###### Ultra adware killer removal report ###### Ultra Adware Killer version: 7.5.4.0 (64bits). Removal start time: 2019/01/14 09:09:28. ->Begin removal of the selected programs... Hotspot Shield: Successfully removed. Baidu: Successfully removed. Advanced Identity Protector: Successfully removed. ->Begin repair of the selected Autostart items... Successfully removed DNS hijacker "156.154.70.25,156.154.71.25" for (All users). Successfully removed autostart scheduled task "User_Feed_Synchronization-{894F9756-3BDE-4E8A-AC50-A7CC1E86F4AD}" for (All users). Successfully removed autostart scheduled task "Uninstaller_SkipUac_Jean-Marie" for (All users). Successfully removed autostart scheduled task "SmartyUninstallerLauncher" for (All users). Successfully removed autostart scheduled task "Process Lasso Management Console (GUI)" for (All users). Successfully removed autostart scheduled task "Process Lasso Core Engine Only" for (All users). Successfully removed autostart scheduled task "PowerDirectorStyleAgent" for (All users). Successfully removed autostart scheduled task "Opera scheduled Autoupdate 1536011848" for (All users). Successfully removed autostart scheduled task "OneSafe PC Cleaner automatic scan and notifications" for (All users). Successfully removed autostart scheduled task "GoogleUpdateTaskMachineUA" for (All users). Successfully removed autostart scheduled task "GoogleUpdateTaskMachineCore1d4a1bec409fa5e" for (All users). Successfully removed autostart scheduled task "GoogleUpdateTaskMachineCore" for (All users). Successfully removed autostart scheduled task "DropboxUpdateTaskMachineUA" for (All users). Successfully removed autostart scheduled task "DropboxUpdateTaskMachineCore" for (All users). Successfully removed autostart scheduled task "CorelUpdateHelperTaskCore" for (All users). Successfully removed autostart scheduled task "CCAVPostInstall" for (All users). Successfully removed autostart scheduled task "Avast Emergency Update" for (All users). Successfully removed autostart scheduled task "ASCU_ASCTray_Auto" for (All users). Successfully removed autostart scheduled task "ASCU11_SkipUac_Jean-Marie" for (All users). Successfully removed autostart scheduled task "ASCU11_PerformanceMonitor" for (All users). Successfully removed autostart scheduled task "AdobeGCInvoker-1.0-MicrosoftAccount-jean-marie.carribon@wanadoo.fr" for (All users). Successfully removed autostart scheduled task "Adobe Acrobat Update Task" for (All users). Successfully removed autostart registry value "Wondershare Helper Compact.exe" for (All users). Successfully removed autostart registry value "AdobeGCInvoker-1.0" for (All users). Successfully removed autostart registry value "Free Download Manager" for Jean-Marie. ->Begin repair of the selected Microsoft Edge items... No items selected in this group. ->Begin repair of the selected Internet Explorer items... Successfully reset IE's DOM Storage for Jean-Marie. Successfully fixed IE shortcut "AdsFix_Donate.lnk" for Jean-Marie. Successfully deleted IE Ad-on "Deployment Toolkit" for (All users). Successfully deleted IE Ad-on "{75579960-3DAF-4389-9CFA-C2BB270C91E6}" for (All users). Successfully deleted IE Ad-on "{53707962-6F74-2D53-2644-206D7942484F}" for (All users). Successfully deleted IE Ad-on "{27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5}" for (All users). Successfully deleted IE Ad-on "IDM integration (IDMIEHlprObj Class)" for Système. Successfully deleted IE Ad-on "{9BE66CC0-1DD1-11B2-8617-E3A3ED26E3B0}" for Jean-Marie. Successfully deleted IE Ad-on "VLC ActiveX Plugin and IE Web Plugin v2" for Jean-Marie. Successfully deleted IE Ad-on "IDMDwnlMgr Class" for Jean-Marie. Successfully deleted IE Ad-on "{53707962-6F74-2D53-2644-206D7942484F}" for Jean-Marie. Successfully deleted IE Ad-on "{27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5}" for Jean-Marie. Successfully deleted IE Ad-on "{B164E929-A1B6-4A06-B104-2CD0E90A88FF}" for Jean-Marie. Successfully deleted IE Ad-on "IDM integration (IDMIEHlprObj Class)" for Jean-Marie. Successfully deleted IE Ad-on "Block miscellaneous advertisements" for Jean-Marie. Successfully deleted IE search provider eBay for (All users). Successfully deleted IE search provider Yahoo for (All users). Successfully deleted