~ ZHPCleaner v2019.8.1.112 by Nicolas Coolman (2019/08/01) ~ Run by MOHAMED EL MAYOR (Administrator) (02/08/2019 20:12:44) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Scan ~ Report : C:\Users\MOHAMED EL MAYOR\Desktop\ZHPCleaner (S).txt ~ Quarantine : C:\Users\MOHAMED EL MAYOR\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) ---\ Alternate Data Stream (ADS). (0) ~ No malicious or unnecessary items found. (ADS) ---\ Services (0) ~ No malicious or unnecessary items found. (Service) ---\ Browser internet (0) ~ No malicious or unnecessary items found. (Browser) ---\ Hosts file (1) ~ The hosts file is legitimate (24) ---\ Scheduled automatic tasks. (0) ~ No malicious or unnecessary items found. (Task) ---\ Explorer ( File, Folder) (62) FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Local\\Google\Chrome\User Data\Default\Extensions\inafjghmmkmiobijhbgkfekenbfbklhb =>PUP.Optional.BazzSearch FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [Bad : C:\Users\MOHAMED EL MAYOR\AppData\Roaming\uTorrent\uTorrent.exe](.BitTorrent Inc..) =>BitTorrent (P2P) FOUND file: C:\Users\Public\Desktop\Uninstaller.lnk [Bad : C:\Program Files\IObit\Advanced SystemCare 5\Suc12_Uninstal.exe](.IObit.) =>.SUP.AdvancedSystemCare FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\Babylon =>Adware.Babylon FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\uTorrent\uTorrent.exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk =>BitTorrent (P2P) FOUND file: C:\Users\Public\Desktop\Advanced SystemCare 5.lnk =>.SUP.AdvancedSystemCare FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\ASR_Blue_Installer_7GA-inapp-1G.exe [Advanced System Repair, Inc. - Advanced System Repair Pro] =>.SUP.AdvancedSystemRepair FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\driveridentifier_setup (1).exe [DriverIdentifier - DriverIdentifier Setup] =>.SUP.DriverIdentifier FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\driveridentifier_setup.exe [DriverIdentifier - DriverIdentifier Setup] =>.SUP.DriverIdentifier FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\Setup_DriverDoc_2019.exe [Solvusoft Corporation - DriverDoc] =>.SUP.Solvusoft FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\Setup_FileViewPro_2018 (1).exe [Solvusoft Corporation - Solvusoft online setup installer] =>.SUP.Solvusoft FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\Setup_FileViewPro_2018 (2).exe [Solvusoft Corporation - Solvusoft online setup installer] =>.SUP.Solvusoft FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\Setup_FileViewPro_2018.exe [Solvusoft Corporation - Solvusoft online setup installer] =>.SUP.Solvusoft FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\uTorrent (1).exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) FOUND file: C:\Users\MOHAMED EL MAYOR\Downloads\uTorrent.exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Local\Temp\chew-wga.log =>HackTool.WinActivator FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Local\ApplicationHosting.dat =>PUP.Optional.ApplicationHosting FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Local\Jayqvodom.tst =>PUP.Optional.Qvod FOUND file: C:\Program Files\Driver Identifier\DriverIdentifier.exe [Driver Identifier - ] =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\info.data =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\libssh2.dll =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\MyDriverUploader.exe =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\php.ini =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\psvince.dll [Vincenzo Giordano - psvince.dll for InnoSetup Extensions] =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\unins000.dat =>.SUP.DriverIdentifier FOUND file: C:\Program Files\Driver Identifier\unins000.exe [ - Setup/Uninstall] =>.SUP.DriverIdentifier FOUND folder: C:\Program Files\Driver Identifier =>.SUP.DriverIdentifier FOUND file: C:\ProgramData\Logic Cramble\Config.json =>.SUP.Linkury FOUND file: C:\ProgramData\Logic Cramble\set.exe.config =>.SUP.Linkury FOUND file: C:\ProgramData\Logic Cramble\System.Data.SQLite.xml =>.SUP.Linkury FOUND file: C:\ProgramData\panda_url_filtering\c.l =>.SUP.StartSearch FOUND file: C:\ProgramData\panda_url_filtering\catalog.list =>.SUP.StartSearch FOUND file: C:\ProgramData\panda_url_filtering\white.list =>.SUP.StartSearch FOUND file: C:\ProgramData\panda_url_filtering\white.list.old =>.SUP.StartSearch FOUND folder: C:\ProgramData\Logic Cramble\X64 =>.SUP.Linkury FOUND folder: C:\ProgramData\Logic Cramble\X86 =>.SUP.Linkury FOUND folder: C:\ProgramData\panda_url_filtering\data =>.SUP.StartSearch FOUND folder: C:\ProgramData\PC Optimizer Pro\LOGS =>PUP.Optional.PCOptimizerPro FOUND folder: C:\ProgramData\SlimWare Utilities, Inc\DriverApp =>.SUP.SlimWareUtilities FOUND folder: C:\ProgramData\Logic Cramble =>.SUP.Linkury FOUND folder: C:\ProgramData\panda_url_filtering =>.SUP.StartSearch FOUND folder: C:\ProgramData\PC Optimizer Pro =>PUP.Optional.PCOptimizerPro FOUND folder: C:\ProgramData\SlimWare Utilities, Inc =>.SUP.SlimWareUtilities FOUND folder: C:\ProgramData\PC Optimizer Pro\LOGS =>.SUP.OptimizerPro FOUND folder: C:\ProgramData\PC Optimizer Pro =>.SUP.OptimizerPro FOUND folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 5 =>.SUP.AdvancedSystemCare FOUND folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Identifier =>.SUP.DriverIdentifier FOUND file: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\driveridentifier\log.txt =>.SUP.DriverIdentifier FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\Microleaves\Online Application 2.7.0 =>.SUP.Microleaves FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\driveridentifier =>.SUP.DriverIdentifier FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\Microleaves =>.SUP.Microleaves FOUND folder: C:\Program Files\IOBIT\Driver Booster =>.SUP.Energize FOUND folder: C:\ProgramData\IOBIT\Driver Booster =>.SUP.Energize FOUND folder: C:\ProgramData\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare FOUND folder: C:\ProgramData\Application Data\IObit\ASCDownloader =>.SUP.AdvancedSystemCare FOUND folder: C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler FOUND folder: C:\ProgramData\IObit\ASCDownloader =>.SUP.AdvancedSystemCare FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Local\Babylon =>Adware.Babylon FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Local\AdvinstAnalytics =>.SUP.Various FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\IOBIT\Driver Booster =>.SUP.Energize FOUND folder: C:\Users\MOHAMED EL MAYOR\AppData\Roaming\IObit\Advanced SystemCare =>.SUP.AdvancedSystemCare ---\ Registry ( Key, Value, Data) (24) FOUND key: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 5 ['C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe' /AutoStart (Not File)] =>.SUP.AdvancedSystemCare FOUND key: HKEY_USERS\S-1-5-21-1514334307-747662157-1421741244-1000\SOFTWARE\Lightcleaner [] =>.SUP.Lightcleaner FOUND key: HKEY_USERS\S-1-5-21-1514334307-747662157-1421741244-1000\SOFTWARE\Classes\.webm [Tonec.FreeFlvPlayer] =>PUP.Optional.FLVPlayer FOUND key: HKCU\Software\Lightcleaner [] =>.SUP.Lightcleaner FOUND key: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent [BitTorrent Inc.] =>BitTorrent (P2P) FOUND key: HKLM\SOFTWARE\Classes\Prod.cap [] =>PUP.Optional.ClaroSearch FOUND key: HKLM\SOFTWARE\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99} [ICExtMenu] =>.SUP.AdvancedSystemCare FOUND key: HKLM\SOFTWARE\Classes\AppID\{A245B088-41FA-478E-8DEA-86177F1394BB} [tscmon] =>PUP.Optional.SpeeditUp FOUND key: HKLM\SOFTWARE\Classes\Tonec.FreeFlvPlayer [Tonec Free FLV Player File] =>PUP.Optional.FLVPlayer FOUND data: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1257F3D5-5826-4083-A9A7-AC984A7E1518}\\NameServer [Bad : 129.250.35.251,129.250.35.250] =>Hijacker.Browser FOUND data: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{958DEA6A-26D0-49E3-A671-2F8559F485F7}\\NameServer [Bad : 129.250.35.251,129.250.35.250] =>Hijacker.Browser FOUND data: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CEBC9672-6C50-46DB-8978-28DAB9CDED89}\\NameServer [Bad : 129.250.35.251,129.250.35.250] =>Hijacker.Browser FOUND data: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E4B90E7A-06A5-472B-A87E-EA269FCCB5A7}\\NameServer [Bad : 129.250.35.251,129.250.35.250] =>Hijacker.Browser FOUND key: HKLM\SOFTWARE\mtApService [] =>PUP.Optional.Salus FOUND key: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Advanced SystemCare 5 [] =>.SUP.AdvancedSystemCare FOUND key: HKLM\SOFTWARE\Microsoft\Tracing\Panda_URL_Filteringb_RASAPI32 [] =>.SUP.StartSearch FOUND key: HKLM\SOFTWARE\Microsoft\Tracing\Panda_URL_Filteringb_RASMANCS [] =>.SUP.StartSearch FOUND key: HKCU\SOFTWARE\2841e3dce1053350eb8f7bb0eccefe56 [] =>Hijacker.Browser FOUND key: HKLM\SOFTWARE\Classes\CLSID\{9486A9B2-D787-4eca-A25C-4A0086BB4154}\InprocServer32 [C:\Program Files\IObit\Advanced SystemCare 5\ASCv5ExtMenu.dll] =>.SUP.AdvancedSystemCare FOUND key: HKLM\SOFTWARE\Classes\CLSID\{9486A9B2-D787-4eca-A25C-4A0086BB4154} [CExtMenu Class] =>.SUP.AdvancedSystemCare FOUND key: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Advanced SystemCare [{9486A9B2-D787-4eca-A25C-4A0086BB4154}] =>.SUP.AdvancedSystemCare FOUND key: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\Advanced SystemCare [{9486A9B2-D787-4eca-A25C-4A0086BB4154}] =>.SUP.AdvancedSystemCare FOUND key: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Advanced SystemCare [{9486A9B2-D787-4eca-A25C-4A0086BB4154}] =>.SUP.AdvancedSystemCare FOUND key: HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\Advanced SystemCare [{9486A9B2-D787-4eca-A25C-4A0086BB4154}] =>.SUP.AdvancedSystemCare ---\ Summary of the elements found (25) https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.BazzSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://nicolascoolman.eu/2017/12/26/sup-advancedsystemcare/ =>.SUP.AdvancedSystemCare https://nicolascoolman.eu/2017/03/03/adware-babylon/ =>Adware.Babylon https://nicolascoolman.eu/2018/08/28/sup-advanced-system-repair-pro/ =>.SUP.AdvancedSystemRepair https://nicolascoolman.eu/2019/05/11/sup-driver-identifier/ =>.SUP.DriverIdentifier https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Solvusoft https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.ApplicationHosting https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Qvod https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>.SUP.Linkury https://nicolascoolman.eu/2017/09/11/sup-startsearch/ =>.SUP.StartSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.PCOptimizerPro https://nicolascoolman.eu/2017/03/03/superfluous-slimwareutilities/ =>.SUP.SlimWareUtilities https://nicolascoolman.eu/2017/09/17/sup-optimizerpro/ =>.SUP.OptimizerPro https://nicolascoolman.eu/2017/12/24/sup-microleaves/ =>.SUP.Microleaves https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Energize https://nicolascoolman.eu/2017/01/04/pup-optional-logichandler/ =>PUP.Optional.LogicHandler https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Lightcleaner https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.FLVPlayer https://www.nicolascoolman.com/fr/pup-clarosearch/ =>PUP.Optional.ClaroSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SpeeditUp https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>PUP.Optional.Salus ---\ Result of repair ~ Any repair made ~ Browser not found (Opera Software) ---\ Statistics ~ Items scanned : 58600 ~ Items found : 127 ~ Items cancelled : 0 ~ Items options : 6/13 ~ Space saving (bytes) : 0 ~ End of search in 00h06mn29s ---\ Reports (0) ZHPCleaner-[S]-02082019-20_19_13.txt