Problème winservice86, my healt start...
Résolu/Fermé
A voir également:
- Problème winservice86, my healt start...
- What is my movie français - Télécharger - Divers TV & Vidéo
- My canalbox africa - Forum Box et Streaming vidéo
- My pascal - Télécharger - Édition & Programmation
- Start pxe over ipv4 - Forum Windows 10
- My cam - Télécharger - Pilotes & Matériel
11 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
24 févr. 2015 à 13:19
24 févr. 2015 à 13:19
Salut,
Suis ce tutorial : https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Cela va générer deux rapports FRST.
Envoie comme expliqué, ces deux rapports sur le site http://pjjoint.malekal.com et donne les trois liens pjjoint de ces rapports afin qu'ils puissent être consultés.
Suis ce tutorial : https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Cela va générer deux rapports FRST.
Envoie comme expliqué, ces deux rapports sur le site http://pjjoint.malekal.com et donne les trois liens pjjoint de ces rapports afin qu'ils puissent être consultés.
Voilà les liens des trois rapports générés:
http://pjjoint.malekal.com/files.php?id=20150224_m9e105u12j14
http://pjjoint.malekal.com/files.php?id=FRST_20150224_l11o10w15x8h11
http://pjjoint.malekal.com/files.php?id=20150224_c11q8u10d156
http://pjjoint.malekal.com/files.php?id=20150224_m9e105u12j14
http://pjjoint.malekal.com/files.php?id=FRST_20150224_l11o10w15x8h11
http://pjjoint.malekal.com/files.php?id=20150224_c11q8u10d156
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
24 févr. 2015 à 15:15
24 févr. 2015 à 15:15
Désinstalle Spybot,
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM-x32\...\RunOnce: [Update] => C:\Users\Vanessa\AppData\Roaming\VOPackage\VOPackage.exe /runonce
HKU\S-1-5-21-592597040-2687735098-3077039613-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:52096;https=127.0.0.1:52096 [Attention - Possible Proxy Malicieux]
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
R2 hurygire; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\jnsy248F.tmp [95232 2015-02-24] () [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
R2 QZwGwiYW; C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe [2733552 2015-02-22] (Rational Thought Solutions)
R2 relugesu; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\jnsn74B2.tmp [90624 2015-02-22] () [File not signed]
R2 tykeziro; C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B\snsz1A55.tmp [179200 2015-02-24] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-24] (SysTool PasSame LIMITED)
R2 bomujope; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\nsoF427.tmpfs [X]
R2 meceqyvi; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\nss3C1F.tmpfs [X]
S1 qrnfd_1_10_0_9; system32\drivers\qrnfd_1_10_0_9.sys [X]
2015-02-24 12:08 - 2015-02-24 12:42 - 00000378 _____ () C:\windows\Tasks\APSnotifierPP1.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00002832 _____ () C:\windows\System32\Tasks\APSnotifierPP1
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP3
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP2
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP3.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP2.job
2015-02-24 12:07 - 2015-02-24 12:08 - 00001045 _____ () C:\Users\Vanessa\Desktop\AnyProtect.lnk
2015-02-24 12:07 - 2015-02-24 12:07 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-02-24 12:04 - 2015-02-24 12:08 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-02-24 12:04 - 2015-02-24 12:04 - 00628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2015-02-24 12:04 - 2015-02-24 12:04 - 00000000 __SHD () C:\Users\Vanessa\AppData\Roaming\AnyProtectEx
2015-02-24 10:55 - 2015-02-24 11:00 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B
2015-02-24 10:54 - 2015-02-24 14:09 - 00005848 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00003124 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00002098 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000954 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000950 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00008876 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00008534 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00007174 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4
2015-02-24 10:54 - 2015-02-24 10:54 - 00007120 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12
2015-02-24 10:54 - 2015-02-24 10:54 - 00006490 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00006152 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00005504 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00005462 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5
2015-02-24 10:54 - 2015-02-24 10:54 - 00004144 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00004090 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00003952 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-02-24 10:54 - 2015-02-24 10:54 - 00003698 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-02-24 10:54 - 2015-02-24 10:54 - 00003460 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\c2a69466-1b6a-479d-a186-8814fde96b52
2015-02-24 10:53 - 2015-02-24 10:53 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B
2015-02-24 10:51 - 2015-02-24 12:07 - 00001095 _____ () C:\Users\Vanessa\Desktop\Continue Live Installation.lnk
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\istartsurf
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-02-24 10:32 - 2015-02-24 14:25 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\HealthAlert
2015-02-22 17:03 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\047fc8e8-b161-46e0-95f7-114842b19d33
2015-02-22 12:11 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424607081-11B2-8000-A90037C8CC1B
2015-02-22 11:28 - 2015-02-22 11:28 - 00000000 ____D () C:\Users\Vanessa\Documents\DoctorPC
2015-02-22 10:11 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 10:11 - 2015-02-22 10:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424599875-11B2-8000-A90037C8CC1B
2015-02-22 09:49 - 2015-02-22 09:49 - 00613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
2015-02-22 09:47 - 2015-02-22 09:52 - 00000000 ____D () C:\ProgramData\jfKahlVDCLp
2015-02-22 09:43 - 2015-02-22 09:43 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webTinstMK_01009.Wdf
2015-02-22 09:30 - 2015-02-22 09:30 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B
2015-02-22 09:04 - 2015-02-22 09:04 - 00000000 ____D () C:\Program Files (x86)\doctorpclab.com
2015-02-22 08:55 - 2015-02-22 08:55 - 00000000 _____ () C:\windows\SysWOW64\shoFC19.tmp
2015-02-21 15:07 - 2015-02-21 15:07 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 06:43 - 2015-02-20 06:43 - 00003284 _____ () C:\windows\System32\Tasks\XgWO0JZ4FtFa6Ue
2015-02-20 06:43 - 2015-02-20 06:43 - 00003244 _____ () C:\windows\System32\Tasks\iUbYU7pnMDqEdTO
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\MsnLNyJ
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\AwvKAqj
2015-02-19 22:59 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-02-20 06:43 - 2014-11-22 17:24 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\485uvqV
2015-02-24 12:04 - 2015-02-24 12:04 - 0628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2014-05-08 18:23 - 2014-05-08 18:23 - 1745400 _____ (AnyProtect.com) C:\Users\Vanessa\AppData\Local\nscCF10.tmp
2015-02-22 09:49 - 2015-02-22 09:49 - 0613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
Task: {0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {0C987386-9DC3-489D-92E1-845ED3C37715} - System32\Tasks\WIN-statsSystem => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~ulnqmuu.exe
Task: {0DE0149A-F9CC-490F-BDC9-F67508B3E41A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {117D9B6F-8853-4226-A560-EB4A08A5BEF0} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {178F4F79-E684-4932-AF32-90D6BDBF3CBC} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\Vanessa\AppData\Roaming\~uvhhbob.exe
Task: {422ECC1F-60DF-43B5-A973-DD1B31236EF2} - System32\Tasks\XgWO0JZ4FtFa6Ue => C:\Users\Vanessa\AppData\Roaming\AwvKAqj\31HPhqK.exe [2015-02-20] ( )
Task: {468BF98E-1927-4656-A1F4-8D84423A282D} - System32\Tasks\d2w0LRM9rtmn6tm => C:\Users\Vanessa\AppData\Roaming\485uvqV\mxtOCkT.exe [2014-11-22] ( )
Task: {5631BF67-F221-4A49-9A0C-2053579C95EF} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\Vanessa\AppData\Roaming\~wcelxww.exe
Task: {58166C1C-354A-4226-9A4E-7D492FB516FD} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {587B13D6-7DBF-4D69-B379-106BBB58427D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-06] (Google Inc.)
