~ ZHPCleaner v2018.8.20.163 by Nicolas Coolman (2018/08/20) ~ Run by Martin (Administrator) (23/08/2018 13:36:09) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version KO ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Martin\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Martin\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (57) ---\\ TÂCHE PLANIFIÉE. (1) SUPPRIMÉ tâche: [{052FE13A-6046-4A16-9DFF-E41F13E86D93}] [C:\Program Files (x86)\Iminent\inst\Bootstrapper\Bootstrapper.exe (Not File) ] =>PUP.Optional.IMBooster ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (23) DEPLACÉ fichier: C:\Users\Martin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [Bad : C:\Users\Martin\AppData\Roaming\uTorrent\uTorrent.exe](.BitTorrent Inc..) =>BitTorrent (P2P) DEPLACÉ fichier: C:\Windows\Prefetch\YTDOWNLOADER.EXE-6EEC7BA4.pf =>Adware.YTDownloader DEPLACÉ fichier: C:\Users\Martin\Downloads\DriverUpdate-setup (1).exe [SlimWare Utilities, Inc. - DriverUpdate Setup Wizard] =>.SUP.SlimWareUtilities DEPLACÉ fichier: C:\Users\Martin\Downloads\DriverUpdate-setup.exe [SlimWare Utilities, Inc. - DriverUpdate Setup Wizard] =>.SUP.SlimWareUtilities DEPLACÉ fichier: C:\Users\Martin\Downloads\utorrent.exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) DEPLACÉ fichier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.SUP.Atwola DEPLACÉ fichier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.SUP.Atwola DEPLACÉ fichier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.systweak.com_0.localstorage =>.SUP.Systweak DEPLACÉ fichier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.systweak.com_0.localstorage-journal =>.SUP.Systweak DEPLACÉ fichier: C:\Documents and Settings\Pierre\Downloads\01net_Hamachi.exe [Conduit - Setup.exe] =>.SUP.Conduit DEPLACÉ fichier: C:\Documents and Settings\Pierre\Downloads\utorrent.exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) DEPLACÉ dossier: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\bniwxz7m.default-1392210941550\Extensions\cacaoweb@cacaoweb.org =>.SUP.CacaoWeb DEPLACÉ dossier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx] DEPLACÉ dossier: C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx] DEPLACÉ dossier: C:\ProgramData\SlimWare Utilities Inc =>.SUP.SlimWareUtilities DEPLACÉ dossier: C:\Users\Martin\AppData\Roaming\cacaoweb =>.SUP.CacaoWeb DEPLACÉ dossier^: C:\Users\Martin\AppData\Local\SlimWare Utilities Inc =>.SUP.SlimWareUtilities DEPLACÉ dossier: C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time =>.SUP.PopcornTime DEPLACÉ dossier: C:\Users\Pierre\AppData\Local\Popcorn Time =>.SUP.PopcornTime DEPLACÉ dossier: C:\Users\Pierre\AppData\Local\Popcorn-Time =>.SUP.PopcornTime DEPLACÉ dossier: C:\Documents and Settings\Pierre\Application Data\Microsoft\Windows\Start Menu\Programs\Popcorn Time =>.SUP.PopcornTime DEPLACÉ dossier: C:\ProgramData\Software =>PUP.Optional.Boxore DEPLACÉ dossier: C:\Users\Martin\AppData\Local\Software =>PUP.Optional.Boxore ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (32) SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent [BitTorrent Inc.] =>BitTorrent (P2P) SUPPRIMÉ clé*: HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} [] =>PUP.Optional.Legacy SUPPRIMÉ clé: HKU\S-1-5-18\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} [] =>PUP.Optional.Legacy SUPPRIMÉ clé*: HKCU\Software\WEBAPP [] =>.SUP.Downloader SUPPRIMÉ clé*: HKCU\Software\TeleCharger [] =>.SUP.Downloader SUPPRIMÉ clé*: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-613839341-3625023917-2904406288-1002\Software\SweetIM [] =>.SUP.SweetIM SUPPRIMÉ clé*: HKLM\SOFTWARE\AIM Toolbar [] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{DB559C6A-03B9-4961-9BC3-80D769710C2D} [IPlaghinMein] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{CB747D69-2EE7-40C0-BE35-BA6ED3EEA8A3} [IRegistry] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{B7298E57-3046-4F2A-B8C6-78CC8A60020C} [ILocalStorage] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{B08006D8-1D22-458E-9370-F459542E5AF2} [IRuntime] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Youtomato.YTDownloader.IE [YTDownloader.IE] =>Adware.YTDownloader SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Youtomato.YTDownloader.IE.1 [YTDownloader.IE] =>Adware.YTDownloader SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{6DC6EE87-F3BB-40EB-BCEE-12F7D6E3EEDF} [SlimWare Service Connection Factory] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{959D527D-6C27-4879-A644-065526D6969C} [SlimWare Service Connection] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{BAF87BD0-A924-4108-AFA5-A5FA720A2E86} [SlimWare Registration Registrar] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BA219F82-20BF-49AD-A279-E2D69D3B9D3F} [SlimWare Utilities, Inc.] =>.SUP.SlimWareUtilities SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5 [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C63F7979DCC2154CB9591969A5CB89D [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20 [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5 [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739 [] =>PUP.Optional.IMBooster SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DB559C6A-03B9-4961-9BC3-80D769710C2D} [IPlaghinMein] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{CB747D69-2EE7-40C0-BE35-BA6ED3EEA8A3} [IRegistry] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B7298E57-3046-4F2A-B8C6-78CC8A60020C} [ILocalStorage] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B08006D8-1D22-458E-9370-F459542E5AF2} [IRuntime] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1D5F5584-C399-4F48-A4B4-F955B1060D93} [SlimWare Utilities, Inc.] =>.SUP.SlimWareUtilities SUPPRIMÉ valeur: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files (x86)\Iminent\ [No Folder] =>PUP.Optional.IMBooster SUPPRIMÉ valeur: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files (x86)\Iminent\inst\Bootstrapper\ [No Folder] =>PUP.Optional.IMBooster SUPPRIMÉ valeur: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files (x86)\Iminent\inst\ [No Folder] =>PUP.Optional.IMBooster ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (14) https://nicolascoolman.eu/2017/09/08/adware-imbooster/ =>PUP.Optional.IMBooster https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://nicolascoolman.eu/2017/09/12/adware-ytdownloader/ =>Adware.YTDownloader https://nicolascoolman.eu/2017/03/03/superfluous-slimwareutilities/ =>.SUP.SlimWareUtilities https://nicolascoolman.eu/2017/02/04/superfluous-atwola/ =>.SUP.Atwola https://nicolascoolman.eu/2017/09/14/sup-systweak/ =>.SUP.Systweak https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.SUP.Conduit https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.SUP.CacaoWeb https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Hijacker.Browser [https://epicunitscan.info/00service/update2/crx] https://nicolascoolman.eu/2017/02/26/superfluous-popcorntime/ =>.SUP.PopcornTime https://nicolascoolman.eu/2017/03/14/pup-optional-boxore/ =>PUP.Optional.Boxore https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Legacy https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader https://nicolascoolman.eu/2017/09/08/sup-sweetim/ =>.SUP.SweetIM ---\\ NETTOYAGE ADDITIONNEL. (14) ~ Suppression des Clés de registre Tracing. (12) ~ Suppression des anciens rapports ZHPCleaner. (2) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ~ Le système a été redémarré. ---\\ STATISTIQUES ~ Items scannés : 1591 ~ Items trouvés : 0 ~ Items annulés : 20 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h06mn26s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-23082018-12_17_38.txt ZHPCleaner-[R]-23082018-13_42_35.txt