Impossible de trouver le fichier script "Run.vbs" et écran noir

Marwan02300 Messages postés 12 Statut Membre -  
 Kokucorico -
Bonjour à tous,

Après avoir lancé AdwCleaner sur mon PC pour enlever un logiciel espion " Yousearch", j'ai redémarré mon ordinateur mais depuis ce redémarrage lorsque je met mon mot de passe, Windows charge et fini par afficher un écran totalement noir et un message d'erreur " Impossible de trouver le fichier script "C:\WINDOWS\Run.vbs".

est-ce possible de m'aider à résoudre ce problème?

Merci d'avance.

2 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Fais : CTRL+ALT+Suppr
    puis menu fichier et nouvelle tâche.
    tape explorer.exe et OK.

    Voici les étapes de la procédure à suivre :

    1°) AdwCleaner
    Suis le tutoriel AdwCleaner d'Xplode
    • Télécharge le sur ton Bureau ou dans ton dossier des téléchargements,
    • Lance "AdwCleaner" et clique sur [Scanner],
    • L'analyse va durer plusieurs minutes, patiente,
    • Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer],
    • Une fois le nettoyage terminé, un rapport va s'ouvrir,
    • Copie/colle le contenu du rapport dans ta prochaine réponse.


    Si le copié/collé ne fonctionne pas, utilise le site http://pjjoint.malekal.com/ pour héberger ton rapport, donne le lien du rapport dans un nouveau message.

    Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

    2°) FRST
    Suis le tutoriel FRST. ( prends le temps de lire attentivement - tout y est bien expliqué ).

    Télécharge et lance le scan FRST, 3 rapports FRST seront générés :
    • FRST.txt
    • Shortcut.txt
    • Additionnal.txt


    Envoie ces 3 rapports sur le site http://pjjoint.malekal.com/ et en retour donne les 3 liens pjjoint qui mènent aux rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.

    Veuillez appuyer sur une touche pour continuer la désinfection...
    1
    1. Marwan02300 Messages postés 12 Statut Membre
       
      Alors, voila le rapport de "AdwCleaner by Xplode"

      # AdwCleaner v5.104 - Rapport créé le 22/03/2016 à 08:57:53
      # Mis à jour le 21/03/2016 par Xplode
      # Base de données : 2016-03-21.3 [Serveur]
      # Système d'exploitation : Windows 10 Home (x64)
      # Nom d'utilisateur : Sasha - SASHA-HP
      # Exécuté depuis : C:\Users\Sasha\Downloads\adwcleaner_5.104.exe
      # Option : Nettoyer
      # Support : https://toolslib.net/forum
      [ Services ] *****


      [-] Service Supprimé : bsdriver
      [-] Service Supprimé : MPCProtectService
      [-] Service Supprimé : MPCKpt
      [ Dossiers ] *****


      [#] Dossier Supprimé : C:\Program Files (x86)\MPC Cleaner
      [-] Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
      [ Fichiers ] *****


      [-] Fichier Supprimé : C:\Users\Public\Desktop\MPC Cleaner.lnk
      [#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\bsdriver.sys
      [#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\cherimoya.sys
      [#] Fichier Supprimé : C:\WINDOWS\SysNative\drivers\MPCKpt.sys
      [ DLLs ] *****
      [ Raccourcis ] *****
      [ Tâches planifiées ] *****
      [ Registre ] *****


      [-] Clé Supprimée : HKLM\SOFTWARE\MPC
      [ Navigateurs ] *****


      :: Clés "Tracing" supprimées
      :: Paramètres Winsock réinitialisés


      C:\AdwCleaner\AdwCleaner[C1].txt - [19089 octets] - [21/03/2016 20:10:43]
      C:\AdwCleaner\AdwCleaner[C2].txt - [1387 octets] - [22/03/2016 08:57:53]
      C:\AdwCleaner\AdwCleaner[R0].txt - [5389 octets] - [06/01/2015 03:20:23]
      C:\AdwCleaner\AdwCleaner[R1].txt - [10624 octets] - [08/03/2015 19:59:24]
      C:\AdwCleaner\AdwCleaner[R2].txt - [9419 octets] - [15/04/2015 19:00:01]
      C:\AdwCleaner\AdwCleaner[R3].txt - [2083 octets] - [30/04/2015 20:08:05]
      C:\AdwCleaner\AdwCleaner[R4].txt - [9765 octets] - [29/05/2015 05:50:27]
      C:\AdwCleaner\AdwCleaner[R5].txt - [9505 octets] - [05/06/2015 06:22:15]
      C:\AdwCleaner\AdwCleaner[R6].txt - [5317 octets] - [11/06/2015 01:21:42]
      C:\AdwCleaner\AdwCleaner[R7].txt - [3886 octets] - [18/06/2015 15:38:00]
      C:\AdwCleaner\AdwCleaner[R8].txt - [3028 octets] - [16/07/2015 22:11:02]
      C:\AdwCleaner\AdwCleaner[R9].txt - [3171 octets] - [02/08/2015 21:14:57]
      C:\AdwCleaner\AdwCleaner[S0].txt - [4072 octets] - [06/01/2015 03:21:45]
      C:\AdwCleaner\AdwCleaner[S1].txt - [14344 octets] - [08/03/2015 20:01:27]
      C:\AdwCleaner\AdwCleaner[S2].txt - [27511 octets] - [15/04/2015 19:01:28]
      C:\AdwCleaner\AdwCleaner[S3].txt - [4808 octets] - [30/04/2015 20:09:31]
      C:\AdwCleaner\AdwCleaner[S4].txt - [9600 octets] - [05/06/2015 06:24:51]
      C:\AdwCleaner\AdwCleaner[S5].txt - [3074 octets] - [11/06/2015 01:23:39]
      C:\AdwCleaner\AdwCleaner[S6].txt - [3960 octets] - [18/06/2015 15:41:41]
      C:\AdwCleaner\AdwCleaner[S7].txt - [2723 octets] - [16/07/2015 22:19:33]
      C:\AdwCleaner\AdwCleaner[S8].txt - [3047 octets] - [02/08/2015 21:16:17]

      ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2870 octets] ##########
      0
    2. Marwan02300 Messages postés 12 Statut Membre
       
      Voila en espérant bien tout avoir fait.
      0
    3. Kokucorico
       
      donc pour adwcleaner:


      # AdwCleaner v5.115 - Logfile created 01/05/2016 at 18:18:13
      # Updated 01/05/2016 by Xplode
      # Database : 2016-05-01.2 [Server]
      # Operating system : Windows 7 Ultimate Service Pack 1 (X86)
      # Username : Samuel - YAYAS
      # Running from : C:\Users\Samuel\Downloads\adwcleaner_5.115.exe
      # Option : Clean
      # Support : http://toolslib.net/forum
              • [ Services ] *****


      [-] Service Deleted : servervo
      [-] Service Deleted : SMUpd
      [-] Service Deleted : SMUpdd
      [-] Service Deleted : SPPD
      [-] Service Deleted : MPCProtectService
      [-] Service Deleted : MPCKpt
      [-] Service Deleted : MPCBase
      [-] Service Deleted : BugreportW
      [-] Service Deleted : mivohorezbt
              • [ Folders ] *****


      [-] Folder Deleted : C:\ProgramData\apn
      [-] Folder Deleted : C:\ProgramData\Browser
      [-] Folder Deleted : C:\ProgramData\Reimage Protector
      [-] Folder Deleted : C:\ProgramData\SearchModule
      [-] Folder Deleted : C:\ProgramData\StormAlert
      [-] Folder Deleted : C:\ProgramData\WindowsMangerProtect
      [-] Folder Deleted : C:\ProgramData\5e9d4dba-1ee5-1
      [-] Folder Deleted : C:\ProgramData\5e9d4dba-5cb3-0
      [#] Folder Deleted : C:\ProgramData\Application Data\apn
      [#] Folder Deleted : C:\ProgramData\Application Data\Browser
      [#] Folder Deleted : C:\ProgramData\Application Data\Reimage Protector
      [#] Folder Deleted : C:\ProgramData\Application Data\SearchModule
      [#] Folder Deleted : C:\ProgramData\Application Data\StormAlert
      [#] Folder Deleted : C:\ProgramData\Application Data\WindowsMangerProtect
      [#] Folder Deleted : C:\ProgramData\Application Data\5e9d4dba-1ee5-1
      [#] Folder Deleted : C:\ProgramData\Application Data\5e9d4dba-5cb3-0
      [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
      [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
      [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyBestOffersToday
      [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
      [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam
      [-] Folder Deleted : C:\Users\Public\Documents\ShopperPro
      [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\goforfiles
      [-] Folder Deleted : C:\Program Files\Conduit
      [-] Folder Deleted : C:\Program Files\DNS Unlocker
      [-] Folder Deleted : C:\Program Files\FLVM Player
      [-] Folder Deleted : C:\Program Files\globalUpdate
      [-] Folder Deleted : C:\Program Files\Max Driver Updater
      [-] Folder Deleted : C:\Program Files\Object Browser
      [-] Folder Deleted : C:\Program Files\QuickSearch
      [-] Folder Deleted : C:\Program Files\SupTab
      [-] Folder Deleted : C:\Program Files\SweetIM
      [-] Folder Deleted : C:\Program Files\TotalSystemCare
      [-] Folder Deleted : C:\Program Files\Wajam
      [-] Folder Deleted : C:\Program Files\WinZip Registry Optimizer
      [-] Folder Deleted : C:\Program Files\Hostify
      [-] Folder Deleted : C:\Program Files\Windows Screen Manager
      [-] Folder Deleted : C:\Program Files\Sosition
      [-] Folder Deleted : C:\Program Files\hohobnd
      [-] Folder Deleted : C:\Program Files\735AF560-1460919348-11D5-8F2A-001E8C47D754
      [-] Folder Deleted : C:\Program Files\mbot_fr_278
      [#] Folder Deleted : C:\Program Files\Object Browser
      [-] Folder Deleted : C:\Program Files\sunnyday
      [#] Folder Deleted : C:\Program Files\mbot_fr_278
      [-] Folder Deleted : C:\Program Files\Common Files\ShopperPro
      [-] Folder Deleted : C:\Program Files\Common Files\Doobzo
      [-] Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\SearchProtect
      [-] Folder Deleted : C:\Windows\system32\config\systemprofile\AppData\Local\StormWatch
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Bundled software uninstaller
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\globalUpdate
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\jZip
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Mobogenie
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\MySearchs
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\PackageAware
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\SearchProtect
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Smartbar
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\StormAlert
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\SwvUpdater
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\mbot_fr_278
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\csdi_monetize_220160416
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\csdi_monetize_320160416
      [#] Folder Deleted : C:\Users\Samuel\AppData\Local\mbot_fr_278
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_25367
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_31215
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_5036
      [-] Folder Deleted : C:\Users\Samuel\AppData\Local\Installer\Install_5518
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Bandoo
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Conduit
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\ConduitEngine
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\PriceGong
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\searchquband
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Smartbar
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Softonic
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\Toolbar4
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\wxDfast
      [-] Folder Deleted : C:\Users\Samuel\AppData\LocalLow\xfirexo
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Babylon
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\DriverCure
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\file scout
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\goforfiles
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Media Finder
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\***@***
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Nosibay
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\OfferBox
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\OpenCandy
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\PerformerSoft
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\SpeedMaxPc
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\VOPackage
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\webssearches
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLVM Player
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalSystemCare
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
      [-] Folder Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
              • [ Files ] *****


