System-checker

Résolu/Fermé
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019 - 8 avril 2015 à 10:00
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 11 mai 2015 à 18:47
Bonjour.
Mon Internet est envahi de publicité à cause de System-checker que je ne parviens pas à désinstaller de mon PC.
Pourriez-vous svp me dire comment faire pour supprimer ce system-checker de mon PC.
C'est un véritable fléau !!!
Merci par avance de bien vouloir m'aider.

28 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
8 avril 2015 à 10:14
Salut,

Tu as installé des adwares et programmes parasites sur ton PC qui ouvrent des publicités et ralentissent l'ordinateur et les navigateurs WEB.
Voici la procédure à suivre pour les supprimer :

Commence par ceci :

Suis le tutorial AdwCleaner https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= ( d'Xplode )
Télécharge le sur ton bureau ou dossier de téléchargement.
Lance AdwCleaner, clique sur [Scanner].
L'analyse peux durer plusieurs minutes, patiente.
Une fois le scan terminé, ne décoche rien, clique sur [Nettoyer]

Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.

Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt


puis :

Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
  • FRST.txt
  • Shortcut.txt
  • Additionnal.txt


Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.


0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
Modifié par MarieAnge06111956 le 17/04/2015 à 09:13
Bonjour.

Désolée, je ne trouve que ce rapport dans mon bloc note :

# AdwCleaner v4.201 - Logfile created 17/04/2015 at 08:23:37
# Updated 08/04/2015 by Xplode
# Database : 2015-04-15.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4.201(6).exe
# Option : Cleaning


*


*
          • [ Services ] *****


Service Deleted : syschkrm
Service Deleted : syschkrs
[#] Service Deleted : lwnfd_1_10_0_14


*


*
          • [ Files / Folders ] *****


[!] Folder Deleted : C:\Program Files\System-Checker
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp


*


*
          • [ Scheduled tasks ] *****
          • [ Shortcuts ] *****
          • [ Registry ] *****


Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] -
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] -


*


*
          • [ Web browsers ] *****


-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v37.0.1 (x86 fr)

[4aydoaa6.default-1429074027875\prefs.js] - Line Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);

-\\ Google Chrome v40.0.2214.91


-\\ Opera v27.0.1689.76


*


*


AdwCleaner[R0].txt - [93393 bytes] - [14/04/2015 07:55:45]
AdwCleaner[R1].txt - [74274 bytes] - [14/04/2015 12:18:06]
AdwCleaner[R2].txt - [1969 bytes] - [15/04/2015 17:01:08]
AdwCleaner[R3].txt - [1969 bytes] - [15/04/2015 17:01:22]
AdwCleaner[R4].txt - [7164 bytes] - [15/04/2015 17:46:26]
AdwCleaner[R5].txt - [2152 bytes] - [17/04/2015 08:21:38]
AdwCleaner[S0].txt - [52493 bytes] - [14/04/2015 08:03:32]
AdwCleaner[S1].txt - [15103 bytes] - [14/04/2015 12:26:55]
AdwCleaner[S2].txt - [5091 bytes] - [16/04/2015 21:52:36]
AdwCleaner[S3].txt - [1884 bytes] - [17/04/2015 08:23:37]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1943 bytes] ##########

De plus, depuis que j'ai utilisé AdwCleaner, cette fenêtre s'ouvre à chaque démarrage de mon PC et je ne peux plus la fermer :

Microsoft Visual C++ Runtime Library.

Peux-tu m'aider stp, je n'en peux plus.
Merci.
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
17 avril 2015 à 09:04
Passe à FRST.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019 > Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020
17 avril 2015 à 09:22
Bonjour.

Désolée, je pense seulement à faire recherche, et j'ai retrouvé les rapports suivants :

# AdwCleaner v4.201 - Logfile created 15/04/2015 at 17:01:08
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4-201_fr_430277.exe
# Option : Scan
          • [ Services ] *****


Service Found : syschkrm
Service Found : syschkrs
          • [ Files / Folders ] *****


File Found : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\databases\chrome-extension_bkfoggbmaeddfflfppchdlbakjilclbp_0
File Found : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp
Folder Found : C:\Program Files\System-Checker
          • [ Scheduled tasks ] *****
          • [ Shortcuts ] *****
          • [ Registry ] *****


Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] -
Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] -
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [DefaultConnectionSettings]
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [SavedLegacySettings]
          • [ Web browsers ] *****


-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v37.0.1 (x86 fr)


-\\ Google Chrome v40.0.2214.91


-\\ Opera v27.0.1689.76


AdwCleaner[R0].txt - [93393 bytes] - [14/04/2015 07:55:45]
AdwCleaner[R1].txt - [74274 bytes] - [14/04/2015 12:18:06]
AdwCleaner[R2].txt - [1652 bytes] - [15/04/2015 17:01:08]
AdwCleaner[R3].txt - [1501 bytes] - [15/04/2015 17:01:22]
AdwCleaner[S0].txt - [52493 bytes] - [14/04/2015 08:03:32]
AdwCleaner[S1].txt - [13364 bytes] - [14/04/2015 12:26:55]

########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [1890 bytes] ##########

# AdwCleaner v4.201 - Logfile created 15/04/2015 at 17:46:26
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4-201_fr_430277.exe
# Option : Scan
          • [ Services ] *****


Service Found : syschkrm
Service Found : syschkrs
          • [ Files / Folders ] *****


File Found : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\databases\chrome-extension_bkfoggbmaeddfflfppchdlbakjilclbp_0
File Found : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp
Folder Found : C:\Program Files\System-Checker
          • [ Scheduled tasks ] *****
          • [ Shortcuts ] *****
          • [ Registry ] *****


Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] -
Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] -
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [DefaultConnectionSettings]
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [SavedLegacySettings]
          • [ Web browsers ] *****


-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v37.0.1 (x86 fr)


-\\ Google Chrome v40.0.2214.91


-\\ Opera v27.0.1689.76


AdwCleaner[R0].txt - [93393 bytes] - [14/04/2015 07:55:45]
AdwCleaner[R1].txt - [74274 bytes] - [14/04/2015 12:18:06]
AdwCleaner[R2].txt - [1969 bytes] - [15/04/2015 17:01:08]
AdwCleaner[R3].txt - [1969 bytes] - [15/04/2015 17:01:22]
AdwCleaner[R4].txt - [1770 bytes] - [15/04/2015 17:46:26]
AdwCleaner[S0].txt - [52493 bytes] - [14/04/2015 08:03:32]
AdwCleaner[S1].txt - [15103 bytes] - [14/04/2015 12:26:55]

########## EOF - C:\AdwCleaner\AdwCleaner[R4].txt - [1949 bytes] ##########
# AdwCleaner v4.201 - Logfile created 16/04/2015 at 21:49:39
# Updated 08/04/2015 by Xplode
# Database : 2015-04-15.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4.201(6).exe
# Option : Scan
          • [ Services ] *****


Service Found : ReimageRealTimeProtector
Service Found : syschkrm
Service Found : syschkrs
Service Found : lwnfd_1_10_0_14
          • [ Files / Folders ] *****


File Found : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp
File Found : C:\WINDOWS\Reimage.ini
File Found : C:\WINDOWS\system32\drivers\lwnfd_1_10_0_14.sys
Folder Found : C:\Documents and Settings\All Users\Application Data\90783ace0000495f
Folder Found : C:\Documents and Settings\All Users\Application Data\ab33731f00000533
Folder Found : C:\Documents and Settings\All Users\Application Data\Reimage Protector
Folder Found : C:\Documents and Settings\All Users\Application Data\SparkTrust
Folder Found : C:\Documents and Settings\All Users\Menu Démarrer\Programmes\reimage repair
Folder Found : C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\a6tl2k7a.default-1425564319453\Extensions\{23BA1545-A651-4EDB-9568-45BE0CBAE475}
Folder Found : C:\Documents and Settings\PC\Application Data\SparkTrust
Folder Found : C:\Documents and Settings\PC\Application Data\VOPackage
Folder Found : C:\Program Files\Accelerer PC
Folder Found : C:\Program Files\baidu
Folder Found : C:\Program Files\Reimage
Folder Found : C:\Program Files\System-Checker
Folder Found : C:\rei
Folder Found : C:\ReimageUndo
          • [ Scheduled tasks ] *****


