Désinstaller coupcoup
Fermé
sberuard
Messages postés
3
Date d'inscription
jeudi 19 mars 2015
Statut
Membre
Dernière intervention
20 mars 2015
-
19 mars 2015 à 22:27
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 20 mars 2015 à 23:02
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 20 mars 2015 à 23:02
A voir également:
- Désinstaller coupcoup
- Desinstaller edge - Guide
- Désinstaller mcafee - Guide
- Désinstaller onedrive - Guide
- Desinstaller logiciel windows - Guide
- Désinstaller bing - Guide
5 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
19 mars 2015 à 23:39
19 mars 2015 à 23:39
Salut,
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
- FRST.txt
- Shortcut.txt
- Additionnal.txt
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
sberuard
Messages postés
3
Date d'inscription
jeudi 19 mars 2015
Statut
Membre
Dernière intervention
20 mars 2015
20 mars 2015 à 21:41
20 mars 2015 à 21:41
Salut,
merci bcp pour les conseils.
J'espère les avoir bien compris et vous trouverez ci-dessous le lien avec les 3 fichiers :
https://pjjoint.malekal.com/files.php?id=20150320_c8j10m13w12q6
Sébastien
merci bcp pour les conseils.
J'espère les avoir bien compris et vous trouverez ci-dessous le lien avec les 3 fichiers :
https://pjjoint.malekal.com/files.php?id=20150320_c8j10m13w12q6
Sébastien
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
Modifié par Malekal_morte- le 20/03/2015 à 22:09
Modifié par Malekal_morte- le 20/03/2015 à 22:09
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
Startup: C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperPcTool.lnk
ShortcutTarget: SuperPcTool.lnk -> C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}\SuperPcTool.exe (Super PC Tools Ltd)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll [2015-03-10] (Thinknice Co. Limited)
BHO-x32: coolNchEeap -> {37e833fe-5ddb-4d35-9efc-2ba861c2cf63} -> C:\Program Files (x86)\coolNchEeap\wVBkmcighpNN3P.dll [2015-03-18] ()
Winsock: Catalog9 01 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 02 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 03 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 04 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 16 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-10] (XTab system)
R2 lodelofo; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\jnsx1360.tmp [114176 2015-03-19] () [File not signed]
R2 relugesu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\jnsiEFD.tmp [90624 2015-02-22] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [493712 2015-03-19] (SysTool PasSame LIMITED)
R2 ledumezu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\nsxB44A.tmpfs [X]
R2 meceqyvi; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\nssC48F.tmpfs [X]
2015-03-20 21:21 - 2015-03-20 21:21 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue Live Installation.lnk
2015-03-20 21:18 - 2015-03-20 21:20 - 00025650 _____ () C:\Users\sebastien.beruard\Downloads\FRST.txt
2015-03-20 21:18 - 2015-03-20 21:19 - 00000000 ____D () C:\FRST
2015-03-20 21:16 - 2015-03-20 21:17 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64 (1).exe
2015-03-20 21:16 - 2015-03-20 21:16 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64.exe
2015-03-20 20:34 - 2015-03-20 20:34 - 00000000 ___RD () C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2015-03-20 19:29 - 2015-03-20 20:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-03-20 19:29 - 2015-03-20 19:29 - 00002852 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP3
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP2
2015-03-20 19:28 - 2015-03-20 19:28 - 00613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 00000000 __SHD () C:\Users\sebastien.beruard\AppData\Roaming\AnyProtectEx
2015-03-20 18:58 - 2015-03-20 18:58 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue AnySend Installation.lnk
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\SysWOW64\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\system32\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-16 16:21 - 00295808 _____ (BD Inc.) C:\Windows\SysWOW64\BDL.dll
2015-03-19 22:14 - 2015-03-19 22:14 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue VuuPC Installation.lnk
2015-03-19 22:04 - 2015-03-20 20:32 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1426802645-5410-8059-C2C04F465031
2015-03-19 22:01 - 2015-03-20 21:01 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-03-19 22:01 - 2015-03-20 20:34 - 00000970 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-03-19 22:01 - 2015-03-19 22:06 - 00000974 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-03-19 22:01 - 2015-03-19 22:01 - 00003972 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-03-19 22:01 - 2015-03-19 22:01 - 00003718 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\globalUpdate
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-03-19 22:00 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-03-17 16:30 - 2015-03-17 16:30 - 00000000 ____D () C:\ProgramData\earnsale
2015-03-18 08:51 - 2015-03-18 08:53 - 00000000 ____D () C:\ProgramData\2604491524510764536
2015-03-18 08:51 - 2015-03-18 08:52 - 00000000 ____D () C:\Program Files (x86)\coolNchEeap
2015-02-22 12:06 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1424606792-5410-8059-C2C04F465031
2015-02-22 12:00 - 2015-03-18 21:00 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 11:58 - 2015-02-22 12:00 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031
2015-02-21 14:53 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 23:01 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\93dabc92-2c3c-49f6-b30b-6fb9e1094381
