~ ZHPCleaner v2018.4.24.82 by Nicolas Coolman (2018/04/82) ~ Run by ASUS (Administrator) (26/04/2018 12:36:22) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\ASUS\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\ASUS\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 16299) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (6) SUPPRIMÉ: [1n3bhbfq.default] - user_pref("coupons.url", "//savingsslider-a.akamaihd.net/loaders/1036/l.js?aoi=1311798366&pid=1036&z[...] =>.SUP.AkamaiHD SUPPRIMÉ: [1n3bhbfq.default] - user_pref("extensions.irmysearch.aflt", "tele_14_12_ff"); =>PUP.Optional.MyWebSearch SUPPRIMÉ: [1n3bhbfq.default] - user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1QzuyByE0DtDtB0ByBzzzyyByE0AtDtCyDzytN0D0Tzu0Szzt[...] =>PUP.Optional.MyWebSearch SUPPRIMÉ: [1n3bhbfq.default] - user_pref("extensions.irmysearch.cr", "1319254757"); =>PUP.Optional.MyWebSearch SUPPRIMÉ: [1n3bhbfq.default] - user_pref("extensions.irmysearch.instlRef", "140305_b"); =>PUP.Optional.MyWebSearch SUPPRIMÉ: [1n3bhbfq.default] - user_pref("simplenewtab.url", "http://native-search.com/?channel=frg_nt"); =>PUP.Optional.SimpleNewTab ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (78887) ---\\ TÂCHE PLANIFIÉE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (22) DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d10lpsik1i8c69.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d10lpsik1i8c69.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d1af033869koo7.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d1af033869koo7.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d30ke5tqu2tkyx.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d30ke5tqu2tkyx.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dsms0mj1bbhn4.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dsms0mj1bbhn4.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_uhytajrtpo-a.akamaihd.net_0.localstorage =>.SUP.AkamaiHD DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_uhytajrtpo-a.akamaihd.net_0.localstorage-journal =>.SUP.AkamaiHD DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_embedftv-a.akamaihd.net_0.localstorage =>.SUP.AkamaiHD DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_embedftv-a.akamaihd.net_0.localstorage-journal =>.SUP.AkamaiHD DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.igraal.com_0.localstorage =>Toolbar.Graal DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.igraal.com_0.localstorage-journal =>Toolbar.Graal DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pckeeperapp.zeobit.com_0.localstorage =>.SUP.Essentware DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pckeeperapp.zeobit.com_0.localstorage-journal =>.SUP.Essentware DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage =>PUP.Optional.AddLyrics DEPLACÉ fichier: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage-journal =>PUP.Optional.AddLyrics DEPLACÉ dossier*: C:\Users\ASUS\AppData\Roaming\HMYGSetting =>Adware.Suspect DEPLACÉ dossier*: C:\Program Files (x86)\PandaViewer =>Hijacker.Browser ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (36) SUPPRIMÉ donnée: HKCR\.bmp\\Default [Bad : PandaViewer.bmp] =>Hijacker.Browser SUPPRIMÉ donnée: HKCR\.gif\\Default [Bad : PandaViewer.gif] =>Hijacker.Browser SUPPRIMÉ donnée: HKCR\.ico\\Default [Bad : PandaViewer.ico] =>Hijacker.Browser SUPPRIMÉ donnée: HKCR\.jpe\\Default [Bad : PandaViewer.jpg] =>Hijacker.Browser SUPPRIMÉ donnée: HKCR\.png\\Default [Bad : PandaViewer.png] =>Hijacker.Browser SUPPRIMÉ donnée: HKCR\.tif\\Default [Bad : PandaViewer.tif] =>Hijacker.Browser SUPPRIMÉ donnée: HKCR\.tiff\\Default [Bad : PandaViewer.tif] =>Hijacker.Browser SUPPRIMÉ clé*: HKCU\Software\MozillaPlugins\bebomedia.com/OfferMosquitoIEHelper [] =>PUP.Optional.OfferMosquito SUPPRIMÉ clé*: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Acrobat Reader Packages [Acrobat Reader Packages] =>Adware.InstallCore SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.bmp [PandaViewer.bmp] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.gif [PandaViewer.gif] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.ico [PandaViewer.ico] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.jpeg 2000 [PandaViewer.jpeg] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.jpg [PandaViewer.jpg] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.png [PandaViewer.png] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.tif [PandaViewer.tif] =>Hijacker.Browser SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-4218804898-3349578849-4166337365-1001\SOFTWARE\Classes\.tiff [PandaViewer.tif] =>Hijacker.Browser SUPPRIMÉ clé: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Acrobat Reader Packages [Acrobat Reader Packages] =>Adware.InstallCore SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent [BitTorrent Inc.] =>BitTorrent (P2P) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\akamaihd.net [] =>.SUP.AkamaiHD SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akamaihd.net [] =>.SUP.AkamaiHD SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\f [f] =>PUP.Optional.Funmoods SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\77zip.exe [] =>PUP.Optional.InstallBrain SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.bmp [PandaViewer.bmp] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.gif [PandaViewer.gif] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.ico [PandaViewer.ico] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.jpeg [PandaViewer.jpeg] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.jpg [PandaViewer.jpg] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.png [PandaViewer.png] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\PandaViewer.tif [PandaViewer.tif] =>Hijacker.Browser SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update Mega Browse [] =>PUP.Optional.MegaBrowse SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util Mega Browse [] =>PUP.Optional.MegaBrowse SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\77zip.exe [C:\Program Files (x86)\77zip\77zip.exe (Not File)] =>PUP.Optional.InstallBrain SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\PandaViewer [] =>Hijacker.Browser SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PandaViewer [PandaViewer] =>Hijacker.Browser SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\77zip.exe [C:\Program Files (x86)\77zip\77zip.exe (Not File)] =>PUP.Optional.InstallBrain ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (16) https://nicolascoolman.eu/2017/12/26/sup-akamaihd/ =>.SUP.AkamaiHD https://nicolascoolman.eu/2017/12/17/adware-mywebsearch/ =>PUP.Optional.MyWebSearch https://www.nicolascoolman.com/fr/pup-simplenewtab/ =>PUP.Optional.SimpleNewTab https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.SUP.CloudfrontNet https://nicolascoolman.eu/2017/09/25/toolbar-igraal/ =>Toolbar.Graal https://www.anti-malware.top/2016/05/03/superfluous-essentware/ =>.SUP.Essentware https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AudienceInsights https://nicolascoolman.eu/2017/02/24/pup-optional-addlyrics/ =>PUP.Optional.AddLyrics https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser https://www.nicolascoolman.com/fr/pup-offermosquito/ =>PUP.Optional.OfferMosquito https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://www.nicolascoolman.com/fr/pup-funmoods/ =>PUP.Optional.Funmoods https://www.nicolascoolman.com/fr/adware-installbrain/ =>PUP.Optional.InstallBrain https://www.nicolascoolman.com/fr/pup-megabrowse/ =>PUP.Optional.MegaBrowse ---\\ NETTOYAGE ADDITIONNEL. (5) ~ Suppression des Clés de registre Tracing. (5) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ STATISTIQUES ~ Items scannés : 158579 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h02mn53s ---\\ LISTE DES RAPPORTS (4) ZHPCleaner-[S]-23042018-18_11_52.txt ZHPCleaner-[S]-23042018-21_22_08.txt ZHPCleaner-[S]-26042018-12_29_46.txt ZHPCleaner-[R]-26042018-12_39_15.txt