Invasion de publicités sur mon écran
davidm84
Messages postés
3
Date d'inscription
Statut
Membre
Dernière intervention
-
Malekal_morte- Messages postés 180304 Date d'inscription Statut Modérateur, Contributeur sécurité Dernière intervention -
Malekal_morte- Messages postés 180304 Date d'inscription Statut Modérateur, Contributeur sécurité Dernière intervention -
Bonjour à tous,
Petit nouveau sur ce forum, je viens demander l'aide d'un (ou d'une) spécialiste dans les traitements d'invasion de pub.
Suite à un clic malheureux lors de surf sur internet, je me retrouve envahi de pub qui cachent une partie de mon écran et me font perdre un temps fou pour les fermer. Donc je me suis déjà penché sur les questions résolues antérieures et cela m'a permis de télécharger adwcleaner et de lancer un scan. Si j'ai bien compris je dois copier ici le rapport (je mets le dernier qui date de qq jours). Allez, je me lance ...
# AdwCleaner v4.109 - Rapport créé le 25/01/2015 à 17:45:56
# Mis à jour le 24/01/2015 par Xplode
# Database : 2015-01-25.1 [Live]
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : david et isa - PCNOUS
# Exécuté depuis : C:\Users\david et isa\Downloads\adwcleaner_4.109 (2).exe
# Option : Scanner
***** [ Services ] *****
Service Présent : globalUpdate
Service Présent : globalUpdatem
Service Présent : ccnfd_1_10_0_6
***** [ Fichiers / Dossiers ] *****
Dossier Présent : C:\Program Files (x86)\globalUpdate
Dossier Présent : C:\Program Files (x86)\Object Browser
Dossier Présent : C:\Program Files (x86)\Object Browser
Dossier Présent : C:\ProgramData\Browser
Dossier Présent : C:\Users\david et isa\AppData\Local\CrashRpt
Dossier Présent : C:\Users\david et isa\AppData\Local\globalUpdate
Dossier Présent : C:\Users\david et isa\AppData\Local\ZombieNews
Dossier Présent : C:\Users\david et isa\AppData\LocalLow\Object Browser
Dossier Présent : C:\Users\david et isa\AppData\LocalLow\Object Browser
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
***** [ Tâches planifiées ] *****
Tâche Présente : globalUpdateUpdateTaskMachineCore
Tâche Présente : globalUpdateUpdateTaskMachineUA
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-1
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-2
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-5
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-5_user
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-6
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-7
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Présente : HKCU\Software\AppDataLow\Software\Crossrider
Clé Présente : HKCU\Software\AppDataLow\Software\Object Browser
Clé Présente : HKCU\Software\AppDataLow\Software\Object Browser
Clé Présente : HKCU\Software\GlobalUpdate
Clé Présente : HKCU\Software\InstalledBrowserExtensions
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311281150}
Clé Présente : [x64] HKCU\Software\GlobalUpdate
Clé Présente : [x64] HKCU\Software\InstalledBrowserExtensions
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Clé Présente : HKLM\SOFTWARE\GlobalUpdate
Clé Présente : HKLM\SOFTWARE\InstalledBrowserExtensions
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{109e4fb8-28b8-449b-9de7-3f8c0d40b566}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1824b74f-f317-40f6-821c-52cbe21ea124}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6d5f2e83-76f2-4c48-95ee-e63aa4c8a92b}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d9c644cd-afc3-4e9b-912f-d9e80f0bbe6c}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Clé Présente : HKLM\SOFTWARE\Object Browser
Clé Présente : HKLM\SOFTWARE\Object Browser
Clé Présente : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Clé Présente : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{109e4fb8-28b8-449b-9de7-3f8c0d40b566}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1824b74f-f317-40f6-821c-52cbe21ea124}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6d5f2e83-76f2-4c48-95ee-e63aa4c8a92b}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d9c644cd-afc3-4e9b-912f-d9e80f0bbe6c}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Donnée Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Donnée Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=localhost:44413
Valeur Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Selection Tools]
***** [ Navigateurs ] *****
-\\ Internet Explorer v10.0.9200.17183
-\\ Google Chrome v40.0.2214.91
*************************
AdwCleaner[R0].txt - [29054 octets] - [20/01/2015 17:48:29]
AdwCleaner[R1].txt - [11346 octets] - [25/01/2015 17:31:38]
AdwCleaner[R2].txt - [11411 octets] - [25/01/2015 17:39:08]
AdwCleaner[R3].txt - [11221 octets] - [25/01/2015 17:45:56]
AdwCleaner[S0].txt - [26027 octets] - [20/01/2015 17:51:11]
########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [11343 octets] ##########
et voilà !
Merci d'avance à ceux qui pourront m'indiquer comment faire maintenant pour supprimer toutes ces fenêtres.
Bonne journée à tous.
David
Petit nouveau sur ce forum, je viens demander l'aide d'un (ou d'une) spécialiste dans les traitements d'invasion de pub.
Suite à un clic malheureux lors de surf sur internet, je me retrouve envahi de pub qui cachent une partie de mon écran et me font perdre un temps fou pour les fermer. Donc je me suis déjà penché sur les questions résolues antérieures et cela m'a permis de télécharger adwcleaner et de lancer un scan. Si j'ai bien compris je dois copier ici le rapport (je mets le dernier qui date de qq jours). Allez, je me lance ...
# AdwCleaner v4.109 - Rapport créé le 25/01/2015 à 17:45:56
# Mis à jour le 24/01/2015 par Xplode
# Database : 2015-01-25.1 [Live]
# Système d'exploitation : Windows 8 (64 bits)
# Nom d'utilisateur : david et isa - PCNOUS
# Exécuté depuis : C:\Users\david et isa\Downloads\adwcleaner_4.109 (2).exe
# Option : Scanner
***** [ Services ] *****
Service Présent : globalUpdate
Service Présent : globalUpdatem
Service Présent : ccnfd_1_10_0_6
***** [ Fichiers / Dossiers ] *****
Dossier Présent : C:\Program Files (x86)\globalUpdate
Dossier Présent : C:\Program Files (x86)\Object Browser
Dossier Présent : C:\Program Files (x86)\Object Browser
Dossier Présent : C:\ProgramData\Browser
Dossier Présent : C:\Users\david et isa\AppData\Local\CrashRpt
Dossier Présent : C:\Users\david et isa\AppData\Local\globalUpdate
Dossier Présent : C:\Users\david et isa\AppData\Local\ZombieNews
Dossier Présent : C:\Users\david et isa\AppData\LocalLow\Object Browser
Dossier Présent : C:\Users\david et isa\AppData\LocalLow\Object Browser
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Présent : C:\Users\david et isa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
***** [ Tâches planifiées ] *****
Tâche Présente : globalUpdateUpdateTaskMachineCore
Tâche Présente : globalUpdateUpdateTaskMachineUA
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-1
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-2
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-5
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-5_user
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-6
Tâche Présente : 973ab9e7-0690-460d-9aba-a5201564b41e-7
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Présente : HKCU\Software\AppDataLow\Software\Crossrider
Clé Présente : HKCU\Software\AppDataLow\Software\Object Browser
Clé Présente : HKCU\Software\AppDataLow\Software\Object Browser
Clé Présente : HKCU\Software\GlobalUpdate
Clé Présente : HKCU\Software\InstalledBrowserExtensions
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311281150}
Clé Présente : [x64] HKCU\Software\GlobalUpdate
Clé Présente : [x64] HKCU\Software\InstalledBrowserExtensions
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Clé Présente : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344284450}
Clé Présente : HKLM\SOFTWARE\GlobalUpdate
Clé Présente : HKLM\SOFTWARE\InstalledBrowserExtensions
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{109e4fb8-28b8-449b-9de7-3f8c0d40b566}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1824b74f-f317-40f6-821c-52cbe21ea124}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6d5f2e83-76f2-4c48-95ee-e63aa4c8a92b}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d9c644cd-afc3-4e9b-912f-d9e80f0bbe6c}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Clé Présente : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Clé Présente : HKLM\SOFTWARE\Object Browser
Clé Présente : HKLM\SOFTWARE\Object Browser
Clé Présente : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311281150}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322282250}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355285550}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366286650}
Clé Présente : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{109e4fb8-28b8-449b-9de7-3f8c0d40b566}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1824b74f-f317-40f6-821c-52cbe21ea124}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6d5f2e83-76f2-4c48-95ee-e63aa4c8a92b}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d9c644cd-afc3-4e9b-912f-d9e80f0bbe6c}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311281150}
Donnée Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Donnée Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=localhost:44413
Valeur Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Selection Tools]
***** [ Navigateurs ] *****
-\\ Internet Explorer v10.0.9200.17183
-\\ Google Chrome v40.0.2214.91
*************************
AdwCleaner[R0].txt - [29054 octets] - [20/01/2015 17:48:29]
AdwCleaner[R1].txt - [11346 octets] - [25/01/2015 17:31:38]
AdwCleaner[R2].txt - [11411 octets] - [25/01/2015 17:39:08]
AdwCleaner[R3].txt - [11221 octets] - [25/01/2015 17:45:56]
AdwCleaner[S0].txt - [26027 octets] - [20/01/2015 17:51:11]
########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [11343 octets] ##########
et voilà !
Merci d'avance à ceux qui pourront m'indiquer comment faire maintenant pour supprimer toutes ces fenêtres.
Bonne journée à tous.
David
A voir également:
- Invasion de publicités sur mon écran
- Double ecran - Guide
- Capture d'écran whatsapp - Accueil - Messagerie instantanée
- Supprimer les publicités - Guide
- Retourner ecran pc - Guide
- Capture d'écran samsung - Guide
5 réponses
Salut,
Fais nettoyer sur AdwCleaner
Donne le rapport puis :
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
* FRST.txt
* Shortcut.txt
* Additionnal.txt
Envoie comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et donne les trois liens pjjoint de ces rapports afin qu'ils puissent être consultés.
Fais nettoyer sur AdwCleaner
Donne le rapport puis :
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
* FRST.txt
* Shortcut.txt
* Additionnal.txt
Envoie comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et donne les trois liens pjjoint de ces rapports afin qu'ils puissent être consultés.
re bonjour
merci pour votre rapidité !
voici les liens :
https://pjjoint.malekal.com/files.php?id=20150130_u15k12w12v14v5
https://pjjoint.malekal.com/files.php?id=FRST_20150130_l5z11n15p10i6
https://pjjoint.malekal.com/files.php?id=20150130_q1348t10o13i12
à plus tard pour la suite...
