~ ZHPCleaner v2018.8.24.166 by Nicolas Coolman (2018/08/24) ~ Run by lf_vi (Administrator) (26/08/2018 11:19:35) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Repair ~ Report : C:\Users\lf_vi\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\lf_vi\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 17134) ---\\ Alternate Data Stream (ADS). (0) ~ No malicious or unnecessary items found. ---\\ Services (0) ~ No malicious or unnecessary items found. ---\\ Browser internet (0) ~ No malicious or unnecessary items found. ---\\ Hosts file (1) ~ The hosts file is legitimate (1) ---\\ Scheduled automatic tasks. (0) ~ No malicious or unnecessary items found. ---\\ Explorer ( File, Folder) (17) MOVED file: C:\Users\lf_vi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Tencent Gaming Buddy.lnk [Bad : C:\Program Files\TxGameAssistant\AppMarket\AppMarket.exe](.Tencent.) =>.SUP.Tencent MOVED file: C:\Users\lf_vi\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [Bad : C:\Users\lf_vi\AppData\Roaming\uTorrent\uTorrent.exe](.BitTorrent Inc..) =>BitTorrent (P2P) MOVED file: C:\Users\lf_vi\AppData\Roaming\inst.exe =>Adware.Pirrit MOVED file: C:\Windows\Prefetch\BROWSERPROTECT.EXE-C73693F7.pf =>PUP.Optional.Eazel MOVED folder: C:\Users\lf_vi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bidmloagildlhkkiabgfdhpgkmhmgjho =>.SUP.FromDocToPDF MOVED folder: C:\Users\lf_vi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\bidmloagildlhkkiabgfdhpgkmhmgjho =>.SUP.FromDocToPDF MOVED folder: C:\Users\lf_vi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgfehfbnofiffladdncogfobimealokp =>Adware.Bandoo MOVED folder: C:\Users\lf_vi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lgfehfbnofiffladdncogfobimealokp =>Adware.Bandoo MOVED folder: C:\Users\lf_vi\AppData\Roaming\PDAppFlex =>Trojan.Elpman MOVED folder: C:\ProgramData\Tencent =>.SUP.Tencent MOVED folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software =>.SUP.Tencent MOVED folder: C:\WINDOWS\System32\config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent MOVED folder: C:\Users\lf_vi\AppData\Roaming\Tencent =>.SUP.Tencent MOVED folder: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent MOVED folder: C:\Program Files (x86)\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare MOVED folder: C:\ProgramData\IObit\ASCDownloader =>.SUP.AdvancedSystemCare MOVED folder: C:\Users\lf_vi\AppData\Roaming\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare ---\\ Registry ( Key, Value, Data) (4) DELETED key*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent [BitTorrent Inc.] =>BitTorrent (P2P) DELETED key*: HKCU\Software\undefined [] =>.SUP.Downloader DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1 [Vitzo Limited] =>Adware.OpenCandy DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{24904964-4247-4EBE-BC79-21D7FF68C6A0}_is1 [My Company, Inc.] =>.SUP.MyCompanyInc ---\\ Summary of the elements found (11) https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.SUP.Tencent https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://nicolascoolman.eu/2017/02/25/adware-pirrit/ =>Adware.Pirrit https://nicolascoolman.eu/2017/09/27/pup-optional-browserdefender/ =>PUP.Optional.Eazel https://nicolascoolman.eu/2017/12/02/sup-fromdoctopdf/ =>.SUP.FromDocToPDF https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo https://nicolascoolman.eu/2017/09/23/trojan-elpman/ =>Trojan.Elpman https://nicolascoolman.eu/2017/12/26/sup-advancedsystemcare/ =>.SUP.AdvancedSystemCare https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader https://nicolascoolman.eu/2017/02/24/adware-opencandy/ =>Adware.OpenCandy https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.MyCompanyInc ---\\ Other deletions. (7) ~ Registry Keys Tracing deleted (7) ~ Remove the old reports ZHPCleaner. (0) ---\\ Result of repair ~ Repair carried out successfully ~ Browser not found (Opera Software) ---\\ Statistics ~ Items scanned : 1241 ~ Items found : 0 ~ Items cancelled : 0 ~ Items options : 0/7 ~ Space saving (bytes) : 0 ~ End of clean in 00h00mn27s ---\\ Reports (2) ZHPCleaner-[S]-26082018-11_18_54.txt ZHPCleaner-[R]-26082018-11_20_02.txt