Lenteur excessive
Résolu/Fermé
melin
Messages postés
196
Date d'inscription
lundi 28 août 2006
Statut
Membre
Dernière intervention
13 juillet 2019
-
29 juin 2015 à 19:22
melin Messages postés 196 Date d'inscription lundi 28 août 2006 Statut Membre Dernière intervention 13 juillet 2019 - 29 juin 2015 à 21:08
melin Messages postés 196 Date d'inscription lundi 28 août 2006 Statut Membre Dernière intervention 13 juillet 2019 - 29 juin 2015 à 21:08
A voir également:
- Lenteur excessive
- Lenteur pc - Guide
- Lenteur excel ✓ - Forum Excel
- Lenteur facebook ✓ - Forum Facebook
- Excessive undersized/giant packets - Forum Réseau
- Lenteur explorateur windows 11 - Windows 11
4 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
29 juin 2015 à 19:25
29 juin 2015 à 19:25
Salut,
Commence par ceci :
Suis le tutorial AdwCleaner https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= ( d'Xplode )
Télécharge le sur ton bureau ou dossier de téléchargement.
Lance AdwCleaner, clique sur [Scanner].
L'analyse peux durer plusieurs minutes, patiente.
Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]
Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
puis :
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Commence par ceci :
Suis le tutorial AdwCleaner https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= ( d'Xplode )
Télécharge le sur ton bureau ou dossier de téléchargement.
Lance AdwCleaner, clique sur [Scanner].
L'analyse peux durer plusieurs minutes, patiente.
Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]
Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
puis :
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
- FRST.txt
- Shortcut.txt
- Additionnal.txt
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
melin
Messages postés
196
Date d'inscription
lundi 28 août 2006
Statut
Membre
Dernière intervention
13 juillet 2019
2
29 juin 2015 à 20:46
29 juin 2015 à 20:46
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 658
29 juin 2015 à 20:52
29 juin 2015 à 20:52
Ta configuration a l'air trop léger pour un Windows 7.
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz
Percentage of memory in use: 40%
Total physical RAM: 2558.8 MB
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
Task: {25B53D9C-1C9D-424B-B294-FBAB54007534} - System32\Tasks\FGES => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: {262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9} - System32\Tasks\OCAPGN => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: {3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E} - System32\Tasks\{249C5F5E-1BCC-403A-B491-CBDA33365D25} => pcalua.exe -a C:\Users\MARC\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {4C76F8B1-5A36-4B33-AF08-FE2752C29B8B} - System32\Tasks\UE => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
Task: {6B3BAA2A-E114-4B5D-883F-87F3B288A013} - System32\Tasks\HHZKSKL => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: {75F65313-ED7E-4FE2-942B-753E3A243B76} - \CreateChoiceProcessTask No Task File <==== ATTENTION
Task: {B97D464A-FCF5-47BF-8788-746970389C70} - System32\Tasks\IYEEC => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: {D543FFDA-A769-4476-9815-3A28E9E28FB4} - System32\Tasks\SDPQ => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: {DEFB5849-821F-4610-A240-B4B2A3A3AA00} - System32\Tasks\IBRDUXH => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: {F4150B05-5C4D-4BB7-917B-2908D24E8EA9} - System32\Tasks\QZYCFLW => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\FGES.job => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: C:\Windows\Tasks\HHZKSKL.job => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: C:\Windows\Tasks\IBRDUXH.job => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: C:\Windows\Tasks\IYEEC.job => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: C:\Windows\Tasks\OCAPGN.job => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: C:\Windows\Tasks\QZYCFLW.job => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\SDPQ.job => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: C:\Windows\Tasks\UE.job => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaà®t, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz
Percentage of memory in use: 40%
Total physical RAM: 2558.8 MB
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