      [-] File Deleted : C:\END
      [-] File Deleted : C:\Users\Public\Desktop\MPC Cleaner.lnk
      [-] File Deleted : C:\Windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
      [-] File Deleted : C:\Windows\Reimage.ini
      [-] File Deleted : C:\Windows\system32\roboot.exe
      [-] File Deleted : C:\Windows\system32\Macromed\Flash\FlashPlayerTrust\Bandoo.cfg
      [#] File Deleted : C:\Windows\system32\drivers\MPCBase.sys
      [#] File Deleted : C:\Windows\system32\drivers\MPCKpt.sys
      [-] File Deleted : C:\Users\Samuel\AppData\Local\Temp\zdengine.log
      [-] File Deleted : C:\Users\Samuel\AppData\Local\Temp\ziengine.ini.log
      [-] File Deleted : C:\Users\Samuel\daemonprocess.txt
      [-] File Deleted : C:\Users\Samuel\AppData\Roaming\Bubble Dock.boostrap.log
      [-] File Deleted : C:\Users\Samuel\AppData\Roaming\Bubble Dock.installation.log
      [-] File Deleted : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk
      [-] File Deleted : C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\pr08ogrf.default\searchplugins\smod.xml
              • [ DLLs ] *****
              • [ WMI ] *****
              • [ Shortcuts ] *****


      [-] Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
      [-] Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk
      [-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      [-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
      [-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
      [-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
      [-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
      [!] Shortcut Not Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk
      [-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
      [-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
      [-] Shortcut Disinfected : C:\Users\Samuel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\chrome.lnk
              • [ Scheduled tasks ] *****


      [-] Task Deleted : AmiUpdXp
      [-] Task Deleted : Dealply
      [-] Task Deleted : globalUpdateUpdateTaskMachineCore
      [-] Task Deleted : globalUpdateUpdateTaskMachineUA
      [-] Task Deleted : GoforFilesUpdate
      [-] Task Deleted : LaunchApp
      [-] Task Deleted : Run_Bobby_Browser
      [-] Task Deleted : ShopperProJSUpd
      [-] Task Deleted : TotalSystemCare.Scanning
      [-] Task Deleted : DNS Monitoring
      [-] Task Deleted : DNS Monitoring
      [-] Task Deleted : DNSMANUELITO
      [-] Task Deleted : SMW_UpdateTask_Time_3937353038333231312d3437415a556c2a3223346c41
      [-] Task Deleted : one3025
      [-] Task Deleted : {057E0C47-7979-7A0B-7E11-0C097A0A1109}
              • [ Registry ] *****


