] =>Adware.BProtector TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Akamai NetSession Interface [] =>.SUP.AkamaiHD ---\\ Récapitulatif des éléments trouvés sur votre station. (20) https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.ShopperReports https://www.nicolascoolman.com/fr/pup-dealply/ =>PUP.Optional.Dealply https://nicolascoolman.eu/2017/09/29/sup-deltasearch/ =>.SUP.DeltaSearch https://www.nicolascoolman.com/fr/hijacker-holasearch/ =>PUP.Optional.HolaSearch https://www.nicolascoolman.com/fr/spyware-putlocker/ =>PUP.Optional.PutLocker https://nicolascoolman.eu/2017/10/15/adware-offerbox/ =>PUP.Optional.OfferBox https://nicolascoolman.eu/2017/02/25/adware-pirrit/ =>Adware.Pirrit https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/2017/09/23/trojan-elpman/ =>Trojan.Elpman https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.GenericTask https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Empty https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime https://nicolascoolman.eu/2017/10/04/adware-domaiq/ =>PUP.Optional.DomaIQ https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AdvancedSystemCare https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AkamaiHD https://www.nicolascoolman.com/fr/adware-lollipop/ =>PUP.Optional.Lollipop https://nicolascoolman.eu/2017/09/21/adware-quickshare/ =>Adware.QuickShare https://nicolascoolman.eu/2017/04/12/adware-bprotector/ =>Adware.BProtector ---\\ Bilan de la réparation ~ Aucune réparation effectuée. ---\\ Statistiques ~ Items scannés : 85447 ~ Items trouvés : 74 ~ Items annulés : 0 ~ Items réparés : 0 ~ End of search in 00h11mn40s ~==================== ZHPCleaner-[S]-08122017-21_52_57.txt