2015-02-19 21:43 - 2015-02-25 08:46 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-03-10 01:35 - 2015-03-10 01:35 - 00003304 _____ () C:\Windows\System32\Tasks\ZQA79iadcQSlNbB
2015-03-10 01:35 - 2015-03-10 01:35 - 00003264 _____ () C:\Windows\System32\Tasks\McoLODd7HfDHcsQ
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt
2015-03-01 20:14 - 2015-03-20 20:34 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{ef8d942a-0120-cf65-ef8d-d942a01250a8}
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}
2014-08-17 20:05 - 2014-08-17 20:05 - 0301608 _____ (VuuPC Limited) C:\Users\sebastien.beruard\AppData\Local\nsk5507.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 0613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/csebastien.ber <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/ua /installsource schedulersebastien.ber <==== ATTENTION
Task: {7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\sebastien.beruard\AppData\Roaming\~luqejza.exe
Task: {9345D057-2CF1-4921-AAF1-0149135FECB4} - System32\Tasks\WIN-statsSystem => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~elwebpr.exe
Task: {94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {598D4435-AD97-4C3A-B23D-56B268B698C6} - System32\Tasks\McoLODd7HfDHcsQ => C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt\ktCzGiK.exe [2015-03-10] ( )
Task: {63F55DB6-8516-4517-ACDB-8FAB79BA5C90} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {00EFE026-C532-4315-877E-DF45E27D7F42} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\sebastien.beruard\AppData\Roaming\~iqgowpu.exe
Task: {0339B416-2184-4020-B0CB-7C66952BB0BB} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {28876A13-305D-4B31-B5A3-AFBE5BE2DF8C} - System32\Tasks\ZQA79iadcQSlNbB => C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i\lkskBsB.exe [2015-03-10] ( )
Task: {2C9DE5E1-5110-4130-8270-740E18E8458D} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {2D3F5F42-D324-445E-8AA1-37B2C18A563C} - System32\Tasks\aB2mM1MWXgKHjdZ => C:\Users\sebastien.beruard\AppData\Roaming\GtzreVM\hBto6vn.exe [2014-11-22] ( )
Task: {36DE99CB-1ACD-4423-994E-B3C2DA567390} - System32\Tasks\WIN-statsAdmin => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~runpbgx.exe <==== ATTENTION
cmd: netsh winsock reset
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
Startup: C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperPcTool.lnk
ShortcutTarget: SuperPcTool.lnk -> C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}\SuperPcTool.exe (Super PC Tools Ltd)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll [2015-03-10] (Thinknice Co. Limited)
BHO-x32: coolNchEeap -> {37e833fe-5ddb-4d35-9efc-2ba861c2cf63} -> C:\Program Files (x86)\coolNchEeap\wVBkmcighpNN3P.dll [2015-03-18] ()
Winsock: Catalog9 01 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 02 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 03 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 04 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 16 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-10] (XTab system)
R2 lodelofo; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\jnsx1360.tmp [114176 2015-03-19] () [File not signed]
R2 relugesu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\jnsiEFD.tmp [90624 2015-02-22] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [493712 2015-03-19] (SysTool PasSame LIMITED)
R2 ledumezu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\nsxB44A.tmpfs [X]
R2 meceqyvi; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\nssC48F.tmpfs [X]
2015-03-20 21:21 - 2015-03-20 21:21 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue Live Installation.lnk
2015-03-20 21:18 - 2015-03-20 21:20 - 00025650 _____ () C:\Users\sebastien.beruard\Downloads\FRST.txt
2015-03-20 21:18 - 2015-03-20 21:19 - 00000000 ____D () C:\FRST
2015-03-20 21:16 - 2015-03-20 21:17 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64 (1).exe
2015-03-20 21:16 - 2015-03-20 21:16 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64.exe
2015-03-20 20:34 - 2015-03-20 20:34 - 00000000 ___RD () C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2015-03-20 19:29 - 2015-03-20 20:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-03-20 19:29 - 2015-03-20 19:29 - 00002852 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP3
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP2
2015-03-20 19:28 - 2015-03-20 19:28 - 00613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 00000000 __SHD () C:\Users\sebastien.beruard\AppData\Roaming\AnyProtectEx
2015-03-20 18:58 - 2015-03-20 18:58 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue AnySend Installation.lnk
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\SysWOW64\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\system32\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-16 16:21 - 00295808 _____ (BD Inc.) C:\Windows\SysWOW64\BDL.dll
2015-03-19 22:14 - 2015-03-19 22:14 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue VuuPC Installation.lnk
2015-03-19 22:04 - 2015-03-20 20:32 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1426802645-5410-8059-C2C04F465031
2015-03-19 22:01 - 2015-03-20 21:01 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-03-19 22:01 - 2015-03-20 20:34 - 00000970 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-03-19 22:01 - 2015-03-19 22:06 - 00000974 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-03-19 22:01 - 2015-03-19 22:01 - 00003972 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-03-19 22:01 - 2015-03-19 22:01 - 00003718 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\globalUpdate
