comment supprimer news alert by useful technology

Aide à la désinfection pour supprimer les virus, adwares, ransomwares, trojans.

Modérateurs : Mods Windows, Helper

madhu

comment supprimer news alert by useful technology

par madhu »

Bonjour,
voilà j'ai installé un programme, et plein d'autres applications ce sont installées sur mon pc. J'ai réussi à les supprimer sauf un qui ne veut pas se désinstaller qui est news alert . Alors j'ai fait une recherche sur internet et je suis tombé sur vous, j'ai donc installé FRST, et voici mon rapport http://pjjoint.malekal.com/files.php?id ... 11d13x12n9 et http://pjjoint.malekal.com/files.php?id ... l10p5p11x6. J'espère que vous pourrez m'aider. Merci :)
Avatar de l’utilisateur
angelique
Messages : 31842
Inscription : 28 févr. 2008 13:58
Localisation : Breizhilienne

Re: comment supprimer news alert by useful technology

par angelique »

  • Désinstalle si tu peux sinon continue:

    Bundled software uninstaller (HKLM\...\bi_uninstaller) (Version: - )

    CINEMA 4D R14 (HKLM\...\CINEMA 4D R14) (Version: - )

    News Alert (HKLM\...\BreakingNewsAlert) (Version: 2.7.68 - Useful Technology)
  • Ouvre le bloc-notes : Menu Démarrer / Tous les programmes / Accessoires et Bloc-Notes. (ou executer---> notepad)
    Copie/colle dedans ce qui suit :

