~ ZHPCleaner v2016.11.29.207 by Nicolas Coolman (2016/11/29) ~ Run by CesarAnDrOiD (Administrator) (01/12/2016 21:08:00) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Repair ~ Report : C:\Users\CesarAnDrOiD\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\CesarAnDrOiD\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Services (0) ~ No malicious or unnecessary items found. ---\\ Browser internet (0) ~ No malicious or unnecessary items found. ---\\ Hosts file (0) ~ No malicious or unnecessary items found. ---\\ Scheduled automatic tasks. (1) DELETED task: [AutoKMS] [C:\Windows\AutoKMS\AutoKMS.exe (Not File) ] =>HackTool.AutoKMS ---\\ Explorer ( File, Folder) (10) MOVED file: C:\Windows\AutoKMS\AutoKMS.exe [CODYQX4 - AutoKMS] =>HackTool.AutoKMS MOVED file: C:\Windows\Prefetch\QUOTEEX.EXE-8DEA0167.pf =>PUP.Optional.Graftor MOVED file: C:\Windows\Installer\wix{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}.SchedServiceConfig.rmi =>.Superfluous.Empty MOVED file: C:\Users\CesarAnDrOiD\Downloads\Programs\QQPlayer_Setup_Arabic.exe [QQPlayer.NET Tencent - QQPlayer 3.9.936.0 Installation] =>.Superfluous.Tencent MOVED file: C:\Users\CesarAnDrOiD\Downloads\Programs\QQPlayer_Setup_English.exe [QQPlayer.NET Tencent - QQPlayer 3.9.936.0 Installation] =>.Superfluous.Tencent MOVED file: C:\Users\CesarAnDrOiD\Downloads\Programs\QQPlayer_Setup_French.exe [QQPlayer.NET Tencent - QQPlayer 3.9.936.0 Installation] =>.Superfluous.Tencent MOVED file: C:\Users\CesarAnDrOiD\Downloads\Programs\kis 2016 arabic\RegCureProSetup_930A1F57-C474-468C-B30A-D81B20EA5D71_.exe [ParetoLogic, Inc. - RegCure Pro Installer] =>.Superfluous.Paretologic MOVED file: C:\Windows\AutoKMS\AutoKMS.log =>HackTool.AutoKMS MOVED folder*: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS MOVED folder*: C:\Windows\AutoKMS =>HackTool.AutoKMS ---\\ Registry ( Key, Value, Data) (11) DELETED key*: [X64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} [ITool] =>Toolbar.Ask DELETED key*: [X64] HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\CscService [] =>.Superfluous.PCSpeedUp DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 [] =>.Superfluous.ByteFence DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS [] =>.Superfluous.ByteFence DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Quoteex.exe [] =>PUP.Optional.Graftor DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\QuoteexU [] =>PUP.Optional.Graftor DELETED key: [X64] HKLM\SOFTWARE\Wow6432Node\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56} [secman] =>PUP.Optional.Camec DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\NCK Samsung 0.7.2 [Company] =>PUP.Optional.Company DELETED key: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\QuoteexU [] =>PUP.Optional.Graftor DELETED key*: HKCU\SOFTWARE\2AA877AE6293BB25D15F1EABABCF8EAC [] =>Hijacker.Browser ---\\ Summary of the elements found (11) https://www.anti-malware.top/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS https://www.anti-malware.top/2016/05/02/pup-optional-graftor/ =>PUP.Optional.Graftor https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Empty https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Paretologic https://www.anti-malware.top/2016/09/22/toolbar-ask/ =>Toolbar.Ask https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Camec https://www.nicolascoolman.com/fr/superfluous-pcspeeduppro/ =>.Superfluous.PCSpeedUp https://www.anti-malware.top/2016/04/29/superfluous-bytefence/ =>.Superfluous.ByteFence https://www.nicolascoolman.com/fr/link-657/ =>PUP.Optional.Company https://www.nicolascoolman.com/fr/hijacker-browser/ =>Hijacker.Browser ---\\ Other deletions. (15) ~ Registry Keys Tracing deleted (15) ~ Remove the old reports ZHPCleaner. (0) ---\\ Result of repair ~ Repair carried out successfully ---\\ Statistics ~ Items scanned : 3261 ~ Items found : 0 ~ Items cancelled : 0 ~ Items repaired : 22 ~ End of clean in 00h00mn30s ~==================== ZHPCleaner-[R]-01122016-21_08_30.txt ZHPCleaner-[S]-01122016-21_06_29.txt