~ ZHPCleaner v2018.4.27.87 by Nicolas Coolman (2018/04/87) ~ Run by Win7 (Administrator) (27/04/2018 16:43:21) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version KO ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Win7\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Win7\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (75) ---\\ TÂCHE PLANIFIÉE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (19) DEPLACÉ fichier: C:\Users\Win7\AppData\Roaming\inst.exe =>Adware.Pirrit DEPLACÉ fichier: C:\Users\Win7\AppData\Local\Temp\CProgram FilesOpera52.0.2871.97opera_autoupdate.download.lock =>.SUP.Temporary.Opera DEPLACÉ fichier: C:\Users\Win7\AppData\Local\Temp\CProgram FilesOpera52.0.2871.97opera_autoupdate.metrics.lock =>.SUP.Temporary.Opera DEPLACÉ fichier: C:\Users\Win7\AppData\Local\Temp\rms-Win7 =>.SUP.Temporary.Empty DEPLACÉ fichier^: C:\Program Files (x86)\Lavasoft\web companion =>PUP.Optional.LavasoftWebCompanion DEPLACÉ fichier^: C:\Users\Win7\AppData\Roaming\Lavasoft\web companion =>PUP.Optional.LavasoftWebCompanion DEPLACÉ dossier*: C:\Users\Win7\AppData\Roaming\Browsers =>PUP.Optional.Shopperz DEPLACÉ dossier*: C:\Users\Win7\AppData\Local\SlimWare Utilities Inc =>.SUP.SlimWareUtilities DEPLACÉ dossier*: C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare DEPLACÉ dossier*: C:\ProgramData\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare DEPLACÉ dossier*: C:\ProgramData\Application Data\IObit\ASCDownloader =>.SUP.AdvancedSystemCare DEPLACÉ dossier*: C:\ProgramData\vCore =>PUP.Optional.AArtemis DEPLACÉ dossier: C:\ProgramData\IObit\ASCDownloader =>.SUP.AdvancedSystemCare DEPLACÉ dossier: C:\ProgramData\Application Data\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare DEPLACÉ dossier*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft\WebCompanion =>PUP.Optional.LavasoftWebCompanion DEPLACÉ dossier*: C:\Users\Win7\AppData\Local\AdvinstAnalytics =>.SUP.Various DEPLACÉ dossier*: C:\Users\Win7\AppData\LocalLow\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare DEPLACÉ dossier*: C:\Users\Win7\AppData\Roaming\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare DEPLACÉ dossier*: C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (19) SUPPRIMÉ donnée: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{F45CFC8E-80B7-4B8E-A6E3-6B7352EAF7DE}\\DhcpNameServer [Bad : 172.18.12.1] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-1319876458-4050135242-2575031610-1000\SOFTWARE\SlimWare Utilities Inc [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé: HKCU\Software\SlimWare Utilities Inc [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: HKCU\Software\Lavasoft\Web Companion [] =>PUP.Optional.LavasoftWebCompanion SUPPRIMÉ clé*: HKCU\Software\undefined [] =>.SUP.Downloader SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com [] =>PUP.Optional.LavasoftWebCompanion SUPPRIMÉ clé*: HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion [] =>PUP.Optional.LavasoftWebCompanion SUPPRIMÉ clé: HKLM\SOFTWARE\Lavasoft\Web Companion [] =>PUP.Optional.LavasoftWebCompanion SUPPRIMÉ clé*: HKLM\SOFTWARE\IObit\Advanced SystemCare [] =>.SUP.AdvancedSystemCare SUPPRIMÉ clé*: HKLM\SOFTWARE\Iobit\ASC [] =>.SUP.AdvancedSystemCare SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Reason\ReasonByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence SUPPRIMÉ clé^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DropboxUpdateTaskMachineCore [] =>PUP.Optional.UpdateTask SUPPRIMÉ clé^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DropboxUpdateTaskMachineUA [] =>PUP.Optional.UpdateTask SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\SlimWare Utilities Inc [] =>.SUP.SlimWareUtilities SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Web Companion [C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize ] =>PUP.Optional.LavasoftWebCompanion ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (14) https://nicolascoolman.eu/2017/02/25/adware-pirrit/ =>Adware.Pirrit https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Opera https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Empty https://nicolascoolman.eu/2017/03/12/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion https://www.anti-malware.top/2016/04/21/pup-optional-shopperz/ =>PUP.Optional.Shopperz https://nicolascoolman.eu/2017/03/03/superfluous-slimwareutilities/ =>.SUP.SlimWareUtilities https://nicolascoolman.eu/2017/12/26/sup-advancedsystemcare/ =>.SUP.AdvancedSystemCare https://www.nicolascoolman.com/fr/pup-aartemis/ =>PUP.Optional.AArtemis https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Camec https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.UpdateTask ---\\ NETTOYAGE ADDITIONNEL. (70) ~ Suppression des Clés de registre Tracing. (70) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Le système a été redémarré. ---\\ STATISTIQUES ~ Items scannés : 1719 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 7/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h00mn57s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-27042018-16_37_57.txt ZHPCleaner-[R]-27042018-16_44_18.txt