Task: {25B53D9C-1C9D-424B-B294-FBAB54007534} - System32\Tasks\FGES => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: {262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9} - System32\Tasks\OCAPGN => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: {3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E} - System32\Tasks\{249C5F5E-1BCC-403A-B491-CBDA33365D25} => pcalua.exe -a C:\Users\MARC\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {4C76F8B1-5A36-4B33-AF08-FE2752C29B8B} - System32\Tasks\UE => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
Task: {6B3BAA2A-E114-4B5D-883F-87F3B288A013} - System32\Tasks\HHZKSKL => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: {75F65313-ED7E-4FE2-942B-753E3A243B76} - \CreateChoiceProcessTask No Task File <==== ATTENTION
Task: {B97D464A-FCF5-47BF-8788-746970389C70} - System32\Tasks\IYEEC => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: {D543FFDA-A769-4476-9815-3A28E9E28FB4} - System32\Tasks\SDPQ => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: {DEFB5849-821F-4610-A240-B4B2A3A3AA00} - System32\Tasks\IBRDUXH => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: {F4150B05-5C4D-4BB7-917B-2908D24E8EA9} - System32\Tasks\QZYCFLW => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\FGES.job => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: C:\Windows\Tasks\HHZKSKL.job => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: C:\Windows\Tasks\IBRDUXH.job => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: C:\Windows\Tasks\IYEEC.job => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: C:\Windows\Tasks\OCAPGN.job => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: C:\Windows\Tasks\QZYCFLW.job => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\SDPQ.job => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: C:\Windows\Tasks\UE.job => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaà®t, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
melin
Messages postés
196
Date d'inscription
lundi 28 août 2006
Statut
Membre
Dernière intervention
13 juillet 2019
2
29 juin 2015 à 21:08
29 juin 2015 à 21:08
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 06-01-2015
Ran by MARC at 2015-06-29 21:05:14 Run:2
Running from C:\Users\MARC\Desktop
Loaded Profiles: MARC & UpdatusUser (Available profiles: MARC & UpdatusUser)
Boot Mode: Normal
==============================================
Content of fixlist:
Task: {25B53D9C-1C9D-424B-B294-FBAB54007534} - System32\Tasks\FGES => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: {262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9} - System32\Tasks\OCAPGN => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: {3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E} - System32\Tasks\{249C5F5E-1BCC-403A-B491-CBDA33365D25} => pcalua.exe -a C:\Users\MARC\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {4C76F8B1-5A36-4B33-AF08-FE2752C29B8B} - System32\Tasks\UE => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
Task: {6B3BAA2A-E114-4B5D-883F-87F3B288A013} - System32\Tasks\HHZKSKL => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: {75F65313-ED7E-4FE2-942B-753E3A243B76} - \CreateChoiceProcessTask No Task File <==== ATTENTION
Task: {B97D464A-FCF5-47BF-8788-746970389C70} - System32\Tasks\IYEEC => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: {D543FFDA-A769-4476-9815-3A28E9E28FB4} - System32\Tasks\SDPQ => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: {DEFB5849-821F-4610-A240-B4B2A3A3AA00} - System32\Tasks\IBRDUXH => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: {F4150B05-5C4D-4BB7-917B-2908D24E8EA9} - System32\Tasks\QZYCFLW => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\FGES.job => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: C:\Windows\Tasks\HHZKSKL.job => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: C:\Windows\Tasks\IBRDUXH.job => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: C:\Windows\Tasks\IYEEC.job => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: C:\Windows\Tasks\OCAPGN.job => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: C:\Windows\Tasks\QZYCFLW.job => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\SDPQ.job => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: C:\Windows\Tasks\UE.job => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{25B53D9C-1C9D-424B-B294-FBAB54007534}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25B53D9C-1C9D-424B-B294-FBAB54007534}" => Key deleted successfully.
C:\Windows\System32\Tasks\FGES => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FGES" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9}" => Key deleted successfully.
C:\Windows\System32\Tasks\OCAPGN => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OCAPGN" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E}" => Key deleted successfully.