Task: {5BC31D35-B7BD-43BB-A020-3E150F44227A} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {65DA33EC-1A2A-4C5A-8980-996ED001DBE7} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {70D0BDA9-50E5-4A04-BAA4-D8D7D983A765} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {7B949713-9CEE-4D43-8384-01145CA263EF} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
Task: {8B4C4823-F89B-49B1-91D1-0126178ED000} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {A620DA38-26EB-4CCC-A5ED-1F184C0F75E4} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {B47F6EE3-3035-48E7-8921-A8F8A8892DFB} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {B7EE206C-47E5-496F-A6A3-D5E969048449} - System32\Tasks\EasyPartitionManager => C:\Windows\MSetup\BA46-12225A02\EPM.exe
Task: {C1908651-0CCC-49AC-8C1B-525428BB3E77} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {C50A22D2-F54D-482A-9577-DF42FF3B6FC8} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {CE014C15-E760-40DA-895E-8C6B460C3396} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {CF0897A7-A24C-47A4-8B55-079AF7408834} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
Task: {D813DD34-F61C-4A1E-BAAC-6C0FBF328F83} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {E7BF8FD8-8C81-4603-B0C0-50C41E3A5941} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {F6C03418-CC90-4E41-971D-BFAE6EF28034} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {F97E33E4-707F-4212-BF7E-E0FAF25EF590} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {FA56A535-D986-4BB5-BBBD-A9538C45469B} - System32\Tasks\WIN-statsAdmin => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~xlnhwfv.exe <==== ATTENTION
Task: {FF81C251-A38B-4099-A2C6-60825CCC8C92} - System32\Tasks\iUbYU7pnMDqEdTO => C:\Users\Vanessa\AppData\Roaming\MsnLNyJ\zYdsAxP.exe [2015-02-20] ( )
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exeF/agentregpath='winservice86' /appid=64755 /srcid='002201' /subid='0' /zdata='0' /bic=5230E0FC3B6541D0B3A6FF093D0D923BIE /verifier=d6ab68a5fb072b7d9ec7254f7c00068a /installerversion=1_36_01_22 /installationtime=1424771623 /statsdomain=http://stats.ourinfoonlinestack.com /errorsdomain=http://errors.ourinfoonlinestack.com /url=http://update.ourinfoonlinestack.com/verify/index.html /crregname='winservice86' /torpedofilepath C:\Program Files (x86)\winservice86' /asw='0_-2147483643_4096_256' /processid='15585288439C492280E4A0E1BE4EA8B4PI' /installationtime='1424771623' /installername='C:\Users\Vanessa\AppData\Local\Temp\nst25E8.tmp\Suoxoyhm.exe' /mac='1282194202+498139398+E8:11:32:C1:E5:17' /macs='e63980f13fb82856c141a96341141f6a' /sid='S-1-5-21-592597040-2687735098-3077039613-1000' /jsmainfunc=main /ffid=taylorralston@hotmail.com /chid=onhcengeacabehdkdhbdcigfolmmakof /guid1=8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7 /guid2=f146d56a-493d-404f-8b1a-db108e8a8ab1 /guid3=d240fbba-0f8a-4b79-8b35-d12161bc5f37 /guid4=43c82bea-cc19-479b-9829-87d51b4504b7 /guid5=9873dfc1-b67b-4edf-a5a6-3f238b495e8e /guid6=77cd381f-6b8d-46a2-9c9a-2169772b52a5 /guid7=467ed708-0ee6-4175-9ccc-ace8dd033d89 /guid8=c2a69466-1b6a-479d-a186-8814fde96b52 /guid9=99aa4c2c-e3e7-4bb2-b632-ba9bc0825061 /guid10=bf83907b-189a-486e-8fff-d75554578db4 /guid11=e12e92ad-b266-417b-9754-9782ba407e45 /guid12=aedde827-dcb6-43a0-bb03-c81ec8d0ba56 /guid13=228a4466-ef61-4dbd-8b80-7931cf119545 /guid14=88b00ed3-4c53-45f6-84c8-5ca6dc337c67 /guid15=e251dada-d684-4c10-aa4d-9707fa46921f /schedulereinstall=1 /useminfeatures=1 /crossrideragentinstallation=1 /compilationbot=1 /deployagent=0 /maxextfilename=1293297481.mxaddon /installto=593 /verifiertaskname='8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12' //fallbackurl='file://C:\Program Files (x86)\winservice86\vhf\index.htm <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST qui doit se trouver sur le bureau et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM-x32\...\RunOnce: [Update] => C:\Users\Vanessa\AppData\Roaming\VOPackage\VOPackage.exe /runonce
HKU\S-1-5-21-592597040-2687735098-3077039613-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:52096;https=127.0.0.1:52096 [Attention - Possible Proxy Malicieux]
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
R2 hurygire; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\jnsy248F.tmp [95232 2015-02-24] () [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
R2 QZwGwiYW; C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe [2733552 2015-02-22] (Rational Thought Solutions)
R2 relugesu; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\jnsn74B2.tmp [90624 2015-02-22] () [File not signed]
R2 tykeziro; C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B\snsz1A55.tmp [179200 2015-02-24] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-24] (SysTool PasSame LIMITED)
R2 bomujope; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\nsoF427.tmpfs [X]
R2 meceqyvi; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\nss3C1F.tmpfs [X]
S1 qrnfd_1_10_0_9; system32\drivers\qrnfd_1_10_0_9.sys [X]
2015-02-24 12:08 - 2015-02-24 12:42 - 00000378 _____ () C:\windows\Tasks\APSnotifierPP1.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00002832 _____ () C:\windows\System32\Tasks\APSnotifierPP1
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP3
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP2
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP3.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP2.job
2015-02-24 12:07 - 2015-02-24 12:08 - 00001045 _____ () C:\Users\Vanessa\Desktop\AnyProtect.lnk
2015-02-24 12:07 - 2015-02-24 12:07 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-02-24 12:04 - 2015-02-24 12:08 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-02-24 12:04 - 2015-02-24 12:04 - 00628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2015-02-24 12:04 - 2015-02-24 12:04 - 00000000 __SHD () C:\Users\Vanessa\AppData\Roaming\AnyProtectEx
2015-02-24 10:55 - 2015-02-24 11:00 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B
2015-02-24 10:54 - 2015-02-24 14:09 - 00005848 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00003124 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00002098 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000954 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000950 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00008876 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00008534 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00007174 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4
2015-02-24 10:54 - 2015-02-24 10:54 - 00007120 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12
2015-02-24 10:54 - 2015-02-24 10:54 - 00006490 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00006152 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00005504 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00005462 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5
2015-02-24 10:54 - 2015-02-24 10:54 - 00004144 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00004090 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00003952 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-02-24 10:54 - 2015-02-24 10:54 - 00003698 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-02-24 10:54 - 2015-02-24 10:54 - 00003460 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\c2a69466-1b6a-479d-a186-8814fde96b52
2015-02-24 10:53 - 2015-02-24 10:53 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B
2015-02-24 10:51 - 2015-02-24 12:07 - 00001095 _____ () C:\Users\Vanessa\Desktop\Continue Live Installation.lnk
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\istartsurf
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-02-24 10:32 - 2015-02-24 14:25 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\HealthAlert
2015-02-22 17:03 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\047fc8e8-b161-46e0-95f7-114842b19d33
2015-02-22 12:11 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424607081-11B2-8000-A90037C8CC1B
2015-02-22 11:28 - 2015-02-22 11:28 - 00000000 ____D () C:\Users\Vanessa\Documents\DoctorPC
2015-02-22 10:11 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 10:11 - 2015-02-22 10:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424599875-11B2-8000-A90037C8CC1B
2015-02-22 09:49 - 2015-02-22 09:49 - 00613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
2015-02-22 09:47 - 2015-02-22 09:52 - 00000000 ____D () C:\ProgramData\jfKahlVDCLp
2015-02-22 09:43 - 2015-02-22 09:43 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webTinstMK_01009.Wdf
2015-02-22 09:30 - 2015-02-22 09:30 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B
2015-02-22 09:04 - 2015-02-22 09:04 - 00000000 ____D () C:\Program Files (x86)\doctorpclab.com
2015-02-22 08:55 - 2015-02-22 08:55 - 00000000 _____ () C:\windows\SysWOW64\shoFC19.tmp
2015-02-21 15:07 - 2015-02-21 15:07 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 06:43 - 2015-02-20 06:43 - 00003284 _____ () C:\windows\System32\Tasks\XgWO0JZ4FtFa6Ue
2015-02-20 06:43 - 2015-02-20 06:43 - 00003244 _____ () C:\windows\System32\Tasks\iUbYU7pnMDqEdTO
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\MsnLNyJ
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\AwvKAqj
2015-02-19 22:59 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-02-20 06:43 - 2014-11-22 17:24 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\485uvqV
2015-02-24 12:04 - 2015-02-24 12:04 - 0628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2014-05-08 18:23 - 2014-05-08 18:23 - 1745400 _____ (AnyProtect.com) C:\Users\Vanessa\AppData\Local\nscCF10.tmp
2015-02-22 09:49 - 2015-02-22 09:49 - 0613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
Task: {0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {0C987386-9DC3-489D-92E1-845ED3C37715} - System32\Tasks\WIN-statsSystem => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~ulnqmuu.exe
Task: {0DE0149A-F9CC-490F-BDC9-F67508B3E41A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {117D9B6F-8853-4226-A560-EB4A08A5BEF0} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {178F4F79-E684-4932-AF32-90D6BDBF3CBC} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\Vanessa\AppData\Roaming\~uvhhbob.exe
Task: {422ECC1F-60DF-43B5-A973-DD1B31236EF2} - System32\Tasks\XgWO0JZ4FtFa6Ue => C:\Users\Vanessa\AppData\Roaming\AwvKAqj\31HPhqK.exe [2015-02-20] ( )
Task: {468BF98E-1927-4656-A1F4-8D84423A282D} - System32\Tasks\d2w0LRM9rtmn6tm => C:\Users\Vanessa\AppData\Roaming\485uvqV\mxtOCkT.exe [2014-11-22] ( )
Task: {5631BF67-F221-4A49-9A0C-2053579C95EF} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\Vanessa\AppData\Roaming\~wcelxww.exe
Task: {58166C1C-354A-4226-9A4E-7D492FB516FD} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {587B13D6-7DBF-4D69-B379-106BBB58427D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-06] (Google Inc.)
