Impossible de trouver le fichier script "Run.vbs" et écran noir

Fermé
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016 - 22 mars 2016 à 08:43
 Kokucorico - 1 mai 2016 à 18:42
Bonjour à tous,

Après avoir lancé AdwCleaner sur mon PC pour enlever un logiciel espion " Yousearch", j'ai redémarré mon ordinateur mais depuis ce redémarrage lorsque je met mon mot de passe, Windows charge et fini par afficher un écran totalement noir et un message d'erreur " Impossible de trouver le fichier script "C:\WINDOWS\Run.vbs".

est-ce possible de m'aider à résoudre ce problème?

Merci d'avance.
A voir également:

2 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659
Modifié par Malekal_morte- le 22/03/2016 à 08:44
Salut,

Fais : CTRL+ALT+Suppr
puis menu fichier et nouvelle tâche.
tape explorer.exe et OK.

Voici les étapes de la procédure à suivre :

1°) AdwCleaner
Suis le tutoriel AdwCleaner d'Xplode
  • Télécharge le sur ton Bureau ou dans ton dossier des téléchargements,
  • Lance "AdwCleaner" et clique sur [Scanner],
  • L'analyse va durer plusieurs minutes, patiente,
  • Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer],
  • Une fois le nettoyage terminé, un rapport va s'ouvrir,
  • Copie/colle le contenu du rapport dans ta prochaine réponse.


Si le copié/collé ne fonctionne pas, utilise le site http://pjjoint.malekal.com/ pour héberger ton rapport, donne le lien du rapport dans un nouveau message.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt


2°) FRST
Suis le tutoriel FRST. ( prends le temps de lire attentivement - tout y est bien expliqué ).

Télécharge et lance le scan FRST, 3 rapports FRST seront générés :
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Envoie ces 3 rapports sur le site http://pjjoint.malekal.com/ et en retour donne les 3 liens pjjoint qui mènent aux rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.



Veuillez appuyer sur une touche pour continuer la désinfection...
1
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 09:07
Alors, voila le rapport de "AdwCleaner by Xplode"

# AdwCleaner v5.104 - Rapport créé le 22/03/2016 à 08:57:53
# Mis à jour le 21/03/2016 par Xplode
# Base de données : 2016-03-21.3 [Serveur]
# Système d'exploitation : Windows 10 Home (x64)
# Nom d'utilisateur : Sasha - SASHA-HP
# Exécuté depuis : C:\Users\Sasha\Downloads\adwcleaner_5.104.exe
# Option : Nettoyer
# Support : https://toolslib.net/forum
[ Services ] *****


[-] Service Supprimé : bsdriver
[-] Service Supprimé : MPCProtectService
[-] Service Supprimé : MPCKpt
[ Dossiers ] *****


[#] Dossier Supprimé : C:\Program Files (x86)\MPC Cleaner
[-] Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
[ Fichiers ] *****


[-] Fichier Supprimé : C:\Users\Public\Desktop\MPC Cleaner.lnk
[#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\bsdriver.sys
[#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\cherimoya.sys
[#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\MPCKpt.sys
[ DLLs ] *****
[ Raccourcis ] *****
[ Tâches planifiées ] *****
[ Registre ] *****


