Sie sind auf Seite 1von 3

~ ZHPCleaner v2019.12.14.

163 by Nicolas Coolman (2019/12/14)


~ Run by Dell (Administrator) (30/12/2019 02:16:20)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version KO
~ Type : Scan
~ Report : C:\Users\Dell\Desktop\ZHPCleaner (S).txt
~ Quarantine : C:\Users\Dell\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point :
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 18362)

---\\ Alternate Data Stream (ADS). (0)


~ No malicious or unnecessary items found.

---\\ Services (0)


~ No malicious or unnecessary items found.

---\\ Browser internet (0)


~ No malicious or unnecessary items found.

---\\ Hosts file (1)


~ The hosts file is legitimate (21)

---\\ Scheduled automatic tasks. (1)


FOUND task: [AutoPico Daily Restart] [C:\Program Files\KMSpico\AutoPico.exe]
=>HackTool.KMSpico

---\\ Explorer ( File, Folder) (20)


FOUND file: C:\Program Files\KMSpico\AutoPico.exe [ - AutoPico] =>HackTool.KMSpico
FOUND file: C:\Users\Dell\Downloads\EXE_19\CVSetup.exe [Company - Installation]
=>PUP.Optional.Company
FOUND file: C:\Documents and Settings\Dell\Downloads\EXE_19\CVSetup.exe [Company -
Installation] =>PUP.Optional.Company
FOUND file: C:\Program Files\KMSpico\DevComponents.DotNetBar2.dll
[DevComponents.com - DevComponents.DotNetBar] =>HackTool.KMSpico
FOUND file: C:\Program Files\KMSpico\KMSELDI.exe [ - KMS GUI ELDI]
=>HackTool.KMSpico
FOUND file: C:\Program Files\KMSpico\Service_KMS.exe [ - Service_KMS]
=>HackTool.KMSpico
FOUND file: C:\Program Files\KMSpico\unins000.dat =>HackTool.KMSpico
FOUND file: C:\Program Files\KMSpico\unins000.exe [ - Setup/Uninstall]
=>HackTool.KMSpico
FOUND file: C:\Program Files\KMSpico\WinDivert.dll =>HackTool.KMSpico
FOUND file: C:\Program Files\KMSpico\WinDivert.inf =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\cert =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\driver =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\icons =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\logs =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\scripts =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\sounds =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\x64 =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico\x86 =>HackTool.KMSpico
FOUND folder: C:\Program Files\KMSpico =>HackTool.KMSpico
FOUND folder: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
=>HackTool.KMSpico

---\\ Registry ( Key, Value, Data) (9)


FOUND key: [X64]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico_is1 [KMSpico
v9.1.3] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{852423CA-FC32-4450-9C5D-2E9210239546} [C:\Program
Files\KMSpico\KMSELDI.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{23EDE7A5-286E-4F6D-87D5-633A60AC6304} [C:\Program
Files\KMSpico\KMSELDI.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{00F220B0-AF5E-44CB-8D21-346FC2713F38} [C:\Program
Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{1934A612-0851-49A1-89A2-13EAD6C024D0} [C:\Program
Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{596DE7E5-C692-46C8-97FD-427EC51AC4E1} [C:\Program
Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{45607291-DE62-4D5E-AB6D-F63E450DEB6C} [C:\Program
Files\KMSpico\Service_KMS.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{6A6D514D-AB54-471B-9557-12B67B4D3A4F} [C:\Program
Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico
FOUND value:
HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firew
allRules\\{191A4E75-3F0B-42E4-8180-1CAD1AD928F2} [C:\Program
Files\KMSpico\AutoPico.exe] =>HackTool.KMSpico

---\\ Summary of the elements found (2)


https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/
=>PUP.Optional.Company

---\\ Result of repair


~ Any repair made
~ Google Chrome OK
~ Mozilla Firefox OK
~ Internet Explorer OK
~ Opera OK
---\\ Statistics
~ Items scanned : 174050
~ Items found : 39
~ Items cancelled : 0
~ Items options : 6/13
~ Space saving (bytes) : 0

~ End of search in 00h22mn42s

---\\ Reports (8)


ZHPCleaner-[R]-11092019-11_05_50.txt
ZHPCleaner-[R]-11092019-22_34_29.txt
ZHPCleaner-[S]-08102019-19_11_40.txt
ZHPCleaner-[S]-11092019-11_01_03.txt
ZHPCleaner-[S]-11092019-11_42_26.txt
ZHPCleaner-[S]-11092019-22_32_12.txt
ZHPCleaner-[S]-12092019-22_12_29.txt
ZHPCleaner-[S]-30122019-02_39_02.txt

Das könnte Ihnen auch gefallen