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-03-19 22:00 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-03-17 16:30 - 2015-03-17 16:30 - 00000000 ____D () C:\ProgramData\earnsale
2015-03-18 08:51 - 2015-03-18 08:53 - 00000000 ____D () C:\ProgramData\2604491524510764536
2015-03-18 08:51 - 2015-03-18 08:52 - 00000000 ____D () C:\Program Files (x86)\coolNchEeap
2015-02-22 12:06 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1424606792-5410-8059-C2C04F465031
2015-02-22 12:00 - 2015-03-18 21:00 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 11:58 - 2015-02-22 12:00 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031
2015-02-21 14:53 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 23:01 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\93dabc92-2c3c-49f6-b30b-6fb9e1094381
2015-02-19 21:43 - 2015-02-25 08:46 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-03-10 01:35 - 2015-03-10 01:35 - 00003304 _____ () C:\Windows\System32\Tasks\ZQA79iadcQSlNbB
2015-03-10 01:35 - 2015-03-10 01:35 - 00003264 _____ () C:\Windows\System32\Tasks\McoLODd7HfDHcsQ
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt
2015-03-01 20:14 - 2015-03-20 20:34 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{ef8d942a-0120-cf65-ef8d-d942a01250a8}
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}
2014-08-17 20:05 - 2014-08-17 20:05 - 0301608 _____ (VuuPC Limited) C:\Users\sebastien.beruard\AppData\Local\nsk5507.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 0613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/csebastien.ber <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/ua /installsource schedulersebastien.ber <==== ATTENTION
Task: {7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\sebastien.beruard\AppData\Roaming\~luqejza.exe
Task: {9345D057-2CF1-4921-AAF1-0149135FECB4} - System32\Tasks\WIN-statsSystem => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~elwebpr.exe
Task: {94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {598D4435-AD97-4C3A-B23D-56B268B698C6} - System32\Tasks\McoLODd7HfDHcsQ => C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt\ktCzGiK.exe [2015-03-10] ( )
Task: {63F55DB6-8516-4517-ACDB-8FAB79BA5C90} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {00EFE026-C532-4315-877E-DF45E27D7F42} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\sebastien.beruard\AppData\Roaming\~iqgowpu.exe
Task: {0339B416-2184-4020-B0CB-7C66952BB0BB} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {28876A13-305D-4B31-B5A3-AFBE5BE2DF8C} - System32\Tasks\ZQA79iadcQSlNbB => C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i\lkskBsB.exe [2015-03-10] ( )
Task: {2C9DE5E1-5110-4130-8270-740E18E8458D} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {2D3F5F42-D324-445E-8AA1-37B2C18A563C} - System32\Tasks\aB2mM1MWXgKHjdZ => C:\Users\sebastien.beruard\AppData\Roaming\GtzreVM\hBto6vn.exe [2014-11-22] ( )
Task: {36DE99CB-1ACD-4423-994E-B3C2DA567390} - System32\Tasks\WIN-statsAdmin => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~runpbgx.exe <==== ATTENTION
cmd: netsh winsock reset
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
- Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
- Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=
- Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
sberuard
Messages postés
3
Date d'inscription
jeudi 19 mars 2015
Statut
Membre
Dernière intervention
20 mars 2015
20 mars 2015 à 22:21
20 mars 2015 à 22:21
Merci.
Ci-dessous le fichier texte :
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by sebastien.beruard at 2015-03-20 22:15:28 Run:1
Running from C:\Users\sebastien.beruard\Desktop
Loaded Profiles: sebastien.beruard (Available profiles: sebastien.beruard)
Boot Mode: Normal
==============================================
Content of fixlist:
Startup: C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperPcTool.lnk
ShortcutTarget: SuperPcTool.lnk -> C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}\SuperPcTool.exe (Super PC TOOLS Ltd)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll [2015-03-10] (Thinknice Co. Limited)
BHO-x32: coolNchEeap -> {37e833fe-5ddb-4d35-9efc-2ba861c2cf63} -> C:\Program Files (x86)\coolNchEeap\wVBkmcighpNN3P.dll [2015-03-18] ()
Winsock: Catalog9 01 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 02 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 03 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 04 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 16 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-10] (XTab system)
R2 lodelofo; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\jnsx1360.tmp [114176 2015-03-19] () [File not signed]
R2 relugesu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\jnsiEFD.tmp [90624 2015-02-22] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [493712 2015-03-19] (SysTool PasSame LIMITED)
R2 ledumezu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\nsxB44A.tmpfs [X]
R2 meceqyvi; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\nssC48F.tmpfs [X]
2015-03-20 21:21 - 2015-03-20 21:21 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\CONTINUE Live INSTALLATION.lnk
2015-03-20 21:18 - 2015-03-20 21:20 - 00025650 _____ () C:\Users\sebastien.beruard\Downloads\FRST.txt
2015-03-20 21:18 - 2015-03-20 21:19 - 00000000 ____D () C:\FRST
2015-03-20 21:16 - 2015-03-20 21:17 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64 (1).exe
2015-03-20 21:16 - 2015-03-20 21:16 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64.exe
2015-03-20 20:34 - 2015-03-20 20:34 - 00000000 ___RD () C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2015-03-20 19:29 - 2015-03-20 20:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-03-20 19:29 - 2015-03-20 19:29 - 00002852 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP3
