Omiga Plus et ERR_connection_closed sur google chrome

Résolu/Fermé
treets - Modifié par Malekal_morte- le 6/11/2014 à 16:41
 treets - 6 nov. 2014 à 16:49
Hi,

Problème sur Chrome, message d'erreur err_connection_closed après infection par omiga-plus.

voici le rapport OTL
http://pjjoint.malekal.com/files.php?id=20141106_r5s15v7n7f10

Thanks!
A voir également:

1 réponse

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 658
6 nov. 2014 à 16:22
Salut,

Déjà désinstalle Adware Antivirus.
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 658
6 nov. 2014 à 16:23
puis :

Supprime les proxys : https://forum.malekal.com/viewtopic.php?t=47404&start=

Relance OTL.
o sous Personnalisation (Custom Scan), copie_colle le contenu ci dessous (bien prendre :OTL en début).
Clic Correction (Fix), un rapport apparraitra, copie/colle le contenu ici:

:OTL

DRV:[b]64bit:[/b] - [2014/10/30 14:12:20 | 000,047,408 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\b786bdb3c67d.sys -- (b786bdb3c67d)
O2:[b]64bit:[/b] - BHO: (HQ-Video-Pro-2.1V03.11) - {11111111-1111-1111-1111-110611381131} - C:\Program Files (x86)\HQ-Video-Pro-2.1V03.11\HQ-Video-Pro-2.1V03.11-bho64.dll File not found
O2:[b]64bit:[/b] - BHO: (BrowsersApp_Pro_v1.1) - {11111111-1111-1111-1111-110611501155} - C:\Program Files (x86)\BrowsersApp_Pro_v1.1\BrowsersApp_Pro_v1.1-bho64.dll File not found
O2:[b]64bit:[/b] - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (HQ-Video-Pro-2.1V03.11) - {11111111-1111-1111-1111-110611381131} - C:\Program Files (x86)\HQ-Video-Pro-2.1V03.11\HQ-Video-Pro-2.1V03.11-bho.dll File not found
O2 - BHO: (BrowsersApp_Pro_v1.1) - {11111111-1111-1111-1111-110611501155} - C:\Program Files (x86)\BrowsersApp_Pro_v1.1\BrowsersApp_Pro_v1.1-bho.dll File not found
O4 - HKLM..\Run: [CrashMon] C:\Program Files (x86)\0ca45c95134d\5596b4e010aa.exe ()
O4 - HKLM..\Run: [mbot_fr_219] File not found
O4 - HKLM..\Run: [PCTuto] File not found
O4 - HKLM..\Run: [Salus] C:\Program Files (x86)\f552dd4c52e3\b786bdb3c67d.exe ()
O4 - HKLM..\Run: [Salus CrashMon] C:\Program Files (x86)\f552dd4c52e3\a7d12b5975b4.exe ()
O4 - HKLM..\Run: [SearchProtection] C:\ProgramData\Search Protection\_run.bat ()
O4 - HKU\S-1-5-21-455350022-1223887369-549774045-1000..\Run: [WindApp] "C:\Users\Beatreets\AppData\Roaming\Store\WindApp\WindApp Update.exe" /winstartup File not found
[2014/11/03 17:23:14 | 000,000,000 | ---D | C] -- C:\Users\Beatreets\AppData\Roaming\Store
[2014/11/03 17:22:43 | 000,000,000 | ---D | C] -- C:\ProgramData\374311380
[2014/11/03 17:21:55 | 000,000,000 | ---D | C] -- C:\Users\Beatreets\AppData\Roaming\Nosibay
[2014/11/03 17:11:06 | 000,000,000 | -HSD | C] -- C:\Users\Beatreets\AppData\Roaming\AnyProtectEx
[2014/11/03 17:07:19 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginServices
[2014/11/03 17:07:16 | 000,000,000 | ---D | C] -- C:\Users\Beatreets\Documents\Optimizer Pro
[2014/11/03 17:07:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\0ca45c95134d
[2014/11/03 17:07:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\f552dd4c52e3
[2014/11/03 17:06:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SupTab
[2014/11/03 17:06:47 | 000,000,000 | ---D | C] -- C:\ProgramData\WindowsMangerProtect
[2014/11/03 17:06:08 | 000,000,000 | ---D | C] -- C:\Users\Beatreets\AppData\Local\globalUpdate
[2014/11/06 14:09:00 | 000,004,164 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-6.job
[2014/11/06 14:08:00 | 000,004,168 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-6.job
[2014/11/06 14:00:51 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-455350022-1223887369-549774045-1000UA.job
[2014/11/06 14:00:38 | 000,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/11/06 14:00:29 | 000,001,114 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-455350022-1223887369-549774045-500UA.job
[2014/11/06 14:00:29 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/11/06 12:49:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/11/06 12:43:01 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-455350022-1223887369-549774045-1000Core.job
[2014/11/06 11:10:00 | 000,004,164 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-4.job
[2014/11/06 11:10:00 | 000,003,478 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-1.job
[2014/11/06 11:10:00 | 000,003,470 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-1.job
[2014/11/06 11:10:00 | 000,002,456 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-5_user.job
[2014/11/06 11:10:00 | 000,002,456 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-5.job
[2014/11/06 11:10:00 | 000,002,452 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-5_user.job
[2014/11/06 11:10:00 | 000,002,452 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-5.job
[2014/11/06 11:10:00 | 000,002,120 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-2.job
[2014/11/06 11:10:00 | 000,002,116 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-2.job
[2014/11/06 11:09:00 | 000,004,504 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-4.job
[2014/11/06 11:09:00 | 000,003,820 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-7.job
[2014/11/06 11:08:00 | 000,005,194 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-11.job
[2014/11/06 11:08:00 | 000,005,190 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-11.job
[2014/11/06 11:08:00 | 000,003,824 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-7.job
[2014/11/06 11:06:00 | 000,004,504 | ---- | M] () -- C:\Windows\tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-3.job
[2014/11/06 11:06:00 | 000,004,500 | ---- | M] () -- C:\Windows\tasks\043de7af-dada-4283-9036-c28edcc2421c-3.job

