SmartSaver+3 - Désinstallation de programme/adwares
Fermé
MickeyMe
Messages postés
29
Date d'inscription
mardi 15 avril 2014
Statut
Membre
Dernière intervention
9 juillet 2015
-
Modifié par Malekal_morte- le 7/07/2015 à 13:14
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 9 juil. 2015 à 08:57
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 9 juil. 2015 à 08:57
A voir également:
- SmartSaver+3 - Désinstallation de programme/adwares
- Désinstaller programme windows 10 - Guide
- Programme demarrage windows 10 - Guide
- Picasa 3 - Télécharger - Albums photo
- Logiciel de desinstallation - Télécharger - Nettoyage
3 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
7 juil. 2015 à 13:13
7 juil. 2015 à 13:13
Salut,
Tu as installé des adwares et programmes parasites sur ton PC qui ouvrent des publicités et ralentissent l'ordinateur et les navigateurs WEB.
Voici la procédure à suivre pour les supprimer :
Commence par ceci :
Suis le tutorial AdwCleaner https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= ( d'Xplode )
Télécharge le sur ton bureau ou dossier de téléchargement.
Lance AdwCleaner, clique sur [Scanner].
L'analyse peux durer plusieurs minutes, patiente.
Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]
Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
puis :
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Tu as installé des adwares et programmes parasites sur ton PC qui ouvrent des publicités et ralentissent l'ordinateur et les navigateurs WEB.
Voici la procédure à suivre pour les supprimer :
Commence par ceci :
Suis le tutorial AdwCleaner https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= ( d'Xplode )
Télécharge le sur ton bureau ou dossier de téléchargement.
Lance AdwCleaner, clique sur [Scanner].
L'analyse peux durer plusieurs minutes, patiente.
Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]
Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
puis :
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
- FRST.txt
- Shortcut.txt
- Additionnal.txt
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
8 juil. 2015 à 08:42
8 juil. 2015 à 08:42
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe
HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [gmsd_fr_002020021] => [X]
HKLM-x32\...\Run: [gmsd_fr_004010022] => [X]
HKLM-x32\...\Run: [gmsd_fr_005010023] => [X]
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.99\OptProLauncher.exe [148112 2015-07-03] ()
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Bubble Dock] => C:\Users\chems\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe [666384 2015-05-13] (Nosibay)
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [WindApp] => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp.exe /winstartup
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
ProxyServer: [.DEFAULT] => http=127.0.0.1:49180;https=127.0.0.1:49180 [Attention - Possible Proxy Malicieux]
S2 c31ed948; c:\Program Files (x86)\Optimizer Pro 3.99\OptProMon.dll [2570896 2015-07-07] () <==== ATTENTION
R2 duwuhuzy; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\knse8F2F.tmp [595456 2015-07-07] () [File not signed]
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
R2 vicoqudu; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\hnsg5321.tmp [165376 2015-07-05] () [File not signed]
R2 zejytose; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\jnsg3C93.tmp [199168 2015-07-05] () [File not signed]
S2 SearchDonkey; C:\ProgramData\SearchDonkey\SearchDonkeyService.exe C:\ProgramData\SearchDonkey\SearchDonkey.exe
S1 scfd_1_10_0_16; system32\drivers\scfd_1_10_0_16.sys [X]
S1 wsfd_1_10_0_19; system32\drivers\wsfd_1_10_0_19.sys [X]
2015-07-07 20:06 - 2015-07-07 20:06 - 00003744 _____ C:\Windows\System32\Tasks\Selection Tools Update
2015-07-07 20:05 - 2015-07-07 20:06 - 00001259 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00005712 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00003710 _____ C:\Windows\System32\Tasks\WindApp Update
2015-07-07 20:05 - 2015-07-07 20:05 - 00000097 _____ C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\WindApp.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\WTools
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Store
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Nosibay
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-07-07 20:04 - 2015-07-07 20:04 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4
2015-07-07 20:04 - 2015-07-07 20:04 - 00006504 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7
2015-07-07 20:04 - 2015-07-07 20:04 - 00006166 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6
2015-07-07 20:04 - 2015-07-07 20:04 - 00005476 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5
2015-07-07 20:04 - 2015-07-07 20:04 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00004052 _____ C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-07-07 20:04 - 2015-07-07 20:04 - 00004012 _____ C:\Windows\System32\Tasks\vGz5C6z
2015-07-07 20:04 - 2015-07-07 20:04 - 00003474 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00003138 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00001026 _____ C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00000986 _____ C:\Windows\Tasks\vGz5C6z.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000974 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000970 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00008546 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6
2015-07-07 20:03 - 2015-07-07 20:03 - 00008212 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7
2015-07-07 20:03 - 2015-07-07 20:03 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3
2015-07-07 20:03 - 2015-07-07 20:03 - 00005518 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00005182 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00003972 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-07-07 20:03 - 2015-07-07 20:03 - 00003718 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Users\chems\AppData\Local\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\e0930b63-6b39-450b-9367-4e86ed32439d
2015-07-07 20:02 - 2015-07-07 20:04 - 00000000 ____D C:\Program Files (x86)\CinemaPlus-3.2cV07.07
2015-07-07 20:02 - 2015-07-07 20:02 - 00002112 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job
2015-07-07 20:00 - 2015-07-07 20:01 - 00000000 ____D C:\Program Files (x86)\Optimizer Pro 3.99
2015-07-07 20:00 - 2015-07-07 20:00 - 00001063 _____ C:\Users\chems\Desktop\Optimizer Pro.lnk
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\{84589730-4221-2072-8458-897304225cc1}
2015-07-07 19:54 - 2015-07-07 19:54 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-07 19:13 - 2015-07-07 19:13 - 00278344 _____ C:\Windows\Minidump\070715-29421-01.dmp
2015-07-07 13:49 - 2015-07-07 13:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
2015-07-06 18:34 - 2015-07-06 18:34 - 00000000 ____D C:\Program Files (x86)\f6892701-2107-487f-b733-1738a35f2614
2015-07-06 18:33 - 2015-07-06 18:45 - 00000000 ____D C:\Program Files (x86)\ac69348b-ca68-4a05-b2ba-a2a4d41490b5
2015-07-06 18:32 - 2015-07-06 18:32 - 00000000 ____D C:\Users\chems\AppData\Local\CrashRpt
2015-07-06 18:30 - 2015-07-06 18:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:54 - 2015-07-05 20:54 - 00000000 ____D C:\Users\chems\AppData\Local\ZombieNews
2015-07-05 20:49 - 2015-07-07 20:00 - 00003252 _____ C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6]
2015-07-05 20:49 - 2015-07-07 20:00 - 00000340 _____ C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job
2015-07-05 20:49 - 2015-07-06 02:49 - 00000000 ____D C:\ProgramData\{66b9bf8d-8719-ebf5-66b9-9bf8d871fe36}
2015-07-05 20:49 - 2015-07-05 20:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-05 20:48 - 2015-07-05 20:48 - 00000000 ____D C:\Users\chems\Documents\Optimizer Pro
2015-07-05 20:46 - 2015-07-07 20:06 - 00000342 ____H C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job
2015-07-05 20:46 - 2015-07-07 20:01 - 00000330 _____ C:\Windows\Tasks\TDYXSMOPLQ1.job
2015-07-05 20:46 - 2015-07-05 20:46 - 00003376 _____ C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY
2015-07-05 20:46 - 2015-07-05 20:46 - 00002852 _____ C:\Windows\System32\Tasks\TDYXSMOPLQ1
2015-07-05 20:46 - 2015-07-05 20:46 - 00000000 ____D C:\ProgramData\Service7609
2015-07-05 20:45 - 2015-07-05 20:45 - 00000000 ____D C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066
2015-07-05 17:46 - 2015-07-05 20:08 - 00004736 _____ C:\Windows\SysWOW64\Oexufafono.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\SysWOW64\OexufafonoOff.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\system32\OexufafonoOff.ini
2015-07-05 17:46 - 2015-06-23 22:47 - 00348672 _____ C:\Windows\system32\Oexufafono64.dll
2015-07-05 17:46 - 2015-06-23 22:46 - 00278016 _____ C:\Windows\SysWOW64\Oexufafono.dll
2015-07-05 17:14 - 2015-07-05 17:14 - 00003148 _____ C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D}
2015-07-05 17:01 - 2015-07-05 17:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Roaming\Opera Software
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Local\Opera Software
2015-07-05 16:20 - 2015-07-07 00:54 - 00000000 ____D C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82
2015-07-05 16:20 - 2015-07-05 16:53 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-05 16:20 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak
2015-07-05 16:17 - 2015-07-05 17:28 - 00000165 _____ C:\AdwCleanerDebug.txt
2015-07-05 16:00 - 2015-07-05 16:00 - 00000000 ____D C:\Program Files (x86)\Software
2015-07-05 11:14 - 2015-07-05 11:14 - 00003154 _____ C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6}
2015-07-05 01:14 - 2015-07-05 11:00 - 00003438 _____ C:\Windows\System32\Tasks\Ariksumen
2015-07-05 01:14 - 2015-07-05 01:14 - 00000000 ____D C:\ProgramData\Ariksumen
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\prleth.sys
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\hgfs.sys
2015-07-05 01:09 - 2015-07-07 20:01 - 00000354 _____ C:\Windows\Tasks\YQABVAJ1.job
2015-07-05 01:09 - 2015-07-07 20:01 - 00000342 ____H C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job
2015-07-05 01:09 - 2015-07-07 19:18 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-05 01:09 - 2015-07-05 01:09 - 00003376 _____ C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC
2015-07-05 01:09 - 2015-07-05 01:09 - 00002876 _____ C:\Windows\System32\Tasks\YQABVAJ1
2015-07-05 01:09 - 2015-07-05 01:09 - 00000000 ____D C:\ProgramData\Service1104
2013-05-16 19:54 - 2013-05-16 19:54 - 4167680 _____ () C:\Program Files (x86)\GUTB5F8.tmp
2013-12-01 19:07 - 2013-12-01 23:34 - 50053120 _____ () C:\Program Files (x86)\GUTFBCF.tmp
2015-05-20 22:59 - 2015-07-06 17:52 - 0000024 _____ () C:\Users\chems\AppData\Roaming\appdataFr25.bin
2015-04-11 12:14 - 2015-05-20 19:20 - 0000020 _____ () C:\Users\chems\AppData\Roaming\appdataFr3.bin
2015-07-07 20:05 - 2015-07-07 20:06 - 0001259 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0005712 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2014-03-23 22:27 - 2014-03-24 22:48 - 0005265 _____ () C:\Users\chems\AppData\Roaming\callbanner.png
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z
2015-04-20 16:05 - 2015-04-20 16:05 - 1246720 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z.exe
2013-12-18 20:11 - 2014-01-23 01:14 - 0000106 _____ () C:\Users\chems\AppData\Roaming\WB.CFG
2015-07-07 20:05 - 2015-07-07 20:05 - 0000097 _____ () C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\WindApp.installation.log
2011-01-17 20:48 - 2013-07-12 08:20 - 0000714 _____ () C:\Users\chems\AppData\Roaming\wklnhst.dat
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\AtStart.txt
2014-07-02 14:27 - 2014-07-02 14:27 - 0003584 _____ () C:\Users\chems\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\DSwitch.txt
2014-03-24 23:08 - 2014-03-24 23:08 - 1172728 _____ (AnyProtect.com) C:\Users\chems\AppData\Local\nsf16BD.tmp
2015-07-07 13:49 - 2015-07-07 13:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-07 19:54 - 2015-07-07 19:54 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-06 18:30 - 2015-07-06 18:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:49 - 2015-07-05 20:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
Task: {0480104E-8AF0-4FAC-B06E-8F8447D9ABD5} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725} - System32\Tasks\YQABVAJ1 => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: {0C5CA6D8-8118-4063-8BCE-27D20CBE6ED4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {21C4A623-950E-4D53-8D11-00A33A9E9E9A} - System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} => pcalua.exe -a C:\Users\chems\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=tugs
Task: {251FBFA8-9439-4476-B660-5023D200F00C} - System32\Tasks\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA} => pcalua.exe -a C:\ProgramData\SearchDonkey\uninstall.exe -c /kb=y /ic=1
Task: {2B830C3C-717A-4FC7-A0CA-6EE1F1459115} - System32\Tasks\TDYXSMOPLQ1 => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: {31088178-E8EF-411E-B7CC-8D34BE96E1C3} - \HDvid Codec V1-updater No Task File <==== ATTENTION
Task: {392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D} - System32\Tasks\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9} => pcalua.exe -a "C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe" -d "C:\Program Files (x86)\ZSoft\Uninstaller"
Task: {401E9190-5DEC-43F2-9C63-747DE3C4AAE4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {42CE6B8E-0CAD-41D7-9634-CC918FB0E30C} - System32\Tasks\Selection Tools Update => C:\Users\chems\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2015-04-09] (Nosibay)
Task: {56398497-1A62-4091-BD44-158F0F8FDC70} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-23] (Google Inc.)
