Pup.optional legacy
Solved
Heimm
Posted messages
29
Status
Member
-
bazfile Posted messages 58487 Registration date Status Moderator Last intervention -
bazfile Posted messages 58487 Registration date Status Moderator Last intervention -
Hello,
For about a year now, this virus cuts off the internet on my PC. I remove it with AdwCleaner, but it has the annoying tendency to delete all my background applications except for the antivirus.
So I also have to restart my PC. I have searched many times on the internet for methods to get rid of it, but I often find the answer that it is not necessarily a virus.
I don't understand much about this part of computing, which is why I'm asking for help.
Here is today's AdwCleaner report. It seems to be related to Google Chrome:
Thank you in advance for your help
# -------------------------------
# Malwarebytes AdwCleaner 8.0.9.1
# -------------------------------
# Build: 01-20-2021
# Database: 2021-01-11.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 12-31-2021
# Duration: 00:00:02
# OS: Windows 10 Pro
# Cleaned: 1
# Failed: 0
No malicious services cleaned.
No malicious folders cleaned.
No malicious files cleaned.
No malicious DLLs cleaned.
No malicious WMI cleaned.
No malicious shortcuts cleaned.
No malicious tasks cleaned.
No malicious registry entries cleaned.
Deleted gebbadcnkcgcfgpbmcdleckpejgopimf
No malicious Chromium URLs cleaned.
No malicious Firefox entries cleaned.
No malicious Firefox URLs cleaned.
No malicious hosts file entries cleaned.
No Preinstalled Software cleaned.
For about a year now, this virus cuts off the internet on my PC. I remove it with AdwCleaner, but it has the annoying tendency to delete all my background applications except for the antivirus.
So I also have to restart my PC. I have searched many times on the internet for methods to get rid of it, but I often find the answer that it is not necessarily a virus.
I don't understand much about this part of computing, which is why I'm asking for help.
Here is today's AdwCleaner report. It seems to be related to Google Chrome:
Thank you in advance for your help
# -------------------------------
# Malwarebytes AdwCleaner 8.0.9.1
# -------------------------------
# Build: 01-20-2021
# Database: 2021-01-11.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 12-31-2021
# Duration: 00:00:02
# OS: Windows 10 Pro
# Cleaned: 1
# Failed: 0
- [ Services ] *****
No malicious services cleaned.
- [ Folders ] *****
No malicious folders cleaned.
- [ Files ] *****
No malicious files cleaned.
- [ DLL ] *****
No malicious DLLs cleaned.
- [ WMI ] *****
No malicious WMI cleaned.
- [ Shortcuts ] *****
No malicious shortcuts cleaned.
- [ Tasks ] *****
No malicious tasks cleaned.
- [ Registry ] *****
No malicious registry entries cleaned.
- [ Chromium (and derivatives) ] *****
Deleted gebbadcnkcgcfgpbmcdleckpejgopimf
- [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
- [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
- [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
- [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
- [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
-
[+] Delete Tracing Keys
[+] Reset Winsock-
AdwCleaner[S00].txt - [1568 octets] - [03/02/2021 09:10:12]
AdwCleaner[C00].txt - [1700 octets] - [03/02/2021 09:10:41]
AdwCleaner[S01].txt - [1627 octets] - [09/02/2021 20:54:26]
AdwCleaner[C01].txt - [1757 octets] - [09/02/2021 20:55:50]
AdwCleaner[S02].txt - [2219 octets] - [10/06/2021 18:28:43]
AdwCleaner[C02].txt - [2259 octets] - [10/06/2021 18:28:52]
AdwCleaner[S03].txt - [1799 octets] - [11/06/2021 08:12:51]
AdwCleaner[C03].txt - [1969 octets] - [11/06/2021 08:13:06]
AdwCleaner[S04].txt - [1982 octets] - [05/07/2021 12:59:44]
AdwCleaner[C04].txt - [2132 octets] - [05/07/2021 12:59:52]
AdwCleaner[S05].txt - [2104 octets] - [17/07/2021 19:13:36]
AdwCleaner[C05].txt - [2254 octets] - [17/07/2021 19:13:50]
AdwCleaner[S06].txt - [2226 octets] - [06/08/2021 10:03:05]
AdwCleaner[C06].txt - [2376 octets] - [06/08/2021 10:03:10]
AdwCleaner[S07].txt - [2348 octets] - [25/08/2021 14:21:40]
AdwCleaner[C07].txt - [2498 octets] - [25/08/2021 14:21:49]
AdwCleaner[S08].txt - [2470 octets] - [30/09/2021 18:06:41]
AdwCleaner[C08].txt - [2620 octets] - [30/09/2021 18:06:47]
