Impossible de trouver le fichier script "Run.vbs" et écran noir
Fermé
Marwan02300
Messages postés
11
Date d'inscription
mardi 22 mars 2016
Statut
Membre
Dernière intervention
22 mars 2016
-
22 mars 2016 à 08:43
Kokucorico - 1 mai 2016 à 18:42
Kokucorico - 1 mai 2016 à 18:42
A voir également:
- Impossible de trouver le fichier script "Run.vbs" et écran noir
- Ecran noir pc - Guide
- Fichier rar - Guide
- Script vidéo youtube - Guide
- Double ecran - Guide
- Impossible de supprimer un fichier - Guide
2 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 659
Modifié par Malekal_morte- le 22/03/2016 à 08:44
Modifié par Malekal_morte- le 22/03/2016 à 08:44
Salut,
Fais : CTRL+ALT+Suppr
puis menu fichier et nouvelle tâche.
tape explorer.exe et OK.
Voici les étapes de la procédure à suivre :
1°) AdwCleaner
Suis le tutoriel AdwCleaner d'Xplode
Si le copié/collé ne fonctionne pas, utilise le site http://pjjoint.malekal.com/ pour héberger ton rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
2°) FRST
Suis le tutoriel FRST. ( prends le temps de lire attentivement - tout y est bien expliqué ).
Télécharge et lance le scan FRST, 3 rapports FRST seront générés :
Envoie ces 3 rapports sur le site http://pjjoint.malekal.com/ et en retour donne les 3 liens pjjoint qui mènent aux rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Veuillez appuyer sur une touche pour continuer la désinfection...
Fais : CTRL+ALT+Suppr
puis menu fichier et nouvelle tâche.
tape explorer.exe et OK.
Voici les étapes de la procédure à suivre :
1°) AdwCleaner
Suis le tutoriel AdwCleaner d'Xplode
- Télécharge le sur ton Bureau ou dans ton dossier des téléchargements,
- Lance "AdwCleaner" et clique sur [Scanner],
- L'analyse va durer plusieurs minutes, patiente,
- Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer],
- Une fois le nettoyage terminé, un rapport va s'ouvrir,
- Copie/colle le contenu du rapport dans ta prochaine réponse.
Si le copié/collé ne fonctionne pas, utilise le site http://pjjoint.malekal.com/ pour héberger ton rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt
2°) FRST
Suis le tutoriel FRST. ( prends le temps de lire attentivement - tout y est bien expliqué ).
Télécharge et lance le scan FRST, 3 rapports FRST seront générés :
- FRST.txt
- Shortcut.txt
- Additionnal.txt
Envoie ces 3 rapports sur le site http://pjjoint.malekal.com/ et en retour donne les 3 liens pjjoint qui mènent aux rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Veuillez appuyer sur une touche pour continuer la désinfection...
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 659
Modifié par Malekal_morte- le 22/03/2016 à 10:09
Modifié par Malekal_morte- le 22/03/2016 à 10:09
1°)
Voici la correction à effectuer avec FRST. Tu peux t'aider de cette note explicative avec des captures d'écran.
Ouvre le bloc-notes : Touche Windows + R,
Dans le champs "Exécuter", saisir notepad et OK.
Copie/Colle dedans ce qui suit :
Une fois, le texte collé dans le Bloc-notes,
Menu "Fichier" puis "Enregistrer sous",
A gauche, place toi sur le Bureau,
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clique sur "Enregistrer", cela va créer fixlist.txt sur le Bureau.
Relance FRST et clique sur le bouton "Corriger / Fix"
Un redémarrage sera peut-être nécessaire ( pas obligatoire )
Un fichier texte apparait, copie/colle le contenu ici dans un nouveau message.
~~
2°)
Fais un nettoyage Hitman Pro.
Veuillez appuyer sur une touche pour continuer la désinfection...
Voici la correction à effectuer avec FRST. Tu peux t'aider de cette note explicative avec des captures d'écran.
Ouvre le bloc-notes : Touche Windows + R,
Dans le champs "Exécuter", saisir notepad et OK.
Copie/Colle dedans ce qui suit :
CloseProcesses:
HKLM-x32\...\Run: [dply_en_015020274] => [X]
HKLM-x32\...\Run: [win_en_77] => [X]
HKLM-x32\...\Run: [rec_fr_231] => [X]
HKLM-x32\...\Run: [mbot_en_037050274] => [X]
HKLM-x32\...\Run: [sun13] => [X]
HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Reboot:
Une fois, le texte collé dans le Bloc-notes,
Menu "Fichier" puis "Enregistrer sous",
A gauche, place toi sur le Bureau,
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clique sur "Enregistrer", cela va créer fixlist.txt sur le Bureau.
