~ ZHPCleaner v2022.11.13.84 by Nicolas Coolman (2022/11/13) ~ Run by UEF & twister (Administrator) (16/11/2022 09:20:22) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Nettoyer ~ Report : C:\Users\UEF & twister.DESKTOP-650T4C4\Desktop\ZHPCleaner (R).txt ~ Quarantine : C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ System Restore Point : OK ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 19044) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (28) ---\\ TÂCHE PLANIFIÉE. (2) SUPPRIMÉ tâche: [RestoroActiveProtection] [C:\WINDOWS\Tasks\RestoroActiveProtection.job (Not File) ] =>SUP.Optional.Restoro SUPPRIMÉ tâche: [Systweak Software UpdaterNotifier_trigger] [C:\WINDOWS\Tasks\Systweak Software UpdaterNotifier_trigger.job (Not File) ] =>.SUP.Systweak ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (33) DEPLACÉ fichier: C:\Users\Public\Desktop\Anvi AD Blocker Ultimate.lnk [Bad : G:\Program Files (x86)\Anvisoft\Anvi AD Blocker Ultimate\adblocker2.exe](.Anvisoft.) =>PUP.Optional.Adblocker DEPLACÉ fichier: C:\Users\Public\Desktop\Marine Aquarium 3.lnk [Bad : C:\Windows\System32\MarineAquarium3.scr](.SereneScreen.) =>.SUP.MarineAquarium DEPLACÉ fichier: C:\Program Files (x86)\TechSmith\Morae\BrowserExtensions\Firefox\morae_firefox_extension-1.0-fx-windows.xpi =>.SUP.BrowserExtension DEPLACÉ fichier: C:\Windows\Tasks\RestoroActiveProtection.job =>SUP.Optional.Restoro DEPLACÉ fichier: C:\Windows\Tasks\Systweak Software UpdaterNotifier_trigger.job =>.SUP.Systweak DEPLACÉ fichier: C:\ProgramData\SquirrelMachineInstalls\Discord.exe [Discord Inc. - Discord - https://discord.com/] =>.SUP.Discord DEPLACÉ fichier: C:\ProgramData\IObit\Software Updater\Download\274f25e2d771a570cb40621188ae91b9.exe [Auslogics - Auslogics BoostSpeed Installation File] =>SUP.Optional.Auslogics DEPLACÉ fichier: C:\ProgramData\IObit\Software Updater\Download\6e094b845923fc355280842939813e51.exe [UCWeb Inc. - UC浏览器安装程序] =>.SUP.UCBrowser DEPLACÉ fichier: C:\ProgramData\IObit\Software Updater\Download\b616159324b85be4f649d63a960eb136.exe [Discord Inc. - Discord - https://discord.com/] =>.SUP.Discord DEPLACÉ fichier^: C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\Local\Temp\6d227133-fad8-49d7-b19f-cd3b60c10af4.tmp =>.SUP.Temporary.Empty DEPLACÉ fichier^: C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\Local\Temp\qtlocalpeer-Amazon-bdab-1-lockfile =>.SUP.Temporary.Empty DEPLACÉ fichier: C:\Documents and Settings\Compaq\Desktop\Auslogics Disk Defrag.lnk =>SUP.Optional.Auslogics DEPLACÉ fichier: C:\Documents and Settings\Compaq\Downloads\wetransfer_auslogics-boostspeed-11-4-0-2-exe_2022-10-31_2228.zip =>SUP.Optional.Auslogics DEPLACÉ fichier: C:\Documents and Settings\Compaq\Downloads\wetransfer_restoro-exe_2022-10-31_2320.zip =>SUP.Optional.Restoro DEPLACÉ dossier: C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb =>.SUP.Orphan DEPLACÉ dossier: C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj =>.SUP.Orphan DEPLACÉ dossier: C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb =>.SUP.Orphan DEPLACÉ dossier: C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj =>.SUP.Orphan DEPLACÉ dossier: C:\Users\Compaq\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho =>.SUP.Orphan DEPLACÉ dossier: C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\Roaming\DRPSu =>.SUP.DriverPack DEPLACÉ dossier: C:\Program Files (x86)\Auslogics =>SUP.Optional.Auslogics DEPLACÉ dossier: C:\Program Files (x86)\booking.com =>PUP.Optional.Booking DEPLACÉ dossier: C:\Program Files (x86)\Brackets =>.SUP.Empty DEPLACÉ dossier: C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\Local\Torch =>.SUP.Torch DEPLACÉ dossier: C:\Users\Compaq\AppData\Roaming\Auslogics =>SUP.Optional.Auslogics DEPLACÉ dossier: C:\Users\Compaq\AppData\Roaming\DiskDefrag =>SUP.Optional.AuslogicsDiskDefrag DEPLACÉ dossier: C:\Users\Compaq\AppData\Roaming\HMYGSetting =>Adware.Suspect DEPLACÉ dossier: C:\Documents and Settings\Compaq\Application Data\Auslogics =>SUP.Optional.Auslogics DEPLACÉ dossier: C:\Documents and Settings\Compaq\Application Data\DiskDefrag =>SUP.Optional.AuslogicsDiskDefrag DEPLACÉ dossier: C:\Documents and Settings\Compaq\Application Data\HMYGSetting =>Adware.Suspect DEPLACÉ dossier: C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\LocalLow\IObit\Advanced