Task: {5DDB79A8-A405-48E0-8A04-FB939B86DD95} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {60BA22F8-32D8-4650-B0E3-78505485C2BD} - System32\Tasks\GVXXAXOCGNXUHGCY => C:\ProgramData\Service7609\Service7609.exe [2015-06-28] () <==== ATTENTION
Task: {7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD} - System32\Tasks\TXYCNKGSVRYKOMEC => C:\ProgramData\Service1104\Service1104.exe [2015-06-28] () <==== ATTENTION
Task: {75795E65-B0D9-4540-9766-8E224013E0AB} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {79DB9CDE-7BF7-4588-A391-C244D57AB85B} - System32\Tasks\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe"
Task: {84E7B7F7-B987-4ECD-ACFB-6E679FB62BB8} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {8D1D42AB-FCD5-477F-A16F-877C159F5D95} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000
Task: {98D761A4-3820-45E7-8565-BF57606012BB} - System32\Tasks\WindApp Update => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp Update.exe [2015-03-20] (Nosibay) <==== ATTENTION
Task: {A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F} - System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} => pcalua.exe -a C:\Users\chems\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=tugs
Task: {A670A1D2-288C-40EE-BD2F-7FA394078008} - System32\Tasks\Bidaily Synchronize Task[8da6] => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe [2014-07-07] (PC Utilities Software Limited) <==== ATTENTION
Task: {BDDFEC80-0E02-404D-AEC3-2531196BBDA1} - System32\Tasks\Ariksumen => C:\ProgramData\Ariksumen\1.0.1.0\umjnalud.exe [2015-07-05] ()
Task: {C0590FB0-7DF9-4F04-96C7-5539D4F3C27F} - System32\Tasks\vGz5C6z => C:\Users\chems\AppData\Roaming\vGz5C6z.exe [2015-04-20] () <==== ATTENTION
Task: {D21853E7-9284-42DA-9C91-ADA3B3E6AE21} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {D4976586-C8D6-4CBE-950C-CA2E07FCBA8D} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {D91838B5-839D-442F-BDFB-7BC0EB924B56} - System32\Tasks\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54} => Iexplore.exe http://ui.skype.com/ui/0/6.1.0.129.272/fr/abandoninstall?page=tsProgressBar
Task: {DE12D792-3247-45B0-A981-4998410CA545} - System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe [2015-04-20] () <==== ATTENTION
Task: {E11970CB-2D8C-4867-AF41-31AD0599F93A} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {EF293C59-44A3-46CD-8B0B-9EB2AFBC47BA} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {F746ED35-A779-4A87-88A5-C3D551E1FB44} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {FAF7EEBA-3BD4-411D-BA55-3A4123A2632C} - \HDvid Codec V1-enabler No Task File <==== ATTENTION
Task: {FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4} - System32\Tasks\{4CE3C826-61B7-455B-850A-21D1604F72EC} => Iexplore.exe http://ui.skype.com/ui/0/5.1.0.112.259/fr/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;toolbarpresent,google-chrome:notoffered;systemlevelpresent
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job => C:\ProgramData\Service7609\Service7609.exe <==== ATTENTION
Task: C:\Windows\Tasks\TDYXSMOPLQ1.job => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe <==== ATTENTION
Task: C:\Windows\Tasks\vGz5C6z.job => C:\Users\chems\AppData\Roaming\vGz5C6z.exe <==== ATTENTION
Task: C:\Windows\Tasks\YQABVAJ1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
et enfin :
Installe Avast! : https://www.malekal.com/tutoriel-antivirus-avast/
Surtout active les détections LPIs.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe
HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [gmsd_fr_002020021] => [X]
HKLM-x32\...\Run: [gmsd_fr_004010022] => [X]
HKLM-x32\...\Run: [gmsd_fr_005010023] => [X]
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.99\OptProLauncher.exe [148112 2015-07-03] ()
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Bubble Dock] => C:\Users\chems\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe [666384 2015-05-13] (Nosibay)
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [WindApp] => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp.exe /winstartup
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
ProxyServer: [.DEFAULT] => http=127.0.0.1:49180;https=127.0.0.1:49180 [Attention - Possible Proxy Malicieux]
S2 c31ed948; c:\Program Files (x86)\Optimizer Pro 3.99\OptProMon.dll [2570896 2015-07-07] () <==== ATTENTION
R2 duwuhuzy; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\knse8F2F.tmp [595456 2015-07-07] () [File not signed]
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
R2 vicoqudu; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\hnsg5321.tmp [165376 2015-07-05] () [File not signed]
R2 zejytose; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\jnsg3C93.tmp [199168 2015-07-05] () [File not signed]
S2 SearchDonkey; C:\ProgramData\SearchDonkey\SearchDonkeyService.exe C:\ProgramData\SearchDonkey\SearchDonkey.exe
S1 scfd_1_10_0_16; system32\drivers\scfd_1_10_0_16.sys [X]
S1 wsfd_1_10_0_19; system32\drivers\wsfd_1_10_0_19.sys [X]
2015-07-07 20:06 - 2015-07-07 20:06 - 00003744 _____ C:\Windows\System32\Tasks\Selection Tools Update
2015-07-07 20:05 - 2015-07-07 20:06 - 00001259 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00005712 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00003710 _____ C:\Windows\System32\Tasks\WindApp Update
2015-07-07 20:05 - 2015-07-07 20:05 - 00000097 _____ C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\WindApp.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\WTools
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Store
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Nosibay
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-07-07 20:04 - 2015-07-07 20:04 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4
2015-07-07 20:04 - 2015-07-07 20:04 - 00006504 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7
2015-07-07 20:04 - 2015-07-07 20:04 - 00006166 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6
2015-07-07 20:04 - 2015-07-07 20:04 - 00005476 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5
2015-07-07 20:04 - 2015-07-07 20:04 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00004052 _____ C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-07-07 20:04 - 2015-07-07 20:04 - 00004012 _____ C:\Windows\System32\Tasks\vGz5C6z
2015-07-07 20:04 - 2015-07-07 20:04 - 00003474 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00003138 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00001026 _____ C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00000986 _____ C:\Windows\Tasks\vGz5C6z.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000974 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000970 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00008546 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6
2015-07-07 20:03 - 2015-07-07 20:03 - 00008212 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7
2015-07-07 20:03 - 2015-07-07 20:03 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3
2015-07-07 20:03 - 2015-07-07 20:03 - 00005518 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00005182 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00003972 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-07-07 20:03 - 2015-07-07 20:03 - 00003718 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Users\chems\AppData\Local\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\e0930b63-6b39-450b-9367-4e86ed32439d
2015-07-07 20:02 - 2015-07-07 20:04 - 00000000 ____D C:\Program Files (x86)\CinemaPlus-3.2cV07.07
2015-07-07 20:02 - 2015-07-07 20:02 - 00002112 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job
2015-07-07 20:00 - 2015-07-07 20:01 - 00000000 ____D C:\Program Files (x86)\Optimizer Pro 3.99
2015-07-07 20:00 - 2015-07-07 20:00 - 00001063 _____ C:\Users\chems\Desktop\Optimizer Pro.lnk
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\{84589730-4221-2072-8458-897304225cc1}
2015-07-07 19:54 - 2015-07-07 19:54 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-07 19:13 - 2015-07-07 19:13 - 00278344 _____ C:\Windows\Minidump\070715-29421-01.dmp
2015-07-07 13:49 - 2015-07-07 13:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
2015-07-06 18:34 - 2015-07-06 18:34 - 00000000 ____D C:\Program Files (x86)\f6892701-2107-487f-b733-1738a35f2614
2015-07-06 18:33 - 2015-07-06 18:45 - 00000000 ____D C:\Program Files (x86)\ac69348b-ca68-4a05-b2ba-a2a4d41490b5
2015-07-06 18:32 - 2015-07-06 18:32 - 00000000 ____D C:\Users\chems\AppData\Local\CrashRpt
2015-07-06 18:30 - 2015-07-06 18:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:54 - 2015-07-05 20:54 - 00000000 ____D C:\Users\chems\AppData\Local\ZombieNews
2015-07-05 20:49 - 2015-07-07 20:00 - 00003252 _____ C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6]
2015-07-05 20:49 - 2015-07-07 20:00 - 00000340 _____ C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job
2015-07-05 20:49 - 2015-07-06 02:49 - 00000000 ____D C:\ProgramData\{66b9bf8d-8719-ebf5-66b9-9bf8d871fe36}
2015-07-05 20:49 - 2015-07-05 20:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-05 20:48 - 2015-07-05 20:48 - 00000000 ____D C:\Users\chems\Documents\Optimizer Pro
2015-07-05 20:46 - 2015-07-07 20:06 - 00000342 ____H C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job
2015-07-05 20:46 - 2015-07-07 20:01 - 00000330 _____ C:\Windows\Tasks\TDYXSMOPLQ1.job
2015-07-05 20:46 - 2015-07-05 20:46 - 00003376 _____ C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY
2015-07-05 20:46 - 2015-07-05 20:46 - 00002852 _____ C:\Windows\System32\Tasks\TDYXSMOPLQ1
2015-07-05 20:46 - 2015-07-05 20:46 - 00000000 ____D C:\ProgramData\Service7609
2015-07-05 20:45 - 2015-07-05 20:45 - 00000000 ____D C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066
2015-07-05 17:46 - 2015-07-05 20:08 - 00004736 _____ C:\Windows\SysWOW64\Oexufafono.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\SysWOW64\OexufafonoOff.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\system32\OexufafonoOff.ini
2015-07-05 17:46 - 2015-06-23 22:47 - 00348672 _____ C:\Windows\system32\Oexufafono64.dll
2015-07-05 17:46 - 2015-06-23 22:46 - 00278016 _____ C:\Windows\SysWOW64\Oexufafono.dll
2015-07-05 17:14 - 2015-07-05 17:14 - 00003148 _____ C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D}
2015-07-05 17:01 - 2015-07-05 17:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Roaming\Opera Software
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Local\Opera Software
2015-07-05 16:20 - 2015-07-07 00:54 - 00000000 ____D C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82
2015-07-05 16:20 - 2015-07-05 16:53 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-05 16:20 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak
2015-07-05 16:17 - 2015-07-05 17:28 - 00000165 _____ C:\AdwCleanerDebug.txt
2015-07-05 16:00 - 2015-07-05 16:00 - 00000000 ____D C:\Program Files (x86)\Software
2015-07-05 11:14 - 2015-07-05 11:14 - 00003154 _____ C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6}
2015-07-05 01:14 - 2015-07-05 11:00 - 00003438 _____ C:\Windows\System32\Tasks\Ariksumen
2015-07-05 01:14 - 2015-07-05 01:14 - 00000000 ____D C:\ProgramData\Ariksumen
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\prleth.sys
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\hgfs.sys
2015-07-05 01:09 - 2015-07-07 20:01 - 00000354 _____ C:\Windows\Tasks\YQABVAJ1.job
2015-07-05 01:09 - 2015-07-07 20:01 - 00000342 ____H C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job
2015-07-05 01:09 - 2015-07-07 19:18 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-05 01:09 - 2015-07-05 01:09 - 00003376 _____ C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC
2015-07-05 01:09 - 2015-07-05 01:09 - 00002876 _____ C:\Windows\System32\Tasks\YQABVAJ1
2015-07-05 01:09 - 2015-07-05 01:09 - 00000000 ____D C:\ProgramData\Service1104
2013-05-16 19:54 - 2013-05-16 19:54 - 4167680 _____ () C:\Program Files (x86)\GUTB5F8.tmp
2013-12-01 19:07 - 2013-12-01 23:34 - 50053120 _____ () C:\Program Files (x86)\GUTFBCF.tmp
2015-05-20 22:59 - 2015-07-06 17:52 - 0000024 _____ () C:\Users\chems\AppData\Roaming\appdataFr25.bin
2015-04-11 12:14 - 2015-05-20 19:20 - 0000020 _____ () C:\Users\chems\AppData\Roaming\appdataFr3.bin
2015-07-07 20:05 - 2015-07-07 20:06 - 0001259 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0005712 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2014-03-23 22:27 - 2014-03-24 22:48 - 0005265 _____ () C:\Users\chems\AppData\Roaming\callbanner.png
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z
2015-04-20 16:05 - 2015-04-20 16:05 - 1246720 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z.exe
2013-12-18 20:11 - 2014-01-23 01:14 - 0000106 _____ () C:\Users\chems\AppData\Roaming\WB.CFG
2015-07-07 20:05 - 2015-07-07 20:05 - 0000097 _____ () C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\WindApp.installation.log
2011-01-17 20:48 - 2013-07-12 08:20 - 0000714 _____ () C:\Users\chems\AppData\Roaming\wklnhst.dat
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\AtStart.txt
2014-07-02 14:27 - 2014-07-02 14:27 - 0003584 _____ () C:\Users\chems\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\DSwitch.txt
2014-03-24 23:08 - 2014-03-24 23:08 - 1172728 _____ (AnyProtect.com) C:\Users\chems\AppData\Local\nsf16BD.tmp
2015-07-07 13:49 - 2015-07-07 13:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-07 19:54 - 2015-07-07 19:54 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-06 18:30 - 2015-07-06 18:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:49 - 2015-07-05 20:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
Task: {0480104E-8AF0-4FAC-B06E-8F8447D9ABD5} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725} - System32\Tasks\YQABVAJ1 => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: {0C5CA6D8-8118-4063-8BCE-27D20CBE6ED4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {21C4A623-950E-4D53-8D11-00A33A9E9E9A} - System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} => pcalua.exe -a C:\Users\chems\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=tugs
Task: {251FBFA8-9439-4476-B660-5023D200F00C} - System32\Tasks\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA} => pcalua.exe -a C:\ProgramData\SearchDonkey\uninstall.exe -c /kb=y /ic=1
Task: {2B830C3C-717A-4FC7-A0CA-6EE1F1459115} - System32\Tasks\TDYXSMOPLQ1 => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: {31088178-E8EF-411E-B7CC-8D34BE96E1C3} - \HDvid Codec V1-updater No Task File <==== ATTENTION
Task: {392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D} - System32\Tasks\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9} => pcalua.exe -a "C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe" -d "C:\Program Files (x86)\ZSoft\Uninstaller"
Task: {401E9190-5DEC-43F2-9C63-747DE3C4AAE4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {42CE6B8E-0CAD-41D7-9634-CC918FB0E30C} - System32\Tasks\Selection Tools Update => C:\Users\chems\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2015-04-09] (Nosibay)
Task: {56398497-1A62-4091-BD44-158F0F8FDC70} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-23] (Google Inc.)