    R2 IHProtect Service; C:\Program Files\MiuiTab\ProtectService.exe [125112 2015-06-24] (XTab system)
    R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [707240 2015-07-09] (DTools LIMITED) <==== ATTENTION
    R2 WWURTXX; C:\ProgramData\BrcRbjosYX\WWURTXX.exe [2732000 2015-07-09] (Useful Technology)
    2015-07-09 13:42 - 2015-07-09 13:42 - 00000000 ____D C:\Program Files\Google
    2015-07-09 13:41 - 2015-07-09 13:42 - 00000000 ____D C:\Program Files\MiuiTab
    2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 ____D C:\Users\hp\AppData\Local\BreakingNewsAlert
    2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 ____D C:\BreakingNewsAlert
    2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 _____ C:\Windows\prleth.sys
    2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 _____ C:\Windows\hgfs.sys
    2015-07-09 13:40 - 2015-07-09 14:06 - 00000000 ____D C:\Program Files\GUPlayer
    2015-07-09 13:40 - 2015-07-09 13:42 - 00000000 ____D C:\ProgramData\BrcRbjosYX
    2015-07-09 13:40 - 2015-07-09 13:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
    2015-07-09 13:40 - 2015-07-09 13:41 - 00000000 ____D C:\ProgramData\BreakingNewsAlert
    2015-07-09 11:55 - 2015-07-09 11:56 - 00000000 ____D C:\sh4ldr
    2015-07-09 11:55 - 2015-07-09 11:55 - 00000000 ____D C:\Program Files\Enigma Software Group
    2015-07-08 15:47 - 2015-07-08 15:55 - 00000000 ____D C:\Users\hp\AppData\Local\Popcorn-Time
    2015-07-08 15:43 - 2015-07-09 12:30 - 00000000 ____D C:\Users\hp\AppData\Local\Popcorn Time
    2015-07-05 17:45 - 2015-07-05 17:45 - 00000000 ____D C:\Program Files\predm
    2015-07-05 17:31 - 2015-07-05 17:31 - 00000000 ____D C:\ProgramData\c4812f0a00005bb3
    2015-07-05 17:30 - 2015-07-09 12:31 - 00000000 ____D C:\ProgramData\abc
    2015-07-05 17:30 - 2015-07-05 17:30 - 00613255 _____ (CMI Limited) C:\Users\hp\AppData\Local\nsyD3EF.tmp
    2015-07-05 17:30 - 2015-07-05 17:30 - 00000000 __SHD C:\Users\hp\AppData\Roaming\AnyProtectEx
    2015-07-05 17:29 - 2015-07-05 17:29 - 00000000 ____D C:\Users\hp\Documents\Optimizer Pro
    2015-07-05 17:24 - 2015-07-09 12:34 - 00000000 ____D C:\Program Files\Coupoon
    2015-07-05 17:24 - 2015-07-09 12:30 - 00000000 ____D C:\Users\hp\AppData\Local\SmartWeb
    2015-07-05 17:15 - 2015-07-09 12:31 - 00000000 ____D C:\ProgramData\ZombieNews
    2015-07-05 17:15 - 2015-07-09 12:31 - 00000000 ____D C:\ProgramData\vLnXrxe
    2015-07-05 17:15 - 2015-07-09 12:30 - 00000000 ____D C:\Users\hp\AppData\Roaming\3CBC2226-1436109335-11DF-B79B-0AC05F0660C7
    2015-07-05 16:59 - 2015-07-09 13:41 - 00000000 ____D C:\ProgramData\WindowsMangerProtect
    2015-07-05 16:59 - 2015-07-05 16:59 - 00000000 ____D C:\ProgramData\IHProtectUpDate
    2015-07-05 16:56 - 2015-07-05 16:56 - 00631216 _____ C:\Users\hp\Downloads\All Hacks In A Mega Pack V9 23 Downloader (1).zip
    2015-07-05 16:54 - 2015-07-05 16:54 - 00000000 ____D C:\Users\hp\AppData\Local\Prompt Downloader
    2015-07-05 16:51 - 2015-07-05 20:41 - 00000000 ____D C:\Users\hp\AppData\Roaming\Store
    2015-07-05 16:51 - 2015-07-05 20:36 - 00000000 ____D C:\Users\hp\AppData\Roaming\WTools
    2015-07-09 18:49 - 2013-07-07 19:09 - 00000280 _____ C:\Windows\Tasks\MySearchDial.job
    C:\Users\hp\AppData\Local\Temp\0fa45413-d77b-4013-9fb3-0c635fb8cd7c.exe
    C:\Users\hp\AppData\Local\Temp\a1c2fffd-d641-49c0-9ac8-1c67b8630775.exe
    C:\Users\hp\AppData\Local\Temp\AutoRun.exe
    C:\Users\hp\AppData\Local\Temp\d17c485e-a4cc-4dc8-ba18-6bf8ef0e7d72.exe
    C:\Users\hp\AppData\Local\Temp\drm_dialogs.dll
    C:\Users\hp\AppData\Local\Temp\f2d45eaf-09d0-4c83-ac6a-37fd5a12ddcd.exe
    C:\Users\hp\AppData\Local\Temp\Runner.exe
    C:\Users\hp\AppData\Local\Temp\sdfB76C.exe
    2015-07-09 12:31 - 2014-01-16 14:04 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {1B7DF7E7-B00D-40B5-9457-89053B7D7060} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {5C04AB37-9C3F-50A3-332F-27A9B005EA86} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.mystartsearch.com/web/?utm_s ... earchTerms}
    BHO: LuckyTab Class -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> C:\Program Files\MiuiTab\SupTab.dll [2015-06-24] (Thinknice Co. Limited)
    Toolbar: HKLM - No Name - {7C68E87F-4487-4AE5-BBC2-C398C530DE9A} - No File
    FF HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\...\Firefox\Extensions: [{71524336-70b1-48ef-9014-3c537fb12c7b}] - C:\Program Files\LyricsPal\130.xpi
    CHR Extension: (Newtab) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pflphaooapbgpeakohlggbpidpppgdff [2015-07-08]
    CHR HKLM\...\Chrome\Extension: [mmiopbgcekanlhpjkonogoljpfmhpkhf] - No Path Or update_url value
    CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\hp\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-07]
    CHR HKLM\...\Chrome\Extension: [pnbbffeddnekkhjmokkhdebbfbibbflc] - C:\Program Files\LyricsPal\130.crx [Not Found]
    CHR HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\hp\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-07]

    StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.qvo6.com/?utm_source=b&utm_m ... 1373311788
    AppInit_DLLs: c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll => c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll File not found
    ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
    ProxyServer: [.DEFAULT] => http=127.0.0.1:49261;https=127.0.0.1:49261
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
    HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://fr.search.yahoo.com/yhs/search? ... earchTerms}
    HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
    HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www1.delta-search.com/?babsrc=HP ... 4&tsp=4955
    HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.certified-toolbar.com?si= ... earchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
    SearchScopes: HKLM -> {5C04AB37-9C3F-50A3-332F-27A9B005EA86} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
    SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} URL = http://start.mysearchdial.com/results.p ... 720907&ir=
    SearchScopes: HKLM -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://fr.search.yahoo.com/yhs/search? ... earchTerms}
    SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.certified-toolbar.com?si= ... earchTerms}
    C:\ProgramData\WindowsMangerProtect
    C:\Program Files\MiuiTab
    C:\ProgramData\BrcRbjosYX
    Task: {068C4522-D3C4-485E-9EEA-31E470B23B7E} - System32\Tasks\{B0E93A56-84CE-4CDF-ABAA-C7C3A24C5234} => pcalua.exe -a "C:\Users\hp\AppData\Local\Temp\Temp1_11.5DemoInstallerWIN.zip\11.5 Demo Installer WIN\setup.exe"
    Task: {11C68793-84EF-4800-A7D9-52D3134FEAB0} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION
    Task: {30FCD67F-B835-4E4A-8FA1-1E286FA3089D} - System32\Tasks\{02D08E4C-B02D-44E2-A3E4-CBA91EC351E9} => pcalua.exe -a "C:\Users\hp\AppData\Local\Temp\Temp1_11.5DemoInstallerWIN.zip\11.5 Demo Installer WIN\bin\MAXON Installer.exe"
    Task: {36A4DCCD-2DE5-4530-BAC7-8A1103E26C2B} - System32\Tasks\MySearchDial => C:\Users\hp\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
    Task: {8E812D12-3A06-4F13-BA7A-581A4FB6C529} - System32\Tasks\{646FDC1A-D2F3-4E3B-A257-5A3966E1E097} => pcalua.exe -a C:\Users\hp\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=ima
    Task: {B1E8519F-6C30-4245-B2BC-6164A2FAA3E2} - System32\Tasks\{8576579A-4EC2-4B14-984A-6EC44AA82F39} => pcalua.exe -a C:\ProgramData\BreakingNewsAlert\uninstall.exe -c /kb=y /ic=1
    Task: {D7ADC0E4-697E-4B41-B016-42965E372225} - System32\Tasks\{58483D5D-DD49-4204-B766-5E31996597E1} => pcalua.exe -a "C:\Program Files\RocketDock\unins000.exe"
    Task: {D873DEE2-ABB8-4600-B63D-925E886D8CF8} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files\Protected Search\ProtectedSearch.exe <==== ATTENTION
    Task: C:\Windows\Tasks\MySearchDial.job => C:\Users\hp\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
    EmptyTemp:
  • Menu Fichier / Enregistrer-sous
    Place toi sur le bureau.
    Dans le champs en bas, nom du fichier mets : fixlist.txt
    Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
  • Ferme toutes les applications, y compris ton navigateur
  • Double-clique sur FRST.exe
    /!\ Sous Vista, Windows 7 et 8, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
    Sur le menu principal, clique une seule fois sur Fix et patiente le temps de la correction


    Un redémarrage peut être nécessaire (pas obligatoire).
  • L'outil va créer un rapport de correction Fixlog.txt. Poste ce rapport dans ta réponse.
  • Faire Adwcleaner https://telecharger.malekal.com/download/adwcleaner/ , onglet scan puis ensuite suppression ... un redémarrage peut être demandé. , voir > , et poste le rapport.
  • Dans le cas où vous avez installé des programmes parasites.
    Il peux-être nécessaire de re-paramétrer ses navigateurs WEB.

    ❃ Internet Explorer et modules complémentaires / moteurs de recherche : http://forum.malekal.com/
    ❃ Firefox : http://forum.malekal.com/firefox-extens ... 36057.html
    ❃ Google Chrome : http://forum.malekal.com/google-chrome- ... 35837.html
Avec Gnu_Linux t'as un Noyau ... avec Ѡindows t'as que les pépins
https://helicium.altervista.org/
Supprimer les "virus" gratuitement http://www.supprimer-trojan.com/
Un p'tit Don à Angélique PDT_018 Merci.
Image
madhu

Re: comment supprimer news alert by useful technology

par madhu »

Merci beaucoup pour ton aide.

