There seems to
~ ZHPCleaner v2022.1.21.8 by Nicolas Coolman (2022/01/21)
~ Run by Julie (Administrator) (22/01/2022 12:26:50)
~ Web:
https://www.nicolascoolman.com
~ Blog:
https://nicolascoolman.eu/
~ Facebook :
https://www.facebook.com/nicolascoolman1
~ State version :
~ Type : Repair
~ Report : C:\Users\Julie\Desktop\ZHPCleaner (R).txt
~ Quarantine : C:\Users\Julie\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point :
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)
---\\ Alternate Data Stream (ADS). (0)
~ No malicious or unnecessary items found.
---\\ Services (0)
~ No malicious or unnecessary items found.
---\\ Browser internet (0)
~ No malicious or unnecessary items found.
---\\ Hosts file (1)
~ The hosts file is legitimate (35)
---\\ Scheduled automatic tasks. (2)
DELETED task: [Adobe Flash Player NPAPI Notifier] [C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_Plugin.exe] =>Riskware.FlashPlayer
DELETED task: [Adobe Flash Player Updater] [C:\Windows\Tasks\Adobe Flash Player Updater.job (Not File) ] =>Riskware.FlashPlayer
---\\ Explorer ( File, Folder) (6)
MOVED file: C:\Users\Julie\AppData\Local\Google\Chrome\User Data\Default\Preferences =>Préférences Chromium
MOVED file: C:\Windows\Tasks\Adobe Flash Player Updater.job =>Riskware.FlashPlayer
MOVED folder: C:\Program Files (x86)\Auslogics =>SUP.Optional.Auslogics
MOVED folder: C:\ProgramData\Auslogics =>SUP.Optional.Auslogics
MOVED folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>SUP.Optional.Auslogics
MOVED folder: C:\Windows\System32\config\systemprofile\AppData\Roaming\{90140011-0066-0409-0000-0000000FF1CE} =>Heuristic.Suspect
---\\ Registry ( Key, Value, Data) (19)
DELETED key^: HKLM\SOFTWARE\Auslogics\ATPopups [AdditionalScan 407] =>SUP.Optional.AuslogicsBoostSpeed
DELETED key*: HKLM\SOFTWARE\POLICIES\Mozilla\Firefox [AdditionalScan 573] =>.SUP.FirefoxRestriction
DELETED key*: [X64] HKLM\SOFTWARE\Classes\BinkilandHTML.CZ2E2KAGLCH6L2CVVLCP5DMTD [Binkiland HTML Document] =>PUP.Optional.Binkiland
DELETED key*: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector [Protector Class] =>Adware.BProtector
DELETED key*: [X64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1 [Protector Class] =>Adware.BProtector
DELETED key*: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib [ProtectorLib Class] =>Adware.BProtector
DELETED key*: [X64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1 [ProtectorLib Class] =>Adware.BProtector
DELETED key^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player NPAPI Notifier [] =>Riskware.FlashPlayer
DELETED key^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater [] =>Riskware.FlashPlayer
DELETED key^: [X64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Auslogics [] =>SUP.Optional.Auslogics
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Auslogics [] =>SUP.Optional.Auslogics
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX [Adobe] =>Riskware.FlashPlayer
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player NPAPI [Adobe] =>Riskware.FlashPlayer
DELETED key*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 [Auslogics Labs Pty Ltd] =>SUP.Optional.Auslogics
DELETED value: HKLM64\Software\Classes\.htm\OpenWithProgIDs\\BinkilandHTML.CZ2E2KAGLCH6L2CVVLCP5DMTD [] =>PUP.Optional.Binkiland
DELETED value: HKLM64\Software\Classes\.html\OpenWithProgIDs\\BinkilandHTML.CZ2E2KAGLCH6L2CVVLCP5DMTD [] =>PUP.Optional.Binkiland
DELETED value: HKLM64\Software\Classes\.shtml\OpenWithProgIDs\\BinkilandHTML.CZ2E2KAGLCH6L2CVVLCP5DMTD [] =>PUP.Optional.Binkiland
DELETED value: HKLM64\Software\Classes\.webp\OpenWithProgIDs\\BinkilandHTML.CZ2E2KAGLCH6L2CVVLCP5DMTD [] =>PUP.Optional.Binkiland
DELETED value: HKLM64\Software\Classes\.xht\OpenWithProgIDs\\BinkilandHTML.CZ2E2KAGLCH6L2CVVLCP5DMTD [] =>PUP.Optional.Binkiland
---\\ Summary of the elements found (8)
https://nicolascoolman.eu/forum/Topic/flashplayer-logiciel-a-risque-riskware/ =>Riskware.FlashPlayer
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>Préférences Chromium
https://nicolascoolman.eu/forum/Topic/auslogics-logiciel-potentiellement-superflu-lps/ =>SUP.Optional.Auslogics
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2019/05/04/sup-auslogics-boostspeed/ =>SUP.Optional.AuslogicsBoostSpeed
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.FirefoxRestriction
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>PUP.Optional.Binkiland
https://nicolascoolman.eu/2017/04/12/adware-bprotector/ =>Adware.BProtector
---\\ Other deletions. (10)
~ Registry Keys Tracing deleted (10)
~ Remove the old reports ZHPCleaner. (0)
---\\ Result of repair
~ Repair carried out successfully
~ Google Chrome OK
~ Mozilla Firefox OK
~ Internet Explorer OK
~ The system has been restarted.
---\\ Statistics
~ Items scanned : 1536
~ Items found : 0
~ Items cancelled : 0
~ Space saving (bytes) : 0
~ Items options : 9/17
---\\ OPTIONS NOT ACTIVES
~ Temporary file analysis
~ Temporary folder analysis
~ Empty Folder CLSID Analysis
~ Empty Other Folder Analysis
~ Empty LocalLow Folder Analysis
~ Empty Local Folder Analysis
~ Obsolete Installer File Analysis
~ Start browsers with extensions removed
~ End of clean in 00h00mn53s
---\\ Reports (2)
ZHPCleaner-
-22012022-12_03_18.txt
ZHPCleaner-[R]-22012022-12_27_43.txt
be two on DSKtop......