AdwCleaner[S09].txt - [2531 octets] - [05/10/2021 12:27:01]
AdwCleaner[C09].txt - [2701 octets] - [05/10/2021 12:27:17]
AdwCleaner[S10].txt - [2653 octets] - [11/10/2021 18:33:32]
AdwCleaner[C10].txt - [2823 octets] - [11/10/2021 18:33:40]
AdwCleaner[S11].txt - [2775 octets] - [14/10/2021 19:59:39]
AdwCleaner[C11].txt - [2945 octets] - [14/10/2021 20:00:26]
AdwCleaner[S12].txt - [2897 octets] - [18/10/2021 23:11:56]
AdwCleaner[C12].txt - [3067 octets] - [18/10/2021 23:12:44]
AdwCleaner[S13].txt - [3080 octets] - [01/11/2021 16:48:47]
AdwCleaner[C13].txt - [3230 octets] - [01/11/2021 16:49:19]
AdwCleaner[S14].txt - [3141 octets] - [02/11/2021 21:05:46]
AdwCleaner[C14].txt - [3311 octets] - [02/11/2021 21:06:15]
AdwCleaner[S15].txt - [3263 octets] - [18/11/2021 10:19:54]
AdwCleaner[C15].txt - [3433 octets] - [18/11/2021 10:20:18]
AdwCleaner[S16].txt - [3385 octets] - [21/11/2021 12:53:52]
AdwCleaner[C16].txt - [3555 octets] - [21/11/2021 12:54:32]
AdwCleaner[S17].txt - [3507 octets] - [01/12/2021 17:48:31]
AdwCleaner[C17].txt - [3677 octets] - [01/12/2021 17:48:50]
AdwCleaner[S18].txt - [3629 octets] - [15/12/2021 17:52:57]
AdwCleaner[C18].txt - [3799 octets] - [15/12/2021 17:53:02]
AdwCleaner[S19].txt - [3751 octets] - [31/12/2021 10:15:44]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C19].txt ##########
-
-
7 answers
-
Hello,
An optional pup is adware, I doubt it is the one cutting your connection.
Download FRST once downloaded save it to your desktop, then right-click on FRST and choose Run as administrator, you will see this:
Click on ScanBe sure to wait for the messages indicating that the scan is complete
At the end of the scan, you will have two text files on the desktop FRST and Addition, .
Then send the FRST and ADDITION reports to CJOINT see THIS TUTORIAL then give the two links generated by Cjoint in your reply.
--
bazfile
Moderator/Security Contributor.
A hello, a response, a thank you are always appreciated. -
Thank you for your very quick response
Indeed, you are probably right, I just ran AdwCleaner again and it keeps detecting Pup.Optional Legacy and the internet is working, so I don’t understand my problem
1st link FRST:
https://www.cjoint.com/c/KLFniUXnE7L
2nd link Addition:
https://www.cjoint.com/c/KLFnnsWtSRL-
You uninstalled Avast and there are many remnants in the form of scheduled tasks, complete the uninstallation of Avast with this Avast utility.
According to the FRST report, your motherboard is a MSI B450M BAZOOKA V2. If this is indeed your motherboard, you should update the chipset and LAN drivers, see this page.
There is no infection, just a few superfluous items; if you want to remove them, follow these steps:
Uninstall Wondershare Helper Compact, it is adware.
Procedure to follow in the order indicated:
1- Open FRST as administrator by right-clicking on FRST and selecting run as administrator
2 - Copy the entire script that is in the box below:Start::
CreateRestorePoint:
CloseProcesses:
Edge Extension: (No name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
HKU\S-1-5-21-1393417132-32867662-729699705-1001\...\Run: [Universal Control] => B:\Programme\Audiobox\Universal Control\Universal Control.exe /startup (No file)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No file)
FF Plugin-x32: 3ds.com/ComposerPlayerWebPlugin_x86_64 -> \\devsilo1\builds\sw2020_sp04\sw\Release\x64\d200715.002.V37.final\composer\Bin\npcomposerplayerwebplugin.dll [No file]
S2 RemoteSolverDispatcher; "C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation (2)\binCFW\remotesolverdispatcherservice.exe" "SOFTWARE\SRAC\COSMOS_FloWorks 2020" [X]
S4 IUFileFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [X]
S3 IUProcessFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [X]
S3 IURegistryFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [X]
S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare)
GroupPolicy: Restriction ?
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction
HKLM\SOFTWARE\Policies\Google: Restriction
AS: Norton Security (Enabled - Up to date) {589C5C7B-A77A-1B8E-C99B-B02AE9B836F0}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]
Hosts:
cmd: netsh advfirewall reset
EmptyTemp:
End::
3- Once the script is copied, click on Fix, FRST will automatically take the script from the clipboard.