Je t'envoie le rapport fixlog.txt

"
Fix result of Farbar Recovery Scan Tool (x86) Version: 12-07-2015
Ran by hp at 2015-07-14 16:09:54 Run:1
Running from C:\Users\hp\Desktop
Loaded Profiles: hp & (Available Profiles: hp)
Boot Mode: Normal

==============================================

fixlist content:
*****************
R2 IHProtect Service; C:\Program Files\MiuiTab\ProtectService.exe [125112 2015-06-24] (XTab system)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [707240 2015-07-09] (DTools LIMITED) <==== ATTENTION
R2 WWURTXX; C:\ProgramData\BrcRbjosYX\WWURTXX.exe [2732000 2015-07-09] (Useful Technology)
2015-07-09 13:42 - 2015-07-09 13:42 - 00000000 ____D C:\Program Files\Google
2015-07-09 13:41 - 2015-07-09 13:42 - 00000000 ____D C:\Program Files\MiuiTab
2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 ____D C:\Users\hp\AppData\Local\BreakingNewsAlert
2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 ____D C:\BreakingNewsAlert
2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 _____ C:\Windows\prleth.sys
2015-07-09 13:41 - 2015-07-09 13:41 - 00000000 _____ C:\Windows\hgfs.sys
2015-07-09 13:40 - 2015-07-09 14:06 - 00000000 ____D C:\Program Files\GUPlayer
2015-07-09 13:40 - 2015-07-09 13:42 - 00000000 ____D C:\ProgramData\BrcRbjosYX
2015-07-09 13:40 - 2015-07-09 13:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
2015-07-09 13:40 - 2015-07-09 13:41 - 00000000 ____D C:\ProgramData\BreakingNewsAlert
2015-07-09 11:55 - 2015-07-09 11:56 - 00000000 ____D C:\sh4ldr
2015-07-09 11:55 - 2015-07-09 11:55 - 00000000 ____D C:\Program Files\Enigma Software Group
2015-07-08 15:47 - 2015-07-08 15:55 - 00000000 ____D C:\Users\hp\AppData\Local\Popcorn-Time
2015-07-08 15:43 - 2015-07-09 12:30 - 00000000 ____D C:\Users\hp\AppData\Local\Popcorn Time
2015-07-05 17:45 - 2015-07-05 17:45 - 00000000 ____D C:\Program Files\predm
2015-07-05 17:31 - 2015-07-05 17:31 - 00000000 ____D C:\ProgramData\c4812f0a00005bb3
2015-07-05 17:30 - 2015-07-09 12:31 - 00000000 ____D C:\ProgramData\abc
2015-07-05 17:30 - 2015-07-05 17:30 - 00613255 _____ (CMI Limited) C:\Users\hp\AppData\Local\nsyD3EF.tmp
2015-07-05 17:30 - 2015-07-05 17:30 - 00000000 __SHD C:\Users\hp\AppData\Roaming\AnyProtectEx
2015-07-05 17:29 - 2015-07-05 17:29 - 00000000 ____D C:\Users\hp\Documents\Optimizer Pro
2015-07-05 17:24 - 2015-07-09 12:34 - 00000000 ____D C:\Program Files\Coupoon
2015-07-05 17:24 - 2015-07-09 12:30 - 00000000 ____D C:\Users\hp\AppData\Local\SmartWeb
2015-07-05 17:15 - 2015-07-09 12:31 - 00000000 ____D C:\ProgramData\ZombieNews
2015-07-05 17:15 - 2015-07-09 12:31 - 00000000 ____D C:\ProgramData\vLnXrxe
