Supprimer oursurfing ?

Fermé
daxou_06 Messages postés 5 Date d'inscription lundi 1 juin 2015 Statut Membre Dernière intervention 1 juin 2015 - 1 juin 2015 à 21:02
daxou_06 Messages postés 5 Date d'inscription lundi 1 juin 2015 Statut Membre Dernière intervention 1 juin 2015 - 1 juin 2015 à 22:54
Bonjour à tous,
ce matin en téléchargeant demon tools ( depuis ce site d'ailleurs ! )
j'ai récup un malware a l'install ...

Pas de panique je récuperes ce qu'il faut et je désisntalle ... puis il revient, puis désinstalle, puis il revient, bref, il est pas revenu seul, mais avec pleins de copains !!

J'ai actuellement, 8 logiciels non désiré !

- Mystartsearch uninstall
- Antivirus et publicités sur Internet [ 11355]
- Optimizer pro
- INfonaut
- Health alert
- FlashGamesRockstar
-Any Protect


Tout s'est téléchargé tout seul, mon navigateur est infesté d'ads .. .
j'ai '' réussi '' à avoir oursurfing, et find shearch, pour le reste, imposqsible, a chaque fois que je lance l'uninstall, ca en ramenes d'autres, j'ai lu pas mal de tuto, et j'ai cru comprendre, que c'éait personalisé .

Je tente ma chance au cas ou un ame charitable veuille bien me filer un coup de main ;)

( et expliquer au passage que je puisse aider a mon tour ;) )

Je poste le rapport après scan, et '' supprimer '' qui a reboot mon pc :)

# AdwCleaner v4.206 - Rapport créé le 01/06/2015 à 20:37:46
# Mis à jour le 01/06/2015 par Xplode
# Base de données : 2015-06-01.1 [Serveur]
# Système d'exploitation : Windows 7 Professional Service Pack 1 (x64)
# Nom d'utilisateur : Maxime - DAXOU-PC
# Exécuté depuis : C:\Users\Maxime\Desktop\AdwCleaner-4.206.exe
# Option : Nettoyer
          • [ Services ] *****


[#] Service Supprimé : IHProtect Service
[#] Service Supprimé : Update Edu App
[#] Service Supprimé : Util Edu App
Service Supprimé : {eb01aed1-bba3-4e72-8323-a77bb027b1d4}w64
[#] Service Supprimé : innfd_1_10_0_14
          • [ Fichiers / Dossiers ] *****


Dossier Supprimé : C:\ProgramData\WindowsMangerProtect
Dossier Supprimé : C:\ProgramData\MailUpdate
Dossier Supprimé : C:\ProgramData\IHProtectUpDate
Dossier Supprimé : C:\ProgramData\FlashBeat
Dossier Supprimé : C:\ProgramData\dee18eb631d54672adadfa927fb6160a
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
Dossier Supprimé : C:\Program Files (x86)\XTab
Dossier Supprimé : C:\Program Files (x86)\Edu App
Dossier Supprimé : C:\Program Files (x86)\CinemaPlus-3.2cV01.06
Dossier Supprimé : C:\Program Files (x86)\gmsd_fr_590
Dossier Supprimé : C:\Program Files (x86)\gmsd_fr_596
Dossier Supprimé : C:\Program Files (x86)\Infonaut_1.10.0.14
Dossier Supprimé : C:\Users\Maxime\AppData\Local\Temp\webget
Dossier Supprimé : C:\Users\Maxime\AppData\Local\Temp\Edu App
Dossier Supprimé : C:\Users\Maxime\AppData\Local\globalUpdate
Dossier Supprimé : C:\Users\Maxime\AppData\Local\SmartWeb
Dossier Supprimé : C:\Users\Maxime\AppData\Local\Crossbrowse
Dossier Supprimé : C:\Users\Maxime\AppData\Local\gmsd_fr_590
Dossier Supprimé : C:\Users\Maxime\AppData\Local\gmsd_fr_596
Dossier Supprimé : C:\Users\Maxime\AppData\Local\00000000-1433185960-0000-0000-448A5B2551AB
Dossier Supprimé : C:\Users\Maxime\AppData\LocalLow\SmartWeb
Dossier Supprimé : C:\Users\Maxime\AppData\Roaming\AnyProtectEx
Dossier Supprimé : C:\Users\Maxime\AppData\Roaming\MailUpdate
Dossier Supprimé : C:\Users\Maxime\AppData\Roaming\oursurfing
Fichier Supprimé : C:\Users\Public\Desktop\crossbrowse.lnk
Fichier Supprimé : C:\Users\Public\Desktop\Facebook.lnk
Fichier Supprimé : C:\Users\Maxime\AppData\Local\Temp\Uninstall.exe
Fichier Supprimé : C:\Windows\System32\drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}w64.sys
Fichier Supprimé : C:\Windows\System32\drivers\innfd_1_10_0_14.sys
Fichier Supprimé : C:\Users\Maxime\AppData\Roaming\6gE2aO5PbaQY5CslZm6
Fichier Supprimé : C:\Users\Maxime\AppData\Roaming\6gE2aO5PbaQY5CslZm6.exe
Fichier Supprimé : C:\Users\Maxime\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\crossbrowse.lnk
Fichier Supprimé : C:\Users\Maxime\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\crossbrowse.lnk
Fichier Supprimé : C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk
Fichier Supprimé : C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk
Fichier Supprimé : C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.selectgo00.selectgo.net_0.localstorage
Fichier Supprimé : C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.selectgo00.selectgo.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.oursurfing.com_0.localstorage
Fichier Supprimé : C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.oursurfing.com_0.localstorage-journal
          • [ Tâches planifiées ] *****


Tâche Supprimée : APSnotifierPP1
Tâche Supprimée : APSnotifierPP2
Tâche Supprimée : APSnotifierPP3
Tâche Supprimée : Crossbrowse
Tâche Supprimée : globalUpdateUpdateTaskMachineCore
Tâche Supprimée : globalUpdateUpdateTaskMachineUA
Tâche Supprimée : SmartWeb Upgrade Trigger Task
Tâche Supprimée : amiupdaterExd
Tâche Supprimée : amiupdaterExi
Tâche Supprimée : 6gE2aO5PbaQY5CslZm6
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-1-6
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-1-7
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-10_user
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-3
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-5
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-5_user
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-6
Tâche Supprimée : 7b4481ad-3af9-492d-bf3a-5701bd027411-7
Tâche Supprimée : ZOYESHISIC
          • [ Raccourcis ] *****


Raccourci Désinfecté : C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Raccourci Désinfecté : C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Raccourci Désinfecté : C:\Users\Maxime\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Raccourci Désinfecté : C:\Users\Maxime\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
          • [ Registre ] *****


