cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2017.2.1.21 by Nicolas Coolman (2017/02/01)
~ Run by ahmed (Administrator) (01/02/2017 16:25:02)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version :
~ Type : Repair
~ Report : C:\Documents and Settings\ahmed\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)


---\\ Services (0)
~ No malicious or unnecessary items found.


---\\ Browser internet (0)
~ No malicious or unnecessary items found.


---\\ Hosts file (1)
~ The hosts file is legitimate (19)


---\\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.


---\\ Explorer ( File, Folder) (50)
MOVED file: C:\Documents and Settings\ahmed\Desktop\QQ影音.lnk [Bad : C:\Program Files\Tencent\QQPlayer\QQPlayer.exe](.腾讯科技(深圳)有限公司.) =>.Superfluous.Tencent
MOVED file: C:\Documents and Settings\ahmed\Application Data\Microsoft\Internet Explorer\Quick Launch\QQ影音.lnk [Bad : C:\Program Files\Tencent\QQPlayer\QQPlayer.exe](.腾讯科技(深圳)有限公司.) =>.Superfluous.Tencent
MOVED file: C:\Documents and Settings\ahmed\Start Menu\Programs\Torch.lnk [Bad : C:\Documents and Settings\ahmed\Local Settings\Application Data\Torch\Application\torch.exe](..) =>.Superfluous.Torch
MOVED file: C:\WINDOWS\Tasks\060184C3-9766-46a0-B258-F4518A0B2633.job =>PUP.Optional.CrossRider
MOVED file: C:\WINDOWS\Prefetch\TENCENTDL.EXE-11DC2B68.pf =>.Superfluous.Tencent
MOVED file: C:\WINDOWS\Prefetch\TENCENTDL.EXE-21C1F572.pf =>.Superfluous.Tencent
MOVED file: C:\WINDOWS\Installer\wix{3C3901C5-3455-3E0A-A214-0B093A5070A6}.SchedServiceConfig.rmi =>.Superfluous.Empty
MOVED file: C:\WINDOWS\Installer\wix{685F6AB3-7C61-42D1-AE5B-3864E48D1035}.SchedServiceConfig.rmi =>.Superfluous.Empty
MOVED file: C:\WINDOWS\Installer\wix{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}.SchedServiceConfig.rmi =>.Superfluous.Empty
MOVED file: C:\WINDOWS\Installer\wix{C1578C4F-5453-44FE-A172-01331906BF18}.SchedServiceConfig.rmi =>.Superfluous.Empty
MOVED file: C:\Documents and Settings\ahmed\Local Settings\Temp\recinstalldl\RecInst.exe [Tencent - 升级安装器] =>.Superfluous.Tencent
MOVED file: C:\Documents and Settings\ahmed\Local Settings\Temp\QQPlayer_Setup.exe [腾讯科技(深圳)有限公司 - QQPlayer Setup] =>.Superfluous.Tencent
MOVED folder: C:\Program Files\FreeTime =>.Superfluous.Empty
MOVED folder: C:\Program Files\Tencent =>.Superfluous.Tencent
MOVED folder: C:\tspnprdrcoinstaller.pdb =>.Superfluous.Trotux
MOVED folder: C:\Program Files\Common Files\Tencent =>.Superfluous.Tencent
MOVED folder: C:\Documents and Settings\All Users\Application Data\Tencent =>.Superfluous.Tencent
MOVED folder: C:\Documents and Settings\ahmed\Application Data\Tencent =>.Superfluous.Tencent
MOVED folder: C:\Documents and Settings\ahmed\Local Settings\Application Data\Torch =>.Superfluous.Torch
MOVED folder: C:\DOCUME~1\ahmed\LOCALS~1\Temp\scoped_dir_4120_29600 =>.Superfluous.Temporary.Steam
MOVED folder: C:\DOCUME~1\ahmed\LOCALS~1\Temp\scoped_dir_4120_710 =>.Superfluous.Temporary.Steam
MOVED folder: C:\DOCUME~1\ahmed\LOCALS~1\Temp\scoped_dir_4400_15629 =>.Superfluous.Temporary.Steam
MOVED folder: C:\WINDOWS\Installer\MSI10.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI11.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI162.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI165.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI16A.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI16B.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI16C.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI16D.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI16E.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI178.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI179.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI17A.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI17B.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI4.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI509.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI50A.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI50B.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI50F.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI518.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI51A.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI554.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI556.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI55B.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI561.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSI7.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIB.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIE.tmp- =>.Superfluous.Empty
MOVED folder: C:\WINDOWS\Installer\MSIF.tmp- =>.Superfluous.Empty