2015-07-05 17:15 - 2015-07-09 12:30 - 00000000 ____D C:\Users\hp\AppData\Roaming\3CBC2226-1436109335-11DF-B79B-0AC05F0660C7
2015-07-05 16:59 - 2015-07-09 13:41 - 00000000 ____D C:\ProgramData\WindowsMangerProtect
2015-07-05 16:59 - 2015-07-05 16:59 - 00000000 ____D C:\ProgramData\IHProtectUpDate
2015-07-05 16:56 - 2015-07-05 16:56 - 00631216 _____ C:\Users\hp\Downloads\All Hacks In A Mega Pack V9 23 Downloader (1).zip
2015-07-05 16:54 - 2015-07-05 16:54 - 00000000 ____D C:\Users\hp\AppData\Local\Prompt Downloader
2015-07-05 16:51 - 2015-07-05 20:41 - 00000000 ____D C:\Users\hp\AppData\Roaming\Store
2015-07-05 16:51 - 2015-07-05 20:36 - 00000000 ____D C:\Users\hp\AppData\Roaming\WTools
2015-07-09 18:49 - 2013-07-07 19:09 - 00000280 _____ C:\Windows\Tasks\MySearchDial.job
C:\Users\hp\AppData\Local\Temp\0fa45413-d77b-4013-9fb3-0c635fb8cd7c.exe
C:\Users\hp\AppData\Local\Temp\a1c2fffd-d641-49c0-9ac8-1c67b8630775.exe
C:\Users\hp\AppData\Local\Temp\AutoRun.exe
C:\Users\hp\AppData\Local\Temp\d17c485e-a4cc-4dc8-ba18-6bf8ef0e7d72.exe
C:\Users\hp\AppData\Local\Temp\drm_dialogs.dll
C:\Users\hp\AppData\Local\Temp\f2d45eaf-09d0-4c83-ac6a-37fd5a12ddcd.exe
C:\Users\hp\AppData\Local\Temp\Runner.exe
C:\Users\hp\AppData\Local\Temp\sdfB76C.exe
2015-07-09 12:31 - 2014-01-16 14:04 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {1B7DF7E7-B00D-40B5-9457-89053B7D7060} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {5C04AB37-9C3F-50A3-332F-27A9B005EA86} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2332270732-3940870431-4089736415-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.mystartsearch.com/web/?utm_s ... default&q={searchTerms}
BHO: LuckyTab Class -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> C:\Program Files\MiuiTab\SupTab.dll [2015-06-24] (Thinknice Co. Limited)
Toolbar: HKLM - No Name - {7C68E87F-4487-4AE5-BBC2-C398C530DE9A} - No File
FF HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\...\Firefox\Extensions: [{71524336-70b1-48ef-9014-3c537fb12c7b}] - C:\Program Files\LyricsPal\130.xpi
CHR Extension: (Newtab) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pflphaooapbgpeakohlggbpidpppgdff [2015-07-08]
CHR HKLM\...\Chrome\Extension: [mmiopbgcekanlhpjkonogoljpfmhpkhf] - No Path Or update_url value
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\hp\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-07]
CHR HKLM\...\Chrome\Extension: [pnbbffeddnekkhjmokkhdebbfbibbflc] - C:\Program Files\LyricsPal\130.crx [Not Found]
CHR HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\hp\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-07-07]

StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.qvo6.com/?utm_source=b&utm_m ... 1373311788
AppInit_DLLs: c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll => c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll File not found
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled
ProxyServer: [.DEFAULT] => http=127.0.0.1:49261;https=127.0.0.1:49261
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... VG3EJYK&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... VG3EJYK&q={searchTerms}
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,Search Page = https://fr.search.yahoo.com/yhs/search? ... yhs-001&p={searchTerms}
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www1.delta-search.com/?babsrc=HP ... 4&tsp=4955
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... S_5VG3EJYK
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... VG3EJYK&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.certified-toolbar.com?si= ... tid=592&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type= ... VG3EJYK&q={searchTerms}
SearchScopes: HKLM -> {5C04AB37-9C3F-50A3-332F-27A9B005EA86} URL = http://dts.search-results.com/sr?src=ie ... 14&sr=0&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} URL = http://start.mysearchdial.com/results.p ... 720907&ir=
SearchScopes: HKLM -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://fr.search.yahoo.com/yhs/search? ... yhs-001&p={searchTerms}
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.certified-toolbar.com?si= ... tid=592&q={searchTerms}
C:\ProgramData\WindowsMangerProtect
C:\Program Files\MiuiTab
C:\ProgramData\BrcRbjosYX
Task: {068C4522-D3C4-485E-9EEA-31E470B23B7E} - System32\Tasks\{B0E93A56-84CE-4CDF-ABAA-C7C3A24C5234} => pcalua.exe -a "C:\Users\hp\AppData\Local\Temp\Temp1_11.5DemoInstallerWIN.zip\11.5 Demo Installer WIN\setup.exe"
Task: {11C68793-84EF-4800-A7D9-52D3134FEAB0} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION
Task: {30FCD67F-B835-4E4A-8FA1-1E286FA3089D} - System32\Tasks\{02D08E4C-B02D-44E2-A3E4-CBA91EC351E9} => pcalua.exe -a "C:\Users\hp\AppData\Local\Temp\Temp1_11.5DemoInstallerWIN.zip\11.5 Demo Installer WIN\bin\MAXON Installer.exe"
Task: {36A4DCCD-2DE5-4530-BAC7-8A1103E26C2B} - System32\Tasks\MySearchDial => C:\Users\hp\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {8E812D12-3A06-4F13-BA7A-581A4FB6C529} - System32\Tasks\{646FDC1A-D2F3-4E3B-A257-5A3966E1E097} => pcalua.exe -a C:\Users\hp\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=ima
Task: {B1E8519F-6C30-4245-B2BC-6164A2FAA3E2} - System32\Tasks\{8576579A-4EC2-4B14-984A-6EC44AA82F39} => pcalua.exe -a C:\ProgramData\BreakingNewsAlert\uninstall.exe -c /kb=y /ic=1
Task: {D7ADC0E4-697E-4B41-B016-42965E372225} - System32\Tasks\{58483D5D-DD49-4204-B766-5E31996597E1} => pcalua.exe -a "C:\Program Files\RocketDock\unins000.exe"
Task: {D873DEE2-ABB8-4600-B63D-925E886D8CF8} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files\Protected Search\ProtectedSearch.exe <==== ATTENTION
Task: C:\Windows\Tasks\MySearchDial.job => C:\Users\hp\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
EmptyTemp:
*****************

