Format du document : text/plain
Prévisualisation
~ ZHPCleaner v2017.109.2.173 by Nicolas Coolman (2017/10/02)
~ Run by ancien compte (Administrator) (03/10/2017 18:47:08)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Scanner
~ Report : C:\Users\lolonice\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\lolonice\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 15063)
---\\ Service. (2)
[R] TROUVÉ : panda_url_filtering =>.SUP.StartSearch
[R] TROUVÉ : panda_url_filtering =>.SUP.VisicomMedia
---\\ Navigateur internet. (2)
TROUVÉ: [bzy6kmjd.default] - user_pref("browser.search.defaultenginename", "Bing Powered Search"); =>.SUP.BingPoweredSearch
TROUVÉ: [bzy6kmjd.default] - user_pref("browser.search.selectedEngine", "Bing Powered Search"); =>.SUP.BingPoweredSearch
---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)
---\\ Tâche planifiée. (2)
TROUVÉ tâche: [Bing Powered Search resed] [C:\ProgramData\{BD777814-3735-F2D2-B1F3-6C902BB1E75E}\seco.txt] =>.SUP.BingPoweredSearch
TROUVÉ tâche: [Bing Powered Search resed] [C:\WINDOWS\Tasks\Bing Powered Search resed.job] =>.SUP.BingPoweredSearch
---\\ Explorateur ( Dossiers, Fichiers ). (15)
TROUVÉ fichier: C:\Users\lolonice\AppData\Roaming\Mozilla\Firefox\Profiles\bzy6kmjd.default\storage\default\https+++teamviewer.en.uptodown.com\.metadata =>PUP.Optional.UpToDown
TROUVÉ fichier: C:\Users\lolonice\AppData\Roaming\Mozilla\Firefox\Profiles\bzy6kmjd.default\storage\default\https+++teamviewer.en.uptodown.com\.metadata-v2 =>PUP.Optional.UpToDown
TROUVÉ fichier: C:\Users\lolonice\AppData\Roaming\Mozilla\Firefox\Profiles\bzy6kmjd.default\storage\default\https+++teamviewer.en.uptodown.com\cache\caches.sqlite =>PUP.Optional.UpToDown
TROUVÉ fichier: C:\Users\lolonice\AppData\Roaming\Mozilla\Firefox\Profiles\bzy6kmjd.default\storage\default\https+++teamviewer.en.uptodown.com\cache\morgue\84\{77726a44-2bb1-4e27-adbb-78084c89dd54}.final =>PUP.Optional.UpToDown
TROUVÉ fichier: C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe [Visicom Media Inc. - Visicom Media Anti-phishing Domain Advisor] =>.SUP.StartSearch
TROUVÉ fichier: C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe [Visicom Media Inc. - Visicom Media Anti-phishing Domain Advisor] =>.SUP.VisicomMedia
TROUVÉ fichier: C:\ProgramData\{BD777814-3735-F2D2-B1F3-6C902BB1E75E}\seco.txt =>.SUP.BingPoweredSearch
TROUVÉ fichier: C:\Windows\Tasks\Bing Powered Search resed.job =>.SUP.BingPoweredSearch
TROUVÉ fichier: C:\ProgramData\panda_url_filtering\c.l =>.SUP.StartSearch
TROUVÉ fichier: C:\ProgramData\panda_url_filtering\catalog.list =>.SUP.StartSearch
TROUVÉ fichier: C:\ProgramData\panda_url_filtering\white.list =>.SUP.StartSearch
TROUVÉ fichier: C:\ProgramData\panda_url_filtering\white.list.old =>.SUP.StartSearch
TROUVÉ fichier: C:\ProgramData\panda_url_filtering\white.zip =>.SUP.StartSearch
TROUVÉ dossier: C:\ProgramData\panda_url_filtering\data =>.SUP.StartSearch
TROUVÉ dossier: C:\ProgramData\panda_url_filtering =>.SUP.StartSearch
---\\ Base de Registres ( Clés, Valeurs, Données ). (12)
TROUVÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{d4fee3d1-1014-4db8-a824-573bf9ab51c7} [http://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-a822a404&q={searchTerms}] [Bing Powered Search] =>.SUP.BingPoweredSearch
TROUVÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-a822a404&q={searchTerms}] [Bing Powered Search] =>.SUP.BingPoweredSearch
TROUVÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [http://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-a822a404&q={searchTerms}] [Bing Powered Search] =>.SUP.BingPoweredSearch
TROUVÉ valeur: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Panda Security URL Filtering ["C:\Program Files\Panda Security URL Filtering\Panda_URL_Filtering.exe"] =>.SUP.StartSearch
TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\panda_url_filtering [C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe](.Visicom Media Inc..) =>.SUP.StartSearch
TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\panda_url_filteringd [\C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys (Not File)](..) =>.SUP.StartSearch
TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\panda_url_filtering [C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe] =>.SUP.VisicomMedia
TROUVÉ clé: HKCU\Software\csastats [] =>Adware.InstallCore
TROUVÉ clé: HKCU\Software\ProductSetup [] =>Adware.InstallCore
TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\panda_url_filtering [] =>.SUP.StartSearch
TROUVÉ clé: HKLM\SYSTEM\CurrentControlSet\Services\panda_url_filteringd [] =>.SUP.StartSearch
TROUVÉ clé: [X64] HKLM\SOFTWARE\panda_url_filtering [] =>.SUP.StartSearch
---\\ Récapitulatif des éléments trouvés sur votre station. (5)
https://nicolascoolman.eu/2017/09/11/sup-startsearch/ =>.SUP.StartSearch
https://nicolascoolman.eu/2017/03/18/superfluous-visicommedia/ =>.SUP.VisicomMedia
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.BingPoweredSearch
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.UpToDown
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
---\\ Bilan de la réparation
~ Aucune réparation effectuée.
~ Ce navigateur est absent (Google Chrome)
~ Ce navigateur est absent (Opera Software)
---\\ Statistiques
~ Items scannés : 89143
~ Items trouvés : 43
~ Items annulés : 0
~ Items réparés : 0
~ End of search in 00h03mn29s
~====================
ZHPCleaner-[S]-03102017-18_50_37.txt