Task: {5BC31D35-B7BD-43BB-A020-3E150F44227A} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {65DA33EC-1A2A-4C5A-8980-996ED001DBE7} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {70D0BDA9-50E5-4A04-BAA4-D8D7D983A765} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {7B949713-9CEE-4D43-8384-01145CA263EF} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
Task: {8B4C4823-F89B-49B1-91D1-0126178ED000} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {A620DA38-26EB-4CCC-A5ED-1F184C0F75E4} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {B47F6EE3-3035-48E7-8921-A8F8A8892DFB} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {B7EE206C-47E5-496F-A6A3-D5E969048449} - System32\Tasks\EasyPartitionManager => C:\Windows\MSetup\BA46-12225A02\EPM.exe
Task: {C1908651-0CCC-49AC-8C1B-525428BB3E77} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {C50A22D2-F54D-482A-9577-DF42FF3B6FC8} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {CE014C15-E760-40DA-895E-8C6B460C3396} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {CF0897A7-A24C-47A4-8B55-079AF7408834} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
Task: {D813DD34-F61C-4A1E-BAAC-6C0FBF328F83} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {E7BF8FD8-8C81-4603-B0C0-50C41E3A5941} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {F6C03418-CC90-4E41-971D-BFAE6EF28034} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {F97E33E4-707F-4212-BF7E-E0FAF25EF590} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {FA56A535-D986-4BB5-BBBD-A9538C45469B} - System32\Tasks\WIN-statsAdmin => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~xlnhwfv.exe <==== ATTENTION
Task: {FF81C251-A38B-4099-A2C6-60825CCC8C92} - System32\Tasks\iUbYU7pnMDqEdTO => C:\Users\Vanessa\AppData\Roaming\MsnLNyJ\zYdsAxP.exe [2015-02-20] ( )
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exeF/agentregpath='winservice86' /appid=64755 /srcid='002201' /subid='0' /zdata='0' /bic=5230E0FC3B6541D0B3A6FF093D0D923BIE /verifier=d6ab68a5fb072b7d9ec7254f7c00068a /installerversion=1_36_01_22 /installationtime=1424771623 /statsdomain=http://stats.ourinfoonlinestack.com /errorsdomain=http://errors.ourinfoonlinestack.com /url=http://update.ourinfoonlinestack.com/verify/index.html /crregname='winservice86' /torpedofilepath C:\Program Files (x86)\winservice86' /asw='0_-2147483643_4096_256' /processid='15585288439C492280E4A0E1BE4EA8B4PI' /installationtime='1424771623' /installername='C:\Users\Vanessa\AppData\Local\Temp\nst25E8.tmp\Suoxoyhm.exe' /mac='1282194202+498139398+E8:11:32:C1:E5:17' /macs='e63980f13fb82856c141a96341141f6a' /sid='S-1-5-21-592597040-2687735098-3077039613-1000' /jsmainfunc=main /ffid=taylorralston@hotmail.com /chid=onhcengeacabehdkdhbdcigfolmmakof /guid1=8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7 /guid2=f146d56a-493d-404f-8b1a-db108e8a8ab1 /guid3=d240fbba-0f8a-4b79-8b35-d12161bc5f37 /guid4=43c82bea-cc19-479b-9829-87d51b4504b7 /guid5=9873dfc1-b67b-4edf-a5a6-3f238b495e8e /guid6=77cd381f-6b8d-46a2-9c9a-2169772b52a5 /guid7=467ed708-0ee6-4175-9ccc-ace8dd033d89 /guid8=c2a69466-1b6a-479d-a186-8814fde96b52 /guid9=99aa4c2c-e3e7-4bb2-b632-ba9bc0825061 /guid10=bf83907b-189a-486e-8fff-d75554578db4 /guid11=e12e92ad-b266-417b-9754-9782ba407e45 /guid12=aedde827-dcb6-43a0-bb03-c81ec8d0ba56 /guid13=228a4466-ef61-4dbd-8b80-7931cf119545 /guid14=88b00ed3-4c53-45f6-84c8-5ca6dc337c67 /guid15=e251dada-d684-4c10-aa4d-9707fa46921f /schedulereinstall=1 /useminfeatures=1 /crossrideragentinstallation=1 /compilationbot=1 /deployagent=0 /maxextfilename=1293297481.mxaddon /installto=593 /verifiertaskname='8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12' //fallbackurl='file://C:\Program Files (x86)\winservice86\vhf\index.htm <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST qui doit se trouver sur le bureau et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
- Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
- Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
- Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=
Voilà la suite:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-02-2015
Ran by Vanessa at 2015-02-24 18:01:54 Run:1
Running from C:\Users\Vanessa\Desktop
Loaded Profiles: Vanessa (Available profiles: Vanessa)
Boot Mode: Normal
==============================================
Content of fixlist:
HKLM-x32\...\RunOnce: [Update] => C:\Users\Vanessa\AppData\Roaming\VOPackage\VOPackage.exe /runonce
HKU\S-1-5-21-592597040-2687735098-3077039613-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:52096;https=127.0.0.1:52096 [Attention - Possible Proxy Malicieux]
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
R2 hurygire; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\jnsy248F.tmp [95232 2015-02-24] () [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
R2 QZwGwiYW; C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe [2733552 2015-02-22] (Rational Thought Solutions)
R2 relugesu; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\jnsn74B2.tmp [90624 2015-02-22] () [File not signed]
R2 tykeziro; C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B\snsz1A55.tmp [179200 2015-02-24] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-24] (SysTool PasSame LIMITED)
R2 bomujope; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\nsoF427.tmpfs [X]
R2 meceqyvi; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\nss3C1F.tmpfs [X]
S1 qrnfd_1_10_0_9; system32\drivers\qrnfd_1_10_0_9.sys [X]
2015-02-24 12:08 - 2015-02-24 12:42 - 00000378 _____ () C:\windows\Tasks\APSnotifierPP1.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00002832 _____ () C:\windows\System32\Tasks\APSnotifierPP1
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP3
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP2
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP3.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP2.job
2015-02-24 12:07 - 2015-02-24 12:08 - 00001045 _____ () C:\Users\Vanessa\Desktop\AnyProtect.lnk
2015-02-24 12:07 - 2015-02-24 12:07 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-02-24 12:04 - 2015-02-24 12:08 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-02-24 12:04 - 2015-02-24 12:04 - 00628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2015-02-24 12:04 - 2015-02-24 12:04 - 00000000 __SHD () C:\Users\Vanessa\AppData\Roaming\AnyProtectEx
2015-02-24 10:55 - 2015-02-24 11:00 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B
2015-02-24 10:54 - 2015-02-24 14:09 - 00005848 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00003124 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00002098 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000954 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000950 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00008876 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00008534 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00007174 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4
2015-02-24 10:54 - 2015-02-24 10:54 - 00007120 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12
2015-02-24 10:54 - 2015-02-24 10:54 - 00006490 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00006152 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00005504 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00005462 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5
2015-02-24 10:54 - 2015-02-24 10:54 - 00004144 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00004090 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00003952 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-02-24 10:54 - 2015-02-24 10:54 - 00003698 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-02-24 10:54 - 2015-02-24 10:54 - 00003460 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\c2a69466-1b6a-479d-a186-8814fde96b52
2015-02-24 10:53 - 2015-02-24 10:53 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B
2015-02-24 10:51 - 2015-02-24 12:07 - 00001095 _____ () C:\Users\Vanessa\Desktop\Continue Live Installation.lnk