[-] Clé Supprimée : HKLM\SOFTWARE\MPC
[ Navigateurs ] *****


:: Clés "Tracing" supprimées
:: Paramètres Winsock réinitialisés


C:\AdwCleaner\AdwCleaner[C1].txt - [19089 octets] - [21/03/2016 20:10:43]
C:\AdwCleaner\AdwCleaner[C2].txt - [1387 octets] - [22/03/2016 08:57:53]
C:\AdwCleaner\AdwCleaner[R0].txt - [5389 octets] - [06/01/2015 03:20:23]
C:\AdwCleaner\AdwCleaner[R1].txt - [10624 octets] - [08/03/2015 19:59:24]
C:\AdwCleaner\AdwCleaner[R2].txt - [9419 octets] - [15/04/2015 19:00:01]
C:\AdwCleaner\AdwCleaner[R3].txt - [2083 octets] - [30/04/2015 20:08:05]
C:\AdwCleaner\AdwCleaner[R4].txt - [9765 octets] - [29/05/2015 05:50:27]
C:\AdwCleaner\AdwCleaner[R5].txt - [9505 octets] - [05/06/2015 06:22:15]
C:\AdwCleaner\AdwCleaner[R6].txt - [5317 octets] - [11/06/2015 01:21:42]
C:\AdwCleaner\AdwCleaner[R7].txt - [3886 octets] - [18/06/2015 15:38:00]
C:\AdwCleaner\AdwCleaner[R8].txt - [3028 octets] - [16/07/2015 22:11:02]
C:\AdwCleaner\AdwCleaner[R9].txt - [3171 octets] - [02/08/2015 21:14:57]
C:\AdwCleaner\AdwCleaner[S0].txt - [4072 octets] - [06/01/2015 03:21:45]
C:\AdwCleaner\AdwCleaner[S1].txt - [14344 octets] - [08/03/2015 20:01:27]
C:\AdwCleaner\AdwCleaner[S2].txt - [27511 octets] - [15/04/2015 19:01:28]
C:\AdwCleaner\AdwCleaner[S3].txt - [4808 octets] - [30/04/2015 20:09:31]
C:\AdwCleaner\AdwCleaner[S4].txt - [9600 octets] - [05/06/2015 06:24:51]
C:\AdwCleaner\AdwCleaner[S5].txt - [3074 octets] - [11/06/2015 01:23:39]
C:\AdwCleaner\AdwCleaner[S6].txt - [3960 octets] - [18/06/2015 15:41:41]
C:\AdwCleaner\AdwCleaner[S7].txt - [2723 octets] - [16/07/2015 22:19:33]
C:\AdwCleaner\AdwCleaner[S8].txt - [3047 octets] - [02/08/2015 21:16:17]

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2870 octets] ##########
0
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 09:30
0
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 09:31
Voila en espérant bien tout avoir fait.
0
donc pour adwcleaner:


# AdwCleaner v5.115 - Logfile created 01/05/2016 at 18:18:13
# Updated 01/05/2016 by Xplode
# Database : 2016-05-01.2 [Server]
# Operating system : Windows 7 Ultimate Service Pack 1 (X86)
# Username : Samuel - YAYAS
# Running from : C:\Users\Samuel\Downloads\adwcleaner_5.115.exe
# Option : Clean
# Support : http://toolslib.net/forum
          • [ Services ] *****


[-] Service Deleted : servervo
[-] Service Deleted : SMUpd
[-] Service Deleted : SMUpdd
[-] Service Deleted : SPPD
[-] Service Deleted : MPCProtectService
[-] Service Deleted : MPCKpt
[-] Service Deleted : MPCBase
[-] Service Deleted : BugreportW
[-] Service Deleted : mivohorezbt
          • [ Folders ] *****


