cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPCleaner v2018.1.10.7 by Nicolas Coolman (2018/01/10)
~ Run by Juan (Administrator) (11/01/2018 17:21:18)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Repair
~ Report : C:\Users\Juan\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Juan\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home Single Language, 64-bit (Build 16299)


---\\ Alternate Data Stream (ADS). (0)
~ No malicious or unnecessary items found.


---\\ Services (1)
CLOSED : TTService =>.SUP.TorrentsTime


---\\ Browser internet (0)
~ No malicious or unnecessary items found.


---\\ Hosts file (1)
~ The hosts file is legitimate (21)


---\\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.


---\\ Explorer ( File, Folder) (39)
MOVED file: C:\Program Files (x86)\TorrentsTime Media Player\bin\npTTPlugin.dll [Torrents Time - Torrents Time plugin] =>.SUP.TorrentsTime
MOVED file: C:\Users\Juan\AppData\Local\Temp\1457.tmp.node =>.SUP.Temporary.Empty
MOVED file^: C:\Users\Juan\AppData\Local\Temp\17E1.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\7C19.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\7FA4.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\9DD6.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\A03C.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\A112.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\A3C6.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\amc617E.tmp =>.SUP.Temporary.Empty
MOVED file^: C:\Users\Juan\AppData\Local\Temp\amc617E.tmp.LOG1 =>.SUP.Temporary.Empty
MOVED file^: C:\Users\Juan\AppData\Local\Temp\amc617E.tmp.LOG2 =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\amc6392.tmp =>.SUP.Temporary.Empty
MOVED file^: C:\Users\Juan\AppData\Local\Temp\amc6392.tmp.LOG1 =>.SUP.Temporary.Empty
MOVED file^: C:\Users\Juan\AppData\Local\Temp\amc6392.tmp.LOG2 =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\BBE7.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\C185.tmp.node =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\QBEX-20180111-1050.log =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\QBEX-20180111-1056.log =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\QBEX-20180111-1120.log =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\QBEX-20180111-1126.log =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\QBEX-20180111-1150.log =>.SUP.Temporary.Empty
MOVED file**: C:\Users\Juan\AppData\Local\Temp\QBEX-20180111-1156.log =>.SUP.Temporary.Empty
MOVED file^: C:\Users\Juan\AppData\Local\Temp\~DF0E77D8DC850616AA.TMP =>.SUP.Temporary.Empty
MOVED file**: C:\Windows\SECOH-QAD.dll =>HackTool.KMSpico
MOVED file**: C:\Windows\SECOH-QAD.exe =>HackTool.KMSpico
MOVED folder*: C:\Program Files (x86)\eSupport.com =>PUP.Optional.eSupport
MOVED folder*: C:\Program Files (x86)\Picexa =>PUP.Optional.Picexa
MOVED folder^: C:\Program Files (x86)\TorrentsTime Media Player =>.SUP.TorrentsTime
MOVED folder*: C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
MOVED folder*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
MOVED folder*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa =>PUP.Optional.Picexa
MOVED folder*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TorrentsTime Media Player =>.SUP.TorrentsTime
MOVED folder*: C:\Users\Juan\AppData\Roaming\Picexa Viewer =>PUP.Optional.Picexa
MOVED folder*: C:\Users\Juan\AppData\Local\eSupport.com =>PUP.Optional.eSupport
MOVED folder*: C:\Users\Juan\AppData\Local\PopcornTime =>.SUP.PopcornTime
MOVED folder*: C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
MOVED folder*: C:\ProgramData\IObit\ASCDownloader =>.SUP.AdvancedSystemCare
MOVED folder*: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime


---\\ Registry ( Key, Value, Data) (102)
DELETED key*: HKCU\Software\MozillaPlugins\torrents-time.com/TTPlugin [] =>.SUP.TorrentsTime
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\TTService [C:\Program Files (x86)\TorrentsTime Media Player\bin\TTService.exe] =>.SUP.TorrentsTime
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\eSupport.com [] =>PUP.Optional.eSupport
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\InstalledBrowserExtensions [] =>PUP.Optional.VidSaver
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\PopcornTime [] =>.SUP.PopcornTime
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\Softonic [] =>.SUP.Softonic
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\Classes\.bmp [PicexaViewer.bmp] =>PUP.Optional.Picexa
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\Classes\.gif [PicexaViewer.gif] =>PUP.Optional.Picexa
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\Classes\.jpg [PicexaViewer.jpg] =>PUP.Optional.Picexa
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\Classes\.png [PicexaViewer.png] =>PUP.Optional.Picexa
DELETED key*: HKEY_USERS\S-1-5-21-3817476712-227097123-3840079092-1007\SOFTWARE\Classes\.tiff [PicexaViewer.tif] =>PUP.Optional.Picexa
DELETED key*: HKEY_USERS\.DEFAULT\Software\PennyBee [] =>Adware.PaybyAds
DELETED key*: HKEY_USERS\.DEFAULT\Software\AppDataLow\Software\Plus-HD-4.4 [] =>Adware.CrossRider
DELETED key: HKCU\Software\eSupport.com [] =>PUP.Optional.eSupport
DELETED key: HKCU\Software\InstalledBrowserExtensions [] =>PUP.Optional.VidSaver
DELETED key: HKCU\Software\PopcornTime [] =>.SUP.PopcornTime
DELETED key: HKCU\Software\Softonic [] =>.SUP.Softonic
DELETED key*: HKCU\Software\AppDataLow\Software\Crossrider [] =>Adware.CrossRider
DELETED key*: HKCU\Software\AppDataLow\Software\Plus-HD-4.4 [] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{12AAC6C7-C01F-4A4B-98CA-FE54FF7660F3} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20D131D8-51A7-4DFD-B73B-275466D3646} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29D5CAB8-1101-43CA-AE6E-AAD0ED67B9ED} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E03B30E-3F4-46EC-AC7B-3D171EEEB8F7} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34f1cd4f-81c0-4ecb-af50-8a90170bfd83} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3BB9B21E-4989-4DD5-BBF1-50810E2B78A} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3CF14844-2B3F-4085-B482-9D827B5F950} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F9FDA-1B68-4188-9EF3-2B2AA4223B22} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{40B084CF-D142-4DB1-874E-4B2732D7F5C4} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4481992-1C6B-42DF-8AA-E2ED95F9F5C2} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D82B3EE-FBAA-479A-BE83-261D9250461A} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E1AC02C-221A-4569-81A3-453E738E721F} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5761AFAE-89B9-46B6-B089-9C8FB5B44E1} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C8E2773-3232-4794-9519-70AE5839F78C} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{659EFEBF-EB39-4E46-886C-F7DCFDAC03B} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{683316E7-C991-4AF5-987-7C5DB094E994} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69715A8-7ACE-4D51-BB1A-C2FB1875D8A} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E84622F-9397-460C-A239-56C7C1EC5F} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6FB87CC8-9AE5-47FE-88F0-C519C02112E4} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71C0924F-5BBC-4BA1-BBE5-ACC7D82A96A4} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{731EFDB2-A29F-43FC-A252-98D5F77198C} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{795C9D57-356E-4B8D-80B6-FCF02B5336F} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AEC172-5262-437F-B012-6CC4D6D992B} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C9B8579-C65C-40C7-BD31-71F4076D543} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9000B14-7A87-4FF3-80E4-A31785332E2B} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9048e7b3-8818-45cf-a950-2997c3160cee} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{944A47E1-58C4-4ED3-A8BD-205EC53E23CF} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{979771D4-7489-4164-AE8F-232D12FF646A} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9920C05E-D374-4E15-8FD7-42E53A27D1C} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C5C10FA-E936-47E3-A55B-C8CBD6F994A9} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CC44AC9-B388-48F8-85F5-203522AF90A0} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9FC1E2CF-D407-4446-BBF7-5D6D43743AC5} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1C3DA60-54E3-4A06-9B92-7F7F5BE23CFB} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5882805-C1A5-4DD3-97DC-A5E391613F89} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A863071D-5DEB-4D00-B23-BFD5801D287D} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ABD42E18-3ED7-4A3D-B212-E089702869E1} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEA6776C-E914-49EC-A8D3-35C9DF4D93} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEECA45-D390-483D-84BD-464973E9B1B2} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFC5AD7C-B745-44ED-A6AD-EF28196DA5BB} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B575245D-461D-4E6C-872E-50BDE9E7DA8D} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5B711E0-E353-434C-8846-F05DCCC8C937} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6CB492E-3923-436C-B3DC-49B24D2D2BF8} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8E14911-7455-49F0-9A77-A9EC682A409C} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8EF2236-8BC0-419B-86A2-8F6BBE85496E} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B996B05E-7DA8-4A9B-891F-CCD28183EBC8} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF963349-AAEA-4E8D-8510-21F47C942166} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8BB99C-676F-4F39-8B4D-77E39878418} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d3a44bac-2896-4bb1-844e-078ba2d453d4} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D436B107-85A1-4C4C-A03-70D96B903ABC} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4DD14B2-1EED-448A-A29B-8386BFBBC642} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA283353-5CCD-45B3-8FF6-DAC548FF0EA} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE918D89-86EE-4657-AC6B-52B4A5549AD} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E72151B5-D177-4F2D-B68F-19F942F5E997} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFA9767C-726F-44E4-A454-523F441ED95} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F242AB41-9BC9-4814-AC15-16A648F7222A} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f863c0d1-6d2f-41f1-88a6-02aef6724c28} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa553786-9d0e-4799-9e4c-4dc552b691c9} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\Software\undefined [] =>.SUP.Downloader
DELETED key*: HKLM\SOFTWARE\Iobit\ASC [] =>.SUP.AdvancedSystemCare
DELETED key*: HKLM\SOFTWARE\TTime [] =>.SUP.TorrentsTime
DELETED key*: [X64] HKLM\SOFTWARE\Classes\S [] =>Toolbar.Agent
DELETED key*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [ScriptHelperApi Class] =>Toolbar.Agent
DELETED key*: [X64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [ScriptHelperApi Class] =>Toolbar.Agent
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\IObitUnSvr [] =>.SUP.Elex
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\RZMAELSTROMVADService [] =>Trojan.AdService
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\RZSURROUNDVADService [] =>Trojan.AdService
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\VIAKaraokeService [] =>Trojan.EFGSoft
DELETED key*: HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\PicexaService [] =>PUP.Optional.Picexa
DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34f1cd4f-81c0-4ecb-af50-8a90170bfd83} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9048e7b3-8818-45cf-a950-2997c3160cee} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d3a44bac-2896-4bb1-844e-078ba2d453d4} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f863c0d1-6d2f-41f1-88a6-02aef6724c28} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa553786-9d0e-4799-9e4c-4dc552b691c9} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\delta-homesSoftware [] =>PUP.Optional.DeltaHomes
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Picexa [] =>PUP.Optional.Picexa
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\PicexaSvc [] =>PUP.Optional.Picexa
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\webssearchesSoftware [] =>PUP.Optional.WebsSearches
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34f1cd4f-81c0-4ecb-af50-8a90170bfd83} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9048e7b3-8818-45cf-a950-2997c3160cee} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d3a44bac-2896-4bb1-844e-078ba2d453d4} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f863c0d1-6d2f-41f1-88a6-02aef6724c28} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fa553786-9d0e-4799-9e4c-4dc552b691c9} [C:\Program Files (x86)\Plus-HD-4.4 (Not File)] =>Adware.CrossRider
DELETED key*: HKCU\SOFTWARE\72978cdaffe91e44d5764200530d577c [] =>Hijacker.Browser


