Winservice86

Résolu/Fermé
Ouioui - 2 mars 2015 à 22:42
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 3 mars 2015 à 23:11
Bonjour,

Je rencontre actuellement le même problème que la plupart des utilisateurs. J'utilise firefox, et à chaque fenêtre ouverte j'ai droit à une avalanche de pubs ; ADS BY winservice86.
J'ai installé FRST et les rapports de FRST et ADDITION en les hébergeant en publique, j'ai eu ces deux liens :

http://pjjoint.malekal.com/files.php?id=20150302_14s8e813t6

http://pjjoint.malekal.com/files.php?id=FRST_20150302_s8o8d15r8w12

Que dois-j faire maintenant? :p

Merci beaucoup!

3 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
2 mars 2015 à 22:42
Salut,

Ok je regarde =)
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
2 mars 2015 à 22:48
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix


Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans le contenu de ce lien : https://pjjoint.malekal.com/files.php?read=20150302_d7h6t1067

R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-06] (SysTool PasSame LIMITED)
R2 fijepego; C:\Users\benalinfo\AppData\Roaming\30464E43-1425077114-4438-3436-78ACC03F2C18\nsg53C3.tmpfs [X]
2015-03-01 21:08 - 2015-03-01 21:08 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\VOPackage
2015-03-01 21:08 - 2015-03-01 21:08 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-03-01 21:08 - 2015-03-01 21:08 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\30464E43-1425244116-4438-3436-78ACC03F2C18
2015-02-28 13:34 - 2015-02-28 13:34 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\30464E43-1425130481-4438-3436-78ACC03F2C18
2015-02-28 12:49 - 2015-02-28 12:59 - 00262144 _____ () C:\Windows\system32\config\elam
2015-02-28 10:59 - 2015-02-28 13:02 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2015-02-28 10:59 - 2015-02-28 13:02 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2015-02-28 10:59 - 2015-02-28 11:19 - 00000366 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-02-28 10:44 - 2015-02-28 10:44 - 00000000 __SHD () C:\Users\benalinfo\AppData\Roaming\AnyProtectEx
2015-02-26 18:07 - 2015-03-01 20:54 - 00000004 _____ () C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7
2015-02-26 17:08 - 2015-03-02 00:08 - 00003116 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6.job
2015-02-26 17:08 - 2015-03-01 23:13 - 00004136 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4.job
2015-02-26 17:08 - 2015-03-01 23:13 - 00000946 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-02-26 17:08 - 2015-03-01 23:08 - 00003116 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7.job
2015-02-26 17:08 - 2015-03-01 23:08 - 00002424 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user.job
2015-02-26 17:08 - 2015-03-01 23:08 - 00002424 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5.job
2015-02-26 17:08 - 2015-03-01 20:54 - 00000942 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-02-26 17:07 - 2015-03-02 01:07 - 00002090 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user.job
2015-02-26 17:07 - 2015-03-01 23:07 - 00004066 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12.job
2015-02-26 17:07 - 2015-02-28 13:46 - 00000000 ____D () C:\Program Files\winservice86
2015-02-19 15:07 - 2015-02-19 15:07 - 00000000 ____D () C:\ProgramData\2778c5fa00003ea8