Task: {5DDB79A8-A405-48E0-8A04-FB939B86DD95} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {60BA22F8-32D8-4650-B0E3-78505485C2BD} - System32\Tasks\GVXXAXOCGNXUHGCY => C:\ProgramData\Service7609\Service7609.exe [2015-06-28] () <==== ATTENTION
Task: {7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD} - System32\Tasks\TXYCNKGSVRYKOMEC => C:\ProgramData\Service1104\Service1104.exe [2015-06-28] () <==== ATTENTION
Task: {75795E65-B0D9-4540-9766-8E224013E0AB} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {79DB9CDE-7BF7-4588-A391-C244D57AB85B} - System32\Tasks\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe"
Task: {84E7B7F7-B987-4ECD-ACFB-6E679FB62BB8} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {8D1D42AB-FCD5-477F-A16F-877C159F5D95} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000
Task: {98D761A4-3820-45E7-8565-BF57606012BB} - System32\Tasks\WindApp Update => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp Update.exe [2015-03-20] (Nosibay) <==== ATTENTION
Task: {A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F} - System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} => pcalua.exe -a C:\Users\chems\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=tugs
Task: {A670A1D2-288C-40EE-BD2F-7FA394078008} - System32\Tasks\Bidaily Synchronize Task[8da6] => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe [2014-07-07] (PC Utilities Software Limited) <==== ATTENTION
Task: {BDDFEC80-0E02-404D-AEC3-2531196BBDA1} - System32\Tasks\Ariksumen => C:\ProgramData\Ariksumen\1.0.1.0\umjnalud.exe [2015-07-05] ()
Task: {C0590FB0-7DF9-4F04-96C7-5539D4F3C27F} - System32\Tasks\vGz5C6z => C:\Users\chems\AppData\Roaming\vGz5C6z.exe [2015-04-20] () <==== ATTENTION
Task: {D21853E7-9284-42DA-9C91-ADA3B3E6AE21} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {D4976586-C8D6-4CBE-950C-CA2E07FCBA8D} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {D91838B5-839D-442F-BDFB-7BC0EB924B56} - System32\Tasks\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54} => Iexplore.exe http://ui.skype.com/ui/0/6.1.0.129.272/fr/abandoninstall?page=tsProgressBar
Task: {DE12D792-3247-45B0-A981-4998410CA545} - System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe [2015-04-20] () <==== ATTENTION
Task: {E11970CB-2D8C-4867-AF41-31AD0599F93A} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {EF293C59-44A3-46CD-8B0B-9EB2AFBC47BA} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {F746ED35-A779-4A87-88A5-C3D551E1FB44} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {FAF7EEBA-3BD4-411D-BA55-3A4123A2632C} - \HDvid Codec V1-enabler No Task File <==== ATTENTION
Task: {FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4} - System32\Tasks\{4CE3C826-61B7-455B-850A-21D1604F72EC} => Iexplore.exe http://ui.skype.com/ui/0/5.1.0.112.259/fr/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;toolbarpresent,google-chrome:notoffered;systemlevelpresent
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job => C:\ProgramData\Service7609\Service7609.exe <==== ATTENTION
Task: C:\Windows\Tasks\TDYXSMOPLQ1.job => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe <==== ATTENTION
Task: C:\Windows\Tasks\vGz5C6z.job => C:\Users\chems\AppData\Roaming\vGz5C6z.exe <==== ATTENTION
Task: C:\Windows\Tasks\YQABVAJ1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
- Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
- Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
- Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=
et enfin :
Installe Avast! : https://www.malekal.com/tutoriel-antivirus-avast/
Surtout active les détections LPIs.
MickeyMe
Messages postés
29
Date d'inscription
mardi 15 avril 2014
Statut
Membre
Dernière intervention
9 juillet 2015
8 juil. 2015 à 21:38
8 juil. 2015 à 21:38
Fix result of Farbar Recovery Scan Tool (x64) Version:05-07-2015
Ran by chems at 2015-07-08 21:35:27 Run:1
Running from C:\Users\chems\Desktop
Loaded Profiles: chems (Available Profiles: chems & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe
HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [gmsd_fr_002020021] => [X]
HKLM-x32\...\Run: [gmsd_fr_004010022] => [X]
HKLM-x32\...\Run: [gmsd_fr_005010023] => [X]
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.99\OptProLauncher.exe [148112 2015-07-03] ()
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Bubble Dock] => C:\Users\chems\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe [666384 2015-05-13] (Nosibay)
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [WindApp] => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp.exe /winstartup
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
ProxyServer: [.DEFAULT] => http=127.0.0.1:49180;https=127.0.0.1:49180 [Attention - Possible Proxy Malicieux]
S2 c31ed948; c:\Program Files (x86)\Optimizer Pro 3.99\OptProMon.dll [2570896 2015-07-07] () <==== ATTENTION
R2 duwuhuzy; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\knse8F2F.tmp [595456 2015-07-07] () [File not signed]
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
R2 vicoqudu; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\hnsg5321.tmp [165376 2015-07-05] () [File not signed]
R2 zejytose; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\jnsg3C93.tmp [199168 2015-07-05] () [File not signed]
S2 SearchDonkey; C:\ProgramData\SearchDonkey\SearchDonkeyService.exe C:\ProgramData\SearchDonkey\SearchDonkey.exe
S1 scfd_1_10_0_16; system32\drivers\scfd_1_10_0_16.sys [X]
S1 wsfd_1_10_0_19; system32\drivers\wsfd_1_10_0_19.sys [X]
2015-07-07 20:06 - 2015-07-07 20:06 - 00003744 _____ C:\Windows\System32\Tasks\Selection Tools Update
2015-07-07 20:05 - 2015-07-07 20:06 - 00001259 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00005712 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00003710 _____ C:\Windows\System32\Tasks\WindApp Update
2015-07-07 20:05 - 2015-07-07 20:05 - 00000097 _____ C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\WindApp.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\WTools
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Store
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Nosibay
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-07-07 20:04 - 2015-07-07 20:04 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4
2015-07-07 20:04 - 2015-07-07 20:04 - 00006504 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7
2015-07-07 20:04 - 2015-07-07 20:04 - 00006166 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6
2015-07-07 20:04 - 2015-07-07 20:04 - 00005476 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5
2015-07-07 20:04 - 2015-07-07 20:04 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00004052 _____ C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-07-07 20:04 - 2015-07-07 20:04 - 00004012 _____ C:\Windows\System32\Tasks\vGz5C6z
2015-07-07 20:04 - 2015-07-07 20:04 - 00003474 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00003138 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00001026 _____ C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00000986 _____ C:\Windows\Tasks\vGz5C6z.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000974 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000970 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00008546 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6
2015-07-07 20:03 - 2015-07-07 20:03 - 00008212 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7
2015-07-07 20:03 - 2015-07-07 20:03 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3
2015-07-07 20:03 - 2015-07-07 20:03 - 00005518 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00005182 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00003972 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-07-07 20:03 - 2015-07-07 20:03 - 00003718 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Users\chems\AppData\Local\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\e0930b63-6b39-450b-9367-4e86ed32439d
2015-07-07 20:02 - 2015-07-07 20:04 - 00000000 ____D C:\Program Files (x86)\CinemaPlus-3.2cV07.07
2015-07-07 20:02 - 2015-07-07 20:02 - 00002112 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job
2015-07-07 20:00 - 2015-07-07 20:01 - 00000000 ____D C:\Program Files (x86)\Optimizer Pro 3.99
2015-07-07 20:00 - 2015-07-07 20:00 - 00001063 _____ C:\Users\chems\Desktop\Optimizer Pro.lnk
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\{84589730-4221-2072-8458-897304225cc1}
2015-07-07 19:54 - 2015-07-07 19:54 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-07 19:13 - 2015-07-07 19:13 - 00278344 _____ C:\Windows\Minidump\070715-29421-01.dmp
2015-07-07 13:49 - 2015-07-07 13:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
2015-07-06 18:34 - 2015-07-06 18:34 - 00000000 ____D C:\Program Files (x86)\f6892701-2107-487f-b733-1738a35f2614
2015-07-06 18:33 - 2015-07-06 18:45 - 00000000 ____D C:\Program Files (x86)\ac69348b-ca68-4a05-b2ba-a2a4d41490b5
2015-07-06 18:32 - 2015-07-06 18:32 - 00000000 ____D C:\Users\chems\AppData\Local\CrashRpt
2015-07-06 18:30 - 2015-07-06 18:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:54 - 2015-07-05 20:54 - 00000000 ____D C:\Users\chems\AppData\Local\ZombieNews
2015-07-05 20:49 - 2015-07-07 20:00 - 00003252 _____ C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6]
2015-07-05 20:49 - 2015-07-07 20:00 - 00000340 _____ C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job
2015-07-05 20:49 - 2015-07-06 02:49 - 00000000 ____D C:\ProgramData\{66b9bf8d-8719-ebf5-66b9-9bf8d871fe36}
2015-07-05 20:49 - 2015-07-05 20:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-05 20:48 - 2015-07-05 20:48 - 00000000 ____D C:\Users\chems\Documents\Optimizer Pro
2015-07-05 20:46 - 2015-07-07 20:06 - 00000342 ____H C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job
2015-07-05 20:46 - 2015-07-07 20:01 - 00000330 _____ C:\Windows\Tasks\TDYXSMOPLQ1.job
2015-07-05 20:46 - 2015-07-05 20:46 - 00003376 _____ C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY
2015-07-05 20:46 - 2015-07-05 20:46 - 00002852 _____ C:\Windows\System32\Tasks\TDYXSMOPLQ1
2015-07-05 20:46 - 2015-07-05 20:46 - 00000000 ____D C:\ProgramData\Service7609
2015-07-05 20:45 - 2015-07-05 20:45 - 00000000 ____D C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066
2015-07-05 17:46 - 2015-07-05 20:08 - 00004736 _____ C:\Windows\SysWOW64\Oexufafono.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\SysWOW64\OexufafonoOff.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\system32\OexufafonoOff.ini
2015-07-05 17:46 - 2015-06-23 22:47 - 00348672 _____ C:\Windows\system32\Oexufafono64.dll
2015-07-05 17:46 - 2015-06-23 22:46 - 00278016 _____ C:\Windows\SysWOW64\Oexufafono.dll
2015-07-05 17:14 - 2015-07-05 17:14 - 00003148 _____ C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D}
2015-07-05 17:01 - 2015-07-05 17:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Roaming\Opera Software
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Local\Opera Software
2015-07-05 16:20 - 2015-07-07 00:54 - 00000000 ____D C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82
2015-07-05 16:20 - 2015-07-05 16:53 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-05 16:20 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak
2015-07-05 16:17 - 2015-07-05 17:28 - 00000165 _____ C:\AdwCleanerDebug.txt
2015-07-05 16:00 - 2015-07-05 16:00 - 00000000 ____D C:\Program Files (x86)\Software
2015-07-05 11:14 - 2015-07-05 11:14 - 00003154 _____ C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6}
2015-07-05 01:14 - 2015-07-05 11:00 - 00003438 _____ C:\Windows\System32\Tasks\Ariksumen
2015-07-05 01:14 - 2015-07-05 01:14 - 00000000 ____D C:\ProgramData\Ariksumen
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\prleth.sys
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\hgfs.sys
2015-07-05 01:09 - 2015-07-07 20:01 - 00000354 _____ C:\Windows\Tasks\YQABVAJ1.job
2015-07-05 01:09 - 2015-07-07 20:01 - 00000342 ____H C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job
2015-07-05 01:09 - 2015-07-07 19:18 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-05 01:09 - 2015-07-05 01:09 - 00003376 _____ C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC
2015-07-05 01:09 - 2015-07-05 01:09 - 00002876 _____ C:\Windows\System32\Tasks\YQABVAJ1
2015-07-05 01:09 - 2015-07-05 01:09 - 00000000 ____D C:\ProgramData\Service1104
2013-05-16 19:54 - 2013-05-16 19:54 - 4167680 _____ () C:\Program Files (x86)\GUTB5F8.tmp
2013-12-01 19:07 - 2013-12-01 23:34 - 50053120 _____ () C:\Program Files (x86)\GUTFBCF.tmp
2015-05-20 22:59 - 2015-07-06 17:52 - 0000024 _____ () C:\Users\chems\AppData\Roaming\appdataFr25.bin
2015-04-11 12:14 - 2015-05-20 19:20 - 0000020 _____ () C:\Users\chems\AppData\Roaming\appdataFr3.bin
2015-07-07 20:05 - 2015-07-07 20:06 - 0001259 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0005712 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2014-03-23 22:27 - 2014-03-24 22:48 - 0005265 _____ () C:\Users\chems\AppData\Roaming\callbanner.png
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z
2015-04-20 16:05 - 2015-04-20 16:05 - 1246720 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z.exe
2013-12-18 20:11 - 2014-01-23 01:14 - 0000106 _____ () C:\Users\chems\AppData\Roaming\WB.CFG
2015-07-07 20:05 - 2015-07-07 20:05 - 0000097 _____ () C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\WindApp.installation.log
2011-01-17 20:48 - 2013-07-12 08:20 - 0000714 _____ () C:\Users\chems\AppData\Roaming\wklnhst.dat
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\AtStart.txt
2014-07-02 14:27 - 2014-07-02 14:27 - 0003584 _____ () C:\Users\chems\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\DSwitch.txt
2014-03-24 23:08 - 2014-03-24 23:08 - 1172728 _____ (AnyProtect.com) C:\Users\chems\AppData\Local\nsf16BD.tmp
2015-07-07 13:49 - 2015-07-07 13:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-07 19:54 - 2015-07-07 19:54 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-06 18:30 - 2015-07-06 18:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:49 - 2015-07-05 20:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
Task: {0480104E-8AF0-4FAC-B06E-8F8447D9ABD5} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725} - System32\Tasks\YQABVAJ1 => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: {0C5CA6D8-8118-4063-8BCE-27D20CBE6ED4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {21C4A623-950E-4D53-8D11-00A33A9E9E9A} - System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} => pcalua.exe -a C:\Users\chems\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=tugs
Task: {251FBFA8-9439-4476-B660-5023D200F00C} - System32\Tasks\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA} => pcalua.exe -a C:\ProgramData\SearchDonkey\uninstall.exe -c /kb=y /ic=1
Task: {2B830C3C-717A-4FC7-A0CA-6EE1F1459115} - System32\Tasks\TDYXSMOPLQ1 => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: {31088178-E8EF-411E-B7CC-8D34BE96E1C3} - \HDvid Codec V1-updater No Task File <==== ATTENTION
Task: {392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D} - System32\Tasks\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9} => pcalua.exe -a "C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe" -d "C:\Program Files (x86)\ZSoft\Uninstaller"
Task: {401E9190-5DEC-43F2-9C63-747DE3C4AAE4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {42CE6B8E-0CAD-41D7-9634-CC918FB0E30C} - System32\Tasks\Selection Tools Update => C:\Users\chems\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2015-04-09] (Nosibay)
Task: {56398497-1A62-4091-BD44-158F0F8FDC70} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-23] (Google Inc.)