David
merci pour votre rapidité !
voici les liens :
https://pjjoint.malekal.com/files.php?id=20150130_u15k12w12v14v5
https://pjjoint.malekal.com/files.php?id=FRST_20150130_l5z11n15p10i6
https://pjjoint.malekal.com/files.php?id=20150130_q1348t10o13i12
à plus tard pour la suite...
David
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
BHO: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187_x64.dll ()
BHO-x32: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187.dll ()
R2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe [764416 2015-01-05] (Skytech Co., Ltd.) [File not signed]
R2 ptcnBmD; C:\ProgramData\SUNEncoCu\ptcnBmD.exe [2733872 2015-01-20] (Time Lapse Solutions)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 serverca; C:\Users\david et isa\AppData\Local\ConvertAd\CASrv.exe [92672 2015-01-30] () [File not signed]
R2 servervo; C:\Users\david et isa\AppData\Roaming\VOPackage\VOsrv.exe [153600 2015-01-30] () [File not signed] <==== ATTENTION
R2 SWUpdater; C:\Program Files (x86)\StormWatch\SWUpdaterSvc.exe [17584 2014-11-22] (Weather Protector LLC)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [464384 2015-01-30] (SysTool PasSame LIMITED) [File not signed]
R2 webinstrNHKT; C:\Windows\system32\Drivers\webinstrNHKT.sys [50264 2015-01-30] ()
2015-01-30 10:53 - 2015-01-30 10:53 - 00001102 _____ () C:\Users\david et isa\Desktop\Continue Live Installation.lnk
2015-01-30 10:43 - 2015-01-30 10:44 - 00040562 _____ () C:\Users\david et isa\Desktop\Addition.txt
2015-01-30 10:41 - 2015-01-30 11:12 - 00029224 _____ () C:\Users\david et isa\Desktop\FRST.txt
2015-01-30 10:38 - 2015-01-30 11:06 - 00002822 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-01-30 10:38 - 2015-01-30 11:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-01-30 10:38 - 2015-01-30 11:05 - 00001049 _____ () C:\Users\david et isa\Desktop\AnyProtect.lnk
2015-01-30 10:38 - 2015-01-30 10:38 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-01-30 10:35 - 2015-01-30 10:38 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-01-30 10:35 - 2015-01-30 10:35 - 00613057 _____ (CMI Limited) C:\Users\david et isa\AppData\Local\nsb3FBB.tmp
2015-01-30 10:35 - 2015-01-30 10:35 - 00000000 __SHD () C:\Users\david et isa\AppData\Roaming\AnyProtectEx
2015-01-30 10:34 - 2015-01-30 10:53 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ConvertAd
2015-01-30 10:34 - 2015-01-30 10:34 - 00050264 _____ () C:\Windows\system32\Drivers\webinstrNHKT.sys
2015-01-30 10:34 - 2015-01-30 10:34 - 00003106 _____ () C:\Windows\System32\Tasks\BlockAndSurf Update
2015-01-30 10:34 - 2015-01-30 10:34 - 00001678 _____ () C:\Windows\patsearch.bin
2015-01-30 10:34 - 2015-01-30 10:34 - 00000452 _____ () C:\Windows\Tasks\BlockAndSurf Update.job
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____D () C:\Program Files (x86)\ver0BlockAndSurf
2015-01-30 10:32 - 2015-01-30 11:11 - 00000000 ____D () C:\FRST
2015-01-30 10:32 - 2015-01-30 10:36 - 00000000 ____D () C:\Users\david et isa\AppData\Local\gmsd_fr_163
2015-01-30 10:32 - 2015-01-30 10:32 - 00004058 _____ () C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Users\david et isa\AppData\Local\SmartWeb
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Program Files (x86)\gmsd_fr_163
2015-01-30 10:30 - 2015-01-30 10:30 - 02130432 _____ (Farbar) C:\Users\david et isa\Desktop\FRST64.exe
2015-01-30 10:21 - 2015-01-30 10:21 - 00000000 ____D () C:\Users\david et isa\AppData\Local\wincheck
2015-01-30 10:19 - 2015-01-30 10:19 - 00001023 _____ () C:\Users\david et isa\Desktop\NZBPlayer.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000970 _____ () C:\Users\david et isa\Desktop\NZBMovies.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Program Files (x86)\NZBPlayer
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\omiga-plus
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\MailUpdate
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Local\Weather_Protector_LLC
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\MailUpdate
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Local\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Program Files (x86)\StormWatch
2015-01-30 10:16 - 2015-01-30 10:16 - 00003782 _____ () C:\Windows\System32\Tasks\Selection Tools Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00003748 _____ () C:\Windows\System32\Tasks\WindApp Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\Selection Tools.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\WTools
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Store
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Nosibay
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-01-30 10:14 - 2015-01-30 10:16 - 00005813 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.installation.log
2015-01-30 10:14 - 2015-01-30 10:16 - 00001253 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.boostrap.log
2015-01-30 10:14 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6
2015-01-30 10:14 - 2015-01-30 10:14 - 00005480 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5
2015-01-30 10:14 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00000097 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.boostrap.log
2015-01-30 10:13 - 2015-01-30 11:13 - 00005548 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job
2015-01-30 10:13 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7
2015-01-30 10:13 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00008552 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6
2015-01-30 10:13 - 2015-01-30 10:13 - 00008216 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7
2015-01-30 10:13 - 2015-01-30 10:13 - 00005212 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00000000 ____D () C:\Program Files (x86)\774ae2b0-c33b-4e33-af65-2e2542f6f820
2015-01-30 10:12 - 2015-01-30 11:13 - 00002142 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000990 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000986 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-30 10:12 - 2015-01-30 10:14 - 00000000 ____D () C:\Program Files (x86)\HQCinema Pro 2.1V30.01
2015-01-30 10:12 - 2015-01-30 10:12 - 01970136 _____ (HQ CinemaV30.01) C:\Users\david et isa\AppData\Roaming\GIZGA.exe
2015-01-30 10:12 - 2015-01-30 10:12 - 00008218 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11
2015-01-30 10:12 - 2015-01-30 10:12 - 00005214 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00004394 _____ () C:\Windows\System32\Tasks\GIZGA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003962 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003726 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-01-30 10:12 - 2015-01-30 10:12 - 00001378 _____ () C:\Windows\Tasks\GIZGA.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Users\david et isa\AppData\Local\globalUpdate
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-01-25 17:58 - 2015-01-30 10:06 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ZombieNews
2015-01-25 17:58 - 2015-01-25 17:58 - 00000000 ____D () C:\ProgramData\Browser
2015-01-22 07:36 - 2015-01-30 07:36 - 00001378 _____ () C:\Windows\Tasks\WJCWK.job
2015-01-22 07:36 - 2015-01-22 07:37 - 00000000 ____D () C:\Program Files (x86)\8a8a0755-d96b-461d-be80-7ebf2bb401cd
2015-01-22 07:36 - 2015-01-22 07:36 - 02020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
2015-01-22 07:36 - 2015-01-22 07:36 - 00004394 _____ () C:\Windows\System32\Tasks\WJCWK
2015-01-20 16:36 - 2015-01-20 20:05 - 00003288 _____ () C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4018433884-1041127222-2307352900-1001
2015-01-20 15:54 - 2015-01-30 10:18 - 00002402 _____ () C:\Users\david et isa\Desktop\chrome.lnk
2015-01-20 14:53 - 2015-01-20 14:53 - 00003178 _____ () C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0}
2015-01-20 12:55 - 2015-01-20 12:55 - 00003112 _____ () C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942}
2015-01-20 12:50 - 2015-01-20 14:56 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-20 12:12 - 2015-01-20 12:17 - 00000000 ____D () C:\ProgramData\SUNEncoCu
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\david et isa\AppData\Roaming\WJCWK
2015-01-22 07:36 - 2015-01-22 07:36 - 2020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
Task: {1709404D-EC00-4E4E-9176-4CE5221B978F} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3} - System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} => pcalua.exe -a C:\ProgramData\ZombieNews\uninstall.exe -c /kb=y /ic=1
Task: {27614737-2DBC-4336-B2DB-09D60E4E890A} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {296F6012-F246-4B8F-8F71-026E1002B89D} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {2E73FDAB-A07C-4374-A957-25224AB6AE44} - System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} => pcalua.exe -a "C:\Users\david et isa\AppData\Roaming\mystartsearch\UninstallManager.exe" -c -ptid=amt
Task: {4BE31162-BE93-4139-B857-E73EB42BFE9F} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\david et isa\AppData\Local\SmartWeb\SmartWebHelper.exe [2014-12-31] (SoftBrain Technologies Ltd.)
