~ ZHPCleaner v2023.11.13.52 by Nicolas Coolman (2023/11/13) ~ Run by Principale (Administrator) (17/11/2023 23:44:55) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Scanner ~ Report : d:\Users\Principale\Desktop\ZHPCleaner (S).txt ~ Quarantine : C:\Users\Principale\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ System Restore Point : ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 19045) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (11) TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\History =>.SUP.BrowserHistoric TROUVÉ fichier: C:\Users\Principale\AppData\Local\Microsoft\Edge\User Data\Default\History =>.SUP.BrowserHistoric TROUVÉ dossier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data =>.SUP.BrowserCache TROUVÉ dossier: C:\Users\Principale\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data =>.SUP.BrowserCache TROUVÉ dossier: C:\Users\Principale\AppData\Local\Moonchild Productions\Pale Moon\User Data\Default\Cache\Cache_Data =>.SUP.BrowserCache TROUVÉ dossier: C:\Users\Principale\AppData\Local\Mozilla\Firefox\Profiles\eo85q74v.default-release-1589017009969\Cache2 =>.SUP.BrowserCache TROUVÉ dossier: C:\Users\Principale\AppData\Local\Mozilla\Firefox\Profiles\qm5lmfi4.default\Cache2 =>.SUP.BrowserCache TROUVÉ dossier: C:\Users\Principale\AppData\Local\Thunderbird\Profiles\eo85q74v.default-release-1589017009969\Cache2 =>.SUP.BrowserCache TROUVÉ dossier: C:\Users\Principale\AppData\Local\Thunderbird\Profiles\qm5lmfi4.default\Cache2 =>.SUP.BrowserCache TROUVÉ: [qm5lmfi4.default] - user_pref("browser.search.defaultenginename", "Conduit Search"); =>SUP.Optional.Conduit TROUVÉ: [qm5lmfi4.default] - user_pref("browser.search.selectedEngine", "Conduit Search"); =>SUP.Optional.Conduit ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (48) ---\\ TÂCHE PLANIFIÉE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (59) TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\Mozilla\Firefox\Profiles\qm5lmfi4.default\searchplugins\conduit-search.xml =>SUP.Optional.Conduit TROUVÉ fichier: C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\NP8hStub.dll [Mindspark - Mindspark Toolbar Platform Plugin Stub for] =>SUP.Optional.MindSpark TROUVÉ fichier: C:\Users\Dominique\AppData\Local\Google\Chrome\User Data\Default\Preferences =>ChromiumPreference TROUVÉ fichier: C:\Users\Dominique\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences =>ChromiumPreference TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Preferences =>ChromiumPreference TROUVÉ fichier: C:\Users\Dominique\AppData\Local\Microsoft\Edge\User Data\Default\Preferences =>ChromiumPreference TROUVÉ fichier: C:\Users\Principale\AppData\Local\Microsoft\Edge\User Data\Default\Preferences =>ChromiumPreference TROUVÉ dossier: C:\Users\Principale\AppData\Roaming\HMYGSetting =>Adware.Suspect TROUVÉ fichier: C:\Users\Principale\AppData\Local\Temp\etilqs_oZUe8JaWpb5tVVb =>PUP.Optional.Bang5mai TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.SUP.Atwola TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.SUP.Atwola TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.igraal.com_0.localstorage =>Toolbar.Graal TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.igraal.com_0.localstorage-journal =>Toolbar.Graal TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.booking.com_0.localstorage =>PUP.Optional.Booking TROUVÉ fichier: C:\Users\Principale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.booking.com_0.localstorage-journal =>PUP.Optional.Booking TROUVÉ fichier: C:\Documents and Settings\Dominique\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.SUP.Atwola TROUVÉ fichier: C:\Documents and Settings\Dominique\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.SUP.Atwola TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.SUP.Atwola TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.SUP.Atwola TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_fr.igraal.com_0.localstorage =>Toolbar.Graal TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_fr.igraal.com_0.localstorage-journal =>Toolbar.Graal TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.booking.com_0.localstorage =>PUP.Optional.Booking TROUVÉ fichier: C:\Documents and Settings\Principale\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\http_www.booking.com_0.localstorage-journal =>PUP.Optional.Booking TROUVÉ fichier: C:\Windows\Reimage.ini =>SUP.Optional.ReimageRepair TROUVÉ dossier: C:\Program Files (x86)\Allin1Convert_8h\bar =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Program Files (x86)\Allin1Convert_8h =>SUP.Optional.MindSpark TROUVÉ dossier: C:\ProgramData\APN\APN-Stub =>Toolbar.Ask TROUVÉ dossier: C:\ProgramData\APN =>Toolbar.Ask TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\freegames4357\freegames4357.crx =>PUP.Optional.ScriptHost TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\freegames4357\freegames4357DeskTopIcon.ico =>PUP.Optional.ScriptHost TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\freegames4357\install_helper.exe =>PUP.Optional.ScriptHost TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\speedtest4354\install_helper.exe =>PUP.Optional.ScriptHost TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\speedtest4354\speedtest4354.crx =>PUP.Optional.ScriptHost TROUVÉ fichier: C:\Users\Principale\AppData\Roaming\speedtest4354\speedtest4354DeskTopIcon.ico =>PUP.Optional.ScriptHost TROUVÉ dossier: C:\Users\Principale\AppData\Roaming\freegames4357 =>PUP.Optional.ScriptHost TROUVÉ dossier: C:\Users\Principale\AppData\Roaming\speedtest4354 =>PUP.Optional.ScriptHost TROUVÉ dossier: C:\Users\Principale\AppData\LocalLow\Allin1Convert_8h\bar =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\LocalLow\Allin1Convert_8h =>SUP.Optional.MindSpark TROUVÉ fichier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\UrlFolderExtension.uf1 =>SUP.Optional.MindSpark TROUVÉ fichier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\UrlFolderExtension.ufm =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\10b19c4cb4f3fa6c193860bc175eed63b209d408 =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\5faeb22ec2560b480e98564e429053d34cdc5893 =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\8fd4683d8d862b8564aca600e8e89608d4dda76e =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\acc8ee23a134bbe7164ac2f3d3d6d56a49c5e130 =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\Local\Allin1Convert_8h\e3218e48d1719369996c8da5c4a3d28d11afeaab =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Principale\AppData\Local\Allin1Convert_8h =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Dominique\AppData\LocalLow\Allin1Convert_8h\bar =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Dominique\AppData\LocalLow\Allin1Convert_8h =>SUP.Optional.MindSpark TROUVÉ dossier: C:\Users\Dominique\AppData\Local\Allin1Convert_8h =>SUP.Optional.MindSpark TROUVÉ dossier: C:\ProgramData\SecuritySuite =>SUP.Optional.ScanGuard TROUVÉ dossier: C:\Users\Principale\AppData\Local\File Send SuiteTooltab =>SUP.Optional.MindSpark ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (124) TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\MozillaPlugins\@Allin1Convert_8h.com/Plugin [Allin1Convert Plugin] =>SUP.Optional.MindSpark TROUVÉ valeur: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_27CD79ED8AA41A2CAA7000B3CA6322B2 ["C:\Program Files (x86)\Google\Chrome\Application\] =>PUP.Optional.MyBrowser TROUVÉ clé: HKCU\Software\SSProtect [AdditionalScan 53] =>.SUP.PCProtect TROUVÉ clé: HKCU\Software\Yahoo\Companion [AdditionalScan 71] =>PUP.Optional.WinYahoo TROUVÉ clé: HKCU\Software\Yahoo\YFriendsBar [AdditionalScan 72] =>PUP.Optional.WinYahoo TROUVÉ clé: HKCU\SOFTWARE\AppDataLow\Software\Yahoo\Companion [AdditionalScan 167] =>PUP.Optional.WinYahoo TROUVÉ clé: HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [AdditionalScan 184] =>SUP.Optional.ReimageRepair TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com [AdditionalScan 199] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\staticimgfarm.com [AdditionalScan 207] =>PUP.Optional.Legacy TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ak.staticimgfarm.com [AdditionalScan 208] =>PUP.Optional.Legacy TROUVÉ clé: HKLM\SOFTWARE\Wow6432Node\Yahoo\Companion [AdditionalScan 301] =>PUP.Optional.WinYahoo TROUVÉ clé: HKLM\SOFTWARE\Yahoo\Companion [AdditionalScan 420] =>PUP.Optional.WinYahoo TROUVÉ clé: HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} [AdditionalScan 514] =>PUP.Optional.Legacy TROUVÉ clé: HKEY_USERS\S-1-5-21-955973582-539969649-4040997089-1000\SOFTWARE\Allin1Convert_8h [] =>SUP.Optional.MindSpark TROUVÉ clé: HKEY_USERS\S-1-5-21-955973582-539969649-4040997089-1000\SOFTWARE\APN PIP [] =>SUP.Optional.Conduit TROUVÉ clé: HKEY_USERS\S-1-5-21-955973582-539969649-4040997089-1000\SOFTWARE\Reimage [] =>SUP.Optional.ReimageRepair TROUVÉ clé: HKEY_USERS\S-1-5-21-955973582-539969649-4040997089-1000\SOFTWARE\reimagerepair [] =>SUP.Optional.ReimageRepair TROUVÉ clé: HKEY_USERS\.DEFAULT\Software\AskPartnerNetwork [] =>PUP.Optional.APNToolBar TROUVÉ clé: HKCU\Software\Allin1Convert_8h [] =>SUP.Optional.MindSpark TROUVÉ clé: HKCU\Software\APN PIP [] =>SUP.Optional.Conduit TROUVÉ clé: HKCU\Software\Reimage [] =>SUP.Optional.ReimageRepair TROUVÉ clé: HKCU\Software\reimagerepair [] =>SUP.Optional.ReimageRepair TROUVÉ clé: HKCU\Software\AppDataLow\Software\Allin1Convert_8h [] =>SUP.Optional.MindSpark TROUVÉ clé: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\File Send SuiteTooltab Uninstall Internet Explorer [Mindspark Interactive Network, Inc.] =>SUP.Optional.MindSpark TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ask.com [] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\atwola.com [] =>.SUP.Atwola TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\booking.com [] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\fr.ask.com [] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\ol.uk.at.atwola.com [] =>.SUP.Atwola TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\secure.booking.com [] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\secure.totalav.com [] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\totalav.com [] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.booking.com [] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.totalav.com [] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ask.com [] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\atwola.com [] =>.SUP.Atwola TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\booking.com [] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\fr.ask.com [] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\ol.uk.at.atwola.com [238] =>.SUP.Atwola TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\secure.booking.com [61] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\secure.totalav.com [] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\totalav.com [] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.booking.com [3220] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.totalav.com [167] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akamaihd.net [] =>.SUP.AkamaiHD TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com [] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\booking.com [] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\d16fk4ms6rqz1v.cloudfront.net [] =>.SUP.CloudfrontNet TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\d22j4fzzszoii2.cloudfront.net [] =>.SUP.CloudfrontNet TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\downspeedtest.dl.myway.com [808] =>SUP.Optional.MindSpark TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\downspeedtest.dl.tb.ask.com [12] =>SUP.Optional.MindSpark TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\easypdfcombine.dl.myway.com [12] =>Adware.EasyPDFCombine TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\easypdfcombine.dl.tb.ask.com [12] =>Adware.EasyPDFCombine TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\embedftv-a.akamaihd.net [268] =>.SUP.AkamaiHD TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\filesendsuite.dl.tb.ask.com [12] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\fr.ask.com [130] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\fr.searchnow.com [82] =>Adware.SearchNow TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mapsgalaxy.dl.myway.com [12] =>Adware.MapsGalaxy TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mapsgalaxy.dl.tb.ask.com [12] =>Adware.MapsGalaxy TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mynewsguide.dl.tb.ask.com [12] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pconverter.dl.tb.ask.com [12] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\productivityboss.dl.myway.com [12] =>.SUP.ProductivityBoss TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\productivityboss.dl.tb.ask.com [12] =>.SUP.ProductivityBoss TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchformsonline.dl.tb.ask.com [12] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchnow.com [] =>Adware.SearchNow TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\secure-hotel-booking.com [] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\secure.booking.com [80] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.audienceinsights.net [43] =>.SUP.AudienceInsights TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\static.olark.com [23161] =>PUP.Optional.Generic TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\testonlinespeed.dl.tb.ask.com [12] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\totalav.com [] =>SUP.Optional.TotalAV TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.booking.com [360] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.search.ask.com [321] =>Toolbar.Ask TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.secure-hotel-booking.com [4883] =>PUP.Optional.Booking TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.totalav.com [169] =>SUP.Optional.TotalAV TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\f [f] =>PUP.Optional.Funmoods TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\S [] =>Toolbar.Agent TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [_IReiEngineEvents] =>PUP.Optional.Legacy TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [IReiEngine] =>PUP.Optional.Legacy TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL [] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\AppID\YMERemote.DLL [] =>PUP.Optional.WinYahoo TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} [REI_AxControl] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.FeedManager [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.FeedManager.1 [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.HTMLMenu [Allin1Convert_8h HTML Menu] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.HTMLMenu.1 [Allin1Convert_8h HTML Menu] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.HTMLPanel [Allin1Convert_8h HTML Panel] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.HTMLPanel.1 [Allin1Convert_8h HTML Panel] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.MultipleButton [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.MultipleButton.1 [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.PseudoTransparentPlugin [Pseudo Transparent Plugin] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.PseudoTransparentPlugin.1 [Pseudo Transparent Plugin] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.Radio [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.Radio.1 [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.RadioSettings [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.RadioSettings.1 [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.ScriptButton [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.ScriptButton.1 [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.SettingsPlugin [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.SettingsPlugin.1 [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.ThirdPartyInstaller [Allin1Convert Third Party