~ ZHPCleaner v2017.5.21.84 by Nicolas Coolman (2017/05/21) ~ Run by DrSergioO (Administrator) (22/05/2017 22:18:10) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Repair ~ Report : C:\Users\DrSergioO\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\DrSergioO\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Services (0) ~ No malicious or unnecessary items found. ---\\ Browser internet (0) ~ No malicious or unnecessary items found. ---\\ Hosts file (1) ~ The hosts file is legitimate (21) ---\\ Scheduled automatic tasks. (0) ~ No malicious or unnecessary items found. ---\\ Explorer ( File, Folder) (20) MOVED file: C:\Windows\Installer\wix{0A596141-97D5-45FA-9281-98DFAF48D579}.SchedServiceConfig.rmi =>.Superfluous.Empty MOVED file: C:\Windows\Installer\wix{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}.SchedServiceConfig.rmi =>.Superfluous.Empty MOVED file: C:\Windows\Installer\wix{DB18F1C0-846F-46F5-A074-5B97C8AF5C8E}.SchedServiceConfig.rmi =>.Superfluous.Empty MOVED file^: C:\Users\DrSergioO\AppData\Local\Temp\adb.log =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\DMI71A2.tmp =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\iosystem.dll =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\qqapp_update.xml =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\qqdownload.xml =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\Setup Log 2017-05-22 #001.txt =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\TXStartUpdateLog.tmp =>.Superfluous.Temporary.Empty MOVED file^: C:\Users\DrSergioO\AppData\Local\Temp\~DF86584BE2A1E38F41.TMP =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\~DF995B369B590C271E.TMP =>.Superfluous.Temporary.Empty MOVED file: C:\Users\DrSergioO\AppData\Local\Temp\~DFF9B0B9F09A4B78E2.TMP =>.Superfluous.Temporary.Empty MOVED file: C:\program files (x86)\common files\Tencent\qqdownload\125\tencentdl.exe [Tencent - 腾讯高速下载引擎] =>.Superfluous.Tencent MOVED folder: C:\Program Files (x86)\Common Files\Tencent =>.Superfluous.Tencent MOVED folder: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS MOVED folder: C:\ProgramData\Tencent =>.Superfluous.Tencent MOVED folder: C:\Users\DrSergioO\AppData\Roaming\Tencent =>.Superfluous.Tencent MOVED folder: C:\Windows\Installer\MSI88D3.tmp- =>.Superfluous.Empty MOVED folder: C:\Windows\Installer\MSI9024.tmp- =>.Superfluous.Empty ---\\ Registry ( Key, Value, Data) (7) DELETED key*: HKEY_USERS\S-1-5-21-1666441202-2923180633-3087363653-1000\SOFTWARE\Tencent [] =>.Superfluous.Tencent DELETED key: HKCU\Software\Tencent [] =>.Superfluous.Tencent DELETED key*: [X64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} [ITool] =>Toolbar.Ask DELETED key*: [X64] HKLM\SOFTWARE\DtsEncodeTools [] =>PUP.Optional.WeatherTool DELETED key*: HKCU\SOFTWARE\6d9a906f1ca70618dd696a4d2d12d5ea [] =>Hijacker.Browser DELETED value: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{BD5742F9-B184-4BF0-AA91-8E634CE595EE} [C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe] =>.Superfluous.Tencent DELETED value: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{B58CD7D4-0F5C-4B83-8790-B9CAD53C89C7} [C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe] =>.Superfluous.Tencent ---\\ Summary of the elements found (7) https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Empty https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary.Empty https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.Superfluous.Tencent https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://www.nicolascoolman.com/fr/pup-optional-weathertool =>PUP.Optional.WeatherTool https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser ---\\ Other deletions. (9) ~ Registry Keys Tracing deleted (9) ~ Remove the old reports ZHPCleaner. (0) ---\\ Result of repair ~ Repair carried out successfully ~ The system has been restarted. ---\\ Statistics ~ Items scanned : 817 ~ Items found : 0 ~ Items cancelled : 0 ~ Items repaired : 28 ~ End of clean in 00h00mn29s ~==================== ZHPCleaner-[R]-22052017-22_18_39.txt ZHPCleaner-[S]-22052017-22_17_21.txt