Supprimer System Speedup et Advanced System protector
evoon91
-
Malekal_morte- Messages postés 180304 Date d'inscription Statut Modérateur, Contributeur sécurité Dernière intervention -
Malekal_morte- Messages postés 180304 Date d'inscription Statut Modérateur, Contributeur sécurité Dernière intervention -
Coucou !,
Voilà, j'ai choppé 2 logiciels dans un setup (System Speedup et Advanced System protector ) et le problème je les désinstalles dans le panneau de configuration mais il se réinstalles au démarage de mon pc ( je le vois car 2 icones apparaissent sur le bureau quand je le démarre Alors j'ai utilisé quelques anti-virus mais ils ont fait que de le désinstaller et ça se reinstallait automatiquement après donc voilà je sais plus quoi faire.
Si vous pouvez m'aider... Merci d'avance !!!
Voilà, j'ai choppé 2 logiciels dans un setup (System Speedup et Advanced System protector ) et le problème je les désinstalles dans le panneau de configuration mais il se réinstalles au démarage de mon pc ( je le vois car 2 icones apparaissent sur le bureau quand je le démarre Alors j'ai utilisé quelques anti-virus mais ils ont fait que de le désinstaller et ça se reinstallait automatiquement après donc voilà je sais plus quoi faire.
Si vous pouvez m'aider... Merci d'avance !!!
A voir également:
- Supprimer System Speedup et Advanced System protector
- Reboot system now - Guide
- Supprimer rond bleu whatsapp - Guide
- Advanced system care - Télécharger - Optimisation
- Cette action ne peut pas être réalisée car le fichier est ouvert dans system - Guide
- Supprimer page word - Guide
3 réponses
Salut,
Faire un Scan OTL - Temps : Environ 40min
=====================
OTL permet de diagnostiquer les programmes qui tournent et déceler des infections - Le programme va générer deux rapports OTL.txt et Extras.txt
Fournir les deux rapports :
Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/
* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).
* Lance OTL
* En haut à droite de Analyse rapide, coche "tous les utilisateurs"
* Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%ALLUSERSPROFILE%\Application Data\*.dll /s
%APPDATA%\*.
%PROGRAMFILES%\*.
%PROGRAMDATA%\*.
%APPDATA%\*.exe /s
%temp%\*.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\consrv.dll
%systemroot%\system32\*.dll /lockedfiles
%windir%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
services.exe
wininit.exe
/md5stop
HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor /s
HKEY_CURRENT_USER\Software\Microsoft\Command Processor /s
CREATERESTOREPOINT
nslookup www.google.fr /c
ping www.google.fr /c
ipconfig /all /c
SAVEMBR:0
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
* Clique sur le bouton Analyse.
**** Si durant le scan - OTL ne répond pas, ne touche à rien et laisse le scan se poursuivre ****
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent).
Donne le ou les liens pjjoint qui pointent vers ces rapports ici dans une réponse.
Je répète : donne le lien du rapport pjjoint ici en réponse.
NE PAS COPIER/COLLER LE RAPPORT ICI - DONNER LE LIEN PJJOINT DANS UN NOUVEAU MESSAGE
Faire un Scan OTL - Temps : Environ 40min
=====================
OTL permet de diagnostiquer les programmes qui tournent et déceler des infections - Le programme va générer deux rapports OTL.txt et Extras.txt
Fournir les deux rapports :
Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/
* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)
Dans le cas d'Avast!, ne pas lancer le programme dans la Sandbox (voir lien d'aide ci-dessus).
* Lance OTL
* En haut à droite de Analyse rapide, coche "tous les utilisateurs"
* Sur OTL, sous Personnalisation, copie-colle le script ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%ALLUSERSPROFILE%\Application Data\*.dll /s
%APPDATA%\*.
%PROGRAMFILES%\*.
%PROGRAMDATA%\*.
%APPDATA%\*.exe /s
%temp%\*.exe /s
%SYSTEMDRIVE%\*.exe
%systemroot%\*. /mp /s
%systemroot%\system32\consrv.dll
%systemroot%\system32\*.dll /lockedfiles
%windir%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
/md5start
explorer.exe
winlogon.exe
services.exe
wininit.exe
/md5stop
HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32 /s
HKEY_LOCAL_MACHINE\SYSTEM\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems /s
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCertDlls /s
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList /s
HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor /s
HKEY_CURRENT_USER\Software\Microsoft\Command Processor /s
CREATERESTOREPOINT
nslookup www.google.fr /c
ping www.google.fr /c
ipconfig /all /c
SAVEMBR:0
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
* Clique sur le bouton Analyse.
