cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.3.15.46 by Nicolas Coolman (2017/03/15)
~ Run by Muller (Administrator) (16/03/2017 21:00:17)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Nettoyer
~ Report : C:\Users\Muller\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Muller\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 10586)


---\\ Service. (1)
ARRETÉ : rtop =>.Superfluous.ByteFence


---\\ Navigateur internet. (0)


---\\ Fichier hôte. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Tâche planifiée. (3)
SUPPRIMÉ tâche: [ByteFence] [C:\Program Files\ByteFence\ByteFence.exe (Not File) ] =>.Superfluous.ByteFence
SUPPRIMÉ tâche: [Start WinZip Driver Updater for PCDEFLORIAN@Muller(logon)] [C:\Windows\Tasks\Start WinZip Driver Updater for PCDEFLORIAN@Muller(logon).job (Not File) ] =>PUP.Optional.WinZipDriverUpdater
SUPPRIMÉ tâche: [Yahoo! Powered marod] [C:\Windows\Tasks\Yahoo! Powered marod.job (Not File) ] =>Adware.YahooPowered


---\\ Explorateur ( Dossiers, Fichiers ). (23)
DEPLACÉ fichier: C:\Users\Muller\AppData\Roaming\Mozilla\Firefox\Profiles\frJDfj6B.default\searchplugins\yahoo! powered.xml =>Adware.YahooPowered
DEPLACÉ fichier: C:\Windows\Tasks\Start WinZip Driver Updater for PCDEFLORIAN@Muller(logon).job =>PUP.Optional.WinZipDriverUpdater
DEPLACÉ fichier: C:\Windows\Tasks\Yahoo! Powered marod.job =>Adware.YahooPowered
DEPLACÉ fichier: C:\Windows\Installer\wix{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}.SchedServiceConfig.rmi =>.Superfluous.Empty
DEPLACÉ fichier: C:\Users\Muller\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Muller\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet
DEPLACÉ fichier: C:\Users\Muller\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_wix-instantsearchplus-ssl.akamaized.net_0.localstorage =>.Superfluous.AkamaiHD
DEPLACÉ fichier: C:\Users\Muller\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_wix-instantsearchplus-ssl.akamaized.net_0.localstorage-journal =>.Superfluous.AkamaiHD
DEPLACÉ dossier: C:\Program Files\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier: C:\Program Files\WinZip Driver Updater =>PUP.Optional.WinZipDriverUpdater
DEPLACÉ dossier: C:\ProgramData\advancedpccare.net =>.Superfluous.AdvancedPCCare
DEPLACÉ dossier^: C:\ProgramData\ByteFence =>.Superfluous.ByteFence
DEPLACÉ dossier: C:\Users\Muller\AppData\Roaming\Advancedpccare.net =>.Superfluous.AdvancedPCCare
DEPLACÉ dossier: C:\ProgramData\WinZip\WinZip Driver Updater =>PUP.Optional.WinZipDriverUpdater
DEPLACÉ dossier: C:\Windows\Installer\MSI9E0A.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIDB9B.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIE2C2.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIE49B.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIF19E.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIF355.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIF4EC.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIF616.tmp- =>.Superfluous.Empty
DEPLACÉ dossier: C:\Windows\Installer\MSIF720.tmp- =>.Superfluous.Empty