      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Download with &Media Finder
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\IEPlugin.DLL
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
      [-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\chrome.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
      [-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\firefox.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
      [-] Value Deleted : HKLM\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Custom\iexplore.exe [{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb]
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledsDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\smu.exe
      [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
      [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
      [-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
      [-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
      [-] Key Deleted : HKLM\SOFTWARE\Classes\c
      [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{0C95ABFE-4FB6-49DB-B22F-0E1F5FC4BEEC}
      [-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\Class\{EEEFACB3-729F-4484-B66D-E7A7917BBFC1}
      [-] Key Deleted : HKCU\Software\a6d88bb53cba17
      [-] Key Deleted : HKLM\SOFTWARE\5da059a482fd494db3f252126fbc3d5b
      [-] Key Deleted : HKLM\SOFTWARE\c6a282a0-854b-4701-9d62-4ac52f7d42bd
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TBSB06155.IEToolbar
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TBSB06155.IEToolbar.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2304157
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2504091
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2542115
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3128284
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.TBSB06155
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.TBSB06155.1
      [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
      [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dednnpigldgdbpgcdpfppmlcnnbjciel
      [-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
      [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ehdmaehkiiampolokajdcelladmnopgp
      [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai
      [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pmlghpafmmnmmkjdhacccolfgnkiboco
      [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mciekghplkkgcmofonmkmlomhkamochd
      [-] Key Deleted : HKCU\Software\Classes\PepperZip
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
      [-] Key Deleted : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroappCore
      [-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroappCore.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\claro.clarodskBnd
      [-] Key Deleted : HKLM\SOFTWARE\Classes\claro.clarodskBnd.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroHlpr
      [-] Key Deleted : HKLM\SOFTWARE\Classes\claro.claroHlpr.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Conduit.Engine
      [-] Key Deleted : HKLM\SOFTWARE\Classes\gencrawler_gc.GenCrawler
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
      [-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BandObjectAttribute
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.BHO
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.DockingPanel
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBar
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.IESmartBarBandObject
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarDisplayState
      [-] Key Deleted : HKLM\SOFTWARE\Classes\IESmartBar.SmartbarMenuForm
      [-] Key Deleted : HKLM\SOFTWARE\Classes\PepperZip
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
      [-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
      [-] Key Deleted : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3F39D17D-50C7-4AC4-A63A-CDF6CDBD0C61}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{8D5CFE57-B0FD-4396-97A2-DFD0B7DA935B}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{CCC3E766-7BA9-4629-AC1A-7F4B7F362E65}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D6A5312-AB4D-41AA-8BED-0E019B87CA11}
      [-] Key Deleted : HKCU\Software\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
      [-] Key Deleted : HKCU\Software\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9E131A93-EED7-4BEB-B015-A0ADB30B5646}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EE4FC43F-84CE-4E20-88C2-2188525B47FB}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{16466D47-74A8-4928-B8B2-07CD79ABFC9F}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{26D5CC0A-7A46-4D86-AF45-2EFA320B0C54}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D13AC8F-037E-40C5-ADA6-231BA74EA2F4}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{322EDCF5-9E7D-4021-8C67-F3FFE4961A38}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E254398-828F-4D51-A39E-3F6B6D96A12C}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{442DAF0C-7EAD-48D9-ABEA-E0036470D6D5}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{58EB187D-24F8-4423-BD6C-655CE4C416BD}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6BEB066C-A791-4A21-B934-7783533FE888}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A07612DF-B1DD-484F-A1C3-36CA4CE919D2}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A76F97B2-2C56-456A-A29E-72741595C2E8}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AE9908C1-3400-4B10-9061-C6C04D96E3D2}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B19D9D96-E59C-4936-B283-8A831CDB3A53}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DC8AAABA-3F8B-4866-8B3A-D9368133A478}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E15519AE-99BE-42DD-BE60-FFC3C183F443}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{71E3A30E-9444-49D9-ABDB-B4B531D0BBA3}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A903AC15-686E-4D67-A355-86FCBE9F60DA}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CCC3E766-7BA9-4629-AC1A-7F4B7F362E65}
      [-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A45E3FA8-5048-4372-94AD-C6661671F7FC}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A45E3FA8-5048-4372-94AD-C6661671F7FC}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
      [-] Key Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C510DFFB-0AFE-484C-BA40-CED5B74C4EEF}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFF9B2DA-EF99-4B26-83CB-7058299999D8}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
      [-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}
      [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
      [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{9E131A93-EED7-4BEB-B015-A0ADB30B5646}]
      [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
      [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4DAAC69C-CBA7-45E2-9BC8-1044483D3352}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{4DAAC69C-CBA7-45E2-9BC8-1044483D3352}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{8E5025C2-8EA3-430D-80B8-A14151068A6D}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
      [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3}]
      [-] Key Deleted : HKCU\Software\1ClickDownload
      [-] Key Deleted : HKCU\Software\BABSOLUTION
      [-] Key Deleted : HKCU\Software\BI
      [-] Key Deleted : HKCU\Software\BoBrowser
