~ ZHPCleaner v2018.2.8.26 by Nicolas Coolman (2018/02/08) ~ Run by mctouzet (Administrator) (10/02/2018 21:15:30) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\mctouzet\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\mctouzet\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 16299) ---\\ Alternate Data Stream (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Service. (0) ---\\ Navigateur internet. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Fichier Hosts. (1) ~ Le fichier hôte est légitime. (21) ---\\ Tâche planifiée. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ Explorateur ( Dossiers, Fichiers ). (26) DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_chlnggmifacdaoeegomjajadfhijmahl_0.localstorage-journal =>.SUP.BrowserExtension DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_chlnggmifacdaoeegomjajadfhijmahl_0.localstorage =>.SUP.BrowserExtension DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d30ke5tqu2tkyx.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d30ke5tqu2tkyx.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dsms0mj1bbhn4.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dsms0mj1bbhn4.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_easydocmerge.dl.myway.com_0.localstorage =>PUP.Optional.MyWebSearch DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_easydocmerge.dl.myway.com_0.localstorage-journal =>PUP.Optional.MyWebSearch DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_easydocmerge.dl.tb.ask.com_0.localstorage =>Toolbar.Ask DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_easydocmerge.dl.tb.ask.com_0.localstorage-journal =>Toolbar.Ask DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_filmfanatic2.dl.myway.com_0.localstorage =>.SUP.MindSpark DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_filmfanatic2.dl.myway.com_0.localstorage-journal =>.SUP.MindSpark DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_filmfanatic2.dl.tb.ask.com_0.localstorage =>.SUP.MindSpark DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_filmfanatic2.dl.tb.ask.com_0.localstorage-journal =>.SUP.MindSpark DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_productivityboss.dl.myway.com_0.localstorage =>.SUP.ProductivityBoss DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_productivityboss.dl.myway.com_0.localstorage-journal =>.SUP.ProductivityBoss DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_productivityboss.dl.tb.ask.com_0.localstorage =>.SUP.ProductivityBoss DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_productivityboss.dl.tb.ask.com_0.localstorage-journal =>.SUP.ProductivityBoss DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights DEPLACÉ fichier: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights DEPLACÉ dossier*: C:\Users\mctouzet\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlnggmifacdaoeegomjajadfhijmahl =>.SUP.BrowserExtension DEPLACÉ dossier*: C:\Users\mctouzet\AppData\Local\Google\Update =>Heuristic.Suspect ---\\ Base de Registres ( Clés, Valeurs, Données ). (41) SUPPRIMÉ valeur: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{ea729df7-fea8-443c-8781-327fa3ab7529} [ProductivityBoss] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5754a7f4-5cb7-4287-8354-170a8c185349} [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{589cd417-937b-4d56-bb76-55260209dc19} [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5754a7f4-5cb7-4287-8354-170a8c185349} [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5754a7f4-5cb7-4287-8354-170a8c185349} [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\Software\Classes\CLSID\{5754a7f4-5cb7-4287-8354-170a8c185349} [ProductivityBoss] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5754a7f4-5cb7-4287-8354-170a8c185349} [Search Assistant BHO] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{589cd417-937b-4d56-bb76-55260209dc19} [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{589cd417-937b-4d56-bb76-55260209dc19} [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\Software\Classes\CLSID\{589cd417-937b-4d56-bb76-55260209dc19} [Toolbar BHO] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{589cd417-937b-4d56-bb76-55260209dc19} [Toolbar BHO] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ProductivityBoss_e5Service [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin\e5barsvc.exe (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1140106629-2900579008-1480305625-1001\SOFTWARE\ProductivityBoss_e5 [] =>.SUP.ProductivityBoss SUPPRIMÉ clé: HKCU\Software\ProductivityBoss_e5 [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKCU\Software\AppDataLow\Software\ProductivityBoss_e5 [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\soundcloud.com [] =>PUP.Optional.SoundCloud SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.HTMLMenu [ProductivityBoss_e5 HTML Menu] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.HTMLMenu.1 [ProductivityBoss_e5 HTML Menu] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.HTMLPanel [ProductivityBoss_e5 HTML Panel] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.HTMLPanel.1 [ProductivityBoss_e5 HTML Panel] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.PseudoTransparentPlugin [Pseudo Transparent Plugin] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.PseudoTransparentPlugin.1 [Pseudo Transparent Plugin] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.SettingsPlugin [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.SettingsPlugin.1 [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.ToolbarProtector [ProtectorControl Class] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\ProductivityBoss_e5.ToolbarProtector.1 [ProtectorControl Class] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{ea729df7-fea8-443c-8781-327fa3ab7529} [ProductivityBoss] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\ProductivityBoss_e5 [] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ProductivityBoss_e5bar Uninstall Internet Explorer [Mindspark Interactive Network] =>.SUP.MindSpark SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{190f204e-0647-415a-8d7d-3e8b8b296bcb} [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21f21da6-1b78-4981-9eef-f03d20ac7c42} [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6a113a86-fde2-4c7b-8767-f1621865ebf5} [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9b667db4-ae4b-4d59-a2a3-d12a41a2f2cf} [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c37884b1-d4f6-4fc9-b12e-68df687499a5} [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{5754a7f4-5cb7-4287-8354-170a8c185349}\InprocServer32 [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin\e5SrcAs.dll (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{589cd417-937b-4d56-bb76-55260209dc19}\InprocServer32 [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin\e5bar.dll (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{ea729df7-fea8-443c-8781-327fa3ab7529}\InprocServer32 [C:\Program Files (x86)\ProductivityBoss_e5\bar\1.bin\e5bar.dll (Not File)] =>.SUP.ProductivityBoss SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{C3D2ACDF-B984-4103-9831-6DD2900A1E77}C:\x4\telemaintenance\rmvnctemp\instantsupportvnc.exe [C:\x4\telemaintenance\rmvnctemp\instantsupportvnc.exe] =>PUP.Optional.InstantSupport SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{12ADB6BF-556A-47E5-98E6-87BD6813A95E}C:\x4\telemaintenance\rmvnctemp\instantsupportvnc.exe [C:\x4\telemaintenance\rmvnctemp\instantsupportvnc.exe] =>PUP.Optional.InstantSupport SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\TCP Query User{90DCA051-CE44-4D0E-BF91-67CB8AAE29B9}C:\program files (x86)\telemaintenance\rmvnctemp\instantsupportvnc.exe [C:\program files (x86)\telemaintenance\rmvnctemp\instantsupportvnc.exe] =>PUP.Optional.InstantSupport SUPPRIMÉ valeur: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\UDP Query User{9F448F45-AABE-4369-A20A-9C2D52632A2F}C:\program files (x86)\telemaintenance\rmvnctemp\instantsupportvnc.exe [C:\program files (x86)\telemaintenance\rmvnctemp\instantsupportvnc.exe] =>PUP.Optional.InstantSupport ---\\ Récapitulatif des éléments trouvés sur votre station. (11) https://nicolascoolman.eu/2017/10/05/sup-browserextension/ =>.SUP.BrowserExtension https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.SUP.CloudfrontNet https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://nicolascoolman.eu/2017/12/17/adware-mywebsearch/ =>PUP.Optional.MyWebSearch https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>.SUP.MindSpark https://nicolascoolman.eu/2017/11/18/sup-productivityboss/ =>.SUP.ProductivityBoss https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AudienceInsights https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SoundCloud https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.InstantSupport ---\\ Nettoyage Additionnel. (19) ~ Suppression des Clés de registre Tracing. (19) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ Bilan de la réparation ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Mozilla Firefox) ~ Ce navigateur est absent (Opera Software) ---\\ Statistiques ~ Items scannés : 661 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h00mn56s ~==================== ZHPCleaner-[S]-10022018-20_33_38.txt ZHPCleaner-[S]-10022018-21_14_06.txt ZHPCleaner-[R]-10022018-21_16_26.txt