Clé Supprimée : HKCU\Software\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd
Clé Supprimée : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Clé Supprimée : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [WinCheck]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SmartWeb]
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
Clé Supprimée : HKLM\SOFTWARE\Classes\CRSBRWSHTML
Clé Supprimée : HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\crossbrowse.exe
Valeur Supprimée : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML]
Valeur Supprimée : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML]
Valeur Supprimée : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse]
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update Edu App
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util Edu App
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_fr_590]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_fr_596]
Clé Supprimée : HKLM\SOFTWARE\0c4b99f9-8065-442d-bc95-785556399472
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4D6A5312-AB4D-41AA-8BED-0E019B87CA11}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EBFBDD44-C0E0-4F63-A8E6-EE5F34765238}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{1317e5f7-3acf-4d74-a9ae-4ce526026e3f}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EBFBDD44-C0E0-4F63-A8E6-EE5F34765238}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EBFBDD44-C0E0-4F63-A8E6-EE5F34765238}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EBFBDD44-C0E0-4F63-A8E6-EE5F34765238}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Clé Supprimée : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{31090377-0740-419E-BEFC-A56E50500D5B}
Clé Supprimée : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{31090377-0740-419E-BEFC-A56E50500D5B}
Donnée Restaurée : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Donnée Restaurée : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKCU\Software\AnyProtect
Clé Supprimée : HKCU\Software\APN PIP
Clé Supprimée : HKCU\Software\GlobalUpdate
Clé Supprimée : HKCU\Software\HomeTab
Clé Supprimée : HKCU\Software\InstallCore
Clé Supprimée : HKCU\Software\InstalledBrowserExtensions
Clé Supprimée : HKCU\Software\Myfree Codec
Clé Supprimée : HKCU\Software\simplytech
Clé Supprimée : HKCU\Software\Tutorials
Clé Supprimée : HKCU\Software\TutoTag
Clé Supprimée : HKCU\Software\TNT2
Clé Supprimée : HKCU\Software\WajIntEnhance
Clé Supprimée : HKCU\Software\CrossBrowser
Clé Supprimée : HKCU\Software\SearchProtectWS
Clé Supprimée : HKCU\Software\Crossbrowse
Clé Supprimée : HKCU\Software\Linkey
Clé Supprimée : HKCU\Software\YorkNewCin
Clé Supprimée : HKCU\Software\HighDefAction
Clé Supprimée : HKCU\Software\ArenaHD
Clé Supprimée : HKCU\Software\CinemaPlus-3.2cV01.06
Clé Supprimée : HKCU\Software\CinemaPlus-3.2cV01.06-nv
Clé Supprimée : HKCU\Software\CinemaPlus-3.2cV01.06-nv-ie
Clé Supprimée : HKCU\Software\Edu App
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\SmartWeb
Clé Supprimée : HKLM\SOFTWARE\AskPartnerNetwork
Clé Supprimée : HKLM\SOFTWARE\Conduit
Clé Supprimée : HKLM\SOFTWARE\GlobalUpdate
Clé Supprimée : HKLM\SOFTWARE\Iminent
Clé Supprimée : HKLM\SOFTWARE\InstalledBrowserExtensions
Clé Supprimée : HKLM\SOFTWARE\Myfree Codec
Clé Supprimée : HKLM\SOFTWARE\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\SupDp
Clé Supprimée : HKLM\SOFTWARE\SupTab
Clé Supprimée : HKLM\SOFTWARE\supWindowsMangerProtect
Clé Supprimée : HKLM\SOFTWARE\Tutorials
Clé Supprimée : HKLM\SOFTWARE\mystartsearchSoftware
Clé Supprimée : HKLM\SOFTWARE\GAMESDESKTOP
Clé Supprimée : HKLM\SOFTWARE\IHProtect
Clé Supprimée : HKLM\SOFTWARE\FlashBeat
Clé Supprimée : HKLM\SOFTWARE\WajIntEnhance
Clé Supprimée : HKLM\SOFTWARE\Crossbrowse
Clé Supprimée : HKLM\SOFTWARE\SpeedBit
Clé Supprimée : HKLM\SOFTWARE\AIM Toolbar
Clé Supprimée : HKLM\SOFTWARE\YorkNewCin
Clé Supprimée : HKLM\SOFTWARE\HighDefAction
Clé Supprimée : HKLM\SOFTWARE\oursurfingSoftware
Clé Supprimée : HKLM\SOFTWARE\ArenaHD
Clé Supprimée : HKLM\SOFTWARE\CinemaPlus-3.2cV01.06
Clé Supprimée : HKLM\SOFTWARE\CinemaPlus-3.2cV01.06-nv
Clé Supprimée : HKLM\SOFTWARE\CinemaPlus-3.2cV01.06-nv-ie
Clé Supprimée : HKLM\SOFTWARE\Edu App
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SmartWeb
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wincheck
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\oursurfing uninstall
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaPlus-3.2cV01.06
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_590_is1
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_596_is1
Clé Supprimée : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Clé Supprimée : [x64] HKLM\SOFTWARE\FlashBeat
Clé Supprimée : [x64] HKLM\SOFTWARE\YorkNewCin
Clé Supprimée : [x64] HKLM\SOFTWARE\HighDefAction
Clé Supprimée : [x64] HKLM\SOFTWARE\ArenaHD
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Edu App
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SoftwareUpdate.exe
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\oursurfing.com
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.oursurfing.com
Donnée Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
          • [ Navigateurs ] *****


-\\ Internet Explorer v11.0.9600.17801

Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v43.0.2357.81

[C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Supprimée [Search Provider] : hxxp://www.oursurfing.com/web/?type=dspp&ts=1433171475&z=05890b54edd06d95497baa3g8z4c7c6g9m5g4z2mfq&from=smt&uid=ST1000DM003-1CH162_W1D346M5XXXXW1D346M5&q={searchTerms}
[C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Supprimée [Search Provider] : hxxp://www.oursurfing.com/web/?type=ds&ts=1433179426&z=d655423cbe22e671c05baeagezbc9c2gamft5z4o7w&from=cmi&uid=ST1000DM003-1CH162_W1D346M5XXXXW1D346M5&q={searchTerms}
[C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Supprimée [Extension] : bakijjialdiiboeaknfpmflphhmljfkd
[C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Supprimée [Extension] : bopakagnckmlgajfccecajhnimjiiedh
[C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Supprimée [Homepage] : hxxp://www.mystartsearch.com/?type=hp&ts=1433180281&z=cfb4b39c673f045cc890362gcz6c6c1gab9e7o8m9t&from=ima&uid=ST1000DM003-1CH162_W1D346M5XXXXW1D346M5
[C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Supprimée [Startup_URLs] : hxxp://www.mystartsearch.com/?type=hp&ts=1433180281&z=cfb4b39c673f045cc890362gcz6c6c1gab9e7o8m9t&from=ima&uid=ST1000DM003-1CH162_W1D346M5XXXXW1D346M5


AdwCleaner[R0].txt - [344 octets] - [01/06/2015 19:40:26]
AdwCleaner[R1].txt - [28456 octets] - [01/06/2015 19:53:50]
AdwCleaner[S0].txt - [23273 octets] - [01/06/2015 20:37:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [23334 octets] ##########



A voir également:

3 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659
1 juin 2015 à 21:06
Salut,

Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.


0
daxou_06 Messages postés 5 Date d'inscription lundi 1 juin 2015 Statut Membre Dernière intervention 1 juin 2015
1 juin 2015 à 22:24
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659
1 juin 2015 à 22:28
tu n'as pas fait nettoyer sur AdwCleaner semble-t-il
donc fais un nettoyage AdwCleaner

puis relance FRST et donne les rapports via pjjoint.
0
daxou_06 Messages postés 5 Date d'inscription lundi 1 juin 2015 Statut Membre Dernière intervention 1 juin 2015
1 juin 2015 à 22:29
le rapport adwcleaner est dans le premier post :)

je dois en refaire un autre ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659
1 juin 2015 à 22:31
ha oui ok, je vais te faire passer la correction FRST dans ce cas.
0
daxou_06 Messages postés 5 Date d'inscription lundi 1 juin 2015 Statut Membre Dernière intervention 1 juin 2015
1 juin 2015 à 22:35
Ok, merci beaucoup malekal :)

La procedure a suivre est celle expliquée dans la fin du tuto ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659
1 juin 2015 à 22:40
y a du people, commence par ça.



Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix

Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :


HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe [14115328 2015-01-09] (zik.mu)
HKLM-x32\...\Run: [FlashGamesRockstar] => C:\Program Files (x86)\FlashGamesRockstar\FlashGamesRockstarApp.exe [1634264 2015-05-27] ()
HKLM-x32\...\Run: [SmartWeb] => C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe [270368 2015-02-17] (SoftBrain Technologies Ltd.)
HKLM-x32\...\Run: [gmsd_fr_596] => C:\Program Files (x86)\gmsd_fr_596\gmsd_fr_596.exe [3983528 2015-05-31] ()
HKLM-x32\...\RunOnce: [upgmsd_fr_596.exe] => C:\Users\Maxime\AppData\Local\gmsd_fr_596\upgmsd_fr_596.exe [3318728 2015-05-31] ()
HKU\S-1-5-21-1787067313-2956365325-3556096684-1000\...\Run: [GoogleChromeAutoLaunch_5B66BD8DDEEB08490780A93EC9F48C8A] => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440 2015-05-12] (Crossbrowse)
HKU\S-1-5-21-1787067313-2956365325-3556096684-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.95\OptProLauncher.exe [148112 2015-05-27] ()
Startup: C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [2015-06-01]
ShortcutTarget: crossbrowse.lnk -> C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (Crossbrowse)
Startup: C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-06-01]
ShortcutTarget: SmartWeb.lnk -> C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
Winsock: Catalog9 01 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 02 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 03 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 04 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 05 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 06 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 07 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 08 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 09 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 10 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 21 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9-x64 01 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 02 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 03 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 04 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 05 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 06 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 07 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 08 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 09 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 10 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 21 C:\Windows\Provider.dll [173056 2015-06-01] ()
CHR Extension: (BrowserV01.06) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhkmcfanijhphphomamdkaejjadkhgn [2015-06-01]
CHR Extension: (Edu App) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\apfkeogliibfminiiihgdkkcaenchhia [2015-06-01]
R2 caa89563; c:\Program Files (x86)\Optimizer Pro 3.95\OptProMon.dll [1781392 2015-06-01] () <==== ATTENTION
R2 dhaqIYbqePe; C:\ProgramData\vsmPbeVxE\dhaqIYbqePe.exe [2731504 2015-06-01] (Rational Thought Solutions)
R2 fivyzipo; C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB\hnsa5BD.tmp [311296 2015-06-01] () [File not signed]
R2 gejudebi; C:\Users\Maxime\AppData\Local\00000000-1433186097-0000-0000-448A5B2551AB\snsg783E.tmp [130560 2015-06-01] () [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [157824 2015-05-18] (XTab system)
R2 tyvozyno; C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB\jnskEDE7.tmp [129536 2015-06-01] () [File not signed]
R2 Update Edu App; C:\Program Files (x86)\Edu App\updateEduApp.exe [460008 2015-06-01] ()
R2 UpdateDustTool; C:\Windows\Provider\UpdaterToolService.exe [111616 2015-04-22] (VIS without Co) [File not signed]
R2 Util Edu App; C:\Program Files (x86)\Edu App\bin\utilEduApp.exe [460008 2015-06-01] ()
R4 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [697000 2015-06-01] (DTools LIMITED) <==== ATTENTION
S2 insvc_1.10.0.14; C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe [X]
S2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe -service [X]
R2 midebuty; C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB\nskBD21.tmpfs [X]
S2 Update webget; C:\Program Files (x86)\webget\updatewebget.exe [X]
2015-06-01 21:29 - 2015-06-01 21:29 - 00005462 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5
2015-06-01 21:29 - 2015-06-01 21:29 - 00004058 _____ () C:\Windows\System32\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p
2015-06-01 21:29 - 2015-06-01 21:29 - 00002432 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user.job
2015-06-01 21:29 - 2015-06-01 21:29 - 00002432 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.job
2015-06-01 21:29 - 2015-06-01 21:29 - 00001030 _____ () C:\Windows\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p.job
2015-06-01 21:28 - 2015-06-01 21:33 - 00000952 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-06-01 21:28 - 2015-06-01 21:33 - 00000948 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00008532 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6
2015-06-01 21:28 - 2015-06-01 21:28 - 00008198 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7
2015-06-01 21:28 - 2015-06-01 21:28 - 00006490 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7
2015-06-01 21:28 - 2015-06-01 21:28 - 00006152 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6
2015-06-01 21:28 - 2015-06-01 21:28 - 00005504 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00005168 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00003950 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-06-01 21:28 - 2015-06-01 21:28 - 00003696 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-06-01 21:28 - 2015-06-01 21:28 - 00003460 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00003124 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00000000 ____D () C:\Program Files (x86)\d27eee8e-ed87-471d-9fcc-d7b6d7f011bc
2015-06-01 21:27 - 2015-06-01 21:29 - 00000000 ____D () C:\Program Files (x86)\BrowserV01.06
2015-06-01 21:27 - 2015-06-01 21:27 - 00007510 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3
2015-06-01 21:27 - 2015-06-01 21:27 - 00004480 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.job
2015-06-01 21:27 - 2015-06-01 21:27 - 00000000 ____D () C:\Users\Maxime\AppData\Local\globalUpdate
2015-06-01 21:25 - 2015-06-01 21:25 - 00004086 _____ () C:\Windows\System32\Tasks\Crossbrowse
2015-06-01 21:25 - 2015-06-01 21:25 - 00002396 _____ () C:\Users\Public\Desktop\Crossbrowse.lnk
2015-06-01 21:25 - 2015-06-01 21:25 - 00002273 _____ () C:\Users\Public\Desktop\Facebook.lnk
2015-06-01 21:25 - 2015-06-01 21:25 - 00001058 _____ () C:\Windows\Tasks\Crossbrowse.job
2015-06-01 21:25 - 2015-06-01 21:25 - 00000000 ____D () C:\Users\Maxime\AppData\Local\Crossbrowse
2015-06-01 21:25 - 2015-06-01 21:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
2015-06-01 21:24 - 2015-06-01 21:24 - 00000863 _____ () C:\Users\Maxime\Desktop\3D BubbleSound.lnk
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\MailUpdate
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\ProgramData\MailUpdate
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Program Files\BubbleSound
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Program Files (x86)\Crossbrowse
2015-06-01 21:24 - 2015-06-01 05:39 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64.sys
2015-06-01 21:22 - 2015-06-01 21:27 - 00000000 ____D () C:\Program Files (x86)\Edu App