2015-02-19 11:16 - 2015-02-28 13:02 - 00000000 ____D () C:\ProgramData\{20c238d5-9074-3b73-20c2-238d5907e356}
015-02-06 12:49 - 2015-02-06 12:49 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-02-06 12:47 - 2015-02-28 13:02 - 00000000 ____D () C:\Program Files\XTab
2015-02-06 12:45 - 2015-02-06 12:45 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-02-06 12:32 - 2015-02-06 13:02 - 00000000 ____D () C:\Program Files\mystarttb
2015-02-05 14:37 - 2015-02-26 17:07 - 00000000 ____D () C:\Program Files\globalUpdate
2015-02-05 14:37 - 2015-02-05 14:37 - 00000000 ____D () C:\Users\benalinfo\AppData\Local\globalUpdate
2015-02-05 14:36 - 2015-02-05 14:36 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\SXeQBdY
2015-02-05 14:36 - 2015-02-05 14:36 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\8s3WP9h
2015-02-05 14:36 - 2015-02-05 14:36 - 00000000 ____D () C:\ProgramData\atjs
2015-02-05 14:35 - 2015-02-05 14:36 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\MExnrMW
2015-02-01 20:50 - 2015-02-28 10:39 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\wp_update
2015-02-01 20:41 - 2015-02-01 20:41 - 00000000 ____D () C:\Users\benalinfo\AppData\Local\SearchProtect
2015-02-01 20:41 - 2015-02-01 20:41 - 00000000 ____D () C:\Program Files\SearchProtect
Task: {1723CB58-22EA-4842-BD45-8A47BF390688} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {1AC6EC31-0A49-4E9A-86FF-0D9EBC42B982} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {277018BF-3DD0-4ADF-BAB3-4F978AB010CC} - System32\Tasks\LaunchSignup => C:\Program Files\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {348BD4D0-6AE2-43B9-9602-7C760DEAE4AB} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {55833C71-DAD2-4C57-A7DC-C8A38B8DF3B6} - System32\Tasks\Euoc9F3t81A104n => C:\Users\benalinfo\AppData\Roaming\SXeQBdY\xiFPYVe.exe [2015-02-05] ( )
Task: {636ADBB1-4C60-4767-ABE6-2D826DE7653D} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-02-26] (globalUpdate) <==== ATTENTION
Task: {65F51B91-4DF0-4C88-8BF2-2A6D7CBD7191} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {6EAFF0B2-7312-4194-B78F-18C625ABFB9A} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {7B159665-A934-46DD-8510-19DEB33018B8} - System32\Tasks\xwZAAQqTPbEhYg5 => C:\Users\benalinfo\AppData\Roaming\MExnrMW\keEfyfV.exe [2015-02-05] ( )
Task: {822DFC7C-C87A-41DE-8E26-98EE285450A2} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {86B25D00-2B2B-4913-BF23-9409D9D8C6A0} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {87340839-6B09-4AC7-9917-09AE34FA725E} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {95A27FA8-3E14-40F2-A02B-2CD77E800FCC} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-02-26] (globalUpdate) <==== ATTENTION
Task: {969ACFE7-9C66-4D01-B6F3-4DFBCA74760A} - \WIN-statsSystem No Task File <==== ATTENTION
Task: {9B8D5A98-0476-4256-8D4B-E702A9B3325C} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {9E3B1D92-F834-40D7-B66D-DA1B03E0689E} - System32\Tasks\yfsJayAVoeuK8Yo => C:\Users\benalinfo\AppData\Roaming\8s3WP9h\UsqQ0jb.exe [2015-02-05] ( )
Task: {AB2B6DC3-FD95-4453-A1EE-112AF9E6E8A0} - \WIN-statsAdmin No Task File <==== ATTENTION
Task: {B5804C40-12C4-4924-9C30-65A09859CE81} - \wp_update No Task File <==== ATTENTION

Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.

Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.

Redémarre l'ordinateur

puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
0
Ouioui > Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020
3 mars 2015 à 00:04
Alors, avant merci beaucoup!

Voici le message que j'ai eu à la fin "fixlog":

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 29-02-2015
Ran by benalinfo at 2015-03-02 23:53:47 Run:2
Running from C:\Users\benalinfo\Desktop
Loaded Profiles: benalinfo (Available profiles: benalinfo)
Boot Mode: Normal

==============================================

Content of fixlist:


R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-06] (SysTool PasSame LIMITED)
R2 fijepego; C:\Users\benalinfo\AppData\Roaming\30464E43-1425077114-4438-3436-78ACC03F2C18\nsg53C3.tmpfs [X]
2015-03-01 21:08 - 2015-03-01 21:08 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\VOPackage
2015-03-01 21:08 - 2015-03-01 21:08 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-03-01 21:08 - 2015-03-01 21:08 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\30464E43-1425244116-4438-3436-78ACC03F2C18
2015-02-28 13:34 - 2015-02-28 13:34 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\30464E43-1425130481-4438-3436-78ACC03F2C18
2015-02-28 12:49 - 2015-02-28 12:59 - 00262144 _____ () C:\Windows\system32\config\elam
2015-02-28 10:59 - 2015-02-28 13:02 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP3.job
2015-02-28 10:59 - 2015-02-28 13:02 - 00000364 _____ () C:\Windows\Tasks\APSnotifierPP2.job
2015-02-28 10:59 - 2015-02-28 11:19 - 00000366 _____ () C:\Windows\Tasks\APSnotifierPP1.job
2015-02-28 10:44 - 2015-02-28 10:44 - 00000000 __SHD () C:\Users\benalinfo\AppData\Roaming\AnyProtectEx
2015-02-26 18:07 - 2015-03-01 20:54 - 00000004 _____ () C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7
2015-02-26 17:08 - 2015-03-02 00:08 - 00003116 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6.job
2015-02-26 17:08 - 2015-03-01 23:13 - 00004136 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4.job
2015-02-26 17:08 - 2015-03-01 23:13 - 00000946 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-02-26 17:08 - 2015-03-01 23:08 - 00003116 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7.job
2015-02-26 17:08 - 2015-03-01 23:08 - 00002424 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user.job
2015-02-26 17:08 - 2015-03-01 23:08 - 00002424 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5.job
2015-02-26 17:08 - 2015-03-01 20:54 - 00000942 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-02-26 17:07 - 2015-03-02 01:07 - 00002090 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user.job
2015-02-26 17:07 - 2015-03-01 23:07 - 00004066 _____ () C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12.job
2015-02-26 17:07 - 2015-02-28 13:46 - 00000000 ____D () C:\Program Files\winservice86
2015-02-19 15:07 - 2015-02-19 15:07 - 00000000 ____D () C:\ProgramData\2778c5fa00003ea8
2015-02-19 11:16 - 2015-02-28 13:02 - 00000000 ____D () C:\ProgramData\{20c238d5-9074-3b73-20c2-238d5907e356}
015-02-06 12:49 - 2015-02-06 12:49 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-02-06 12:47 - 2015-02-28 13:02 - 00000000 ____D () C:\Program Files\XTab
2015-02-06 12:45 - 2015-02-06 12:45 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-02-06 12:32 - 2015-02-06 13:02 - 00000000 ____D () C:\Program Files\mystarttb
2015-02-05 14:37 - 2015-02-26 17:07 - 00000000 ____D () C:\Program Files\globalUpdate
2015-02-05 14:37 - 2015-02-05 14:37 - 00000000 ____D () C:\Users\benalinfo\AppData\Local\globalUpdate
2015-02-05 14:36 - 2015-02-05 14:36 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\SXeQBdY
2015-02-05 14:36 - 2015-02-05 14:36 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\8s3WP9h
2015-02-05 14:36 - 2015-02-05 14:36 - 00000000 ____D () C:\ProgramData\atjs
2015-02-05 14:35 - 2015-02-05 14:36 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\MExnrMW
2015-02-01 20:50 - 2015-02-28 10:39 - 00000000 ____D () C:\Users\benalinfo\AppData\Roaming\wp_update
2015-02-01 20:41 - 2015-02-01 20:41 - 00000000 ____D () C:\Users\benalinfo\AppData\Local\SearchProtect
2015-02-01 20:41 - 2015-02-01 20:41 - 00000000 ____D () C:\Program Files\SearchProtect
Task: {1723CB58-22EA-4842-BD45-8A47BF390688} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {1AC6EC31-0A49-4E9A-86FF-0D9EBC42B982} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {277018BF-3DD0-4ADF-BAB3-4F978AB010CC} - System32\Tasks\LaunchSignup => C:\Program Files\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {348BD4D0-6AE2-43B9-9602-7C760DEAE4AB} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {55833C71-DAD2-4C57-A7DC-C8A38B8DF3B6} - System32\Tasks\Euoc9F3t81A104n => C:\Users\benalinfo\AppData\Roaming\SXeQBdY\xiFPYVe.exe [2015-02-05] ( )
Task: {636ADBB1-4C60-4767-ABE6-2D826DE7653D} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-02-26] (globalUpdate) <==== ATTENTION
Task: {65F51B91-4DF0-4C88-8BF2-2A6D7CBD7191} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {6EAFF0B2-7312-4194-B78F-18C625ABFB9A} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {7B159665-A934-46DD-8510-19DEB33018B8} - System32\Tasks\xwZAAQqTPbEhYg5 => C:\Users\benalinfo\AppData\Roaming\MExnrMW\keEfyfV.exe [2015-02-05] ( )
Task: {822DFC7C-C87A-41DE-8E26-98EE285450A2} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {86B25D00-2B2B-4913-BF23-9409D9D8C6A0} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4 => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {87340839-6B09-4AC7-9917-09AE34FA725E} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {95A27FA8-3E14-40F2-A02B-2CD77E800FCC} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-02-26] (globalUpdate) <==== ATTENTION
Task: {969ACFE7-9C66-4D01-B6F3-4DFBCA74760A} - \WIN-statsSystem No Task File <==== ATTENTION
Task: {9B8D5A98-0476-4256-8D4B-E702A9B3325C} - System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user => C:\Program Files\winservice86\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10.exe [2015-02-26] (Corporate Inc) <==== ATTENTION
Task: {9E3B1D92-F834-40D7-B66D-DA1B03E0689E} - System32\Tasks\yfsJayAVoeuK8Yo => C:\Users\benalinfo\AppData\Roaming\8s3WP9h\UsqQ0jb.exe [2015-02-05] ( )
Task: {AB2B6DC3-FD95-4453-A1EE-112AF9E6E8A0} - \WIN-statsAdmin No Task File <==== ATTENTION
Task: {B5804C40-12C4-4924-9C30-65A09859CE81} - \wp_update No Task File <==== ATTENTION


