cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2019.1.28.13 by Nicolas Coolman (2019/01/28)
~ Run by HP (Administrator) (31/01/2019 09:30:21)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Repair
~ Report : C:\Users\HP\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\HP\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home Single Language, 64-bit (Build 17134)


---\\ Alternate Data Stream (ADS). (0)
~ No malicious or unnecessary items found.


---\\ Services (0)
~ No malicious or unnecessary items found.


---\\ Browser internet (0)
~ No malicious or unnecessary items found.


---\\ Hosts file (1)
~ The hosts file is legitimate (32)


---\\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.


---\\ Explorer ( File, Folder) (130)
MOVED file: C:\Users\HP\Desktop\Tencent Gaming Buddy.lnk [Bad : H:\Program Files\TxGameAssistant\AppMarket\AppMarket.exe](.Tencent.) =>.SUP.Tencent
MOVED file: C:\Users\HP\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Tencent Gaming Buddy.lnk [Bad : H:\Program Files\TxGameAssistant\AppMarket\AppMarket.exe](.Tencent.) =>.SUP.Tencent
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\https+++mafiah5cdn.akamaized.net\.metadata =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\https+++mafiah5cdn.akamaized.net\.metadata-v2 =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\https+++mafiah5cdn.akamaized.net\idb\41461974271109080736.sqlite =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\https+++en.softonic.com\.metadata =>.SUP.Softonic
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\https+++en.softonic.com\.metadata-v2 =>.SUP.Softonic
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\https+++en.softonic.com\idb\993782502OBNDE__KSDISG_NLA.sqlite =>.SUP.Softonic
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++www.topsimilarsites.com\.metadata =>PUP.Optional.SimilarSites
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++www.topsimilarsites.com\.metadata-v2 =>PUP.Optional.SimilarSites
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++www.topsimilarsites.com\idb\301792106ttes.sqlite =>PUP.Optional.SimilarSites
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++widestream.io\.metadata =>PUP.Optional.SPointer
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++widestream.io\.metadata-v2 =>PUP.Optional.SPointer
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++widestream.io\idb\301792106ttes.sqlite =>PUP.Optional.SPointer
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++pxlgnpgecom-a.akamaihd.net\.metadata =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++pxlgnpgecom-a.akamaihd.net\.metadata-v2 =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++pxlgnpgecom-a.akamaihd.net\idb\2532886276bta_fcpe_.sqlite =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++pxlclnmdecom-a.akamaihd.net\.metadata =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++pxlclnmdecom-a.akamaihd.net\.metadata-v2 =>.SUP.AkamaiHD
MOVED file: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\7igch7tw.default-1490971977878-1527000909900\storage\default\http+++pxlclnmdecom-a.akamaihd.net\idb\2532886276bta_fcpe_.sqlite =>.SUP.AkamaiHD
MOVED file: C:\Windows\Installer\wix{0A596141-97D5-45FA-9281-98DFAF48D579}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{18787388-9263-47A6-B954-41BDE0B90959}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{1B444AF9-1DBE-4884-8F35-969BEFCF69A8}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{77F8C879-88CD-4145-945A-541C35285285}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{9CBA860F-7437-4A75-941C-8EF559F2D145}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{C5FDDED7-DEC7-48B4-AFD8-DFB8A0FD199A}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{D4D86CB2-2370-4691-8272-3869EDED6C64}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{D4F0629A-3F4A-4098-ADFE-6F3551762251}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{DB18F1C0-846F-46F5-A074-5B97C8AF5C8E}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\wix{F814D094-197F-43C8-87FA-3210BB780486}.SchedServiceConfig.rmi =>.SUP.Empty
MOVED file: C:\Windows\Installer\1496d79c.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Windows\Installer\1b93ac6.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Windows\Installer\33585fe.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Windows\Installer\33810960.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Windows\Installer\417e305.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Windows\Installer\59b8aa5.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Windows\Installer\aed2c.msp =>.SUP.Obsolete.Adobe
MOVED file: C:\Users\HP\AppData\Local\Temp\AED0.tmp =>.SUP.Temporary.Empty
MOVED file: C:\Users\HP\AppData\Local\Temp\AED0.tmp.exe =>.SUP.Temporary.Installer
MOVED file: C:\Users\HP\AppData\Local\Temp\aria-debug-11672.log =>.SUP.Temporary.OneDrive
MOVED file: C:\Users\HP\AppData\Local\Temp\aria-debug-12240.log =>.SUP.Temporary.OneDrive
MOVED file: C:\Users\HP\AppData\Local\Temp\aria-debug-3288.log =>.SUP.Temporary.OneDrive
MOVED file: C:\Users\HP\AppData\Local\Temp\wct4E0D.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wct52DE.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wct5CB3.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wct60AB.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wct7077.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wct74BE.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wct8FA.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctA131.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctA45B.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctAFD5.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctC89E.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctC9D2.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctDFCC.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctDFD0.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctE9C0.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctF23F.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\wctF81C.tmp =>.SUP.Temporary.Office
MOVED file: C:\Users\HP\AppData\Local\Temp\~DF46CDA29BF2DB565F.TMP =>.SUP.Temporary.Other
MOVED file: C:\Users\HP\AppData\Local\Temp\~DF61938720C8906721.TMP =>.SUP.Temporary.Other
MOVED file: C:\Users\HP\AppData\Local\Temp\~DF7DC9F54D784A0FE3.TMP =>.SUP.Temporary.Other
MOVED file: C:\Users\HP\AppData\Local\Temp\~DF9ECC645F4BC7BA41.TMP =>.SUP.Temporary.Other
MOVED file: C:\Users\HP\AppData\Local\Temp\~DFCAF1479D4AACAF37.TMP =>.SUP.Temporary.Other
MOVED file^: C:\Users\HP\AppData\Local\Temp\~DFE0CAA7969F7CC7E9.TMP =>.SUP.Temporary.Other
MOVED file: C:\Users\HP\Downloads\Programs\GameDownload_PUBG_MOBILE_100103_1.0.5727.123.exe [Tencent - Tencent Gaming Buddy - Install] =>.SUP.Tencent
MOVED file: C:\Users\HP\Downloads\Programs\GameDownload_PUBG_MOBILE_100103_1.0.5727.123_2.exe [Tencent - Tencent Gaming Buddy - Install] =>.SUP.Tencent
MOVED file*: C:\Users\HP\AppData\Local\app =>Adware.CrossRider
MOVED folder: C:\Users\HP\AppData\Roaming\PDAppFlex =>Trojan.Elpman
MOVED folder: C:\ProgramData\Tencent =>.SUP.Tencent
MOVED folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software =>.SUP.Tencent
MOVED folder: C:\WINDOWS\System32\config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent
MOVED folder: C:\Users\HP\AppData\Roaming\Tencent =>.SUP.Tencent
MOVED folder: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent
MOVED folder: C:\ProgramData\SecuritySuite =>.SUP.ScanGuard
MOVED folder: C:\WINDOWS\Installer\MSI168F.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI16DF.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI1857.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI2332.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI2551.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI260D.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI2AF2.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI3013.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI311E.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI3257.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI3292.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI3372.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI3756.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI469E.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI4CD4.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5737.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5BDD.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5C6D.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI5E14.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI60F3.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI6653.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI67DE.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI7817.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI78F3.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI7AEF.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI7EC0.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI809D.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI824E.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI92EE.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI963A.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI98D.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSI9D4D.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIB409.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIBA24.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIC1C8.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSICFD9.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID421.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID4BC.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID5A7.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID622.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID6A2.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID77E.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSID8C3.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIE40F.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIE70B.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIEC89.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIEEBE.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIEED2.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIEF5D.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIF815.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIF839.tmp- =>.SUP.Empty
MOVED folder: C:\WINDOWS\Installer\MSIFA4D.tmp- =>.SUP.Empty
MOVED folder: C:\Users\HP\AppData\LocalLow\EmieSiteList =>.SUP.Empty
MOVED folder: C:\Users\HP\AppData\LocalLow\EmieUserList =>.SUP.Empty