Task Found : Reimage Reminder
Task Found : ReimageUpdater
          • [ Shortcuts ] *****
          • [ Registry ] *****


Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] -
Data Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] -
Key Found : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKCU\Software\Appscion
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Key Found : HKCU\Software\Mozilla\Extends
Key Found : HKCU\Software\Reimage
Key Found : HKCU\Software\Super Optimizer
Key Found : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Found : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Found : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Found : HKLM\SOFTWARE\4d3de3bf-6c17-8a52-7d7f-d23011795cc8
Key Found : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Key Found : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
Key Found : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Key Found : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
Key Found : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Reimage Repair
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Reimage.exe
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair
Key Found : HKLM\SOFTWARE\Reimage
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [DefaultConnectionSettings]
Value Found : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [SavedLegacySettings]
          • [ Web browsers ] *****


-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v37.0.1 (x86 fr)

[4aydoaa6.default-1429074027875] - Line Found : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");
[4aydoaa6.default-1429074027875] - Line Found : user_pref("extensions.quick_start.enable_search1", false);
[4aydoaa6.default-1429074027875] - Line Found : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);

-\\ Google Chrome v40.0.2214.91


-\\ Opera v27.0.1689.76


AdwCleaner[R0].txt - [93393 bytes] - [14/04/2015 07:55:45]
AdwCleaner[R1].txt - [74274 bytes] - [14/04/2015 12:18:06]
AdwCleaner[R2].txt - [1969 bytes] - [15/04/2015 17:01:08]
AdwCleaner[R3].txt - [1969 bytes] - [15/04/2015 17:01:22]
AdwCleaner[R4].txt - [6906 bytes] - [15/04/2015 17:46:26]
AdwCleaner[S0].txt - [52493 bytes] - [14/04/2015 08:03:32]
AdwCleaner[S1].txt - [15103 bytes] - [14/04/2015 12:26:55]

########## EOF - C:\AdwCleaner\AdwCleaner[R4].txt - [7085 bytes] ##########

# AdwCleaner v4.201 - Logfile created 14/04/2015 at 08:03:32
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4.201.exe
# Option : Cleaning
          • [ Services ] *****


[#] Service Deleted : globalUpdate
Service Deleted : globalUpdatem
[#] Service Deleted : Scores
Service Deleted : syschkrm
Service Deleted : syschkrs
          • [ Files / Folders ] *****


Folder Deleted : C:\Disasteroids
Folder Deleted : C:\Documents and Settings\All Users\Application Data\FileCure
Folder Deleted : C:\Documents and Settings\All Users\Application Data\ParetoLogic
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Systweak
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Trymedia
Folder Deleted : C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriverWhiz
Folder Deleted : C:\Program Files\Easy Speed Check
Folder Deleted : C:\Program Files\focusbase
Folder Deleted : C:\Program Files\GamesBar
Folder Deleted : C:\Program Files\globalUpdate
Folder Deleted : C:\Program Files\HiDefMedia
Folder Deleted : C:\Program Files\iMesh Applications
Folder Deleted : C:\Program Files\JustCloud
Folder Deleted : C:\Program Files\OApps
Folder Deleted : C:\Program Files\PC Speed Maximizer
Folder Deleted : C:\Program Files\predm
Folder Deleted : C:\Program Files\Probit Software
Folder Deleted : C:\Program Files\Right Backup
Folder Deleted : C:\Program Files\System Speedup
Folder Deleted : C:\Program Files\Tuto4pc
Folder Deleted : C:\Program Files\Driver Manager
Folder Deleted : C:\Program Files\DriverWhiz
Folder Deleted : C:\Program Files\oTweak
[!] Folder Deleted : C:\Program Files\System-Checker
Folder Deleted : C:\Program Files\Optimizer Pro
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\globalUpdate
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\iac
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\iMesh
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\jZip
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\Systweak
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\CheckCode
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\SmartWeb
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\Mindspark_Interactive_Net
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\HelperApp
Folder Deleted : C:\Documents and Settings\PC\Application Data\Activeris
Folder Deleted : C:\Documents and Settings\PC\Application Data\ASP
Folder Deleted : C:\Documents and Settings\PC\Application Data\DriverCure
Folder Deleted : C:\Documents and Settings\PC\Application Data\OfferBox
Folder Deleted : C:\Documents and Settings\PC\Application Data\ParetoLogic
Folder Deleted : C:\Documents and Settings\PC\Application Data\PC TEKNIX
Folder Deleted : C:\Documents and Settings\PC\Application Data\Probit Software
Folder Deleted : C:\Documents and Settings\PC\Application Data\quickclick
Folder Deleted : C:\Documents and Settings\PC\Application Data\SmootherWeb
Folder Deleted : C:\Documents and Settings\PC\Application Data\Store
Folder Deleted : C:\Documents and Settings\PC\Application Data\System Speedup
Folder Deleted : C:\Documents and Settings\PC\Application Data\Systweak
Folder Deleted : C:\Documents and Settings\PC\Application Data\Tuto4pc
Folder Deleted : C:\Documents and Settings\PC\Application Data\RHEng
Folder Deleted : C:\Documents and Settings\PC\Application Data\SmartWeb
Folder Deleted : C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R
[!] Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Folder Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Extensions\bkfoggbmaeddfflfppchdlbakjilclbp
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Storage\chrome-extension_bkfoggbmaeddfflfppchdlbakjilclbp_0.localstorage
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\databases\chrome-extension_bkfoggbmaeddfflfppchdlbakjilclbp_0
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp
File Deleted : C:\END
File Deleted : C:\WINDOWS\Reimage.ini
File Deleted : C:\WINDOWS\score.exe
File Deleted : D:\Mes Documents\SmartWeb.lnk
File Deleted : C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\l9otepb4.default\invalidprefs.js
File Deleted : C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\l9otepb4.default\searchplugins\search-provided-by-yahoo.xml
          • [ Scheduled tasks ] *****


Task Deleted : ProPCCleaner_Popup
Task Deleted : SMupdate1
Task Deleted : YTDownloader
          • [ Shortcuts ] *****
          • [ Registry ] *****


Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gnfaiijpfcmdehcgcnnippmnhjjnbllp
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gjmpioofjhhijdaikhaabpkcbjinfnnp
Key Deleted : HKCU\Software\Google\Chrome\Extensions\bmkckgpgekmanipelfidlhmkfcjicion
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\PriceGong
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\DealPly
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DiscoveryHelper.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GIFAnimator.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\iMesh.exe
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IMTrProgress.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IMWeb.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Launcher.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WMHelper.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery
Key Deleted : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery.1
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.Device
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.file
Key Deleted : HKLM\SOFTWARE\Classes\imweb.imwebcontrol
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\SearchBar.Client
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMPlayCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMRipCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowVolumeOnArrival
Key Deleted : HKLM\SOFTWARE\Classes\WMHelperiMesh.WMHelper
Key Deleted : HKLM\SOFTWARE\Classes\WMHelperiMesh.WMHelper.1
Key Deleted : HKLM\SOFTWARE\3673a9b0-8b79-4c27-bb8e-3c8b421f22c3
Key Deleted : HKLM\SOFTWARE\44234700-83d3-4527-a062-d175a183f54d
Key Deleted : HKLM\SOFTWARE\8bbddea9-a892-4c83-8f4c-faea4224059f
Key Deleted : HKLM\SOFTWARE\ca638c4c-fc20-44a3-858e-f2bd67334b5b
Key Deleted : HKLM\SOFTWARE\e3f76de7-e33f-44ce-b4d4-0bd8c86c23b1
Key Deleted : HKLM\SOFTWARE\f4fbf7f1-1b06-41e3-96b0-39b809c4fdb0
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A7DDCBDE-5C86-415C-8A37-763AE183E7E4}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9CB2CD61-FFA0-406C-9D2D-8FDE6F4A4D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0D89DE71-3D99-4288-84DC-F18F1047A7D8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2C353E32-B8AC-4B82-B988-4C2D3394388A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7F1796B2-BEC6-427B-B734-F9C75ED94A80}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{950F80EF-32C2-47DD-9C35-9576E21EE66E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EC77D09-02CB-4E1F-E3C4-FB141B2610B3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172254}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172258}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172268}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622182206}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622312207}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE26843-9171-4F23-A8E5-5421701276A4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{596BB86E-F1E5-A1DE-3363-41AB634E77EF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A3492A3A-6715-9371-F8DB-1C48CC4DAAA1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175554}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175558}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175568}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655185506}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655315507}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176654}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176658}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176668}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666186606}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666316607}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B00FE392-639D-4688-976E-A1BFF368CB96}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174454}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174458}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174468}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644184406}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644314407}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8FFA7469-654F-423E-84FE-6A583CB1C284}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F72841F0-4EF1-4DF5-BCE5-B3AC8ACF5478}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8FFA7469-654F-423E-84FE-6A583CB1C284}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F72841F0-4EF1-4DF5-BCE5-B3AC8ACF5478}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F1796B2-BEC6-427B-B734-F9C75ED94A80}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Key Deleted : HKCU\Software\Adorika
Key Deleted : HKCU\Software\APNDTX
Key Deleted : HKCU\Software\bbrs_002.tb
Key Deleted : HKCU\Software\Blabbers
Key Deleted : HKCU\Software\Blabbers
Key Deleted : HKCU\Software\Boxore
Key Deleted : HKCU\Software\BrowserCompanion
Key Deleted : HKCU\Software\BRS
Key Deleted : HKCU\Software\ClickConnect
Key Deleted : HKCU\Software\Driver Pro
Key Deleted : HKCU\Software\eSupport.com
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\Imesh
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\ParetoLogic
Key Deleted : HKCU\Software\Rocket Browser
Key Deleted : HKCU\Software\SecuredDownload
Key Deleted : HKCU\Software\simplytech
# AdwCleaner v4.201 - Logfile created 15/04/2015 at 16:54:32
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4-201_fr_430277.exe
# Option : Cleaning
          • [ Services ] *****


[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : Scores
          • [ Files / Folders ] *****


Folder Deleted : C:\Disasteroids
Folder Deleted : C:\Documents and Settings\All Users\Application Data\FileCure
Folder Deleted : C:\Documents and Settings\All Users\Application Data\ParetoLogic
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Systweak
Folder Deleted : C:\Documents and Settings\All Users\Application Data\Trymedia
Folder Deleted : C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriverWhiz
Folder Deleted : C:\Program Files\Easy Speed Check
Folder Deleted : C:\Program Files\focusbase
Folder Deleted : C:\Program Files\GamesBar
Folder Deleted : C:\Program Files\globalUpdate
Folder Deleted : C:\Program Files\HiDefMedia
Folder Deleted : C:\Program Files\iMesh Applications
Folder Deleted : C:\Program Files\JustCloud
Folder Deleted : C:\Program Files\MyPC Backup
Folder Deleted : C:\Program Files\OApps
Folder Deleted : C:\Program Files\PC Speed Maximizer
Folder Deleted : C:\Program Files\predm
Folder Deleted : C:\Program Files\Probit Software
Folder Deleted : C:\Program Files\Right Backup
Folder Deleted : C:\Program Files\System Speedup
Folder Deleted : C:\Program Files\Tuto4pc
Folder Deleted : C:\Program Files\Driver Manager
Folder Deleted : C:\Program Files\DriverWhiz
Folder Deleted : C:\Program Files\oTweak
[!] Folder Deleted : C:\Program Files\System-Checker
Folder Deleted : C:\Program Files\Optimizer Pro
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\globalUpdate
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\iac
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\iMesh
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\jZip
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\Systweak
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\torch
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\CheckCode
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\SmartWeb
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\Mindspark_Interactive_Net
Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\HelperApp
Folder Deleted : C:\Documents and Settings\PC\Application Data\1H1Q
Folder Deleted : C:\Documents and Settings\PC\Application Data\Activeris
Folder Deleted : C:\Documents and Settings\PC\Application Data\ASP
Folder Deleted : C:\Documents and Settings\PC\Application Data\DriverCure
Folder Deleted : C:\Documents and Settings\PC\Application Data\OfferBox
Folder Deleted : C:\Documents and Settings\PC\Application Data\ParetoLogic
Folder Deleted : C:\Documents and Settings\PC\Application Data\PC TEKNIX
Folder Deleted : C:\Documents and Settings\PC\Application Data\Probit Software
Folder Deleted : C:\Documents and Settings\PC\Application Data\quickclick
Folder Deleted : C:\Documents and Settings\PC\Application Data\SmootherWeb
Folder Deleted : C:\Documents and Settings\PC\Application Data\Store
Folder Deleted : C:\Documents and Settings\PC\Application Data\System Speedup
Folder Deleted : C:\Documents and Settings\PC\Application Data\Systweak
Folder Deleted : C:\Documents and Settings\PC\Application Data\Tuto4pc
Folder Deleted : C:\Documents and Settings\PC\Application Data\RHEng
Folder Deleted : C:\Documents and Settings\PC\Application Data\SmartWeb
Folder Deleted : C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\a6tl2k7a.default-1425564319453\Extensions\{23BA1545-A651-4EDB-9568-45BE0CBAE475}
[!] Folder Deleted : C:\Documents and Settings\PC\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Folder Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Extensions\bkfoggbmaeddfflfppchdlbakjilclbp
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\databases\chrome-extension_bkfoggbmaeddfflfppchdlbakjilclbp_0
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp
File Deleted : C:\WINDOWS\Reimage.ini
File Deleted : C:\WINDOWS\score.exe
          • [ Scheduled tasks ] *****
          • [ Shortcuts ] *****
          • [ Registry ] *****


Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gnfaiijpfcmdehcgcnnippmnhjjnbllp
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gjmpioofjhhijdaikhaabpkcbjinfnnp
Key Deleted : HKCU\Software\Google\Chrome\Extensions\bmkckgpgekmanipelfidlhmkfcjicion
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\PriceGong
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\DealPly
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DiscoveryHelper.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GIFAnimator.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\iMesh.exe
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IMTrProgress.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\IMWeb.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Launcher.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WMHelper.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery
Key Deleted : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.Device
Key Deleted : HKLM\SOFTWARE\Classes\iMesh.file
Key Deleted : HKLM\SOFTWARE\Classes\imweb.imwebcontrol
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\Classes\SearchBar.Client
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMPlayCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMRipCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowCDAudioOnArrival
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowVolumeOnArrival
Key Deleted : HKCU\Software\Classes\keepmysearch
Key Deleted : HKLM\SOFTWARE\Classes\WMHelperiMesh.WMHelper
Key Deleted : HKLM\SOFTWARE\Classes\WMHelperiMesh.WMHelper.1
Key Deleted : HKLM\SOFTWARE\3673a9b0-8b79-4c27-bb8e-3c8b421f22c3
Key Deleted : HKLM\SOFTWARE\44234700-83d3-4527-a062-d175a183f54d
Key Deleted : HKLM\SOFTWARE\8bbddea9-a892-4c83-8f4c-faea4224059f
Key Deleted : HKLM\SOFTWARE\ca638c4c-fc20-44a3-858e-f2bd67334b5b
Key Deleted : HKLM\SOFTWARE\e3f76de7-e33f-44ce-b4d4-0bd8c86c23b1
Key Deleted : HKLM\SOFTWARE\f4fbf7f1-1b06-41e3-96b0-39b809c4fdb0
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{A7DDCBDE-5C86-415C-8A37-763AE183E7E4}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9CB2CD61-FFA0-406C-9D2D-8FDE6F4A4D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{0D89DE71-3D99-4288-84DC-F18F1047A7D8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2C353E32-B8AC-4B82-B988-4C2D3394388A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E977B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7F1796B2-BEC6-427B-B734-F9C75ED94A80}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{950F80EF-32C2-47DD-9C35-9576E21EE66E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EC77D09-02CB-4E1F-E3C4-FB141B2610B3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172254}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172258}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172268}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622182206}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622312207}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE26843-9171-4F23-A8E5-5421701276A4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{596BB86E-F1E5-A1DE-3363-41AB634E77EF}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A3492A3A-6715-9371-F8DB-1C48CC4DAAA1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175554}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175558}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655175568}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655185506}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655315507}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176654}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176658}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666176668}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666186606}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666316607}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B00FE392-639D-4688-976E-A1BFF368CB96}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174454}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174458}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644174468}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644184406}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644314407}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8FFA7469-654F-423E-84FE-6A583CB1C284}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F72841F0-4EF1-4DF5-BCE5-B3AC8ACF5478}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1D970ED5-3EDA-438D-BFFD-715931E2775B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{327C2873-E90D-4C37-AA9D-10AC9BABA46C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8FFA7469-654F-423E-84FE-6A583CB1C284}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F72841F0-4EF1-4DF5-BCE5-B3AC8ACF5478}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F1796B2-BEC6-427B-B734-F9C75ED94A80}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0b4d26f6-61a8-4463-99dd-5f2fe0400fa6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{63894242-d1a7-4235-a425-c124cb8f4633}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8B8F3AB2-6D47-4D53-A737-2F8422E431F2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{a0892e19-6051-4ae6-9a5f-91542a166b2b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Key Deleted : HKCU\Software\Adorika
Key Deleted : HKCU\Software\APNDTX
Key Deleted : HKCU\Software\bbrs_002.tb
Key Deleted : HKCU\Software\Blabbers
Key Deleted : HKCU\Software\Blabbers
Key Deleted : HKCU\Software\Boxore
Key Deleted : HKCU\Software\BrowserCompanion
Key Deleted : HKCU\Software\BRS
Key Deleted : HKCU\Software\ClickConnect
Key Deleted : HKCU\Software\Driver Pro
Key Deleted : HKCU\Software\eSupport.com
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\Imesh
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\ParetoLogic
Key Deleted : HKCU\Software\Rocket Browser
Key Deleted : HKCU\Software\SecuredDownload
Key Deleted : HKCU\Software\simplytech
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Store
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\Tuto4PC
Key Deleted : HKCU\Software\Tutorials
Key Deleted : HKCU\Software\UpdateStar
Key Deleted : HKCU\Software\Vittalia
Key Deleted : HKCU\Software\Reimage
Key Deleted : HKCU\Software\Easy Speed Check
Key Deleted : HKCU\Software\SmartWeb
Key Deleted : HKCU\Software\Video Player
Key Deleted : HKCU\Software\DriverTuner_Init
Key Deleted : HKCU\Software\DriverTuner
Key Deleted : HKCU\Software\DriverWhiz
Key Deleted : HKCU\Software\oTweak
Key Deleted : HKCU\Software\MediaProgramasGen
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\simplytech
Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\Driver-Soft
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Imesh
Key Deleted : HKLM\SOFTWARE\ImInstaller
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\ParetoLogic
Key Deleted : HKLM\SOFTWARE\Pirrit
Key Deleted : HKLM\SOFTWARE\SoftwareUpdater
Key Deleted : HKLM\SOFTWARE\systweak
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : HKLM\SOFTWARE\Upt
Key Deleted : HKLM\SOFTWARE\Wpm
Key Deleted : HKLM\SOFTWARE\yuna software
Key Deleted : HKLM\SOFTWARE\Reimage
Key Deleted : HKLM\SOFTWARE\WinUpd
Key Deleted : HKLM\SOFTWARE\SI-App
Key Deleted : HKLM\SOFTWARE\RST
Key Deleted : HKLM\SOFTWARE\DriverWhiz
Key Deleted : HKLM\SOFTWARE\WebBar
Key Deleted : HKU\.DEFAULT\Software\bbrs_002.tb
Key Deleted : HKU\.DEFAULT\Software\Blabbers
Key Deleted : HKU\.DEFAULT\Software\Blabbers
Key Deleted : HKU\.DEFAULT\Software\Boxore
Key Deleted : HKU\.DEFAULT\Software\PennyBee
Key Deleted : HKU\.DEFAULT\Software\Softonic
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\File Opener Packages
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\OpenOffice Packages
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A047FE02-C91C-41CB-898C-4ED21B86025A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Imesh
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Driver Whiz
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Activeris AntiMalware_is1
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\File Opener Packages
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\OpenOffice Packages
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{0E365FDA-909F-4939-838A-261DD468D862}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{33ECC890-C480-4124-B95B-BA36E025B120}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{774C0434-9948-4DEE-A14E-69CDD316E36C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{89601BB9-C8C0-493D-9912-AD7F51A918A3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{D8D8A342-0E9F-47EA-A35E-CF431B50B286}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{FB697452-8CA4-46B4-98B1-165C922A2EF3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\EZ Software Updater_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\FLVM Player
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Greener Web
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Imesh
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PC Speed Maximizer_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PCSU-SL_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PepperZip
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PriceGong
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\RechercherWeb Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Tweaks FileOpener
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WindowsProtectManger
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WSE Rocket
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Driver Whiz
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SmartWeb
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WSE_Vosteran
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\eDeals_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WSE_Binkiland
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DriverUpdaterPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Media Downloader_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MixVideoPlayer
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\098CCE33084C42149BB5AB630E521B02
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\098CCE33084C42149BB5AB630E521B02
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\098CCE33084C42149BB5AB630E521B02
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SoftwareUpdate.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=127.0.0.1:1454;hxxps=127.0.0.1:1454;
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Data Deleted : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
          • [ Web browsers ] *****


-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v37.0.1 (x86 fr)


-\\ Google Chrome v40.0.2214.91


-\\ Opera v27.0.1689.76


AdwCleaner[R0].txt - [93393 bytes] - [14/04/2015 07:55:45]
AdwCleaner[R1].txt - [74274 bytes] - [14/04/2015 12:18:06]
AdwCleaner[S0].txt - [52292 bytes] - [14/04/2015 08:03:32]
AdwCleaner[S1].txt - [13364 bytes] - [14/04/2015 12:26:55]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [52412 bytes] ##########

# AdwCleaner v4.201 - Logfile created 14/04/2015 at 12:26:55
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : PC - PC-BROCH
# Running from : D:\Mes Documents\Téléchargements\adwcleaner_4.201(2).exe
# Option : Cleaning
          • [ Services ] *****


Service Deleted : syschkrm
Service Deleted : syschkrs
          • [ Files / Folders ] *****


[!] Folder Deleted : C:\Program Files\System-Checker
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\databases\chrome-extension_bkfoggbmaeddfflfppchdlbakjilclbp_0
File Deleted : C:\Documents and Settings\PC\Application Data\Opera Software\Opera Stable\Local Extension Settings\bkfoggbmaeddfflfppchdlbakjilclbp
          • [ Scheduled tasks ] *****
          • [ Shortcuts ] *****
          • [ Registry ] *****


Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Store
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\Tuto4PC
Key Deleted : HKCU\Software\Tutorials
Key Deleted : HKCU\Software\UpdateStar
Key Deleted : HKCU\Software\Vittalia
Key Deleted : HKCU\Software\Reimage
Key Deleted : HKCU\Software\Easy Speed Check
Key Deleted : HKCU\Software\SmartWeb
Key Deleted : HKCU\Software\Video Player
Key Deleted : HKCU\Software\DriverTuner_Init
Key Deleted : HKCU\Software\DriverTuner
Key Deleted : HKCU\Software\DriverWhiz
Key Deleted : HKCU\Software\oTweak
Key Deleted : HKCU\Software\MediaProgramasGen
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\simplytech
Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\Driver-Soft
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Imesh
Key Deleted : HKLM\SOFTWARE\ImInstaller
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\ParetoLogic
Key Deleted : HKLM\SOFTWARE\Pirrit
Key Deleted : HKLM\SOFTWARE\SoftwareUpdater
Key Deleted : HKLM\SOFTWARE\systweak
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : HKLM\SOFTWARE\Upt
Key Deleted : HKLM\SOFTWARE\Wpm
Key Deleted : HKLM\SOFTWARE\yuna software
Key Deleted : HKLM\SOFTWARE\Reimage
Key Deleted : HKLM\SOFTWARE\WinUpd
Key Deleted : HKLM\SOFTWARE\SI-App
Key Deleted : HKLM\SOFTWARE\RST
Key Deleted : HKLM\SOFTWARE\DriverWhiz
Key Deleted : HKLM\SOFTWARE\WebBar
Key Deleted : HKU\.DEFAULT\Software\bbrs_002.tb
Key Deleted : HKU\.DEFAULT\Software\Blabbers
Key Deleted : HKU\.DEFAULT\Software\Blabbers
Key Deleted : HKU\.DEFAULT\Software\Boxore
Key Deleted : HKU\.DEFAULT\Software\PennyBee
Key Deleted : HKU\.DEFAULT\Software\Softonic
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\File Opener Packages
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\OpenOffice Packages
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A047FE02-C91C-41CB-898C-4ED21B86025A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Imesh
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Driver Whiz
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Activeris AntiMalware_is1
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\File Opener Packages
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\OpenOffice Packages
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{0E365FDA-909F-4939-838A-261DD468D862}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{33ECC890-C480-4124-B95B-BA36E025B120}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{774C0434-9948-4DEE-A14E-69CDD316E36C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{89601BB9-C8C0-493D-9912-AD7F51A918A3}
Key Delet
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019 > Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020
17 avril 2015 à 09:32
FRST ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
17 avril 2015 à 09:35
voir seconde partie de mon message.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
17 avril 2015 à 09:41
Ok merci
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
21 avril 2015 à 20:04
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
Modifié par Malekal_morte- le 22/04/2015 à 08:03
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix

Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :

Winsock: Catalog9 01 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
Winsock: Catalog9 02 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
Winsock: Catalog9 16 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
R2 hib; c:\windows\hib.exe [531456 2015-04-16] () [File not signed]
R2 mhib; c:\windows\mhib.exe [523264 2015-04-16] () [File not signed]
Task: C:\WINDOWS\Tasks\NZDLG.job => C:\Documents and Settings\PC\Application Data\NZDLG.exe
Task: C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425841974.job => C:\Program Files\Opera\launcher.exe
Task: C:\WINDOWS\Tasks\PQBVBVUI.job => C:\Documents and Settings\PC\Application Data\PQBVBVUI.exe
Task: C:\WINDOWS\Tasks\At1.job => C:\DOCUME~1\PC\APPLIC~1\Dealply\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At2.job => C:\DOCUME~1\PC\APPLIC~1\ROCKET~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At7.job => C:\DOCUME~1\PC\APPLIC~1\BINKIL~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At8.job => C:\DOCUME~1\PC\APPLIC~1\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\DriverUpdate Daily Scan.job => C:\Program Files\DriverUpdate\DriverUpdate.exe
Task: C:\WINDOWS\Tasks\SMupdate2.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\SMupdate3.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION
R3 s29xy; C:\Program Files\System-Checker\Files\s29xy.exe [1583728 2015-02-17] (29xy)
R2 syschkrm; C:\Program Files\System-Checker\syschkrm.exe [108544 2015-02-18] () [File not signed]
R2 syschkrs; C:\Program Files\System-Checker\syschkrs.exe [185344 2015-02-18] () [File not signed]
R2 UxTuneUp; C:\WINDOWS\System32\uxtuneup.dll [35640 2014-07-14] (AVG)
S2 CGIScriptSprite.exe; C:\Documents and Settings\PC\Local Settings\Application Data\CGIScriptSprite\CGIScriptSprite.exe [X]
S2 debuggerosSched.exe; C:\Documents and Settings\PC\Local Settings\Application Data\debuggerosSched\debuggerosSched.exe [X]
S2 FAT32InteractiveLog.exe; C:\Documents and Settings\PC\Local Settings\Application Data\FAT32InteractiveLog\FAT32InteractiveLog.exe [X]
S2 textmsctfmonitorapi.exe; C:\Documents and Settings\PC\Local Settings\Application Data\textmsctfmonitorapi\textmsctfmonitorapi.exe [X]
FF HKLM\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\4aydoaa6.default-1429074027875\extensions\quick_searchff@gmail.com
S2 dashboardwdc_86.exe; C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86\dashboardwdc_86.exe [229888 2015-02-27] () [File not signed]
R2 lwsvc_1.10.0.14; C:\Program Files\LinkWiz_1.10.0.14\Service\lwsvc.exe [278592 2015-04-10] (Link Wiz)
2015-04-17 09:37 - 2015-04-17 09:37 - 00000404 _____ () C:\WINDOWS\Tasks\At8.job
2015-04-17 09:37 - 2015-04-17 09:37 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\DigitalSites
2015-04-17 09:36 - 2015-04-17 09:36 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R
2015-04-16 20:21 - 2015-04-16 20:21 - 00000000 ____D () C:\Program Files\LinkWiz_1.10.0.14
2015-04-16 19:24 - 2015-04-16 19:24 - 00745984 _____ () C:\WINDOWS\hib.dat
2015-04-16 19:24 - 2015-04-16 19:24 - 00531456 ____N () C:\WINDOWS\hib.exe
2015-04-16 19:24 - 2015-04-16 19:24 - 00523264 ____N () C:\WINDOWS\mhib.exe
2015-04-16 19:23 - 2015-04-16 19:23 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\03000200-1429205019-0500-0006-000700080009
2015-04-17 07:26 - 2014-09-10 09:43 - 05382416 _____ (PC Cleaners) C:\Documents and Settings\All Users\Application Data\pclunst.exe
2015-04-16 11:31 - 2015-03-01 14:23 - 00000000 ____D () C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86
C:\Program Files\System-Checker
cmd: netsh winsock reset


Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.

Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.

Relance FRST qui doit se trouver sur le bureau et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.

Redémarre l'ordinateur


puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :


Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 10:37
Bonjour.

J'ai fait à la lettre ce que tu m'a dit, mais quand je clique sur Fix, ça me met la réponse suivante : fixlist.txt not found. Et pourtant, il se trouve bien sur le bureau.
Je t'envoie le contenu de ce Document fixlist.txt :

Task: C:\WINDOWS\Tasks\NZDLG.job => C:\Documents and Settings\PC\Application Data\NZDLG.exe

Task: C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425841974.job => C:\Program Files\Opera\launcher.exe

Task: C:\WINDOWS\Tasks\PQBVBVUI.job => C:\Documents and Settings\PC\Application Data\PQBVBVUI.exe

Task: C:\WINDOWS\Tasks\At1.job => C:\DOCUME~1\PC\APPLIC~1\Dealply\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

Task: C:\WINDOWS\Tasks\At2.job => C:\DOCUME~1\PC\APPLIC~1\ROCKET~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

Task: C:\WINDOWS\Tasks\At7.job => C:\DOCUME~1\PC\APPLIC~1\BINKIL~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

Task: C:\WINDOWS\Tasks\At8.job => C:\DOCUME~1\PC\APPLIC~1\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

Task: C:\WINDOWS\Tasks\DriverUpdate Daily Scan.job => C:\Program Files\DriverUpdate\DriverUpdate.exe

Task: C:\WINDOWS\Tasks\SMupdate2.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION

Task: C:\WINDOWS\Tasks\SMupdate3.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION

R3 s29xy; C:\Program Files\System-Checker\Files\s29xy.exe [1583728 2015-02-17] (29xy)