[-] Folder Deleted : C:\ProgramData\apn
[-] Folder Deleted : C:\ProgramData\Browser
[-] Folder Deleted : C:\ProgramData\Reimage Protector
[-] Folder Deleted : C:\ProgramData\SearchModule
[-] Folder Deleted : C:\ProgramData\StormAlert
[-] Folder Deleted : C:\ProgramData\WindowsMangerProtect
[-] Folder Deleted : C:\ProgramData\5e9d4dba-1ee5-1
[-] Folder Deleted : C:\ProgramData\5e9d4dba-5cb3-0
[#] Folder Deleted : C:\ProgramData\Application Data\apn
[#] Folder Deleted : C:\ProgramData\Application Data\Browser
[#] Folder Deleted : C:\ProgramData\Application Data\Reimage Protector
[#] Folder Deleted : C:\ProgramData\Application Data\SearchModule
[#] Folder Deleted : C:\ProgramData\Application Data\StormAlert
[#] Folder Deleted : C:\ProgramData\Application Data\WindowsMangerProtect
[#] Folder Deleted : C:\ProgramData\Application Data\5e9d4dba-1ee5-1
[#] Folder Deleted : C:\ProgramData\Application Data\5e9d4dba-5cb3-0
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyBestOffersToday
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam
[-] Folder Deleted : C:\Users\Public\Documents\ShopperPro
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\goforfiles
[-] Folder Deleted : C:\Program Files\Conduit
[-] Folder Deleted : C:\Program Files\DNS Unlocker
[-] Folder Deleted : C:\Program Files\FLVM Player
[-] Folder Deleted : C:\Program Files\globalUpdate
[-] Folder Deleted : C:\Program Files\Max Driver Updater
[-] Folder Deleted : C:\Program Files\Object Browser
[-] Folder Deleted : C:\Program Files\QuickSearch
[-] Folder Deleted : C:\Program Files\SupTab
[-] Folder Deleted : C:\Program Files\SweetIM
[-] Folder Deleted : C:\Program Files\TotalSystemCare
[-] Folder Deleted : C:\Program Files\Wajam
[-] Folder Deleted : C:\Program Files\WinZip Registry Optimizer
[-] Folder Deleted : C:\Program Files\Hostify
[-] Folder Deleted : C:\Program Files\Windows Screen Manager
[-] Folder Deleted : C:\Program Files\Sosition
[-] Folder Deleted : C:\Program Files\hohobnd
[-] Folder Deleted : C:\Program Files\735AF560-1460919348-11D5-8F2A-001E8C47D754
[-] Folder Deleted : C:\Program Files\mbot_fr_278
[#] Folder Deleted : C:\Program Files\Object Browser
[-] Folder Deleted : C:\Program Files\sunnyday
[#] Folder Deleted : C:\Program Files\mbot_fr_278
[-] Folder Deleted : C:\Program Files\Common Files\ShopperPro
[-] Folder Deleted : C:\Program Files\Common Files\Doobzo
[-] Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\SearchProtect
[-] Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\StormWatch
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Bundled software uninstaller
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\globalUpdate
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\jZip
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Mobogenie
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\MySearchs
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\PackageAware
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\SearchProtect
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Smartbar
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\StormAlert
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\SwvUpdater
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\mbot_fr_278
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\csdi_monetize_220160416
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\csdi_monetize_320160416
[#] Folder Deleted : C:\Users\Samuel\AppData\Local\mbot_fr_278
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_25367
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_31215
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_5036
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_5518
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Bandoo
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Conduit
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\ConduitEngine
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\PriceGong
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\searchquband
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Smartbar
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Softonic
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Toolbar4
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\wxDfast
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\xfirexo
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Babylon
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\DriverCure
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\file scout
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\goforfiles
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Media Finder
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\***@***
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Nosibay
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\OfferBox
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\OpenCandy
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\PerformerSoft
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\SpeedMaxPc
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\VOPackage
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\webssearches
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLVM Player
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalSystemCare
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
          • [ Files ] *****


[-] File Deleted : C:\END
[-] File Deleted : C:\Users\Public\Desktop\MPC Cleaner.lnk
[-] File Deleted : C:\Windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
[-] File Deleted : C:\Windows\Reimage.ini
[-] File Deleted : C:\Windows\system32\roboot.exe
[-] File Deleted : C:\Windows\system32\Macromed\Flash\FlashPlayerTrust\Bandoo.cfg
[#] File Deleted : C:\Windows\system32\drivers\MPCBase.sys
[#] File Deleted : C:\Windows\system32\drivers\MPCKpt.sys
[-] File Deleted : C:\Users\Samuel\AppData\Local\Temp\zdengine.log
[-] File Deleted : C:\Users\Samuel\AppData\Local\Temp\ziengine.ini.log
[-] File Deleted : C:\Users\Samuel\daemonprocess.txt
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Bubble Dock.boostrap.log
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Bubble Dock.installation.log
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\pr08ogrf.default\searchplugins\smod.xml
          • [ DLLs ] *****
          • [ WMI ] *****
          • [ Shortcuts ] *****


[-] Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[!] Shortcut Not Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\chrome.lnk
          • [ Scheduled tasks ] *****


[-] Task Deleted : AmiUpdXp
[-] Task Deleted : Dealply
[-] Task Deleted : globalUpdateUpdateTaskMachineCore
[-] Task Deleted : globalUpdateUpdateTaskMachineUA
[-] Task Deleted : GoforFilesUpdate
[-] Task Deleted : LaunchApp
[-] Task Deleted : Run_Bobby_Browser
[-] Task Deleted : ShopperProJSUpd
[-] Task Deleted : TotalSystemCare.Scanning
[-] Task Deleted : DNS Monitoring
[-] Task Deleted : DNS Monitoring
[-] Task Deleted : DNSMANUELITO
[-] Task Deleted : SMW_UpdateTask_Time_3937353038333231312d3437415a556c2a3223346c41
[-] Task Deleted : one3025
[-] Task Deleted : {057E0C47-7979-7A0B-7E11-0C097A0A1109}
          • [ Registry ] *****


