--------------- QuickScript | g3n-h@ckm@n | 2_23.09.2016.1 ---------------
----- XP | Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- - Start 06/10/2016 21:29:55
Updated 23/09/2016 | 10.30 by g3n-h@ckm@n
Contact :
http://www.sosvirus.net/
Time Zone : (UTC+01:00) Bruxelles, Copenhague, Madrid, Paris
[jean-yves (Administrator)] - [JEAN-YVES-PC] (S-1-5-21-1877240786-633553326-4251716503-1001)
System: Microsoft Windows 7 Édition Familiale Premium - Service Pack 1 - (6.1.7601) - BuildType: Multiprocessor Free - OSLanguage: 1036 (040c)
System: AutoReboot: True - DebugFilePath: %SystemRoot%\MEMORY.DMP - KernelDumpOnly: False - OverwriteExistingDebugFile: True - WriteDebugInfo: True - WriteToSystemLog: True
Boot : Microsoft Windows 7 Édition Familiale Premium |C:\Windows|\Device\Harddisk0\Partition2
Boot : Normal boot
PC: K53SD - ASUSTeK Computer Inc. - IdNumber: C5N0AS666645218 - UUID: D45D7380-A880-81E1-34D4-10BF482A5982
Processor : X64 - 2294 Mhz - Intel(R) Core(TM) i3-2350M CPU @ 2.30GHz
BIOS Date: 03/06/12 14:39:25 Ver: 04.06.03 - eng - American Megatrends Inc. - S/N: C5N0AS666645218 - K53SD.205 - _ASUS_ - 6222004
CoreTemp : 32 Celsius
----------| Script
Value : [HKU\S-1-5-21-1877240786-633553326-4251716503-1001\Software\Microsoft\Windows\CurrentVersion\Run]~[GoogleChromeAutoLaunch_55256C15BEB05E470CB49881C0E34349] Deleted Successfully
Key : [HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\37CF1DC661DB625171EF4C0C6A95DA7818EEA5BF._service_run] Deleted Successfully
Key : [HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\avgnt] Deleted Successfully
Key : [HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] Deleted Successfully
Key : [HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Speedup_umh] Deleted Successfully
[HKU\S-1-5-21-1877240786-633553326-4251716503-1001\Software\Microsoft\Internet Explorer\Main]~[Default_Page_URL] :
https://www.google.com -> Set Successfully
[HKLM\Software\Microsoft\Internet Explorer\Main]~[Default_Page_URL] :
https://www.google.com -> Set Successfully
[HKLM\Software\WOW6432NODE\Microsoft\Internet Explorer\Main]~[Default_Page_URL] :
https://www.google.com -> Set Successfully
Key : [HKU\S-1-5-21-1877240786-633553326-4251716503-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}] Deleted Successfully
Key : [HKU\S-1-5-21-1877240786-633553326-4251716503-1001\Software\Akamai] Not Found !
Key : [HKLM\Software\McAfee.com] Deleted Successfully
Key : [HKLM\Software\WOW6432Node\Avira] Deleted Successfully
Value : [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]~[TCP Query User{3D7E7635-3E40-4B77-B6D2-653A881C105A}C:\users\jean-yves\appdata\local\akamai\netsession_win.exe] Deleted Successfully
Value : [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]~[UDP Query User{1C50BD41-6B24-4347-B1ED-8960214976B5}C:\users\jean-yves\appdata\local\akamai\netsession_win.exe] Deleted Successfully
Key : [HKU\S-1-5-21-1877240786-633553326-4251716503-1001\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Akamai] Not Found !
Task {2A1957C9-A237-4D80-888E-C3FD4F1D3C98} Not Found !
Task {D933D0D8-C4FB-4773-AEA8-07AAFB5C8020} Not Found !
C:\Users\jean-yves\AppData\Roaming\Mozilla\Firefox\Profiles\cBLs95hg.default\Extensions\
abs@avira.com Moved Successfully
C:\MiNi-Image.dll Moved Successfully
C:\minidir.exeC:\miniima.exe Not Found !
C:\No-MiNi.reg Moved Successfully
C:\{643072FA-6313-4F9E-826D-CF145B9D3F67} Moved Successfully
C:\{E9834431-7F40-4CA8-ABFF-2D45B04EE23D} Moved Successfully
C:\Windows\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP Moved Successfully
C:\Windows\€óÉ Moved Successfully
C:\Windows\Installer\1d0ea3.msi Moved Successfully
C:\Users\jean-yves\AppData\Roaming\ZoomBrowser EX Moved Successfully
C:\Users\jean-yves\AppData\Local\Akamai Not Found !
C:\Users\jean-yves\AppData\Local\avgchrome Moved Successfully
C:\Users\jean-yves\AppData\Local\Avira Moved Successfully
C:\Users\jean-yves\AppData\Local\AviraSpeedup Moved Successfully
C:\Users\SIMONE\AppData\Local\Avira Moved Successfully
C:\Users\SIMONE\AppData\Local\AviraSpeedup Moved Successfully
C:\Program Files (x86)\Avira Moved Successfully
C:\Windows\System32\Tasks\{2A1957C9-A237-4D80-888E-C3FD4F1D3C98} Moved Successfully
C:\Windows\System32\Tasks\{D933D0D8-C4FB-4773-AEA8-07AAFB5C8020} Moved Successfully
-------------- | ADS
Deleted : @C:\ProgramData\Temp:373C6DC2
Deleted : @C:\ProgramData\Temp:AC57032B
-------------- | CleanDisk :
FreeSpace : 38071
Cleaning.......
FreeSpace : 38078
----------(EOF)----------