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\istartsurf
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-02-24 10:32 - 2015-02-24 14:25 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\HealthAlert
2015-02-22 17:03 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\047fc8e8-b161-46e0-95f7-114842b19d33
2015-02-22 12:11 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424607081-11B2-8000-A90037C8CC1B
2015-02-22 11:28 - 2015-02-22 11:28 - 00000000 ____D () C:\Users\Vanessa\Documents\DoctorPC
2015-02-22 10:11 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 10:11 - 2015-02-22 10:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424599875-11B2-8000-A90037C8CC1B
2015-02-22 09:49 - 2015-02-22 09:49 - 00613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
2015-02-22 09:47 - 2015-02-22 09:52 - 00000000 ____D () C:\ProgramData\jfKahlVDCLp
2015-02-22 09:43 - 2015-02-22 09:43 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webTinstMK_01009.Wdf
2015-02-22 09:30 - 2015-02-22 09:30 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B
2015-02-22 09:04 - 2015-02-22 09:04 - 00000000 ____D () C:\Program Files (x86)\doctorpclab.com
2015-02-22 08:55 - 2015-02-22 08:55 - 00000000 _____ () C:\windows\SysWOW64\shoFC19.tmp
2015-02-21 15:07 - 2015-02-21 15:07 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 06:43 - 2015-02-20 06:43 - 00003284 _____ () C:\windows\System32\Tasks\XgWO0JZ4FtFa6Ue
2015-02-20 06:43 - 2015-02-20 06:43 - 00003244 _____ () C:\windows\System32\Tasks\iUbYU7pnMDqEdTO
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\MsnLNyJ
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\AwvKAqj
2015-02-19 22:59 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-02-20 06:43 - 2014-11-22 17:24 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\485uvqV
2015-02-24 12:04 - 2015-02-24 12:04 - 0628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2014-05-08 18:23 - 2014-05-08 18:23 - 1745400 _____ (AnyProtect.com) C:\Users\Vanessa\AppData\Local\nscCF10.tmp
2015-02-22 09:49 - 2015-02-22 09:49 - 0613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
Task: {0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {0C987386-9DC3-489D-92E1-845ED3C37715} - System32\Tasks\WIN-statsSystem => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~ulnqmuu.exe
Task: {0DE0149A-F9CC-490F-BDC9-F67508B3E41A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {117D9B6F-8853-4226-A560-EB4A08A5BEF0} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {178F4F79-E684-4932-AF32-90D6BDBF3CBC} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\Vanessa\AppData\Roaming\~uvhhbob.exe
Task: {422ECC1F-60DF-43B5-A973-DD1B31236EF2} - System32\Tasks\XgWO0JZ4FtFa6Ue => C:\Users\Vanessa\AppData\Roaming\AwvKAqj\31HPhqK.exe [2015-02-20] ( )
Task: {468BF98E-1927-4656-A1F4-8D84423A282D} - System32\Tasks\d2w0LRM9rtmn6tm => C:\Users\Vanessa\AppData\Roaming\485uvqV\mxtOCkT.exe [2014-11-22] ( )
Task: {5631BF67-F221-4A49-9A0C-2053579C95EF} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\Vanessa\AppData\Roaming\~wcelxww.exe
Task: {58166C1C-354A-4226-9A4E-7D492FB516FD} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {587B13D6-7DBF-4D69-B379-106BBB58427D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-06] (Google Inc.)
Task: {5BC31D35-B7BD-43BB-A020-3E150F44227A} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {65DA33EC-1A2A-4C5A-8980-996ED001DBE7} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {70D0BDA9-50E5-4A04-BAA4-D8D7D983A765} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {7B949713-9CEE-4D43-8384-01145CA263EF} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
Task: {8B4C4823-F89B-49B1-91D1-0126178ED000} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {A620DA38-26EB-4CCC-A5ED-1F184C0F75E4} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {B47F6EE3-3035-48E7-8921-A8F8A8892DFB} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {B7EE206C-47E5-496F-A6A3-D5E969048449} - System32\Tasks\EasyPartitionManager => C:\Windows\MSetup\BA46-12225A02\EPM.exe
Task: {C1908651-0CCC-49AC-8C1B-525428BB3E77} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {C50A22D2-F54D-482A-9577-DF42FF3B6FC8} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {CE014C15-E760-40DA-895E-8C6B460C3396} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {CF0897A7-A24C-47A4-8B55-079AF7408834} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
Task: {D813DD34-F61C-4A1E-BAAC-6C0FBF328F83} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {E7BF8FD8-8C81-4603-B0C0-50C41E3A5941} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {F6C03418-CC90-4E41-971D-BFAE6EF28034} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {F97E33E4-707F-4212-BF7E-E0FAF25EF590} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {FA56A535-D986-4BB5-BBBD-A9538C45469B} - System32\Tasks\WIN-statsAdmin => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~xlnhwfv.exe <==== ATTENTION
Task: {FF81C251-A38B-4099-A2C6-60825CCC8C92} - System32\Tasks\iUbYU7pnMDqEdTO => C:\Users\Vanessa\AppData\Roaming\MsnLNyJ\zYdsAxP.exe [2015-02-20] ( )
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exeF /agentregpath='winservice86' /appid=64755 /srcid='002201' /subid='0' /zdata='0' /bic=5230E0FC3B6541D0B3A6FF093D0D923BIE /verifier=d6ab68a5fb072b7d9ec7254f7c00068a /installerversion=1_36_01_22 /installationtime=1424771623 /statsdomain=http://stats.ourinfoonlinestack.com /errorsdomain=http://errors.ourinfoonlinestack.com /url=http://update.ourinfoonlinestack.com/verify/index.html /crregname='winservice86' /torpedofilepath C:\Program Files (x86)\winservice86' /asw='0_-2147483643_4096_256' /processid='15585288439C492280E4A0E1BE4EA8B4PI' /installationtime='1424771623' /installername='C:\Users\Vanessa\AppData\Local\Temp\nst25E8.tmp\Suoxoyhm.exe' /mac='1282194202+498139398+E8:11:32:C1:E5:17' /macs='e63980f13fb82856c141a96341141f6a' /sid='S-1-5-21-592597040-2687735098-3077039613-1000' /jsmainfunc=main /ffid=***@*** /chid=onhcengeacabehdkdhbdcigfolmmakof /guid1=8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7 /guid2=f146d56a-493d-404f-8b1a-db108e8a8ab1 /guid3=d240fbba-0f8a-4b79-8b35-d12161bc5f37 /guid4=43c82bea-cc19-479b-9829-87d51b4504b7 /guid5=9873dfc1-b67b-4edf-a5a6-3f238b495e8e /guid6=77cd381f-6b8d-46a2-9c9a-2169772b52a5 /guid7=467ed708-0ee6-4175-9ccc-ace8dd033d89 /guid8=c2a69466-1b6a-479d-a186-8814fde96b52 /guid9=99aa4c2c-e3e7-4bb2-b632-ba9bc0825061 /guid10=bf83907b-189a-486e-8fff-d75554578db4 /guid11=e12e92ad-b266-417b-9754-9782ba407e45 /guid12=aedde827-dcb6-43a0-bb03-c81ec8d0ba56 /guid13=228a4466-ef61-4dbd-8b80-7931cf119545 /guid14=88b00ed3-4c53-45f6-84c8-5ca6dc337c67 /guid15=e251dada-d684-4c10-aa4d-9707fa46921f /schedulereinstall=1 /useminfeatures=1 /crossrideragentinstallation=1 /compilationbot=1 /deployagent=0 /maxextfilename=1293297481.mxaddon /installto=593 /verifiertaskname='8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12' //fallbackurl='file://C:\Program Files (x86)\winservice86\vhf\index.htm <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\Update => value deleted successfully.
"HKU\S-1-5-21-592597040-2687735098-3077039613-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
hurygire => Service stopped successfully.
hurygire => Service deleted successfully.
IHProtect Service => Service stopped successfully.
IHProtect Service => Service deleted successfully.
QZwGwiYW => Unable to stop service
QZwGwiYW => Service deleted successfully.
relugesu => Service stopped successfully.
relugesu => Service deleted successfully.
tykeziro => Service stopped successfully.
tykeziro => Service deleted successfully.
WindowsMangerProtect => Service stopped successfully.
WindowsMangerProtect => Service deleted successfully.
bomujope => Service stopped successfully.
bomujope => Service deleted successfully.
meceqyvi => Service stopped successfully.
meceqyvi => Service deleted successfully.
qrnfd_1_10_0_9 => Service deleted successfully.
C:\windows\Tasks\APSnotifierPP1.job => Moved successfully.
C:\windows\System32\Tasks\APSnotifierPP1 => Moved successfully.
