Fenetres intempestive + connection hotmail impossible

Résolu/Fermé
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014 - 30 nov. 2014 à 11:58
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 30 nov. 2014 à 22:15
Bonjour !!
N'etant pas douée avec l'informatique je ne comprend pas le pb qui m'arrive.
J'ai un petit pc hp sous windows 7. j'ai récemment desinstaller tous les programmes dont je ne me servait pas car il était très lent et avait bcp de bugs. Maintenant ca va> SAUF qu'a présent j'ai systématiquement des fenêtres qui s'affichent qd j'ouvre une page sous google chrome. Des pages pour des antivirus, pour des jeux etc.. LE PIRE c'est que je ne peux plus me connecter a ma boite HOTMAIL, ayant une pub qui se met sur mes identifiants.

J'ai fais : analyse antivirus, ccleaner.

Je serait ravie d'avoir des conseils :S

Merci beaucoup !!

10 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
Modifié par Malekal_morte- le 30/11/2014 à 11:59
Salut,

Tu as installé des adwares et programmes parasites sur ton PC.
Voici la procédure à suivre pour les supprimer :

Commence par ceci :

Télécharge https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= AdwCleaner ( d'Xplode ) sur ton bureau.
Sur la page d'AdwCleaner, à droite, clic sur la disquette grise avec la flèche verte pour lancer le téléchargement.
Lance AdwCleaner, clique sur [Scanner].
Le scan peux durer plusieurs minutes, patienter.
Une fois le scan terminé, clique sur [Nettoyer]

Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.
Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt





puis :


Suis ce tutorial : https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Cela va générer deux rapports FRST.
Envoie comme expliqué, ces deux rapports sur le site pjjoint et donne les deux liens pjjoint de ces rapports afin qu'ils puissent être consultés.


Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 14:31
# AdwCleaner v4.102 - Report created 30/11/2014 at 14:00:13
# Updated 23/11/2014 by Xplode
# Database : 2014-11-27.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Chloe - CHLOE-HP
# Running from : C:\Users\Chloe\Downloads\adwcleaner_4.102 (1).exe
# Option : Clean

***** [ Services ] *****

Service Deleted : IePluginServices
Service Deleted : WindowsMangerProtect
Service Deleted : 892cc6a3

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\374311380
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\IePluginServices
Folder Deleted : C:\ProgramData\MovieMode
Folder Deleted : C:\ProgramData\Performance Optimizer
Folder Deleted : C:\ProgramData\topdeal
Folder Deleted : C:\ProgramData\WindowsMangerProtect
Folder Deleted : C:\ProgramData\dealster
Folder Deleted : C:\ProgramData\ProShopper
Folder Deleted : C:\ProgramData\WowCoupon
Folder Deleted : C:\ProgramData\237893b54e3883ff
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam
Folder Deleted : C:\Program Files (x86)\PC Speed Maximizer
Folder Deleted : C:\Program Files (x86)\SupTab
Folder Deleted : C:\Program Files (x86)\Wajam
Folder Deleted : C:\Users\Chloe\AppData\Local\MovieMode
Folder Deleted : C:\Users\Chloe\AppData\Local\Systweak
Folder Deleted : C:\Users\Chloe\AppData\Roaming\istartsurf
Folder Deleted : C:\Users\Chloe\AppData\Roaming\Nosibay
Folder Deleted : C:\Users\Chloe\AppData\Roaming\Store
Folder Deleted : C:\Users\Chloe\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Chloe\Documents\PC Speed Maximizer
Folder Deleted : C:\Users\Guest\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Guest.Chloe-HP\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Guest.Chloe-HP\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Guest.Chloe-HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaajpkhjdkhhnkmgfjodbkfpbmibkkk
Folder Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Users\Chloe\AppData\Roaming\Bubble Dock.boostrap.log
File Deleted : C:\Users\Chloe\AppData\Roaming\LiveSupport.exe_log.txt
File Deleted : C:\Users\Chloe\AppData\Roaming\regsvr32.exe_log.txt
File Deleted : C:\Users\Chloe\AppData\Roaming\WindApp.boostrap.log
File Deleted : C:\Users\Chloe\AppData\Roaming\Bubble Dock.installation.log
File Deleted : C:\Users\Chloe\AppData\Roaming\WindApp.installation.log
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.livelyrics00.live-lyrics.com_0.localstorage
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.livelyrics00.live-lyrics.com_0.localstorage-journal
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****