Task: {5DDB79A8-A405-48E0-8A04-FB939B86DD95} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {60BA22F8-32D8-4650-B0E3-78505485C2BD} - System32\Tasks\GVXXAXOCGNXUHGCY => C:\ProgramData\Service7609\Service7609.exe [2015-06-28] () <==== ATTENTION
Task: {7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD} - System32\Tasks\TXYCNKGSVRYKOMEC => C:\ProgramData\Service1104\Service1104.exe [2015-06-28] () <==== ATTENTION
Task: {75795E65-B0D9-4540-9766-8E224013E0AB} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {79DB9CDE-7BF7-4588-A391-C244D57AB85B} - System32\Tasks\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe"
Task: {84E7B7F7-B987-4ECD-ACFB-6E679FB62BB8} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {8D1D42AB-FCD5-477F-A16F-877C159F5D95} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000
Task: {98D761A4-3820-45E7-8565-BF57606012BB} - System32\Tasks\WindApp Update => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp Update.exe [2015-03-20] (Nosibay) <==== ATTENTION
Task: {A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F} - System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} => pcalua.exe -a C:\Users\chems\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=tugs
Task: {A670A1D2-288C-40EE-BD2F-7FA394078008} - System32\Tasks\Bidaily Synchronize Task[8da6] => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe [2014-07-07] (PC Utilities Software Limited) <==== ATTENTION
Task: {BDDFEC80-0E02-404D-AEC3-2531196BBDA1} - System32\Tasks\Ariksumen => C:\ProgramData\Ariksumen\1.0.1.0\umjnalud.exe [2015-07-05] ()
Task: {C0590FB0-7DF9-4F04-96C7-5539D4F3C27F} - System32\Tasks\vGz5C6z => C:\Users\chems\AppData\Roaming\vGz5C6z.exe [2015-04-20] () <==== ATTENTION
Task: {D21853E7-9284-42DA-9C91-ADA3B3E6AE21} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {D4976586-C8D6-4CBE-950C-CA2E07FCBA8D} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {D91838B5-839D-442F-BDFB-7BC0EB924B56} - System32\Tasks\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54} => Iexplore.exe http://ui.skype.com/ui/0/6.1.0.129.272/fr/abandoninstall?page=tsProgressBar
Task: {DE12D792-3247-45B0-A981-4998410CA545} - System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe [2015-04-20] () <==== ATTENTION
Task: {E11970CB-2D8C-4867-AF41-31AD0599F93A} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {EF293C59-44A3-46CD-8B0B-9EB2AFBC47BA} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {F746ED35-A779-4A87-88A5-C3D551E1FB44} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {FAF7EEBA-3BD4-411D-BA55-3A4123A2632C} - \HDvid Codec V1-enabler No Task File <==== ATTENTION
Task: {FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4} - System32\Tasks\{4CE3C826-61B7-455B-850A-21D1604F72EC} => Iexplore.exe http://ui.skype.com/ui/0/5.1.0.112.259/fr/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;toolbarpresent,google-chrome:notoffered;systemlevelpresent
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job => C:\ProgramData\Service7609\Service7609.exe <==== ATTENTION
Task: C:\Windows\Tasks\TDYXSMOPLQ1.job => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe <==== ATTENTION
Task: C:\Windows\Tasks\vGz5C6z.job => C:\Users\chems\AppData\Roaming\vGz5C6z.exe <==== ATTENTION
Task: C:\Windows\Tasks\YQABVAJ1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Windesk Winsearch => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\3D BubbleSound => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_002020021 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_004010022 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010023 => value removed successfully
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Optimizer Pro => value not found.
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Bubble Dock => value not found.
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WindApp => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully
c31ed948 => Service not found.
duwuhuzy => Service not found.
globalUpdate => Service removed successfully
globalUpdatem => Service removed successfully
vicoqudu => Service stopped successfully.
vicoqudu => Service removed successfully
zejytose => Service stopped successfully.
zejytose => Service removed successfully
SearchDonkey => Service removed successfully
scfd_1_10_0_16 => Service removed successfully
wsfd_1_10_0_19 => Service removed successfully
"C:\Windows\System32\Tasks\Selection Tools Update" => File/Folder not found.
C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log => moved successfully.
C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log => moved successfully.
"C:\Windows\System32\Tasks\WindApp Update" => File/Folder not found.
C:\Users\chems\AppData\Roaming\WindApp.boostrap.log => moved successfully.
C:\Users\chems\AppData\Roaming\WindApp.installation.log => moved successfully.
C:\Users\chems\AppData\Roaming\Selection Tools.installation.log => moved successfully.
C:\Users\chems\AppData\Roaming\WTools => moved successfully.
C:\Users\chems\AppData\Roaming\Store => moved successfully.
C:\Users\chems\AppData\Roaming\Nosibay => moved successfully.
"C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job" => File/Folder not found.
C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI => moved successfully.
C:\Windows\System32\Tasks\vGz5C6z => moved successfully.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job" => File/Folder not found.
C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job => moved successfully.
C:\Windows\Tasks\vGz5C6z.job => moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => moved successfully.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job" => File/Folder not found.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => moved successfully.
C:\Users\chems\AppData\Local\globalUpdate => moved successfully.
"C:\Program Files (x86)\globalUpdate" => File/Folder not found.
"C:\Program Files (x86)\e0930b63-6b39-450b-9367-4e86ed32439d" => File/Folder not found.
"C:\Program Files (x86)\CinemaPlus-3.2cV07.07" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job" => File/Folder not found.
"C:\Program Files (x86)\Optimizer Pro 3.99" => File/Folder not found.
"C:\Users\chems\Desktop\Optimizer Pro.lnk" => File/Folder not found.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2" => File/Folder not found.
C:\ProgramData\{84589730-4221-2072-8458-897304225cc1} => moved successfully.
C:\Users\chems\AppData\Local\nsk708C.tmp => moved successfully.
C:\Windows\Minidump\070715-29421-01.dmp => moved successfully.
C:\Users\chems\AppData\Local\nsg3004.tmp => moved successfully.
C:\Users\chems\AppData\Local\nsy694F.tmp => moved successfully.
C:\Program Files (x86)\f6892701-2107-487f-b733-1738a35f2614 => moved successfully.
"C:\Program Files (x86)\ac69348b-ca68-4a05-b2ba-a2a4d41490b5" => File/Folder not found.
C:\Users\chems\AppData\Local\CrashRpt => moved successfully.
C:\Users\chems\AppData\Local\nskF7ED.tmp => moved successfully.
C:\Users\chems\AppData\Local\nst97C1.tmp => moved successfully.
C:\Users\chems\AppData\Local\ZombieNews => moved successfully.
C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] => moved successfully.
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => moved successfully.
C:\ProgramData\{66b9bf8d-8719-ebf5-66b9-9bf8d871fe36} => moved successfully.
C:\Users\chems\AppData\Local\nsvECBD.tmp => moved successfully.
C:\Users\chems\Documents\Optimizer Pro => moved successfully.
C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job => moved successfully.
C:\Windows\Tasks\TDYXSMOPLQ1.job => moved successfully.
C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY => moved successfully.
C:\Windows\System32\Tasks\TDYXSMOPLQ1 => moved successfully.
C:\ProgramData\Service7609 => moved successfully.
C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066 => moved successfully.
C:\Windows\SysWOW64\Oexufafono.ini => moved successfully.
C:\Windows\SysWOW64\OexufafonoOff.ini => moved successfully.
C:\Windows\system32\OexufafonoOff.ini => moved successfully.
C:\Windows\system32\Oexufafono64.dll => moved successfully.
C:\Windows\SysWOW64\Oexufafono.dll => moved successfully.
C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} => moved successfully.
C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf => moved successfully.
C:\Users\chems\AppData\Roaming\Opera Software => moved successfully.
C:\Users\chems\AppData\Local\Opera Software => moved successfully.
C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82 => moved successfully.
"C:\Program Files (x86)\Opera" => File/Folder not found.
C:\Windows\system32\Drivers\etc\hp.bak => moved successfully.
C:\AdwCleanerDebug.txt => moved successfully.
"C:\Program Files (x86)\Software" => File/Folder not found.
C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} => moved successfully.
C:\Windows\System32\Tasks\Ariksumen => moved successfully.
C:\ProgramData\Ariksumen => moved successfully.
C:\Windows\prleth.sys => moved successfully.
C:\Windows\hgfs.sys => moved successfully.
C:\Windows\Tasks\YQABVAJ1.job => moved successfully.
C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job => moved successfully.
C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => moved successfully.
C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC => moved successfully.
C:\Windows\System32\Tasks\YQABVAJ1 => moved successfully.
C:\ProgramData\Service1104 => moved successfully.
"C:\Program Files (x86)\GUTB5F8.tmp" => File/Folder not found.
"C:\Program Files (x86)\GUTFBCF.tmp" => File/Folder not found.
C:\Users\chems\AppData\Roaming\appdataFr25.bin => moved successfully.
C:\Users\chems\AppData\Roaming\appdataFr3.bin => moved successfully.
"C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log" => File/Folder not found.
"C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log" => File/Folder not found.
C:\Users\chems\AppData\Roaming\callbanner.png => moved successfully.
"C:\Users\chems\AppData\Roaming\Selection Tools.installation.log" => File/Folder not found.
C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI => moved successfully.
C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe => moved successfully.
C:\Users\chems\AppData\Roaming\vGz5C6z => moved successfully.
C:\Users\chems\AppData\Roaming\vGz5C6z.exe => moved successfully.
C:\Users\chems\AppData\Roaming\WB.CFG => moved successfully.
"C:\Users\chems\AppData\Roaming\WindApp.boostrap.log" => File/Folder not found.
"C:\Users\chems\AppData\Roaming\WindApp.installation.log" => File/Folder not found.
C:\Users\chems\AppData\Roaming\wklnhst.dat => moved successfully.
C:\Users\chems\AppData\Local\AtStart.txt => moved successfully.
C:\Users\chems\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully.
C:\Users\chems\AppData\Local\DSwitch.txt => moved successfully.
C:\Users\chems\AppData\Local\nsf16BD.tmp => moved successfully.
"C:\Users\chems\AppData\Local\nsg3004.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nsk708C.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nskF7ED.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nst97C1.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nsvECBD.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nsy694F.tmp" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0480104E-8AF0-4FAC-B06E-8F8447D9ABD5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0480104E-8AF0-4FAC-B06E-8F8447D9ABD5}" => key removed successfully
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725}" => key removed successfully
C:\Windows\System32\Tasks\YQABVAJ1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YQABVAJ1" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C5CA6D8-8118-4063-8BCE-27D20CBE6ED4} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-7 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{21C4A623-950E-4D53-8D11-00A33A9E9E9A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{21C4A623-950E-4D53-8D11-00A33A9E9E9A}" => key removed successfully
C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{ECA6BD35-7996-43F2-9A37-913CC5231C8D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{251FBFA8-9439-4476-B660-5023D200F00C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{251FBFA8-9439-4476-B660-5023D200F00C}" => key removed successfully
C:\Windows\System32\Tasks\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2B830C3C-717A-4FC7-A0CA-6EE1F1459115}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2B830C3C-717A-4FC7-A0CA-6EE1F1459115}" => key removed successfully
C:\Windows\System32\Tasks\TDYXSMOPLQ1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TDYXSMOPLQ1" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{31088178-E8EF-411E-B7CC-8D34BE96E1C3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31088178-E8EF-411E-B7CC-8D34BE96E1C3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HDvid Codec V1-updater" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D}" => key removed successfully
C:\Windows\System32\Tasks\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{401E9190-5DEC-43F2-9C63-747DE3C4AAE4} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-10_user => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{42CE6B8E-0CAD-41D7-9634-CC918FB0E30C} => key not found.
C:\Windows\System32\Tasks\Selection Tools Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Selection Tools Update => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{56398497-1A62-4091-BD44-158F0F8FDC70}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{56398497-1A62-4091-BD44-158F0F8FDC70}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5DDB79A8-A405-48E0-8A04-FB939B86DD95} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-1-7 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{60BA22F8-32D8-4650-B0E3-78505485C2BD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{60BA22F8-32D8-4650-B0E3-78505485C2BD}" => key removed successfully
C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GVXXAXOCGNXUHGCY" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD}" => key removed successfully
C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TXYCNKGSVRYKOMEC" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75795E65-B0D9-4540-9766-8E224013E0AB} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-5 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{79DB9CDE-7BF7-4588-A391-C244D57AB85B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{79DB9CDE-7BF7-4588-A391-C244D57AB85B}" => key removed successfully
C:\Windows\System32\Tasks\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{84E7B7F7-B987-4ECD-ACFB-6E679FB62BB8} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-1-6 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8D1D42AB-FCD5-477F-A16F-877C159F5D95}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D1D42AB-FCD5-477F-A16F-877C159F5D95}" => key removed successfully
C:\Windows\System32\Tasks\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000 => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98D761A4-3820-45E7-8565-BF57606012BB} => key not found.