Task: {4D809E02-6A32-47D7-90F4-CF64B6D3295C} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {5A20EF2E-4EB9-4CC8-970C-47CFB40A9853} - System32\Tasks\WJCWK => C:\Users\david et isa\AppData\Roaming\WJCWK.exe [2015-01-22] (ObjectB) <==== ATTENTION
Task: {643F10DD-BBC0-46D6-B44C-3AACF725A4AD} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-01-30] (AnyProtect.com) <==== ATTENTION
Task: {A058289E-7723-40D0-B497-6FEB03FEB17A} - System32\Tasks\GIZGA => C:\Users\david et isa\AppData\Roaming\GIZGA.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {A77213A5-347A-4ADA-988A-02965808E024} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B20E6615-6E11-447F-A579-81D8E67B4388} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B7E9E8B0-1207-462B-A163-EF8443088B10} - System32\Tasks\WindApp Update => C:\Users\david et isa\AppData\Roaming\Store\WindApp\WindApp Update.exe [2014-11-28] (Nosibay) <==== ATTENTION
Task: {B949BE6E-5B20-4CBC-9F41-2A03C1F623DC} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ
Task: {EFFB0701-745E-4FDC-AE64-7DC1221C43E5} - System32\Tasks\BlockAndSurf Update => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe [2015-01-30] () <==== ATTENTION
Task: {F6C348B1-2D89-4C7F-97D4-22FFAF27AD47} - System32\Tasks\Selection Tools Update => C:\Users\david et isa\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2014-12-16] (Nosibay)
Task: {FD7CC429-099A-45B5-B749-B085D820D175} - System32\Tasks\{7068C6D2-E26B-44FB-BD08-39EE25CE4465} => pcalua.exe -a E:\MSWord\INSTMSIW.EXE -d E:\MSWord
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\BlockAndSurf Update.job => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe <==== ATTENTION
Task: C:\Windows\Tasks\GIZGA.job => C:\Users\david et isa\AppData\Roaming\GIZGA.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\HPCeeScheduleFordavid et isa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\WJCWK.job => C:\Users\david et isa\AppData\Roaming\WJCWK.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
BHO: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187_x64.dll ()
BHO-x32: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187.dll ()
R2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe [764416 2015-01-05] (Skytech Co., Ltd.) [File not signed]
R2 ptcnBmD; C:\ProgramData\SUNEncoCu\ptcnBmD.exe [2733872 2015-01-20] (Time Lapse Solutions)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 serverca; C:\Users\david et isa\AppData\Local\ConvertAd\CASrv.exe [92672 2015-01-30] () [File not signed]
R2 servervo; C:\Users\david et isa\AppData\Roaming\VOPackage\VOsrv.exe [153600 2015-01-30] () [File not signed] <==== ATTENTION
R2 SWUpdater; C:\Program Files (x86)\StormWatch\SWUpdaterSvc.exe [17584 2014-11-22] (Weather Protector LLC)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [464384 2015-01-30] (SysTool PasSame LIMITED) [File not signed]
R2 webinstrNHKT; C:\Windows\system32\Drivers\webinstrNHKT.sys [50264 2015-01-30] ()
2015-01-30 10:53 - 2015-01-30 10:53 - 00001102 _____ () C:\Users\david et isa\Desktop\Continue Live Installation.lnk
2015-01-30 10:43 - 2015-01-30 10:44 - 00040562 _____ () C:\Users\david et isa\Desktop\Addition.txt
2015-01-30 10:41 - 2015-01-30 11:12 - 00029224 _____ () C:\Users\david et isa\Desktop\FRST.txt
2015-01-30 10:38 - 2015-01-30 11:06 - 00002822 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-01-30 10:38 - 2015-01-30 11:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-01-30 10:38 - 2015-01-30 11:05 - 00001049 _____ () C:\Users\david et isa\Desktop\AnyProtect.lnk
2015-01-30 10:38 - 2015-01-30 10:38 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-01-30 10:35 - 2015-01-30 10:38 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-01-30 10:35 - 2015-01-30 10:35 - 00613057 _____ (CMI Limited) C:\Users\david et isa\AppData\Local\nsb3FBB.tmp
2015-01-30 10:35 - 2015-01-30 10:35 - 00000000 __SHD () C:\Users\david et isa\AppData\Roaming\AnyProtectEx
2015-01-30 10:34 - 2015-01-30 10:53 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ConvertAd
2015-01-30 10:34 - 2015-01-30 10:34 - 00050264 _____ () C:\Windows\system32\Drivers\webinstrNHKT.sys
2015-01-30 10:34 - 2015-01-30 10:34 - 00003106 _____ () C:\Windows\System32\Tasks\BlockAndSurf Update
2015-01-30 10:34 - 2015-01-30 10:34 - 00001678 _____ () C:\Windows\patsearch.bin
2015-01-30 10:34 - 2015-01-30 10:34 - 00000452 _____ () C:\Windows\Tasks\BlockAndSurf Update.job
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____D () C:\Program Files (x86)\ver0BlockAndSurf
2015-01-30 10:32 - 2015-01-30 11:11 - 00000000 ____D () C:\FRST
2015-01-30 10:32 - 2015-01-30 10:36 - 00000000 ____D () C:\Users\david et isa\AppData\Local\gmsd_fr_163
2015-01-30 10:32 - 2015-01-30 10:32 - 00004058 _____ () C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Users\david et isa\AppData\Local\SmartWeb
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Program Files (x86)\gmsd_fr_163
2015-01-30 10:30 - 2015-01-30 10:30 - 02130432 _____ (Farbar) C:\Users\david et isa\Desktop\FRST64.exe
2015-01-30 10:21 - 2015-01-30 10:21 - 00000000 ____D () C:\Users\david et isa\AppData\Local\wincheck
2015-01-30 10:19 - 2015-01-30 10:19 - 00001023 _____ () C:\Users\david et isa\Desktop\NZBPlayer.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000970 _____ () C:\Users\david et isa\Desktop\NZBMovies.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Program Files (x86)\NZBPlayer
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\omiga-plus
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\MailUpdate
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Local\Weather_Protector_LLC
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\MailUpdate
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Local\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Program Files (x86)\StormWatch
2015-01-30 10:16 - 2015-01-30 10:16 - 00003782 _____ () C:\Windows\System32\Tasks\Selection Tools Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00003748 _____ () C:\Windows\System32\Tasks\WindApp Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\Selection Tools.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\WTools
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Store
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Nosibay
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-01-30 10:14 - 2015-01-30 10:16 - 00005813 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.installation.log
2015-01-30 10:14 - 2015-01-30 10:16 - 00001253 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.boostrap.log
2015-01-30 10:14 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6
2015-01-30 10:14 - 2015-01-30 10:14 - 00005480 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5
2015-01-30 10:14 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00000097 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.boostrap.log
2015-01-30 10:13 - 2015-01-30 11:13 - 00005548 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job
2015-01-30 10:13 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7
2015-01-30 10:13 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00008552 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6
2015-01-30 10:13 - 2015-01-30 10:13 - 00008216 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7
2015-01-30 10:13 - 2015-01-30 10:13 - 00005212 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00000000 ____D () C:\Program Files (x86)\774ae2b0-c33b-4e33-af65-2e2542f6f820
2015-01-30 10:12 - 2015-01-30 11:13 - 00002142 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000990 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000986 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-30 10:12 - 2015-01-30 10:14 - 00000000 ____D () C:\Program Files (x86)\HQCinema Pro 2.1V30.01
2015-01-30 10:12 - 2015-01-30 10:12 - 01970136 _____ (HQ CinemaV30.01) C:\Users\david et isa\AppData\Roaming\GIZGA.exe
2015-01-30 10:12 - 2015-01-30 10:12 - 00008218 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11
2015-01-30 10:12 - 2015-01-30 10:12 - 00005214 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00004394 _____ () C:\Windows\System32\Tasks\GIZGA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003962 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003726 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-01-30 10:12 - 2015-01-30 10:12 - 00001378 _____ () C:\Windows\Tasks\GIZGA.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Users\david et isa\AppData\Local\globalUpdate
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-01-25 17:58 - 2015-01-30 10:06 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ZombieNews
2015-01-25 17:58 - 2015-01-25 17:58 - 00000000 ____D () C:\ProgramData\Browser
2015-01-22 07:36 - 2015-01-30 07:36 - 00001378 _____ () C:\Windows\Tasks\WJCWK.job
2015-01-22 07:36 - 2015-01-22 07:37 - 00000000 ____D () C:\Program Files (x86)\8a8a0755-d96b-461d-be80-7ebf2bb401cd
2015-01-22 07:36 - 2015-01-22 07:36 - 02020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
2015-01-22 07:36 - 2015-01-22 07:36 - 00004394 _____ () C:\Windows\System32\Tasks\WJCWK
2015-01-20 16:36 - 2015-01-20 20:05 - 00003288 _____ () C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4018433884-1041127222-2307352900-1001
2015-01-20 15:54 - 2015-01-30 10:18 - 00002402 _____ () C:\Users\david et isa\Desktop\chrome.lnk
2015-01-20 14:53 - 2015-01-20 14:53 - 00003178 _____ () C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0}
2015-01-20 12:55 - 2015-01-20 12:55 - 00003112 _____ () C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942}
2015-01-20 12:50 - 2015-01-20 14:56 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-20 12:12 - 2015-01-20 12:17 - 00000000 ____D () C:\ProgramData\SUNEncoCu
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\david et isa\AppData\Roaming\WJCWK
2015-01-22 07:36 - 2015-01-22 07:36 - 2020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
Task: {1709404D-EC00-4E4E-9176-4CE5221B978F} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3} - System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} => pcalua.exe -a C:\ProgramData\ZombieNews\uninstall.exe -c /kb=y /ic=1
Task: {27614737-2DBC-4336-B2DB-09D60E4E890A} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {296F6012-F246-4B8F-8F71-026E1002B89D} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {2E73FDAB-A07C-4374-A957-25224AB6AE44} - System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} => pcalua.exe -a "C:\Users\david et isa\AppData\Roaming\mystartsearch\UninstallManager.exe" -c -ptid=amt
Task: {4BE31162-BE93-4139-B857-E73EB42BFE9F} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\david et isa\AppData\Local\SmartWeb\SmartWebHelper.exe [2014-12-31] (SoftBrain Technologies Ltd.)
Task: {4D809E02-6A32-47D7-90F4-CF64B6D3295C} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {5A20EF2E-4EB9-4CC8-970C-47CFB40A9853} - System32\Tasks\WJCWK => C:\Users\david et isa\AppData\Roaming\WJCWK.exe [2015-01-22] (ObjectB) <==== ATTENTION
Task: {643F10DD-BBC0-46D6-B44C-3AACF725A4AD} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-01-30] (AnyProtect.com) <==== ATTENTION
Task: {A058289E-7723-40D0-B497-6FEB03FEB17A} - System32\Tasks\GIZGA => C:\Users\david et isa\AppData\Roaming\GIZGA.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {A77213A5-347A-4ADA-988A-02965808E024} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B20E6615-6E11-447F-A579-81D8E67B4388} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B7E9E8B0-1207-462B-A163-EF8443088B10} - System32\Tasks\WindApp Update => C:\Users\david et isa\AppData\Roaming\Store\WindApp\WindApp Update.exe [2014-11-28] (Nosibay) <==== ATTENTION
Task: {B949BE6E-5B20-4CBC-9F41-2A03C1F623DC} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ
Task: {EFFB0701-745E-4FDC-AE64-7DC1221C43E5} - System32\Tasks\BlockAndSurf Update => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe [2015-01-30] () <==== ATTENTION
Task: {F6C348B1-2D89-4C7F-97D4-22FFAF27AD47} - System32\Tasks\Selection Tools Update => C:\Users\david et isa\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2014-12-16] (Nosibay)
Task: {FD7CC429-099A-45B5-B749-B085D820D175} - System32\Tasks\{7068C6D2-E26B-44FB-BD08-39EE25CE4465} => pcalua.exe -a E:\MSWord\INSTMSIW.EXE -d E:\MSWord
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\BlockAndSurf Update.job => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe <==== ATTENTION
Task: C:\Windows\Tasks\GIZGA.job => C:\Users\david et isa\AppData\Roaming\GIZGA.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\HPCeeScheduleFordavid et isa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\WJCWK.job => C:\Users\david et isa\AppData\Roaming\WJCWK.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
me revoilà
j'ai fait ce qui est indiqué ci dessus, sauf que l'ordi s'est relancé automatiquement apres avoir coller les éléments dans le notepad. Du coup je n'ai pas eu de texte qui est apparu à l'écran mais un fichier "fixlog" enregistré sur le bureau en lieu et place du "fixlist". Donc je vous colle ici ce fichier, vous me direz si c'est bon, je suis sceptique...