Installer] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.ThirdPartyInstaller.1 [Allin1Convert Third Party Installer] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector [ProtectorControl Class] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\Allin1Convert_8h.ToolbarProtector.1 [ProtectorControl Class] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [ReiEngine Class] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [ReiEngine Class] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\reimage [] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Reimage Reminder [] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Allin1Convert_8h [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\REI_AxControl.DLL [] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\YMERemote.DLL [] =>PUP.Optional.WinYahoo TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} [REI_AxControl] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [_IReiEngineEvents] =>PUP.Optional.Legacy TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [IReiEngine] =>PUP.Optional.Legacy TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248b3e95-17a4-482d-a8a8-6b3df4d05c35} [C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6874fade-02c8-4181-831a-fc7486cf1d74} [C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player NPAPI [Adobe] =>Riskware.FlashPlayer TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Allin1Convert_8hbar Uninstall Firefox [] =>SUP.Optional.MindSpark TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}\InprocServer32 [C:\Program Files\Reimage\Reimage Repair\REI_Axcontrol.dll (Not File)] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484} [ReiEngine Class] =>SUP.Optional.ReimageRepair TROUVÉ clé: [X64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB} [CompReg Class] =>SUP.Optional.ReimageRepair ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (31) https://nicolascoolman.eu/2023/07/18/les-caches-et-historiques-de-navigateurs/ =>.SUP.BrowserHistoric https://nicolascoolman.eu/2023/07/18/les-caches-et-historiques-de-navigateurs/ =>.SUP.BrowserCache https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>SUP.Optional.Conduit https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>SUP.Optional.MindSpark https://nicolascoolman.eu/2020/10/01/preferences-navigateurs-chromium/ =>ChromiumPreference https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>PUP.Optional.Bang5mai https://nicolascoolman.eu/2017/02/04/superfluous-atwola/ =>.SUP.Atwola https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://nicolascoolman.eu/2017/09/25/toolbar-igraal/ =>Toolbar.Graal https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.AudienceInsights https://nicolascoolman.eu/forum/Topic/booking-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Booking https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>SUP.Optional.ReimageRepair https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://nicolascoolman.eu/forum/Topic/scripthost-logiciel-publicitaire-adware/ =>PUP.Optional.ScriptHost https://nicolascoolman.eu/2017/12/21/sup-scanguard/ =>SUP.Optional.ScanGuard https://nicolascoolman.eu/2017/11/01/adware-mybrowser/ =>PUP.Optional.MyBrowser https://nicolascoolman.eu/2017/10/30/sup-pcprotect/ =>.SUP.PCProtect https://nicolascoolman.eu/forum/Topic/winyahoo-logiciel-optionnel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.WinYahoo https://nicolascoolman.eu/forum/Topic/legacy-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Legacy https://nicolascoolman.eu/forum/Topic/apntoolbar-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.APNToolBar https://nicolascoolman.eu/2017/10/30/sup-totalav/ =>SUP.Optional.TotalAV https://nicolascoolman.eu/2017/12/26/sup-akamaihd/ =>.SUP.AkamaiHD https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.CloudfrontNet https://nicolascoolman.eu/2017/11/21/adware-easypdfcombine/ =>Adware.EasyPDFCombine https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>Adware.SearchNow https://nicolascoolman.eu/forum/Topic/mapsgalaxy-logiciel-potentiellement-indesirable-pup-lpi/ =>Adware.MapsGalaxy https://nicolascoolman.eu/2017/11/18/sup-productivityboss/ =>.SUP.ProductivityBoss https://nicolascoolman.eu/forum/Topic/funmoods-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Funmoods https://nicolascoolman.eu/2017/09/23/barres-doutils-de-navigateur-toolbars/ =>Toolbar.Agent https://nicolascoolman.eu/forum/Topic/flashplayer-logiciel-a-risque-riskware/ =>Riskware.FlashPlayer ---\\ BILAN DE LA REPARATION ~ Aucune réparation effectuée. ~ Google Chrome OK ~ Microsoft Edge OK ~ Mozilla Firefox OK ~ Microsoft Internet Explorer OK ~ Thunderbird OK ~ Pale Moon OK ---\\ STATISTIQUES ~ Items scannés : 114724 ~ Items trouvés : 252 ~ Items annulés : 0 ~ Gain de place (Octets) : 0 ~ Items options : 10/18 ---\\ OPTIONS DESACTIVÉES ~ Analyse et suppression des fichiers temporaires ~ Analyse et suppression des répertoires temporaires ~ Recherche et suppression des répertoires CLSID vides ~ Recherche et suppression des autres répertoires vides ~ Recherche et suppression des répertoires vides de LocalLow ~ Recherche et suppression des répertoires vides de Local ~ Recherche et suppression des fichiers obsolètes ~ Initialiser les navigateurs avec suppression des extensions ~ End of search in 00h14mn36s ---\\ LISTE DES RAPPORTS (0) ZHPCleaner-[S]-17112023-23_59_31.txt