Relance FRST et clique sur le bouton "Corriger / Fix"
Un redémarrage sera peut-être nécessaire ( pas obligatoire )
Un fichier texte apparait, copie/colle le contenu ici dans un nouveau message.
~~
2°)
Fais un nettoyage Hitman Pro.
Veuillez appuyer sur une touche pour continuer la désinfection...
Marwan02300
Messages postés
11
Date d'inscription
mardi 22 mars 2016
Statut
Membre
Dernière intervention
22 mars 2016
22 mars 2016 à 10:18
22 mars 2016 à 10:18
L'ordinateur redémarre, Merci de me consacrer un peux de votre temps.
Marwan02300
Messages postés
11
Date d'inscription
mardi 22 mars 2016
Statut
Membre
Dernière intervention
22 mars 2016
22 mars 2016 à 10:21
22 mars 2016 à 10:21
Résultats de correction de Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Exécuté par Sasha (2016-03-22 10:16:31) Run:1
Exécuté depuis C:\Users\Sasha\Desktop
Profils chargés: Sasha (Profils disponibles: Sasha & DefaultAppPool)
Mode d'amorçage: Normal
==============================================
fixlist contenu:
CloseProcesses:
HKLM-x32\...\Run: [dply_en_015020274] => [X]
HKLM-x32\...\Run: [win_en_77] => [X]
HKLM-x32\...\Run: [rec_fr_231] => [X]
HKLM-x32\...\Run: [mbot_en_037050274] => [X]
HKLM-x32\...\Run: [sun13] => [X]
HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Reboot:
Processus fermé avec succès.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\dply_en_015020274 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\rec_fr_231 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mbot_en_037050274 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sun13 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\DeleteOnReboot => valeur supprimé(es) avec succès
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => valeur restauré(es) avec succès
HKU\S-1-5-21-3310106637-479548021-4204304445-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => valeur supprimé(es) avec succès
HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => valeur supprimé(es) avec succès
MPCProtectService => service non trouvé(e).
bsdriver => Impossible d'arrêter le service.
bsdriver => service impossible à supprimer
MPCKpt => service supprimé(es) avec succès
zdwfp => Impossible d'arrêter le service.
zdwfp => service supprimé(es) avec succès
{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => Impossible d'arrêter le service.
{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => service supprimé(es) avec succès
{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => Impossible d'arrêter le service.
{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => service supprimé(es) avec succès
C:\Users\Sasha\AppData\Roaming\MCorp => déplacé(es) avec succès
"C:\Users\Public\Desktop\MPC Cleaner.lnk" => non trouvé(e).
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC" => non trouvé(e).
C:\WINDOWS\ntbtlog.txt => déplacé(es) avec succès
C:\Users\Sasha\AppData\Local\app => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\zdwfp64.sys => déplacé(es) avec succès
C:\WINDOWS\system32\rok => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65} => déplacé(es) avec succès
C:\Program Files (x86)\MPC Cleaner => déplacé(es) avec succès
"C:\WINDOWS\system32\Drivers\MPCKpt.sys" => non trouvé(e).
C:\WINDOWS\System32\Tasks\otk3022 => déplacé(es) avec succès
C:\WINDOWS\Tasks\RKRQROG1.job => déplacé(es) avec succès
C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\RKRQROG1 => déplacé(es) avec succès
C:\ProgramData\19a87fa1ec024bbcbb41931263354405 => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => déplacé(es) avec succès
C:\WINDOWS\SysWOW64\${LOGFILE} => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\etc\hp.bak => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys => déplacé(es) avec succès
C:\Program Files\Otem => déplacé(es) avec succès
Impossible de déplacer "C:\WINDOWS\system32\Drivers\bsdriver.sys" => Planifié pour déplacement au redémarrage.
C:\WINDOWS\System32\Tasks\Eezeajoj => déplacé(es) avec succès
"C:\Users\Sasha\AppData\Roaming\Ywihr" dossier déplacer:
Impossible de déplacer "C:\Users\Sasha\AppData\Roaming\Ywihr" => Planifié pour déplacement au redémarrage.
C:\Users\Sasha\AppData\LocalLow\Company => déplacé(es) avec succès
C:\Users\Sasha\AppData\Local\Tempfolder => déplacé(es) avec succès
C:\uninst => déplacé(es) avec succès
Impossible de déplacer "C:\WINDOWS\system32\Drivers\cherimoya.sys" => Planifié pour déplacement au redémarrage.
C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7} => déplacé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\otk3022 => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\otk3022" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6B80507A-5A1B-41D4-8D97-530F228FEA30}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\Eezeajoj => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Eezeajoj" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CWQWFWDTGJCXMCQU" => clé supprimé(es) avec succès
C:\WINDOWS\Tasks\RKRQROG1.job => non trouvé(e).