C:\windows\System32\Tasks\APSnotifierPP3 => Moved successfully.
C:\windows\System32\Tasks\APSnotifierPP2 => Moved successfully.
C:\windows\Tasks\APSnotifierPP3.job => Moved successfully.
C:\windows\Tasks\APSnotifierPP2.job => Moved successfully.
C:\Users\Vanessa\Desktop\AnyProtect.lnk => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup => Moved successfully.
C:\Program Files (x86)\AnyProtectEx => Moved successfully.
C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\AnyProtectEx => Moved successfully.
C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job => Moved successfully.
C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job => Moved successfully.
C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully.
C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job => Moved successfully.
C:\Users\Vanessa\AppData\Local\globalUpdate => Moved successfully.
C:\Program Files (x86)\winservice86 => Moved successfully.
C:\Program Files (x86)\globalUpdate => Moved successfully.
C:\Program Files (x86)\c2a69466-1b6a-479d-a186-8814fde96b52 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Users\Vanessa\Desktop\Continue Live Installation.lnk => Moved successfully.
C:\ProgramData\IHProtectUpDate => Moved successfully.
C:\Program Files (x86)\XTab => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\istartsurf => Moved successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\Users\Vanessa\AppData\Local\HealthAlert => Moved successfully.
C:\Program Files (x86)\047fc8e8-b161-46e0-95f7-114842b19d33 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424607081-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Users\Vanessa\Documents\DoctorPC => Moved successfully.
C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424599875-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Users\Vanessa\AppData\Local\nsfFC82.tmp => Moved successfully.
"C:\ProgramData\jfKahlVDCLp" directory move:
Could not move "C:\ProgramData\jfKahlVDCLp\info.dat" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\QZwGwiYW.dat" => Scheduled to move on reboot.
C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe => Moved successfully.
C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe.config => Moved successfully.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\MSuyhb.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\xPFyDFXOca.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp" directory. => Scheduled to move on reboot.
C:\windows\system32\Drivers\Msft_Kernel_webTinstMK_01009.Wdf => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Program Files (x86)\doctorpclab.com => Moved successfully.
C:\windows\SysWOW64\shoFC19.tmp => Moved successfully.
C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b => Moved successfully.
C:\windows\System32\Tasks\XgWO0JZ4FtFa6Ue => Moved successfully.
C:\windows\System32\Tasks\iUbYU7pnMDqEdTO => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\MsnLNyJ => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\AwvKAqj => Moved successfully.
C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\485uvqV => Moved successfully.
"C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp" => File/Directory not found.
C:\Users\Vanessa\AppData\Local\nscCF10.tmp => Moved successfully.
"C:\Users\Vanessa\AppData\Local\nsfFC82.tmp" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0C987386-9DC3-489D-92E1-845ED3C37715}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C987386-9DC3-489D-92E1-845ED3C37715}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsSystem => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsSystem" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0DE0149A-F9CC-490F-BDC9-F67508B3E41A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0DE0149A-F9CC-490F-BDC9-F67508B3E41A}" => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{117D9B6F-8853-4226-A560-EB4A08A5BEF0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{117D9B6F-8853-4226-A560-EB4A08A5BEF0}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{178F4F79-E684-4932-AF32-90D6BDBF3CBC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{178F4F79-E684-4932-AF32-90D6BDBF3CBC}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-fdfEfEfAfC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-fdfEfEfAfC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{422ECC1F-60DF-43B5-A973-DD1B31236EF2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{422ECC1F-60DF-43B5-A973-DD1B31236EF2}" => Key deleted successfully.
C:\Windows\System32\Tasks\XgWO0JZ4FtFa6Ue not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\XgWO0JZ4FtFa6Ue" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{468BF98E-1927-4656-A1F4-8D84423A282D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{468BF98E-1927-4656-A1F4-8D84423A282D}" => Key deleted successfully.
C:\Windows\System32\Tasks\d2w0LRM9rtmn6tm => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d2w0LRM9rtmn6tm" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5631BF67-F221-4A49-9A0C-2053579C95EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5631BF67-F221-4A49-9A0C-2053579C95EF}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-GGfIfEGCfEGbGffIfCfEGC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{58166C1C-354A-4226-9A4E-7D492FB516FD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58166C1C-354A-4226-9A4E-7D492FB516FD}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{587B13D6-7DBF-4D69-B379-106BBB58427D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{587B13D6-7DBF-4D69-B379-106BBB58427D}" => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5BC31D35-B7BD-43BB-A020-3E150F44227A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BC31D35-B7BD-43BB-A020-3E150F44227A}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{65DA33EC-1A2A-4C5A-8980-996ED001DBE7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65DA33EC-1A2A-4C5A-8980-996ED001DBE7}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{70D0BDA9-50E5-4A04-BAA4-D8D7D983A765}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70D0BDA9-50E5-4A04-BAA4-D8D7D983A765}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7B949713-9CEE-4D43-8384-01145CA263EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7B949713-9CEE-4D43-8384-01145CA263EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8B4C4823-F89B-49B1-91D1-0126178ED000}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B4C4823-F89B-49B1-91D1-0126178ED000}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A620DA38-26EB-4CCC-A5ED-1F184C0F75E4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A620DA38-26EB-4CCC-A5ED-1F184C0F75E4}" => Key deleted successfully.
C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B47F6EE3-3035-48E7-8921-A8F8A8892DFB}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B47F6EE3-3035-48E7-8921-A8F8A8892DFB}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B7EE206C-47E5-496F-A6A3-D5E969048449}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7EE206C-47E5-496F-A6A3-D5E969048449}" => Key deleted successfully.
C:\Windows\System32\Tasks\EasyPartitionManager => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasyPartitionManager" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C1908651-0CCC-49AC-8C1B-525428BB3E77}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C1908651-0CCC-49AC-8C1B-525428BB3E77}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C50A22D2-F54D-482A-9577-DF42FF3B6FC8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C50A22D2-F54D-482A-9577-DF42FF3B6FC8}" => Key deleted successfully.
C:\Windows\System32\Tasks\BatteryLifeExtender => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BatteryLifeExtender" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CE014C15-E760-40DA-895E-8C6B460C3396}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CE014C15-E760-40DA-895E-8C6B460C3396}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CF0897A7-A24C-47A4-8B55-079AF7408834}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CF0897A7-A24C-47A4-8B55-079AF7408834}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate 2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D813DD34-F61C-4A1E-BAAC-6C0FBF328F83}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D813DD34-F61C-4A1E-BAAC-6C0FBF328F83}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E7BF8FD8-8C81-4603-B0C0-50C41E3A5941}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E7BF8FD8-8C81-4603-B0C0-50C41E3A5941}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F6C03418-CC90-4E41-971D-BFAE6EF28034}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6C03418-CC90-4E41-971D-BFAE6EF28034}" => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F97E33E4-707F-4212-BF7E-E0FAF25EF590}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F97E33E4-707F-4212-BF7E-E0FAF25EF590}" => Key deleted successfully.
C:\Windows\System32\Tasks\CCleanerSkipUAC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FA56A535-D986-4BB5-BBBD-A9538C45469B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA56A535-D986-4BB5-BBBD-A9538C45469B}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsAdmin => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FF81C251-A38B-4099-A2C6-60825CCC8C92}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FF81C251-A38B-4099-A2C6-60825CCC8C92}" => Key deleted successfully.
C:\Windows\System32\Tasks\iUbYU7pnMDqEdTO not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iUbYU7pnMDqEdTO" => Key deleted successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job not found.
C:\windows\Tasks\APSnotifierPP1.job not found.
C:\windows\Tasks\APSnotifierPP2.job not found.
C:\windows\Tasks\APSnotifierPP3.job not found.
C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
C:\ProgramData\jfKahlVDCLp\QZwGwiYW.dat => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe.config => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\MSuyhb.dll => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe.config => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\xPFyDFXOca.dll => Is moved successfully.
C:\ProgramData\jfKahlVDCLp => Is moved successfully.