WindowsMangerProtect => Service stopped successfully.
WindowsMangerProtect => Service deleted successfully.
fijepego => Service stopped successfully.
fijepego => Service deleted successfully.
C:\Users\benalinfo\AppData\Roaming\VOPackage => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\30464E43-1425244116-4438-3436-78ACC03F2C18 => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\30464E43-1425130481-4438-3436-78ACC03F2C18 => Moved successfully.
C:\Windows\system32\config\elam => Moved successfully.
C:\Windows\Tasks\APSnotifierPP3.job => Moved successfully.
"C:\Windows\Tasks\APSnotifierPP2.job" => File/Directory not found.
"C:\Windows\Tasks\APSnotifierPP1.job" => File/Directory not found.
C:\Users\benalinfo\AppData\Roaming\AnyProtectEx => Moved successfully.
C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7 => Moved successfully.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6.job => Moved successfully.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4.job => Moved successfully.
"C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job" => File/Directory not found.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7.job => Moved successfully.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user.job => Moved successfully.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5.job => Moved successfully.
"C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job" => File/Directory not found.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user.job => Moved successfully.
C:\Windows\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12.job => Moved successfully.
C:\Program Files\winservice86 => Moved successfully.
C:\ProgramData\2778c5fa00003ea8 => Moved successfully.
C:\ProgramData\{20c238d5-9074-3b73-20c2-238d5907e356} => Moved successfully.
015-02-06 12:49 - 2015-02-06 12:49 - 00000000 ____D () C:\ProgramData\IHProtectUpDate => Error: No automatic fix found for this entry.
C:\Program Files\XTab => Moved successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\Program Files\mystarttb => Moved successfully.
C:\Program Files\globalUpdate => Moved successfully.
C:\Users\benalinfo\AppData\Local\globalUpdate => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\SXeQBdY => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\8s3WP9h => Moved successfully.
C:\ProgramData\atjs => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\MExnrMW => Moved successfully.
C:\Users\benalinfo\AppData\Roaming\wp_update => Moved successfully.
C:\Users\benalinfo\AppData\Local\SearchProtect => Moved successfully.
C:\Program Files\SearchProtect => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1723CB58-22EA-4842-BD45-8A47BF390688}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1723CB58-22EA-4842-BD45-8A47BF390688}" => Key deleted successfully.
C:\Windows\System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-5_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1AC6EC31-0A49-4E9A-86FF-0D9EBC42B982}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1AC6EC31-0A49-4E9A-86FF-0D9EBC42B982}" => Key deleted successfully.
C:\Windows\System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-12" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{277018BF-3DD0-4ADF-BAB3-4F978AB010CC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{277018BF-3DD0-4ADF-BAB3-4F978AB010CC}" => Key deleted successfully.
C:\Windows\System32\Tasks\LaunchSignup not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchSignup => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{348BD4D0-6AE2-43B9-9602-7C760DEAE4AB}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{348BD4D0-6AE2-43B9-9602-7C760DEAE4AB}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP3 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{55833C71-DAD2-4C57-A7DC-C8A38B8DF3B6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55833C71-DAD2-4C57-A7DC-C8A38B8DF3B6}" => Key deleted successfully.
C:\Windows\System32\Tasks\Euoc9F3t81A104n => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Euoc9F3t81A104n" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{636ADBB1-4C60-4767-ABE6-2D826DE7653D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{636ADBB1-4C60-4767-ABE6-2D826DE7653D}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{65F51B91-4DF0-4C88-8BF2-2A6D7CBD7191}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65F51B91-4DF0-4C88-8BF2-2A6D7CBD7191}" => Key deleted successfully.
C:\Windows\System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6EAFF0B2-7312-4194-B78F-18C625ABFB9A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6EAFF0B2-7312-4194-B78F-18C625ABFB9A}" => Key deleted successfully.
C:\Windows\System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-1-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7B159665-A934-46DD-8510-19DEB33018B8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7B159665-A934-46DD-8510-19DEB33018B8}" => Key deleted successfully.
C:\Windows\System32\Tasks\xwZAAQqTPbEhYg5 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\xwZAAQqTPbEhYg5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{822DFC7C-C87A-41DE-8E26-98EE285450A2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{822DFC7C-C87A-41DE-8E26-98EE285450A2}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP2 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2 => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{86B25D00-2B2B-4913-BF23-9409D9D8C6A0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86B25D00-2B2B-4913-BF23-9409D9D8C6A0}" => Key deleted successfully.
C:\Windows\System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-4" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{87340839-6B09-4AC7-9917-09AE34FA725E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87340839-6B09-4AC7-9917-09AE34FA725E}" => Key deleted successfully.
C:\Windows\System32\Tasks\APSnotifierPP1 not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1 => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{95A27FA8-3E14-40F2-A02B-2CD77E800FCC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{95A27FA8-3E14-40F2-A02B-2CD77E800FCC}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{969ACFE7-9C66-4D01-B6F3-4DFBCA74760A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{969ACFE7-9C66-4D01-B6F3-4DFBCA74760A}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsSystem => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9B8D5A98-0476-4256-8D4B-E702A9B3325C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9B8D5A98-0476-4256-8D4B-E702A9B3325C}" => Key deleted successfully.
C:\Windows\System32\Tasks\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e88cab1d-5ce2-45cb-a6bc-61d4b48ece55-10_user" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9E3B1D92-F834-40D7-B66D-DA1B03E0689E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9E3B1D92-F834-40D7-B66D-DA1B03E0689E}" => Key deleted successfully.
C:\Windows\System32\Tasks\yfsJayAVoeuK8Yo => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\yfsJayAVoeuK8Yo" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AB2B6DC3-FD95-4453-A1EE-112AF9E6E8A0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AB2B6DC3-FD95-4453-A1EE-112AF9E6E8A0}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B5804C40-12C4-4924-9C30-65A09859CE81}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5804C40-12C4-4924-9C30-65A09859CE81}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\wp_update" => Key deleted successfully.