2015-06-01 21:15 - 2015-06-01 21:32 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-06-01 21:15 - 2015-06-01 21:15 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-06-01 21:15 - 2015-06-01 21:15 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-06-01 21:14 - 2015-06-01 21:14 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\oursurfing
2015-06-01 21:12 - 2015-06-01 21:23 - 00000000 ____D () C:\Users\Maxime\AppData\Local\gmsd_fr_596
2015-06-01 21:12 - 2015-06-01 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdaterService
2015-06-01 21:12 - 2015-06-01 21:12 - 00000000 ____D () C:\Program Files (x86)\gmsd_fr_596
2015-06-01 21:12 - 2015-06-01 21:12 - 00000000 ____D () C:\Program Files (x86)\Bin
2015-06-01 21:11 - 2015-06-01 21:11 - 00004038 _____ () C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-06-01 21:11 - 2015-06-01 21:11 - 00000000 ____D () C:\Windows\Provider32
2015-06-01 21:11 - 2015-06-01 21:11 - 00000000 ____D () C:\Windows\Provider
2015-06-01 21:11 - 2015-06-01 21:11 - 00000000 ____D () C:\Users\Maxime\AppData\Local\SmartWeb
2015-06-01 21:11 - 2015-05-28 13:55 - 00173056 _____ () C:\Windows\Provider.dll
2015-06-01 21:11 - 2015-05-28 13:55 - 00101888 _____ () C:\Windows\Installer.exe
2015-06-01 21:00 - 2015-06-01 21:00 - 00001094 _____ () C:\Users\Maxime\Desktop\Continue Live Installation.lnk
2015-06-01 20:42 - 2015-06-01 20:42 - 00023504 _____ () C:\Users\Maxime\Desktop\Nouveau document texte.txt
2015-06-01 20:40 - 2015-06-01 20:40 - 00000496 __RSH () C:\ProgramData\ntuser.pol
2015-06-01 20:08 - 2015-06-01 20:45 - 00003448 _____ () C:\Windows\System32\Tasks\Trielissot
2015-06-01 20:08 - 2015-06-01 20:08 - 00001049 _____ () C:\Users\Maxime\Desktop\AnyProtect.lnk
2015-06-01 20:08 - 2015-06-01 20:08 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-06-01 20:08 - 2015-06-01 20:08 - 00000000 ____D () C:\ProgramData\Trielissot
2015-06-01 20:05 - 2015-06-01 21:04 - 00000000 ____D () C:\Users\Maxime\AppData\Local\HealthAlert
2015-06-01 20:05 - 2015-06-01 20:05 - 00613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsu9D64.tmp
2015-06-01 20:05 - 2015-06-01 20:05 - 00000000 ____D () C:\Users\Maxime\SupTab
2015-06-01 20:05 - 2015-06-01 20:05 - 00000000 ____D () C:\HealthAlert
2015-06-01 20:04 - 2015-06-01 21:17 - 00003258 _____ () C:\Windows\System32\Tasks\Optimizer Pro Schedule
2015-06-01 20:04 - 2015-06-01 20:04 - 00001103 _____ () C:\Users\Maxime\Desktop\Optimizer Pro.lnk
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\Users\Maxime\Documents\Optimizer Pro
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\Optimizer Pro
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.95
2015-06-01 20:03 - 2015-06-01 21:24 - 00000000 ____D () C:\Program Files (x86)\PenWes
2015-06-01 20:03 - 2015-06-01 20:05 - 00000000 ____D () C:\ProgramData\vsmPbeVxE
2015-06-01 20:03 - 2015-06-01 20:03 - 00002970 _____ () C:\Windows\System32\Tasks\PenWes
2015-06-01 20:03 - 2015-06-01 20:03 - 00000000 ____D () C:\ProgramData\Penwes
2015-06-01 20:01 - 2015-06-01 20:01 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\mystartsearch
2015-06-01 19:44 - 2015-06-01 19:44 - 00613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsc7C28.tmp
2015-06-01 19:43 - 2015-06-01 19:43 - 00000000 _____ () C:\Windows\SysWOW64\Number of results
2015-06-01 19:39 - 2015-06-01 19:39 - 02231296 _____ () C:\Users\Maxime\Desktop\AdwCleaner-4.206.exe
2015-06-01 19:39 - 2015-06-01 19:39 - 00613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nspBB46.tmp
2015-06-01 19:28 - 2015-06-01 19:28 - 00000000 ____D () C:\Program Files (x86)\6b014657-170e-4d64-b464-1159e9bab40e
2015-06-01 19:27 - 2015-06-01 20:27 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-06-01 19:14 - 2015-06-01 20:45 - 00000000 ____D () C:\Users\Maxime\AppData\Local\00000000-1433186097-0000-0000-448A5B2551AB
2015-06-01 19:12 - 2009-06-10 23:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hp.bak
2015-06-01 19:11 - 2015-06-01 19:37 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB
2015-06-01 18:06 - 2015-06-01 18:06 - 00000080 _____ () C:\Users\Maxime\AppData\Local???????????????????
2015-06-01 18:00 - 2015-06-01 18:00 - 00003150 _____ () C:\Windows\System32\Tasks\{78D28E4D-5E6A-4ED0-8965-99549B36CC66}
2015-06-01 17:11 - 2015-06-01 20:39 - 00000332 _____ () C:\Windows\Tasks\EMRDYTPUD1.job
2015-06-01 17:11 - 2015-06-01 17:11 - 00002854 _____ () C:\Windows\System32\Tasks\EMRDYTPUD1
2015-06-01 17:11 - 2015-06-01 17:11 - 00000000 ____D () C:\ProgramData\28341ff220e0446c9fff27c4493d622e
2015-05-26 02:46 - 2015-05-26 03:51 - 00000000 ____D () C:\Program Files (x86)\Software
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe
2015-06-01 19:44 - 2015-06-01 19:44 - 0613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsc7C28.tmp
2015-06-01 19:39 - 2015-06-01 19:39 - 0613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nspBB46.tmp
2015-06-01 20:05 - 2015-06-01 20:05 - 0613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsu9D64.tmp
Task: {0A0FA9B3-F858-4D97-8C87-9084BB7761B2} - System32\Tasks\EMRDYTPUD1 => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION
Task: {0AF617FF-40F0-4C7C-85F3-F113DF9E905F} - System32\Tasks\PenWes => C:\Program Files (x86)\PenWes\dnshelper.exe [2014-09-17] () <==== ATTENTION
Task: {1196FB2C-264D-46B8-8294-894F80E5EB8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-09] (Google Inc.)
Task: {18C7E5D0-35BB-4BD3-9DC4-65FE3EE89914} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe [2015-02-17] (SoftBrain Technologies Ltd.) <==== ATTENTION
Task: {1B3BAAB5-0782-4CA3-8A62-7FBDDB8BE47E} - System32\Tasks\Optimizer Pro Schedule => C:\Program Files (x86)\Optimizer Pro 3.95\OptProLauncher.exe [2015-05-27] () <==== ATTENTION
Task: {2E35C167-E214-41B1-9F3C-01A366763108} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: {31A757CB-146E-4540-8793-3EF8075D1ABE} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {370BB321-6165-465C-99CA-025B9460DE8F} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {57FB6485-27E8-408D-A91D-400067A8B774} - System32\Tasks\{78D28E4D-5E6A-4ED0-8965-99549B36CC66} => pcalua.exe -a C:\Users\Maxime\AppData\Roaming\oursurfing\UninstallManager.exe -c -ptid=smt
Task: {79A40B1A-C37D-4146-B6E3-E389F2D46A85} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {7DFF9FB1-9850-4BCF-9FA3-EF3375E3845D} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: {BE625043-744F-415F-931E-D09654659C54} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {C7184466-8E52-42BD-89AB-BC1F0EBE0DE7} - System32\Tasks\Crossbrowse => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION
Task: {D4BD74D9-04B4-43EE-B67A-402A2E44F774} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {D7EC46A7-E455-4295-9FFA-E7764263BC85} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {E8F71FC4-AEF5-4A62-8456-F770E7C8E43A} - System32\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p => C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe [2015-04-20] () <==== ATTENTION
Task: {E9ED1AB9-96BD-4BAE-9AE4-499F0A599AB1} - System32\Tasks\Trielissot => C:\ProgramData\Trielissot\1.0.1.0\aunawruo.exe [2015-06-01] ()
Task: {EB9673EB-5132-4827-A54A-0FF2BDF1CB20} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\WSCStub.exe [2015-03-07] (Symantec Corporation)
Task: {F758DF1E-A79B-4C86-BDCA-7E07A18E7948} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: C:\Windows\Tasks\Crossbrowse.job => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\EMRDYTPUD1.job => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION
Task: C:\Windows\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p.job => C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
cmd: netsh winsock reset


Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.

Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.


Redémarre l'ordinateur


puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :

0
daxou_06 Messages postés 5 Date d'inscription lundi 1 juin 2015 Statut Membre Dernière intervention 1 juin 2015
1 juin 2015 à 22:54
l'ordi a redémarré seul, avec frst

voici ce qu'il me donne, malgres qu'il reste encore dans ( panneau de configuration / desinstaller un programme ) :

my start search uninstall
gamedesktop
smartweb
antivirus et publivcité sur inter
optimizer pro
infonaut
jealth alert
crossbrowse
browser
anyprotect
eduapp
bubblesound

( le tout, sans icone par contre, ( ormis anyprotect )

Fix result of Farbar Recovery Scan Tool (x64) Version: 29-05-2015
Ran by Maxime at 2015-06-01 22:43:34 Run:1
Running from C:\Users\Maxime\Desktop
Loaded Profiles: Maxime (Available Profiles: Maxime)
Boot Mode: Normal
==============================================

fixlist content:

HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe [14115328 2015-01-09] (zik.mu)
HKLM-x32\...\Run: [FlashGamesRockstar] => C:\Program Files (x86)\FlashGamesRockstar\FlashGamesRockstarApp.exe [1634264 2015-05-27] ()
HKLM-x32\...\Run: [SmartWeb] => C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe [270368 2015-02-17] (SoftBrain Technologies Ltd.)
HKLM-x32\...\Run: [gmsd_fr_596] => C:\Program Files (x86)\gmsd_fr_596\gmsd_fr_596.exe [3983528 2015-05-31] ()
HKLM-x32\...\RunOnce: [upgmsd_fr_596.exe] => C:\Users\Maxime\AppData\Local\gmsd_fr_596\upgmsd_fr_596.exe [3318728 2015-05-31] ()
HKU\S-1-5-21-1787067313-2956365325-3556096684-1000\...\Run: [GoogleChromeAutoLaunch_5B66BD8DDEEB08490780A93EC9F48C8A] => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440 2015-05-12] (Crossbrowse)
HKU\S-1-5-21-1787067313-2956365325-3556096684-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.95\OptProLauncher.exe [148112 2015-05-27] ()
Startup: C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [2015-06-01]
ShortcutTarget: crossbrowse.lnk -> C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (Crossbrowse)
Startup: C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-06-01]
ShortcutTarget: SmartWeb.lnk -> C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
Winsock: Catalog9 01 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 02 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 03 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 04 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 05 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 06 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 07 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 08 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 09 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 10 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9 21 C:\Windows\Provider32\Provider.dll [145408 2015-06-01] ()
Winsock: Catalog9-x64 01 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 02 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 03 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 04 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 05 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 06 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 07 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 08 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 09 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 10 C:\Windows\Provider.dll [173056 2015-06-01] ()
Winsock: Catalog9-x64 21 C:\Windows\Provider.dll [173056 2015-06-01] ()
CHR Extension: (BrowserV01.06) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhkmcfanijhphphomamdkaejjadkhgn [2015-06-01]
CHR Extension: (Edu App) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\apfkeogliibfminiiihgdkkcaenchhia [2015-06-01]
R2 caa89563; c:\Program Files (x86)\Optimizer Pro 3.95\OptProMon.dll [1781392 2015-06-01] () <==== ATTENTION
R2 dhaqIYbqePe; C:\ProgramData\vsmPbeVxE\dhaqIYbqePe.exe [2731504 2015-06-01] (Rational Thought Solutions)
R2 fivyzipo; C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB\hnsa5BD.tmp [311296 2015-06-01] () [File not signed]
R2 gejudebi; C:\Users\Maxime\AppData\Local\00000000-1433186097-0000-0000-448A5B2551AB\snsg783E.tmp [130560 2015-06-01] () [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [157824 2015-05-18] (XTab system)
R2 tyvozyno; C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB\jnskEDE7.tmp [129536 2015-06-01] () [File not signed]
R2 Update Edu App; C:\Program Files (x86)\Edu App\updateEduApp.exe [460008 2015-06-01] ()
R2 UpdateDustTool; C:\Windows\Provider\UpdaterToolService.exe [111616 2015-04-22] (VIS without Co) [File not signed]
R2 Util Edu App; C:\Program Files (x86)\Edu App\bin\utilEduApp.exe [460008 2015-06-01] ()
R4 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [697000 2015-06-01] (DTools LIMITED) <==== ATTENTION
S2 insvc_1.10.0.14; C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe [X]
S2 mailUpdate; C:\ProgramData\MailUpdate\mailUpdate.exe -service [X]
R2 midebuty; C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB\nskBD21.tmpfs [X]
S2 Update webget; C:\Program Files (x86)\webget\updatewebget.exe [X]
2015-06-01 21:29 - 2015-06-01 21:29 - 00005462 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5
2015-06-01 21:29 - 2015-06-01 21:29 - 00004058 _____ () C:\Windows\System32\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p
2015-06-01 21:29 - 2015-06-01 21:29 - 00002432 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user.job
2015-06-01 21:29 - 2015-06-01 21:29 - 00002432 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.job
2015-06-01 21:29 - 2015-06-01 21:29 - 00001030 _____ () C:\Windows\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p.job
2015-06-01 21:28 - 2015-06-01 21:33 - 00000952 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-06-01 21:28 - 2015-06-01 21:33 - 00000948 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00008532 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6
2015-06-01 21:28 - 2015-06-01 21:28 - 00008198 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7
2015-06-01 21:28 - 2015-06-01 21:28 - 00006490 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7
2015-06-01 21:28 - 2015-06-01 21:28 - 00006152 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6
2015-06-01 21:28 - 2015-06-01 21:28 - 00005504 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00005168 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00003950 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-06-01 21:28 - 2015-06-01 21:28 - 00003696 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-06-01 21:28 - 2015-06-01 21:28 - 00003460 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00003124 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.job
2015-06-01 21:28 - 2015-06-01 21:28 - 00000000 ____D () C:\Program Files (x86)\d27eee8e-ed87-471d-9fcc-d7b6d7f011bc
2015-06-01 21:27 - 2015-06-01 21:29 - 00000000 ____D () C:\Program Files (x86)\BrowserV01.06
2015-06-01 21:27 - 2015-06-01 21:27 - 00007510 _____ () C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3
2015-06-01 21:27 - 2015-06-01 21:27 - 00004480 _____ () C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.job
2015-06-01 21:27 - 2015-06-01 21:27 - 00000000 ____D () C:\Users\Maxime\AppData\Local\globalUpdate
2015-06-01 21:25 - 2015-06-01 21:25 - 00004086 _____ () C:\Windows\System32\Tasks\Crossbrowse
2015-06-01 21:25 - 2015-06-01 21:25 - 00002396 _____ () C:\Users\Public\Desktop\Crossbrowse.lnk
2015-06-01 21:25 - 2015-06-01 21:25 - 00002273 _____ () C:\Users\Public\Desktop\Facebook.lnk
2015-06-01 21:25 - 2015-06-01 21:25 - 00001058 _____ () C:\Windows\Tasks\Crossbrowse.job
2015-06-01 21:25 - 2015-06-01 21:25 - 00000000 ____D () C:\Users\Maxime\AppData\Local\Crossbrowse
2015-06-01 21:25 - 2015-06-01 21:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
2015-06-01 21:24 - 2015-06-01 21:24 - 00000863 _____ () C:\Users\Maxime\Desktop\3D BubbleSound.lnk
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\MailUpdate
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\ProgramData\MailUpdate
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Program Files\BubbleSound