[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Download with &Media Finder
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\IEPlugin.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
[-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\chrome.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\firefox.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\iexplore.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\smu.exe
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\Classes\c
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC}
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1}
[-] Key Deleted : HKCU\Software\a6d88bb53cba17
[-] Key Deleted : HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b
[-] Key Deleted : HKLM\SOFTWARE\c6a282a0-854b-4701-9d62-4ac52f7d42bd
[-] Key Deleted : HKLM\SOFTWARE\Classes\TBSB06155.IEToolbar
[-] Key Deleted : HKLM\SOFTWARE\Classes\TBSB06155.IEToolbar.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2304157
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2542115
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3128284
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.TBSB06155
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.TBSB06155.1
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dednnpigldgdbpgcdpfppmlcnnbjciel
[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mciekghplkkgcmofonmkmlomhkamochd
[-] Key Deleted : HKCU\Software\Classes\PepperZip
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroappCore
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroappCore.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.clarodskBnd
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.clarodskBnd.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroHlpr
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroHlpr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
[-] Key Deleted : HKLM\SOFTWARE\Classes\gencrawler_gc.GenCrawler
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook
[-] Key Deleted : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BandObjectAttribute
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BHO
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.DockingPanel
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBar
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBarBandObject
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarDisplayState
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarMenuForm
[-] Key Deleted : HKLM\SOFTWARE\Classes\PepperZip
[-] Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
[-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
[-] Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
[-] Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3F39D17D-50C7-4AC4-A63A-CDF6CDBD0C61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CCC3E766-7BA9-4629-AC1A-7F4B7F362E65}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D6A5312-AB4D-41AA-8BED-0E019B87CA11}
[-] Key Deleted : HKCU\Software\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Key Deleted : HKCU\Software\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9E131A93-EED7-4BEB-B015-A0ADB30B5646}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EE4FC43F-84CE-4E20-88C2-2188525B47FB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{16466D47-74A8-4928-B8B2-07CD79ABFC9F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{26D5CC0A-7A46-4D86-AF45-2EFA320B0C54}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D13AC8F-037E-40C5-ADA6-231BA74EA2F4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{322EDCF5-9E7D-4021-8C67-F3FFE4961A38}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E254398-828F-4D51-A39E-3F6B6D96A12C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{442DAF0C-7EAD-48D9-ABEA-E0036470D6D5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{58EB187D-24F8-4423-BD6C-655CE4C416BD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6BEB066C-A791-4A21-B934-7783533FE888}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A07612DF-B1DD-484F-A1C3-36CA4CE919D2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A76F97B2-2C56-456A-A29E-72741595C2E8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AE9908C1-3400-4B10-9061-C6C04D96E3D2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B19D9D96-E59C-4936-B283-8A831CDB3A53}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DC8AAABA-3F8B-4866-8B3A-D9368133A478}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E15519AE-99BE-42DD-BE60-FFC3C183F443}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{71E3A30E-9444-49D9-ABDB-B4B531D0BBA3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A903AC15-686E-4D67-A355-86FCBE9F60DA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CCC3E766-7BA9-4629-AC1A-7F4B7F362E65}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A45E3FA8-5048-4372-94AD-C6661671F7FC}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A45E3FA8-5048-4372-94AD-C6661671F7FC}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C510DFFB-0AFE-484C-BA40-CED5B74C4EEF}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFF9B2DA-EF99-4B26-83CB-7058299999D8}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{9E131A93-EED7-4BEB-B015-A0ADB30B5646}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4DAAC69C-CBA7-45E2-9BC8-1044483D3352}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{4DAAC69C-CBA7-45E2-9BC8-1044483D3352}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Key Deleted : HKCU\Software\1ClickDownload
[-] Key Deleted : HKCU\Software\BABSOLUTION
[-] Key Deleted : HKCU\Software\BI
[-] Key Deleted : HKCU\Software\BoBrowser
[-] Key Deleted : HKCU\Software\Check Point Software Technologies LTD
[-] Key Deleted : HKCU\Software\CheckPoint\ISW
[-] Key Deleted : HKCU\Software\Claro LTD