C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => non trouvé(e).
Résultats du déplacement planifié des fichiers (Mode d'amorçage: Normal) (Date&Heure: 2016-03-22 10:19:29)
"C:\WINDOWS\system32\Drivers\bsdriver.sys" => Impossible de déplacer
C:\Users\Sasha\AppData\Roaming\Ywihr => a été déplacé(e) avec succès
"C:\WINDOWS\system32\Drivers\cherimoya.sys" => Impossible de déplacer
Exécuté par Sasha (2016-03-22 10:16:31) Run:1
Exécuté depuis C:\Users\Sasha\Desktop
Profils chargés: Sasha (Profils disponibles: Sasha & DefaultAppPool)
Mode d'amorçage: Normal
==============================================
fixlist contenu:
CloseProcesses:
HKLM-x32\...\Run: [dply_en_015020274] => [X]
HKLM-x32\...\Run: [win_en_77] => [X]
HKLM-x32\...\Run: [rec_fr_231] => [X]
HKLM-x32\...\Run: [mbot_en_037050274] => [X]
HKLM-x32\...\Run: [sun13] => [X]
HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
Reboot:
Processus fermé avec succès.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\dply_en_015020274 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\rec_fr_231 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mbot_en_037050274 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sun13 => valeur supprimé(es) avec succès
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\DeleteOnReboot => valeur supprimé(es) avec succès
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => valeur restauré(es) avec succès
HKU\S-1-5-21-3310106637-479548021-4204304445-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => valeur supprimé(es) avec succès
HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => valeur supprimé(es) avec succès
MPCProtectService => service non trouvé(e).
bsdriver => Impossible d'arrêter le service.
bsdriver => service impossible à supprimer
MPCKpt => service supprimé(es) avec succès
zdwfp => Impossible d'arrêter le service.
zdwfp => service supprimé(es) avec succès
{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => Impossible d'arrêter le service.
{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => service supprimé(es) avec succès
{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => Impossible d'arrêter le service.
{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => service supprimé(es) avec succès
C:\Users\Sasha\AppData\Roaming\MCorp => déplacé(es) avec succès
"C:\Users\Public\Desktop\MPC Cleaner.lnk" => non trouvé(e).
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC" => non trouvé(e).
C:\WINDOWS\ntbtlog.txt => déplacé(es) avec succès
C:\Users\Sasha\AppData\Local\app => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\zdwfp64.sys => déplacé(es) avec succès
C:\WINDOWS\system32\rok => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65} => déplacé(es) avec succès
C:\Program Files (x86)\MPC Cleaner => déplacé(es) avec succès
"C:\WINDOWS\system32\Drivers\MPCKpt.sys" => non trouvé(e).
C:\WINDOWS\System32\Tasks\otk3022 => déplacé(es) avec succès
C:\WINDOWS\Tasks\RKRQROG1.job => déplacé(es) avec succès
C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\RKRQROG1 => déplacé(es) avec succès
C:\ProgramData\19a87fa1ec024bbcbb41931263354405 => déplacé(es) avec succès
C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => déplacé(es) avec succès
C:\WINDOWS\SysWOW64\${LOGFILE} => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\etc\hp.bak => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys => déplacé(es) avec succès
C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys => déplacé(es) avec succès
C:\Program Files\Otem => déplacé(es) avec succès
Impossible de déplacer "C:\WINDOWS\system32\Drivers\bsdriver.sys" => Planifié pour déplacement au redémarrage.
C:\WINDOWS\System32\Tasks\Eezeajoj => déplacé(es) avec succès
"C:\Users\Sasha\AppData\Roaming\Ywihr" dossier déplacer:
Impossible de déplacer "C:\Users\Sasha\AppData\Roaming\Ywihr" => Planifié pour déplacement au redémarrage.
C:\Users\Sasha\AppData\LocalLow\Company => déplacé(es) avec succès
C:\Users\Sasha\AppData\Local\Tempfolder => déplacé(es) avec succès
C:\uninst => déplacé(es) avec succès
Impossible de déplacer "C:\WINDOWS\system32\Drivers\cherimoya.sys" => Planifié pour déplacement au redémarrage.
C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7} => déplacé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\otk3022 => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\otk3022" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6B80507A-5A1B-41D4-8D97-530F228FEA30}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\Eezeajoj => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Eezeajoj" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => non trouvé(e).
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CWQWFWDTGJCXMCQU" => clé supprimé(es) avec succès
C:\WINDOWS\Tasks\RKRQROG1.job => non trouvé(e).
C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => non trouvé(e).