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 28-01-2015
Ran by david et isa at 2015-01-30 18:06:09 Run:1
Running from C:\Users\david et isa\Desktop
Loaded Profiles: david et isa (Available profiles: david et isa)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
BHO: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187_x64.dll ()
BHO-x32: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187.dll ()
R2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe [764416 2015-01-05] (Skytech Co., Ltd.) [File not signed]
R2 ptcnBmD; C:\ProgramData\SUNEncoCu\ptcnBmD.exe [2733872 2015-01-20] (Time Lapse Solutions)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 serverca; C:\Users\david et isa\AppData\Local\ConvertAd\CASrv.exe [92672 2015-01-30] () [File not signed]
R2 servervo; C:\Users\david et isa\AppData\Roaming\VOPackage\VOsrv.exe [153600 2015-01-30] () [File not signed] <==== ATTENTION
R2 SWUpdater; C:\Program Files (x86)\StormWatch\SWUpdaterSvc.exe [17584 2014-11-22] (Weather Protector LLC)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [464384 2015-01-30] (SysTool PasSame LIMITED) [File not signed]
R2 webinstrNHKT; C:\Windows\system32\Drivers\webinstrNHKT.sys [50264 2015-01-30] ()
2015-01-30 10:53 - 2015-01-30 10:53 - 00001102 _____ () C:\Users\david et isa\Desktop\Continue Live Installation.lnk
2015-01-30 10:43 - 2015-01-30 10:44 - 00040562 _____ () C:\Users\david et isa\Desktop\Addition.txt
2015-01-30 10:41 - 2015-01-30 11:12 - 00029224 _____ () C:\Users\david et isa\Desktop\FRST.txt
2015-01-30 10:38 - 2015-01-30 11:06 - 00002822 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-01-30 10:38 - 2015-01-30 11:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-01-30 10:38 - 2015-01-30 11:05 - 00001049 _____ () C:\Users\david et isa\Desktop\AnyProtect.lnk
2015-01-30 10:38 - 2015-01-30 10:38 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-01-30 10:35 - 2015-01-30 10:38 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-01-30 10:35 - 2015-01-30 10:35 - 00613057 _____ (CMI Limited) C:\Users\david et isa\AppData\Local\nsb3FBB.tmp
2015-01-30 10:35 - 2015-01-30 10:35 - 00000000 __SHD () C:\Users\david et isa\AppData\Roaming\AnyProtectEx
2015-01-30 10:34 - 2015-01-30 10:53 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ConvertAd
2015-01-30 10:34 - 2015-01-30 10:34 - 00050264 _____ () C:\Windows\system32\Drivers\webinstrNHKT.sys
2015-01-30 10:34 - 2015-01-30 10:34 - 00003106 _____ () C:\Windows\System32\Tasks\BlockAndSurf Update
2015-01-30 10:34 - 2015-01-30 10:34 - 00001678 _____ () C:\Windows\patsearch.bin
2015-01-30 10:34 - 2015-01-30 10:34 - 00000452 _____ () C:\Windows\Tasks\BlockAndSurf Update.job
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____D () C:\Program Files (x86)\ver0BlockAndSurf
2015-01-30 10:32 - 2015-01-30 11:11 - 00000000 ____D () C:\FRST
2015-01-30 10:32 - 2015-01-30 10:36 - 00000000 ____D () C:\Users\david et isa\AppData\Local\gmsd_fr_163
2015-01-30 10:32 - 2015-01-30 10:32 - 00004058 _____ () C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Users\david et isa\AppData\Local\SmartWeb
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Program Files (x86)\gmsd_fr_163
2015-01-30 10:30 - 2015-01-30 10:30 - 02130432 _____ (Farbar) C:\Users\david et isa\Desktop\FRST64.exe
2015-01-30 10:21 - 2015-01-30 10:21 - 00000000 ____D () C:\Users\david et isa\AppData\Local\wincheck
2015-01-30 10:19 - 2015-01-30 10:19 - 00001023 _____ () C:\Users\david et isa\Desktop\NZBPlayer.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000970 _____ () C:\Users\david et isa\Desktop\NZBMovies.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Program Files (x86)\NZBPlayer
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\omiga-plus
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\MailUpdate
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Local\Weather_Protector_LLC
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\MailUpdate
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Local\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Program Files (x86)\StormWatch
2015-01-30 10:16 - 2015-01-30 10:16 - 00003782 _____ () C:\Windows\System32\Tasks\Selection Tools Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00003748 _____ () C:\Windows\System32\Tasks\WindApp Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\Selection Tools.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\WTools
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Store
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Nosibay
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-01-30 10:14 - 2015-01-30 10:16 - 00005813 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.installation.log
2015-01-30 10:14 - 2015-01-30 10:16 - 00001253 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.boostrap.log
2015-01-30 10:14 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6
2015-01-30 10:14 - 2015-01-30 10:14 - 00005480 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5
2015-01-30 10:14 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00000097 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.boostrap.log
2015-01-30 10:13 - 2015-01-30 11:13 - 00005548 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job
2015-01-30 10:13 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7
2015-01-30 10:13 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00008552 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6
2015-01-30 10:13 - 2015-01-30 10:13 - 00008216 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7
2015-01-30 10:13 - 2015-01-30 10:13 - 00005212 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00000000 ____D () C:\Program Files (x86)\774ae2b0-c33b-4e33-af65-2e2542f6f820
2015-01-30 10:12 - 2015-01-30 11:13 - 00002142 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000990 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000986 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-30 10:12 - 2015-01-30 10:14 - 00000000 ____D () C:\Program Files (x86)\HQCinema Pro 2.1V30.01
2015-01-30 10:12 - 2015-01-30 10:12 - 01970136 _____ (HQ CinemaV30.01) C:\Users\david et isa\AppData\Roaming\GIZGA.exe
2015-01-30 10:12 - 2015-01-30 10:12 - 00008218 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11
2015-01-30 10:12 - 2015-01-30 10:12 - 00005214 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00004394 _____ () C:\Windows\System32\Tasks\GIZGA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003962 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003726 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-01-30 10:12 - 2015-01-30 10:12 - 00001378 _____ () C:\Windows\Tasks\GIZGA.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Users\david et isa\AppData\Local\globalUpdate
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-01-25 17:58 - 2015-01-30 10:06 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ZombieNews
2015-01-25 17:58 - 2015-01-25 17:58 - 00000000 ____D () C:\ProgramData\Browser
2015-01-22 07:36 - 2015-01-30 07:36 - 00001378 _____ () C:\Windows\Tasks\WJCWK.job
2015-01-22 07:36 - 2015-01-22 07:37 - 00000000 ____D () C:\Program Files (x86)\8a8a0755-d96b-461d-be80-7ebf2bb401cd
2015-01-22 07:36 - 2015-01-22 07:36 - 02020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
2015-01-22 07:36 - 2015-01-22 07:36 - 00004394 _____ () C:\Windows\System32\Tasks\WJCWK
2015-01-20 16:36 - 2015-01-20 20:05 - 00003288 _____ () C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4018433884-1041127222-2307352900-1001
2015-01-20 15:54 - 2015-01-30 10:18 - 00002402 _____ () C:\Users\david et isa\Desktop\chrome.lnk
2015-01-20 14:53 - 2015-01-20 14:53 - 00003178 _____ () C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0}
2015-01-20 12:55 - 2015-01-20 12:55 - 00003112 _____ () C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942}
2015-01-20 12:50 - 2015-01-20 14:56 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-20 12:12 - 2015-01-20 12:17 - 00000000 ____D () C:\ProgramData\SUNEncoCu
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\david et isa\AppData\Roaming\WJCWK
2015-01-22 07:36 - 2015-01-22 07:36 - 2020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
Task: {1709404D-EC00-4E4E-9176-4CE5221B978F} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3} - System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} => pcalua.exe -a C:\ProgramData\ZombieNews\uninstall.exe -c /kb=y /ic=1
Task: {27614737-2DBC-4336-B2DB-09D60E4E890A} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {296F6012-F246-4B8F-8F71-026E1002B89D} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {2E73FDAB-A07C-4374-A957-25224AB6AE44} - System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} => pcalua.exe -a "C:\Users\david et isa\AppData\Roaming\mystartsearch\UninstallManager.exe" -c -ptid=amt
Task: {4BE31162-BE93-4139-B857-E73EB42BFE9F} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\david et isa\AppData\Local\SmartWeb\SmartWebHelper.exe [2014-12-31] (SoftBrain Technologies Ltd.)