Task Deleted : WindApp Update

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Chloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Chloe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Chloe\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Chloe\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WindApp]
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\Classes\WowCoupon.WowCoupon
Key Deleted : HKLM\SOFTWARE\Classes\WowCoupon.WowCoupon.9
Key Deleted : HKLM\SOFTWARE\Classes\.
Key Deleted : HKLM\SOFTWARE\Classes\..9
Key Deleted : HKLM\SOFTWARE\Classes\ProShopper.ProShopper
Key Deleted : HKLM\SOFTWARE\Classes\ProShopper.ProShopper.9
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{892cc6a3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31076e7d-7e00-4c2b-afd7-25e09df07872}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8966314a-9416-4a3a-bd1b-c20a7da694dd}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{a3ce71b5-8426-4298-8310-fcb7ee48285b}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{a74c2a42-bfd1-4d4b-9325-20e3ee0073e8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31076e7d-7e00-4c2b-afd7-25e09df07872}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8966314a-9416-4a3a-bd1b-c20a7da694dd}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a3ce71b5-8426-4298-8310-fcb7ee48285b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a74c2a42-bfd1-4d4b-9325-20e3ee0073e8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{31076e7d-7e00-4c2b-afd7-25e09df07872}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8966314a-9416-4a3a-bd1b-c20a7da694dd}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a3ce71b5-8426-4298-8310-fcb7ee48285b}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a74c2a42-bfd1-4d4b-9325-20e3ee0073e8}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31076e7d-7e00-4c2b-afd7-25e09df07872}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{8966314a-9416-4a3a-bd1b-c20a7da694dd}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{a3ce71b5-8426-4298-8310-fcb7ee48285b}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{a74c2a42-bfd1-4d4b-9325-20e3ee0073e8}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31076e7d-7e00-4c2b-afd7-25e09df07872}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8966314a-9416-4a3a-bd1b-c20a7da694dd}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a3ce71b5-8426-4298-8310-fcb7ee48285b}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a74c2a42-bfd1-4d4b-9325-20e3ee0073e8}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : HKCU\Software\Nosibay
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Store
Key Deleted : HKCU\Software\SupHpUISoft
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\Wajam
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\istartsurfSoftware
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\SupTab
Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\supWPM
Key Deleted : HKLM\SOFTWARE\systweak
Key Deleted : HKLM\SOFTWARE\Wajam
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\windapp
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1B8A71D1-31D4-EE6A-C32F-836E0BFFA6D3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MovieMode
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5E03DFA7-51FC-7C12-CEE5-4D75FBB01E8F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8F213470-964F-4092-6B31-BC7570F31B5A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9B149088-3FB6-875E-C1A4-A25A6E9D278D}
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~3\perfor~1\perfor~1.dll
Data Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~3\PERFOR~1\PERFOR~2.DLL

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420

Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v36.0.1985.143

[C:\Users\Chloe\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : pelmeidfhdlhlbjimpabfcbnnojbboma
[C:\Users\Guest.Chloe-HP\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-V7&o=APN10452&l=dis&pf=&p2=%5EAKE%5EOSJ000%5EYY%5EFR&gct=&itbv=12.0.1.100&doi=2013-06-29&apn_uid=E1ABEC13-B412-440E-BB9C-22C2615F0924&apn_ptnrs=AKE&apn_dtid=%5EOSJ000%5EYY%5EFR&apn_dbr=cr_27.0.1453.116&psv=&trgb=CR&tbv=&crxv=&q={searchTerms}
[C:\Users\Guest.Chloe-HP\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.softonic.fr/s/{searchTerms}
[C:\Users\Guest.Chloe-HP\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : aaaajpkhjdkhhnkmgfjodbkfpbmibkkk

*************************

AdwCleaner[R0].txt - [14845 octets] - [30/11/2014 13:53:38]
AdwCleaner[S0].txt - [13285 octets] - [30/11/2014 14:00:13]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13346 octets] ##########
0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 14:32
Merci beaucoup !!! Voici le apport... je suis obligée de l'envoyer d'un autre pc car je ne peux tir pas utiliser chrome avec le mien... meme pas aller sur le site a cause de toutes ces pubs --'
0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 18:11
Rebonsoir !!
Alors voici les rapports FRST :

Pour FRST.ex

https://pjjoint.malekal.com/files.php?id=FRST_20141130_x8j13m6p9d11

Pour Addition

https://pjjoint.malekal.com/files.php?id=20141130_l7x11z9w5t11

Merci INFINIMENT :D
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
Modifié par Malekal_morte- le 30/11/2014 à 20:41
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix

Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :

ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:51611;https=127.0.0.1:51611 [Attention - Possible Proxy Malicieux]
R2 VOqfSdO; C:\ProgramData\xelNhXZUNp\VOqfSdO.exe [2319728 2014-08-24] (GenTechnologies Apps, LLC)
C:\ProgramData\xelNhXZUNp

Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.

Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.



~~

Exporte tes favoris : https://support.google.com/chrome/answer/96816?hl=fr
Désinstalle Google Chrome en cochant la case pour supprimer les profils.
Réinstalle Google Chrome : https://telecharger.malekal.com/download/google-chrome/

vois ce que cela donne pour les publicités


Like the angel you are, you laugh creating a lightness in my chest,
Your eyes they penetrate me,
(Your answer's always 'maybe')
That's when I got up and left
0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 21:23
Voici le Fixlog :
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 30-11-2014
Ran by Chloe at 2014-11-30 20:54:36 Run:1
Running from C:\Users\Chloe\Desktop
Loaded Profile: Chloe (Available profiles: Chloe & Guest)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:51611;https=127.0.0.1:51611 [Attention - Possible Proxy Malicieux]
R2 VOqfSdO; C:\ProgramData\xelNhXZUNp\VOqfSdO.exe [2319728 2014-08-24] (GenTechnologies Apps, LLC)
C:\ProgramData\xelNhXZUNp
*****************

HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully.
VOqfSdO => Unable to stop service
VOqfSdO => Service deleted successfully.

"C:\ProgramData\xelNhXZUNp" directory move:

Could not move "C:\ProgramData\xelNhXZUNp\info.dat" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp\VOqfSdO.dat" => Scheduled to move on reboot.
C:\ProgramData\xelNhXZUNp\VOqfSdO.exe => Moved successfully.
C:\ProgramData\xelNhXZUNp\VOqfSdO.exe.config => Moved successfully.
Could not move "C:\ProgramData\xelNhXZUNp\dat\CHpCdGUMDD.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp\dat\CHpCdGUMDD.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp\dat\FsmRqsfXlCY.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp\dat\mDIYlVVDHC.dll" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp\dat\vXCFxqoe.exe" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp\dat\vXCFxqoe.exe.config" => Scheduled to move on reboot.
Could not move "C:\ProgramData\xelNhXZUNp" directory. => Scheduled to move on reboot.


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-11-30 21:17:03)<=

C:\ProgramData\xelNhXZUNp\info.dat => Is moved successfully.
C:\ProgramData\xelNhXZUNp\VOqfSdO.dat => Is moved successfully.
C:\ProgramData\xelNhXZUNp\dat\CHpCdGUMDD.exe => Is moved successfully.
C:\ProgramData\xelNhXZUNp\dat\CHpCdGUMDD.exe.config => Is moved successfully.
C:\ProgramData\xelNhXZUNp\dat\FsmRqsfXlCY.dll => Is moved successfully.
C:\ProgramData\xelNhXZUNp\dat\mDIYlVVDHC.dll => Is moved successfully.
C:\ProgramData\xelNhXZUNp\dat\vXCFxqoe.exe => Is moved successfully.
C:\ProgramData\xelNhXZUNp\dat\vXCFxqoe.exe.config => Is moved successfully.
C:\ProgramData\xelNhXZUNp => Is moved successfully.

==== End of Fixlog ====
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
30 nov. 2014 à 21:24
plus de pubs intempestives?
0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 21:57
Merci énormément ! Tout marche très bien pour le moment merci pour votre temps :) bonne soirée !!
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
30 nov. 2014 à 21:57
;)


Quelques conseils :

Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Fais des scans réguliers avec, il est efficace.



Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=


Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/



0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 22:02
Malwarebyt's ne va pas interférer avec mon antivirus Microsoft security essential ?
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
30 nov. 2014 à 22:12
alors ne l'installe pas.
Au passage, je te conseille de remplacer Microsoft Security Essential par Avast!.
0
chloe.an Messages postés 10 Date d'inscription dimanche 30 novembre 2014 Statut Membre Dernière intervention 30 novembre 2014
30 nov. 2014 à 22:14
merci :)
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
30 nov. 2014 à 22:15
no problemo :)
0