~ ZHPCleaner v2017.9.22.166 by Nicolas Coolman (2017/09/22)
~ Run by RODRIGO (Administrator) (23/09/2017 10:12:02)
~ Web:
https://www.nicolascoolman.com
~ Blog:
https://nicolascoolman.eu/
~ Facebook :
https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Certificate ZHPCleaner: Legal
~ Type : Reparo
~ Report : C:\Users\RODRIGO\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\RODRIGO\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)
---\\ Serviços (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.
---\\ Navegadores de Internet (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.
---\\ Arquivo hosts (1)
~ O arquivo hosts é legítimo (1)
---\\ Tarefas automáticas agendadas. (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.
---\\ Explorer ( Arquivos, Pastas) (6)
MOVIDO pasta: C:\Users\RODRIGO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BS.Player FREE.lnk [Bad : C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe](.AB Team.) =>.SUP.ABTeam
MOVIDO pasta: C:\Users\Public\Desktop\BS.Player FREE.lnk [Bad : C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe](.AB Team.) =>.SUP.ABTeam
MOVIDO arquivo: C:\Program Files (x86)\Webteh =>.SUP.ABTeam
MOVIDO arquivo: C:\Program Files\KMSpico =>HackTool.KMSpico
MOVIDO arquivo: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
MOVIDO arquivo: C:\Users\RODRIGO\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>PUP.Optional.DomaIQ
---\\ Registro ( Chaves, Valores, Dados ) (27)
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\637162CC59A3A1E25956FA5FA8F60D2E1C52EAC6 [Avast Software] =>PUM.Misplaced.Certificate
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\Disallowed\Certificates\7D7F4414CCEF168ADF6BF40753B5BECD78375931 [Avast Software] =>PUM.Misplaced.Certificate
SUPRIMIDO chave*: HKEY_USERS\S-1-5-21-2569912285-2516486697-1191534479-1000\SOFTWARE\Conduit [] =>.SUP.Conduit
SUPRIMIDO chave: HKCU\Software\Conduit [] =>.SUP.Conduit
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 [KMSpico] =>HackTool.KMSpico
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\235CDDD4FAA2BCE4C9E578A53866F91E [C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\tbnhlpr_x64.exe (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB47487C [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\timeinstalled_cr (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB4748E6 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\timeinstalled (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB477508 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\lastInstallOperation (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB478757 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\Reporting_URL (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB47877E [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\ProductVersion (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB47C77A [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\productguid (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB47F670 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\ (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0850AB67CA07 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Macro\ (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A0CF64469657A [C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\ATU3-TMG\config.xml (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A7A8684D4677A [02:\SOFTWARE\AskPartnerNetwork\Toolbar\Updater\ATU3-TMG\Macro\apnuguid (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007A7B7987A75C7A [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\Browsers (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AA75C6CAD4777 [02:\SOFTWARE\AskPartnerNetwork\PackageService\Register\ApnSetupV6\ATU3-TMG\CmdArgs (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AA75CE8770476 [02:\SOFTWARE\AskPartnerNetwork\PackageService\Register\ApnSetupV6\ATU3-TMG\Version (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AB8640F7C487A [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\ua_cr (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AB8640F7C7477 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\hpr_cr (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AB8640F7CA77A [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\sa_cr (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AB8640FD798E7 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\ProductType (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AB8646F7C7C79 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\Cr_Crx_Ids (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3355451445D274D4007AB8647F787A78 [02:\SOFTWARE\AskPartnerNetwork\Toolbar\ATU3-TMG\Info\SupportedAssets (Not File)] =>PUP.Optional.APNToolBar
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Webteh [] =>.SUP.ABTeam
SUPRIMIDO valor: HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules\\{9CEAEE7F-13BD-4235-AB4F-FC2E4FB8909C} [C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe] =>PUP.Optional.APNToolBar
---\\ Resumo dos elementos encontrados na sua estação de trabalho (6)
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.ABTeam
https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico
https://www.nicolascoolman.com/fr/adware-domaiq/ =>PUP.Optional.DomaIQ
https://nicolascoolman.eu/2017/06/26/trojan-certlock/ =>PUM.Misplaced.Certificate
https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.SUP.Conduit
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.APNToolBar
---\\ Dodatkowe oczyszczenie. (24)
~ Chave de registro Tracing Supprimido (24)
~ Remover os relatórios antigos ZHPCleaner. (0)
---\\ Resultado de reparação
Reparação efectuada com sucesso
~ Este navegador está faltando ! (Opera Software)
---\\ Estatísticas
~ Items scan : 667
~ Items encontrado : 0
~ items cancelados : 0
~ Items réparo : 33
~ End of clean in 00h00mn40s
~====================
ZHPCleaner-[R]-23092017-10_12_42.txt
ZHPCleaner-[S]-23092017-10_10_59.txt
[/S]