**** Si durant le scan - OTL ne répond pas, ne touche à rien et laisse le scan se poursuivre ****
* Quand le scan est fini, utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport OTL.txt (et Extra.txt si présent).
Donne le ou les liens pjjoint qui pointent vers ces rapports ici dans une réponse.
Je répète : donne le lien du rapport pjjoint ici en réponse.
NE PAS COPIER/COLLER LE RAPPORT ICI - DONNER LE LIEN PJJOINT DANS UN NOUVEAU MESSAGE
Voilà j'ai fait et j'ai ça :
OTL.txt : http://pjjoint.malekal.com/files.php?id=20140704_r10l12c8i5w6
Extras.txt : http://pjjoint.malekal.com/files.php?id=20140704_g11f12p14x8d8
Merci beaucoup !
OTL.txt : http://pjjoint.malekal.com/files.php?id=20140704_r10l12c8i5w6
Extras.txt : http://pjjoint.malekal.com/files.php?id=20140704_g11f12p14x8d8
Merci beaucoup !
Ton ordinateur est bourré de virus car tu n'as pas d'antivirus et que tu dois aussi télécharger un peu tout ce qu'on te propose...
Relance OTL.
o sous Personnalisation (Custom Scan), copie_colle le contenu ci dessous (bien prendre :OTL en début).
Clic Correction (Fix), un rapport apparraitra, copie/colle le contenu ici:
:OTL
[2014/07/03 14:19:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Deeal
[2014/07/03 14:19:07 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\betadeeal
[2014/07/02 20:54:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector
[2014/07/02 20:54:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Systweak
[2014/07/02 20:54:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Advanced System Protector
[2014/07/02 20:53:51 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\System Speedup
[2014/07/02 20:53:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Speedup
[2014/07/02 20:53:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\System Speedup
[2014/07/01 17:01:28 | 000,019,544 | ---- | C] (System Speedup) -- C:\Windows\SysNative\roboot64.exe
[2014/07/01 17:01:26 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\systweak
[2014/07/01 16:53:21 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\wp_update
[2014/06/09 16:23:34 | 000,000,000 | -H-D | C] -- C:\dvmexp
[2014/07/03 19:15:30 | 000,000,282 | ---- | M] () -- C:\Windows\tasks\System Speedup_DEFAULT.job
[2014/07/03 14:19:06 | 000,667,648 | ---- | M] () -- C:\Users\Evan\AppData\Roaming\~rifjetw.exe
[2014/07/03 09:53:32 | 000,000,290 | ---- | M] () -- C:\Windows\tasks\System Speedup_UPDATES.job
[2014/06/28 10:47:47 | 000,493,272 | ---- | M] () -- C:\Users\Evan\AppData\Roaming\~gnbtnci.exe
O2 - BHO: (Deeal) - {70C53538-9F82-42BC-A327-74F7A46E700C} - C:\Program Files (x86)\Deeal\ScriptHost.dll (Deeal)
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Animated Wallpaper] C:\Users\Evan\Downloads\dragon_demo.exe ()
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Apple Posh] C:\Users\Evan\AppData\Local\Temp\Rar.670\ForceOp.exe File not found
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Jerva] C:\Users\Evan\Documents\JEVA\IPOR.exe ()
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Microsoft(R) Delayed Launcher] C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe (Apple Inc.)
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [WinAPP] C:\Users\Evan\AppData\Local\Temp\WinAPP\WinAPP.exe ()
O20 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000 Winlogon: Shell - (%AppData%\Microsoft\HeciServer.exe) - C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe (Apple Inc.)
:files
C:\Users\Evan\AppData\Local\Microsoft\WinU\
C:\Users\Evan\AppData\Roaming\~*.exe
c:\WINDOWS\SysWow64\srvany.exe
c:\WINDOWS\SysWow64\WIN-svrGA.exe
:reg
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WIN-srvGA]
* poste le rapport ici
Redémarre l'ordinateur
Installe Avast! : https://www.malekal.com/tutoriel-antivirus-avast
Relance OTL.
o sous Personnalisation (Custom Scan), copie_colle le contenu ci dessous (bien prendre :OTL en début).