Résultats du déplacement planifié des fichiers (Mode d'amorçage: Normal) (Date&Heure: 2016-03-22 10:19:29)
"C:\WINDOWS\system32\Drivers\bsdriver.sys" => Impossible de déplacer
C:\Users\Sasha\AppData\Roaming\Ywihr => a été déplacé(e) avec succès
"C:\WINDOWS\system32\Drivers\cherimoya.sys" => Impossible de déplacer
Fin de Fixlog 10:19:29
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 659
>
Marwan02300
Messages postés
11
Date d'inscription
mardi 22 mars 2016
Statut
Membre
Dernière intervention
22 mars 2016
22 mars 2016 à 10:32
22 mars 2016 à 10:32
ok fais l'étape 2.
Marwan02300
Messages postés
11
Date d'inscription
mardi 22 mars 2016
Statut
Membre
Dernière intervention
22 mars 2016
>
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
22 mars 2016 à 10:37
22 mars 2016 à 10:37
90%
Marwan02300
Messages postés
11
Date d'inscription
mardi 22 mars 2016
Statut
Membre
Dernière intervention
22 mars 2016
22 mars 2016 à 10:43
22 mars 2016 à 10:43
c'est fait
22 mars 2016 à 09:07
# AdwCleaner v5.104 - Rapport créé le 22/03/2016 à 08:57:53
# Mis à jour le 21/03/2016 par Xplode
# Base de données : 2016-03-21.3 [Serveur]
# Système d'exploitation : Windows 10 Home (x64)
# Nom d'utilisateur : Sasha - SASHA-HP
# Exécuté depuis : C:\Users\Sasha\Downloads\adwcleaner_5.104.exe
# Option : Nettoyer
# Support : https://toolslib.net/forum
[ Services ] *****
[-] Service Supprimé : bsdriver
[-] Service Supprimé : MPCProtectService
[-] Service Supprimé : MPCKpt
[ Dossiers ] *****
[#] Dossier Supprimé : C:\Program Files (x86)\MPC Cleaner
[-] Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
[ Fichiers ] *****
[-] Fichier Supprimé : C:\Users\Public\Desktop\MPC Cleaner.lnk
[#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\bsdriver.sys
[#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\cherimoya.sys
[#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\MPCKpt.sys
[ DLLs ] *****
[ Raccourcis ] *****
[ Tâches planifiées ] *****
[ Registre ] *****
[-] Clé Supprimée : HKLM\SOFTWARE\MPC
[ Navigateurs ] *****
:: Clés "Tracing" supprimées
:: Paramètres Winsock réinitialisés
C:\AdwCleaner\AdwCleaner[C1].txt - [19089 octets] - [21/03/2016 20:10:43]
C:\AdwCleaner\AdwCleaner[C2].txt - [1387 octets] - [22/03/2016 08:57:53]
C:\AdwCleaner\AdwCleaner[R0].txt - [5389 octets] - [06/01/2015 03:20:23]
C:\AdwCleaner\AdwCleaner[R1].txt - [10624 octets] - [08/03/2015 19:59:24]
C:\AdwCleaner\AdwCleaner[R2].txt - [9419 octets] - [15/04/2015 19:00:01]
C:\AdwCleaner\AdwCleaner[R3].txt - [2083 octets] - [30/04/2015 20:08:05]
C:\AdwCleaner\AdwCleaner[R4].txt - [9765 octets] - [29/05/2015 05:50:27]
C:\AdwCleaner\AdwCleaner[R5].txt - [9505 octets] - [05/06/2015 06:22:15]
C:\AdwCleaner\AdwCleaner[R6].txt - [5317 octets] - [11/06/2015 01:21:42]
C:\AdwCleaner\AdwCleaner[R7].txt - [3886 octets] - [18/06/2015 15:38:00]
C:\AdwCleaner\AdwCleaner[R8].txt - [3028 octets] - [16/07/2015 22:11:02]
C:\AdwCleaner\AdwCleaner[R9].txt - [3171 octets] - [02/08/2015 21:14:57]
C:\AdwCleaner\AdwCleaner[S0].txt - [4072 octets] - [06/01/2015 03:21:45]
C:\AdwCleaner\AdwCleaner[S1].txt - [14344 octets] - [08/03/2015 20:01:27]
C:\AdwCleaner\AdwCleaner[S2].txt - [27511 octets] - [15/04/2015 19:01:28]
C:\AdwCleaner\AdwCleaner[S3].txt - [4808 octets] - [30/04/2015 20:09:31]
C:\AdwCleaner\AdwCleaner[S4].txt - [9600 octets] - [05/06/2015 06:24:51]
C:\AdwCleaner\AdwCleaner[S5].txt - [3074 octets] - [11/06/2015 01:23:39]
C:\AdwCleaner\AdwCleaner[S6].txt - [3960 octets] - [18/06/2015 15:41:41]
C:\AdwCleaner\AdwCleaner[S7].txt - [2723 octets] - [16/07/2015 22:19:33]
C:\AdwCleaner\AdwCleaner[S8].txt - [3047 octets] - [02/08/2015 21:16:17]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2870 octets] ##########
22 mars 2016 à 09:30
FRST : https://pjjoint.malekal.com/files.php?id=FRST_20160322_7c12x13l14r11
Shortcut : https://pjjoint.malekal.com/files.php?id=20160322_l11f10m11n14e9
22 mars 2016 à 09:31
1 mai 2016 à 18:29
# AdwCleaner v5.115 - Logfile created 01/05/2016 at 18:18:13
# Updated 01/05/2016 by Xplode
# Database : 2016-05-01.2 [Server]
# Operating system : Windows 7 Ultimate Service Pack 1 (X86)
# Username : Samuel - YAYAS
# Running from : C:\Users\Samuel\Downloads\adwcleaner_5.115.exe
# Option : Clean
# Support : http://toolslib.net/forum
[-] Service Deleted : servervo
[-] Service Deleted : SMUpd
[-] Service Deleted : SMUpdd
[-] Service Deleted : SPPD
[-] Service Deleted : MPCProtectService
[-] Service Deleted : MPCKpt
[-] Service Deleted : MPCBase
[-] Service Deleted : BugreportW
[-] Service Deleted : mivohorezbt
[-] Folder Deleted : C:\ProgramData\apn
[-] Folder Deleted : C:\ProgramData\Browser
[-] Folder Deleted : C:\ProgramData\Reimage Protector
[-] Folder Deleted : C:\ProgramData\SearchModule
[-] Folder Deleted : C:\ProgramData\StormAlert
[-] Folder Deleted : C:\ProgramData\WindowsMangerProtect
[-] Folder Deleted : C:\ProgramData\5e9d4dba-1ee5-1
[-] Folder Deleted : C:\ProgramData\5e9d4dba-5cb3-0