SystemCare =>SUP.Optional.AdvancedSystemCare DEPLACÉ dossier: C:\Users\UEF & twister.DESKTOP-650T4C4\AppData\Roaming\IObit\Advanced SystemCare =>SUP.Optional.AdvancedSystemCare DEPLACÉ dossier: C:\ProgramData\IObit\Advanced SystemCare =>SUP.Optional.AdvancedSystemCare ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (53) SUPPRIMÉ clé*: HKCU\Software\drpsu [AdditionalScan 67] =>.SUP.DriverPack SUPPRIMÉ clé*: HKCU\Software\UCBrowserPID [AdditionalScan 120] =>.SUP.UCBrowser SUPPRIMÉ clé*: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\drp.su [AdditionalScan 264] =>.SUP.DriverPack SUPPRIMÉ clé*: HKLM\SOFTWARE\Wow6432Node\Auslogics\BoostSpeed [AdditionalScan 287] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé*: HKLM\SOFTWARE\Wow6432Node\drpsu [AdditionalScan 293] =>.SUP.DriverPack SUPPRIMÉ clé*: HKLM\SOFTWARE\Wow6432Node\UCBrowserPID [AdditionalScan 329] =>.SUP.UCBrowser SUPPRIMÉ clé**: HKLM\SOFTWARE\Auslogics\BoostSpeed [AdditionalScan 411] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé**: HKLM\SOFTWARE\drpsu [AdditionalScan 412] =>.SUP.DriverPack SUPPRIMÉ clé^: HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.ascplugin.protect [AdditionalScan 430] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé**: HKLM\SOFTWARE\UCBrowserPID [AdditionalScan 462] =>.SUP.UCBrowser SUPPRIMÉ clé*: HKLM\SOFTWARE\POLICIES\Mozilla\Firefox [AdditionalScan 576] =>.SUP.FirefoxRestriction SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-3945783615-3853108761-1058730989-1001\SOFTWARE\Systweak [] =>.SUP.Systweak SUPPRIMÉ clé**: HKCU\Software\drpsu [] =>.SUP.DriverPack SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Prod.cap [] =>Adware.ClaroSearch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [_IReiEngineEvents] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [IReiEngine] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{93469602-4134-4012-A6BC-F0AD1C3D66AB} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{93469602-4134-4012-A6BC-D46FF1C671E9} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{93469602-4134-4012-A6BC-3E73B9855F90} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\AppID\{278029E0-2347-4254-A65E-204AC55E2508} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Restoro.Engine [Restoro Class] =>SUP.Optional.Restoro SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Restoro.Engine.1 [Restoro Class] =>SUP.Optional.Restoro SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Systweak Software Updater [Program Systweak Software Updater] =>.SUP.Systweak SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{BA827421-E282-479E-AE60-34796877B8AE} [Restoro Class] =>SUP.Optional.Restoro SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\Applications\TorchSetupstub-69.2.0.1713 (2).exe [] =>.SUP.Torch SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Restoro [] =>SUP.Optional.Restoro SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Disk Defrag.exe [C:\Program Files (x86)\Glarysoft\Disk SpeedUp 5\DiskDefrag.exe (Not File)] =>PUP.Optional.DiskSpeedup SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Restoro [Restoro] =>SUP.Optional.Restoro SUPPRIMÉ clé^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Auslogics [] =>SUP.Optional.Auslogics SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Auslogics [] =>SUP.Optional.Auslogics SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Wow6432Node\drpsu [] =>.SUP.DriverPack SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{93469602-4134-4012-A6BC-F0AD1C3D66AB} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{93469602-4134-4012-A6BC-D46FF1C671E9} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{93469602-4134-4012-A6BC-3E73B9855F90} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{278029E0-2347-4254-A65E-204AC55E2508} [] =>SUP.Optional.AuslogicsBoostSpeed SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [_IReiEngineEvents] =>PUP.Optional.Legacy SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [IReiEngine] =>PUP.Optional.Legacy SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\Disk Defrag.exe [C:\Program Files (x86)\Glarysoft\Disk SpeedUp 5\DiskDefrag.exe (Not File)] =>PUP.Optional.DiskSpeedup SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare_is1 [IObit] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BitLord [House of Life] =>SUP.Optional.Conduit SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{13D4CD54-EA09-4FDB-B979-8B2BC0F020CA}_is1 [booking.com] =>PUP.Optional.Booking SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6845255F-15CC-4DD1-94D5-D38F370118B3}_is1 [Auslogics Labs Pty Ltd] =>SUP.Optional.Auslogics SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B6AEA771-9737-41A2-AA07-772CB1A1CC27}_is1 [Auslogics Labs Pty Ltd] =>SUP.Optional.Auslogics SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 [Auslogics Labs Pty Ltd] =>SUP.Optional.Auslogics SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D} [CExtMenu Class] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}\InprocServer32 [C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé**: [X64] HKLM\SOFTWARE\Classes\CLSID\{BA827421-E282-479E-AE60-34796877B8AE}\InprocServer32 [] =>SUP.Optional.Restoro SUPPRIMÉ clé*: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Advanced SystemCare [{2803063F-4B8D-4dc6-8874-D1802487FE2D}] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé*: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\Advanced SystemCare [{2803063F-4B8D-4dc6-8874-D1802487FE2D}] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé*: HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\Advanced SystemCare [{2803063F-4B8D-4dc6-8874-D1802487FE2D}] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé*: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Advanced SystemCare [{2803063F-4B8D-4dc6-8874-D1802487FE2D}] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ clé*: HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\Advanced SystemCare [{2803063F-4B8D-4dc6-8874-D1802487FE2D}] =>SUP.Optional.AdvancedSystemCare SUPPRIMÉ valeur: HKLM64\SOFTWARE\Wow6432Node\Mozilla\Firefox\Extensions\\MoraeFirefoxExtension@techsmith.com [C:\Program Files (x86)\TechSmith\Morae\BrowserExte] =>.SUP.BrowserExtension ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (23) https://nicolascoolman.eu/2018/08/17/sup-restoro/ =>SUP.Optional.Restoro https://nicolascoolman.eu/2017/09/14/sup-systweak/ =>.SUP.Systweak https://nicolascoolman.eu/2017/01/28/adware-adblocker/ =>PUP.Optional.Adblocker https://nicolascoolman.eu/2018/01/18/adware-marineaquarium/ =>.SUP.MarineAquarium https://nicolascoolman.eu/2017/10/05/sup-browserextension/ =>.SUP.BrowserExtension https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord https://nicolascoolman.eu/forum/Topic/auslogics-logiciel-potentiellement-superflu-lps/ =>SUP.Optional.Auslogics https://nicolascoolman.eu/2017/03/04/superfluous-ucbrowser/ =>.SUP.UCBrowser https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Empty https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2018/07/04/sup-driverpack/ =>.SUP.DriverPack https://nicolascoolman.eu/forum/Topic/booking-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Booking https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Empty https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Torch https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>SUP.Optional.AuslogicsDiskDefrag https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/wp-content/uploads/2017/12/26/sup-advancedsystemcare/ =>SUP.Optional.AdvancedSystemCare https://nicolascoolman.eu/2019/05/04/sup-auslogics-boostspeed/ =>SUP.Optional.AuslogicsBoostSpeed https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.FirefoxRestriction https://nicolascoolman.eu/forum/Topic/clarosearch-logiciel-publicitaire-adware/ =>Adware.ClaroSearch https://nicolascoolman.eu/forum/Topic/legacy-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Legacy https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>PUP.Optional.DiskSpeedup https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>SUP.Optional.Conduit ---\\ NETTOYAGE ADDITIONNEL. (42) ~ Suppression des Clés de registre Tracing. (42) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Google Chrome OK ~ Mozilla Firefox OK ~ Internet Explorer OK ---\\ STATISTIQUES ~ Items scannés : 1546 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Gain de place (Octets) : 0 ~ Items options : 17/17 ---\\ OPTIONS DESACTIVÉES ~ End of clean in 00h18mn36s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-16112022-01_02_40.txt ZHPCleaner-[R]-16112022-09_38_58.txt