2015-06-01 21:24 - 2015-06-01 21:24 - 00000000 ____D () C:\Program Files (x86)\Crossbrowse
2015-06-01 21:24 - 2015-06-01 05:39 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64.sys
2015-06-01 21:22 - 2015-06-01 21:27 - 00000000 ____D () C:\Program Files (x86)\Edu App
2015-06-01 21:15 - 2015-06-01 21:32 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-06-01 21:15 - 2015-06-01 21:15 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-06-01 21:15 - 2015-06-01 21:15 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-06-01 21:14 - 2015-06-01 21:14 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\oursurfing
2015-06-01 21:12 - 2015-06-01 21:23 - 00000000 ____D () C:\Users\Maxime\AppData\Local\gmsd_fr_596
2015-06-01 21:12 - 2015-06-01 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdaterService
2015-06-01 21:12 - 2015-06-01 21:12 - 00000000 ____D () C:\Program Files (x86)\gmsd_fr_596
2015-06-01 21:12 - 2015-06-01 21:12 - 00000000 ____D () C:\Program Files (x86)\Bin
2015-06-01 21:11 - 2015-06-01 21:11 - 00004038 _____ () C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-06-01 21:11 - 2015-06-01 21:11 - 00000000 ____D () C:\Windows\Provider32
2015-06-01 21:11 - 2015-06-01 21:11 - 00000000 ____D () C:\Windows\Provider
2015-06-01 21:11 - 2015-06-01 21:11 - 00000000 ____D () C:\Users\Maxime\AppData\Local\SmartWeb
2015-06-01 21:11 - 2015-05-28 13:55 - 00173056 _____ () C:\Windows\Provider.dll
2015-06-01 21:11 - 2015-05-28 13:55 - 00101888 _____ () C:\Windows\Installer.exe
2015-06-01 21:00 - 2015-06-01 21:00 - 00001094 _____ () C:\Users\Maxime\Desktop\Continue Live Installation.lnk
2015-06-01 20:42 - 2015-06-01 20:42 - 00023504 _____ () C:\Users\Maxime\Desktop\Nouveau document texte.txt
2015-06-01 20:40 - 2015-06-01 20:40 - 00000496 __RSH () C:\ProgramData\ntuser.pol
2015-06-01 20:08 - 2015-06-01 20:45 - 00003448 _____ () C:\Windows\System32\Tasks\Trielissot
2015-06-01 20:08 - 2015-06-01 20:08 - 00001049 _____ () C:\Users\Maxime\Desktop\AnyProtect.lnk
2015-06-01 20:08 - 2015-06-01 20:08 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-06-01 20:08 - 2015-06-01 20:08 - 00000000 ____D () C:\ProgramData\Trielissot
2015-06-01 20:05 - 2015-06-01 21:04 - 00000000 ____D () C:\Users\Maxime\AppData\Local\HealthAlert
2015-06-01 20:05 - 2015-06-01 20:05 - 00613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsu9D64.tmp
2015-06-01 20:05 - 2015-06-01 20:05 - 00000000 ____D () C:\Users\Maxime\SupTab
2015-06-01 20:05 - 2015-06-01 20:05 - 00000000 ____D () C:\HealthAlert
2015-06-01 20:04 - 2015-06-01 21:17 - 00003258 _____ () C:\Windows\System32\Tasks\Optimizer Pro Schedule
2015-06-01 20:04 - 2015-06-01 20:04 - 00001103 _____ () C:\Users\Maxime\Desktop\Optimizer Pro.lnk
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\Users\Maxime\Documents\Optimizer Pro
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\Optimizer Pro
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-06-01 20:04 - 2015-06-01 20:04 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.95
2015-06-01 20:03 - 2015-06-01 21:24 - 00000000 ____D () C:\Program Files (x86)\PenWes
2015-06-01 20:03 - 2015-06-01 20:05 - 00000000 ____D () C:\ProgramData\vsmPbeVxE
2015-06-01 20:03 - 2015-06-01 20:03 - 00002970 _____ () C:\Windows\System32\Tasks\PenWes
2015-06-01 20:03 - 2015-06-01 20:03 - 00000000 ____D () C:\ProgramData\Penwes
2015-06-01 20:01 - 2015-06-01 20:01 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\mystartsearch
2015-06-01 19:44 - 2015-06-01 19:44 - 00613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsc7C28.tmp
2015-06-01 19:43 - 2015-06-01 19:43 - 00000000 _____ () C:\Windows\SysWOW64\Number of results
2015-06-01 19:39 - 2015-06-01 19:39 - 02231296 _____ () C:\Users\Maxime\Desktop\AdwCleaner-4.206.exe
2015-06-01 19:39 - 2015-06-01 19:39 - 00613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nspBB46.tmp
2015-06-01 19:28 - 2015-06-01 19:28 - 00000000 ____D () C:\Program Files (x86)\6b014657-170e-4d64-b464-1159e9bab40e
2015-06-01 19:27 - 2015-06-01 20:27 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-06-01 19:14 - 2015-06-01 20:45 - 00000000 ____D () C:\Users\Maxime\AppData\Local\00000000-1433186097-0000-0000-448A5B2551AB
2015-06-01 19:12 - 2009-06-10 23:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hp.bak
2015-06-01 19:11 - 2015-06-01 19:37 - 00000000 ____D () C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB
2015-06-01 18:06 - 2015-06-01 18:06 - 00000080 _____ () C:\Users\Maxime\AppData\Local???????????????????
2015-06-01 18:00 - 2015-06-01 18:00 - 00003150 _____ () C:\Windows\System32\Tasks\{78D28E4D-5E6A-4ED0-8965-99549B36CC66}
2015-06-01 17:11 - 2015-06-01 20:39 - 00000332 _____ () C:\Windows\Tasks\EMRDYTPUD1.job
2015-06-01 17:11 - 2015-06-01 17:11 - 00002854 _____ () C:\Windows\System32\Tasks\EMRDYTPUD1
2015-06-01 17:11 - 2015-06-01 17:11 - 00000000 ____D () C:\ProgramData\28341ff220e0446c9fff27c4493d622e
2015-05-26 02:46 - 2015-05-26 03:51 - 00000000 ____D () C:\Program Files (x86)\Software
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe
2015-06-01 19:44 - 2015-06-01 19:44 - 0613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsc7C28.tmp
2015-06-01 19:39 - 2015-06-01 19:39 - 0613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nspBB46.tmp
2015-06-01 20:05 - 2015-06-01 20:05 - 0613255 _____ (CMI Limited) C:\Users\Maxime\AppData\Local\nsu9D64.tmp
Task: {0A0FA9B3-F858-4D97-8C87-9084BB7761B2} - System32\Tasks\EMRDYTPUD1 => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION
Task: {0AF617FF-40F0-4C7C-85F3-F113DF9E905F} - System32\Tasks\PenWes => C:\Program Files (x86)\PenWes\dnshelper.exe [2014-09-17] () <==== ATTENTION
Task: {1196FB2C-264D-46B8-8294-894F80E5EB8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-09] (Google Inc.)
Task: {18C7E5D0-35BB-4BD3-9DC4-65FE3EE89914} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe [2015-02-17] (SoftBrain Technologies Ltd.) <==== ATTENTION
Task: {1B3BAAB5-0782-4CA3-8A62-7FBDDB8BE47E} - System32\Tasks\Optimizer Pro Schedule => C:\Program Files (x86)\Optimizer Pro 3.95\OptProLauncher.exe [2015-05-27] () <==== ATTENTION
Task: {2E35C167-E214-41B1-9F3C-01A366763108} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: {31A757CB-146E-4540-8793-3EF8075D1ABE} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {370BB321-6165-465C-99CA-025B9460DE8F} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {57FB6485-27E8-408D-A91D-400067A8B774} - System32\Tasks\{78D28E4D-5E6A-4ED0-8965-99549B36CC66} => pcalua.exe -a C:\Users\Maxime\AppData\Roaming\oursurfing\UninstallManager.exe -c -ptid=smt
Task: {79A40B1A-C37D-4146-B6E3-E389F2D46A85} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {7DFF9FB1-9850-4BCF-9FA3-EF3375E3845D} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: {BE625043-744F-415F-931E-D09654659C54} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {C7184466-8E52-42BD-89AB-BC1F0EBE0DE7} - System32\Tasks\Crossbrowse => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION
Task: {D4BD74D9-04B4-43EE-B67A-402A2E44F774} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {D7EC46A7-E455-4295-9FFA-E7764263BC85} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6 => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: {E8F71FC4-AEF5-4A62-8456-F770E7C8E43A} - System32\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p => C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe [2015-04-20] () <==== ATTENTION
Task: {E9ED1AB9-96BD-4BAE-9AE4-499F0A599AB1} - System32\Tasks\Trielissot => C:\ProgramData\Trielissot\1.0.1.0\aunawruo.exe [2015-06-01] ()
Task: {EB9673EB-5132-4827-A54A-0FF2BDF1CB20} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\21.7.0.11\WSCStub.exe [2015-03-07] (Symantec Corporation)
Task: {F758DF1E-A79B-4C86-BDCA-7E07A18E7948} - System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe [2015-06-01] (BrowserV01.06) <==== ATTENTION
Task: C:\Windows\Tasks\Crossbrowse.job => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.job => C:\Program Files (x86)\BrowserV01.06\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\EMRDYTPUD1.job => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION
Task: C:\Windows\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p.job => C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
cmd: netsh winsock reset


HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\3D BubbleSound => value Removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\FlashGamesRockstar => value Removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SmartWeb => value Removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_596 => value Removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\upgmsd_fr_596.exe => value Removed successfully
HKU\S-1-5-21-1787067313-2956365325-3556096684-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_5B66BD8DDEEB08490780A93EC9F48C8A => value Removed successfully
HKU\S-1-5-21-1787067313-2956365325-3556096684-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Optimizer Pro => value Removed successfully
C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk => Moved successfully.
C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe => Moved successfully.
C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk => Moved successfully.
C:\Users\Maxime\AppData\Local\SmartWeb\SmartWebHelper.exe => Moved successfully.
Winsock: Catalog entry 000000000001 => Removed successfully
Winsock: Catalog entry 000000000002 => Removed successfully
Winsock: Catalog entry 000000000003 => Removed successfully
Winsock: Catalog entry 000000000004 => Removed successfully
Winsock: Catalog entry 000000000005 => Removed successfully
Winsock: Catalog entry 000000000006 => Removed successfully
Winsock: Catalog entry 000000000007 => Removed successfully
Winsock: Catalog entry 000000000008 => Removed successfully
Winsock: Catalog entry 000000000009 => Removed successfully
Winsock: Catalog entry 000000000010 => Removed successfully
Winsock: Catalog entry 000000000021 => Removed successfully
Winsock: Catalog entry 000000000001 => Removed successfully
Winsock: Catalog entry 000000000002 => Removed successfully
Winsock: Catalog entry 000000000003 => Removed successfully
Winsock: Catalog entry 000000000004 => Removed successfully
Winsock: Catalog entry 000000000005 => Removed successfully
Winsock: Catalog entry 000000000006 => Removed successfully
Winsock: Catalog entry 000000000007 => Removed successfully
Winsock: Catalog entry 000000000008 => Removed successfully
Winsock: Catalog entry 000000000009 => Removed successfully
Winsock: Catalog entry 000000000010 => Removed successfully
Winsock: Catalog entry 000000000021 => Removed successfully
C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhkmcfanijhphphomamdkaejjadkhgn => Moved successfully.
C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\apfkeogliibfminiiihgdkkcaenchhia => Moved successfully.
caa89563 => Service Removed successfully
dhaqIYbqePe => Unable to stop service.
dhaqIYbqePe => Service Removed successfully
fivyzipo => Service stopped successfully.
fivyzipo => Service Removed successfully
gejudebi => Service stopped successfully.
gejudebi => Service Removed successfully
IHProtect Service => Service stopped successfully.
IHProtect Service => Service Removed successfully
tyvozyno => Service stopped successfully.
tyvozyno => Service Removed successfully
Update Edu App => Unable to stop service.
Update Edu App => Service Removed successfully
UpdateDustTool => Service stopped successfully.
UpdateDustTool => Service Removed successfully
Util Edu App => Unable to stop service.
Util Edu App => Service Removed successfully
WindowsMangerProtect => Unable to stop service.
WindowsMangerProtect => Service could not remove
insvc_1.10.0.14 => Service Removed successfully
mailUpdate => Service Removed successfully
midebuty => Service not found.
Update webget => Service Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5 => Moved successfully.
C:\Windows\System32\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user.job => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.job => Moved successfully.
C:\Windows\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6 => Moved successfully.
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7 => Moved successfully.
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7 => Moved successfully.
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6 => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.job => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.job => Moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.job => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.job => Moved successfully.
C:\Program Files (x86)\d27eee8e-ed87-471d-9fcc-d7b6d7f011bc => Moved successfully.
C:\Program Files (x86)\BrowserV01.06 => Moved successfully.
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3 => Moved successfully.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.job => Moved successfully.
C:\Users\Maxime\AppData\Local\globalUpdate => Moved successfully.
C:\Windows\System32\Tasks\Crossbrowse => Moved successfully.
C:\Users\Public\Desktop\Crossbrowse.lnk => Moved successfully.
C:\Users\Public\Desktop\Facebook.lnk => Moved successfully.
C:\Windows\Tasks\Crossbrowse.job => Moved successfully.

"C:\Users\Maxime\AppData\Local\Crossbrowse" folder move:

Could not move "C:\Users\Maxime\AppData\Local\Crossbrowse" folder => Scheduled to move on reboot.

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse => Moved successfully.
C:\Users\Maxime\Desktop\3D BubbleSound.lnk => Moved successfully.
C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0 => Moved successfully.
C:\Users\Maxime\AppData\Roaming\MailUpdate => Moved successfully.
C:\ProgramData\MailUpdate => Moved successfully.
C:\Program Files\BubbleSound => Moved successfully.

"C:\Program Files (x86)\Crossbrowse" folder move:

Could not move "C:\Program Files (x86)\Crossbrowse" folder => Scheduled to move on reboot.

C:\Windows\system32\Drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64.sys => Moved successfully.

"C:\Program Files (x86)\Edu App" folder move:

Could not move "C:\Program Files (x86)\Edu App" folder => Scheduled to move on reboot.

C:\Program Files (x86)\XTab => Moved successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\ProgramData\IHProtectUpDate => Moved successfully.
C:\Users\Maxime\AppData\Roaming\oursurfing => Moved successfully.

"C:\Users\Maxime\AppData\Local\gmsd_fr_596" folder move:

Could not move "C:\Users\Maxime\AppData\Local\gmsd_fr_596" folder => Scheduled to move on reboot.

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdaterService => Moved successfully.

"C:\Program Files (x86)\gmsd_fr_596" folder move:

Could not move "C:\Program Files (x86)\gmsd_fr_596" folder => Scheduled to move on reboot.


"C:\Program Files (x86)\Bin" folder move:

Could not move "C:\Program Files (x86)\Bin" folder => Scheduled to move on reboot.

C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task => Moved successfully.
C:\Windows\Provider32 => Moved successfully.
C:\Windows\Provider => Moved successfully.

"C:\Users\Maxime\AppData\Local\SmartWeb" folder move:

Could not move "C:\Users\Maxime\AppData\Local\SmartWeb" folder => Scheduled to move on reboot.

C:\Windows\Provider.dll => Moved successfully.
C:\Windows\Installer.exe => Moved successfully.
C:\Users\Maxime\Desktop\Continue Live Installation.lnk => Moved successfully.
C:\Users\Maxime\Desktop\Nouveau document texte.txt => Moved successfully.
C:\ProgramData\ntuser.pol => Moved successfully.
C:\Windows\System32\Tasks\Trielissot => Moved successfully.
C:\Users\Maxime\Desktop\AnyProtect.lnk => Moved successfully.
C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup => Moved successfully.
C:\ProgramData\Trielissot => Moved successfully.
C:\Users\Maxime\AppData\Local\HealthAlert => Moved successfully.
C:\Users\Maxime\AppData\Local\nsu9D64.tmp => Moved successfully.
C:\Users\Maxime\SupTab => Moved successfully.
C:\HealthAlert => Moved successfully.
C:\Windows\System32\Tasks\Optimizer Pro Schedule => Moved successfully.
C:\Users\Maxime\Desktop\Optimizer Pro.lnk => Moved successfully.
C:\Users\Maxime\Documents\Optimizer Pro => Moved successfully.
C:\Users\Maxime\AppData\Roaming\Optimizer Pro => Moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 => Moved successfully.
C:\Program Files (x86)\Optimizer Pro 3.95 => Moved successfully.
C:\Program Files (x86)\PenWes => Moved successfully.