[#] Folder Deleted : C:\ProgramData\Application Data\apn
[#] Folder Deleted : C:\ProgramData\Application Data\Browser
[#] Folder Deleted : C:\ProgramData\Application Data\Reimage Protector
[#] Folder Deleted : C:\ProgramData\Application Data\SearchModule
[#] Folder Deleted : C:\ProgramData\Application Data\StormAlert
[#] Folder Deleted : C:\ProgramData\Application Data\WindowsMangerProtect
[#] Folder Deleted : C:\ProgramData\Application Data\5e9d4dba-1ee5-1
[#] Folder Deleted : C:\ProgramData\Application Data\5e9d4dba-5cb3-0
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyBestOffersToday
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam
[-] Folder Deleted : C:\Users\Public\Documents\ShopperPro
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\goforfiles
[-] Folder Deleted : C:\Program Files\Conduit
[-] Folder Deleted : C:\Program Files\DNS Unlocker
[-] Folder Deleted : C:\Program Files\FLVM Player
[-] Folder Deleted : C:\Program Files\globalUpdate
[-] Folder Deleted : C:\Program Files\Max Driver Updater
[-] Folder Deleted : C:\Program Files\Object Browser
[-] Folder Deleted : C:\Program Files\QuickSearch
[-] Folder Deleted : C:\Program Files\SupTab
[-] Folder Deleted : C:\Program Files\SweetIM
[-] Folder Deleted : C:\Program Files\TotalSystemCare
[-] Folder Deleted : C:\Program Files\Wajam
[-] Folder Deleted : C:\Program Files\WinZip Registry Optimizer
[-] Folder Deleted : C:\Program Files\Hostify
[-] Folder Deleted : C:\Program Files\Windows Screen Manager
[-] Folder Deleted : C:\Program Files\Sosition
[-] Folder Deleted : C:\Program Files\hohobnd
[-] Folder Deleted : C:\Program Files\735AF560-1460919348-11D5-8F2A-001E8C47D754
[-] Folder Deleted : C:\Program Files\mbot_fr_278
[#] Folder Deleted : C:\Program Files\Object Browser
[-] Folder Deleted : C:\Program Files\sunnyday
[#] Folder Deleted : C:\Program Files\mbot_fr_278
[-] Folder Deleted : C:\Program Files\Common Files\ShopperPro
[-] Folder Deleted : C:\Program Files\Common Files\Doobzo
[-] Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\SearchProtect
[-] Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\StormWatch
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Bundled software uninstaller
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\globalUpdate
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\jZip
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Mobogenie
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\MySearchs
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\PackageAware
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\SearchProtect
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Smartbar
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\StormAlert
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\SwvUpdater
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\mbot_fr_278
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\csdi_monetize_220160416
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\csdi_monetize_320160416
[#] Folder Deleted : C:\Users\Samuel\AppData\Local\mbot_fr_278
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_25367
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_31215
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_5036
[-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_5518
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Bandoo
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Conduit
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\ConduitEngine
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\PriceGong
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\searchquband
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Smartbar
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Softonic
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Toolbar4
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\wxDfast
[-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\xfirexo
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Babylon
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\DriverCure
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\file scout
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\goforfiles
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Media Finder
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\***@***
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Nosibay
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\OfferBox
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\OpenCandy
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\PerformerSoft
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\SpeedMaxPc
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\VOPackage
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\webssearches
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLVM Player
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalSystemCare
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