Clic Correction (Fix), un rapport apparraitra, copie/colle le contenu ici:
:OTL
[2014/07/03 14:19:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Deeal
[2014/07/03 14:19:07 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\betadeeal
[2014/07/02 20:54:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector
[2014/07/02 20:54:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Systweak
[2014/07/02 20:54:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Advanced System Protector
[2014/07/02 20:53:51 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\System Speedup
[2014/07/02 20:53:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Speedup
[2014/07/02 20:53:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\System Speedup
[2014/07/01 17:01:28 | 000,019,544 | ---- | C] (System Speedup) -- C:\Windows\SysNative\roboot64.exe
[2014/07/01 17:01:26 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\systweak
[2014/07/01 16:53:21 | 000,000,000 | ---D | C] -- C:\Users\Evan\AppData\Roaming\wp_update
[2014/06/09 16:23:34 | 000,000,000 | -H-D | C] -- C:\dvmexp
[2014/07/03 19:15:30 | 000,000,282 | ---- | M] () -- C:\Windows\tasks\System Speedup_DEFAULT.job
[2014/07/03 14:19:06 | 000,667,648 | ---- | M] () -- C:\Users\Evan\AppData\Roaming\~rifjetw.exe
[2014/07/03 09:53:32 | 000,000,290 | ---- | M] () -- C:\Windows\tasks\System Speedup_UPDATES.job
[2014/06/28 10:47:47 | 000,493,272 | ---- | M] () -- C:\Users\Evan\AppData\Roaming\~gnbtnci.exe
O2 - BHO: (Deeal) - {70C53538-9F82-42BC-A327-74F7A46E700C} - C:\Program Files (x86)\Deeal\ScriptHost.dll (Deeal)
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Animated Wallpaper] C:\Users\Evan\Downloads\dragon_demo.exe ()
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Apple Posh] C:\Users\Evan\AppData\Local\Temp\Rar.670\ForceOp.exe File not found
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Jerva] C:\Users\Evan\Documents\JEVA\IPOR.exe ()
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [Microsoft(R) Delayed Launcher] C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe (Apple Inc.)
O4 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000..\Run: [WinAPP] C:\Users\Evan\AppData\Local\Temp\WinAPP\WinAPP.exe ()
O20 - HKU\S-1-5-21-2610908913-3290788654-1552647499-1000 Winlogon: Shell - (%AppData%\Microsoft\HeciServer.exe) - C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe (Apple Inc.)
:files
C:\Users\Evan\AppData\Local\Microsoft\WinU\
C:\Users\Evan\AppData\Roaming\~*.exe
c:\WINDOWS\SysWow64\srvany.exe
c:\WINDOWS\SysWow64\WIN-svrGA.exe
:reg
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WIN-srvGA]
* poste le rapport ici
Redémarre l'ordinateur
Installe Avast! : https://www.malekal.com/tutoriel-antivirus-avast
========== OTL ==========
C:\Program Files (x86)\Deeal folder moved successfully.
C:\Users\Evan\AppData\Roaming\betadeeal folder moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector\updates folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector\signatures folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector\2.1.1000.12580 folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector folder moved successfully.
C:\ProgramData\Systweak folder moved successfully.
C:\Program Files (x86)\Advanced System Protector\Troubleshooter folder moved successfully.
C:\Program Files (x86)\Advanced System Protector\clamunpack folder moved successfully.
Folder move failed. C:\Program Files (x86)\Advanced System Protector scheduled to be moved on reboot.
C:\Users\Evan\AppData\Roaming\System Speedup folder moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Speedup folder moved successfully.
C:\Program Files (x86)\System Speedup folder moved successfully.
C:\Windows\SysNative\roboot64.exe moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\ssd folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\BeforeUninstall folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector\Logs folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector\2.1.1000.12580 folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector\2.1.1000.12554 folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak folder moved successfully.
C:\Users\Evan\AppData\Roaming\wp_update folder moved successfully.
C:\dvmexp folder moved successfully.
C:\Windows\Tasks\System Speedup_DEFAULT.job moved successfully.
C:\Users\Evan\AppData\Roaming\~rifjetw.exe moved successfully.
C:\Windows\Tasks\System Speedup_UPDATES.job moved successfully.
C:\Users\Evan\AppData\Roaming\~gnbtnci.exe moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{70C53538-9F82-42BC-A327-74F7A46E700C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70C53538-9F82-42BC-A327-74F7A46E700C}\ deleted successfully.
File C:\Program Files (x86)\Deeal\ScriptHost.dll not found.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Animated Wallpaper deleted successfully.