Task: {4D809E02-6A32-47D7-90F4-CF64B6D3295C} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {5A20EF2E-4EB9-4CC8-970C-47CFB40A9853} - System32\Tasks\WJCWK => C:\Users\david et isa\AppData\Roaming\WJCWK.exe [2015-01-22] (ObjectB) <==== ATTENTION
Task: {643F10DD-BBC0-46D6-B44C-3AACF725A4AD} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-01-30] (AnyProtect.com) <==== ATTENTION
Task: {A058289E-7723-40D0-B497-6FEB03FEB17A} - System32\Tasks\GIZGA => C:\Users\david et isa\AppData\Roaming\GIZGA.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {A77213A5-347A-4ADA-988A-02965808E024} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B20E6615-6E11-447F-A579-81D8E67B4388} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B7E9E8B0-1207-462B-A163-EF8443088B10} - System32\Tasks\WindApp Update => C:\Users\david et isa\AppData\Roaming\Store\WindApp\WindApp Update.exe [2014-11-28] (Nosibay) <==== ATTENTION
Task: {B949BE6E-5B20-4CBC-9F41-2A03C1F623DC} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ
Task: {EFFB0701-745E-4FDC-AE64-7DC1221C43E5} - System32\Tasks\BlockAndSurf Update => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe [2015-01-30] () <==== ATTENTION
Task: {F6C348B1-2D89-4C7F-97D4-22FFAF27AD47} - System32\Tasks\Selection Tools Update => C:\Users\david et isa\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2014-12-16] (Nosibay)
Task: {FD7CC429-099A-45B5-B749-B085D820D175} - System32\Tasks\{7068C6D2-E26B-44FB-BD08-39EE25CE4465} => pcalua.exe -a E:\MSWord\INSTMSIW.EXE -d E:\MSWord
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\BlockAndSurf Update.job => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe <==== ATTENTION
Task: C:\Windows\Tasks\GIZGA.job => C:\Users\david et isa\AppData\Roaming\GIZGA.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\HPCeeScheduleFordavid et isa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\WJCWK.job => C:\Users\david et isa\AppData\Roaming\WJCWK.exe <==== ATTENTION
*****************
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
"HKCR\CLSID\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
mailUpdate => Service not found.
ptcnBmD => Unable to stop service
ptcnBmD => Service deleted successfully.
rpcapd => Service not found.
serverca => Service not found.
servervo => Service not found.
SWUpdater => Service not found.
WindowsMangerProtect => Unable to stop service
WindowsMangerProtect => Service deleted successfully.
webinstrNHKT => Unable to stop service
webinstrNHKT => Service deleted successfully.
"C:\Users\david et isa\Desktop\Continue Live Installation.lnk" => File/Directory not found.
C:\Users\david et isa\Desktop\Addition.txt => Moved successfully.
C:\Users\david et isa\Desktop\FRST.txt => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 => Moved successfully.
C:\Windows\Tasks\APSnotifierPP1.job => Moved successfully.
"C:\Users\david et isa\Desktop\AnyProtect.lnk" => File/Directory not found.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup" => File/Directory not found.
C:\Program Files (x86)\AnyProtectEx => Moved successfully.
C:\Users\david et isa\AppData\Local\nsb3FBB.tmp => Moved successfully.
C:\Users\david et isa\AppData\Roaming\AnyProtectEx => Moved successfully.
"C:\Users\david et isa\AppData\Local\ConvertAd" => File/Directory not found.
C:\Windows\system32\Drivers\webinstrNHKT.sys => Moved successfully.
C:\Windows\System32\Tasks\BlockAndSurf Update => Moved successfully.
C:\Windows\patsearch.bin => Moved successfully.
C:\Windows\Tasks\BlockAndSurf Update.job => Moved successfully.
C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf => Moved successfully.
"C:\Program Files (x86)\ver0BlockAndSurf" directory move:
C:\Program Files (x86)\ver0BlockAndSurf\187.crx => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187.dat => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187.xpi => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187_x64.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\BlockAndSurf.exe => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\sqlite3.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\TandemRunner.exe => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\WdfCoInstaller01009.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\webinstr.inf => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\webinstrNHKT.sys => Moved successfully.
Could not move "C:\Program Files (x86)\ver0BlockAndSurf" directory. => Scheduled to move on reboot.
"C:\FRST" directory move:
C:\FRST\files => Moved successfully.
C:\FRST\re => Moved successfully.
C:\FRST\reb => Moved successfully.
C:\FRST\users00 => Moved successfully.
C:\FRST\Quarantine\C\Windows\patsearch.bin.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\Tasks\APSnotifierPP1.job.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\Tasks\BlockAndSurf Update.job.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Tasks\APSnotifierPP1.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Tasks\BlockAndSurf Update.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Drivers\webinstrNHKT.sys.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\Desktop\Addition.txt.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\Desktop\FRST.txt.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\swf\mov01.swf => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\swf\swfTTi.swf => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\swf\swfx7C.swf => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\scan_results\aps.scan.quick.results => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\scan_results\aps.scan.results => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\language\de.xml => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\language\en.xml => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\language\fr.xml => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\installer\ab.test.json => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\installer\tempfile.t => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Local\nsb3FBB.tmp.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.crx.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.dat.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.xpi.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187_x64.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\BlockAndSurf.exe.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\sqlite3.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\TandemRunner.exe.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\WdfCoInstaller01009.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\webinstr.inf.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\webinstrNHKT.sys.xBAD => Moved successfully.
C:\FRST\Logs\Addition_30-01-2015_10-44-39.txt => Moved successfully.
C:\FRST\Logs\Addition_30-01-2015_11-15-05.txt => Moved successfully.
C:\FRST\Logs\ct => Moved successfully.
C:\FRST\Logs\FRST_30-01-2015_10-44-43.txt => Moved successfully.
C:\FRST\Logs\FRST_30-01-2015_11-19-57.txt => Moved successfully.
C:\FRST\Hives\BCD => Moved successfully.
C:\FRST\Hives\default => Moved successfully.
C:\FRST\Hives\ERDNT.CON => Moved successfully.
C:\FRST\Hives\ERDNT.EXE => Moved successfully.
C:\FRST\Hives\ERDNT.INF => Moved successfully.
C:\FRST\Hives\ERDNTDOS.LOC => Moved successfully.
C:\FRST\Hives\ERDNTWIN.LOC => Moved successfully.
C:\FRST\Hives\sam => Moved successfully.
C:\FRST\Hives\security => Moved successfully.
C:\FRST\Hives\software => Moved successfully.
C:\FRST\Hives\system => Moved successfully.
C:\FRST\Hives\Users\00000002\UsrClass.dat => Moved successfully.
C:\FRST\Hives\Users\00000001\ntuser.dat => Moved successfully.
Could not move "C:\FRST" directory. => Scheduled to move on reboot.
"C:\Users\david et isa\AppData\Local\gmsd_fr_163" => File/Directory not found.
"C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task" => File/Directory not found.
"C:\Users\david et isa\AppData\Local\SmartWeb" => File/Directory not found.
"C:\Program Files (x86)\gmsd_fr_163" => File/Directory not found.
C:\Users\david et isa\Desktop\FRST64.exe => Moved successfully.
"C:\Users\david et isa\AppData\Local\wincheck" directory move:
C:\Users\david et isa\AppData\Local\wincheck\wincheck.exe => Moved successfully.
Could not move "C:\Users\david et isa\AppData\Local\wincheck" directory. => Scheduled to move on reboot.
"C:\Users\david et isa\Desktop\NZBPlayer.lnk" => File/Directory not found.
"C:\Users\david et isa\Desktop\NZBMovies.lnk" => File/Directory not found.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NZBPlayer" => File/Directory not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZBPlayer => Moved successfully.
C:\Program Files (x86)\NZBPlayer => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\VOPackage" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\omiga-plus => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\MailUpdate => Moved successfully.
"C:\Users\david et isa\AppData\Local\Weather_Protector_LLC" => File/Directory not found.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\ProgramData\MailUpdate => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch" => File/Directory not found.
"C:\Users\david et isa\AppData\Local\StormWatch" => File/Directory not found.
"C:\Program Files (x86)\StormWatch" => File/Directory not found.
"C:\Windows\System32\Tasks\Selection Tools Update" => File/Directory not found.
"C:\Windows\System32\Tasks\WindApp Update" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\WindApp.installation.log => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Selection Tools.installation.log => Moved successfully.
C:\Users\david et isa\AppData\Roaming\WTools => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Store => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Nosibay => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\Bubble Dock.installation.log => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Bubble Dock.boostrap.log => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job => Moved successfully.
C:\Users\david et isa\AppData\Roaming\WindApp.boostrap.log => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job => Moved successfully.
C:\Program Files (x86)\774ae2b0-c33b-4e33-af65-2e2542f6f820 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully.
C:\Program Files (x86)\HQCinema Pro 2.1V30.01 => Moved successfully.
C:\Users\david et isa\AppData\Roaming\GIZGA.exe => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job => Moved successfully.
C:\Windows\System32\Tasks\GIZGA => Moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully.
C:\Windows\Tasks\GIZGA.job => Moved successfully.
C:\Users\david et isa\AppData\Local\globalUpdate => Moved successfully.
C:\Program Files (x86)\globalUpdate => Moved successfully.
C:\Users\david et isa\AppData\Local\ZombieNews => Moved successfully.
C:\ProgramData\Browser => Moved successfully.
C:\Windows\Tasks\WJCWK.job => Moved successfully.
C:\Program Files (x86)\8a8a0755-d96b-461d-be80-7ebf2bb401cd => Moved successfully.
C:\Users\david et isa\AppData\Roaming\WJCWK.exe => Moved successfully.
C:\Windows\System32\Tasks\WJCWK => Moved successfully.
C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4018433884-1041127222-2307352900-1001 => Moved successfully.
C:\Users\david et isa\Desktop\chrome.lnk => Moved successfully.
C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} => Moved successfully.
C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} => Moved successfully.
C:\Program Files (x86)\Setup Support for SearchProtect => Moved successfully.
"C:\ProgramData\SUNEncoCu" directory move:
Could not move "C:\ProgramData\SUNEncoCu\info.dat" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\ptcnBmD.dat" => Scheduled to move on reboot.
C:\ProgramData\SUNEncoCu\ptcnBmD.exe => Moved successfully.
C:\ProgramData\SUNEncoCu\ptcnBmD.exe.config => Moved successfully.
Could not move "C:\ProgramData\SUNEncoCu\dat\KUvDuZfu.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\mddjUhcIOHj.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\mddjUhcIOHj.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\rPSuYIWKf.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\uSNOVRGZE.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\uSNOVRGZE.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu" directory. => Scheduled to move on reboot.
C:\Users\david et isa\AppData\Roaming\WJCWK => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\WJCWK.exe" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1709404D-EC00-4E4E-9176-4CE5221B978F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1709404D-EC00-4E4E-9176-4CE5221B978F}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-10_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3}" => Key deleted successfully.
C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{27614737-2DBC-4336-B2DB-09D60E4E890A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27614737-2DBC-4336-B2DB-09D60E4E890A}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{296F6012-F246-4B8F-8F71-026E1002B89D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{296F6012-F246-4B8F-8F71-026E1002B89D}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2E73FDAB-A07C-4374-A957-25224AB6AE44}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E73FDAB-A07C-4374-A957-25224AB6AE44}" => Key deleted successfully.