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-02-2015
Ran by Vanessa at 2015-02-24 18:01:54 Run:1
Running from C:\Users\Vanessa\Desktop
Loaded Profiles: Vanessa (Available profiles: Vanessa)
Boot Mode: Normal
==============================================
Content of fixlist:
HKLM-x32\...\RunOnce: [Update] => C:\Users\Vanessa\AppData\Roaming\VOPackage\VOPackage.exe /runonce
HKU\S-1-5-21-592597040-2687735098-3077039613-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:52096;https=127.0.0.1:52096 [Attention - Possible Proxy Malicieux]
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
R2 hurygire; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\jnsy248F.tmp [95232 2015-02-24] () [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
R2 QZwGwiYW; C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe [2733552 2015-02-22] (Rational Thought Solutions)
R2 relugesu; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\jnsn74B2.tmp [90624 2015-02-22] () [File not signed]
R2 tykeziro; C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B\snsz1A55.tmp [179200 2015-02-24] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-24] (SysTool PasSame LIMITED)
R2 bomujope; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B\nsoF427.tmpfs [X]
R2 meceqyvi; C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B\nss3C1F.tmpfs [X]
S1 qrnfd_1_10_0_9; system32\drivers\qrnfd_1_10_0_9.sys [X]
2015-02-24 12:08 - 2015-02-24 12:42 - 00000378 _____ () C:\windows\Tasks\APSnotifierPP1.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00002832 _____ () C:\windows\System32\Tasks\APSnotifierPP1
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP3
2015-02-24 12:08 - 2015-02-24 12:08 - 00002830 _____ () C:\windows\System32\Tasks\APSnotifierPP2
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP3.job
2015-02-24 12:08 - 2015-02-24 12:08 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP2.job
2015-02-24 12:07 - 2015-02-24 12:08 - 00001045 _____ () C:\Users\Vanessa\Desktop\AnyProtect.lnk
2015-02-24 12:07 - 2015-02-24 12:07 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-02-24 12:04 - 2015-02-24 12:08 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-02-24 12:04 - 2015-02-24 12:04 - 00628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2015-02-24 12:04 - 2015-02-24 12:04 - 00000000 __SHD () C:\Users\Vanessa\AppData\Roaming\AnyProtectEx
2015-02-24 10:55 - 2015-02-24 11:00 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B
2015-02-24 10:54 - 2015-02-24 14:09 - 00005848 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00003124 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job
2015-02-24 10:54 - 2015-02-24 14:09 - 00002098 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000954 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-02-24 10:54 - 2015-02-24 10:59 - 00000950 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00008876 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00008534 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00007174 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4
2015-02-24 10:54 - 2015-02-24 10:54 - 00007120 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12
2015-02-24 10:54 - 2015-02-24 10:54 - 00006490 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7
2015-02-24 10:54 - 2015-02-24 10:54 - 00006152 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6
2015-02-24 10:54 - 2015-02-24 10:54 - 00005504 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00005462 _____ () C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5
2015-02-24 10:54 - 2015-02-24 10:54 - 00004144 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00004090 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00003952 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-02-24 10:54 - 2015-02-24 10:54 - 00003698 _____ () C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-02-24 10:54 - 2015-02-24 10:54 - 00003460 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00002432 _____ () C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-02-24 10:54 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\c2a69466-1b6a-479d-a186-8814fde96b52
2015-02-24 10:53 - 2015-02-24 10:53 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B
2015-02-24 10:51 - 2015-02-24 12:07 - 00001095 _____ () C:\Users\Vanessa\Desktop\Continue Live Installation.lnk
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-02-24 10:51 - 2015-02-24 10:51 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\istartsurf
2015-02-24 10:50 - 2015-02-24 10:50 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-02-24 10:32 - 2015-02-24 14:25 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\HealthAlert
2015-02-22 17:03 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\047fc8e8-b161-46e0-95f7-114842b19d33
2015-02-22 12:11 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424607081-11B2-8000-A90037C8CC1B
2015-02-22 11:28 - 2015-02-22 11:28 - 00000000 ____D () C:\Users\Vanessa\Documents\DoctorPC
2015-02-22 10:11 - 2015-02-22 17:03 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 10:11 - 2015-02-22 10:11 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424599875-11B2-8000-A90037C8CC1B
2015-02-22 09:49 - 2015-02-22 09:49 - 00613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
2015-02-22 09:47 - 2015-02-22 09:52 - 00000000 ____D () C:\ProgramData\jfKahlVDCLp
2015-02-22 09:43 - 2015-02-22 09:43 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webTinstMK_01009.Wdf
2015-02-22 09:30 - 2015-02-22 09:30 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B
2015-02-22 09:04 - 2015-02-22 09:04 - 00000000 ____D () C:\Program Files (x86)\doctorpclab.com
2015-02-22 08:55 - 2015-02-22 08:55 - 00000000 _____ () C:\windows\SysWOW64\shoFC19.tmp
2015-02-21 15:07 - 2015-02-21 15:07 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 06:43 - 2015-02-20 06:43 - 00003284 _____ () C:\windows\System32\Tasks\XgWO0JZ4FtFa6Ue
2015-02-20 06:43 - 2015-02-20 06:43 - 00003244 _____ () C:\windows\System32\Tasks\iUbYU7pnMDqEdTO
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\MsnLNyJ
2015-02-20 06:43 - 2015-02-20 06:43 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\AwvKAqj
2015-02-19 22:59 - 2015-02-24 10:54 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-02-20 06:43 - 2014-11-22 17:24 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\485uvqV
2015-02-24 12:04 - 2015-02-24 12:04 - 0628496 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp
2014-05-08 18:23 - 2014-05-08 18:23 - 1745400 _____ (AnyProtect.com) C:\Users\Vanessa\AppData\Local\nscCF10.tmp
2015-02-22 09:49 - 2015-02-22 09:49 - 0613057 _____ (CMI Limited) C:\Users\Vanessa\AppData\Local\nsfFC82.tmp
Task: {0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {0C987386-9DC3-489D-92E1-845ED3C37715} - System32\Tasks\WIN-statsSystem => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~ulnqmuu.exe
Task: {0DE0149A-F9CC-490F-BDC9-F67508B3E41A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {117D9B6F-8853-4226-A560-EB4A08A5BEF0} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {178F4F79-E684-4932-AF32-90D6BDBF3CBC} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\Vanessa\AppData\Roaming\~uvhhbob.exe
Task: {422ECC1F-60DF-43B5-A973-DD1B31236EF2} - System32\Tasks\XgWO0JZ4FtFa6Ue => C:\Users\Vanessa\AppData\Roaming\AwvKAqj\31HPhqK.exe [2015-02-20] ( )
Task: {468BF98E-1927-4656-A1F4-8D84423A282D} - System32\Tasks\d2w0LRM9rtmn6tm => C:\Users\Vanessa\AppData\Roaming\485uvqV\mxtOCkT.exe [2014-11-22] ( )
Task: {5631BF67-F221-4A49-9A0C-2053579C95EF} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\Vanessa\AppData\Roaming\~wcelxww.exe
Task: {58166C1C-354A-4226-9A4E-7D492FB516FD} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {587B13D6-7DBF-4D69-B379-106BBB58427D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-06] (Google Inc.)
