~ ZHPCleaner v2018.10.24.187 by Nicolas Coolman (2018/10/24) ~ Run by Proprietaire (Administrator) (25/10/2018 21:00:04) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Proprietaire\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Proprietaire\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 17134) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (1) ---\\ TÂCHE PLANIFIÉE. (1) SUPPRIMÉ tâche: [ReimageUpdater] [C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (Not File) ] =>.SUP.ReimageRepair ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (20) DEPLACÉ fichier: C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk [Bad : C:\Program Files\Reimage\Reimage Repair\ReimageRepair.exe](.Reimage.) =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Proprietaire\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nahhmpbckpgdidfnmfkfgiflpjijilce_0.localstorage =>.SUP.SearchManager DEPLACÉ fichier: C:\Users\Proprietaire\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdpcpceofkopegffcdnffeenbfdldock_0.localstorage =>PUP.Optional.SecuredSearch DEPLACÉ fichier: C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [Reimage® - Reimage Real Time Protection] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Prefetch\BYTEFENCE.EXE-945F23E2.pf =>.SUP.ByteFence DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEPACKAGE.EXE-9C293B58.pf =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Prefetch\REIMAGEREPAIR.EXE-075997CD.pf =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Proprietaire\Downloads\Celeste-SKIDROW-v1.1.5.0_www.FreeGamesDL.net.zip =>PUP.Optional.ScriptHost DEPLACÉ fichier: C:\Users\Proprietaire\Downloads\ReimageRepair.exe [Reimage - Reimage Downloader] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Proprietaire\AppData\Local\Temp\Reimage.log =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Users\Proprietaire\AppData\Local\Temp\ReimagePackage.exe [Reimage - Reimage Package] =>.SUP.ReimageRepair DEPLACÉ fichier: C:\Windows\Reimage.ini =>.SUP.ReimageRepair DEPLACÉ dossier: C:\Users\Proprietaire\AppData\Local\Google\Chrome\User Data\Default\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce =>.SUP.SearchManager DEPLACÉ dossier: C:\Users\Proprietaire\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdpcpceofkopegffcdnffeenbfdldock =>PUP.Optional.SecuredSearch DEPLACÉ dossier: C:\Program Files\Reimage =>.SUP.ReimageRepair DEPLACÉ dossier: C:\ProgramData\ByteFence =>.SUP.ByteFence DEPLACÉ dossier: C:\ProgramData\Reimage Protector =>.SUP.ReimageRepair DEPLACÉ dossier: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair =>.SUP.ReimageRepair DEPLACÉ dossier^: C:\WINDOWS\Temp\reimage.log =>.SUP.ReimageRepair DEPLACÉ dossier: C:\Users\Proprietaire\AppData\Local\Google\Update =>Heuristic.Suspect ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (32) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_zayat_18_31_07&[...]] [Yahoo! Powered] =>Adware.YahooPowered SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\nahhmpbckpgdidfnmfkfgiflpjijilce [] =>.SUP.SearchManager SUPPRIMÉ clé*: HKCU\SOFTWARE\Google\Chrome\Extensions\pdpcpceofkopegffcdnffeenbfdldock [] =>PUP.Optional.SecuredSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Google\Chrome\Extensions\pdpcpceofkopegffcdnffeenbfdldock [] =>PUP.Optional.SecuredSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pdpcpceofkopegffcdnffeenbfdldock [] =>PUP.Optional.SecuredSearch SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_zayat_18_31_07¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzutBzzzytByE0AyDtA0FyCyEyB0AtCyE0EtN0D0Tzu0StByEtDzztN1L2XzuyEtFtByCtFtDtFtCtDzztN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAzzyE0F0EtC0AtCtGtDtC0ByCtGzyyEyDyEtGyEtAyDzytG0Fzz0CyCtAtAyEtDyByB0EtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S1StAtByB1StCzzzztGtB1O1OzztGyEyEtAtCtGzyyBzzyEtGyCyC1SyCyE1O1Tzy1S1Q1QyB2QtN0A0LzuyEtN1B2Z1V1T1S1NzutN1Q2Z1B1P1RzutCyDtAtAyEzyyCyEtDyE%26cr%3D1392505420%26a%3Dwcg_zayat_18_31_07%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé*: HKU\.DEFAULT\Software\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé: HKU\S-1-5-18\Software\ByteFence [] =>.SUP.ByteFence SUPPRIMÉ clé*: HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [] =>.SUP.ReimageRepair SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore SUPPRIMÉ clé*: HKCU\Software\undefined [] =>.SUP.Downloader SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} [] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [_IReiEngineEvents] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [IReiEngine] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} [REI_AxControl] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL [] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [ReiEngine Class] =>PUP.Optional.GetLiveSupport SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [ReiEngine Class] =>PUP.Optional.GetLiveSupport SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair [Reimage] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [_IReiEngineEvents] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [IReiEngine] =>PUP.Optional.Legacy SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} [REI_AxControl] =>.SUP.ReimageRepair SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\REI_AxControl.DLL [] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} [ReiEngine Class] =>.SUP.ReimageRepair SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>.SUP.ReimageRepair SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} [CompReg Class] =>.SUP.ReimageRepair SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>.SUP.ReimageRepair SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_A8F4EE707DB64B6E54CDBDCDB4CD0721 ["C:\Users\Proprietaire\AppData\Local\chromium\Application\chrome.exe" --no-startup-window /prefetch:5] =>PUP.Optional.MyBrowser SUPPRIMÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\EpicGamesLauncher [0x03000000603710E0AE34D401] =>Heuristic.Suspect ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (12) https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.SUP.ReimageRepair https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SearchManager https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SecuredSearch https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://www.nicolascoolman.com/fr/adware-scripthost/ =>PUP.Optional.ScriptHost https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Legacy https://nicolascoolman.eu/2017/10/05/sup-systemoptimizer/ =>PUP.Optional.GetLiveSupport https://nicolascoolman.eu/2017/11/01/adware-mybrowser/ =>PUP.Optional.MyBrowser ---\\ NETTOYAGE ADDITIONNEL. (48) ~ Suppression des Clés de registre Tracing. (48) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ~ Le système a été redémarré. ---\\ STATISTIQUES ~ Items scannés : 920 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h01mn45s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-25102018-20_58_52.txt ZHPCleaner-[R]-25102018-21_01_49.txt