C:\Windows\System32\Tasks\WindApp Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WindApp Update => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F}" => key removed successfully
C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A670A1D2-288C-40EE-BD2F-7FA394078008}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A670A1D2-288C-40EE-BD2F-7FA394078008}" => key removed successfully
C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize Task[8da6]" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BDDFEC80-0E02-404D-AEC3-2531196BBDA1}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDDFEC80-0E02-404D-AEC3-2531196BBDA1}" => key removed successfully
C:\Windows\System32\Tasks\Ariksumen not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ariksumen" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C0590FB0-7DF9-4F04-96C7-5539D4F3C27F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C0590FB0-7DF9-4F04-96C7-5539D4F3C27F}" => key removed successfully
C:\Windows\System32\Tasks\vGz5C6z not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\vGz5C6z" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D21853E7-9284-42DA-9C91-ADA3B3E6AE21}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D21853E7-9284-42DA-9C91-ADA3B3E6AE21}" => key removed successfully
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D4976586-C8D6-4CBE-950C-CA2E07FCBA8D} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-3 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D91838B5-839D-442F-BDFB-7BC0EB924B56}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D91838B5-839D-442F-BDFB-7BC0EB924B56}" => key removed successfully
C:\Windows\System32\Tasks\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DE12D792-3247-45B0-A981-4998410CA545}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DE12D792-3247-45B0-A981-4998410CA545}" => key removed successfully
C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\v2K61ultuhFdNb1juRV2Dn2EMcI" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E11970CB-2D8C-4867-AF41-31AD0599F93A} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-6 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF293C59-44A3-46CD-8B0B-9EB2AFBC47BA} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-5_user => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F746ED35-A779-4A87-88A5-C3D551E1FB44} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-4 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FAF7EEBA-3BD4-411D-BA55-3A4123A2632C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAF7EEBA-3BD4-411D-BA55-3A4123A2632C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HDvid Codec V1-enabler" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4}" => key removed successfully
C:\Windows\System32\Tasks\{4CE3C826-61B7-455B-850A-21D1604F72EC} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4CE3C826-61B7-455B-850A-21D1604F72EC}" => key removed successfully
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job not found.
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job not found.
C:\Windows\Tasks\TDYXSMOPLQ1.job not found.
C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job not found.
C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job not found.
C:\Windows\Tasks\vGz5C6z.job not found.
C:\Windows\Tasks\YQABVAJ1.job not found.
Ran by chems at 2015-07-08 21:35:27 Run:1
Running from C:\Users\chems\Desktop
Loaded Profiles: chems (Available Profiles: chems & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe
HKLM\...\Run: [3D BubbleSound] => C:\Program Files\BubbleSound\3D BubbleSound.exe
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [gmsd_fr_002020021] => [X]
HKLM-x32\...\Run: [gmsd_fr_004010022] => [X]
HKLM-x32\...\Run: [gmsd_fr_005010023] => [X]
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.99\OptProLauncher.exe [148112 2015-07-03] ()
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [Bubble Dock] => C:\Users\chems\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe [666384 2015-05-13] (Nosibay)
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\...\Run: [WindApp] => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp.exe /winstartup
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
ProxyServer: [.DEFAULT] => http=127.0.0.1:49180;https=127.0.0.1:49180 [Attention - Possible Proxy Malicieux]
S2 c31ed948; c:\Program Files (x86)\Optimizer Pro 3.99\OptProMon.dll [2570896 2015-07-07] () <==== ATTENTION
R2 duwuhuzy; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\knse8F2F.tmp [595456 2015-07-07] () [File not signed]
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-07-07] (globalUpdate) [File not signed] <==== ATTENTION
R2 vicoqudu; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\hnsg5321.tmp [165376 2015-07-05] () [File not signed]
R2 zejytose; C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82\jnsg3C93.tmp [199168 2015-07-05] () [File not signed]
S2 SearchDonkey; C:\ProgramData\SearchDonkey\SearchDonkeyService.exe C:\ProgramData\SearchDonkey\SearchDonkey.exe
S1 scfd_1_10_0_16; system32\drivers\scfd_1_10_0_16.sys [X]
S1 wsfd_1_10_0_19; system32\drivers\wsfd_1_10_0_19.sys [X]
2015-07-07 20:06 - 2015-07-07 20:06 - 00003744 _____ C:\Windows\System32\Tasks\Selection Tools Update
2015-07-07 20:05 - 2015-07-07 20:06 - 00001259 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00005712 _____ C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00003710 _____ C:\Windows\System32\Tasks\WindApp Update
2015-07-07 20:05 - 2015-07-07 20:05 - 00000097 _____ C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\WindApp.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000078 _____ C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\WTools
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Store
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Nosibay
2015-07-07 20:05 - 2015-07-07 20:05 - 00000000 ____D C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
2015-07-07 20:04 - 2015-07-07 20:04 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4
2015-07-07 20:04 - 2015-07-07 20:04 - 00006504 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7
2015-07-07 20:04 - 2015-07-07 20:04 - 00006166 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6
2015-07-07 20:04 - 2015-07-07 20:04 - 00005476 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5
2015-07-07 20:04 - 2015-07-07 20:04 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00004052 _____ C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-07-07 20:04 - 2015-07-07 20:04 - 00004012 _____ C:\Windows\System32\Tasks\vGz5C6z
2015-07-07 20:04 - 2015-07-07 20:04 - 00003474 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00003138 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00002446 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00001026 _____ C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job
2015-07-07 20:04 - 2015-07-07 20:04 - 00000986 _____ C:\Windows\Tasks\vGz5C6z.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000974 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-07-07 20:03 - 2015-07-07 20:08 - 00000970 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00008546 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6
2015-07-07 20:03 - 2015-07-07 20:03 - 00008212 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7
2015-07-07 20:03 - 2015-07-07 20:03 - 00007524 _____ C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3
2015-07-07 20:03 - 2015-07-07 20:03 - 00005518 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00005182 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00004494 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job
2015-07-07 20:03 - 2015-07-07 20:03 - 00003972 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-07-07 20:03 - 2015-07-07 20:03 - 00003718 _____ C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Users\chems\AppData\Local\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-07 20:03 - 2015-07-07 20:03 - 00000000 ____D C:\Program Files (x86)\e0930b63-6b39-450b-9367-4e86ed32439d
2015-07-07 20:02 - 2015-07-07 20:04 - 00000000 ____D C:\Program Files (x86)\CinemaPlus-3.2cV07.07
2015-07-07 20:02 - 2015-07-07 20:02 - 00002112 _____ C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job
2015-07-07 20:00 - 2015-07-07 20:01 - 00000000 ____D C:\Program Files (x86)\Optimizer Pro 3.99
2015-07-07 20:00 - 2015-07-07 20:00 - 00001063 _____ C:\Users\chems\Desktop\Optimizer Pro.lnk
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-07-07 20:00 - 2015-07-07 20:00 - 00000000 ____D C:\ProgramData\{84589730-4221-2072-8458-897304225cc1}
2015-07-07 19:54 - 2015-07-07 19:54 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-07 19:13 - 2015-07-07 19:13 - 00278344 _____ C:\Windows\Minidump\070715-29421-01.dmp
2015-07-07 13:49 - 2015-07-07 13:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
2015-07-06 18:34 - 2015-07-06 18:34 - 00000000 ____D C:\Program Files (x86)\f6892701-2107-487f-b733-1738a35f2614
2015-07-06 18:33 - 2015-07-06 18:45 - 00000000 ____D C:\Program Files (x86)\ac69348b-ca68-4a05-b2ba-a2a4d41490b5
2015-07-06 18:32 - 2015-07-06 18:32 - 00000000 ____D C:\Users\chems\AppData\Local\CrashRpt
2015-07-06 18:30 - 2015-07-06 18:30 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:54 - 2015-07-05 20:54 - 00000000 ____D C:\Users\chems\AppData\Local\ZombieNews
2015-07-05 20:49 - 2015-07-07 20:00 - 00003252 _____ C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6]
2015-07-05 20:49 - 2015-07-07 20:00 - 00000340 _____ C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job
2015-07-05 20:49 - 2015-07-06 02:49 - 00000000 ____D C:\ProgramData\{66b9bf8d-8719-ebf5-66b9-9bf8d871fe36}
2015-07-05 20:49 - 2015-07-05 20:49 - 00613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-05 20:48 - 2015-07-05 20:48 - 00000000 ____D C:\Users\chems\Documents\Optimizer Pro
2015-07-05 20:46 - 2015-07-07 20:06 - 00000342 ____H C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job
2015-07-05 20:46 - 2015-07-07 20:01 - 00000330 _____ C:\Windows\Tasks\TDYXSMOPLQ1.job
2015-07-05 20:46 - 2015-07-05 20:46 - 00003376 _____ C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY
2015-07-05 20:46 - 2015-07-05 20:46 - 00002852 _____ C:\Windows\System32\Tasks\TDYXSMOPLQ1
2015-07-05 20:46 - 2015-07-05 20:46 - 00000000 ____D C:\ProgramData\Service7609
2015-07-05 20:45 - 2015-07-05 20:45 - 00000000 ____D C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066
2015-07-05 17:46 - 2015-07-05 20:08 - 00004736 _____ C:\Windows\SysWOW64\Oexufafono.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\SysWOW64\OexufafonoOff.ini
2015-07-05 17:46 - 2015-07-05 20:08 - 00002456 _____ C:\Windows\system32\OexufafonoOff.ini
2015-07-05 17:46 - 2015-06-23 22:47 - 00348672 _____ C:\Windows\system32\Oexufafono64.dll
2015-07-05 17:46 - 2015-06-23 22:46 - 00278016 _____ C:\Windows\SysWOW64\Oexufafono.dll
2015-07-05 17:14 - 2015-07-05 17:14 - 00003148 _____ C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D}
2015-07-05 17:01 - 2015-07-05 17:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Roaming\Opera Software
2015-07-05 16:22 - 2015-07-05 16:53 - 00000000 ____D C:\Users\chems\AppData\Local\Opera Software
2015-07-05 16:20 - 2015-07-07 00:54 - 00000000 ____D C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82
2015-07-05 16:20 - 2015-07-05 16:53 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-05 16:20 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak
2015-07-05 16:17 - 2015-07-05 17:28 - 00000165 _____ C:\AdwCleanerDebug.txt
2015-07-05 16:00 - 2015-07-05 16:00 - 00000000 ____D C:\Program Files (x86)\Software
2015-07-05 11:14 - 2015-07-05 11:14 - 00003154 _____ C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6}
2015-07-05 01:14 - 2015-07-05 11:00 - 00003438 _____ C:\Windows\System32\Tasks\Ariksumen
2015-07-05 01:14 - 2015-07-05 01:14 - 00000000 ____D C:\ProgramData\Ariksumen
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\prleth.sys
2015-07-05 01:10 - 2015-07-05 01:10 - 00000000 _____ C:\Windows\hgfs.sys
2015-07-05 01:09 - 2015-07-07 20:01 - 00000354 _____ C:\Windows\Tasks\YQABVAJ1.job
2015-07-05 01:09 - 2015-07-07 20:01 - 00000342 ____H C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job
2015-07-05 01:09 - 2015-07-07 19:18 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-05 01:09 - 2015-07-05 01:09 - 00003376 _____ C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC
2015-07-05 01:09 - 2015-07-05 01:09 - 00002876 _____ C:\Windows\System32\Tasks\YQABVAJ1
2015-07-05 01:09 - 2015-07-05 01:09 - 00000000 ____D C:\ProgramData\Service1104
2013-05-16 19:54 - 2013-05-16 19:54 - 4167680 _____ () C:\Program Files (x86)\GUTB5F8.tmp
2013-12-01 19:07 - 2013-12-01 23:34 - 50053120 _____ () C:\Program Files (x86)\GUTFBCF.tmp
2015-05-20 22:59 - 2015-07-06 17:52 - 0000024 _____ () C:\Users\chems\AppData\Roaming\appdataFr25.bin
2015-04-11 12:14 - 2015-05-20 19:20 - 0000020 _____ () C:\Users\chems\AppData\Roaming\appdataFr3.bin
2015-07-07 20:05 - 2015-07-07 20:06 - 0001259 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0005712 _____ () C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
2014-03-23 22:27 - 2014-03-24 22:48 - 0005265 _____ () C:\Users\chems\AppData\Roaming\callbanner.png
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI
2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z
2015-04-20 16:05 - 2015-04-20 16:05 - 1246720 _____ () C:\Users\chems\AppData\Roaming\vGz5C6z.exe
2013-12-18 20:11 - 2014-01-23 01:14 - 0000106 _____ () C:\Users\chems\AppData\Roaming\WB.CFG
2015-07-07 20:05 - 2015-07-07 20:05 - 0000097 _____ () C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
2015-07-07 20:05 - 2015-07-07 20:05 - 0000078 _____ () C:\Users\chems\AppData\Roaming\WindApp.installation.log
2011-01-17 20:48 - 2013-07-12 08:20 - 0000714 _____ () C:\Users\chems\AppData\Roaming\wklnhst.dat
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\AtStart.txt
2014-07-02 14:27 - 2014-07-02 14:27 - 0003584 _____ () C:\Users\chems\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2010-10-06 21:43 - 2010-10-06 21:43 - 0000000 _____ () C:\Users\chems\AppData\Local\DSwitch.txt
2014-03-24 23:08 - 2014-03-24 23:08 - 1172728 _____ (AnyProtect.com) C:\Users\chems\AppData\Local\nsf16BD.tmp
2015-07-07 13:49 - 2015-07-07 13:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsg3004.tmp
2015-07-07 19:54 - 2015-07-07 19:54 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsk708C.tmp
2015-07-06 18:30 - 2015-07-06 18:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nskF7ED.tmp
2015-07-06 14:31 - 2015-07-06 14:31 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nst97C1.tmp
2015-07-05 20:49 - 2015-07-05 20:49 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsvECBD.tmp
2015-07-06 23:30 - 2015-07-06 23:30 - 0613255 _____ (CMI Limited) C:\Users\chems\AppData\Local\nsy694F.tmp
Task: {0480104E-8AF0-4FAC-B06E-8F8447D9ABD5} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725} - System32\Tasks\YQABVAJ1 => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: {0C5CA6D8-8118-4063-8BCE-27D20CBE6ED4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {21C4A623-950E-4D53-8D11-00A33A9E9E9A} - System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} => pcalua.exe -a C:\Users\chems\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=tugs
Task: {251FBFA8-9439-4476-B660-5023D200F00C} - System32\Tasks\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA} => pcalua.exe -a C:\ProgramData\SearchDonkey\uninstall.exe -c /kb=y /ic=1
Task: {2B830C3C-717A-4FC7-A0CA-6EE1F1459115} - System32\Tasks\TDYXSMOPLQ1 => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: {31088178-E8EF-411E-B7CC-8D34BE96E1C3} - \HDvid Codec V1-updater No Task File <==== ATTENTION
Task: {392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D} - System32\Tasks\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9} => pcalua.exe -a "C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe" -d "C:\Program Files (x86)\ZSoft\Uninstaller"
Task: {401E9190-5DEC-43F2-9C63-747DE3C4AAE4} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {42CE6B8E-0CAD-41D7-9634-CC918FB0E30C} - System32\Tasks\Selection Tools Update => C:\Users\chems\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2015-04-09] (Nosibay)
Task: {56398497-1A62-4091-BD44-158F0F8FDC70} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-23] (Google Inc.)