Task: {5BC31D35-B7BD-43BB-A020-3E150F44227A} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {65DA33EC-1A2A-4C5A-8980-996ED001DBE7} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-02-24] (AnyProtect.com) <==== ATTENTION
Task: {70D0BDA9-50E5-4A04-BAA4-D8D7D983A765} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {7B949713-9CEE-4D43-8384-01145CA263EF} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
Task: {8B4C4823-F89B-49B1-91D1-0126178ED000} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {A620DA38-26EB-4CCC-A5ED-1F184C0F75E4} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {B47F6EE3-3035-48E7-8921-A8F8A8892DFB} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {B7EE206C-47E5-496F-A6A3-D5E969048449} - System32\Tasks\EasyPartitionManager => C:\Windows\MSetup\BA46-12225A02\EPM.exe
Task: {C1908651-0CCC-49AC-8C1B-525428BB3E77} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {C50A22D2-F54D-482A-9577-DF42FF3B6FC8} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {CE014C15-E760-40DA-895E-8C6B460C3396} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {CF0897A7-A24C-47A4-8B55-079AF7408834} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
Task: {D813DD34-F61C-4A1E-BAAC-6C0FBF328F83} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-02-24] (globalUpdate) <==== ATTENTION
Task: {E7BF8FD8-8C81-4603-B0C0-50C41E3A5941} - System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe [2015-02-24] (Corporate Inc) <==== ATTENTION
Task: {F6C03418-CC90-4E41-971D-BFAE6EF28034} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {F97E33E4-707F-4212-BF7E-E0FAF25EF590} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {FA56A535-D986-4BB5-BBBD-A9538C45469B} - System32\Tasks\WIN-statsAdmin => C:\Users\Vanessa\AppData\Local\Microsoft\WinU\~xlnhwfv.exe <==== ATTENTION
Task: {FF81C251-A38B-4099-A2C6-60825CCC8C92} - System32\Tasks\iUbYU7pnMDqEdTO => C:\Users\Vanessa\AppData\Roaming\MsnLNyJ\zYdsAxP.exe [2015-02-20] ( )
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.exeF /agentregpath='winservice86' /appid=64755 /srcid='002201' /subid='0' /zdata='0' /bic=5230E0FC3B6541D0B3A6FF093D0D923BIE /verifier=d6ab68a5fb072b7d9ec7254f7c00068a /installerversion=1_36_01_22 /installationtime=1424771623 /statsdomain=http://stats.ourinfoonlinestack.com /errorsdomain=http://errors.ourinfoonlinestack.com /url=http://update.ourinfoonlinestack.com/verify/index.html /crregname='winservice86' /torpedofilepath C:\Program Files (x86)\winservice86' /asw='0_-2147483643_4096_256' /processid='15585288439C492280E4A0E1BE4EA8B4PI' /installationtime='1424771623' /installername='C:\Users\Vanessa\AppData\Local\Temp\nst25E8.tmp\Suoxoyhm.exe' /mac='1282194202+498139398+E8:11:32:C1:E5:17' /macs='e63980f13fb82856c141a96341141f6a' /sid='S-1-5-21-592597040-2687735098-3077039613-1000' /jsmainfunc=main /ffid=***@*** /chid=onhcengeacabehdkdhbdcigfolmmakof /guid1=8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7 /guid2=f146d56a-493d-404f-8b1a-db108e8a8ab1 /guid3=d240fbba-0f8a-4b79-8b35-d12161bc5f37 /guid4=43c82bea-cc19-479b-9829-87d51b4504b7 /guid5=9873dfc1-b67b-4edf-a5a6-3f238b495e8e /guid6=77cd381f-6b8d-46a2-9c9a-2169772b52a5 /guid7=467ed708-0ee6-4175-9ccc-ace8dd033d89 /guid8=c2a69466-1b6a-479d-a186-8814fde96b52 /guid9=99aa4c2c-e3e7-4bb2-b632-ba9bc0825061 /guid10=bf83907b-189a-486e-8fff-d75554578db4 /guid11=e12e92ad-b266-417b-9754-9782ba407e45 /guid12=aedde827-dcb6-43a0-bb03-c81ec8d0ba56 /guid13=228a4466-ef61-4dbd-8b80-7931cf119545 /guid14=88b00ed3-4c53-45f6-84c8-5ca6dc337c67 /guid15=e251dada-d684-4c10-aa4d-9707fa46921f /schedulereinstall=1 /useminfeatures=1 /crossrideragentinstallation=1 /compilationbot=1 /deployagent=0 /maxextfilename=1293297481.mxaddon /installto=593 /verifiertaskname='8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12' //fallbackurl='file://C:\Program Files (x86)\winservice86\vhf\index.htm <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.exe <==== ATTENTION
Task: C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job => C:\Program Files (x86)\winservice86\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\Update => value deleted successfully.
"HKU\S-1-5-21-592597040-2687735098-3077039613-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
hurygire => Service stopped successfully.
hurygire => Service deleted successfully.
IHProtect Service => Service stopped successfully.
IHProtect Service => Service deleted successfully.
QZwGwiYW => Unable to stop service
QZwGwiYW => Service deleted successfully.
relugesu => Service stopped successfully.
relugesu => Service deleted successfully.
tykeziro => Service stopped successfully.
tykeziro => Service deleted successfully.
WindowsMangerProtect => Service stopped successfully.
WindowsMangerProtect => Service deleted successfully.
bomujope => Service stopped successfully.
bomujope => Service deleted successfully.
meceqyvi => Service stopped successfully.
meceqyvi => Service deleted successfully.
qrnfd_1_10_0_9 => Service deleted successfully.
C:\windows\Tasks\APSnotifierPP1.job => Moved successfully.
C:\windows\System32\Tasks\APSnotifierPP1 => Moved successfully.
C:\windows\System32\Tasks\APSnotifierPP3 => Moved successfully.
C:\windows\System32\Tasks\APSnotifierPP2 => Moved successfully.
C:\windows\Tasks\APSnotifierPP3.job => Moved successfully.
C:\windows\Tasks\APSnotifierPP2.job => Moved successfully.
C:\Users\Vanessa\Desktop\AnyProtect.lnk => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup => Moved successfully.
C:\Program Files (x86)\AnyProtectEx => Moved successfully.
C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\AnyProtectEx => Moved successfully.
C:\Users\Vanessa\AppData\Local\93D7D4E0-1424775337-11B2-8000-A90037C8CC1B => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job => Moved successfully.
C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job => Moved successfully.
C:\windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job => Moved successfully.
C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully.
C:\windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job => Moved successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job => Moved successfully.
C:\Users\Vanessa\AppData\Local\globalUpdate => Moved successfully.
C:\Program Files (x86)\winservice86 => Moved successfully.
C:\Program Files (x86)\globalUpdate => Moved successfully.
C:\Program Files (x86)\c2a69466-1b6a-479d-a186-8814fde96b52 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424775187-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Users\Vanessa\Desktop\Continue Live Installation.lnk => Moved successfully.
C:\ProgramData\IHProtectUpDate => Moved successfully.
C:\Program Files (x86)\XTab => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\istartsurf => Moved successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\Users\Vanessa\AppData\Local\HealthAlert => Moved successfully.
C:\Program Files (x86)\047fc8e8-b161-46e0-95f7-114842b19d33 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424607081-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Users\Vanessa\Documents\DoctorPC => Moved successfully.
C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424599875-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Users\Vanessa\AppData\Local\nsfFC82.tmp => Moved successfully.
"C:\ProgramData\jfKahlVDCLp" directory move:
Could not move "C:\ProgramData\jfKahlVDCLp\info.dat" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\QZwGwiYW.dat" => Scheduled to move on reboot.
C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe => Moved successfully.
C:\ProgramData\jfKahlVDCLp\QZwGwiYW.exe.config => Moved successfully.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\MSuyhb.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp\dat\xPFyDFXOca.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\jfKahlVDCLp" directory. => Scheduled to move on reboot.
C:\windows\system32\Drivers\Msft_Kernel_webTinstMK_01009.Wdf => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\93D7D4E0-1424597413-11B2-8000-A90037C8CC1B => Moved successfully.
C:\Program Files (x86)\doctorpclab.com => Moved successfully.
C:\windows\SysWOW64\shoFC19.tmp => Moved successfully.
C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b => Moved successfully.
C:\windows\System32\Tasks\XgWO0JZ4FtFa6Ue => Moved successfully.
C:\windows\System32\Tasks\iUbYU7pnMDqEdTO => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\MsnLNyJ => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\AwvKAqj => Moved successfully.
C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59 => Moved successfully.
C:\Users\Vanessa\AppData\Roaming\485uvqV => Moved successfully.
"C:\Users\Vanessa\AppData\Local\nsa1F1D.tmp" => File/Directory not found.
C:\Users\Vanessa\AppData\Local\nscCF10.tmp => Moved successfully.
"C:\Users\Vanessa\AppData\Local\nsfFC82.tmp" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A9EDA81-D3C0-4DC3-B4B0-B41455FC82AC}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0B617AC9-E4E0-4C6E-BD5C-832382CB8F9B}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0C987386-9DC3-489D-92E1-845ED3C37715}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C987386-9DC3-489D-92E1-845ED3C37715}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsSystem => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsSystem" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0DE0149A-F9CC-490F-BDC9-F67508B3E41A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0DE0149A-F9CC-490F-BDC9-F67508B3E41A}" => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{117D9B6F-8853-4226-A560-EB4A08A5BEF0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{117D9B6F-8853-4226-A560-EB4A08A5BEF0}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{178F4F79-E684-4932-AF32-90D6BDBF3CBC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{178F4F79-E684-4932-AF32-90D6BDBF3CBC}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-fdfEfEfAfC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-fdfEfEfAfC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{422ECC1F-60DF-43B5-A973-DD1B31236EF2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{422ECC1F-60DF-43B5-A973-DD1B31236EF2}" => Key deleted successfully.
C:\Windows\System32\Tasks\XgWO0JZ4FtFa6Ue not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\XgWO0JZ4FtFa6Ue" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{468BF98E-1927-4656-A1F4-8D84423A282D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{468BF98E-1927-4656-A1F4-8D84423A282D}" => Key deleted successfully.
