~ ZHPCleaner v2018.4.5.57 by Nicolas Coolman (2018/04/05) ~ Run by Claude (Administrator) (07/04/2018 21:23:49) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Nettoyer ~ Report : C:\Users\Claude\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Claude\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Home, 64-bit (Build 16299) ---\\ ALTERNATE DATA STREAM (ADS). (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ SERVICE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ NAVIGATEUR INTERNET. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ FICHIER HÔTE. (1) ~ Le fichier hôte est légitime. (26) ---\\ TÂCHE PLANIFIÉE. (0) ~ Aucun élément malicieux ou superflu trouvé. ---\\ EXPLORATEUR ( Dossiers, Fichiers ). (1) DEPLACÉ dossier: C:\ProgramData\SecuritySuite =>.SUP.ScanGuard ---\\ BASE DE REGISTRES ( Clés, Valeurs, Données ). (12) SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_17_13&par[...]] [Yahoo! Powered Search] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_17_13&par[...]] [Yahoo! Powered Search] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_17_13&par[...]] [Yahoo! Powered Search] =>Adware.YahooPowered SUPPRIMÉ clé: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_17_13¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwinyahoo%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDyByB0BtA0A0DyCzyzzzyyEtCyBtN0D0Tzu0StCzytCtBtN1L2XzutAtFtByCtFtBtFyDyEtN1L1Czu1ByCtN1L1G1B1V1N2Y1L1Qzu2SyCtDyB0Azz0D0A0EtGyB0A0E0EtGyE0DtD0FtGtD0AzztBtGzzyD0C0AtDyB0EtCyEzz0FyB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szy0D0EtCzzzy0CtBtGyCtAtD0CtGyE0FyBtBtG0AtDyEyDtGyCtDyCtBtByD0FzzyB0DyE0D2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtByDyEtA%26cr%3D1573922233%26a%3Dwbf_togoo_17_13%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_17_13¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwinyahoo%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDyByB0BtA0A0DyCzyzzzyyEtCyBtN0D0Tzu0StCzytCtBtN1L2XzutAtFtByCtFtBtFyDyEtN1L1Czu1ByCtN1L1G1B1V1N2Y1L1Qzu2SyCtDyB0Azz0D0A0EtGyB0A0E0EtGyE0DtD0FtGtD0AzztBtGzzyD0C0AtDyB0EtCyEzz0FyB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szy0D0EtCzzzy0CtBtGyCtAtD0CtGyE0FyBtBtG0AtDyEyDtGyCtDyCtBtByD0FzzyB0DyE0D2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtByDyEtA%26cr%3D1573922233%26a%3Dwbf_togoo_17_13%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [https://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_togoo_17_13¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3Dwinyahoo%26cd%3D2XzuyEtN2Y1L1Qzu0DtDyDyByB0BtA0A0DyCzyzzzyyEtCyBtN0D0Tzu0StCzytCtBtN1L2XzutAtFtByCtFtBtFyDyEtN1L1Czu1ByCtN1L1G1B1V1N2Y1L1Qzu2SyCtDyB0Azz0D0A0EtGyB0A0E0EtGyE0DtD0FtGtD0AzztBtGzzyD0C0AtDyB0EtCyEzz0FyB2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szy0D0EtCzzzy0CtBtGyCtAtD0CtGyE0FyBtBtG0AtDyEyDtGyCtDyCtBtByD0FzzyB0DyE0D2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtByDyEtA%26cr%3D1573922233%26a%3Dwbf_togoo_17_13%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome&p={searchTerms}] =>Adware.YahooPowered SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\uniblue.com [] =>.SUP.Uniblue SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.uniblue.com [] =>.SUP.Uniblue SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\uniblue.com [] =>.SUP.Uniblue SUPPRIMÉ clé*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.uniblue.com [] =>.SUP.Uniblue SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.SUP.ByteFence SUPPRIMÉ clé*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.SUP.ByteFence ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION. (4) https://nicolascoolman.eu/2017/12/21/sup-scanguard/ =>.SUP.ScanGuard https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.YahooPowered https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Uniblue https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence ---\\ NETTOYAGE ADDITIONNEL. (28) ~ Suppression des Clés de registre Tracing. (28) ~ Suppression des anciens rapports ZHPCleaner. (0) ---\\ BILAN DE LA REPARATION ~ Réparation réalisée avec succès. ~ Ce navigateur est absent (Opera Software) ---\\ STATISTIQUES ~ Items scannés : 997 ~ Items trouvés : 0 ~ Items annulés : 0 ~ Items options : 0/7 ~ Gain de place (Octets) : 0 ~ End of clean in 00h00mn17s ---\\ LISTE DES RAPPORTS (2) ZHPCleaner-[S]-07042018-21_21_25.txt ZHPCleaner-[R]-07042018-21_24_06.txt