R2 syschkrm; C:\Program Files\System-Checker\syschkrm.exe [108544 2015-02-18] () [File not signed]

R2 syschkrs; C:\Program Files\System-Checker\syschkrs.exe [185344 2015-02-18] () [File not signed]

R2 UxTuneUp; C:\WINDOWS\System32\uxtuneup.dll [35640 2014-07-14] (AVG)

S2 CGIScriptSprite.exe; C:\Documents and Settings\PC\Local Settings\Application Data\CGIScriptSprite\CGIScriptSprite.exe [X]

S2 debuggerosSched.exe; C:\Documents and Settings\PC\Local Settings\Application Data\debuggerosSched\debuggerosSched.exe [X]

S2 FAT32InteractiveLog.exe; C:\Documents and Settings\PC\Local Settings\Application Data\FAT32InteractiveLog\FAT32InteractiveLog.exe [X]

S2 textmsctfmonitorapi.exe; C:\Documents and Settings\PC\Local Settings\Application Data\textmsctfmonitorapi\textmsctfmonitorapi.exe [X]

FF HKLM\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\4aydoaa6.default-1429074027875\extensions\quick_searchff@gmail.com

S2 dashboardwdc_86.exe; C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86\dashboardwdc_86.exe [229888 2015-02-27] () [File not signed]

R2 lwsvc_1.10.0.14; C:\Program Files\LinkWiz_1.10.0.14\Service\lwsvc.exe [278592 2015-04-10] (Link Wiz)

2015-04-17 09:37 - 2015-04-17 09:37 - 00000404 _____ () C:\WINDOWS\Tasks\At8.job

2015-04-17 09:37 - 2015-04-17 09:37 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\DigitalSites

2015-04-17 09:36 - 2015-04-17 09:36 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R

2015-04-16 20:21 - 2015-04-16 20:21 - 00000000 ____D () C:\Program Files\LinkWiz_1.10.0.14

2015-04-16 19:24 - 2015-04-16 19:24 - 00745984 _____ () C:\WINDOWS\hib.dat

2015-04-16 19:24 - 2015-04-16 19:24 - 00531456 ____N () C:\WINDOWS\hib.exe

2015-04-16 19:24 - 2015-04-16 19:24 - 00523264 ____N () C:\WINDOWS\mhib.exe

2015-04-16 19:23 - 2015-04-16 19:23 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\03000200-1429205019-0500-0006-000700080009

2015-04-17 07:26 - 2014-09-10 09:43 - 05382416 _____ (PC Cleaners) C:\Documents and Settings\All Users\Application Data\pclunst.exe

2015-04-16 11:31 - 2015-03-01 14:23 - 00000000 ____D () C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86

C:\Program Files\System-Checker

Merci & Bonne Journée :)
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
22 avril 2015 à 11:24
Le contenu de fixlist.txt n'a aucun interêt, vu que c'est ce que je t'ai donné.
Faut faire la correction (fix).
Suis les instructions.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 11:49
Re.

Ca continue, j'ai encore fait à la lettre ce que tu m'a dit, mais quand je clique sur Fix, ça me met toujours la réponse suivante : fixlist.txt not found. Et pourtant, il se trouve bien sur le bureau avec FRST.
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
22 avril 2015 à 11:52
Parce que ton fichier fixlist.txt n'est pas dans le même dossier que le programme FRST.
Tu es censée avoir les deux sur le bureau.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 12:04
Est-ce bon cette fois ?

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 20-04-2015
Ran by PC at 2015-04-22 12:00:54 Run:5
Running from C:\Documents and Settings\PC\Bureau
Loaded Profiles: PC (Available profiles: PC)
Boot Mode: Normal

==============================================

Content of fixlist:

Winsock: Catalog9 01 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
Winsock: Catalog9 02 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
Winsock: Catalog9 16 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
R2 hib; c:\windows\hib.exe [531456 2015-04-16] () [File not signed]
R2 mhib; c:\windows\mhib.exe [523264 2015-04-16] () [File not signed]
Task: C:\WINDOWS\Tasks\NZDLG.job => C:\Documents and Settings\PC\Application Data\NZDLG.exe
Task: C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425841974.job => C:\Program Files\Opera\launcher.exe
Task: C:\WINDOWS\Tasks\PQBVBVUI.job => C:\Documents and Settings\PC\Application Data\PQBVBVUI.exe
Task: C:\WINDOWS\Tasks\At1.job => C:\DOCUME~1\PC\APPLIC~1\Dealply\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At2.job => C:\DOCUME~1\PC\APPLIC~1\ROCKET~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At7.job => C:\DOCUME~1\PC\APPLIC~1\BINKIL~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At8.job => C:\DOCUME~1\PC\APPLIC~1\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\DriverUpdate Daily Scan.job => C:\Program Files\DriverUpdate\DriverUpdate.exe
Task: C:\WINDOWS\Tasks\SMupdate2.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\SMupdate3.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION
R3 s29xy; C:\Program Files\System-Checker\Files\s29xy.exe [1583728 2015-02-17] (29xy)
R2 syschkrm; C:\Program Files\System-Checker\syschkrm.exe [108544 2015-02-18] () [File not signed]
R2 syschkrs; C:\Program Files\System-Checker\syschkrs.exe [185344 2015-02-18] () [File not signed]
R2 UxTuneUp; C:\WINDOWS\System32\uxtuneup.dll [35640 2014-07-14] (AVG)
S2 CGIScriptSprite.exe; C:\Documents and Settings\PC\Local Settings\Application Data\CGIScriptSprite\CGIScriptSprite.exe [X]
S2 debuggerosSched.exe; C:\Documents and Settings\PC\Local Settings\Application Data\debuggerosSched\debuggerosSched.exe [X]
S2 FAT32InteractiveLog.exe; C:\Documents and Settings\PC\Local Settings\Application Data\FAT32InteractiveLog\FAT32InteractiveLog.exe [X]
S2 textmsctfmonitorapi.exe; C:\Documents and Settings\PC\Local Settings\Application Data\textmsctfmonitorapi\textmsctfmonitorapi.exe [X]
FF HKLM\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\4aydoaa6.default-1429074027875\extensions\quick_searchff@gmail.com
S2 dashboardwdc_86.exe; C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86\dashboardwdc_86.exe [229888 2015-02-27] () [File not signed]
R2 lwsvc_1.10.0.14; C:\Program Files\LinkWiz_1.10.0.14\Service\lwsvc.exe [278592 2015-04-10] (Link Wiz)
2015-04-17 09:37 - 2015-04-17 09:37 - 00000404 _____ () C:\WINDOWS\Tasks\At8.job
2015-04-17 09:37 - 2015-04-17 09:37 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\DigitalSites
2015-04-17 09:36 - 2015-04-17 09:36 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R
2015-04-16 20:21 - 2015-04-16 20:21 - 00000000 ____D () C:\Program Files\LinkWiz_1.10.0.14
2015-04-16 19:24 - 2015-04-16 19:24 - 00745984 _____ () C:\WINDOWS\hib.dat
2015-04-16 19:24 - 2015-04-16 19:24 - 00531456 ____N () C:\WINDOWS\hib.exe
2015-04-16 19:24 - 2015-04-16 19:24 - 00523264 ____N () C:\WINDOWS\mhib.exe
2015-04-16 19:23 - 2015-04-16 19:23 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\03000200-1429205019-0500-0006-000700080009
2015-04-17 07:26 - 2014-09-10 09:43 - 05382416 _____ (PC Cleaners) C:\Documents and Settings\All Users\Application Data\pclunst.exe
2015-04-16 11:31 - 2015-03-01 14:23 - 00000000 ____D () C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86
C:\Program Files\System-Checker
cmd: netsh winsock reset


HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 => Key could not be deleted. Access denied.
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 => Key could not be deleted. Access denied.
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 => Key could not be deleted. Access denied.
hib => Service not found.
mhib => Service not found.
C:\WINDOWS\Tasks\NZDLG.job not found.
C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425841974.job not found.
C:\WINDOWS\Tasks\PQBVBVUI.job not found.
C:\WINDOWS\Tasks\At1.job not found.
C:\WINDOWS\Tasks\At2.job not found.
C:\WINDOWS\Tasks\At7.job not found.
C:\WINDOWS\Tasks\At8.job not found.
C:\WINDOWS\Tasks\DriverUpdate Daily Scan.job not found.
C:\WINDOWS\Tasks\SMupdate2.job not found.
C:\WINDOWS\Tasks\SMupdate3.job not found.
s29xy => Error deleting Service
syschkrm => Error deleting Service
syschkrs => Error deleting Service
UxTuneUp => Service not found.
CGIScriptSprite.exe => Service not found.
debuggerosSched.exe => Service not found.
FAT32InteractiveLog.exe => Service not found.
textmsctfmonitorapi.exe => Service not found.
HKLM\Software\Mozilla\Firefox\Extensions\\quick_searchff@gmail.com => Value not found.
dashboardwdc_86.exe => Service not found.
lwsvc_1.10.0.14 => Service not found.
"C:\WINDOWS\Tasks\At8.job" => File/Directory not found.
"C:\Documents and Settings\PC\Application Data\DigitalSites" => File/Directory not found.
"C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R" => File/Directory not found.
"C:\Program Files\LinkWiz_1.10.0.14" => File/Directory not found.
"C:\WINDOWS\hib.dat" => File/Directory not found.
"C:\WINDOWS\hib.exe" => File/Directory not found.
"C:\WINDOWS\mhib.exe" => File/Directory not found.
"C:\Documents and Settings\PC\Application Data\03000200-1429205019-0500-0006-000700080009" => File/Directory not found.
"C:\Documents and Settings\All Users\Application Data\pclunst.exe" => File/Directory not found.
"C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86" => File/Directory not found.
"C:\Program Files\System-Checker" => File/Directory not found.

========= netsh winsock reset =========


Impossible de rinitialiser le catalogue Winsock.
Accs refus.



========= End of CMD: =========

End of Fixlog 12:00:57

0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
Modifié par Malekal_morte- le 22/04/2015 à 12:12
oui il reste ça :
C:\WINDOWS\system32\29xy.dll
C:\WINDOWS\system32\Drivers\29jrt.sys

Tu as un autre ordinateur avec toi pour venir ici dans le cas où internet ne fonctionnerait plus ?
Comme ce malware se charge dans la couche réseau...
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019 > Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020
22 avril 2015 à 12:32
Non
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 13:13
Si ça peut t'aider, voilà la page qui s'ouvre quand je télécharge FRST 32 bits.

Disclaimer of warranty!

This software is provided "AS IS" without of any kind. You may use this software at your own risk.

The tool is made to run on Windows XP, Windows Vista 32-bit (x86), Windows 7 32-bit (x86) and Windows 8 32-bit (x86).

This version will not be compatible with x64 systèms.

Important note : This tool is free.

Are you sure you want to continue?

Click Yes to continue. Click No to exit.

Si je télécharge FRST 64 bits, voilà la page qui s'ouvre :


D:\Mes Documents\Téléchargements\FRST64(1).exe n'est pas une application Win32 valide.

Je fais tout pour t'aider et mer rendre utile.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 13:28
Ma version de Windows XP est :

Microsoft Windows XP Édition familiale
Service Pack 3.

Version 5.1
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
22 avril 2015 à 13:31
Sauvegarde tes documents importants.
A lire en entier.


Désactive les logiciels de protection (Antivirus, Antispywares)
En Général, cela se fait par un clic droit sur l'icône de ton antivirus en bas à droite et désactiver protection/agent ou autres.

ensuite :

Télécharge Combofix sUBs : http://download.bleepingcomputer.com/sUBs/ComboFix.exe et sauvegarde le sur ton bureau et pas ailleurs!

Double-clic sur combofix, accepte la licence d'utilisation et laisse toi guider.

Eventuellement, installe la console de récupération comme cela est conseillé

Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.
Si le rapport ne passe pas, envoie le sur ce site : http://pjjoint.malekal.com/
et donne le lien ici :)

Tu as le tutorial sur ce lien pour t'aider : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

PS : si Combofix ne se lance pas, renomme le fichier Combofix et retente.

Si pas mieux, tente en mode sans échec sans prise en charge du réseau : Redémarre en mode sans échec, pour cela, redémarre l'ordinateur, avant le logo Windows, tapote sur la touche F8, un menu va apparaître, choisis Mode sans échec et appuye sur la touche entrée du clavier.

Si Combofix émet toujours une alerte sur l'antivirus : Si tu es en mode sans échec continue, si tu es en mode normal et que l'antivirus est bien désactivé. Continue.
Hébergement du rapport : Utilise le site http://pjjoint.malekal.com/ pour envoyer le rapport, donne le lien pjjoint qui pointent vers ce rapport dans un nouveau message.

0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 17:53
Merci de tout coeur je n'ai plus de fenêtre sur systèm-checker qui s'ouvre au démarrage de mon PC.
De plus, je te remercie de la patience que tu as avec moi car je ne suis pas toujours très fute fute lol.
J'ai donc envoyé le rapport de Combofix à pjjoint.
Mais il me reste un Document Texte log.txt - Bloc-note.
Je dois te l'envoyer ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
22 avril 2015 à 17:57
il faut donner le lien du rapport combofix ici
sinon je ne peux pas aller le lire.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 19:04
Où je trouve ce lien ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
22 avril 2015 à 19:07
il t'a été donné quand tu as envoyé le rapport sur pjjoint
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
22 avril 2015 à 20:21
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
22 avril 2015 à 21:43
Faudrait faire ceci.

Note cette procédure : https://forum.malekal.com/viewtopic.php?t=29460&start=


Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie dedans les lignes suivantes :

driver::
29jrt
file::
C:\WINDOWS\system32\29xy.dll
C:\WINDOWS\system32\Drivers\29jrt.sys


Enregistre ce fichier sous le nom CFScript

[*]Fait un glisser/déposer de ce fichier CFScript sur le fichier ComboFix.exe

[*]Combofix se lance, laisse toi guider..

[*]Patiente le temps du scan. Le bureau va disparaître à plusieurs reprises: c'est normal!
Ne touche à rien tant que le scan n'est pas terminé.
[*]Une fois le scan achevé, un rapport va s'afficher: poste son contenu sur http://pjjoint.malekal.com/ et donne le lien ici dans un nouveau message.

~~

Si internet ne fonctionne plus, suis la procédure notée.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
23 avril 2015 à 00:04
Re.

Avec la dernière manipulation que tu m' fait faire, c'était la kata :
- Anti-virus détérioré,
- Plus de connexion internet,
- Plus de Mozilla Firefox.

J'ai fait une restauration du système au 21 avril 2015.
Ensuite, jai rétabli la connexion internet avec windouws.
Puis j'ai réinstallé Mozilla firefox

Que dois-je faire maintenant ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
23 avril 2015 à 08:40
oui pour Firefox.
Comme j'ai déjà dit, tu as une infection qui se charge dans la couche réseau.
Il faut la virer, la manip peut faire que la connexion internet ne fonctionne plus d'où le lien avec la manip à faire.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019 > Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020
23 avril 2015 à 08:59
Est ce que ma restauration du système a fichu tout notre travail en l'air ?
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
23 avril 2015 à 09:05
Et sans ne plus pouvoir me connecter, je fais comment pour te joindre ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
23 avril 2015 à 09:11
Si tu as restauré à une date à où les adwares sont actifs, c'est possible que ça ait tout remis, tu as à nouveau les publicités ?