C:\Windows\System32\Tasks\d2w0LRM9rtmn6tm => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d2w0LRM9rtmn6tm" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5631BF67-F221-4A49-9A0C-2053579C95EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5631BF67-F221-4A49-9A0C-2053579C95EF}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-GGfIfEGCfEGbGffIfCfEGC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{58166C1C-354A-4226-9A4E-7D492FB516FD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58166C1C-354A-4226-9A4E-7D492FB516FD}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{587B13D6-7DBF-4D69-B379-106BBB58427D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{587B13D6-7DBF-4D69-B379-106BBB58427D}" => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5BC31D35-B7BD-43BB-A020-3E150F44227A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BC31D35-B7BD-43BB-A020-3E150F44227A}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64E8DFCE-BDC8-44A4-BE42-BFE8936FAB74}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{65DA33EC-1A2A-4C5A-8980-996ED001DBE7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65DA33EC-1A2A-4C5A-8980-996ED001DBE7}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{70D0BDA9-50E5-4A04-BAA4-D8D7D983A765}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70D0BDA9-50E5-4A04-BAA4-D8D7D983A765}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7B949713-9CEE-4D43-8384-01145CA263EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7B949713-9CEE-4D43-8384-01145CA263EF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8B4C4823-F89B-49B1-91D1-0126178ED000}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B4C4823-F89B-49B1-91D1-0126178ED000}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A620DA38-26EB-4CCC-A5ED-1F184C0F75E4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A620DA38-26EB-4CCC-A5ED-1F184C0F75E4}" => Key deleted successfully.
C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B47F6EE3-3035-48E7-8921-A8F8A8892DFB}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B47F6EE3-3035-48E7-8921-A8F8A8892DFB}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B7EE206C-47E5-496F-A6A3-D5E969048449}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B7EE206C-47E5-496F-A6A3-D5E969048449}" => Key deleted successfully.
C:\Windows\System32\Tasks\EasyPartitionManager => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasyPartitionManager" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C1908651-0CCC-49AC-8C1B-525428BB3E77}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C1908651-0CCC-49AC-8C1B-525428BB3E77}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C50A22D2-F54D-482A-9577-DF42FF3B6FC8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C50A22D2-F54D-482A-9577-DF42FF3B6FC8}" => Key deleted successfully.
C:\Windows\System32\Tasks\BatteryLifeExtender => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BatteryLifeExtender" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CE014C15-E760-40DA-895E-8C6B460C3396}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CE014C15-E760-40DA-895E-8C6B460C3396}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CF0897A7-A24C-47A4-8B55-079AF7408834}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CF0897A7-A24C-47A4-8B55-079AF7408834}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate 2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D813DD34-F61C-4A1E-BAAC-6C0FBF328F83}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D813DD34-F61C-4A1E-BAAC-6C0FBF328F83}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E7BF8FD8-8C81-4603-B0C0-50C41E3A5941}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E7BF8FD8-8C81-4603-B0C0-50C41E3A5941}" => Key deleted successfully.
C:\Windows\System32\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F6C03418-CC90-4E41-971D-BFAE6EF28034}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6C03418-CC90-4E41-971D-BFAE6EF28034}" => Key deleted successfully.
C:\Windows\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F97E33E4-707F-4212-BF7E-E0FAF25EF590}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F97E33E4-707F-4212-BF7E-E0FAF25EF590}" => Key deleted successfully.
C:\Windows\System32\Tasks\CCleanerSkipUAC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FA56A535-D986-4BB5-BBBD-A9538C45469B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA56A535-D986-4BB5-BBBD-A9538C45469B}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsAdmin => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FF81C251-A38B-4099-A2C6-60825CCC8C92}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FF81C251-A38B-4099-A2C6-60825CCC8C92}" => Key deleted successfully.
C:\Windows\System32\Tasks\iUbYU7pnMDqEdTO not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\iUbYU7pnMDqEdTO" => Key deleted successfully.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-6.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-1-7.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-10_user.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-12.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-4.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-5_user.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-6.job not found.
C:\windows\Tasks\8b5b3f65-3f7a-4b60-8ad1-a20cecb53ee7-7.job not found.
C:\windows\Tasks\APSnotifierPP1.job not found.
C:\windows\Tasks\APSnotifierPP2.job not found.
C:\windows\Tasks\APSnotifierPP3.job not found.
C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-02-24 18:11:01)<
C:\ProgramData\jfKahlVDCLp\info.dat => Is moved successfully.C:\ProgramData\jfKahlVDCLp\QZwGwiYW.dat => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\GuucGN.exe.config => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\MSuyhb.dll => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\nlhFDdfm.exe.config => Is moved successfully.
C:\ProgramData\jfKahlVDCLp\dat\xPFyDFXOca.dll => Is moved successfully.
C:\ProgramData\jfKahlVDCLp => Is moved successfully.
End of Fixlog 18:11:02
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
24 févr. 2015 à 18:36
24 févr. 2015 à 18:36
ok réinitialise bien les navigateurs WEB
piuis histoire de terminer le nettoyage :
Scan Malwarebytes (temps : environ 40min de scan):
==================================================
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour puis lance un examen.
A la fin du scan, clic sur "Mettre tout en quarantaine" en bas à gauche.
Redémarre l'ordinateur si besoin.
Après redémarrage, relance Malwarebytes.
Vas chercher le rapport dans l'onglet Historique.
A gauche Journal des applications.
DAns la liste prends le scan effectué à l'instant "Journal d'examen"
Doube-clic sur l'examen dans la liste.
Puis en bas Copier dans le presse papier
Vas sur http://pjjoint.malekal.com et en bas, clic droit / coller pour coller le rapport du scan Malwarebytes.
Clic sur envoyer.
Dans un nouveau message ici en réponse, donne le lien pjjoint afin de pouvoir consulter le rapport.
piuis histoire de terminer le nettoyage :
Scan Malwarebytes (temps : environ 40min de scan):
==================================================
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour puis lance un examen.
A la fin du scan, clic sur "Mettre tout en quarantaine" en bas à gauche.
Redémarre l'ordinateur si besoin.
Après redémarrage, relance Malwarebytes.
Vas chercher le rapport dans l'onglet Historique.
A gauche Journal des applications.
DAns la liste prends le scan effectué à l'instant "Journal d'examen"
Doube-clic sur l'examen dans la liste.
Puis en bas Copier dans le presse papier
Vas sur http://pjjoint.malekal.com et en bas, clic droit / coller pour coller le rapport du scan Malwarebytes.
Clic sur envoyer.
Dans un nouveau message ici en réponse, donne le lien pjjoint afin de pouvoir consulter le rapport.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
24 févr. 2015 à 21:54
24 févr. 2015 à 21:54
Il reste quoi comme problème ?
Pas grand chose en fait, ce qui ne s'ouvre pas sur Google chrome (certaines images, ou des catalogues en ligne, des trucs comme ça), je vais sur internet explorer ou modzilla et c'est ok.
Merci merci, quand je vois le nombre d'étapes et de manip', c'est sûr je n'aurais jamais réussi seule.
Merci merci, quand je vois le nombre d'étapes et de manip', c'est sûr je n'aurais jamais réussi seule.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
25 févr. 2015 à 13:13
25 févr. 2015 à 13:13
essaye ça pour Google Chrome :
Exporte tes favoris : https://support.google.com/chrome/answer/96816?hl=fr
Désinstalle Google Chrome depuis programmes et fonctionnalités qui se trouve dans le Panneau de configuration.
Au moment de la désinstallation, coche la case pour supprimer les profils.
Réinstalle Google Chrome : https://telecharger.malekal.com/download/google-chrome/
Au premier démarrage Google Chrome, tu dois avoir perdu tes extensions, pages de démarrage, tu dois avoir Google Chrome comme au premier démarrage.
Exporte tes favoris : https://support.google.com/chrome/answer/96816?hl=fr
Désinstalle Google Chrome depuis programmes et fonctionnalités qui se trouve dans le Panneau de configuration.
Au moment de la désinstallation, coche la case pour supprimer les profils.
Réinstalle Google Chrome : https://telecharger.malekal.com/download/google-chrome/
Au premier démarrage Google Chrome, tu dois avoir perdu tes extensions, pages de démarrage, tu dois avoir Google Chrome comme au premier démarrage.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
25 févr. 2015 à 18:59
25 févr. 2015 à 18:59
nice =)
Quelques conseils :
Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Fais des scans réguliers avec, il est efficace.
Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=
Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/
Le reste de la sécurité : http://forum.malekal.com/comment-securiser-son-ordinateur.html
Quelques conseils :
Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Fais des scans réguliers avec, il est efficace.
Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=
Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/
Le reste de la sécurité : http://forum.malekal.com/comment-securiser-son-ordinateur.html