IE search provider Propositions de recherche Amazon.fr for (All users). Successfully deleted IE search provider eBay for (All users). Successfully deleted IE search provider Yahoo for (All users). Successfully deleted IE search provider Propositions de recherche Amazon.fr for (All users). Successfully deleted IE search provider eBay for DefaultUser. Successfully deleted IE search provider Yahoo for DefaultUser. Successfully deleted IE search provider Propositions de recherche Amazon.fr for DefaultUser. Successfully deleted IE search provider Ask.com for DefaultUser. Successfully deleted IE search provider eBay for postgres. Successfully deleted IE search provider Yahoo for postgres. Successfully deleted IE search provider Propositions de recherche Amazon.fr for postgres. Successfully deleted IE search provider eBay for Jean-Marie. Successfully deleted IE search provider Yahoo for Jean-Marie. Successfully deleted IE search provider Recherche for Jean-Marie. Successfully deleted IE search provider Mon Convertisseur - Powered by Yahoo! for Jean-Marie. Successfully deleted IE search provider Propositions de recherche Amazon.fr for Jean-Marie. Successfully deleted IE search provider Obtenez Emails - Powered by Yahoo! for Jean-Marie. ->Begin repair of the selected Google Chrome items... Successfully fixed Chrome shortcut "Goodgame Empire.lnk" for Jean-Marie. Successfully fixed Chrome shortcut "Goodgame Big Farm.lnk" for Jean-Marie. Successfully fixed Chrome shortcut "Goodgame Big Farm.lnk" for Jean-Marie. ->Begin repair of the selected Firefox items... Successfully Reset Firefox Settings for Jean-Marie. Successfully Reset Firefox User Search Providers for Jean-Marie. Successfully Reset Firefox Extensions for Jean-Marie. Successfully Reset Firefox Ad-ons for Jean-Marie. ->Begin repair of the selected Malware items... Successfully removed infected file: C:\SkinPack\uninst.exe. Successfully repaired infected registry entry: HKLM32\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SkinPack. Successfully removed infected file: C:\Users\Jean-Marie\Desktop\LFS Hyper & UEFM Suite 2018.39\processclose_2_08.01.17.1 (1).exe. Successfully repaired infected registry entry: HKU\S-1-5-21-324915258-2866797553-3726413251-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache / C:\Users\Jean-Marie\Desktop\LFS Hyper & UEFM Suite 2018.39\processclose_2_08.01.17.1 (1).exe.FriendlyAppName. Successfully repaired infected registry entry: HKU\S-1-5-21-324915258-2866797553-3726413251-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache / C:\Users\Jean-Marie\Desktop\LFS Hyper & UEFM Suite 2018.39\processclose_2_08.01.17.1 (1).exe.ApplicationCompany. Successfully removed infected file: C:\Users\Jean-Marie\Desktop\processclose_2_08.01.17.1.exe. Successfully repaired infected registry entry: HKU\S-1-5-21-324915258-2866797553-3726413251-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache / C:\Users\Jean-Marie\Desktop\processclose_2_08.01.17.1.exe.FriendlyAppName. Successfully repaired infected registry entry: HKU\S-1-5-21-324915258-2866797553-3726413251-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache / C:\Users\Jean-Marie\Desktop\processclose_2_08.01.17.1.exe.ApplicationCompany. Successfully removed infected file: C:\Program Files (x86)\PDF-to-Word\demos\pdf2word.exe. Successfully removed infected file: C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF-to-Word\PDF-to-Word Demo.lnk. Successfully removed infected file: C:\OneSafe PC Cleaner\OneSafePCCleaner.exe. Successfully removed infected file: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe PC Cleaner\Güncellemeleri kontrol et.lnk. Successfully removed infected file: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe PC Cleaner\OneSafe PC Cleaner.lnk. Successfully removed infected file: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneSafe PC Cleaner\Vérifiez les mises à jour.lnk. Successfully removed infected file: C:\OneSafe PC Cleaner\OSPCNotifications.exe. Successfully executed repair action: Empty temporary folders. Failed to execute repair action: Run an SFC scan. Successfully executed repair action: Repair Windows with DISM. ->End of the removal process. Time: 2019/01/14 09:10:48 ###### End of the removal report 17735 bytes ######