      [-] Key Deleted : HKCU\Software\Check Point Software Technologies LTD
      [-] Key Deleted : HKCU\Software\CheckPoint\ISW
      [-] Key Deleted : HKCU\Software\Claro LTD
      [-] Key Deleted : HKCU\Software\Conduit
      [-] Key Deleted : HKCU\Software\DataMngr
      [-] Key Deleted : HKCU\Software\eSupport.com
      [-] Key Deleted : HKCU\Software\filescout
      [-] Key Deleted : HKCU\Software\FissaSearch
      [-] Key Deleted : HKCU\Software\GlobalUpdate
      [-] Key Deleted : HKCU\Software\GoforFiles
      [-] Key Deleted : HKCU\Software\IM
      [-] Key Deleted : HKCU\Software\Imesh
      [-] Key Deleted : HKCU\Software\ImInstaller
      [-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
      [-] Key Deleted : HKCU\Software\jZip
      [-] Key Deleted : HKCU\Software\Kozaka
      [-] Key Deleted : HKCU\Software\MediaFinder
      [-] Key Deleted : HKCU\Software\Nosibay
      [-] Key Deleted : HKCU\Software\Offerbox
      [-] Key Deleted : HKCU\Software\Optimizer Pro
      [-] Key Deleted : HKCU\Software\ShopperPro
      [-] Key Deleted : HKCU\Software\smartbarbackup
      [-] Key Deleted : HKCU\Software\smartbarlog
      [-] Key Deleted : HKCU\Software\Softonic
      [-] Key Deleted : HKCU\Software\SoftonicToolbar
      [-] Key Deleted : HKCU\Software\SpeedMaxPC
      [-] Key Deleted : HKCU\Software\StormWatchApp
      [-] Key Deleted : HKCU\Software\SweetIM
      [-] Key Deleted : HKCU\Software\Tutorials
      [-] Key Deleted : HKCU\Software\TutoTag
      [-] Key Deleted : HKCU\Software\Wajam
      [-] Key Deleted : HKCU\Software\Yahoo\Companion
      [-] Key Deleted : HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
      [-] Key Deleted : HKCU\Software\Wizzlabs
      [-] Key Deleted : HKCU\Software\MICROSOFT\IDSC
      [-] Key Deleted : HKCU\Software\AppDataLow\Software\conduitEngine
      [-] Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
      [-] Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
      [-] Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
      [-] Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
      [-] Key Deleted : HKLM\SOFTWARE\AppDataLow\SOFTWARE\Crossrider
      [-] Key Deleted : HKLM\SOFTWARE\AedgePerformanceBCN
      [-] Key Deleted : HKLM\SOFTWARE\Babylon
      [-] Key Deleted : HKLM\SOFTWARE\BabylonToolbar
      [-] Key Deleted : HKLM\SOFTWARE\Bandoo
      [-] Key Deleted : HKLM\SOFTWARE\Boxore
      [-] Key Deleted : HKLM\SOFTWARE\CheckPoint\ISW
      [-] Key Deleted : HKLM\SOFTWARE\Clara
      [-] Key Deleted : HKLM\SOFTWARE\Claro LTD
      [-] Key Deleted : HKLM\SOFTWARE\Conduit
      [-] Key Deleted : HKLM\SOFTWARE\conduitEngine
      [-] Key Deleted : HKLM\SOFTWARE\DataMngr
      [-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
      [-] Key Deleted : HKLM\SOFTWARE\GoforFiles
      [-] Key Deleted : HKLM\SOFTWARE\Iminent
      [-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
      [-] Key Deleted : HKLM\SOFTWARE\Kozaka
      [-] Key Deleted : HKLM\SOFTWARE\MPC
      [-] Key Deleted : HKLM\SOFTWARE\MyBestOffersToday
      [-] Key Deleted : HKLM\SOFTWARE\Object Browser
      [-] Key Deleted : HKLM\SOFTWARE\Offerbox
      [-] Key Deleted : HKLM\SOFTWARE\QuickSearch
      [-] Key Deleted : HKLM\SOFTWARE\Reimage
      [-] Key Deleted : HKLM\SOFTWARE\SearchModule
      [-] Key Deleted : HKLM\SOFTWARE\SearchProtect
      [-] Key Deleted : HKLM\SOFTWARE\SpeedMaxPC
      [-] Key Deleted : HKLM\SOFTWARE\SPPDCOM
      [-] Key Deleted : HKLM\SOFTWARE\SupDp
      [-] Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
      [-] Key Deleted : HKLM\SOFTWARE\SweetIM
      [-] Key Deleted : HKLM\SOFTWARE\Tarma Installer
      [-] Key Deleted : HKLM\SOFTWARE\TotalSystemCare
      [-] Key Deleted : HKLM\SOFTWARE\Tutorials
      [-] Key Deleted : HKLM\SOFTWARE\Uniblue
      [-] Key Deleted : HKLM\SOFTWARE\Vittalia
      [-] Key Deleted : HKLM\SOFTWARE\Wajam
      [-] Key Deleted : HKLM\SOFTWARE\webssearchesSoftware
      [-] Key Deleted : HKLM\SOFTWARE\DNSUnlocker
      [-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
      [-] Key Deleted : HKLM\SOFTWARE\SrpnFiles
      [-] Key Deleted : HKLM\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FB697452-8CA4-46B4-98B1-165C922A2EF3}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FLVM Player
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HandyUpdater
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search module
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\StormAlert
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TotalSystemCare
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DNSUnlocker.ns
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CleanBrowser
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mbot_fr_278_is1
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sunnyday_is1
      [-] Key Deleted : HKU\.DEFAULT\Software\filescout
      [-] Key Deleted : HKU\.DEFAULT\Software\Kozaka
      [-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\_CrossriderRegNamePlaceHolder_
      [-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Kozaka
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\MediaFinder
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\SweetIM
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Wajam
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\254796BF4AC84B64891B61C529A2E23F
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\254796BF4AC84B64891B61C529A2E23F
      [-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\254796BF4AC84B64891B61C529A2E23F
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4
      [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
      [-] Data Restored : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\Main [Start Page]
      [-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{2A05C2E5-CC9D-4EA3-BC78-76690A23FD69}]
      [-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{DE194DD8-1DC8-40B2-AF54-ABBB61256263}]
      [-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{C0573994-288B-4D21-B46D-1A05BFE23BC1}]
      [-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{EA7E9A62-0A69-4447-A5A2-D7C4EA03EC78}]
      [-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\B64A7ADF39FD41A1B9C77FFD33B1BD79
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
      [-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1B7495B6-BC98-4610-BFF2-4656071D248F}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4258490B-F6D3-426B-AF33-63D228086073}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
      [-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FB647E73-CD95-46D8-A831-957BC48E141C}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
      [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
      [#] Value Deleted : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
      [-] Data Restored : HKU\S-1-5-21-1539996050-4259157554-1269319464-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
      [-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []
      [-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]
      [-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon [Userinit]
      [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{6221FBBB-1020-47CC-825B-D4ED83CAE149} [NameServer]
      [-] Data Restored : HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{923CB87C-7A28-4D98-A79C-9758AB554BC7} [NameServer]
      [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
              • [ Web browsers ] *****