* poste le rapport ici


Redémarre l'ordinateur
0
proxis déjà supprimés

rapport OTL après redémarrage:

þ========== OTL ==========

Error: Unable to stop service b786bdb3c67d!

Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\b786bdb3c67d deleted successfully.

C:\Windows\SysNative\drivers\b786bdb3c67d.sys moved successfully.

Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611381131}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611381131}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611501155}\ deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110611501155}\ deleted successfully.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\CrashMon deleted successfully.

C:\Program Files (x86)\0ca45c95134d\5596b4e010aa.exe moved successfully.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\mbot_fr_219 deleted successfully.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCTuto deleted successfully.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Salus deleted successfully.

C:\Program Files (x86)\f552dd4c52e3\b786bdb3c67d.exe moved successfully.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Salus CrashMon deleted successfully.

C:\Program Files (x86)\f552dd4c52e3\a7d12b5975b4.exe moved successfully.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtection deleted successfully.

C:\ProgramData\Search Protection\_run.bat moved successfully.

Registry value HKEY_USERS\S-1-5-21-455350022-1223887369-549774045-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WindApp deleted successfully.

C:\Users\Beatreets\AppData\Roaming\Store folder moved successfully.

C:\ProgramData\374311380 folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\Nosibay folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\AnyProtectEx\swf folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\AnyProtectEx\scan_results folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\AnyProtectEx\logs folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\AnyProtectEx\language folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\AnyProtectEx\installer folder moved successfully.

C:\Users\Beatreets\AppData\Roaming\AnyProtectEx folder moved successfully.

C:\ProgramData\IePluginServices\update folder moved successfully.

C:\ProgramData\IePluginServices folder moved successfully.

C:\Users\Beatreets\Documents\Optimizer Pro folder moved successfully.

Folder move failed. C:\Program Files (x86)\0ca45c95134d scheduled to be moved on reboot.

C:\Program Files (x86)\f552dd4c52e3\nss folder moved successfully.

C:\Program Files (x86)\f552dd4c52e3\b786bdb3c67d\SSL folder moved successfully.

C:\Program Files (x86)\f552dd4c52e3\b786bdb3c67d folder moved successfully.

C:\Program Files (x86)\f552dd4c52e3 folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\zh-TW folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\zh-CN folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\vi-VI folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\tr-TR folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\ru-MO folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\ru folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\pt-BR folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\pt folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\pl folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\it-IT folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\it-CH folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\fr-LU folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\fr-FR folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\fr-CH folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\fr-CA folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\fr-BE folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\es-ES folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\es-419 folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales\en-US folder moved successfully.

C:\Program Files (x86)\SupTab\web\_locales folder moved successfully.

C:\Program Files (x86)\SupTab\web\js folder moved successfully.

C:\Program Files (x86)\SupTab\web\img folder moved successfully.

C:\Program Files (x86)\SupTab\web folder moved successfully.

C:\Program Files (x86)\SupTab\skin\image folder moved successfully.

C:\Program Files (x86)\SupTab\skin folder moved successfully.

C:\Program Files (x86)\SupTab folder moved successfully.

C:\ProgramData\WindowsMangerProtect\update folder moved successfully.

C:\ProgramData\WindowsMangerProtect\log folder moved successfully.

C:\ProgramData\WindowsMangerProtect folder moved successfully.

C:\Users\Beatreets\AppData\Local\globalUpdate\CrashReports folder moved successfully.

C:\Users\Beatreets\AppData\Local\globalUpdate folder moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-6.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-6.job moved successfully.

C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-455350022-1223887369-549774045-1000UA.job moved successfully.

C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.

C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-455350022-1223887369-549774045-500UA.job moved successfully.

C:\Windows\Tasks\Adobe Flash Player Updater.job moved successfully.

C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.

C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-455350022-1223887369-549774045-1000Core.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-4.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-1.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-1.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-5_user.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-5.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-5_user.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-5.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-2.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-2.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-4.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-7.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-11.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-11.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-7.job moved successfully.

C:\Windows\Tasks\9bd119b7-c33d-4442-8a1f-c4ce6291c34a-3.job moved successfully.

C:\Windows\Tasks\043de7af-dada-4283-9036-c28edcc2421c-3.job moved successfully.



OTL by OldTimer - Version 3.2.69.0 log created on 11062014_164028



Files\Folders moved on Reboot...

Folder move failed. C:\Program Files (x86)\0ca45c95134d scheduled to be moved on reboot.



PendingFileRenameOperations files...



Registry entries deleted on Reboot...
0