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP2
2015-03-20 19:28 - 2015-03-20 19:28 - 00613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 00000000 __SHD () C:\Users\sebastien.beruard\AppData\Roaming\AnyProtectEx
2015-03-20 18:58 - 2015-03-20 18:58 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue AnySend Installation.lnk
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\SysWOW64\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\system32\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-16 16:21 - 00295808 _____ (BD Inc.) C:\Windows\SysWOW64\BDL.dll
2015-03-19 22:14 - 2015-03-19 22:14 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue VuuPC Installation.lnk
2015-03-19 22:04 - 2015-03-20 20:32 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1426802645-5410-8059-C2C04F465031
2015-03-19 22:01 - 2015-03-20 21:01 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-03-19 22:01 - 2015-03-20 20:34 - 00000970 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-03-19 22:01 - 2015-03-19 22:06 - 00000974 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-03-19 22:01 - 2015-03-19 22:01 - 00003972 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-03-19 22:01 - 2015-03-19 22:01 - 00003718 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\globalUpdate
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-03-19 22:00 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-03-17 16:30 - 2015-03-17 16:30 - 00000000 ____D () C:\ProgramData\earnsale
2015-03-18 08:51 - 2015-03-18 08:53 - 00000000 ____D () C:\ProgramData\2604491524510764536
2015-03-18 08:51 - 2015-03-18 08:52 - 00000000 ____D () C:\Program Files (x86)\coolNchEeap
2015-02-22 12:06 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1424606792-5410-8059-C2C04F465031
2015-02-22 12:00 - 2015-03-18 21:00 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 11:58 - 2015-02-22 12:00 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031
2015-02-21 14:53 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 23:01 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\93dabc92-2c3c-49f6-b30b-6fb9e1094381
2015-02-19 21:43 - 2015-02-25 08:46 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-03-10 01:35 - 2015-03-10 01:35 - 00003304 _____ () C:\Windows\System32\Tasks\ZQA79iadcQSlNbB
2015-03-10 01:35 - 2015-03-10 01:35 - 00003264 _____ () C:\Windows\System32\Tasks\McoLODd7HfDHcsQ
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt
2015-03-01 20:14 - 2015-03-20 20:34 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{ef8d942a-0120-cf65-ef8d-d942a01250a8}
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}
2014-08-17 20:05 - 2014-08-17 20:05 - 0301608 _____ (VuuPC Limited) C:\Users\sebastien.beruard\AppData\Local\nsk5507.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 0613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/csebastien.ber <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/ua /installsource schedulersebastien.ber <==== ATTENTION
Task: {7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\sebastien.beruard\AppData\Roaming\~luqejza.exe
Task: {9345D057-2CF1-4921-AAF1-0149135FECB4} - System32\Tasks\WIN-statsSystem => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~elwebpr.exe
Task: {94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {598D4435-AD97-4C3A-B23D-56B268B698C6} - System32\Tasks\McoLODd7HfDHcsQ => C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt\ktCzGiK.exe [2015-03-10] ( )
Task: {63F55DB6-8516-4517-ACDB-8FAB79BA5C90} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {00EFE026-C532-4315-877E-DF45E27D7F42} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\sebastien.beruard\AppData\Roaming\~iqgowpu.exe
Task: {0339B416-2184-4020-B0CB-7C66952BB0BB} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {28876A13-305D-4B31-B5A3-AFBE5BE2DF8C} - System32\Tasks\ZQA79iadcQSlNbB => C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i\lkskBsB.exe [2015-03-10] ( )
Task: {2C9DE5E1-5110-4130-8270-740E18E8458D} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {2D3F5F42-D324-445E-8AA1-37B2C18A563C} - System32\Tasks\aB2mM1MWXgKHjdZ => C:\Users\sebastien.beruard\AppData\Roaming\GtzreVM\hBto6vn.exe [2014-11-22] ( )
Task: {36DE99CB-1ACD-4423-994E-B3C2DA567390} - System32\Tasks\WIN-statsAdmin => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~runpbgx.exe <==== ATTENTION
cmd: netsh winsock reset
C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperPcTool.lnk => Moved successfully.
C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}\SuperPcTool.exe => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{37e833fe-5ddb-4d35-9efc-2ba861c2cf63}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{37e833fe-5ddb-4d35-9efc-2ba861c2cf63}" => Key deleted successfully.
Winsock: Catalog entry 000000000001 => Deleted successfully.
Winsock: Catalog entry 000000000002 => Deleted successfully.
Winsock: Catalog entry 000000000003 => Deleted successfully.
Winsock: Catalog entry 000000000004 => Deleted successfully.
Winsock: Catalog entry 000000000016 => Deleted successfully.
IHProtect Service => Service stopped successfully.
IHProtect Service => Service deleted successfully.
lodelofo => Service stopped successfully.
lodelofo => Service deleted successfully.
relugesu => Service stopped successfully.
relugesu => Service deleted successfully.
WindowsMangerProtect => Service stopped successfully.
WindowsMangerProtect => Service deleted successfully.
ledumezu => Service stopped successfully.
ledumezu => Service deleted successfully.
meceqyvi => Service stopped successfully.
meceqyvi => Service deleted successfully.