[-] Key Deleted : HKCU\Software\Conduit
[-] Key Deleted : HKCU\Software\DataMngr
[-] Key Deleted : HKCU\Software\eSupport.com
[-] Key Deleted : HKCU\Software\filescout
[-] Key Deleted : HKCU\Software\FissaSearch
[-] Key Deleted : HKCU\Software\GlobalUpdate
[-] Key Deleted : HKCU\Software\GoforFiles
[-] Key Deleted : HKCU\Software\IM
[-] Key Deleted : HKCU\Software\Imesh
[-] Key Deleted : HKCU\Software\ImInstaller
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\jZip
[-] Key Deleted : HKCU\Software\Kozaka
[-] Key Deleted : HKCU\Software\MediaFinder
[-] Key Deleted : HKCU\Software\Nosibay
[-] Key Deleted : HKCU\Software\Offerbox
[-] Key Deleted : HKCU\Software\Optimizer Pro
[-] Key Deleted : HKCU\Software\ShopperPro
[-] Key Deleted : HKCU\Software\smartbarbackup
[-] Key Deleted : HKCU\Software\smartbarlog
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\SoftonicToolbar
[-] Key Deleted : HKCU\Software\SpeedMaxPC
[-] Key Deleted : HKCU\Software\StormWatchApp
[-] Key Deleted : HKCU\Software\SweetIM
[-] Key Deleted : HKCU\Software\Tutorials
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\Wajam
[-] Key Deleted : HKCU\Software\Yahoo\Companion
[-] Key Deleted : HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[-] Key Deleted : HKCU\Software\Wizzlabs
[-] Key Deleted : HKCU\Software\MICROSOFT\IDSC
[-] Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
[-] Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
[-] Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
[-] Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
[-] Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\AedgePerformanceBCN
[-] Key Deleted : HKLM\SOFTWARE\Babylon
[-] Key Deleted : HKLM\SOFTWARE\BabylonToolbar
[-] Key Deleted : HKLM\SOFTWARE\Bandoo
[-] Key Deleted : HKLM\SOFTWARE\Boxore
[-] Key Deleted : HKLM\SOFTWARE\CheckPoint\ISW
[-] Key Deleted : HKLM\SOFTWARE\Clara
[-] Key Deleted : HKLM\SOFTWARE\Claro LTD
[-] Key Deleted : HKLM\SOFTWARE\Conduit
[-] Key Deleted : HKLM\SOFTWARE\conduitEngine
[-] Key Deleted : HKLM\SOFTWARE\DataMngr
[-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
[-] Key Deleted : HKLM\SOFTWARE\GoforFiles
[-] Key Deleted : HKLM\SOFTWARE\Iminent
[-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : HKLM\SOFTWARE\Kozaka
[-] Key Deleted : HKLM\SOFTWARE\MPC
[-] Key Deleted : HKLM\SOFTWARE\MyBestOffersToday
[-] Key Deleted : HKLM\SOFTWARE\Object Browser
[-] Key Deleted : HKLM\SOFTWARE\Offerbox
[-] Key Deleted : HKLM\SOFTWARE\QuickSearch
[-] Key Deleted : HKLM\SOFTWARE\Reimage
[-] Key Deleted : HKLM\SOFTWARE\SearchModule
[-] Key Deleted : HKLM\SOFTWARE\SearchProtect
[-] Key Deleted : HKLM\SOFTWARE\SpeedMaxPC
[-] Key Deleted : HKLM\SOFTWARE\SPPDCOM
[-] Key Deleted : HKLM\SOFTWARE\SupDp
[-] Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
[-] Key Deleted : HKLM\SOFTWARE\SweetIM
[-] Key Deleted : HKLM\SOFTWARE\Tarma Installer
[-] Key Deleted : HKLM\SOFTWARE\TotalSystemCare
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\Uniblue
[-] Key Deleted : HKLM\SOFTWARE\Vittalia
[-] Key Deleted : HKLM\SOFTWARE\Wajam
[-] Key Deleted : HKLM\SOFTWARE\webssearchesSoftware
[-] Key Deleted : HKLM\SOFTWARE\DNSUnlocker
[-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
[-] Key Deleted : HKLM\SOFTWARE\SrpnFiles
[-] Key Deleted : HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FB697452-8CA4-46B4-98B1-165C922A2EF3}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FLVM Player
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HandyUpdater
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search module
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\StormAlert
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TotalSystemCare
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DNSUnlocker.ns
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CleanBrowser
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mbot_fr_278_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sunnyday_is1
[-] Key Deleted : HKU\.DEFAULT\Software\filescout
[-] Key Deleted : HKU\.DEFAULT\Software\Kozaka
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Kozaka
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\MediaFinder
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\SweetIM
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Wajam
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\254796BF4AC84B64891B61C529A2E23F
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\254796BF4AC84B64891B61C529A2E23F
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\254796BF4AC84B64891B61C529A2E23F
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{2A05C2E5-CC9D-4EA3-BC78-76690A23FD69}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{DE194DD8-1DC8-40B2-AF54-ABBB61256263}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{C0573994-288B-4D21-B46D-1A05BFE23BC1}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{EA7E9A62-0A69-4447-A5A2-D7C4EA03EC78}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\B64A7ADF39FD41A1B9C77FFD33B1BD79
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1B7495B6-BC98-4610-BFF2-4656071D248F}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4258490B-F6D3-426B-AF33-63D228086073}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FB647E73-CD95-46D8-A831-957BC48E141C}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
[#] Value Deleted : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Data Restored : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon [Userinit]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{6221FBBB-1020-47CC-825B-D4ED83CAE149} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{923CB87C-7A28-4D98-A79C-9758AB554BC7} [NameServer]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
          • [ Web browsers ] *****