---\\ Base de Registres ( Clés, Valeurs, Données ). (28)
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fremkfs_17_03&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fremkfs_17_03&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_fremkfs_17_03&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fremkfs_17_03&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_fremkfs_17_03&p[...]] [Yahoo! Powered] =>Adware.YahooPowered
SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fremkfs_17_03¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDtDzyzyyE0E0EyDyEtAyCyByCyEtN0D0Tzu0StCzzyEtBtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StDyC0EtA0DtC0EyDtGyDzzzytBtGtA0DyB0BtGyDtCtA0DtG0F0BtC0EyCtD0A0EtByDzy0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEzy0Dzy0E0A0DzytG0FyE0BzytGyEtCyEyDtGzztDyB0FtG0AyC0CyCzy0C0F0EyEzzzyzy2QtN0A0LzuyE%26cr%3D1054328918%26a%3Dwbf_fremkfs_17_03%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fremkfs_17_03¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDtDzyzyyE0E0EyDyEtAyCyByCyEtN0D0Tzu0StCzzyEtBtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StDyC0EtA0DtC0EyDtGyDzzzytBtGtA0DyB0BtGyDtCtA0DtG0F0BtC0EyCtD0A0EtByDzy0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEzy0Dzy0E0A0DzytG0FyE0BzytGyEtCyEyDtGzztDyB0FtG0AyC0CyCzy0C0F0EyEzzzyzy2QtN0A0LzuyE%26cr%3D1054328918%26a%3Dwbf_fremkfs_17_03%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_fremkfs_17_03¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDtDzyzyyE0E0EyDyEtAyCyByCyEtN0D0Tzu0StCzzyEtBtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StCyCtAtB0A0D0F0BtGyBzyyB0FtGyCtCyCyEtGtD0EyEtDtG0CtAtAyDyByDzy0B0AzztD0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEzy0Dzy0E0A0DzytG0FyE0BzytGyEtCyEyDtGzztDyB0FtG0AyC0CyCzy0C0F0EyEzzzyzy2QtN0A0LzuyE%26cr%3D295676330%26a%3Dwcg_fremkfs_17_03%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_fremkfs_17_03¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDtDzyzyyE0E0EyDyEtAyCyByCyEtN0D0Tzu0StCzzyEtBtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2StDyC0EtA0DtC0EyDtGyDzzzytBtGtA0DyB0BtGyDtCtA0DtG0F0BtC0EyCtD0A0EtByDzy0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEzy0Dzy0E0A0DzytG0FyE0BzytGyEtCyEyDtGzztDyB0FtG0AyC0CyCzy0C0F0EyEzzzyzy2QtN0A0LzuyE%26cr%3D1054328918%26a%3Dwbf_fremkfs_17_03%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wcg_fremkfs_17_03¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDtDzyzyyE0E0EyDyEtAyCyByCyEtN0D0Tzu0StCzzyEtBtN1L2XzutAtFtByDtFtCtFtCtDzztN1L1Czu1ByDtN1L1G1B1V1N2Y1L1Qzu2StCyCtAtB0A0D0F0BtGyBzyyB0FtGyCtCyCyEtGtD0EyEtDtG0CtAtAyDyByDzy0B0AzztD0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEzy0Dzy0E0A0DzytG0FyE0BzytGyEtCyEyDtGzztDyB0FtG0AyC0CyCzy0C0F0EyEzzzyzy2QtN0A0LzuyE%26cr%3D295676330%26a%3Dwcg_fremkfs_17_03%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro&p={searchTerms}] =>Adware.YahooPowered
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\ByteFenceService [C:\Program Files\ByteFence\ByteFenceService.exe (Not File)] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\rtop [C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe (Not File)] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-34950723-3622257856-1134976912-1001\SOFTWARE\advancedpccare.net [] =>.Superfluous.AdvancedPCCare
SUPPRIMÉ clé*: HKEY_USERS\S-1-5-21-34950723-3622257856-1134976912-1001\SOFTWARE\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKEY_USERS\.DEFAULT\Software\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé: HKCU\Software\advancedpccare.net [] =>.Superfluous.AdvancedPCCare
SUPPRIMÉ clé: HKCU\Software\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: HKCU\Software\csastats [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKCU\Software\ProductSetup [] =>Adware.InstallCore
SUPPRIMÉ clé*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\ByteFenceService [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\advancedpccare.net [] =>.Superfluous.AdvancedPCCare
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\B7A64AC7-B828-4D74-98B2-097AFA836948_is1 [advancedpccare.net] =>.Superfluous.AdvancedPCCare
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinZip Driver Updater [WinZip International LLC] =>PUP.Optional.WinZipDriverUpdater
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\ByteFence [] =>.Superfluous.ByteFence
SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ByteFence [Byte Technologies LLC] =>.Superfluous.ByteFence


---\\ Récapitulatif des éléments trouvés sur votre station. (8)
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.Superfluous.ByteFence
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WinZipDriverUpdater
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Empty
https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.Superfluous.CloudfrontNet
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AkamaiHD
https://www.anti-malware.top/2016/04/23/superfluous-advancedpccare/ =>.Superfluous.AdvancedPCCare
https://nicolascoolman.eu/2017/03/12/adware-installcore-2/ =>Adware.InstallCore


---\\ Nettoyage Additionnel. (14)
~ Suppression des Clés de registre Tracing. (9)
~ Suppression des anciens rapports ZHPCleaner. (5)


---\\ Bilan de la réparation
~ Réparation réalisée avec succès.
~ Ce navigateur est absent (Opera Software)
~ Le système a été redémarré.


---\\ Statistiques
~ Items scannés : 460
~ Items trouvés : 0
~ Items annulés : 0
~ Items réparés : 56


~ End of clean in 00h01mn01s
~====================
ZHPCleaner-[R]-09112016-14_42_23.txt
ZHPCleaner-[R]-16032017-21_01_18.txt
ZHPCleaner-[S]-16032017-20_58_17.txt

Publicité


Signaler le contenu de ce document

Publicité