Pour internet, je t'ai donné un lien qui explique comment remettre.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
23 avril 2015 à 09:39
Oui j'ai à nouveau des pubs et microsoft visual c++ qui est revenu.
quand au lien, je ne pouvais plus le voir puisque je ne pouvais plus me connecter à toi.
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
23 avril 2015 à 09:45
oui fallait noter le contenu de la commande à passer.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
23 avril 2015 à 10:18
Alors, je fais quoi maintenant ?
Mon PC rame à mort.
Je dois tout recommencer depuis le début ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
23 avril 2015 à 10:21
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
23 avril 2015 à 11:25
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 631
23 avril 2015 à 11:34
C'est un rapport d'analyse/scan, pas de correction.
0
MarieAnge06111956 Messages postés 125 Date d'inscription vendredi 5 septembre 2014 Statut Membre Dernière intervention 12 septembre 2019
23 avril 2015 à 12:27
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 22-04-2015 01
Ran by PC at 2015-04-23 12:17:25 Run:1
Running from C:\Documents and Settings\PC\Bureau
Loaded Profiles: PC (Available profiles: PC)
Boot Mode: Normal

==============================================

Content of fixlist:

Winsock: Catalog9 01 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
Winsock: Catalog9 02 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
Winsock: Catalog9 16 C:\WINDOWS\system32\29xy.dll [326704] (29xy)
R2 hib; c:\windows\hib.exe [531456 2015-04-16] () [File not signed]
R2 mhib; c:\windows\mhib.exe [523264 2015-04-16] () [File not signed]
Task: C:\WINDOWS\Tasks\NZDLG.job => C:\Documents and Settings\PC\Application Data\NZDLG.exe
Task: C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425841974.job => C:\Program Files\Opera\launcher.exe
Task: C:\WINDOWS\Tasks\PQBVBVUI.job => C:\Documents and Settings\PC\Application Data\PQBVBVUI.exe
Task: C:\WINDOWS\Tasks\At1.job => C:\DOCUME~1\PC\APPLIC~1\Dealply\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At2.job => C:\DOCUME~1\PC\APPLIC~1\ROCKET~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At7.job => C:\DOCUME~1\PC\APPLIC~1\BINKIL~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\At8.job => C:\DOCUME~1\PC\APPLIC~1\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\DriverUpdate Daily Scan.job => C:\Program Files\DriverUpdate\DriverUpdate.exe
Task: C:\WINDOWS\Tasks\SMupdate2.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\SMupdate3.job => C:\WINDOWS\system32\rundll32.exe <==== ATTENTION
R3 s29xy; C:\Program Files\System-Checker\Files\s29xy.exe [1583728 2015-02-17] (29xy)
R2 syschkrm; C:\Program Files\System-Checker\syschkrm.exe [108544 2015-02-18] () [File not signed]
R2 syschkrs; C:\Program Files\System-Checker\syschkrs.exe [185344 2015-02-18] () [File not signed]
R2 UxTuneUp; C:\WINDOWS\System32\uxtuneup.dll [35640 2014-07-14] (AVG)
S2 CGIScriptSprite.exe; C:\Documents and Settings\PC\Local Settings\Application Data\CGIScriptSprite\CGIScriptSprite.exe [X]
S2 debuggerosSched.exe; C:\Documents and Settings\PC\Local Settings\Application Data\debuggerosSched\debuggerosSched.exe [X]
S2 FAT32InteractiveLog.exe; C:\Documents and Settings\PC\Local Settings\Application Data\FAT32InteractiveLog\FAT32InteractiveLog.exe [X]
S2 textmsctfmonitorapi.exe; C:\Documents and Settings\PC\Local Settings\Application Data\textmsctfmonitorapi\textmsctfmonitorapi.exe [X]
FF HKLM\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Documents and Settings\PC\Application Data\Mozilla\Firefox\Profiles\4aydoaa6.default-1429074027875\extensions\quick_searchff@gmail.com
S2 dashboardwdc_86.exe; C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86\dashboardwdc_86.exe [229888 2015-02-27] () [File not signed]
R2 lwsvc_1.10.0.14; C:\Program Files\LinkWiz_1.10.0.14\Service\lwsvc.exe [278592 2015-04-10] (Link Wiz)
2015-04-17 09:37 - 2015-04-17 09:37 - 00000404 _____ () C:\WINDOWS\Tasks\At8.job
2015-04-17 09:37 - 2015-04-17 09:37 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\DigitalSites
2015-04-17 09:36 - 2015-04-17 09:36 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R
2015-04-16 20:21 - 2015-04-16 20:21 - 00000000 ____D () C:\Program Files\LinkWiz_1.10.0.14
2015-04-16 19:24 - 2015-04-16 19:24 - 00745984 _____ () C:\WINDOWS\hib.dat
2015-04-16 19:24 - 2015-04-16 19:24 - 00531456 ____N () C:\WINDOWS\hib.exe
2015-04-16 19:24 - 2015-04-16 19:24 - 00523264 ____N () C:\WINDOWS\mhib.exe
2015-04-16 19:23 - 2015-04-16 19:23 - 00000000 ____D () C:\Documents and Settings\PC\Application Data\03000200-1429205019-0500-0006-000700080009
2015-04-17 07:26 - 2014-09-10 09:43 - 05382416 _____ (PC Cleaners) C:\Documents and Settings\All Users\Application Data\pclunst.exe
2015-04-16 11:31 - 2015-03-01 14:23 - 00000000 ____D () C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86
C:\Program Files\System-Checker
cmd: netsh winsock reset


"HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001" => Key deleted successfully.
"HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002" => Key deleted successfully.
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 => Key not found.
hib => Service not found.
mhib => Service not found.
C:\WINDOWS\Tasks\NZDLG.job not found.
C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1425841974.job not found.
C:\WINDOWS\Tasks\PQBVBVUI.job not found.
C:\WINDOWS\Tasks\At1.job not found.
C:\WINDOWS\Tasks\At2.job not found.
C:\WINDOWS\Tasks\At7.job not found.
C:\WINDOWS\Tasks\At8.job not found.
C:\WINDOWS\Tasks\DriverUpdate Daily Scan.job not found.
C:\WINDOWS\Tasks\SMupdate2.job not found.
C:\WINDOWS\Tasks\SMupdate3.job not found.
s29xy => Service deleted successfully.
syschkrm => Service stopped successfully.
syschkrm => Service deleted successfully.
syschkrs => Service deleted successfully.
UxTuneUp => Service stopped successfully.
UxTuneUp => Service deleted successfully.
CGIScriptSprite.exe => Service deleted successfully.
debuggerosSched.exe => Service deleted successfully.
FAT32InteractiveLog.exe => Service deleted successfully.
textmsctfmonitorapi.exe => Service deleted successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\quick_searchff@gmail.com => Value not found.
dashboardwdc_86.exe => Unable to stop service
dashboardwdc_86.exe => Service deleted successfully.
lwsvc_1.10.0.14 => Service stopped successfully.
lwsvc_1.10.0.14 => Service deleted successfully.
"C:\WINDOWS\Tasks\At8.job" => File/Directory not found.
C:\Documents and Settings\PC\Application Data\DigitalSites => Moved successfully.
C:\Documents and Settings\PC\Application Data\1H1Q1V1N1N1O1R => Moved successfully.
C:\Program Files\LinkWiz_1.10.0.14 => Moved successfully.
"C:\WINDOWS\hib.dat" => File/Directory not found.
"C:\WINDOWS\hib.exe" => File/Directory not found.
"C:\WINDOWS\mhib.exe" => File/Directory not found.
"C:\Documents and Settings\PC\Application Data\03000200-1429205019-0500-0006-000700080009" => File/Directory not found.
C:\Documents and Settings\All Users\Application Data\pclunst.exe => Moved successfully.
C:\Documents and Settings\PC\Local Settings\Application Data\dashboardwdc_86 => Moved successfully.
C:\Program Files\System-Checker => Moved successfully.

========= netsh winsock reset =========

Le dmarrage de la fonction d'initialisation InitHelperDll dans IPMONTR.DLL a chou; code d'erreur: 10107

Le catalogue Winsock a t rinitialis correctement.
Vous devez redmarrer l'ordinateur afin de finaliser la rinitialisation.


========= End of CMD: =========



The system needed a reboot.

End of Fixlog 12:17:44

0