"C:\Users\sebastien.beruard\Desktop\CONTINUE Live INSTALLATION.lnk" => File/Directory not found.
C:\Users\sebastien.beruard\Downloads\FRST.txt => Moved successfully.
"C:\FRST" directory move:
Could not move "C:\FRST" directory. => Scheduled to move on reboot.
C:\Users\sebastien.beruard\Downloads\FRST64 (1).exe => Moved successfully.
"C:\Users\sebastien.beruard\Downloads\FRST64.exe" => File/Directory not found.
C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices => Moved successfully.
C:\Windows\Tasks\APSnotifierPP3.job => Moved successfully.
C:\Windows\Tasks\APSnotifierPP2.job => Moved successfully.
C:\Windows\Tasks\APSnotifierPP1.job => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 => Moved successfully.
C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\AnyProtectEx => Moved successfully.
"C:\Users\sebastien.beruard\Desktop\Continue AnySend Installation.lnk" => File/Directory not found.
C:\Windows\SysWOW64\BasementDusterOff.ini => Moved successfully.
C:\Windows\system32\BasementDusterOff.ini => Moved successfully.
C:\Windows\SysWOW64\BDL.dll => Moved successfully.
"C:\Users\sebastien.beruard\Desktop\Continue VuuPC Installation.lnk" => File/Directory not found.
C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1426802645-5410-8059-C2C04F465031 => Moved successfully.
C:\Program Files (x86)\winservice86 => Moved successfully.
"C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job" => File/Directory not found.
"C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job" => File/Directory not found.
"C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA" => File/Directory not found.
"C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore" => File/Directory not found.
C:\Users\sebastien.beruard\AppData\Local\globalUpdate => Moved successfully.
C:\Program Files (x86)\globalUpdate => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031 => Moved successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\ProgramData\IHProtectUpDate => Moved successfully.
C:\Program Files (x86)\XTab => Moved successfully.
C:\ProgramData\earnsale => Moved successfully.
C:\ProgramData\2604491524510764536 => Moved successfully.
C:\Program Files (x86)\coolNchEeap => Moved successfully.
C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1424606792-5410-8059-C2C04F465031 => Moved successfully.
C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628 => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031 => Moved successfully.
C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b => Moved successfully.
C:\Program Files (x86)\93dabc92-2c3c-49f6-b30b-6fb9e1094381 => Moved successfully.
C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59 => Moved successfully.
C:\Windows\System32\Tasks\ZQA79iadcQSlNbB => Moved successfully.
C:\Windows\System32\Tasks\McoLODd7HfDHcsQ => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt => Moved successfully.
C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => Moved successfully.
C:\ProgramData\{ef8d942a-0120-cf65-ef8d-d942a01250a8} => Moved successfully.
"C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}" directory move:
Could not move "C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}" directory. => Scheduled to move on reboot.
C:\Users\sebastien.beruard\AppData\Local\nsk5507.tmp => Moved successfully.
"C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp" => File/Directory not found.
C:\Windows\Tasks\APSnotifierPP1.job not found.
C:\Windows\Tasks\APSnotifierPP2.job not found.
C:\Windows\Tasks\APSnotifierPP3.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-fdfEfEfAfC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-fdfEfEfAfC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9345D057-2CF1-4921-AAF1-0149135FECB4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9345D057-2CF1-4921-AAF1-0149135FECB4}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsSystem => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsSystem" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{598D4435-AD97-4C3A-B23D-56B268B698C6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{598D4435-AD97-4C3A-B23D-56B268B698C6}" => Key deleted successfully.
C:\Windows\System32\Tasks\McoLODd7HfDHcsQ not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McoLODd7HfDHcsQ" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{63F55DB6-8516-4517-ACDB-8FAB79BA5C90} => Key not found.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{00EFE026-C532-4315-877E-DF45E27D7F42}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00EFE026-C532-4315-877E-DF45E27D7F42}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-GGfIfEGCfEGbGffIfCfEGC" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0339B416-2184-4020-B0CB-7C66952BB0BB} => Key not found.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{28876A13-305D-4B31-B5A3-AFBE5BE2DF8C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{28876A13-305D-4B31-B5A3-AFBE5BE2DF8C}" => Key deleted successfully.
C:\Windows\System32\Tasks\ZQA79iadcQSlNbB not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ZQA79iadcQSlNbB" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2C9DE5E1-5110-4130-8270-740E18E8458D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C9DE5E1-5110-4130-8270-740E18E8458D}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2D3F5F42-D324-445E-8AA1-37B2C18A563C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D3F5F42-D324-445E-8AA1-37B2C18A563C}" => Key deleted successfully.
C:\Windows\System32\Tasks\aB2mM1MWXgKHjdZ => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\aB2mM1MWXgKHjdZ" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{36DE99CB-1ACD-4423-994E-B3C2DA567390}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36DE99CB-1ACD-4423-994E-B3C2DA567390}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsAdmin => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin" => Key deleted successfully.
========= netsh winsock reset =========
Le catalogue Winsock a ?t? r?initialis? correctement.
Vous devez red?marrer l'ordinateur afin de finaliser la r?initialisation.
========= End of CMD: =========
C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322} => Moved successfully.
