Désinstallation de malwares .

Résolu/Fermé
Omister Messages postés 73 Date d'inscription samedi 28 décembre 2013 Statut Membre Dernière intervention 26 décembre 2016 - 24 août 2014 à 07:23
fabul Messages postés 38784 Date d'inscription dimanche 18 janvier 2009 Statut Modérateur Dernière intervention 5 octobre 2024 - 24 août 2014 à 16:25
Salut ,

J'ai un problème, c'est qu'en ouvrant Google Chrome, j'ai "istartsurf.com" qui se met à la place de google alors que quand je vais dans les paramètres de Chrome, je trouve que tout est normal et quand je vais dans le panneau de configuration dans "désinstaller ..." et dans Ccleaner , je trouve aussi que tout est normal (je l'avais déjà désinstallé ). Qui peut me conseiller ?..........................................................................................................................

C'est bizzare , j'ai (ré)installé AdwCleaner et fait un scan et ça a redémarré et fait un .txt ; je vous le colle :

...............................................................................................................................................

# AdwCleaner v3.308 - Report created 24/08/2014 at 06:42:55
# Updated 20/08/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : omister - OMISTER-PC
# Running from : C:\Users\omister\Downloads\adwcleaner_3.308.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : IePluginServices
[#] Service Deleted : Software_update
[#] Service Deleted : Software_update_m
Service Deleted : jxbalvtmyz32

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Adblocker
Folder Deleted : C:\ProgramData\IePluginServices
Folder Deleted : C:\ProgramData\Registry Helper
Folder Deleted : C:\ProgramData\pRRicechop
Folder Deleted : C:\Program Files\Adblocker
Folder Deleted : C:\Program Files\AllDaySavings
Folder Deleted : C:\Program Files\predm
Folder Deleted : C:\Program Files\SupTab
Folder Deleted : C:\Program Files\pRRicechop
Folder Deleted : C:\Program Files\005
Folder Deleted : C:\Users\Administrator\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Administrator\AppData\Local\torch
Folder Deleted : C:\Users\Guest\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\Guest\AppData\Local\torch
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\torch
Folder Deleted : C:\Users\omister\AppData\Local\Browsersafeguard
Folder Deleted : C:\Users\omister\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\omister\AppData\Local\torch
Folder Deleted : C:\Users\omister\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\omister\Documents\PC Speed Maximizer
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Chromatic Browser
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\torch
Folder Deleted : C:\Users\omister\AppData\Local\Software
[!] Folder Deleted : C:\Program Files\Software
Folder Deleted : C:\Program Files\Mozilla Firefox\Extensions\ffxtlbr@babylon.com
Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
[!] Folder Deleted : C:\Users\UpdatusUser\AppData\Local\Google\Chrome\User Data\Default\Extensions\jogbikepgaoflgjjgonpcjfffehikpeh
File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\rvlkl.lnk
File Deleted : C:\Windows\system32\installd.exe
File Deleted : C:\Windows\system32\RegistryHelperLM.ocx
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\Babylon.xml

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Deleted : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\Software.OneClickCtrl.9
Key Deleted : HKLM\SOFTWARE\Classes\Software.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\Software.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\Software.Update3WebControl.3
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\SoftwareUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WajamInternetEnhancer_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WajamInternetEnhancer_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Registry Helper]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=3
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@tools.Software.com/Software Update;version=9
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Key Deleted : HKLM\SOFTWARE\Classes\Adblocker.Adblocker
Key Deleted : HKLM\SOFTWARE\Classes\Adblocker.Adblocker.1.0
Key Deleted : HKLM\SOFTWARE\Classes\pricechoP.pricechoP
Key Deleted : HKLM\SOFTWARE\Classes\pricechoP.pricechoP.3.9
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{08230486-CBAF-4000-8036-447C3852D034}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{13809C03-DE3B-47E5-96A3-2D8F83693A50}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3D976BD4-0B6A-4757-9D2B-65AA20F4B4EA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{413002E0-930D-4EF9-9803-FC4B3EA4181E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{76894207-241A-473B-B111-FAA75608F1D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7A7C8DA9-8660-460D-849F-01619B91C03F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE2506E3-0F75-44EE-B552-CFF3BFF4D50F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B6CD3C31-ABF4-4C7A-8CB7-29960BC7017C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C24C3824-63D8-42CD-BB5A-77631072FDB2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EB41B92A-3A76-4237-9E6B-A5DDC2EAA771}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F9A8326E-9C90-4BF2-ACC7-D0883D16AA82}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8316B40-BEED-8D05-E687-FBEF2CFE596C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DBE0A63D-4C35-879B-F3FC-F8006A2EDEE5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F5EDA15A-078A-ADAC-1621-AE45C955F392}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D8316B40-BEED-8D05-E687-FBEF2CFE596C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBE0A63D-4C35-879B-F3FC-F8006A2EDEE5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5EDA15A-078A-ADAC-1621-AE45C955F392}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D8316B40-BEED-8D05-E687-FBEF2CFE596C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D8316B40-BEED-8D05-E687-FBEF2CFE596C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D8316B40-BEED-8D05-E687-FBEF2CFE596C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DBE0A63D-4C35-879B-F3FC-F8006A2EDEE5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F5EDA15A-078A-ADAC-1621-AE45C955F392}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B96B5D3-4A8D-42DC-9CDE-E9B94B3CFE5D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D976BD4-0B6A-4757-9D2B-65AA20F4B4EA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCC747B-2A59-4F30-BA7C-D26333DE65F5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1F096B29-E9DA-4D64-8D63-936BE7762CC5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKCU\Software\Boxore
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\SupHpUISoft
Key Deleted : HKCU\Software\TutoTag
Key Deleted : HKLM\SOFTWARE\Boxore
Key Deleted : HKLM\SOFTWARE\istartsurfSoftware
Key Deleted : HKLM\SOFTWARE\MyBestOffersToday
Key Deleted : HKLM\SOFTWARE\Registry Helper
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\SupTab
Key Deleted : HKLM\SOFTWARE\supWPM
Key Deleted : HKLM\SOFTWARE\Tutorials
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FDB962F0-B5B8-9460-D12F-7966E97BAA43}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17041