[-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
[-] File Deleted : C:\END
[-] File Deleted : C:\Users\Public\Desktop\MPC Cleaner.lnk
[-] File Deleted : C:\Windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
[-] File Deleted : C:\Windows\Reimage.ini
[-] File Deleted : C:\Windows\system32\roboot.exe
[-] File Deleted : C:\Windows\system32\Macromed\Flash\FlashPlayerTrust\Bandoo.cfg
[#] File Deleted : C:\Windows\system32\drivers\MPCBase.sys
[#] File Deleted : C:\Windows\system32\drivers\MPCKpt.sys
[-] File Deleted : C:\Users\Samuel\AppData\Local\Temp\zdengine.log
[-] File Deleted : C:\Users\Samuel\AppData\Local\Temp\ziengine.ini.log
[-] File Deleted : C:\Users\Samuel\daemonprocess.txt
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Bubble Dock.boostrap.log
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Bubble Dock.installation.log
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk
[-] File Deleted : C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\pr08ogrf.default\searchplugins\smod.xml
[-] Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[!] Shortcut Not Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\chrome.lnk
[-] Task Deleted : AmiUpdXp
[-] Task Deleted : Dealply
[-] Task Deleted : globalUpdateUpdateTaskMachineCore
[-] Task Deleted : globalUpdateUpdateTaskMachineUA
[-] Task Deleted : GoforFilesUpdate
[-] Task Deleted : LaunchApp
[-] Task Deleted : Run_Bobby_Browser
[-] Task Deleted : ShopperProJSUpd
[-] Task Deleted : TotalSystemCare.Scanning
[-] Task Deleted : DNS Monitoring
[-] Task Deleted : DNS Monitoring
[-] Task Deleted : DNSMANUELITO
[-] Task Deleted : SMW_UpdateTask_Time_3937353038333231312d3437415a556c2a3223346c41
[-] Task Deleted : one3025
[-] Task Deleted : {057E0C47-7979-7A0B-7E11-0C097A0A1109}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Download with &Media Finder
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\IEPlugin.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
[-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\chrome.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\firefox.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\iexplore.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\smu.exe
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\Classes\c
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC}
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1}
[-] Key Deleted : HKCU\Software\a6d88bb53cba17
[-] Key Deleted : HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b
[-] Key Deleted : HKLM\SOFTWARE\c6a282a0-854b-4701-9d62-4ac52f7d42bd
[-] Key Deleted : HKLM\SOFTWARE\Classes\TBSB06155.IEToolbar
[-] Key Deleted : HKLM\SOFTWARE\Classes\TBSB06155.IEToolbar.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2304157
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2542115
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3128284
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.TBSB06155
[-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.TBSB06155.1
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dednnpigldgdbpgcdpfppmlcnnbjciel
[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mciekghplkkgcmofonmkmlomhkamochd
[-] Key Deleted : HKCU\Software\Classes\PepperZip
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
[-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroappCore
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroappCore.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.clarodskBnd
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.clarodskBnd.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroHlpr
[-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroHlpr.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
[-] Key Deleted : HKLM\SOFTWARE\Classes\gencrawler_gc.GenCrawler
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook
[-] Key Deleted : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BandObjectAttribute
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BHO
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.DockingPanel
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBar
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBarBandObject
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarDisplayState
[-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarMenuForm
[-] Key Deleted : HKLM\SOFTWARE\Classes\PepperZip
[-] Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
[-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
[-] Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
[-] Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3F39D17D-50C7-4AC4-A63A-CDF6CDBD0C61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CCC3E766-7BA9-4629-AC1A-7F4B7F362E65}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D6A5312-AB4D-41AA-8BED-0E019B87CA11}