C:\Users\Evan\Downloads\dragon_demo.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Apple Posh deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Jerva deleted successfully.
C:\Users\Evan\Documents\JEVA\IPOR.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Microsoft(R) Delayed Launcher deleted successfully.
C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WinAPP deleted successfully.
C:\Users\Evan\AppData\Local\Temp\WinAPP\WinAPP.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:%AppData%\Microsoft\HeciServer.exe deleted successfully.
File C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe not found.
========== FILES ==========
C:\Users\Evan\AppData\Local\Microsoft\WinU\Wmain folder moved successfully.
C:\Users\Evan\AppData\Local\Microsoft\WinU\main folder moved successfully.
C:\Users\Evan\AppData\Local\Microsoft\WinU folder moved successfully.
File\Folder C:\Users\Evan\AppData\Roaming\~*.exe not found.
File\Folder c:\WINDOWS\SysWow64\srvany.exe not found.
File\Folder c:\WINDOWS\SysWow64\WIN-svrGA.exe not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WIN-srvGA\ not found.
OTL by OldTimer - Version 3.2.69.0 log created on 07042014_174628
Files\Folders moved on Reboot...
Folder move failed. C:\Program Files (x86)\Advanced System Protector scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
C:\Program Files (x86)\Deeal folder moved successfully.
C:\Users\Evan\AppData\Roaming\betadeeal folder moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector\updates folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector\signatures folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector\2.1.1000.12580 folder moved successfully.
C:\ProgramData\Systweak\Advanced System Protector folder moved successfully.
C:\ProgramData\Systweak folder moved successfully.
C:\Program Files (x86)\Advanced System Protector\Troubleshooter folder moved successfully.
C:\Program Files (x86)\Advanced System Protector\clamunpack folder moved successfully.
Folder move failed. C:\Program Files (x86)\Advanced System Protector scheduled to be moved on reboot.
C:\Users\Evan\AppData\Roaming\System Speedup folder moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Speedup folder moved successfully.
C:\Program Files (x86)\System Speedup folder moved successfully.
C:\Windows\SysNative\roboot64.exe moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\ssd folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\BeforeUninstall folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector\Logs folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector\2.1.1000.12580 folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector\2.1.1000.12554 folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak\Advanced System Protector folder moved successfully.
C:\Users\Evan\AppData\Roaming\systweak folder moved successfully.
C:\Users\Evan\AppData\Roaming\wp_update folder moved successfully.
C:\dvmexp folder moved successfully.
C:\Windows\Tasks\System Speedup_DEFAULT.job moved successfully.
C:\Users\Evan\AppData\Roaming\~rifjetw.exe moved successfully.
C:\Windows\Tasks\System Speedup_UPDATES.job moved successfully.
C:\Users\Evan\AppData\Roaming\~gnbtnci.exe moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{70C53538-9F82-42BC-A327-74F7A46E700C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70C53538-9F82-42BC-A327-74F7A46E700C}\ deleted successfully.
File C:\Program Files (x86)\Deeal\ScriptHost.dll not found.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Animated Wallpaper deleted successfully.
C:\Users\Evan\Downloads\dragon_demo.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Apple Posh deleted successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Jerva deleted successfully.
C:\Users\Evan\Documents\JEVA\IPOR.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Microsoft(R) Delayed Launcher deleted successfully.
C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WinAPP deleted successfully.
C:\Users\Evan\AppData\Local\Temp\WinAPP\WinAPP.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-2610908913-3290788654-1552647499-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:%AppData%\Microsoft\HeciServer.exe deleted successfully.
File C:\Users\Evan\AppData\Roaming\Microsoft\HeciServer.exe not found.
========== FILES ==========
C:\Users\Evan\AppData\Local\Microsoft\WinU\Wmain folder moved successfully.
C:\Users\Evan\AppData\Local\Microsoft\WinU\main folder moved successfully.
C:\Users\Evan\AppData\Local\Microsoft\WinU folder moved successfully.
File\Folder C:\Users\Evan\AppData\Roaming\~*.exe not found.
File\Folder c:\WINDOWS\SysWow64\srvany.exe not found.
File\Folder c:\WINDOWS\SysWow64\WIN-svrGA.exe not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WIN-srvGA\ not found.
OTL by OldTimer - Version 3.2.69.0 log created on 07042014_174628
Files\Folders moved on Reboot...
Folder move failed. C:\Program Files (x86)\Advanced System Protector scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...