[-] [C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\pr08ogrf.default\prefs.js] Deleted : user_pref("keyword.URL", "hxxp://www-searching.com/search.aspx?site=shdefault1&prd=smw&pid=s&shr=d&q={searchTerms}&s=G4Hzbwybl03AK,5d619f07-9361-464d-bd34-30fb35213cde,");
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www-searching.com/?pid=s&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,&vp=ch&prd=set_ch
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider_Data] Deleted : hxxp://www-searching.com/search.aspx?site=shyos&prd=set_ch&q={searchTerms}&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : dednnpigldgdbpgcdpfppmlcnnbjciel
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxp://www-searching.com/?pid=s&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,&vp=ch&prd=set_ch


:: "Tracing" keys deleted
:: Winsock settings cleared


C:\AdwCleaner\AdwCleaner[C1].txt - [47571 bytes] - [01/05/2016 18:18:13]
C:\AdwCleaner\AdwCleaner[S1].txt - [52945 bytes] - [01/05/2016 18:14:23]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [47719 bytes] ##########
0
FRST :

FRST.txt = http://pjjoint.malekal.com/files.php?id=FRST_20160501_p13h9d11r5q13

Addition.txt = http://pjjoint.malekal.com/files.php?id=20160501_z798k13b12

Shortcut.txt = http://pjjoint.malekal.com/files.php?id=20160501_p12o12u13q9i5
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659
Modifié par Malekal_morte- le 22/03/2016 à 10:09
1°)

Voici la correction à effectuer avec FRST. Tu peux t'aider de cette note explicative avec des captures d'écran.

Ouvre le bloc-notes : Touche Windows + R,
Dans le champs "Exécuter", saisir notepad et OK.
Copie/Colle dedans ce qui suit :


CloseProcesses:
HKLM-x32\...\Run: [dply_en_015020274] => [X]
HKLM-x32\...\Run: [win_en_77] => [X]
HKLM-x32\...\Run: [rec_fr_231] => [X]
HKLM-x32\...\Run: [mbot_en_037050274] => [X]
HKLM-x32\...\Run: [sun13] => [X]
HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Reboot:

Une fois, le texte collé dans le Bloc-notes,
Menu "Fichier" puis "Enregistrer sous",
A gauche, place toi sur le Bureau,
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clique sur "Enregistrer", cela va créer fixlist.txt sur le Bureau.

Relance FRST et clique sur le bouton "Corriger / Fix"
Un redémarrage sera peut-être nécessaire ( pas obligatoire )
Un fichier texte apparait, copie/colle le contenu ici dans un nouveau message.

~~

2°)
Fais un nettoyage Hitman Pro.