Let the correction take place. Once it is done, you will be prompted to restart your PC; do so as soon as prompted, see below.
Then, once your computer has restarted:
4- You will have a Fixlog file on your desktop, then send these reports to https://www.cjoint.com/ see this tutorial, then provide the link generated by Cjoint in your next message.
-
-
Glad to hear that. It’s really very kind of you to help me like this. Especially during the holiday season :)
I've done everything you told me, it's crazy that Avast is still like this on my PC.
It seems Cjoint isn't working today, so I used TransferNow instead:
https://www.transfernow.net/en/dltransfer?utm_source=20220101td78kWls -
Hi,
The problem occurred again today. The internet stopped working.
As usual, I ran AdwCleaner, which found PUP.optional legacy, shut down Chrome and all background apps. Then it started working again.
I can't pinpoint the issue; could it be coming from Chrome or one of its extensions? -
I reset Chrome, but despite that, the problem came back today:
# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-11-18.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 01-03-2022
# Duration: 00:00:00
# OS: Windows 10 Pro
# Cleaned: 1
# Failed: 0- [ Services ] *****
No malicious services cleaned.- [ Folders ] *****
No malicious folders cleaned.- [ Files ] *****
No malicious files cleaned.- [ DLL ] *****
No malicious DLLs cleaned.- [ WMI ] *****
No malicious WMI cleaned.- [ Shortcuts ] *****
No malicious shortcuts cleaned.- [ Tasks ] *****
No malicious tasks cleaned.- [ Registry ] *****
No malicious registry entries cleaned.- [ Chromium (and derivatives) ] *****
Deleted gebbadcnkcgcfgpbmcdleckpejgopimf- [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.- [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.- [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.- [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.- [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
[+] Delete Tracing Keys
[+] Reset Winsock
AdwCleaner[S00].txt - [1568 bytes] - [03/02/2021 09:10:12]
AdwCleaner[C00].txt - [1700 bytes] - [03/02/2021 09:10:41]
AdwCleaner[S01].txt - [1627 bytes] - [09/02/2021 20:54:26]
AdwCleaner[C01].txt - [1757 bytes] - [09/02/2021 20:55:50]
AdwCleaner[S02].txt - [2219 bytes] - [10/06/2021 18:28:43]
AdwCleaner[C02].txt - [2259 bytes] - [10/06/2021 18:28:52]
AdwCleaner[S03].txt - [1799 bytes] - [11/06/2021 08:12:51]
AdwCleaner[C03].txt - [1969 bytes] - [11/06/2021 08:13:06]
AdwCleaner[S04].txt - [1982 bytes] - [05/07/2021 12:59:44]
AdwCleaner[C04].txt - [2132 bytes] - [05/07/2021 12:59:52]
AdwCleaner[S05].txt - [2104 bytes] - [17/07/2021 19:13:36]
AdwCleaner[C05].txt - [2254 bytes] - [17/07/2021 19:13:50]
AdwCleaner[S06].txt - [2226 bytes] - [06/08/2021 10:03:05]
AdwCleaner[C06].txt - [2376 bytes] - [06/08/2021 10:03:10]
AdwCleaner[S07].txt - [2348 bytes] - [25/08/2021 14:21:40]
AdwCleaner[C07].txt - [2498 bytes] - [25/08/2021 14:21:49]
AdwCleaner[S08].txt - [2470 bytes] - [30/09/2021 18:06:41]
AdwCleaner[C08].txt - [2620 bytes] - [30/09/2021 18:06:47]
AdwCleaner[S09].txt - [2531 bytes] - [05/10/2021 12:27:01]
AdwCleaner[C09].txt - [2701 bytes] - [05/10/2021 12:27:17]
AdwCleaner[S10].txt - [2653 bytes] - [11/10/2021 18:33:32]
AdwCleaner[C10].txt - [2823 bytes] - [11/10/2021 18:33:40]
AdwCleaner[S11].txt - [2775 bytes] - [14/10/2021 19:59:39]
AdwCleaner[C11].txt - [2945 bytes] - [14/10/2021 20:00:26]
AdwCleaner[S12].txt - [2897 bytes] - [18/10/2021 23:11:56]
AdwCleaner[C12].txt - [3067 bytes] - [18/10/2021 23:12:44]
AdwCleaner[S13].txt - [3080 bytes] - [01/11/2021 16:48:47]
AdwCleaner[C13].txt - [3230 bytes] - [01/11/2021 16:49:19]
AdwCleaner[S14].txt - [3141 bytes] - [02/11/2021 21:05:46]
AdwCleaner[C14].txt - [3311 bytes] - [02/11/2021 21:06:15]
AdwCleaner[S15].txt - [3263 bytes] - [18/11/2021 10:19:54]
AdwCleaner[C15].txt - [3433 bytes] - [18/11/2021 10:20:18]
AdwCleaner[S16].txt - [3385 bytes] - [21/11/2021 12:53:52]
AdwCleaner[C16].txt - [3555 bytes] - [21/11/2021 12:54:32]
AdwCleaner[S17].txt - [3507 bytes] - [01/12/2021 17:48:31]
AdwCleaner[C17].txt - [3677 bytes] - [01/12/2021 17:48:50]
AdwCleaner[S18].txt - [3629 bytes] - [15/12/2021 17:52:57]
AdwCleaner[C18].txt - [3799 bytes] - [15/12/2021 17:53:02]
AdwCleaner[S19].txt - [3751 bytes] - [31/12/2021 10:15:44]
AdwCleaner[C19].txt - [3921 bytes] - [31/12/2021 10:16:08]
AdwCleaner[S20].txt - [3873 bytes] - [31/12/2021 14:11:33]
AdwCleaner[S21].txt - [3934 bytes] - [02/01/2022 14:53:58]
AdwCleaner[C21].txt - [4104 bytes] - [02/01/2022 14:54:01]