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant]

-\\ Mozilla Firefox v

[ File : C:\Users\omister\AppData\Roaming\Mozilla\Firefox\Profiles\ba0l9amk.default\prefs.js ]


[ File : C:\Users\omister\AppData\Roaming\Mozilla\Firefox\Profiles\searchplugins\prefs.js ]


-\\ Google Chrome v35.0.1916.153

*************************

AdwCleaner[R0].txt - [14741 octets] - [24/08/2014 06:42:09]
AdwCleaner[S0].txt - [13564 octets] - [24/08/2014 06:42:55]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13625 octets] ##########

...............................................................................................................................................

Ps :j'étais en train de rédiger ce post quand j'ai eu l'idée de faire un scan de mon pc .
Ps2 : Pour ceux qui ont eu le/un (même) problème de malwares , faites une vérification dans les paramètres Chrome, puis sur CCleaner et enfin, faites un scan puis un nettoyage de votre ordi avec AdwCleaner .
Ps3 : Après , vérifiez les programmes désinstallés , car , moi , j'ai adblock qui s'est enlevé , je vais le remettre ( sans danger ) .

Ah oui pour le lien de téléchargement de AdwCleaner : https://toolslib.net/downloads/viewdownload/1-adwcleaner/ ( il est sûr , je l'ai ;) )

J'espère vous avoir aidés .

Salut.
A voir également:

3 réponses

fabul Messages postés 38784 Date d'inscription dimanche 18 janvier 2009 Statut Modérateur Dernière intervention 5 octobre 2024 5 333
Modifié par fabul le 24/08/2014 à 07:29
Salut,

A tu essayé de désinstaller et ré installer Chrome ?

Veux tu qu'on redirige ton sujet dans le forum Virus/Sécurité ?
1
Omister Messages postés 73 Date d'inscription samedi 28 décembre 2013 Statut Membre Dernière intervention 26 décembre 2016 12
24 août 2014 à 16:05
Comment est-ce qu'on redirige le sujet ?
0
fabul Messages postés 38784 Date d'inscription dimanche 18 janvier 2009 Statut Modérateur Dernière intervention 5 octobre 2024 5 333
24 août 2014 à 16:25
C'est fait.
0
tribun Messages postés 64861 Date d'inscription vendredi 24 août 2007 Statut Membre Dernière intervention 20 février 2020 12 525
24 août 2014 à 07:25
Bonjour
Quand tu fait une Scan avec ADWCleaner et que tu Nettoie le pc redémarre et tu as un rapport avec ce qui a été supprimé.
0
Omister Messages postés 73 Date d'inscription samedi 28 décembre 2013 Statut Membre Dernière intervention 26 décembre 2016 12
24 août 2014 à 16:02
je sais , je l'ai mis ;) ( en gras )
0
Bonjour

Pour tous les navigateurs, je préfère AdblockPlus qui existe maintenant pour IE aussi. désinstalle adblock simple qui fait double emploi.
Choisis l'icône de ton navigateur à droite puis clique sur télécharger. Installe. Abonne toi aux listes pour une mise à jour automatique.
Dans les réglages tu peux aussi décocher la case pour les "bonnes pubs", celles qui en principe te pistent pas et te mettent pas d'adwares, comme tu veux.
Recommence pour tous les navigateurs présents sur le pc.

http://adblockplus.org/en/internet-explorer


Nettoie avec adwcleaner et réinitialise tous tes navigateurs.

https://forums.commentcamarche.net/forum/affich-37585758-reinitialiser-son-navigateur

Suis le conseil de fabul, fais désinfecter le pc en plus.
0