NEWS [DotDo, Logiciel Publicitaire (Adware)] [Microsoft ajoute une barre d’adresse à l’éditeur du Registre] [Z-Shave pourrait impacter plus de 100 millions d’appareils.] [Des pirates installent des plugins Backdoor sur WordPress.] [Découverte de nouvelles failles Meltdown et Spectre.] [Un générateur de mot de passe dans Google Chrome.] [Classement des extensions de navigateurs.] [Nouvelle attaque de spectre sur le SMM protégé du CPU.] [Mise à jour de 47 failles de sécurité par Adobe.] [Une Faille Zero-Day explotée sur des routeurs Draytek.] [Nigelthorn vole les données de plus de 100.000 utilisateurs.] [Alerte aux messages piégés sur WhatsApp.] [Faille critique de sécurité de cryptage email.] [Popularité grandissante de l’exploit EternalBlue] [Microsoft remanie son presse-papiers Windows.] [Des Hackers défigurent des caméras de sécurité Canon.] ZHPCleaner Report ~ ZHPCleaner v2018.6.1.126 by Nicolas Coolman (2018/06/01) ~ Run by Joao (Administrator) (02/06/2018 09:31:13) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version KO ~ Certificate ZHPCleaner: Legal ~ Type : Repair ~ Report : C:\Users\Joao\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Joao\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Professional, 32-bit Service Pack 1 (Build 7601) ---\ Alternate Data Stream (ADS). (0) ~ No malicious or unnecessary items found. (ADS) ---\ Services (0) ~ No malicious or unnecessary items found. (Service) ---\ Browser internet (0) ~ No malicious or unnecessary items found. (Browser) ---\ Hosts file (1) ~ The hosts file is legitimate (1) ---\ Scheduled automatic tasks. (0) ~ No malicious or unnecessary items found. (Task) ---\ Explorer ( File, Folder) (3) MOVED file: C:\Program Files\Keepvid\KeepVid Pro\KeepVidProUpdateHelper.exe [Copyright (C) 2017 Studio. All rights reserved. - WsUpdateHelper] =>PUP.Optional.KeepVid MOVED file: C:\ProgramData\ntuser.pol =>PUP.Optional.Multiplug MOVED folder: C:\ProgramData\QuickTime =>Riskware.QuickTime ---\ Registry ( Key, Value, Data) (8) DELETED key*: HKEY_USERS\S-1-5-21-48089091-2623837105-114055649-1001\SOFTWARE\Magicbit [] =>.SUP.Magicbit DELETED key: HKCU\Software\Magicbit [] =>.SUP.Magicbit DELETED key*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent [BitTorrent Inc.] =>BitTorrent (P2P) DELETED key*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\QuickTime [] =>Riskware.QuickTime DELETED key*: HKLM\SOFTWARE\Classes\KVBrowserAppMgr.KVAllmytubechrome [] =>Adware.CrossRider DELETED key*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07B51C13962E8BF49BAFEA042FB2D4A6 [C?\Program Files\Solvusoft\Tray\SuiteClient.dll] =>.SUP.Solvusoft DELETED value: HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions\\KVAllmytube@KeepVid.com [C:\Program Files\Keepvid\KeepVid Pro\BrowserPlugin\kvallmytube@keepvid.com_xpi] =>PUP.Optional.KeepVid DELETED value: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\KeepVidProUpdateHelper.exe [C:\Program Files\Keepvid\KeepVid Pro\KeepVidProUpdateHelper.exe] =>PUP.Optional.KeepVid ---\ Summary of the elements found (7) https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.KeepVid https://www.anti-malware.top/2016/04/28/pup-optional-multiplug/ =>PUP.Optional.Multiplug https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime https://nicolascoolman.eu/2017/12/23/sup-magicbit/ =>.SUP.Magicbit https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Solvusoft ---\ Other deletions. (7) ~ Registry Keys Tracing deleted (4) ~ Remove the old reports ZHPCleaner. (3) ---\ Result of repair ~ Repair carried out successfully ~ Browser not found (Opera Software) ---\ Statistics ~ Items scanned : 2731 ~ Items found : 0 ~ Items cancelled : 0 ~ Items options : 0/7 ~ Space saving (bytes) : 0 ~ End of clean in 00h00mn20s ---\ Reports (2) ZHPCleaner-[S]-02062018-09_28_39.txt ZHPCleaner-[R]-02062018-09_31_33.txt Items cleaned by ZHPCleaner [PUP.Optional.KeepVid] [PUP.Optional.Multiplug] [Riskware.QuickTime] [.SUP.Magicbit] [BitTorrent] [Adware.CrossRider] [.SUP.Solvusoft] Information about modules [G0 Google Chrome Page de démarrage] [G2 Google Chrome Extension] [M2 Mozilla Firefox Extension] [P2 Mozilla Firefox Extension ] [R5 Proxy Management] [O1 Redirection du fichier Hosts] [O2 Browser Helper Objects de navigateur] [O3 Internet Explorer Toolbars] [O4 Applications démarrées par le système ] [O4G Raccourcis Global Startup] [O10 Winsock hijacker ] [O17 Modification Adresse/Domaine DNS] [O18 Protocoles Additionnels] [O22 Clé Registre SharedTaskScheduler ] [O23 Services NT non Microsoft] [O34 BootExecute ] [O38 Tâches planifiées Automatique] [O40 ActiveSetup Installed Components] [O42 Logiciels installés] [O43 Contenu des dossiers Programes] [O45 Derniers fichiers Prefetcher] [O46 ShellExecuteHooks] [O50 Image File Execution Options] [O53 ShareTools MSconfig StartupReg] [O58 Pilotes du Système] [O68 Start Menu Internet] [O69 Search Browser Infection] [O83 Services démarrés par Svchost] [O87 Firewall Activ Exception List] [O108 Raccourcis de menu contextuels] ZHPCleaner report End