~ ZHPCleaner v2018.2.28.42 by Nicolas Coolman (2018/02/28) ~ Run by Bastien (Administrator) (28/02/2018 21:13:06) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Bastien\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Bastien\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 16299) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (3) ARRETÉ : BYTEFENCESERVICE =>.SUP.ByteFence ARRETÉ : RTOP =>.SUP.ByteFence ARRETÉ : SLIMSERVICE =>.SUP.SlimWareUtilities ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (63) ---\\ TÂCHE PLANIFIÉE. (2) SUPPRIMÉ tâche: [BYTEFENCE] [C:\Program Files\ByteFence\ByteFence.exe (Not File) ] =>.SUP.ByteFence SUPPRIMÉ tâche: [Yahoo! Powered fadid] [C:\WINDOWS\Tasks\Yahoo! Powered fadid.job (Not File) ] =>Adware.YahooPowered ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (11) DEPLACÉ fichier: C:\Program Files\SlimService\SlimServiceFactory.exe [SlimWare Utilities, Inc. - SlimServiceFactory] =>.SUP.SlimWareUtilities DEPLACÉ fichier: C:\WINDOWS\System32\DRIVERS\SWDUMon.sys [SlimWare Utilities, Inc. - Driver Update Installer Monitor] =>.SUP.SlimWareUtilities DEPLACÉ fichier: C:\Windows\Tasks\Yahoo! Powered fadid.job =>Adware.YahooPowered DEPLACÉ fichier: C:\Windows\Prefetch\BYTEFENCE.EXE-945F23E2.pf =>.SUP.ByteFence DEPLACÉ fichier: C:\Windows\Prefetch\BYTEFENCESCAN.EXE-60FADCDB.pf =>.SUP.ByteFence DEPLACÉ dossier^: C:\Program Files\ByteFence =>.SUP.ByteFence DEPLACÉ dossier^: C:\ProgramData\ByteFence =>.SUP.ByteFence DEPLACÉ dossier: C:\ProgramData\SlimWare Utilities Inc =>.SUP.SlimWareUtilities DEPLACÉ dossier: C:\ProgramData\SlimWare Utilities, Inc =>.SUP.SlimWareUtilities DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.SUP.ByteFence DEPLACÉ dossier: C:\Users\Bastien\AppData\Local\SlimWare Utilities Inc =>.SUP.SlimWareUtilities ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (34) SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_52&par[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_52&par[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_52¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDtCyB0CtBtCtDtAzyzz0AyCyCtA0DtN0D0Tzu0StCzztByCtN1L2XzutAtFtByDtFtCtFyBzztN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StAzyzy0AyBzy0EtBtGyE0CyCyCtG0B0B0EyDtGtA0F0EtDtG0B0ByByCtB0F0CtD0CtAyDtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzztAtA0A0EtBtC0DtG0B0EtCyBtGyE0DtAyBtGzzyDyCtAtGtD0A0D0A0CtAyEyCyD0C0AtD2QtN0A0LzuyE%26cr%3D32131993%26a%3Dwbf_togoo_16_52%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472F-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_16_52¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDtCyB0CtBtCtDtAzyzz0AyCyCtA0DtN0D0Tzu0StCzztByCtN1L2XzutAtFtByDtFtCtFyBzztN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StAzyzy0AyBzy0EtBtGyE0CyCyCtG0B0B0EyDtGtA0F0EtDtG0B0ByByCtB0F0CtD0CtAyDtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzztAtA0A0EtBtC0DtG0B0EtCyBtGyE0DtAyBtGzzyDyCtAtGtD0A0D0A0CtAyEyCyD0C0AtD2QtN0A0LzuyE%26cr%3D32131993%26a%3Dwbf_togoo_16_52%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\BYTEFENCESERVICE [C:\Program Files\ByteFence\ByteFenceService.exe] =>.SUP.ByteFence SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\RTOP [C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe] =>.SUP.ByteFence SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\SLIMSERVICE [C:\Program Files\SlimService\SlimServiceFactory.exe (Not File)] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\SWDUMON [C:\WINDOWS\System32\DRIVERS\SWDUMon.sys (Not File)] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1059447853-3332978445-704572184-1001\SOFTWARE\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1059447853-3332978445-704572184-1001\SOFTWARE\SlimWare Utilities Inc [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé: HKCU\Software\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé: HKCU\Software\SlimWare Utilities Inc [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{6DC6EE87-F3BB-40EB-BCEE-12F7D6E3EEDF} [SlimWare Service Connection Factory] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{959D527D-6C27-4879-A644-065526D6969C} [SlimWare Service Connection] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{BAF87BD0-A924-4108-AFA5-A5FA720A2E86} [SlimWare Registration Registrar] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\ByteFenceService [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\SlimWare Utilities, Inc. [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SlimCleaner Plus [Slimware Utilities Holdings, Inc.] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3129290B-0B12-4FA9-B6FA-1E1A70E52929} [Slimware Utilities Holdings, Inc.] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\SlimWare Utilities Inc [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\SlimWare Utilities, Inc. [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BYTEFENCE [Byte Technologies LLC] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3F44D784-6FC4-0604-DE44-76840EC4A504} [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{746AB259-6474-4111-8966-1C62F9A6E063} [SlimWare Utilities, Inc.] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8C0264C2-DC82-B542-6D02-C5C2BD821642} [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceScan_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceScan_RASMANCS [] =>.SUP.ByteFence ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (4) https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://nicolascoolman.eu/2017/03/03/superfluous-slimwareutilities/ =>.SUP.SlimWareUtilities https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore ---\\ NETTOYAGE ADDITIONNEL. (17) ~ Suppression des Clés de registre Tracing. (17) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Mozilla Firefox) ~ Ce navigateur est absent (Opera Software) ~ Le système a été redémarré. ---\\ STATISTIQUES ~ Items scannés : 669 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h01mn55s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-28022018-21_12_28.txt ZHPCleaner-[R]-28022018-21_15_01.txt