Ci-dessous le fichier texte :
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by sebastien.beruard at 2015-03-20 22:15:28 Run:1
Running from C:\Users\sebastien.beruard\Desktop
Loaded Profiles: sebastien.beruard (Available profiles: sebastien.beruard)
Boot Mode: Normal
==============================================
Content of fixlist:
Startup: C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperPcTool.lnk
ShortcutTarget: SuperPcTool.lnk -> C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}\SuperPcTool.exe (Super PC TOOLS Ltd)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll [2015-03-10] (Thinknice Co. Limited)
BHO-x32: coolNchEeap -> {37e833fe-5ddb-4d35-9efc-2ba861c2cf63} -> C:\Program Files (x86)\coolNchEeap\wVBkmcighpNN3P.dll [2015-03-18] ()
Winsock: Catalog9 01 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 02 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 03 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 04 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
Winsock: Catalog9 16 C:\Windows\SysWOW64\BDL.dll [295808] (BD Inc.)
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-10] (XTab system)
R2 lodelofo; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\jnsx1360.tmp [114176 2015-03-19] () [File not signed]
R2 relugesu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\jnsiEFD.tmp [90624 2015-02-22] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [493712 2015-03-19] (SysTool PasSame LIMITED)
R2 ledumezu; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031\nsxB44A.tmpfs [X]
R2 meceqyvi; C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031\nssC48F.tmpfs [X]
2015-03-20 21:21 - 2015-03-20 21:21 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\CONTINUE Live INSTALLATION.lnk
2015-03-20 21:18 - 2015-03-20 21:20 - 00025650 _____ () C:\Users\sebastien.beruard\Downloads\FRST.txt
2015-03-20 21:18 - 2015-03-20 21:19 - 00000000 ____D () C:\FRST
2015-03-20 21:16 - 2015-03-20 21:17 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64 (1).exe
2015-03-20 21:16 - 2015-03-20 21:16 - 02095616 _____ (Farbar) C:\Users\sebastien.beruard\Downloads\FRST64.exe
2015-03-20 20:34 - 2015-03-20 20:34 - 00000000 ___RD () C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2015-03-20 19:29 - 2015-03-20 20:26 - 00000376 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2015-03-20 19:29 - 2015-03-20 20:06 - 00000378 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-03-20 19:29 - 2015-03-20 19:29 - 00002852 _____ () C:\Windows\System32\Tasks\APSnotifierPP1
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP3
2015-03-20 19:29 - 2015-03-20 19:29 - 00002850 _____ () C:\Windows\System32\Tasks\APSnotifierPP2
2015-03-20 19:28 - 2015-03-20 19:28 - 00613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 00000000 __SHD () C:\Users\sebastien.beruard\AppData\Roaming\AnyProtectEx
2015-03-20 18:58 - 2015-03-20 18:58 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue AnySend Installation.lnk
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\SysWOW64\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-20 20:27 - 00008808 _____ () C:\Windows\system32\BasementDusterOff.ini
2015-03-19 22:16 - 2015-03-16 16:21 - 00295808 _____ (BD Inc.) C:\Windows\SysWOW64\BDL.dll
2015-03-19 22:14 - 2015-03-19 22:14 - 00001077 _____ () C:\Users\sebastien.beruard\Desktop\Continue VuuPC Installation.lnk
2015-03-19 22:04 - 2015-03-20 20:32 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1426802645-5410-8059-C2C04F465031
2015-03-19 22:01 - 2015-03-20 21:01 - 00000000 ____D () C:\Program Files (x86)\winservice86
2015-03-19 22:01 - 2015-03-20 20:34 - 00000970 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-03-19 22:01 - 2015-03-19 22:06 - 00000974 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-03-19 22:01 - 2015-03-19 22:01 - 00003972 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-03-19 22:01 - 2015-03-19 22:01 - 00003718 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\globalUpdate
2015-03-19 22:01 - 2015-03-19 22:01 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-03-19 22:00 - 2015-03-19 22:01 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-03-19 21:58 - 2015-03-19 21:58 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-03-17 16:30 - 2015-03-17 16:30 - 00000000 ____D () C:\ProgramData\earnsale
2015-03-18 08:51 - 2015-03-18 08:53 - 00000000 ____D () C:\ProgramData\2604491524510764536
2015-03-18 08:51 - 2015-03-18 08:52 - 00000000 ____D () C:\Program Files (x86)\coolNchEeap
2015-02-22 12:06 - 2015-02-22 12:11 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1424606792-5410-8059-C2C04F465031
2015-02-22 12:00 - 2015-03-18 21:00 - 00000000 ____D () C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628
2015-02-22 11:58 - 2015-02-22 12:00 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031
2015-02-21 14:53 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b
2015-02-20 23:01 - 2015-02-21 14:53 - 00000000 ____D () C:\Program Files (x86)\93dabc92-2c3c-49f6-b30b-6fb9e1094381