---\\ Registry ( Key, Value, Data) (23)
DELETED key*: HKLM\SOFTWARE\MozillaPlugins\TorchVLC [] =>.Superfluous.Torch
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\SiSkp [C:\WINDOWS\system32\drivers\srvkp.sys] =>PUP.Optional.DriverManager
DELETED key*: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnTBMon ["C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" (Not File)] =>PUP.Optional.APNToolBar
DELETED key*: HKEY_USERS\S-1-5-21-436374069-920026266-1177238915-1003\SOFTWARE\Tencent [] =>.Superfluous.Tencent
DELETED key*: HKEY_USERS\S-1-5-21-436374069-920026266-1177238915-1003\SOFTWARE\Classes\.pdf [Torch.pdf] =>.Superfluous.Torch
DELETED key*: HKEY_USERS\S-1-5-21-436374069-920026266-1177238915-1003\SOFTWARE\Classes\.torrent [Torch.torrent] =>.Superfluous.Torch
DELETED key: HKCU\Software\Tencent [] =>.Superfluous.Tencent
DELETED key*: HKLM\SOFTWARE\Secure [] =>.Superfluous.SecurePCCleaner
DELETED key*: HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0} [IescrtHlpr] =>PUP.Optional.Facemoods
DELETED key*: HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2} [IescrtBtn] =>PUP.Optional.Facemoods
DELETED key*: HKLM\SOFTWARE\Classes\adbanner.adbanner [adbanner Class] =>Adware.adBanner
DELETED key*: HKLM\SOFTWARE\Classes\adbanner.adbanner.1 [adbanner Class] =>Adware.adBanner
DELETED key*: HKLM\SOFTWARE\Classes\CLSID\{89643D21-7B2A-11d1-8271-00A0C91F9CA0} [adbanner Class] =>Adware.adBanner
DELETED key*: HKLM\SOFTWARE\DtsEncodeTools [] =>PUP.Optional.WeatherTool
DELETED key*: HKLM\SOFTWARE\Tencent [] =>.Superfluous.Tencent
DELETED key*: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe [] =>PUP.Optional.GlobalUpdate
DELETED key*: HKLM\SOFTWARE\Classes\CLSID\{FB50EEA7-2E65-4BA7-8AE1-465C7393F695} [QQPlayerShlExt Class] =>.Superfluous.Tencent
DELETED key: HKLM\SOFTWARE\Classes\CLSID\{FB50EEA7-2E65-4BA7-8AE1-465C7393F695}\InprocServer32 [C:\Program Files\Tencent\QQPlayer\QPShellExt.dll (Not File)] =>.Superfluous.Tencent
DELETED value: HKLM\Software\Classes\.htm\OpenWithProgIDs\\TorchHTML.5HVVW5QXVILOV6IY5BLPKGZLFQ [] =>.Superfluous.Torch
DELETED value: HKLM\Software\Classes\.html\OpenWithProgIDs\\TorchHTML.5HVVW5QXVILOV6IY5BLPKGZLFQ [] =>.Superfluous.Torch
DELETED value: HKLM\Software\Classes\.shtml\OpenWithProgIDs\\TorchHTML.5HVVW5QXVILOV6IY5BLPKGZLFQ [] =>.Superfluous.Torch
DELETED value: HKLM\Software\Classes\.webp\OpenWithProgIDs\\TorchHTML.5HVVW5QXVILOV6IY5BLPKGZLFQ [] =>.Superfluous.Torch
DELETED value: HKLM\Software\Classes\.xht\OpenWithProgIDs\\TorchHTML.5HVVW5QXVILOV6IY5BLPKGZLFQ [] =>.Superfluous.Torch


---\\ Summary of the elements found (13)
https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/logiciels-superflus =>.Superfluous.Torch
https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/logiciels-superflus =>.Superfluous.Empty
https://www.anti-malware.top/2016/07/03/superfluous-trotux/ =>.Superfluous.Trotux
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/logiciels-superflus =>.Superfluous.Temporary.Steam
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.DriverManager
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.APNToolBar
https://www.anti-malware.top/2016/06/08/superfluous-securepccleaner/ =>.Superfluous.SecurePCCleaner
https://www.nicolascoolman.com/fr/adware-facemoods/ =>PUP.Optional.Facemoods
https://nicolascoolman.eu/2016/12/31/adware-adbanner/ =>Adware.adBanner
https://www.nicolascoolman.com/fr/pup-optional-weathertool =>PUP.Optional.WeatherTool
https://www.nicolascoolman.com/fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate


---\\ Other deletions. (18)
~ Registry Keys Tracing deleted (18)
~ Remove the old reports ZHPCleaner. (0)


---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Opera Software)


---\\ Statistics
~ Items scanned : 627
~ Items found : 0
~ Items cancelled : 0
~ Items repaired : 73


~ End of clean in 00h00mn52s
~====================
ZHPCleaner-[R]-01022017-16_25_54.txt
ZHPCleaner-[S]-01022017-16_24_19.txt

Publicité


Signaler le contenu de ce document

Publicité