Task: {5DDB79A8-A405-48E0-8A04-FB939B86DD95} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {60BA22F8-32D8-4650-B0E3-78505485C2BD} - System32\Tasks\GVXXAXOCGNXUHGCY => C:\ProgramData\Service7609\Service7609.exe [2015-06-28] () <==== ATTENTION
Task: {7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD} - System32\Tasks\TXYCNKGSVRYKOMEC => C:\ProgramData\Service1104\Service1104.exe [2015-06-28] () <==== ATTENTION
Task: {75795E65-B0D9-4540-9766-8E224013E0AB} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {79DB9CDE-7BF7-4588-A391-C244D57AB85B} - System32\Tasks\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe"
Task: {84E7B7F7-B987-4ECD-ACFB-6E679FB62BB8} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {8D1D42AB-FCD5-477F-A16F-877C159F5D95} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000
Task: {98D761A4-3820-45E7-8565-BF57606012BB} - System32\Tasks\WindApp Update => C:\Users\chems\AppData\Roaming\Store\WindApp\WindApp Update.exe [2015-03-20] (Nosibay) <==== ATTENTION
Task: {A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F} - System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} => pcalua.exe -a C:\Users\chems\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=tugs
Task: {A670A1D2-288C-40EE-BD2F-7FA394078008} - System32\Tasks\Bidaily Synchronize Task[8da6] => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe [2014-07-07] (PC Utilities Software Limited) <==== ATTENTION
Task: {BDDFEC80-0E02-404D-AEC3-2531196BBDA1} - System32\Tasks\Ariksumen => C:\ProgramData\Ariksumen\1.0.1.0\umjnalud.exe [2015-07-05] ()
Task: {C0590FB0-7DF9-4F04-96C7-5539D4F3C27F} - System32\Tasks\vGz5C6z => C:\Users\chems\AppData\Roaming\vGz5C6z.exe [2015-04-20] () <==== ATTENTION
Task: {D21853E7-9284-42DA-9C91-ADA3B3E6AE21} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-07-07] (globalUpdate) <==== ATTENTION
Task: {D4976586-C8D6-4CBE-950C-CA2E07FCBA8D} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {D91838B5-839D-442F-BDFB-7BC0EB924B56} - System32\Tasks\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54} => Iexplore.exe http://ui.skype.com/ui/0/6.1.0.129.272/fr/abandoninstall?page=tsProgressBar
Task: {DE12D792-3247-45B0-A981-4998410CA545} - System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe [2015-04-20] () <==== ATTENTION
Task: {E11970CB-2D8C-4867-AF41-31AD0599F93A} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {EF293C59-44A3-46CD-8B0B-9EB2AFBC47BA} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {F746ED35-A779-4A87-88A5-C3D551E1FB44} - System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4 => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe [2015-07-07] (Cinema PlusV07.07) <==== ATTENTION
Task: {FAF7EEBA-3BD4-411D-BA55-3A4123A2632C} - \HDvid Codec V1-enabler No Task File <==== ATTENTION
Task: {FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4} - System32\Tasks\{4CE3C826-61B7-455B-850A-21D1604F72EC} => Iexplore.exe http://ui.skype.com/ui/0/5.1.0.112.259/fr/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;toolbarpresent,google-chrome:notoffered;systemlevelpresent
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-4.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job => C:\Program Files (x86)\CinemaPlus-3.2cV07.07\818675cd-bc3c-4eef-974f-f114bad39982-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => c:\programdata\{84589730-4221-2072-8458-897304225cc1}\hqghumeaylnlf.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job => C:\ProgramData\Service7609\Service7609.exe <==== ATTENTION
Task: C:\Windows\Tasks\TDYXSMOPLQ1.job => C:\ProgramData\LolliScan\LolliScan.exe <==== ATTENTION
Task: C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job => C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe <==== ATTENTION
Task: C:\Windows\Tasks\vGz5C6z.job => C:\Users\chems\AppData\Roaming\vGz5C6z.exe <==== ATTENTION
Task: C:\Windows\Tasks\YQABVAJ1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Windesk Winsearch => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\3D BubbleSound => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_002020021 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_004010022 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010023 => value removed successfully
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Optimizer Pro => value not found.
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Bubble Dock => value not found.
HKU\S-1-5-21-3715357763-2752725808-2483560661-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WindApp => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully
c31ed948 => Service not found.
duwuhuzy => Service not found.
globalUpdate => Service removed successfully
globalUpdatem => Service removed successfully
vicoqudu => Service stopped successfully.
vicoqudu => Service removed successfully
zejytose => Service stopped successfully.
zejytose => Service removed successfully
SearchDonkey => Service removed successfully
scfd_1_10_0_16 => Service removed successfully
wsfd_1_10_0_19 => Service removed successfully
"C:\Windows\System32\Tasks\Selection Tools Update" => File/Folder not found.
C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log => moved successfully.
C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log => moved successfully.
"C:\Windows\System32\Tasks\WindApp Update" => File/Folder not found.
C:\Users\chems\AppData\Roaming\WindApp.boostrap.log => moved successfully.
C:\Users\chems\AppData\Roaming\WindApp.installation.log => moved successfully.
C:\Users\chems\AppData\Roaming\Selection Tools.installation.log => moved successfully.
C:\Users\chems\AppData\Roaming\WTools => moved successfully.
C:\Users\chems\AppData\Roaming\Store => moved successfully.
C:\Users\chems\AppData\Roaming\Nosibay => moved successfully.
"C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job" => File/Folder not found.
C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI => moved successfully.
C:\Windows\System32\Tasks\vGz5C6z => moved successfully.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job" => File/Folder not found.
C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job => moved successfully.
C:\Windows\Tasks\vGz5C6z.job => moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => moved successfully.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7" => File/Folder not found.
"C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job" => File/Folder not found.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => moved successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => moved successfully.
C:\Users\chems\AppData\Local\globalUpdate => moved successfully.
"C:\Program Files (x86)\globalUpdate" => File/Folder not found.
"C:\Program Files (x86)\e0930b63-6b39-450b-9367-4e86ed32439d" => File/Folder not found.
"C:\Program Files (x86)\CinemaPlus-3.2cV07.07" => File/Folder not found.
"C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job" => File/Folder not found.
"C:\Program Files (x86)\Optimizer Pro 3.99" => File/Folder not found.
"C:\Users\chems\Desktop\Optimizer Pro.lnk" => File/Folder not found.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2" => File/Folder not found.
C:\ProgramData\{84589730-4221-2072-8458-897304225cc1} => moved successfully.
C:\Users\chems\AppData\Local\nsk708C.tmp => moved successfully.
C:\Windows\Minidump\070715-29421-01.dmp => moved successfully.
C:\Users\chems\AppData\Local\nsg3004.tmp => moved successfully.
C:\Users\chems\AppData\Local\nsy694F.tmp => moved successfully.
C:\Program Files (x86)\f6892701-2107-487f-b733-1738a35f2614 => moved successfully.
"C:\Program Files (x86)\ac69348b-ca68-4a05-b2ba-a2a4d41490b5" => File/Folder not found.
C:\Users\chems\AppData\Local\CrashRpt => moved successfully.
C:\Users\chems\AppData\Local\nskF7ED.tmp => moved successfully.
C:\Users\chems\AppData\Local\nst97C1.tmp => moved successfully.
C:\Users\chems\AppData\Local\ZombieNews => moved successfully.
C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] => moved successfully.
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => moved successfully.
C:\ProgramData\{66b9bf8d-8719-ebf5-66b9-9bf8d871fe36} => moved successfully.
C:\Users\chems\AppData\Local\nsvECBD.tmp => moved successfully.
C:\Users\chems\Documents\Optimizer Pro => moved successfully.
C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job => moved successfully.
C:\Windows\Tasks\TDYXSMOPLQ1.job => moved successfully.
C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY => moved successfully.
C:\Windows\System32\Tasks\TDYXSMOPLQ1 => moved successfully.
C:\ProgramData\Service7609 => moved successfully.
C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066 => moved successfully.
C:\Windows\SysWOW64\Oexufafono.ini => moved successfully.
C:\Windows\SysWOW64\OexufafonoOff.ini => moved successfully.
C:\Windows\system32\OexufafonoOff.ini => moved successfully.
C:\Windows\system32\Oexufafono64.dll => moved successfully.
C:\Windows\SysWOW64\Oexufafono.dll => moved successfully.
C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} => moved successfully.
C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf => moved successfully.
C:\Users\chems\AppData\Roaming\Opera Software => moved successfully.
C:\Users\chems\AppData\Local\Opera Software => moved successfully.
C:\Users\chems\AppData\Roaming\30464E43-1436106018-4C35-394B-C80AA9E99F82 => moved successfully.
"C:\Program Files (x86)\Opera" => File/Folder not found.
C:\Windows\system32\Drivers\etc\hp.bak => moved successfully.
C:\AdwCleanerDebug.txt => moved successfully.
"C:\Program Files (x86)\Software" => File/Folder not found.
C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} => moved successfully.
C:\Windows\System32\Tasks\Ariksumen => moved successfully.
C:\ProgramData\Ariksumen => moved successfully.
C:\Windows\prleth.sys => moved successfully.
C:\Windows\hgfs.sys => moved successfully.
C:\Windows\Tasks\YQABVAJ1.job => moved successfully.
C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job => moved successfully.
C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => moved successfully.
C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC => moved successfully.
C:\Windows\System32\Tasks\YQABVAJ1 => moved successfully.
C:\ProgramData\Service1104 => moved successfully.
"C:\Program Files (x86)\GUTB5F8.tmp" => File/Folder not found.
"C:\Program Files (x86)\GUTFBCF.tmp" => File/Folder not found.
C:\Users\chems\AppData\Roaming\appdataFr25.bin => moved successfully.
C:\Users\chems\AppData\Roaming\appdataFr3.bin => moved successfully.
"C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log" => File/Folder not found.
"C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log" => File/Folder not found.
C:\Users\chems\AppData\Roaming\callbanner.png => moved successfully.
"C:\Users\chems\AppData\Roaming\Selection Tools.installation.log" => File/Folder not found.
C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI => moved successfully.
C:\Users\chems\AppData\Roaming\v2K61ultuhFdNb1juRV2Dn2EMcI.exe => moved successfully.
C:\Users\chems\AppData\Roaming\vGz5C6z => moved successfully.
C:\Users\chems\AppData\Roaming\vGz5C6z.exe => moved successfully.
C:\Users\chems\AppData\Roaming\WB.CFG => moved successfully.
"C:\Users\chems\AppData\Roaming\WindApp.boostrap.log" => File/Folder not found.
"C:\Users\chems\AppData\Roaming\WindApp.installation.log" => File/Folder not found.
C:\Users\chems\AppData\Roaming\wklnhst.dat => moved successfully.
C:\Users\chems\AppData\Local\AtStart.txt => moved successfully.
C:\Users\chems\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully.
C:\Users\chems\AppData\Local\DSwitch.txt => moved successfully.
C:\Users\chems\AppData\Local\nsf16BD.tmp => moved successfully.
"C:\Users\chems\AppData\Local\nsg3004.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nsk708C.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nskF7ED.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nst97C1.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nsvECBD.tmp" => File/Folder not found.