AdwCleaner[S22].txt - [4056 bytes] - [03/01/2022 18:50:44]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C22].txt ##########-
What AdwCleaner detects is an extension (gebbadcnkcgcfgpbmcdleckpejgopimf), which is normally that of the Cacaoweb software, but I don't see it on your PC, at least not in your FRST report.
As I already mentioned above, I don't think what AdwCleaner finds is the cause of your internet disconnection issue, but do another FRST analysis and provide the reports.
How are you connected to the internet? Directly connected to the box via Ethernet or via power line adapter (CPL)?
-
Maybe it's the fact that adwcleaner reboots chrome that makes it work again?
But I understand what you say. Indeed, I have used cacaoweb in the past but it's been a while.
When you search google with "gebbadcnkcgcfgpbmcdleckpejgopimf", it seems that quite a few people have experienced this. Some have used ZHPDiag
I use a powerline adapter, I'm far from my router, but I can still get a little signal.
And here it is:
https://www.cjoint.com/c/LAdtgDt1pz5
https://www.cjoint.com/c/LAdthgVdub5-
Although you uninstalled Avast, there are still scheduled tasks from Avast (Avast gaming mode).
If you wish, you can delete them using the FRST script at the end of this message.
There is no trace of the PUP that ADWcleaner finds, your PC is not infected, I think you can run Adwcleaner as many times as you want it will always find this PUP which must come from an obsolete entry and which I believe has nothing to do with your internet cutouts which are more likely due either to your powerline connection or to the VPNs you are using with a VPN one can have quite a few disconnections, restart your Livebox and re-pair your powerline adapters to see if that improves things, that's all for me because your problem is a network problem, not an infectious one, for network issues you can ask your question here https://forums.commentcamarche.net/forum/reseau-5/newScript to remove the remnants of Avast.
Start::
CreateRestorePoint:
CloseProcesses:
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\AMDAutoUpdate" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Antivirus Emergency Update" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerClean" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\EPSON XP-432 435 Series Update {1E508709-EA35-408D-B869-1DE335DD9888}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\EPSON XP-432 435 Series Update {951F5714-43F3-4D03-8C49-D03646B29881}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\EPSON XP-432 435 Series Update {D17B0FCD-37D2-42B8-B81A-D90FE408D136}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore1d6b3e6aabe82d9" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\MSIGH_Host" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\MSILEDKeeper_Host" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\MSISW_Host" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(18): schtasks.exe -> /Change /TN "\MSI_Toast_Server" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(19): schtasks.exe -> /Change /TN "\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(20): schtasks.exe -> /Change /TN "\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(21): schtasks.exe -> /Change /TN "\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(22): schtasks.exe -> /Change /TN "\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(23): schtasks.exe -> /Change /TN "\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(24): schtasks.exe -> /Change /TN "\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(25): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(26): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(27): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(28): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(29): schtasks.exe -> /Change /TN "\OneDrive Per-Machine Standalone Update Task" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(30): schtasks.exe -> /Change /TN "\Uninstaller_SkipUac_heimd" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(31): schtasks.exe -> /Change /TN "\User_Feed_Synchronization-{49318FD2-0898-439C-91A3-75FAB4023FA3}" /ENABLE
Task: {ED69CC4C-4626-4C9E-85BA-0DFDD397A585} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(32): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
C:\Program Files\Common Files\Avast Software
C:\ProgramData\AVAST Software
End::
-
-
I wrote the script and I will do what you advised me for my network tomorrow.
Once again, thank you very much bazfile for your help and your time, it's really great.
Take care.