End of Fixlog 23:53:56

Je redémarre le tt et on verra bien!

Merci encore
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
3 mars 2015 à 09:38
ok réinitialise bien les navigateurs WEB et histoire de :


Scan Malwarebytes (temps : environ 40min de scan):
==================================================
Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour puis lance un examen.

A la fin du scan, clic sur "Mettre tout en quarantaine" en bas à gauche.
Redémarre l'ordinateur si besoin.
Après redémarrage, relance Malwarebytes.
Vas chercher le rapport dans l'onglet Historique.
A gauche Journal des examens.
Doube-clic sur l'examen dans la liste.
Puis en bas Copier dans le presse papier
Vas sur http://pjjoint.malekal.com et en bas, clic droit / coller pour coller le rapport du scan Malwarebytes.
Clic sur envoyer.
Dans un nouveau message ici en réponse, donne le lien pjjoint afin de pouvoir consulter le rapport.

0
Après avoir appliquer, tout à la lettre j'ai eu ce dernier et fameux lien et je pense que tout est pari :D

http://pjjoint.malekal.com/files.php?id=20150303_o15m9i12e5q9

Merci vraiement, pour tout :)
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
3 mars 2015 à 23:11
super =)

Voila, c'est terminé, tu peux supprimer les programmes utilisés.

Quelques conseils :



Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=


Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/


Le reste de la sécurité : http://forum.malekal.com/comment-securiser-son-ordinateur.html


0