C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4BE31162-BE93-4139-B857-E73EB42BFE9F} => Key not found.
C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartWeb Upgrade Trigger Task => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4D809E02-6A32-47D7-90F4-CF64B6D3295C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D809E02-6A32-47D7-90F4-CF64B6D3295C}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-1-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5A20EF2E-4EB9-4CC8-970C-47CFB40A9853}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A20EF2E-4EB9-4CC8-970C-47CFB40A9853}" => Key deleted successfully.
C:\Windows\System32\Tasks\WJCWK not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WJCWK" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{643F10DD-BBC0-46D6-B44C-3AACF725A4AD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{643F10DD-BBC0-46D6-B44C-3AACF725A4AD}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A058289E-7723-40D0-B497-6FEB03FEB17A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A058289E-7723-40D0-B497-6FEB03FEB17A}" => Key deleted successfully.
C:\Windows\System32\Tasks\GIZGA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GIZGA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A77213A5-347A-4ADA-988A-02965808E024}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A77213A5-347A-4ADA-988A-02965808E024}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B20E6615-6E11-447F-A579-81D8E67B4388}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B20E6615-6E11-447F-A579-81D8E67B4388}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-5_user" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7E9E8B0-1207-462B-A163-EF8443088B10} => Key not found.
C:\Windows\System32\Tasks\WindApp Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WindApp Update => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B949BE6E-5B20-4CBC-9F41-2A03C1F623DC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B949BE6E-5B20-4CBC-9F41-2A03C1F623DC}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-1-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-11" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EFFB0701-745E-4FDC-AE64-7DC1221C43E5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EFFB0701-745E-4FDC-AE64-7DC1221C43E5}" => Key deleted successfully.
C:\Windows\System32\Tasks\BlockAndSurf Update not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BlockAndSurf Update" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6C348B1-2D89-4C7F-97D4-22FFAF27AD47} => Key not found.
C:\Windows\System32\Tasks\Selection Tools Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Selection Tools Update => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FD7CC429-099A-45B5-B749-B085D820D175}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD7CC429-099A-45B5-B749-B085D820D175}" => Key deleted successfully.
C:\Windows\System32\Tasks\{7068C6D2-E26B-44FB-BD08-39EE25CE4465} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7068C6D2-E26B-44FB-BD08-39EE25CE4465}" => Key deleted successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job not found.
C:\Windows\Tasks\APSnotifierPP1.job not found.
C:\Windows\Tasks\BlockAndSurf Update.job not found.
C:\Windows\Tasks\GIZGA.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
C:\Windows\Tasks\HPCeeScheduleFordavid et isa.job => Moved successfully.
C:\Windows\Tasks\WJCWK.job not found.
voilà, j'attends les consignes suivantes...
Merci encore de m'aider.
David
j'ai fait ce qui est indiqué ci dessus, sauf que l'ordi s'est relancé automatiquement apres avoir coller les éléments dans le notepad. Du coup je n'ai pas eu de texte qui est apparu à l'écran mais un fichier "fixlog" enregistré sur le bureau en lieu et place du "fixlist". Donc je vous colle ici ce fichier, vous me direz si c'est bon, je suis sceptique...
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 28-01-2015
Ran by david et isa at 2015-01-30 18:06:09 Run:1
Running from C:\Users\david et isa\Desktop
Loaded Profiles: david et isa (Available profiles: david et isa)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
BHO: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187_x64.dll ()
BHO-x32: BlockAndSurf -> {C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB} -> C:\Program Files (x86)\ver0BlockAndSurf\187.dll ()
R2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe [764416 2015-01-05] (Skytech Co., Ltd.) [File not signed]
R2 ptcnBmD; C:\ProgramData\SUNEncoCu\ptcnBmD.exe [2733872 2015-01-20] (Time Lapse Solutions)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 serverca; C:\Users\david et isa\AppData\Local\ConvertAd\CASrv.exe [92672 2015-01-30] () [File not signed]
R2 servervo; C:\Users\david et isa\AppData\Roaming\VOPackage\VOsrv.exe [153600 2015-01-30] () [File not signed] <==== ATTENTION
R2 SWUpdater; C:\Program Files (x86)\StormWatch\SWUpdaterSvc.exe [17584 2014-11-22] (Weather Protector LLC)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [464384 2015-01-30] (SysTool PasSame LIMITED) [File not signed]
R2 webinstrNHKT; C:\Windows\system32\Drivers\webinstrNHKT.sys [50264 2015-01-30] ()
2015-01-30 10:53 - 2015-01-30 10:53 - 00001102 _____ () C:\Users\david et isa\Desktop\Continue Live Installation.lnk
2015-01-30 10:43 - 2015-01-30 10:44 - 00040562 _____ () C:\Users\david et isa\Desktop\Addition.txt
2015-01-30 10:41 - 2015-01-30 11:12 - 00029224 _____ () C:\Users\david et isa\Desktop\FRST.txt
2015-01-30 10:38 - 2015-01-30 11:06 - 00002822 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-01-30 10:38 - 2015-01-30 11:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-01-30 10:38 - 2015-01-30 11:05 - 00001049 _____ () C:\Users\david et isa\Desktop\AnyProtect.lnk
2015-01-30 10:38 - 2015-01-30 10:38 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-01-30 10:35 - 2015-01-30 10:38 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-01-30 10:35 - 2015-01-30 10:35 - 00613057 _____ (CMI Limited) C:\Users\david et isa\AppData\Local\nsb3FBB.tmp
2015-01-30 10:35 - 2015-01-30 10:35 - 00000000 __SHD () C:\Users\david et isa\AppData\Roaming\AnyProtectEx
2015-01-30 10:34 - 2015-01-30 10:53 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ConvertAd
2015-01-30 10:34 - 2015-01-30 10:34 - 00050264 _____ () C:\Windows\system32\Drivers\webinstrNHKT.sys
2015-01-30 10:34 - 2015-01-30 10:34 - 00003106 _____ () C:\Windows\System32\Tasks\BlockAndSurf Update
2015-01-30 10:34 - 2015-01-30 10:34 - 00001678 _____ () C:\Windows\patsearch.bin
2015-01-30 10:34 - 2015-01-30 10:34 - 00000452 _____ () C:\Windows\Tasks\BlockAndSurf Update.job
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf
2015-01-30 10:34 - 2015-01-30 10:34 - 00000000 ____D () C:\Program Files (x86)\ver0BlockAndSurf
2015-01-30 10:32 - 2015-01-30 11:11 - 00000000 ____D () C:\FRST
2015-01-30 10:32 - 2015-01-30 10:36 - 00000000 ____D () C:\Users\david et isa\AppData\Local\gmsd_fr_163
2015-01-30 10:32 - 2015-01-30 10:32 - 00004058 _____ () C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Users\david et isa\AppData\Local\SmartWeb
2015-01-30 10:32 - 2015-01-30 10:32 - 00000000 ____D () C:\Program Files (x86)\gmsd_fr_163
2015-01-30 10:30 - 2015-01-30 10:30 - 02130432 _____ (Farbar) C:\Users\david et isa\Desktop\FRST64.exe
2015-01-30 10:21 - 2015-01-30 10:21 - 00000000 ____D () C:\Users\david et isa\AppData\Local\wincheck
2015-01-30 10:19 - 2015-01-30 10:19 - 00001023 _____ () C:\Users\david et isa\Desktop\NZBPlayer.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000970 _____ () C:\Users\david et isa\Desktop\NZBMovies.lnk
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZBPlayer
2015-01-30 10:19 - 2015-01-30 10:19 - 00000000 ____D () C:\Program Files (x86)\NZBPlayer
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\omiga-plus
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\MailUpdate
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\Users\david et isa\AppData\Local\Weather_Protector_LLC
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-01-30 10:18 - 2015-01-30 10:18 - 00000000 ____D () C:\ProgramData\MailUpdate
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Users\david et isa\AppData\Local\StormWatch
2015-01-30 10:17 - 2015-01-30 10:17 - 00000000 ____D () C:\Program Files (x86)\StormWatch
2015-01-30 10:16 - 2015-01-30 10:16 - 00003782 _____ () C:\Windows\System32\Tasks\Selection Tools Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00003748 _____ () C:\Windows\System32\Tasks\WindApp Update
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000078 _____ () C:\Users\david et isa\AppData\Roaming\Selection Tools.installation.log
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\WTools
2015-01-30 10:16 - 2015-01-30 10:16 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Store
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Nosibay
2015-01-30 10:15 - 2015-01-30 10:15 - 00000000 ____D () C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-01-30 10:14 - 2015-01-30 10:16 - 00005813 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.installation.log
2015-01-30 10:14 - 2015-01-30 10:16 - 00001253 _____ () C:\Users\david et isa\AppData\Roaming\Bubble Dock.boostrap.log
2015-01-30 10:14 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6
2015-01-30 10:14 - 2015-01-30 10:14 - 00005480 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5
2015-01-30 10:14 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00002476 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job
2015-01-30 10:14 - 2015-01-30 10:14 - 00000097 _____ () C:\Users\david et isa\AppData\Roaming\WindApp.boostrap.log
2015-01-30 10:13 - 2015-01-30 11:13 - 00005548 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job
2015-01-30 10:13 - 2015-01-30 10:14 - 00006172 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7
2015-01-30 10:13 - 2015-01-30 10:14 - 00003168 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00008552 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6
2015-01-30 10:13 - 2015-01-30 10:13 - 00008216 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7
2015-01-30 10:13 - 2015-01-30 10:13 - 00005212 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job
2015-01-30 10:13 - 2015-01-30 10:13 - 00000000 ____D () C:\Program Files (x86)\774ae2b0-c33b-4e33-af65-2e2542f6f820
2015-01-30 10:12 - 2015-01-30 11:13 - 00002142 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000990 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-30 10:12 - 2015-01-30 10:17 - 00000986 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-30 10:12 - 2015-01-30 10:14 - 00000000 ____D () C:\Program Files (x86)\HQCinema Pro 2.1V30.01
2015-01-30 10:12 - 2015-01-30 10:12 - 01970136 _____ (HQ CinemaV30.01) C:\Users\david et isa\AppData\Roaming\GIZGA.exe
2015-01-30 10:12 - 2015-01-30 10:12 - 00008218 _____ () C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11