IHProtect Service => Service stopped successfully.
IHProtect Service => Service removed successfully.
WindowsMangerProtect => Service stopped successfully.
WindowsMangerProtect => Service removed successfully.
WWURTXX => Unable to stop service.
WWURTXX => Service removed successfully.
C:\Program Files\Google => moved successfully.
C:\Program Files\MiuiTab => moved successfully.
C:\Users\hp\AppData\Local\BreakingNewsAlert => moved successfully.
C:\BreakingNewsAlert => moved successfully.
C:\Windows\prleth.sys => moved successfully.
C:\Windows\hgfs.sys => moved successfully.
C:\Program Files\GUPlayer => moved successfully.

"C:\ProgramData\BrcRbjosYX" folder move:

Could not move "C:\ProgramData\BrcRbjosYX" folder => Scheduled to move on reboot.

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip => moved successfully.
C:\ProgramData\BreakingNewsAlert => moved successfully.
C:\sh4ldr => moved successfully.
C:\Program Files\Enigma Software Group => moved successfully.
C:\Users\hp\AppData\Local\Popcorn-Time => moved successfully.
C:\Users\hp\AppData\Local\Popcorn Time => moved successfully.
C:\Program Files\predm => moved successfully.
C:\ProgramData\c4812f0a00005bb3 => moved successfully.
C:\ProgramData\abc => moved successfully.
C:\Users\hp\AppData\Local\nsyD3EF.tmp => moved successfully.
C:\Users\hp\AppData\Roaming\AnyProtectEx => moved successfully.
C:\Users\hp\Documents\Optimizer Pro => moved successfully.
C:\Program Files\Coupoon => moved successfully.
C:\Users\hp\AppData\Local\SmartWeb => moved successfully.
C:\ProgramData\ZombieNews => moved successfully.
C:\ProgramData\vLnXrxe => moved successfully.
C:\Users\hp\AppData\Roaming\3CBC2226-1436109335-11DF-B79B-0AC05F0660C7 => moved successfully.
C:\ProgramData\WindowsMangerProtect => moved successfully.
C:\ProgramData\IHProtectUpDate => moved successfully.
C:\Users\hp\Downloads\All Hacks In A Mega Pack V9 23 Downloader (1).zip => moved successfully.
C:\Users\hp\AppData\Local\Prompt Downloader => moved successfully.
C:\Users\hp\AppData\Roaming\Store => moved successfully.
C:\Users\hp\AppData\Roaming\WTools => moved successfully.
C:\Windows\Tasks\MySearchDial.job => moved successfully.
C:\Users\hp\AppData\Local\Temp\0fa45413-d77b-4013-9fb3-0c635fb8cd7c.exe => moved successfully.
C:\Users\hp\AppData\Local\Temp\a1c2fffd-d641-49c0-9ac8-1c67b8630775.exe => moved successfully.
C:\Users\hp\AppData\Local\Temp\AutoRun.exe => moved successfully.
C:\Users\hp\AppData\Local\Temp\d17c485e-a4cc-4dc8-ba18-6bf8ef0e7d72.exe => moved successfully.
C:\Users\hp\AppData\Local\Temp\drm_dialogs.dll => moved successfully.
C:\Users\hp\AppData\Local\Temp\f2d45eaf-09d0-4c83-ac6a-37fd5a12ddcd.exe => moved successfully.
C:\Users\hp\AppData\Local\Temp\Runner.exe => moved successfully.
C:\Users\hp\AppData\Local\Temp\sdfB76C.exe => moved successfully.
C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam => moved successfully.
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => value removed successfully.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => key removed successfully.
HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1B7DF7E7-B00D-40B5-9457-89053B7D7060}" => key removed successfully.
HKCR\CLSID\{1B7DF7E7-B00D-40B5-9457-89053B7D7060} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" => key removed successfully.
HKCR\CLSID\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => key removed successfully.
HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909}" => key removed successfully.
HKCR\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5C04AB37-9C3F-50A3-332F-27A9B005EA86}" => key removed successfully.
HKCR\CLSID\{5C04AB37-9C3F-50A3-332F-27A9B005EA86} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}" => key removed successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}" => key removed successfully.
HKCR\CLSID\{9CB96984-43C3-4D44-90EF-01466EFCF7BB} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => key removed successfully.
HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => key not found.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}" => key removed successfully.
HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}" => key removed successfully.
HKCR\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{7C68E87F-4487-4AE5-BBC2-C398C530DE9A} => value not found.
HKCR\CLSID\{7C68E87F-4487-4AE5-BBC2-C398C530DE9A} => key not found.
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Mozilla\Firefox\Extensions\\{71524336-70b1-48ef-9014-3c537fb12c7b} => value removed successfully.
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pflphaooapbgpeakohlggbpidpppgdff => moved successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\mmiopbgcekanlhpjkonogoljpfmhpkhf" => key removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff" => key removed successfully.
C:\Users\hp\AppData\Local\mysearchdial_speedial_v9.0.2.crx => moved successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\pnbbffeddnekkhjmokkhdebbfbibbflc" => key removed successfully.
"HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff" => key removed successfully.
"C:\Users\hp\AppData\Local\mysearchdial_speedial_v9.0.2.crx" => File/Folder not found.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => value restored successfully
"c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll" => value data removed successfully..
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => value removed successfully.
HKU\S-1-5-21-2332270732-3940870431-4089736415-1000\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => key removed successfully.
HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5C04AB37-9C3F-50A3-332F-27A9B005EA86}" => key removed successfully.
HKCR\CLSID\{5C04AB37-9C3F-50A3-332F-27A9B005EA86} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414}" => key removed successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2414} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}" => key removed successfully.
HKCR\CLSID\{9CB96984-43C3-4D44-90EF-01466EFCF7BB} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => key removed successfully.
HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => key not found.
"C:\ProgramData\WindowsMangerProtect" => File/Folder not found.
"C:\Program Files\MiuiTab" => File/Folder not found.

"C:\ProgramData\BrcRbjosYX" folder move:

Could not move "C:\ProgramData\BrcRbjosYX" folder => Scheduled to move on reboot.