"C:\Users\chems\AppData\Local\nsy694F.tmp" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0480104E-8AF0-4FAC-B06E-8F8447D9ABD5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0480104E-8AF0-4FAC-B06E-8F8447D9ABD5}" => key removed successfully
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0747B4D1-68B3-4D4B-B54A-F0C4EE5B6725}" => key removed successfully
C:\Windows\System32\Tasks\YQABVAJ1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YQABVAJ1" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C5CA6D8-8118-4063-8BCE-27D20CBE6ED4} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-7 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{21C4A623-950E-4D53-8D11-00A33A9E9E9A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{21C4A623-950E-4D53-8D11-00A33A9E9E9A}" => key removed successfully
C:\Windows\System32\Tasks\{ECA6BD35-7996-43F2-9A37-913CC5231C8D} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{ECA6BD35-7996-43F2-9A37-913CC5231C8D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{251FBFA8-9439-4476-B660-5023D200F00C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{251FBFA8-9439-4476-B660-5023D200F00C}" => key removed successfully
C:\Windows\System32\Tasks\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4CA51B8C-4266-4BAA-B5EC-79B1504116BA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2B830C3C-717A-4FC7-A0CA-6EE1F1459115}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2B830C3C-717A-4FC7-A0CA-6EE1F1459115}" => key removed successfully
C:\Windows\System32\Tasks\TDYXSMOPLQ1 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TDYXSMOPLQ1" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{31088178-E8EF-411E-B7CC-8D34BE96E1C3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31088178-E8EF-411E-B7CC-8D34BE96E1C3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HDvid Codec V1-updater" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{392B73EF-4DB2-4FC1-9494-0BF5E93A5A0D}" => key removed successfully
C:\Windows\System32\Tasks\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{766DDDFB-F23F-4E6B-A89D-84B9454BF3D9}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{401E9190-5DEC-43F2-9C63-747DE3C4AAE4} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-10_user => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{42CE6B8E-0CAD-41D7-9634-CC918FB0E30C} => key not found.
C:\Windows\System32\Tasks\Selection Tools Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Selection Tools Update => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{56398497-1A62-4091-BD44-158F0F8FDC70}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{56398497-1A62-4091-BD44-158F0F8FDC70}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5DDB79A8-A405-48E0-8A04-FB939B86DD95} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-1-7 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{60BA22F8-32D8-4650-B0E3-78505485C2BD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{60BA22F8-32D8-4650-B0E3-78505485C2BD}" => key removed successfully
C:\Windows\System32\Tasks\GVXXAXOCGNXUHGCY not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GVXXAXOCGNXUHGCY" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7044D12A-503C-4BD0-BF1D-0D3F5D4CD5AD}" => key removed successfully
C:\Windows\System32\Tasks\TXYCNKGSVRYKOMEC not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TXYCNKGSVRYKOMEC" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75795E65-B0D9-4540-9766-8E224013E0AB} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-5 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{79DB9CDE-7BF7-4588-A391-C244D57AB85B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{79DB9CDE-7BF7-4588-A391-C244D57AB85B}" => key removed successfully
C:\Windows\System32\Tasks\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{20EAF071-0E69-4E5F-AF87-F6E6E447DD7D}" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{84E7B7F7-B987-4ECD-ACFB-6E679FB62BB8} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-1-6 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8D1D42AB-FCD5-477F-A16F-877C159F5D95}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D1D42AB-FCD5-477F-A16F-877C159F5D95}" => key removed successfully
C:\Windows\System32\Tasks\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000 => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Games\UpdateCheck_S-1-5-21-3715357763-2752725808-2483560661-1000" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98D761A4-3820-45E7-8565-BF57606012BB} => key not found.
C:\Windows\System32\Tasks\WindApp Update not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WindApp Update => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A3FD9B61-A891-46D5-9CBC-AA84DCCADD3F}" => key removed successfully
C:\Windows\System32\Tasks\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6} not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8FA90F6F-0D3E-410E-BB29-B07801B57AE6}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A670A1D2-288C-40EE-BD2F-7FA394078008}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A670A1D2-288C-40EE-BD2F-7FA394078008}" => key removed successfully
C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize Task[8da6]" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BDDFEC80-0E02-404D-AEC3-2531196BBDA1}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDDFEC80-0E02-404D-AEC3-2531196BBDA1}" => key removed successfully
C:\Windows\System32\Tasks\Ariksumen not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ariksumen" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C0590FB0-7DF9-4F04-96C7-5539D4F3C27F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C0590FB0-7DF9-4F04-96C7-5539D4F3C27F}" => key removed successfully
C:\Windows\System32\Tasks\vGz5C6z not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\vGz5C6z" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D21853E7-9284-42DA-9C91-ADA3B3E6AE21}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D21853E7-9284-42DA-9C91-ADA3B3E6AE21}" => key removed successfully
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D4976586-C8D6-4CBE-950C-CA2E07FCBA8D} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-3 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D91838B5-839D-442F-BDFB-7BC0EB924B56}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D91838B5-839D-442F-BDFB-7BC0EB924B56}" => key removed successfully
C:\Windows\System32\Tasks\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BFDA77E6-D0EC-4CD2-93BA-D3A5D16CCF54}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DE12D792-3247-45B0-A981-4998410CA545}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DE12D792-3247-45B0-A981-4998410CA545}" => key removed successfully
C:\Windows\System32\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\v2K61ultuhFdNb1juRV2Dn2EMcI" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E11970CB-2D8C-4867-AF41-31AD0599F93A} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-6 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF293C59-44A3-46CD-8B0B-9EB2AFBC47BA} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-5_user => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F746ED35-A779-4A87-88A5-C3D551E1FB44} => key not found.
C:\Windows\System32\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\818675cd-bc3c-4eef-974f-f114bad39982-4 => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FAF7EEBA-3BD4-411D-BA55-3A4123A2632C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAF7EEBA-3BD4-411D-BA55-3A4123A2632C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HDvid Codec V1-enabler" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC3F83BD-F8A1-480A-9B04-7AC2A4DBD8C4}" => key removed successfully
C:\Windows\System32\Tasks\{4CE3C826-61B7-455B-850A-21D1604F72EC} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4CE3C826-61B7-455B-850A-21D1604F72EC}" => key removed successfully
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-6.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-1-7.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-10_user.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-3.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-4.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-5_user.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-6.job not found.
C:\Windows\Tasks\818675cd-bc3c-4eef-974f-f114bad39982-7.job not found.
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job not found.
C:\Windows\Tasks\GVXXAXOCGNXUHGCY.job not found.
C:\Windows\Tasks\TDYXSMOPLQ1.job not found.
C:\Windows\Tasks\TXYCNKGSVRYKOMEC.job not found.
C:\Windows\Tasks\v2K61ultuhFdNb1juRV2Dn2EMcI.job not found.
C:\Windows\Tasks\vGz5C6z.job not found.
C:\Windows\Tasks\YQABVAJ1.job not found.
End of Fixlog 21:35:36
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 656
9 juil. 2015 à 08:57
9 juil. 2015 à 08:57
reste quel problème ?
7 juil. 2015 à 20:07
# AdwCleaner v4.207 - Rapport créé le 07/07/2015 à 19:58:29
# Mis à jour le 21/06/2015 par Xplode
# Base de données : 2015-07-05.2 [Serveur]
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (x64)
# Nom d'utilisateur : chems - CHEMS-PC
# Exécuté depuis : C:\Users\chems\Downloads\adwcleaner_4.207 (1).exe
# Option : Nettoyer
[#] Service Supprimé : cherimoya
[#] Service Supprimé : globalUpdate
[#] Service Supprimé : globalUpdatem
[#] Service Supprimé : IHProtect Service
[#] Service Supprimé : Software_update
[#] Service Supprimé : Software_update_m
[#] Service Supprimé : WindowsMangerProtect
[#] Service Supprimé : UpdateCheck
[#] Service Supprimé : innfd_1_10_0_14
Dossier Supprimé : C:\DesktopSearch
Dossier Supprimé : C:\ProgramData\WindowsMangerProtect
Dossier Supprimé : C:\ProgramData\IHProtectUpDate
Dossier Supprimé : C:\ProgramData\LolliScan
Dossier Supprimé : C:\ProgramData\MovieDeaConfig
Dossier Supprimé : C:\ProgramData\7d06081c000012cc
Dossier Supprimé : C:\Users\Public\Documents\ShopperPro
Dossier Supprimé : C:\Program Files (x86)\AnyProtectEx
Dossier Supprimé : C:\Program Files (x86)\Boxore
Dossier Supprimé : C:\Program Files (x86)\globalUpdate
Dossier Supprimé : C:\Program Files (x86)\predm
Dossier Supprimé : C:\Program Files (x86)\GUPlayer
Dossier Supprimé : C:\Program Files (x86)\miuitab
Dossier Supprimé : C:\Program Files (x86)\Exploremedia
Dossier Supprimé : C:\Program Files (x86)\SmartSaver+ 3
Dossier Supprimé : C:\Users\chems\AppData\Local\Temp\MovieDea
Dossier Supprimé : C:\Users\chems\AppData\Local\Temp\Pine Tree
Dossier Supprimé : C:\Windows\SysWOW64\config\systemprofile\AppData\Local\StormWatch
Dossier Supprimé : C:\Users\Administrateur\AppData\Local\Crossbrowse
Dossier Supprimé : C:\Users\chems\SupTab
Dossier Supprimé : C:\Users\chems\AppData\Local\globalUpdate
Dossier Supprimé : C:\Users\chems\AppData\Local\SmartWeb
Dossier Supprimé : C:\Users\chems\AppData\Local\BrowserHelper
Dossier Supprimé : C:\Users\chems\AppData\Local\Crossbrowse
Dossier Supprimé : C:\Users\chems\AppData\Local\Windesk_Winsearch
Dossier Supprimé : C:\Users\chems\AppData\Local\DesktopSearch
Dossier Supprimé : C:\Users\chems\AppData\Local\gmsd_fr_005010022
Dossier Supprimé : C:\Users\chems\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
Dossier Supprimé : C:\Users\chems\AppData\Roaming\AnyProtectEx
Dossier Supprimé : C:\Users\chems\AppData\Roaming\Nosibay
Dossier Supprimé : C:\Users\chems\AppData\Roaming\Store
Dossier Supprimé : C:\Users\chems\AppData\Roaming\PriceFountain
Dossier Supprimé : C:\Users\chems\AppData\Roaming\WTools
Dossier Supprimé : C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
Dossier Supprimé : C:\Users\HomeGroupUser$\AppData\Local\Crossbrowse
Dossier Supprimé : C:\Users\Invité\AppData\Local\Crossbrowse
Dossier Supprimé : C:\Users\chems\AppData\Roaming\Mozilla\Firefox\Profiles\e7g8s5gy.default\Extensions\searchffv2@gmail.com
Dossier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekpibplnnkfdcafdpoekhoffegcajene
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Mozilla\Firefox\Profiles\e7g8s5gy.default\Extensions\{b6a94784-0ffb-4121-88c6-435139067ee2}.xpi
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\jjflmfkjppbmejlfbhlpgjnomdoefkfa
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ekpibplnnkfdcafdpoekhoffegcajene_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ekpibplnnkfdcafdpoekhoffegcajene_0.localstorage-journal
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ekpibplnnkfdcafdpoekhoffegcajene_0
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ekpibplnnkfdcafdpoekhoffegcajene
Fichier Supprimé : C:\END
Fichier Supprimé : C:\Windows\patsearch.bin
Fichier Supprimé : C:\Program Files\Common Files\System\SysMenu.dll
Fichier Supprimé : C:\Program Files\Common Files\System\SysMenu64.dll
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Bubble Dock.boostrap.log
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Bubble Dock.installation.log
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Selection Tools.installation.log
Fichier Supprimé : C:\Users\chems\AppData\Roaming\WindApp.boostrap.log
Fichier Supprimé : C:\Users\chems\AppData\Roaming\WindApp.installation.log
Fichier Supprimé : C:\Users\chems\AppData\Roaming\1szI8RjWqlcVXqNgqmqOVooaOE
Fichier Supprimé : C:\Users\chems\AppData\Roaming\1szI8RjWqlcVXqNgqmqOVooaOE.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\289s7mqk80Y8Egq1UIH9wfEnoyx
Fichier Supprimé : C:\Users\chems\AppData\Roaming\289s7mqk80Y8Egq1UIH9wfEnoyx.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\6PSTZRAjzSLyneXIoD1
Fichier Supprimé : C:\Users\chems\AppData\Roaming\6PSTZRAjzSLyneXIoD1.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\KFtPSbdmLKdGe4p
Fichier Supprimé : C:\Users\chems\AppData\Roaming\KFtPSbdmLKdGe4p.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\PYhbEvMxK01FDq6cWkfgiBj7K7
Fichier Supprimé : C:\Users\chems\AppData\Roaming\PYhbEvMxK01FDq6cWkfgiBj7K7.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\TFznCqUXtiWRDBcNtGkMmvm
Fichier Supprimé : C:\Users\chems\AppData\Roaming\TFznCqUXtiWRDBcNtGkMmvm.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\wAlE60z9JINL20
Fichier Supprimé : C:\Users\chems\AppData\Roaming\wAlE60z9JINL20.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\zmXHlydxpewQ9oQtSdkEpUZeH7
Fichier Supprimé : C:\Users\chems\AppData\Roaming\zmXHlydxpewQ9oQtSdkEpUZeH7.exe