2015-01-30 10:12 - 2015-01-30 10:12 - 00005214 _____ () C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00004394 _____ () C:\Windows\System32\Tasks\GIZGA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003962 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-30 10:12 - 2015-01-30 10:12 - 00003726 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-01-30 10:12 - 2015-01-30 10:12 - 00001378 _____ () C:\Windows\Tasks\GIZGA.job
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Users\david et isa\AppData\Local\globalUpdate
2015-01-30 10:12 - 2015-01-30 10:12 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-01-25 17:58 - 2015-01-30 10:06 - 00000000 ____D () C:\Users\david et isa\AppData\Local\ZombieNews
2015-01-25 17:58 - 2015-01-25 17:58 - 00000000 ____D () C:\ProgramData\Browser
2015-01-22 07:36 - 2015-01-30 07:36 - 00001378 _____ () C:\Windows\Tasks\WJCWK.job
2015-01-22 07:36 - 2015-01-22 07:37 - 00000000 ____D () C:\Program Files (x86)\8a8a0755-d96b-461d-be80-7ebf2bb401cd
2015-01-22 07:36 - 2015-01-22 07:36 - 02020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
2015-01-22 07:36 - 2015-01-22 07:36 - 00004394 _____ () C:\Windows\System32\Tasks\WJCWK
2015-01-20 16:36 - 2015-01-20 20:05 - 00003288 _____ () C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4018433884-1041127222-2307352900-1001
2015-01-20 15:54 - 2015-01-30 10:18 - 00002402 _____ () C:\Users\david et isa\Desktop\chrome.lnk
2015-01-20 14:53 - 2015-01-20 14:53 - 00003178 _____ () C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0}
2015-01-20 12:55 - 2015-01-20 12:55 - 00003112 _____ () C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942}
2015-01-20 12:50 - 2015-01-20 14:56 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-20 12:12 - 2015-01-20 12:17 - 00000000 ____D () C:\ProgramData\SUNEncoCu
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\david et isa\AppData\Roaming\WJCWK
2015-01-22 07:36 - 2015-01-22 07:36 - 2020328 _____ (ObjectB) C:\Users\david et isa\AppData\Roaming\WJCWK.exe
Task: {1709404D-EC00-4E4E-9176-4CE5221B978F} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3} - System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} => pcalua.exe -a C:\ProgramData\ZombieNews\uninstall.exe -c /kb=y /ic=1
Task: {27614737-2DBC-4336-B2DB-09D60E4E890A} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {296F6012-F246-4B8F-8F71-026E1002B89D} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-01-30] (globalUpdate) <==== ATTENTION
Task: {2E73FDAB-A07C-4374-A957-25224AB6AE44} - System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} => pcalua.exe -a "C:\Users\david et isa\AppData\Roaming\mystartsearch\UninstallManager.exe" -c -ptid=amt
Task: {4BE31162-BE93-4139-B857-E73EB42BFE9F} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\david et isa\AppData\Local\SmartWeb\SmartWebHelper.exe [2014-12-31] (SoftBrain Technologies Ltd.)
Task: {4D809E02-6A32-47D7-90F4-CF64B6D3295C} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {5A20EF2E-4EB9-4CC8-970C-47CFB40A9853} - System32\Tasks\WJCWK => C:\Users\david et isa\AppData\Roaming\WJCWK.exe [2015-01-22] (ObjectB) <==== ATTENTION
Task: {643F10DD-BBC0-46D6-B44C-3AACF725A4AD} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-01-30] (AnyProtect.com) <==== ATTENTION
Task: {A058289E-7723-40D0-B497-6FEB03FEB17A} - System32\Tasks\GIZGA => C:\Users\david et isa\AppData\Roaming\GIZGA.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {A77213A5-347A-4ADA-988A-02965808E024} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B20E6615-6E11-447F-A579-81D8E67B4388} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {B7E9E8B0-1207-462B-A163-EF8443088B10} - System32\Tasks\WindApp Update => C:\Users\david et isa\AppData\Roaming\Store\WindApp\WindApp Update.exe [2014-11-28] (Nosibay) <==== ATTENTION
Task: {B949BE6E-5B20-4CBC-9F41-2A03C1F623DC} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe [2015-01-30] (HQ CinemaV30.01) <==== ATTENTION
Task: {DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A} - System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe [2015-01-30] (HQ
Task: {EFFB0701-745E-4FDC-AE64-7DC1221C43E5} - System32\Tasks\BlockAndSurf Update => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe [2015-01-30] () <==== ATTENTION
Task: {F6C348B1-2D89-4C7F-97D4-22FFAF27AD47} - System32\Tasks\Selection Tools Update => C:\Users\david et isa\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2014-12-16] (Nosibay)
Task: {FD7CC429-099A-45B5-B749-B085D820D175} - System32\Tasks\{7068C6D2-E26B-44FB-BD08-39EE25CE4465} => pcalua.exe -a E:\MSWord\INSTMSIW.EXE -d E:\MSWord
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job => C:\Program Files (x86)\HQCinema Pro 2.1V30.01\921ff0a1-02ec-4964-b52f-27633c035372-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\BlockAndSurf Update.job => C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe <==== ATTENTION
Task: C:\Windows\Tasks\GIZGA.job => C:\Users\david et isa\AppData\Roaming\GIZGA.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\HPCeeScheduleFordavid et isa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\WJCWK.job => C:\Users\david et isa\AppData\Roaming\WJCWK.exe <==== ATTENTION
*****************
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
"HKCR\CLSID\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{C330D4EC-AFE2-9A69-CAAD-C5E77FABCBCB}" => Key deleted successfully.
mailUpdate => Service not found.
ptcnBmD => Unable to stop service
ptcnBmD => Service deleted successfully.
rpcapd => Service not found.
serverca => Service not found.
servervo => Service not found.
SWUpdater => Service not found.
WindowsMangerProtect => Unable to stop service
WindowsMangerProtect => Service deleted successfully.
webinstrNHKT => Unable to stop service
webinstrNHKT => Service deleted successfully.
"C:\Users\david et isa\Desktop\Continue Live Installation.lnk" => File/Directory not found.
C:\Users\david et isa\Desktop\Addition.txt => Moved successfully.
C:\Users\david et isa\Desktop\FRST.txt => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 => Moved successfully.
C:\Windows\Tasks\APSnotifierPP1.job => Moved successfully.
"C:\Users\david et isa\Desktop\AnyProtect.lnk" => File/Directory not found.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup" => File/Directory not found.
C:\Program Files (x86)\AnyProtectEx => Moved successfully.
C:\Users\david et isa\AppData\Local\nsb3FBB.tmp => Moved successfully.
C:\Users\david et isa\AppData\Roaming\AnyProtectEx => Moved successfully.
"C:\Users\david et isa\AppData\Local\ConvertAd" => File/Directory not found.
C:\Windows\system32\Drivers\webinstrNHKT.sys => Moved successfully.
C:\Windows\System32\Tasks\BlockAndSurf Update => Moved successfully.
C:\Windows\patsearch.bin => Moved successfully.
C:\Windows\Tasks\BlockAndSurf Update.job => Moved successfully.
C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf => Moved successfully.
"C:\Program Files (x86)\ver0BlockAndSurf" directory move:
C:\Program Files (x86)\ver0BlockAndSurf\187.crx => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187.dat => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187.xpi => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\187_x64.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\BlockAndSurf.exe => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\sqlite3.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\TandemRunner.exe => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\WdfCoInstaller01009.dll => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\webinstr.inf => Moved successfully.
C:\Program Files (x86)\ver0BlockAndSurf\x64\webinstrNHKT.sys => Moved successfully.
Could not move "C:\Program Files (x86)\ver0BlockAndSurf" directory. => Scheduled to move on reboot.
"C:\FRST" directory move:
C:\FRST\files => Moved successfully.
C:\FRST\re => Moved successfully.
C:\FRST\reb => Moved successfully.
C:\FRST\users00 => Moved successfully.
C:\FRST\Quarantine\C\Windows\patsearch.bin.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\Tasks\APSnotifierPP1.job.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\Tasks\BlockAndSurf Update.job.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Tasks\APSnotifierPP1.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Tasks\BlockAndSurf Update.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Drivers\Msft_Kernel_webinstrNHKT_01009.Wdf.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Windows\System32\Drivers\webinstrNHKT.sys.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\Desktop\Addition.txt.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\Desktop\FRST.txt.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\swf\mov01.swf => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\swf\swfTTi.swf => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\swf\swfx7C.swf => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\scan_results\aps.scan.quick.results => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\scan_results\aps.scan.results => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\language\de.xml => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\language\en.xml => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\language\fr.xml => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\installer\ab.test.json => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Roaming\AnyProtectEx\installer\tempfile.t => Moved successfully.
C:\FRST\Quarantine\C\Users\david et isa\AppData\Local\nsb3FBB.tmp.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.crx.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.dat.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187.xpi.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\187_x64.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\BlockAndSurf.exe.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\J6BlockAndSurfR79.exe.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\sqlite3.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\TandemRunner.exe.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\WdfCoInstaller01009.dll.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\webinstr.inf.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Program Files (x86)\ver0BlockAndSurf\x64\webinstrNHKT.sys.xBAD => Moved successfully.
C:\FRST\Logs\Addition_30-01-2015_10-44-39.txt => Moved successfully.
C:\FRST\Logs\Addition_30-01-2015_11-15-05.txt => Moved successfully.
C:\FRST\Logs\ct => Moved successfully.
C:\FRST\Logs\FRST_30-01-2015_10-44-43.txt => Moved successfully.
C:\FRST\Logs\FRST_30-01-2015_11-19-57.txt => Moved successfully.
C:\FRST\Hives\BCD => Moved successfully.
C:\FRST\Hives\default => Moved successfully.
C:\FRST\Hives\ERDNT.CON => Moved successfully.
C:\FRST\Hives\ERDNT.EXE => Moved successfully.
C:\FRST\Hives\ERDNT.INF => Moved successfully.
C:\FRST\Hives\ERDNTDOS.LOC => Moved successfully.
C:\FRST\Hives\ERDNTWIN.LOC => Moved successfully.
C:\FRST\Hives\sam => Moved successfully.