C:\Windows\System32\Tasks\{249C5F5E-1BCC-403A-B491-CBDA33365D25} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{249C5F5E-1BCC-403A-B491-CBDA33365D25}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4C76F8B1-5A36-4B33-AF08-FE2752C29B8B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C76F8B1-5A36-4B33-AF08-FE2752C29B8B}" => Key deleted successfully.
C:\Windows\System32\Tasks\UE => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UE" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6B3BAA2A-E114-4B5D-883F-87F3B288A013}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B3BAA2A-E114-4B5D-883F-87F3B288A013}" => Key deleted successfully.
C:\Windows\System32\Tasks\HHZKSKL => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HHZKSKL" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75F65313-ED7E-4FE2-942B-753E3A243B76}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75F65313-ED7E-4FE2-942B-753E3A243B76}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateChoiceProcessTask" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B97D464A-FCF5-47BF-8788-746970389C70}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B97D464A-FCF5-47BF-8788-746970389C70}" => Key deleted successfully.
C:\Windows\System32\Tasks\IYEEC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IYEEC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D543FFDA-A769-4476-9815-3A28E9E28FB4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D543FFDA-A769-4476-9815-3A28E9E28FB4}" => Key deleted successfully.
C:\Windows\System32\Tasks\SDPQ => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SDPQ" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DEFB5849-821F-4610-A240-B4B2A3A3AA00}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEFB5849-821F-4610-A240-B4B2A3A3AA00}" => Key deleted successfully.
C:\Windows\System32\Tasks\IBRDUXH => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IBRDUXH" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F4150B05-5C4D-4BB7-917B-2908D24E8EA9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4150B05-5C4D-4BB7-917B-2908D24E8EA9}" => Key deleted successfully.
C:\Windows\System32\Tasks\QZYCFLW => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\QZYCFLW" => Key deleted successfully.
C:\Windows\Tasks\FGES.job => Moved successfully.
C:\Windows\Tasks\HHZKSKL.job => Moved successfully.
C:\Windows\Tasks\IBRDUXH.job => Moved successfully.
C:\Windows\Tasks\IYEEC.job => Moved successfully.
C:\Windows\Tasks\OCAPGN.job => Moved successfully.
C:\Windows\Tasks\QZYCFLW.job => Moved successfully.
C:\Windows\Tasks\SDPQ.job => Moved successfully.
C:\Windows\Tasks\UE.job => Moved successfully.
Ran by MARC at 2015-06-29 21:05:14 Run:2
Running from C:\Users\MARC\Desktop
Loaded Profiles: MARC & UpdatusUser (Available profiles: MARC & UpdatusUser)
Boot Mode: Normal
==============================================
Content of fixlist:
Task: {25B53D9C-1C9D-424B-B294-FBAB54007534} - System32\Tasks\FGES => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: {262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9} - System32\Tasks\OCAPGN => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: {3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E} - System32\Tasks\{249C5F5E-1BCC-403A-B491-CBDA33365D25} => pcalua.exe -a C:\Users\MARC\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {4C76F8B1-5A36-4B33-AF08-FE2752C29B8B} - System32\Tasks\UE => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
Task: {6B3BAA2A-E114-4B5D-883F-87F3B288A013} - System32\Tasks\HHZKSKL => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: {75F65313-ED7E-4FE2-942B-753E3A243B76} - \CreateChoiceProcessTask No Task File <==== ATTENTION
Task: {B97D464A-FCF5-47BF-8788-746970389C70} - System32\Tasks\IYEEC => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: {D543FFDA-A769-4476-9815-3A28E9E28FB4} - System32\Tasks\SDPQ => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: {DEFB5849-821F-4610-A240-B4B2A3A3AA00} - System32\Tasks\IBRDUXH => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: {F4150B05-5C4D-4BB7-917B-2908D24E8EA9} - System32\Tasks\QZYCFLW => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\FGES.job => C:\Users\MARC\AppData\Roaming\FGES.exe <==== ATTENTION