2015-02-19 21:43 - 2015-02-25 08:46 - 00000000 ____D () C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59
2015-03-10 01:35 - 2015-03-10 01:35 - 00003304 _____ () C:\Windows\System32\Tasks\ZQA79iadcQSlNbB
2015-03-10 01:35 - 2015-03-10 01:35 - 00003264 _____ () C:\Windows\System32\Tasks\McoLODd7HfDHcsQ
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i
2015-03-10 01:35 - 2015-03-10 01:35 - 00000000 ____D () C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt
2015-03-01 20:14 - 2015-03-20 20:34 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{ef8d942a-0120-cf65-ef8d-d942a01250a8}
2015-02-25 08:20 - 2015-02-25 22:56 - 00000000 ____D () C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}
2014-08-17 20:05 - 2014-08-17 20:05 - 0301608 _____ (VuuPC Limited) C:\Users\sebastien.beruard\AppData\Local\nsk5507.tmp
2015-03-20 19:28 - 2015-03-20 19:28 - 0613255 _____ (CMI Limited) C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/csebastien.ber <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe/ua /installsource schedulersebastien.ber <==== ATTENTION
Task: {7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3} - System32\Tasks\WIN-fdfEfEfAfC => C:\Users\sebastien.beruard\AppData\Roaming\~luqejza.exe
Task: {9345D057-2CF1-4921-AAF1-0149135FECB4} - System32\Tasks\WIN-statsSystem => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~elwebpr.exe
Task: {94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {598D4435-AD97-4C3A-B23D-56B268B698C6} - System32\Tasks\McoLODd7HfDHcsQ => C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt\ktCzGiK.exe [2015-03-10] ( )
Task: {63F55DB6-8516-4517-ACDB-8FAB79BA5C90} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {00EFE026-C532-4315-877E-DF45E27D7F42} - System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => C:\Users\sebastien.beruard\AppData\Roaming\~iqgowpu.exe
Task: {0339B416-2184-4020-B0CB-7C66952BB0BB} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-03-19] (globalUpdate) <==== ATTENTION
Task: {28876A13-305D-4B31-B5A3-AFBE5BE2DF8C} - System32\Tasks\ZQA79iadcQSlNbB => C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i\lkskBsB.exe [2015-03-10] ( )
Task: {2C9DE5E1-5110-4130-8270-740E18E8458D} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {2D3F5F42-D324-445E-8AA1-37B2C18A563C} - System32\Tasks\aB2mM1MWXgKHjdZ => C:\Users\sebastien.beruard\AppData\Roaming\GtzreVM\hBto6vn.exe [2014-11-22] ( )
Task: {36DE99CB-1ACD-4423-994E-B3C2DA567390} - System32\Tasks\WIN-statsAdmin => C:\Users\sebastien.beruard\AppData\Local\Microsoft\WinU\~runpbgx.exe <==== ATTENTION
cmd: netsh winsock reset
C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperPcTool.lnk => Moved successfully.
C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}\SuperPcTool.exe => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{37e833fe-5ddb-4d35-9efc-2ba861c2cf63}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{37e833fe-5ddb-4d35-9efc-2ba861c2cf63}" => Key deleted successfully.
Winsock: Catalog entry 000000000001 => Deleted successfully.
Winsock: Catalog entry 000000000002 => Deleted successfully.
Winsock: Catalog entry 000000000003 => Deleted successfully.
Winsock: Catalog entry 000000000004 => Deleted successfully.
Winsock: Catalog entry 000000000016 => Deleted successfully.
IHProtect Service => Service stopped successfully.
IHProtect Service => Service deleted successfully.
lodelofo => Service stopped successfully.
lodelofo => Service deleted successfully.
relugesu => Service stopped successfully.
relugesu => Service deleted successfully.
WindowsMangerProtect => Service stopped successfully.
WindowsMangerProtect => Service deleted successfully.
ledumezu => Service stopped successfully.
ledumezu => Service deleted successfully.
meceqyvi => Service stopped successfully.
meceqyvi => Service deleted successfully.
"C:\Users\sebastien.beruard\Desktop\CONTINUE Live INSTALLATION.lnk" => File/Directory not found.
C:\Users\sebastien.beruard\Downloads\FRST.txt => Moved successfully.
"C:\FRST" directory move:
Could not move "C:\FRST" directory. => Scheduled to move on reboot.
C:\Users\sebastien.beruard\Downloads\FRST64 (1).exe => Moved successfully.
"C:\Users\sebastien.beruard\Downloads\FRST64.exe" => File/Directory not found.
C:\Users\sebastien.beruard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices => Moved successfully.
C:\Windows\Tasks\APSnotifierPP3.job => Moved successfully.
C:\Windows\Tasks\APSnotifierPP2.job => Moved successfully.
C:\Windows\Tasks\APSnotifierPP1.job => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 => Moved successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 => Moved successfully.
C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\AnyProtectEx => Moved successfully.
"C:\Users\sebastien.beruard\Desktop\Continue AnySend Installation.lnk" => File/Directory not found.
C:\Windows\SysWOW64\BasementDusterOff.ini => Moved successfully.
C:\Windows\system32\BasementDusterOff.ini => Moved successfully.
C:\Windows\SysWOW64\BDL.dll => Moved successfully.
"C:\Users\sebastien.beruard\Desktop\Continue VuuPC Installation.lnk" => File/Directory not found.