Veuillez appuyer sur une touche pour continuer la désinfection...
1
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 10:18
L'ordinateur redémarre, Merci de me consacrer un peux de votre temps.
0
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 10:21
Résultats de correction de Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Exécuté par Sasha (2016-03-22 10:16:31) Run:1
Exécuté depuis C:\Users\Sasha\Desktop
Profils chargés: Sasha (Profils disponibles: Sasha & DefaultAppPool)
Mode d'amorçage: Normal
==============================================

fixlist contenu:

CloseProcesses:
HKLM-x32\...\Run: [dply_en_015020274] => [X]
HKLM-x32\...\Run: [win_en_77] => [X]
HKLM-x32\...\Run: [rec_fr_231] => [X]
HKLM-x32\...\Run: [mbot_en_037050274] => [X]
HKLM-x32\...\Run: [sun13] => [X]
HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Reboot:


Processus fermé avec succès.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\dply_en_015020274 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\rec_fr_231 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mbot_en_037050274 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sun13 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\DeleteOnReboot => valeur supprimé(es) avec succès
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => valeur restauré(es) avec succès
HKU\S-1-5-21-3310106637-479548021-4204304445-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => valeur supprimé(es) avec succès
HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => valeur supprimé(es) avec succès
MPCProtectService => service non trouvé(e).
bsdriver => Impossible d'arrêter le service.
bsdriver => service impossible à supprimer
MPCKpt => service supprimé(es) avec succès
zdwfp => Impossible d'arrêter le service.
zdwfp => service supprimé(es) avec succès
{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => Impossible d'arrêter le service.
{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => service supprimé(es) avec succès
{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => Impossible d'arrêter le service.
{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => service supprimé(es) avec succès
C:\Users\Sasha\AppData\Roaming\MCorp => déplacé(es) avec succès
"C:\Users\Public\Desktop\MPC Cleaner.lnk" => non trouvé(e).
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC" => non trouvé(e).
C:\WINDOWS\ntbtlog.txt => déplacé(es) avec succès
C:\Users\Sasha\AppData\Local\app => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\zdwfp64.sys => déplacé(es) avec succès
C:\WINDOWS\system32\rok => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65} => déplacé(es) avec succès
C:\Program Files (x86)\MPC Cleaner => déplacé(es) avec succès
"C:\WINDOWS\system32\Drivers\MPCKpt.sys" => non trouvé(e).
C:\WINDOWS\System32\Tasks\otk3022 => déplacé(es) avec succès
C:\WINDOWS\Tasks\RKRQROG1.job => déplacé(es) avec succès
C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\RKRQROG1 => déplacé(es) avec succès
C:\ProgramData\19a87fa1ec024bbcbb41931263354405 => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => déplacé(es) avec succès
C:\WINDOWS\SysWOW64\${LOGFILE} => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\etc\hp.bak => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys => déplacé(es) avec succès
C:\Program Files\Otem => déplacé(es) avec succès
Impossible de déplacer "C:\WINDOWS\system32\Drivers\bsdriver.sys" => Planifié pour déplacement au redémarrage.
C:\WINDOWS\System32\Tasks\Eezeajoj => déplacé(es) avec succès

"C:\Users\Sasha\AppData\Roaming\Ywihr" dossier déplacer:

Impossible de déplacer "C:\Users\Sasha\AppData\Roaming\Ywihr" => Planifié pour déplacement au redémarrage.

C:\Users\Sasha\AppData\LocalLow\Company => déplacé(es) avec succès
C:\Users\Sasha\AppData\Local\Tempfolder => déplacé(es) avec succès
C:\uninst => déplacé(es) avec succès
Impossible de déplacer "C:\WINDOWS\system32\Drivers\cherimoya.sys" => Planifié pour déplacement au redémarrage.
C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7} => déplacé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\otk3022 => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\otk3022" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6B80507A-5A1B-41D4-8D97-530F228FEA30}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\Eezeajoj => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Eezeajoj" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CWQWFWDTGJCXMCQU" => clé supprimé(es) avec succès
C:\WINDOWS\Tasks\RKRQROG1.job => non trouvé(e).
C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => non trouvé(e).

Résultats du déplacement planifié des fichiers (Mode d'amorçage: Normal) (Date&Heure: 2016-03-22 10:19:29)

"C:\WINDOWS\system32\Drivers\bsdriver.sys" => Impossible de déplacer
C:\Users\Sasha\AppData\Roaming\Ywihr => a été déplacé(e) avec succès
"C:\WINDOWS\system32\Drivers\cherimoya.sys" => Impossible de déplacer

Fin de Fixlog 10:19:29

0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 659 > Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 10:32
ok fais l'étape 2.
0
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016 > Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020
22 mars 2016 à 10:37
90%
0
Marwan02300 Messages postés 11 Date d'inscription mardi 22 mars 2016 Statut Membre Dernière intervention 22 mars 2016
22 mars 2016 à 10:43
c'est fait
0