---\\ Summary of the elements found (21)
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.TorrentsTime
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Empty
https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.eSupport
https://www.anti-malware.top/2016/05/25/superfluous-picexa/ =>PUP.Optional.Picexa
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/02/26/superfluous-popcorntime/ =>.SUP.PopcornTime
https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime
https://nicolascoolman.eu/2017/12/26/sup-advancedsystemcare/ =>.SUP.AdvancedSystemCare
https://nicolascoolman.eu/2017/10/23/adware-vidsaver/ =>PUP.Optional.VidSaver
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Softonic
https://nicolascoolman.eu/2017/10/06/adware-paybyads/ =>Adware.PaybyAds
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>Toolbar.Agent
https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.SUP.Elex
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.AdService
https://nicolascoolman.eu/2017/10/18/trojan-efgsoft/ =>Trojan.EFGSoft
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.DeltaHomes
https://nicolascoolman.eu/2017/09/22/adware-webssearches/ =>PUP.Optional.WebsSearches
https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser


---\\ Other deletions. (16)
~ Registry Keys Tracing deleted (16)
~ Remove the old reports ZHPCleaner. (0)


---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Mozilla Firefox)
~ Browser not found (Opera Software)
~ The system has been restarted.


---\\ Statistics
~ Items scanned : 786
~ Items found : 0
~ Items cancelled : 0
~ Items repaired : 142


~ End of clean in 00h02mn17s
~====================
ZHPCleaner-[R]-11012018-17_23_35.txt
ZHPCleaner-[S]-11012018-16_59_10.txt

Publicité


Signaler le contenu de ce document

Publicité