---\\ Registry ( Key, Value, Data) (6)
DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Avira\Launcher\Logfiles\ [No Folder] =>.SUP.Obsolete.NoFolder
DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Avira\Launcher\apps\icons\ [No Folder] =>.SUP.Obsolete.NoFolder
DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Avira\Launcher\apps\ [No Folder] =>.SUP.Obsolete.NoFolder
DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files (x86)\Avira\Launcher\ [No Folder] =>.SUP.Obsolete.NoFolder
DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Avira\SoftwareUpdater\ [No Folder] =>.SUP.Obsolete.NoFolder
DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Avira\SoftwareUpdater\ShavlikData\ [No Folder] =>.SUP.Obsolete.NoFolder


---\\ Summary of the elements found (16)
https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.SUP.Tencent
https://nicolascoolman.eu/2017/12/26/sup-akamaihd/ =>.SUP.AkamaiHD
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Softonic
https://www.nicolascoolman.com/fr/adware-similarsites/ =>PUP.Optional.SimilarSites
https://nicolascoolman.eu/2017/10/02/adware-spointer/ =>PUP.Optional.SPointer
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Empty
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Obsolete.Adobe
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Empty
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Installer
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.OneDrive
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Office
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Other
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/09/23/trojan-elpman/ =>Trojan.Elpman
https://nicolascoolman.eu/2017/12/21/sup-scanguard/ =>.SUP.ScanGuard
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Obsolete.NoFolder


---\\ Other deletions. (34)
~ Registry Keys Tracing deleted (32)
~ Remove the old reports ZHPCleaner. (2)


---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Google Chrome)
~ Browser not found (Opera Software)
~ The system has been restarted.


---\\ Statistics
~ Items scanned : 1461
~ Items found : 0
~ Items cancelled : 0
~ Items options : 12/12
~ Space saving (bytes) : 29838636


~ End of clean in 00h00mn56s

---\\ Reports (2)
ZHPCleaner-[S]-31012019-09_29_55.txt
ZHPCleaner-[R]-31012019-09_31_17.txt

Publicité


Signaler le contenu de ce document

Publicité