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\crossbrowse.lnk
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk
Fichier Supprimé : C:\Users\chems\Desktop\AnyProtect.lnk
Fichier Supprimé : C:\Users\chems\Desktop\Continue GamesDesktop Uninstaller.lnk
Fichier Supprimé : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml
Fichier Supprimé : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystartsearch.xml
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Mozilla\Firefox\Profiles\e7g8s5gy.default\searchplugins\trovi.xml
Fichier Supprimé : C:\Users\chems\AppData\Roaming\Mozilla\Firefox\Profiles\e7g8s5gy.default\user.js
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.selectgo00.selectgo.net_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.selectgo00.selectgo.net_0.localstorage-journal
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.pricepeep00.pricepeep.net_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.pricepeep00.pricepeep.net_0.localstorage-journal
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.istartsurf.com_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.istartsurf.com_0.localstorage-journal
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
Fichier Supprimé : C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal
Tâche Supprimée : APSnotifierPP1
Tâche Supprimée : APSnotifierPP2
Tâche Supprimée : APSnotifierPP3
Tâche Supprimée : Crossbrowse
Tâche Supprimée : globalUpdateUpdateTaskMachineCore
Tâche Supprimée : globalUpdateUpdateTaskMachineUA
Tâche Supprimée : Inst_Rep
Tâche Supprimée : Price Fountain
Tâche Supprimée : SmartWeb Upgrade Trigger Task
Tâche Supprimée : SoftwareUpdateTaskMachineCore
Tâche Supprimée : SoftwareUpdateTaskMachineUA
Tâche Supprimée : LaunchPreSignup
Tâche Supprimée : amiupdaterExd
Tâche Supprimée : amiupdaterExi
Tâche Supprimée : avabvexvac
Tâche Supprimée : 1szI8RjWqlcVXqNgqmqOVooaOE
Tâche Supprimée : 289s7mqk80Y8Egq1UIH9wfEnoyx
Tâche Supprimée : 6PSTZRAjzSLyneXIoD1
Tâche Supprimée : KFtPSbdmLKdGe4p
Tâche Supprimée : PYhbEvMxK01FDq6cWkfgiBj7K7
Tâche Supprimée : TFznCqUXtiWRDBcNtGkMmvm
Tâche Supprimée : wAlE60z9JINL20
Tâche Supprimée : zmXHlydxpewQ9oQtSdkEpUZeH7
Tâche Supprimée : ea394ac6-781f-4ff3-85a2-9820f80caf43-10_user
Tâche Supprimée : ea394ac6-781f-4ff3-85a2-9820f80caf43-3
Tâche Supprimée : ea394ac6-781f-4ff3-85a2-9820f80caf43-4
Tâche Supprimée : ea394ac6-781f-4ff3-85a2-9820f80caf43-6
Tâche Supprimée : ea394ac6-781f-4ff3-85a2-9820f80caf43-7
Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [searchffv2@gmail.com]
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WindApp]
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Clé Supprimée : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\Software.OneClickCtrl.9
Clé Supprimée : HKLM\SOFTWARE\Classes\Software.OneClickProcessLauncherMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\Software.OneClickProcessLauncherMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\Software.Update3WebControl.3
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoCreateAsync
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoCreateAsync.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreMachineClass
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreMachineClass.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CredentialDialogMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.CredentialDialogMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachineFallback
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachineFallback.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.ProcessLauncher
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.ProcessLauncher.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachine
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachine.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachineFallback
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachineFallback.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\speedupmypc
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=3
Clé Supprimée : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=9
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Valeur Supprimée : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Clé Supprimée : HKCU\Software\Mozilla\Extends
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Selection Tools]
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [DesktopSearch]
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0014298C-A9BA-440D-AAA8-AD12C7010EE5}
Clé Supprimée : HKLM\SYSTEM\CurrentControlSet\Control\Class\{181A06EA-B82C-47DE-B851-E20FD0E1CC7D}
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebSvc.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebSvc
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassSvc.1.0
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassSvc
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_fr_005010022]
Clé Supprimée : HKLM\SOFTWARE\875b64d2-1bea-42de-be76-dfed992a09ed
Clé Supprimée : HKLM\SOFTWARE\b3125f2f-b6e5-6e48-cd55-af65afd1b260
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{425F4ABF-B8E4-402D-9E49-06E494EB8DBF}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4D6A5312-AB4D-41AA-8BED-0E019B87CA11}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{08230486-CBAF-4000-8036-447C3852D034}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{13809C03-DE3B-47E5-96A3-2D8F83693A50}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3D976BD4-0B6A-4757-9D2B-65AA20F4B4EA}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{76894207-241A-473B-B111-FAA75608F1D9}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7A7C8DA9-8660-460D-849F-01619B91C03F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{AE2506E3-0F75-44EE-B552-CFF3BFF4D50F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{B6CD3C31-ABF4-4C7A-8CB7-29960BC7017C}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C24C3824-63D8-42CD-BB5A-77631072FDB2}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EB41B92A-3A76-4237-9E6B-A5DDC2EAA771}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F9A8326E-9C90-4BF2-ACC7-D0883D16AA82}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7D8DAE88-BC05-4578-8C29-E541FFBA5757}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{A2970C7C-8392-4E6F-8B51-B763CF38E13C}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{9771C444-42B0-4E23-A7FB-FF707123AB30}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F061FDD5-8314-FBF5-F0B9-B46A286D094F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E4C3E50F-5761-4BF8-95A0-939A819DF1C3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{9AE7A6AE-162E-44C4-9A2B-A6B4EF19909D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{14EF423E-3EE8-44AE-9337-07AC3F27B744}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9771C444-42B0-4E23-A7FB-FF707123AB30}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9771C444-42B0-4E23-A7FB-FF707123AB30}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F061FDD5-8314-FBF5-F0B9-B46A286D094F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9771C444-42B0-4E23-A7FB-FF707123AB30}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F061FDD5-8314-FBF5-F0B9-B46A286D094F}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D976BD4-0B6A-4757-9D2B-65AA20F4B4EA}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{A2970C7C-8392-4E6F-8B51-B763CF38E13C}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\CLSID\{F061FDD5-8314-FBF5-F0B9-B46A286D094F}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E4C3E50F-5761-4BF8-95A0-939A819DF1C3}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A9582D7B-F24A-441D-9D26-450D58F3CD17}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{EE0D8859-2ED4-4B0D-9812-16865B9AFD65}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Clé Supprimée : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Donnée Restaurée : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Donnée Restaurée : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Clé Supprimée : HKCU\Software\AnyProtect
Clé Supprimée : HKCU\Software\APN PIP
Clé Supprimée : HKCU\Software\AskPartnerNetwork
Clé Supprimée : HKCU\Software\GlobalUpdate
Clé Supprimée : HKCU\Software\HomeTab
Clé Supprimée : HKCU\Software\Nosibay
Clé Supprimée : HKCU\Software\Optimizer Pro
Clé Supprimée : HKCU\Software\simplytech
Clé Supprimée : HKCU\Software\Store
Clé Supprimée : HKCU\Software\PriceFountain
Clé Supprimée : HKCU\Software\StormWatchApp
Clé Supprimée : HKCU\Software\GAMESDESKTOP
Clé Supprimée : HKCU\Software\WajIEnhance
Clé Supprimée : HKCU\Software\WTools
Clé Supprimée : HKCU\Software\TNT2
Clé Supprimée : HKCU\Software\WajIntEnhance
Clé Supprimée : HKCU\Software\CrossBrowser
Clé Supprimée : HKCU\Software\SearchProtectWS
Clé Supprimée : HKCU\Software\Crossbrowse
Clé Supprimée : HKCU\Software\Linkey
Clé Supprimée : HKCU\Software\YorkNewCin
Clé Supprimée : HKCU\Software\HighDefAction
Clé Supprimée : HKCU\Software\ArenaHD
Clé Supprimée : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Clé Supprimée : HKCU\Software\Kromtech
Clé Supprimée : HKCU\Software\SmartSaver+ 3
Clé Supprimée : HKCU\Software\SmartSaver+ 3-nv
Clé Supprimée : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Clé Supprimée : HKCU\Software\AppDataLow\Software\Crossrider
Clé Supprimée : HKCU\Software\AppDataLow\Software\DynConIE
Clé Supprimée : HKCU\Software\AppDataLow\Software\CheckMeUp
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Clé Supprimée : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Clé Supprimée : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Clé Supprimée : HKLM\SOFTWARE\AskPartnerNetwork
Clé Supprimée : HKLM\SOFTWARE\Conduit
Clé Supprimée : HKLM\SOFTWARE\GlobalUpdate
Clé Supprimée : HKLM\SOFTWARE\Iminent
Clé Supprimée : HKLM\SOFTWARE\istartsurfSoftware
Clé Supprimée : HKLM\SOFTWARE\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\SupDp
Clé Supprimée : HKLM\SOFTWARE\SupTab
Clé Supprimée : HKLM\SOFTWARE\supWindowsMangerProtect
Clé Supprimée : HKLM\SOFTWARE\Tutorials
Clé Supprimée : HKLM\SOFTWARE\Uniblue
Clé Supprimée : HKLM\SOFTWARE\StormWatchApp
Clé Supprimée : HKLM\SOFTWARE\mystartsearchSoftware
Clé Supprimée : HKLM\SOFTWARE\IHProtect
Clé Supprimée : HKLM\SOFTWARE\WajIntEnhance
Clé Supprimée : HKLM\SOFTWARE\Crossbrowse
Clé Supprimée : HKLM\SOFTWARE\SpeedBit
Clé Supprimée : HKLM\SOFTWARE\LolliScan
Clé Supprimée : HKLM\SOFTWARE\AIM Toolbar
Clé Supprimée : HKLM\SOFTWARE\YorkNewCin
Clé Supprimée : HKLM\SOFTWARE\HighDefAction
Clé Supprimée : HKLM\SOFTWARE\ArenaHD
Clé Supprimée : HKLM\SOFTWARE\MovieDea
Clé Supprimée : HKLM\SOFTWARE\searchult
Clé Supprimée : HKLM\SOFTWARE\SmartSaver+ 3
Clé Supprimée : HKLM\SOFTWARE\SmartSaver+ 3-nv
Clé Supprimée : HKU\.DEFAULT\Software\Boxore
Clé Supprimée : HKU\.DEFAULT\Software\SmartSaver+ 3-nv
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DE778E8E-5286-41FF-A85E-D41A6384DD83}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SmartSaver+ 3
Clé Supprimée : [x64] HKLM\SOFTWARE\ShopperPro
Clé Supprimée : [x64] HKLM\SOFTWARE\BubbleSound
Clé Supprimée : [x64] HKLM\SOFTWARE\WebBar
Clé Supprimée : [x64] HKLM\SOFTWARE\LolliScan
Clé Supprimée : [x64] HKLM\SOFTWARE\YorkNewCin
Clé Supprimée : [x64] HKLM\SOFTWARE\HighDefAction
Clé Supprimée : [x64] HKLM\SOFTWARE\ArenaHD
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\93BAD29AC2E44034A96BCB446EB8552E
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SoftwareUpdate.exe
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.mystartsearch.com
Donnée Supprimée : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=127.0.0.1:49180;hxxps=127.0.0.1:49180
Donnée Supprimée : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Donnée Supprimée : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
-\\ Internet Explorer v11.0.9600.17840
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Paramètre Restauré : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
-\\ Mozilla Firefox v27.0.1 (fr)
[e7g8s5gy.default\prefs.js] - Ligne Supprimée : user_pref("browser.newtab.url", "hxxp://www.mystartsearch.com/newtab/?type=nt&ts=1436185535&z=82a6b164f9727f5f5507b0eg5z9cbqfg5b0wawcc5w&from=cmi&uid=HitachiXHTS725032A9A364_100615PCKC00VPK6Z7SKX");
[e7g8s5gy.default\prefs.js] - Ligne Supprimée : user_pref("browser.search.defaultenginename", "mystartsearch");
[e7g8s5gy.default\prefs.js] - Ligne Supprimée : user_pref("browser.search.selectedEngine", "mystartsearch");
[e7g8s5gy.default\prefs.js] - Ligne Supprimée : user_pref("browser.startup.homepage", "hxxp://www.istartsurf.com/?type=hppp&ts=1436108510&z=bbc4ed5105dbedfeb8a3cf8g6z7c3qagbe2bdwde1b&from=tugs&uid=HitachiXHTS725032A9A364_100615PCKC00VPK6Z7SKX");
-\\ Google Chrome v43.0.2357.132
[C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Supprimée [Homepage] : hxxp://www.mystartsearch.com/?type=sy&ts=1436185573&z=ef9a8fbf1ac9ae8d9e19affg9zec4qeg1b5wdwfm8c&from=cmi&uid=HitachiXHTS725032A9A364_100615PCKC00VPK6Z7SKX
[C:\Users\chems\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Supprimée [Startup_URLs] : D2C8AE4FD0DE32455557B37105C7076ADB5E925345B196F6F28CD6BF3B0C4A60"},"software_reporter":{"prompt_reason":"7023A904BE5979B29E6835C4B07F674FE3C94FD86D85CFCAE7B1351B0DEF1899","prompt_seed":"DF3EFD1223328DC3B60F61E4AF815A8EADC42AAFDD825002C3E4C0FD03FC86C6","prompt_version":"8C79C99A55153A6ADF72945B03B4502F1EFA8EF99C6A628C0CB0FB283DC58619"},"sync":{"remaining_rollback_tries":"4DCCEB71F393010DCB1BA157DEEBA2ADE0557FC3A135756238B13F254DBAED82"}},"super_mac":"F9C71C705D29D003E80E70BF261CCD7743D52D45FE520B64C5ACB475E26CD226"},"safebrowsing":{"incidents_sent":{"3":{"C:\\Program Files (x86)\\CyberLink\\YouCam\\subsys\\YouCam\\YCWebCameraSource.ax":"3835184282"},"6":{"script_request_incident":"42"}}},"session":{"restore_on_startup":5,"startup_urls":["hxxp://www.istartsurf.com/?type=hppp&ts=1436108510&z=bbc4ed5105dbedfeb8a3cf8g6z7c3qagbe2bdwde1b&from=tugs&uid=HitachiXHTS725032A9A364_100615PCKC00VPK6Z7SKX
-\\ Comodo Dragon v
-\\ Chrome Canary v
AdwCleaner[R0].txt - [38221 octets] - [07/07/2015 19:57:04]
AdwCleaner[S0].txt - [32917 octets] - [07/07/2015 19:58:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [32978 octets] ##########
7 juil. 2015 à 20:24
https://pjjoint.malekal.com/files.php?id=20150707_r11q148m5o9
https://pjjoint.malekal.com/files.php?id=20150707_y7v9t15r9c15