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{068C4522-D3C4-485E-9EEA-31E470B23B7E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{068C4522-D3C4-485E-9EEA-31E470B23B7E}" => key removed successfully.
C:\Windows\System32\Tasks\{B0E93A56-84CE-4CDF-ABAA-C7C3A24C5234} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B0E93A56-84CE-4CDF-ABAA-C7C3A24C5234}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{11C68793-84EF-4800-A7D9-52D3134FEAB0}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11C68793-84EF-4800-A7D9-52D3134FEAB0}" => key removed successfully.
C:\Windows\System32\Tasks\Desk 365 RunAsStdUser => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{30FCD67F-B835-4E4A-8FA1-1E286FA3089D}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30FCD67F-B835-4E4A-8FA1-1E286FA3089D}" => key removed successfully.
C:\Windows\System32\Tasks\{02D08E4C-B02D-44E2-A3E4-CBA91EC351E9} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{02D08E4C-B02D-44E2-A3E4-CBA91EC351E9}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{36A4DCCD-2DE5-4530-BAC7-8A1103E26C2B}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36A4DCCD-2DE5-4530-BAC7-8A1103E26C2B}" => key removed successfully.
C:\Windows\System32\Tasks\MySearchDial => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MySearchDial" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8E812D12-3A06-4F13-BA7A-581A4FB6C529}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E812D12-3A06-4F13-BA7A-581A4FB6C529}" => key removed successfully.
C:\Windows\System32\Tasks\{646FDC1A-D2F3-4E3B-A257-5A3966E1E097} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{646FDC1A-D2F3-4E3B-A257-5A3966E1E097}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B1E8519F-6C30-4245-B2BC-6164A2FAA3E2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B1E8519F-6C30-4245-B2BC-6164A2FAA3E2}" => key removed successfully.
C:\Windows\System32\Tasks\{8576579A-4EC2-4B14-984A-6EC44AA82F39} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8576579A-4EC2-4B14-984A-6EC44AA82F39}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D7ADC0E4-697E-4B41-B016-42965E372225}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7ADC0E4-697E-4B41-B016-42965E372225}" => key removed successfully.
C:\Windows\System32\Tasks\{58483D5D-DD49-4204-B766-5E31996597E1} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{58483D5D-DD49-4204-B766-5E31996597E1}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D873DEE2-ABB8-4600-B63D-925E886D8CF8}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D873DEE2-ABB8-4600-B63D-925E886D8CF8}" => key removed successfully.
C:\Windows\System32\Tasks\ProtectedSearch\Protected Search => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProtectedSearch\Protected Search" => key removed successfully.
C:\Windows\Tasks\MySearchDial.job not found.
EmptyTemp: => 10.1 GB temporary data Removed.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-07-14 16:14:28)<=

C:\ProgramData\BrcRbjosYX => is moved successfully
C:\ProgramData\BrcRbjosYX => is moved successfully

==== End of Fixlog 16:14:28 ====
"
Malekal_morte
Messages : 113181
Inscription : 10 sept. 2005 13:57

Re: comment supprimer news alert by useful technology

par Malekal_morte »

Fais le reste de la procédure.
Première règle élémentaire de sécurité : on réfléchit puis on clic et pas l'inverse - Les fichiers/programmes c'est comme les bonbons, quand ça vient d'un inconnu, on n'accepte pas !
Comment protéger son PC des virus
Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11

Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
madhu

Re: comment supprimer news alert by useful technology

par madhu »

D'acc, mais voilà j'ai un nouveau problème sans faire exprès j'ai supprimé le programme pour le son et je ne sais pas comment faire. Mon pc est un HP ProBook 4170s. pouvez-vous m'aider s'il vous plait?
Avatar de l’utilisateur
angelique
Messages : 31842
Inscription : 28 févr. 2008 13:58
Localisation : Breizhilienne

Re: comment supprimer news alert by useful technology

par angelique »

c'est pas plutot HP ProBook 4710s Notebook PC ???

http://h20565.www2.hp.com/hpsc/swd/publ ... nvOid=4054
Avec Gnu_Linux t'as un Noyau ... avec Ѡindows t'as que les pépins
https://helicium.altervista.org/
Supprimer les "virus" gratuitement http://www.supprimer-trojan.com/
Un p'tit Don à Angélique PDT_018 Merci.
Image
madhu

Re: comment supprimer news alert by useful technology

par madhu »

c'est bon j'ai retrouvé le son, merci pour ton aide angelique!
  • Sujets similaires
    Réponses
    Vues
    Dernier message

Revenir à « Supprimer/Desinfecter les virus (Trojan, Adwares, Ransomwares, Backdoor, Spywares) »