[-] Key Deleted : HKCU\Software\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Key Deleted : HKCU\Software\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9E131A93-EED7-4BEB-B015-A0ADB30B5646}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EE4FC43F-84CE-4E20-88C2-2188525B47FB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{16466D47-74A8-4928-B8B2-07CD79ABFC9F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{26D5CC0A-7A46-4D86-AF45-2EFA320B0C54}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D13AC8F-037E-40C5-ADA6-231BA74EA2F4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{322EDCF5-9E7D-4021-8C67-F3FFE4961A38}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E254398-828F-4D51-A39E-3F6B6D96A12C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{442DAF0C-7EAD-48D9-ABEA-E0036470D6D5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{58EB187D-24F8-4423-BD6C-655CE4C416BD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6BEB066C-A791-4A21-B934-7783533FE888}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A07612DF-B1DD-484F-A1C3-36CA4CE919D2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A76F97B2-2C56-456A-A29E-72741595C2E8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AE9908C1-3400-4B10-9061-C6C04D96E3D2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B19D9D96-E59C-4936-B283-8A831CDB3A53}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DC8AAABA-3F8B-4866-8B3A-D9368133A478}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E15519AE-99BE-42DD-BE60-FFC3C183F443}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{71E3A30E-9444-49D9-ABDB-B4B531D0BBA3}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A903AC15-686E-4D67-A355-86FCBE9F60DA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CCC3E766-7BA9-4629-AC1A-7F4B7F362E65}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A45E3FA8-5048-4372-94AD-C6661671F7FC}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A45E3FA8-5048-4372-94AD-C6661671F7FC}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
[-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C510DFFB-0AFE-484C-BA40-CED5B74C4EEF}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFF9B2DA-EF99-4B26-83CB-7058299999D8}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{9E131A93-EED7-4BEB-B015-A0ADB30B5646}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4DAAC69C-CBA7-45E2-9BC8-1044483D3352}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{4DAAC69C-CBA7-45E2-9BC8-1044483D3352}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
[-] Key Deleted : HKCU\Software\1ClickDownload
[-] Key Deleted : HKCU\Software\BABSOLUTION
[-] Key Deleted : HKCU\Software\BI
[-] Key Deleted : HKCU\Software\BoBrowser
[-] Key Deleted : HKCU\Software\Check Point Software Technologies LTD
[-] Key Deleted : HKCU\Software\CheckPoint\ISW
[-] Key Deleted : HKCU\Software\Claro LTD
[-] Key Deleted : HKCU\Software\Conduit
[-] Key Deleted : HKCU\Software\DataMngr
[-] Key Deleted : HKCU\Software\eSupport.com
[-] Key Deleted : HKCU\Software\filescout
[-] Key Deleted : HKCU\Software\FissaSearch
[-] Key Deleted : HKCU\Software\GlobalUpdate
[-] Key Deleted : HKCU\Software\GoforFiles
[-] Key Deleted : HKCU\Software\IM
[-] Key Deleted : HKCU\Software\Imesh
[-] Key Deleted : HKCU\Software\ImInstaller
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\jZip
[-] Key Deleted : HKCU\Software\Kozaka
[-] Key Deleted : HKCU\Software\MediaFinder
[-] Key Deleted : HKCU\Software\Nosibay
[-] Key Deleted : HKCU\Software\Offerbox
[-] Key Deleted : HKCU\Software\Optimizer Pro
[-] Key Deleted : HKCU\Software\ShopperPro
[-] Key Deleted : HKCU\Software\smartbarbackup
[-] Key Deleted : HKCU\Software\smartbarlog
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\SoftonicToolbar
[-] Key Deleted : HKCU\Software\SpeedMaxPC
[-] Key Deleted : HKCU\Software\StormWatchApp
[-] Key Deleted : HKCU\Software\SweetIM
[-] Key Deleted : HKCU\Software\Tutorials
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\Wajam
[-] Key Deleted : HKCU\Software\Yahoo\Companion
[-] Key Deleted : HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[-] Key Deleted : HKCU\Software\Wizzlabs
[-] Key Deleted : HKCU\Software\MICROSOFT\IDSC
[-] Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
[-] Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
[-] Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
[-] Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
[-] Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
[-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\AedgePerformanceBCN
[-] Key Deleted : HKLM\SOFTWARE\Babylon
[-] Key Deleted : HKLM\SOFTWARE\BabylonToolbar
[-] Key Deleted : HKLM\SOFTWARE\Bandoo
[-] Key Deleted : HKLM\SOFTWARE\Boxore
[-] Key Deleted : HKLM\SOFTWARE\CheckPoint\ISW
[-] Key Deleted : HKLM\SOFTWARE\Clara
[-] Key Deleted : HKLM\SOFTWARE\Claro LTD
[-] Key Deleted : HKLM\SOFTWARE\Conduit
[-] Key Deleted : HKLM\SOFTWARE\conduitEngine
[-] Key Deleted : HKLM\SOFTWARE\DataMngr
[-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
[-] Key Deleted : HKLM\SOFTWARE\GoforFiles