C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1426802645-5410-8059-C2C04F465031 => Moved successfully.
C:\Program Files (x86)\winservice86 => Moved successfully.
"C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job" => File/Directory not found.
"C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job" => File/Directory not found.
"C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA" => File/Directory not found.
"C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore" => File/Directory not found.
C:\Users\sebastien.beruard\AppData\Local\globalUpdate => Moved successfully.
C:\Program Files (x86)\globalUpdate => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1426798847-5410-8059-C2C04F465031 => Moved successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\ProgramData\IHProtectUpDate => Moved successfully.
C:\Program Files (x86)\XTab => Moved successfully.
C:\ProgramData\earnsale => Moved successfully.
C:\ProgramData\2604491524510764536 => Moved successfully.
C:\Program Files (x86)\coolNchEeap => Moved successfully.
C:\Users\sebastien.beruard\AppData\Local\4C4C4544-1424606792-5410-8059-C2C04F465031 => Moved successfully.
C:\Program Files (x86)\7986795c-cb18-4799-a2be-917144dcd628 => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\4C4C4544-1424606285-5410-8059-C2C04F465031 => Moved successfully.
C:\Program Files (x86)\f9481e41-3246-487b-ad8a-f8aa6e65596b => Moved successfully.
C:\Program Files (x86)\93dabc92-2c3c-49f6-b30b-6fb9e1094381 => Moved successfully.
C:\Program Files (x86)\5c61a21a-ba41-40bb-a6dc-33bff59a4a59 => Moved successfully.
C:\Windows\System32\Tasks\ZQA79iadcQSlNbB => Moved successfully.
C:\Windows\System32\Tasks\McoLODd7HfDHcsQ => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\AOS5O2i => Moved successfully.
C:\Users\sebastien.beruard\AppData\Roaming\4x9veKt => Moved successfully.
C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => Moved successfully.
C:\ProgramData\{ef8d942a-0120-cf65-ef8d-d942a01250a8} => Moved successfully.
"C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}" directory move:
Could not move "C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322}" directory. => Scheduled to move on reboot.
C:\Users\sebastien.beruard\AppData\Local\nsk5507.tmp => Moved successfully.
"C:\Users\sebastien.beruard\AppData\Local\nsx1B4F.tmp" => File/Directory not found.
C:\Windows\Tasks\APSnotifierPP1.job not found.
C:\Windows\Tasks\APSnotifierPP2.job not found.
C:\Windows\Tasks\APSnotifierPP3.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FF161D2-938F-4DB5-A1EE-417C7ABFAAB3}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-fdfEfEfAfC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-fdfEfEfAfC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9345D057-2CF1-4921-AAF1-0149135FECB4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9345D057-2CF1-4921-AAF1-0149135FECB4}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsSystem => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsSystem" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{94C4CF3F-530B-4C5B-A91D-5D6DA2491AF3}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{985D9D54-F48E-4AEA-AA3B-C4FAE5F2A63B}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{598D4435-AD97-4C3A-B23D-56B268B698C6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{598D4435-AD97-4C3A-B23D-56B268B698C6}" => Key deleted successfully.
C:\Windows\System32\Tasks\McoLODd7HfDHcsQ not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McoLODd7HfDHcsQ" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{63F55DB6-8516-4517-ACDB-8FAB79BA5C90} => Key not found.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{00EFE026-C532-4315-877E-DF45E27D7F42}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00EFE026-C532-4315-877E-DF45E27D7F42}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-GGfIfEGCfEGbGffIfCfEGC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-GGfIfEGCfEGbGffIfCfEGC" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0339B416-2184-4020-B0CB-7C66952BB0BB} => Key not found.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{28876A13-305D-4B31-B5A3-AFBE5BE2DF8C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{28876A13-305D-4B31-B5A3-AFBE5BE2DF8C}" => Key deleted successfully.
C:\Windows\System32\Tasks\ZQA79iadcQSlNbB not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ZQA79iadcQSlNbB" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2C9DE5E1-5110-4130-8270-740E18E8458D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C9DE5E1-5110-4130-8270-740E18E8458D}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2D3F5F42-D324-445E-8AA1-37B2C18A563C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D3F5F42-D324-445E-8AA1-37B2C18A563C}" => Key deleted successfully.
C:\Windows\System32\Tasks\aB2mM1MWXgKHjdZ => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\aB2mM1MWXgKHjdZ" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{36DE99CB-1ACD-4423-994E-B3C2DA567390}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36DE99CB-1ACD-4423-994E-B3C2DA567390}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsAdmin => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin" => Key deleted successfully.
========= netsh winsock reset =========
Le catalogue Winsock a ?t? r?initialis? correctement.
Vous devez red?marrer l'ordinateur afin de finaliser la r?initialisation.
========= End of CMD: =========
> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-03-20 22:17:57)<
"C:\FRST" => Directory could not move.C:\ProgramData\{9e016cc8-891d-4b82-9e01-16cc8891b322} => Moved successfully.
End of Fixlog 22:17:58
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
20 mars 2015 à 23:02
20 mars 2015 à 23:02
fais le reste et vois ce que cela donne.