      [-] [C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\pr08ogrf.default\prefs.js] Deleted : user_pref("keyword.URL", "hxxp://www-searching.com/search.aspx?site=shdefault1&prd=smw&pid=s&shr=d&q={searchTerms}&s=G4Hzbwybl03AK,5d619f07-9361-464d-bd34-30fb35213cde,");
      [-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www-searching.com/?pid=s&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,&vp=ch&prd=set_ch
      [-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider_Data] Deleted : hxxp://www-searching.com/search.aspx?site=shyos&prd=set_ch&q={searchTerms}&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,
      [-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : dednnpigldgdbpgcdpfppmlcnnbjciel
      [-] [C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : hxxp://www-searching.com/?pid=s&s=G4Hzbwybl02BK,5eaf8d73-decf-4309-83dd-7955c96b0e57,&vp=ch&prd=set_ch


      :: "Tracing" keys deleted
      :: Winsock settings cleared


      C:\AdwCleaner\AdwCleaner[C1].txt - [47571 bytes] - [01/05/2016 18:18:13]
      C:\AdwCleaner\AdwCleaner[S1].txt - [52945 bytes] - [01/05/2016 18:14:23]

      ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [47719 bytes] ##########
      0
    4. Kokucorico
       
      FRST :

      FRST.txt = http://pjjoint.malekal.com/files.php?id=FRST_20160501_p13h9d11r5q13

      Addition.txt = http://pjjoint.malekal.com/files.php?id=20160501_z798k13b12

      Shortcut.txt = http://pjjoint.malekal.com/files.php?id=20160501_p12o12u13q9i5
      0
  2. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    1°)

    Voici la correction à effectuer avec FRST. Tu peux t'aider de cette note explicative avec des captures d'écran.

    Ouvre le bloc-notes : Touche Windows + R,
    Dans le champs "Exécuter", saisir notepad et OK.
    Copie/Colle dedans ce qui suit :


    CloseProcesses:
    HKLM-x32\...\Run: [dply_en_015020274] => [X]
    HKLM-x32\...\Run: [win_en_77] => [X]
    HKLM-x32\...\Run: [rec_fr_231] => [X]
    HKLM-x32\...\Run: [mbot_en_037050274] => [X]
    HKLM-x32\...\Run: [sun13] => [X]
    HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
    HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
    AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
    ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
    R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
    R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
    R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
    R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
    R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
    R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
    2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
    2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
    2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
    2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
    2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
    2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
    2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
    2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
    2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
    2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
    2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
    2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
    2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
    2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
    2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
    2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
    2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
    2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
    2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
    2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
    2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
    2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
    2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
    2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
    2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
    2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
    2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
    2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
    2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
    2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
    Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
    Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
    Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
    Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
    Reboot:

    Une fois, le texte collé dans le Bloc-notes,
    Menu "Fichier" puis "Enregistrer sous",
    A gauche, place toi sur le Bureau,
    Dans le champs en bas, nom du fichier mets : fixlist.txt
    Clique sur "Enregistrer", cela va créer fixlist.txt sur le Bureau.

    Relance FRST et clique sur le bouton "Corriger / Fix"
    Un redémarrage sera peut-être nécessaire ( pas obligatoire )
    Un fichier texte apparait, copie/colle le contenu ici dans un nouveau message.

    ~~

    2°)
    Fais un nettoyage Hitman Pro.

    Veuillez appuyer sur une touche pour continuer la désinfection...
    1
    1. Marwan02300 Messages postés 12 Statut Membre
       
      L'ordinateur redémarre, Merci de me consacrer un peux de votre temps.
      0
    2. Marwan02300 Messages postés 12 Statut Membre
       
      Résultats de correction de Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
      Exécuté par Sasha (2016-03-22 10:16:31) Run:1
      Exécuté depuis C:\Users\Sasha\Desktop
      Profils chargés: Sasha (Profils disponibles: Sasha & DefaultAppPool)
      Mode d'amorçage: Normal
      ==============================================

      fixlist contenu:

      CloseProcesses:
      HKLM-x32\...\Run: [dply_en_015020274] => [X]
      HKLM-x32\...\Run: [win_en_77] => [X]
      HKLM-x32\...\Run: [rec_fr_231] => [X]
      HKLM-x32\...\Run: [mbot_en_037050274] => [X]
      HKLM-x32\...\Run: [sun13] => [X]
      HKLM-x32\...\RunOnce: [DeleteOnReboot] => C:\Users\Sasha\AppData\Local\Temp\DeleteOnReboot.bat [282 2016-03-21] () <===== ATTENTION
      HKLM\...\Winlogon: [Userinit] wscript C:\WINDOWS\run.vbs,
      AutoConfigURL: [S-1-5-21-3310106637-479548021-4204304445-1000] => hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
      ManualProxies: 0hxxp://un-stop.net/wpad.dat?7ecd6f1da6ed4ac1261f390b56460ce87912994 [Pays US - 50.7.181.18]
      R2 MPCProtectService; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-21] (DotC United Inc)
      R1 bsdriver; C:\WINDOWS\system32\drivers\bsdriver.sys [34720 2016-03-21] ()
      R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-21] (DotC United Inc)
      R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-03-04] (zdengine)
      R1 {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64; C:\Windows\System32\drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys [48744 2016-03-21] (StdLib)
      R1 {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64; C:\Windows\System32\drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys [48744 2016-03-21] (StdLib)
      2016-03-22 09:06 - 2016-03-22 09:06 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\MCorp
      2016-03-22 09:01 - 2016-03-22 09:01 - 00001758 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
      2016-03-22 09:01 - 2016-03-22 09:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
      2016-03-22 08:25 - 2016-03-22 08:25 - 00204478 _____ C:\WINDOWS\ntbtlog.txt
      2016-03-21 20:08 - 2016-03-21 20:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\app
      2016-03-21 20:07 - 2016-03-04 15:13 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
      2016-03-21 20:03 - 2016-03-21 20:03 - 00000000 ____D C:\WINDOWS\system32\rok
      2016-03-21 19:48 - 2016-03-21 19:48 - 00003230 _____ C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65}
      2016-03-21 19:42 - 2016-03-21 20:06 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner
      2016-03-21 19:42 - 2016-03-21 19:42 - 00060136 ____N (DotC United Inc) C:\WINDOWS\system32\Drivers\MPCKpt.sys
      2016-03-21 19:42 - 2016-03-21 19:42 - 00002044 _____ C:\WINDOWS\System32\Tasks\otk3022
      2016-03-21 19:40 - 2016-03-22 09:00 - 00000372 _____ C:\WINDOWS\Tasks\RKRQROG1.job
      2016-03-21 19:40 - 2016-03-22 09:00 - 00000360 ____H C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job
      2016-03-21 19:40 - 2016-03-21 19:40 - 00003436 _____ C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU
      2016-03-21 19:40 - 2016-03-21 19:40 - 00002938 _____ C:\WINDOWS\System32\Tasks\RKRQROG1
      2016-03-21 19:40 - 2016-03-21 19:40 - 00000000 ____D C:\ProgramData\19a87fa1ec024bbcbb41931263354405
      2016-03-21 19:30 - 2016-03-21 19:30 - 00003264 _____ C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30}
      2016-03-21 19:29 - 2016-03-21 19:29 - 00000884 _____ C:\WINDOWS\SysWOW64\${LOGFILE}
      2016-03-21 19:28 - 2016-03-21 19:24 - 00000967 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
      2016-03-21 19:28 - 2016-03-21 08:36 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys
      2016-03-21 19:28 - 2016-03-21 07:14 - 00048744 _____ (StdLib) C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys
      2016-03-21 19:25 - 2016-03-21 19:51 - 00000000 ____D C:\Program Files\Otem
      2016-03-21 19:25 - 2016-03-21 19:25 - 00034720 _____ () C:\WINDOWS\system32\Drivers\bsdriver.sys
      2016-03-21 19:25 - 2016-03-21 19:25 - 00003404 _____ C:\WINDOWS\System32\Tasks\Eezeajoj
      2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Roaming\Ywihr
      2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\LocalLow\Company
      2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\Users\Sasha\AppData\Local\Tempfolder
      2016-03-21 19:25 - 2016-03-21 19:25 - 00000000 ____D C:\uninst
      2016-03-21 16:22 - 2016-03-21 19:25 - 00065856 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\cherimoya.sys
      2016-03-10 17:10 - 2016-03-10 17:10 - 00000000 ____D C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7}
      Task: {04983C62-9950-4550-B7C3-590D4E0BDD39} - System32\Tasks\otk3022 => C:\Program Files (x86)\QuickSearch\otk3022.exe <==== ATTENTION
      Task: {3DB5B029-F82B-461C-9CAC-024A35BA2F1A} - System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => pcalua.exe -a "C:\Program Files (x86)\Max Driver Updater\uninstaller.exe"
      Task: {D535F777-E3DD-4170-AB3A-C4258DF2F55C} - System32\Tasks\Eezeajoj => C:\PROGRA~1\Otem\Onuctaal.bat
      Task: {C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D} - System32\Tasks\CWQWFWDTGJCXMCQU => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
      Task: C:\WINDOWS\Tasks\RKRQROG1.job => C:\ProgramData\TomorrowGames\TomorrowGames.exe <==== ATTENTION
      Task: C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => C:\ProgramData\Service1104\Service1104.exe <==== ATTENTION
      Reboot:


      Processus fermé avec succès.
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\dply_en_015020274 => valeur supprimé(es) avec succès
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 => valeur supprimé(es) avec succès
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\rec_fr_231 => valeur supprimé(es) avec succès
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mbot_en_037050274 => valeur supprimé(es) avec succès
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sun13 => valeur supprimé(es) avec succès
      HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\DeleteOnReboot => valeur supprimé(es) avec succès
      HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => valeur restauré(es) avec succès
      HKU\S-1-5-21-3310106637-479548021-4204304445-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => valeur supprimé(es) avec succès
      HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => valeur supprimé(es) avec succès
      MPCProtectService => service non trouvé(e).
      bsdriver => Impossible d'arrêter le service.
      bsdriver => service impossible à supprimer
      MPCKpt => service supprimé(es) avec succès
      zdwfp => Impossible d'arrêter le service.
      zdwfp => service supprimé(es) avec succès
      {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => Impossible d'arrêter le service.
      {2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64 => service supprimé(es) avec succès
      {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => Impossible d'arrêter le service.
      {75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64 => service supprimé(es) avec succès
      C:\Users\Sasha\AppData\Roaming\MCorp => déplacé(es) avec succès
      "C:\Users\Public\Desktop\MPC Cleaner.lnk" => non trouvé(e).
      "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC" => non trouvé(e).
      C:\WINDOWS\ntbtlog.txt => déplacé(es) avec succès
      C:\Users\Sasha\AppData\Local\app => déplacé(es) avec succès
      C:\WINDOWS\system32\Drivers\zdwfp64.sys => déplacé(es) avec succès
      C:\WINDOWS\system32\rok => déplacé(es) avec succès
      C:\WINDOWS\System32\Tasks\{EEAAAA64-9C78-4898-9868-EE4B8356BF65} => déplacé(es) avec succès
      C:\Program Files (x86)\MPC Cleaner => déplacé(es) avec succès
      "C:\WINDOWS\system32\Drivers\MPCKpt.sys" => non trouvé(e).
      C:\WINDOWS\System32\Tasks\otk3022 => déplacé(es) avec succès
      C:\WINDOWS\Tasks\RKRQROG1.job => déplacé(es) avec succès
      C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => déplacé(es) avec succès
      C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => déplacé(es) avec succès
      C:\WINDOWS\System32\Tasks\RKRQROG1 => déplacé(es) avec succès
      C:\ProgramData\19a87fa1ec024bbcbb41931263354405 => déplacé(es) avec succès
      C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => déplacé(es) avec succès
      C:\WINDOWS\SysWOW64\${LOGFILE} => déplacé(es) avec succès
      C:\WINDOWS\system32\Drivers\etc\hp.bak => déplacé(es) avec succès
      C:\WINDOWS\system32\Drivers\{2f8bccac-ff2b-40b5-a1a6-2a3fa53cfc17}Gw64.sys => déplacé(es) avec succès
      C:\WINDOWS\system32\Drivers\{75336b65-0e70-47b2-a4b8-4277eb35fc99}Gw64.sys => déplacé(es) avec succès
      C:\Program Files\Otem => déplacé(es) avec succès
      Impossible de déplacer "C:\WINDOWS\system32\Drivers\bsdriver.sys" => Planifié pour déplacement au redémarrage.
      C:\WINDOWS\System32\Tasks\Eezeajoj => déplacé(es) avec succès

      "C:\Users\Sasha\AppData\Roaming\Ywihr" dossier déplacer:

      Impossible de déplacer "C:\Users\Sasha\AppData\Roaming\Ywihr" => Planifié pour déplacement au redémarrage.

      C:\Users\Sasha\AppData\LocalLow\Company => déplacé(es) avec succès
      C:\Users\Sasha\AppData\Local\Tempfolder => déplacé(es) avec succès
      C:\uninst => déplacé(es) avec succès
      Impossible de déplacer "C:\WINDOWS\system32\Drivers\cherimoya.sys" => Planifié pour déplacement au redémarrage.
      C:\Users\Sasha\AppData\Local\{D2F6EE5A-12A7-48DD-8F55-3F284267DCB7} => déplacé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04983C62-9950-4550-B7C3-590D4E0BDD39}" => clé supprimé(es) avec succès
      C:\WINDOWS\System32\Tasks\otk3022 => non trouvé(e).
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\otk3022" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DB5B029-F82B-461C-9CAC-024A35BA2F1A}" => clé supprimé(es) avec succès
      C:\WINDOWS\System32\Tasks\{6B80507A-5A1B-41D4-8D97-530F228FEA30} => non trouvé(e).
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6B80507A-5A1B-41D4-8D97-530F228FEA30}" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D535F777-E3DD-4170-AB3A-C4258DF2F55C}" => clé supprimé(es) avec succès
      C:\WINDOWS\System32\Tasks\Eezeajoj => non trouvé(e).
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Eezeajoj" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7EA3FEE-6351-4D7A-B763-8E3C2DE16A4D}" => clé supprimé(es) avec succès
      C:\WINDOWS\System32\Tasks\CWQWFWDTGJCXMCQU => non trouvé(e).
      "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CWQWFWDTGJCXMCQU" => clé supprimé(es) avec succès
      C:\WINDOWS\Tasks\RKRQROG1.job => non trouvé(e).
      C:\WINDOWS\Tasks\CWQWFWDTGJCXMCQU.job => non trouvé(e).

      Résultats du déplacement planifié des fichiers (Mode d'amorçage: Normal) (Date&Heure: 2016-03-22 10:19:29)

      "C:\WINDOWS\system32\Drivers\bsdriver.sys" => Impossible de déplacer
      C:\Users\Sasha\AppData\Roaming\Ywihr => a été déplacé(e) avec succès
      "C:\WINDOWS\system32\Drivers\cherimoya.sys" => Impossible de déplacer

      Fin de Fixlog 10:19:29

      0
    3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712 > Marwan02300 Messages postés 12 Statut Membre
       
      ok fais l'étape 2.
      0
    4. Marwan02300 Messages postés 12 Statut Membre > Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention  
       
      90%
      0
    5. Marwan02300 Messages postés 12 Statut Membre
       
      c'est fait
      0