Task: C:\Windows\Tasks\HHZKSKL.job => C:\Users\MARC\AppData\Roaming\HHZKSKL.exe <==== ATTENTION
Task: C:\Windows\Tasks\IBRDUXH.job => C:\Users\MARC\AppData\Roaming\IBRDUXH.exe <==== ATTENTION
Task: C:\Windows\Tasks\IYEEC.job => C:\Users\MARC\AppData\Roaming\IYEEC.exe <==== ATTENTION
Task: C:\Windows\Tasks\OCAPGN.job => C:\Users\MARC\AppData\Roaming\OCAPGN.exe <==== ATTENTION
Task: C:\Windows\Tasks\QZYCFLW.job => C:\Users\MARC\AppData\Roaming\QZYCFLW.exe <==== ATTENTION
Task: C:\Windows\Tasks\SDPQ.job => C:\Users\MARC\AppData\Roaming\SDPQ.exe <==== ATTENTION
Task: C:\Windows\Tasks\UE.job => C:\Users\MARC\AppData\Roaming\UE.exe <==== ATTENTION
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{25B53D9C-1C9D-424B-B294-FBAB54007534}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25B53D9C-1C9D-424B-B294-FBAB54007534}" => Key deleted successfully.
C:\Windows\System32\Tasks\FGES => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FGES" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{262935AC-0484-4E3E-AF9E-9C0ACB7A7AB9}" => Key deleted successfully.
C:\Windows\System32\Tasks\OCAPGN => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OCAPGN" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3AF4D103-5F47-4A69-A4D2-927CAD3D1D4E}" => Key deleted successfully.
C:\Windows\System32\Tasks\{249C5F5E-1BCC-403A-B491-CBDA33365D25} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{249C5F5E-1BCC-403A-B491-CBDA33365D25}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4C76F8B1-5A36-4B33-AF08-FE2752C29B8B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C76F8B1-5A36-4B33-AF08-FE2752C29B8B}" => Key deleted successfully.
C:\Windows\System32\Tasks\UE => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UE" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6B3BAA2A-E114-4B5D-883F-87F3B288A013}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B3BAA2A-E114-4B5D-883F-87F3B288A013}" => Key deleted successfully.
C:\Windows\System32\Tasks\HHZKSKL => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HHZKSKL" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{75F65313-ED7E-4FE2-942B-753E3A243B76}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75F65313-ED7E-4FE2-942B-753E3A243B76}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateChoiceProcessTask" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B97D464A-FCF5-47BF-8788-746970389C70}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B97D464A-FCF5-47BF-8788-746970389C70}" => Key deleted successfully.
C:\Windows\System32\Tasks\IYEEC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IYEEC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D543FFDA-A769-4476-9815-3A28E9E28FB4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D543FFDA-A769-4476-9815-3A28E9E28FB4}" => Key deleted successfully.
C:\Windows\System32\Tasks\SDPQ => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SDPQ" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DEFB5849-821F-4610-A240-B4B2A3A3AA00}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEFB5849-821F-4610-A240-B4B2A3A3AA00}" => Key deleted successfully.
C:\Windows\System32\Tasks\IBRDUXH => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IBRDUXH" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F4150B05-5C4D-4BB7-917B-2908D24E8EA9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4150B05-5C4D-4BB7-917B-2908D24E8EA9}" => Key deleted successfully.
C:\Windows\System32\Tasks\QZYCFLW => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\QZYCFLW" => Key deleted successfully.
C:\Windows\Tasks\FGES.job => Moved successfully.
C:\Windows\Tasks\HHZKSKL.job => Moved successfully.
C:\Windows\Tasks\IBRDUXH.job => Moved successfully.
C:\Windows\Tasks\IYEEC.job => Moved successfully.
C:\Windows\Tasks\OCAPGN.job => Moved successfully.
C:\Windows\Tasks\QZYCFLW.job => Moved successfully.
C:\Windows\Tasks\SDPQ.job => Moved successfully.
C:\Windows\Tasks\UE.job => Moved successfully.