C:\FRST\Hives\security => Moved successfully.
C:\FRST\Hives\software => Moved successfully.
C:\FRST\Hives\system => Moved successfully.
C:\FRST\Hives\Users\00000002\UsrClass.dat => Moved successfully.
C:\FRST\Hives\Users\00000001\ntuser.dat => Moved successfully.
Could not move "C:\FRST" directory. => Scheduled to move on reboot.
"C:\Users\david et isa\AppData\Local\gmsd_fr_163" => File/Directory not found.
"C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task" => File/Directory not found.
"C:\Users\david et isa\AppData\Local\SmartWeb" => File/Directory not found.
"C:\Program Files (x86)\gmsd_fr_163" => File/Directory not found.
C:\Users\david et isa\Desktop\FRST64.exe => Moved successfully.
"C:\Users\david et isa\AppData\Local\wincheck" directory move:
C:\Users\david et isa\AppData\Local\wincheck\wincheck.exe => Moved successfully.
Could not move "C:\Users\david et isa\AppData\Local\wincheck" directory. => Scheduled to move on reboot.
"C:\Users\david et isa\Desktop\NZBPlayer.lnk" => File/Directory not found.
"C:\Users\david et isa\Desktop\NZBMovies.lnk" => File/Directory not found.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NZBPlayer" => File/Directory not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZBPlayer => Moved successfully.
C:\Program Files (x86)\NZBPlayer => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\VOPackage" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\omiga-plus => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\MailUpdate => Moved successfully.
"C:\Users\david et isa\AppData\Local\Weather_Protector_LLC" => File/Directory not found.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\ProgramData\MailUpdate => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormWatch" => File/Directory not found.
"C:\Users\david et isa\AppData\Local\StormWatch" => File/Directory not found.
"C:\Program Files (x86)\StormWatch" => File/Directory not found.
"C:\Windows\System32\Tasks\Selection Tools Update" => File/Directory not found.
"C:\Windows\System32\Tasks\WindApp Update" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\WindApp.installation.log => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Selection Tools.installation.log => Moved successfully.
C:\Users\david et isa\AppData\Roaming\WTools => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Store => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Nosibay => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock" => File/Directory not found.
C:\Users\david et isa\AppData\Roaming\Bubble Dock.installation.log => Moved successfully.
C:\Users\david et isa\AppData\Roaming\Bubble Dock.boostrap.log => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job => Moved successfully.
C:\Users\david et isa\AppData\Roaming\WindApp.boostrap.log => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job => Moved successfully.
C:\Program Files (x86)\774ae2b0-c33b-4e33-af65-2e2542f6f820 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully.
C:\Program Files (x86)\HQCinema Pro 2.1V30.01 => Moved successfully.
C:\Users\david et isa\AppData\Roaming\GIZGA.exe => Moved successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 => Moved successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job => Moved successfully.
C:\Windows\System32\Tasks\GIZGA => Moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully.
C:\Windows\Tasks\GIZGA.job => Moved successfully.
C:\Users\david et isa\AppData\Local\globalUpdate => Moved successfully.
C:\Program Files (x86)\globalUpdate => Moved successfully.
C:\Users\david et isa\AppData\Local\ZombieNews => Moved successfully.
C:\ProgramData\Browser => Moved successfully.
C:\Windows\Tasks\WJCWK.job => Moved successfully.
C:\Program Files (x86)\8a8a0755-d96b-461d-be80-7ebf2bb401cd => Moved successfully.
C:\Users\david et isa\AppData\Roaming\WJCWK.exe => Moved successfully.
C:\Windows\System32\Tasks\WJCWK => Moved successfully.
C:\Windows\System32\Tasks\avastBCLRestartS-1-5-21-4018433884-1041127222-2307352900-1001 => Moved successfully.
C:\Users\david et isa\Desktop\chrome.lnk => Moved successfully.
C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} => Moved successfully.
C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} => Moved successfully.
C:\Program Files (x86)\Setup Support for SearchProtect => Moved successfully.
"C:\ProgramData\SUNEncoCu" directory move:
Could not move "C:\ProgramData\SUNEncoCu\info.dat" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\ptcnBmD.dat" => Scheduled to move on reboot.
C:\ProgramData\SUNEncoCu\ptcnBmD.exe => Moved successfully.
C:\ProgramData\SUNEncoCu\ptcnBmD.exe.config => Moved successfully.
Could not move "C:\ProgramData\SUNEncoCu\dat\KUvDuZfu.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\mddjUhcIOHj.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\mddjUhcIOHj.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\rPSuYIWKf.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\uSNOVRGZE.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu\dat\uSNOVRGZE.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\SUNEncoCu" directory. => Scheduled to move on reboot.
C:\Users\david et isa\AppData\Roaming\WJCWK => Moved successfully.
"C:\Users\david et isa\AppData\Roaming\WJCWK.exe" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1709404D-EC00-4E4E-9176-4CE5221B978F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1709404D-EC00-4E4E-9176-4CE5221B978F}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-10_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F3BEF5F-E0CF-46AD-8667-DCD5747B50B3}" => Key deleted successfully.
C:\Windows\System32\Tasks\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E94C7F5A-D2C9-4219-8BA7-CB79C50BD942}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{27614737-2DBC-4336-B2DB-09D60E4E890A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27614737-2DBC-4336-B2DB-09D60E4E890A}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{296F6012-F246-4B8F-8F71-026E1002B89D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{296F6012-F246-4B8F-8F71-026E1002B89D}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2E73FDAB-A07C-4374-A957-25224AB6AE44}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E73FDAB-A07C-4374-A957-25224AB6AE44}" => Key deleted successfully.
C:\Windows\System32\Tasks\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6DB868B6-FB38-41D1-8D37-F1DDDF6EACD0}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4BE31162-BE93-4139-B857-E73EB42BFE9F} => Key not found.
C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartWeb Upgrade Trigger Task => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4D809E02-6A32-47D7-90F4-CF64B6D3295C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D809E02-6A32-47D7-90F4-CF64B6D3295C}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-1-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58D11AD7-DC5D-46A2-B18F-8EBBF88A95A1}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5A20EF2E-4EB9-4CC8-970C-47CFB40A9853}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A20EF2E-4EB9-4CC8-970C-47CFB40A9853}" => Key deleted successfully.
C:\Windows\System32\Tasks\WJCWK not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WJCWK" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{643F10DD-BBC0-46D6-B44C-3AACF725A4AD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{643F10DD-BBC0-46D6-B44C-3AACF725A4AD}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A058289E-7723-40D0-B497-6FEB03FEB17A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A058289E-7723-40D0-B497-6FEB03FEB17A}" => Key deleted successfully.
C:\Windows\System32\Tasks\GIZGA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GIZGA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A77213A5-347A-4ADA-988A-02965808E024}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A77213A5-347A-4ADA-988A-02965808E024}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B20E6615-6E11-447F-A579-81D8E67B4388}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B20E6615-6E11-447F-A579-81D8E67B4388}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-5_user" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7E9E8B0-1207-462B-A163-EF8443088B10} => Key not found.
C:\Windows\System32\Tasks\WindApp Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WindApp Update => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B949BE6E-5B20-4CBC-9F41-2A03C1F623DC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B949BE6E-5B20-4CBC-9F41-2A03C1F623DC}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-1-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D30F9FE3-6D9D-4B26-B7FB-1BC5D11B9644}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-11" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA2AE0A3-B015-44EC-94E9-EE5CA03BA77A}" => Key deleted successfully.
C:\Windows\System32\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\921ff0a1-02ec-4964-b52f-27633c035372-5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EFFB0701-745E-4FDC-AE64-7DC1221C43E5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EFFB0701-745E-4FDC-AE64-7DC1221C43E5}" => Key deleted successfully.
C:\Windows\System32\Tasks\BlockAndSurf Update not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BlockAndSurf Update" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6C348B1-2D89-4C7F-97D4-22FFAF27AD47} => Key not found.
C:\Windows\System32\Tasks\Selection Tools Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Selection Tools Update => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FD7CC429-099A-45B5-B749-B085D820D175}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD7CC429-099A-45B5-B749-B085D820D175}" => Key deleted successfully.
C:\Windows\System32\Tasks\{7068C6D2-E26B-44FB-BD08-39EE25CE4465} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7068C6D2-E26B-44FB-BD08-39EE25CE4465}" => Key deleted successfully.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-6.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-1-7.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-10_user.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-11.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-5_user.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-6.job not found.
C:\Windows\Tasks\921ff0a1-02ec-4964-b52f-27633c035372-7.job not found.
C:\Windows\Tasks\APSnotifierPP1.job not found.
C:\Windows\Tasks\BlockAndSurf Update.job not found.
C:\Windows\Tasks\GIZGA.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
C:\Windows\Tasks\HPCeeScheduleFordavid et isa.job => Moved successfully.
C:\Windows\Tasks\WJCWK.job not found.
voilà, j'attends les consignes suivantes...
Merci encore de m'aider.
David
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Scan Malwarebytes (temps : environ 40min de scan):
==================================================
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour puis lance un examen.
A la fin du scan, clic sur "Mettre tout en quarantaine" en bas à gauche.
Redémarre l'ordinateur si besoin.
Après redémarrage, relance Malwarebytes.
Vas chercher le rapport dans l'onglet Historique.
A gauche Journal des examens.
Doube-clic sur l'examen dans la liste.
Puis en bas Copier dans le presse papier
Vas sur http://pjjoint.malekal.com et en bas, clic droit / coller pour coller le rapport du scan Malwarebytes.
Clic sur envoyer.
Dans un nouveau message ici en réponse, donne le lien pjjoint afin de pouvoir consulter le rapport.
==================================================
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour puis lance un examen.
A la fin du scan, clic sur "Mettre tout en quarantaine" en bas à gauche.
Redémarre l'ordinateur si besoin.
Après redémarrage, relance Malwarebytes.
Vas chercher le rapport dans l'onglet Historique.
A gauche Journal des examens.
Doube-clic sur l'examen dans la liste.
Puis en bas Copier dans le presse papier
Vas sur http://pjjoint.malekal.com et en bas, clic droit / coller pour coller le rapport du scan Malwarebytes.
Clic sur envoyer.
Dans un nouveau message ici en réponse, donne le lien pjjoint afin de pouvoir consulter le rapport.