~ ZHPCleaner v2018.4.8.60 by Nicolas Coolman (2018/04/08) ~ Run by Zcuisto63 (Administrator) (10/04/2018 15:56:59) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Zcuisto63\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Zcuisto63\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (39) ---\\ TÂCHE PLANIFIÉE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (11) DEPLACÉ fichier: C:\Windows\System32\DRIVERS\mcvidrv.sys [Visicom Media Inc. - ManyCam Virtual Webcam Driver] =>.SUP.VisicomMedia DEPLACÉ fichier: C:\Windows\System32\drivers\mcaudrv_x64.sys [Visicom Media Inc. - ManyCam Virtual Microphone] =>.SUP.VisicomMedia DEPLACÉ fichier: C:\Windows\Prefetch\DLLKITPRO.EXE-6CB374EB.pf =>.SUP.DllKitPro DEPLACÉ fichier: C:\Users\Zcuisto63\Downloads\uTorrent.exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) DEPLACÉ fichier: C:\Users\Zcuisto63\AppData\Local\Temp\cle13D3.tmp [ - DllKit Pro] =>.SUP.DllKitPro DEPLACÉ fichier: C:\Users\Zcuisto63\AppData\Local\Temp\SystemHealer.exe =>.SUP.SystemHealer DEPLACÉ dossier*: C:\Program Files (x86)\DllKitPRO =>.SUP.DllKitPro DEPLACÉ dossier*: C:\Program Files (x86)\ManyCam =>.SUP.VisicomMedia DEPLACÉ dossier*: C:\ProgramData\Babylon =>Adware.Babylon DEPLACÉ dossier*: C:\Users\Zcuisto63\AppData\Roaming\Babylon =>Adware.Babylon DEPLACÉ dossier*: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (16) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_37[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_37[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_37[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyB0AyBzytCzyzy0B0C0AzyyEzy0E0D0EtN0D0Tzu0StBtDzztBtN1L2XzutAtFtBzytFtCtDyEtFzytAtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2StCtCyDyB0Bzz0FyEtGtDzztB0EtG0DyDyDtBtGyB0AtB0AtGzyzytA0BtDtA0ByB0E0EtB0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtA0BtA0DtD0EyBtGyEyEtBzztGyE0DtB0AtGzy0E0A0BtGtC0CyCyEyEyDzz0CyEzzyDtB2QtN0A0LzuyE%26cr%3D1076428055%26a%3Dwbf_dmontlsfs_17_37%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyB0AyBzytCzyzy0B0C0AzyyEzy0E0D0EtN0D0Tzu0StBtDzztBtN1L2XzutAtFtBzytFtCtDyEtFzytAtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2StCtCyDyB0Bzz0FyEtGtDzztB0EtG0DyDyDtBtGyB0AtB0AtGzyzytA0BtDtA0ByB0E0EtB0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtA0BtA0DtD0EyBtGyEyEtBzztGyE0DtB0AtGzy0E0A0BtGtC0CyCyEyEyDzz0CyEzzyDtB2QtN0A0LzuyE%26cr%3D1076428055%26a%3Dwbf_dmontlsfs_17_37%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_dmontlsfs_17_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuyB0AyBzytCzyzy0B0C0AzyyEzy0E0D0EtN0D0Tzu0StBtDzztBtN1L2XzutAtFtBzytFtCtDyEtFzytAtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2StCtCyDyB0Bzz0FyEtGtDzztB0EtG0DyDyDtBtGyB0AtB0AtGzyzytA0BtDtA0ByB0E0EtB0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtA0BtA0DtD0EyBtGyEyEtBzztGyE0DtB0AtGzy0E0A0BtGtC0CyCyEyEyDzz0CyEzzyDtB2QtN0A0LzuyE%26cr%3D1076428055%26a%3Dwbf_dmontlsfs_17_37%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ManyCam [C:\Windows\System32\DRIVERS\mcvidrv.sys (Not File)] =>.SUP.VisicomMedia SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\mcaudrv_simple [C:\Windows\System32\drivers\mcaudrv_x64.sys (Not File)] =>.SUP.VisicomMedia SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-535336594-1253773109-2881200556-1000\SOFTWARE\Visicom Media [] =>.SUP.VisicomMedia SUPPRIMÉ clé: HKCU\Software\Visicom Media [] =>.SUP.VisicomMedia SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Prod.cap [] =>PUP.Optional.ClaroSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\DllKitPRO [] =>.SUP.DllKitPro SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\011E910F6B03305489E2CBEBEA14AF22 [02:\Software\Microsoft\Windows Kits\Installed Roots\10.0.16299.0\Installed Options\OptionId.UWPManaged (Not File)] =>PUP.Optional.WpManager SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Visicom Media [] =>.SUP.VisicomMedia ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (10) https://nicolascoolman.eu/2017/03/18/superfluous-visicommedia/ =>.SUP.VisicomMedia https://nicolascoolman.eu/2018/02/17/sup-dllkitpro/ =>.SUP.DllKitPro https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://nicolascoolman.eu/2017/10/03/sup-systemhealer/ =>.SUP.SystemHealer https://nicolascoolman.eu/2017/03/03/adware-babylon/ =>Adware.Babylon https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://www.nicolascoolman.com/fr/pup-clarosearch/ =>PUP.Optional.ClaroSearch https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://www.anti-malware.top/2016/06/18/superfluous-wpmanager/ =>PUP.Optional.WpManager ---\\ NETTOYAGE ADDITIONNEL. (30) ~ Suppression des Clés de registre Tracing. (30) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Mozilla Firefox) ~ Ce navigateur est absent (Opera Software) ---\\ STATISTIQUES ~ Items scannés : 769 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h00mn21s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-10042018-15_56_19.txt ZHPCleaner-[R]-10042018-15_57_20.txt