"C:\ProgramData\vsmPbeVxE" folder move:

Could not move "C:\ProgramData\vsmPbeVxE" folder => Scheduled to move on reboot.

C:\Windows\System32\Tasks\PenWes => Moved successfully.
C:\ProgramData\Penwes => Moved successfully.
C:\Users\Maxime\AppData\Roaming\mystartsearch => Moved successfully.
C:\Users\Maxime\AppData\Local\nsc7C28.tmp => Moved successfully.
C:\Windows\SysWOW64\Number of results => Moved successfully.
C:\Users\Maxime\Desktop\AdwCleaner-4.206.exe => Moved successfully.
C:\Users\Maxime\AppData\Local\nspBB46.tmp => Moved successfully.
C:\Program Files (x86)\6b014657-170e-4d64-b464-1159e9bab40e => Moved successfully.
C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => Moved successfully.
C:\Users\Maxime\AppData\Local\00000000-1433186097-0000-0000-448A5B2551AB => Moved successfully.
C:\Windows\system32\Drivers\etc\hp.bak => Moved successfully.
C:\Users\Maxime\AppData\Roaming\00000000-1433178714-0000-0000-448A5B2551AB => Moved successfully.

"C:\Users\Maxime\AppData\Local???????????????????" folder move:

Could not move "C:\Users\Maxime\AppData\Local???????????????????" folder => Scheduled to move on reboot.

C:\Windows\System32\Tasks\{78D28E4D-5E6A-4ED0-8965-99549B36CC66} => Moved successfully.
C:\Windows\Tasks\EMRDYTPUD1.job => Moved successfully.
C:\Windows\System32\Tasks\EMRDYTPUD1 => Moved successfully.
C:\ProgramData\28341ff220e0446c9fff27c4493d622e => Moved successfully.
C:\Program Files (x86)\Software => Moved successfully.
C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p => Moved successfully.
C:\Users\Maxime\AppData\Roaming\EPdOqd56y3W4DfDFY3Ei65QJZ7p.exe => Moved successfully.
"C:\Users\Maxime\AppData\Local\nsc7C28.tmp" => File/Folder not found.
"C:\Users\Maxime\AppData\Local\nspBB46.tmp" => File/Folder not found.
"C:\Users\Maxime\AppData\Local\nsu9D64.tmp" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0A0FA9B3-F858-4D97-8C87-9084BB7761B2}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A0FA9B3-F858-4D97-8C87-9084BB7761B2}" => key Removed successfully
C:\Windows\System32\Tasks\EMRDYTPUD1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EMRDYTPUD1" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0AF617FF-40F0-4C7C-85F3-F113DF9E905F}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0AF617FF-40F0-4C7C-85F3-F113DF9E905F}" => key Removed successfully
C:\Windows\System32\Tasks\PenWes not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PenWes" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1196FB2C-264D-46B8-8294-894F80E5EB8D}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1196FB2C-264D-46B8-8294-894F80E5EB8D}" => key Removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{18C7E5D0-35BB-4BD3-9DC4-65FE3EE89914}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18C7E5D0-35BB-4BD3-9DC4-65FE3EE89914}" => key Removed successfully
C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartWeb Upgrade Trigger Task" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1B3BAAB5-0782-4CA3-8A62-7FBDDB8BE47E}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B3BAAB5-0782-4CA3-8A62-7FBDDB8BE47E}" => key Removed successfully
C:\Windows\System32\Tasks\Optimizer Pro Schedule not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimizer Pro Schedule" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2E35C167-E214-41B1-9F3C-01A366763108}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E35C167-E214-41B1-9F3C-01A366763108}" => key Removed successfully
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{31A757CB-146E-4540-8793-3EF8075D1ABE}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31A757CB-146E-4540-8793-3EF8075D1ABE}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{370BB321-6165-465C-99CA-025B9460DE8F}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{370BB321-6165-465C-99CA-025B9460DE8F}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{57FB6485-27E8-408D-A91D-400067A8B774}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57FB6485-27E8-408D-A91D-400067A8B774}" => key Removed successfully
C:\Windows\System32\Tasks\{78D28E4D-5E6A-4ED0-8965-99549B36CC66} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{78D28E4D-5E6A-4ED0-8965-99549B36CC66}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{79A40B1A-C37D-4146-B6E3-E389F2D46A85}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{79A40B1A-C37D-4146-B6E3-E389F2D46A85}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7DFF9FB1-9850-4BCF-9FA3-EF3375E3845D}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7DFF9FB1-9850-4BCF-9FA3-EF3375E3845D}" => key Removed successfully
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BE625043-744F-415F-931E-D09654659C54}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE625043-744F-415F-931E-D09654659C54}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7184466-8E52-42BD-89AB-BC1F0EBE0DE7}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7184466-8E52-42BD-89AB-BC1F0EBE0DE7}" => key Removed successfully
C:\Windows\System32\Tasks\Crossbrowse not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Crossbrowse" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D4BD74D9-04B4-43EE-B67A-402A2E44F774}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D4BD74D9-04B4-43EE-B67A-402A2E44F774}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D7EC46A7-E455-4295-9FFA-E7764263BC85}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7EC46A7-E455-4295-9FFA-E7764263BC85}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E8F71FC4-AEF5-4A62-8456-F770E7C8E43A}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E8F71FC4-AEF5-4A62-8456-F770E7C8E43A}" => key Removed successfully
C:\Windows\System32\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPdOqd56y3W4DfDFY3Ei65QJZ7p" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{E9ED1AB9-96BD-4BAE-9AE4-499F0A599AB1}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E9ED1AB9-96BD-4BAE-9AE4-499F0A599AB1}" => key Removed successfully
C:\Windows\System32\Tasks\Trielissot not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Trielissot" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EB9673EB-5132-4827-A54A-0FF2BDF1CB20}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB9673EB-5132-4827-A54A-0FF2BDF1CB20}" => key Removed successfully
C:\Windows\System32\Tasks\Norton WSC Integration => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton WSC Integration" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F758DF1E-A79B-4C86-BDCA-7E07A18E7948}" => key Removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F758DF1E-A79B-4C86-BDCA-7E07A18E7948}" => key Removed successfully
C:\Windows\System32\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user" => key Removed successfully
C:\Windows\Tasks\Crossbrowse.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-6.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-1-7.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-3.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-5_user.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-6.job not found.
C:\Windows\Tasks\d01f6d0d-5eba-4ad4-89b5-bbbfcd48bf7a-7.job not found.
C:\Windows\Tasks\EMRDYTPUD1.job not found.
C:\Windows\Tasks\EPdOqd56y3W4DfDFY3Ei65QJZ7p.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.

========= netsh winsock reset =========

Le d?marrage de la fonction d'initialisation InitHelperDll dans NSHHTTP.DLL a ?chou??;
code d'erreur?: 10107

Le catalogue Winsock a ?t? r?initialis? correctement.
Vous devez red?marrer l'ordinateur afin de finaliser la r?initialisation.


========= End of CMD: =========


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-06-01 22:48:53)<=

C:\Users\Maxime\AppData\Local\Crossbrowse => Is moved successfully
C:\Program Files (x86)\Crossbrowse => Moved successfully
C:\Program Files (x86)\Edu App => Is moved successfully
C:\Users\Maxime\AppData\Local\gmsd_fr_596 => Is moved successfully
C:\Program Files (x86)\gmsd_fr_596 => Is moved successfully
C:\Program Files (x86)\Bin => Is moved successfully
C:\Users\Maxime\AppData\Local\SmartWeb => Moved successfully
C:\ProgramData\vsmPbeVxE => Is moved successfully
"C:\Users\Maxime\AppData\Local???????????????????" => Could not move

End of Fixlog 22:48:54

0