[-] Key Deleted : HKLM\SOFTWARE\Iminent
[-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : HKLM\SOFTWARE\Kozaka
[-] Key Deleted : HKLM\SOFTWARE\MPC
[-] Key Deleted : HKLM\SOFTWARE\MyBestOffersToday
[-] Key Deleted : HKLM\SOFTWARE\Object Browser
[-] Key Deleted : HKLM\SOFTWARE\Offerbox
[-] Key Deleted : HKLM\SOFTWARE\QuickSearch
[-] Key Deleted : HKLM\SOFTWARE\Reimage
[-] Key Deleted : HKLM\SOFTWARE\SearchModule
[-] Key Deleted : HKLM\SOFTWARE\SearchProtect
[-] Key Deleted : HKLM\SOFTWARE\SpeedMaxPC
[-] Key Deleted : HKLM\SOFTWARE\SPPDCOM
[-] Key Deleted : HKLM\SOFTWARE\SupDp
[-] Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
[-] Key Deleted : HKLM\SOFTWARE\SweetIM
[-] Key Deleted : HKLM\SOFTWARE\Tarma Installer
[-] Key Deleted : HKLM\SOFTWARE\TotalSystemCare
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\Uniblue
[-] Key Deleted : HKLM\SOFTWARE\Vittalia
[-] Key Deleted : HKLM\SOFTWARE\Wajam
[-] Key Deleted : HKLM\SOFTWARE\webssearchesSoftware
[-] Key Deleted : HKLM\SOFTWARE\DNSUnlocker
[-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
[-] Key Deleted : HKLM\SOFTWARE\SrpnFiles
[-] Key Deleted : HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FB697452-8CA4-46B4-98B1-165C922A2EF3}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FLVM Player
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HandyUpdater
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search module
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\StormAlert
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TotalSystemCare
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DNSUnlocker.ns
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CleanBrowser
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mbot_fr_278_is1
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sunnyday_is1
[-] Key Deleted : HKU\.DEFAULT\Software\filescout
[-] Key Deleted : HKU\.DEFAULT\Software\Kozaka
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Kozaka
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\MediaFinder
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\SweetIM
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Wajam
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\254796BF4AC84B64891B61C529A2E23F
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\254796BF4AC84B64891B61C529A2E23F
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\254796BF4AC84B64891B61C529A2E23F
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{2A05C2E5-CC9D-4EA3-BC78-76690A23FD69}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{DE194DD8-1DC8-40B2-AF54-ABBB61256263}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{C0573994-288B-4D21-B46D-1A05BFE23BC1}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{EA7E9A62-0A69-4447-A5A2-D7C4EA03EC78}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\B64A7ADF39FD41A1B9C77FFD33B1BD79
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1B7495B6-BC98-4610-BFF2-4656071D248F}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4258490B-F6D3-426B-AF33-63D228086073}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FB647E73-CD95-46D8-A831-957BC48E141C}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
[#] Value Deleted : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Data Restored : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon [Userinit]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{6221FBBB-1020-47CC-825B-D4ED83CAE149} [NameServer]
[-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{923CB87C-7A28-4D98-A79C-9758AB554BC7} [NameServer]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
[-] [C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\pr08ogrf.default\prefs.js] Deleted : user_pref("keyword.URL", "hxxp://www-searching.com/search.aspx?site=shdefault1&prd=smw&pid=s&shr=d&q={searchTerms}&s=G4Hzbwybl03AK,5d619f07-9361-464d-bd34-30fb35213cde,");
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www-searching.com/?pid=s&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,&vp=ch&prd=set_ch
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider_Data] Deleted : hxxp://www-searching.com/search.aspx?site=shyos&prd=set_ch&q={searchTerms}&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : dednnpigldgdbpgcdpfppmlcnnbjciel
[-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxp://www-searching.com/?pid=s&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,&vp=ch&prd=set_ch
:: "Tracing" keys deleted
:: Winsock settings cleared
C:\AdwCleaner\AdwCleaner[C1].txt - [47571 bytes] - [01/05/2016 18:18:13]
C:\AdwCleaner\AdwCleaner[S1].txt - [52945 bytes] - [01/05/2016 18:14:23]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [47719 bytes] ##########
1 mai 2016 à 18:42
FRST.txt = http://pjjoint.malekal.com/files.php?id=FRST_20160501_p13h9d11r5q13
Addition.txt = http://pjjoint.malekal.com/files.php?id=20160501_z798k13b12
Shortcut.txt = http://pjjoint.malekal.com/files.php?id=20160501_p12o12u13q9i5