Problème connection internet / mwiynzm4ndy1yjz
Résolu/Fermé
Aurel78
-
5 janv. 2015 à 22:37
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 27 avril 2015 à 20:51
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 27 avril 2015 à 20:51
A voir également:
- Problème connection internet / mwiynzm4ndy1yjz
- Gmail connection - Guide
- Gps sans internet - Guide
- D'où peut venir un problème de connexion internet sur un ordinateur ? - Guide
- 35 go internet équivalent en heure - Forum Mobile
- Facebook connection - Guide
6 réponses
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
5 janv. 2015 à 22:39
5 janv. 2015 à 22:39
Salut,
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Cela va générer trois rapports FRST :
* FRST.txt
* Shortcut.txt
* Additionnal.txt
Envoie comme expliqué, ces trois rapports sur le site pjjoint et donne les trois liens pjjoint de ces rapports afin qu'ils puissent être consultés.
Suis ce tutoriel FRST: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/
Cela va générer trois rapports FRST :
* FRST.txt
* Shortcut.txt
* Additionnal.txt
Envoie comme expliqué, ces trois rapports sur le site pjjoint et donne les trois liens pjjoint de ces rapports afin qu'ils puissent être consultés.
Tout d'abord merci pour ton aide. Voici les liens vers les fichiers demandés
FRST.txt
http://pjjoint.malekal.com/files.php?id=20150105_z9v1314n14j13
Shortcut.txt
http://pjjoint.malekal.com/files.php?id=20150105_g13l14y9r12g13
Additionnal.txt
http://pjjoint.malekal.com/files.php?id=20150105_g5r15k8h15i7
FRST.txt
http://pjjoint.malekal.com/files.php?id=20150105_z9v1314n14j13
Shortcut.txt
http://pjjoint.malekal.com/files.php?id=20150105_g13l14y9r12g13
Additionnal.txt
http://pjjoint.malekal.com/files.php?id=20150105_g5r15k8h15i7
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
5 janv. 2015 à 23:00
5 janv. 2015 à 23:00
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM-x32\...\Run: [mwyyntm1ndi1zdz] => C:\Program Files (x86)\Smwyyntm1ndi1zdz\mwiynzm4ndy1yjz.exe [2385408 2015-01-04] ()
CHR HomePage: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
CHR StartupUrls: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
2015-01-04 22:22 - 2015-01-04 22:22 - 00000000 ____D () C:\Users\Julie\AppData\Roaming\QuickScan
2015-01-04 22:13 - 2015-01-04 22:24 - 00004536 _____ () C:\WINDOWS\SysWOW64\abengine.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\SysWOW64\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\system32\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:13 - 00003086 _____ () C:\WINDOWS\System32\Tasks\upfs7235
2015-01-04 22:10 - 2015-01-04 23:18 - 00001360 _____ () C:\WINDOWS\Tasks\DBLDTXL.job
2015-01-04 22:10 - 2015-01-04 22:10 - 01549288 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\DBLDTXL.exe
2015-01-04 22:10 - 2015-01-04 22:10 - 00004370 _____ () C:\WINDOWS\System32\Tasks\DBLDTXL
2015-01-04 22:09 - 2015-01-04 23:18 - 00001356 _____ () C:\WINDOWS\Tasks\JDDYK.job
2015-01-04 22:09 - 2015-01-04 22:09 - 02047464 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\JDDYK.exe
2015-01-04 22:09 - 2015-01-04 22:09 - 00004366 _____ () C:\WINDOWS\System32\Tasks\JDDYK
2015-01-04 21:58 - 2015-01-04 21:58 - 00003886 _____ () C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-01-04 21:15 - 2015-01-05 22:24 - 00001002 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-01-04 21:15 - 2015-01-04 21:15 - 00003890 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-01-04 21:10 - 2015-01-05 15:00 - 00001360 _____ () C:\WINDOWS\Tasks\NHOGYRI.job
2015-01-04 21:10 - 2015-01-04 21:10 - 01330664 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\NHOGYRI.exe
2015-01-04 21:10 - 2015-01-04 21:10 - 00004368 _____ () C:\WINDOWS\System32\Tasks\NHOGYRI
2015-01-04 21:09 - 2015-01-04 23:18 - 00001354 _____ () C:\WINDOWS\Tasks\QPNL.job
2015-01-04 21:09 - 2015-01-04 21:10 - 00004362 _____ () C:\WINDOWS\System32\Tasks\QPNL
2015-01-04 21:09 - 2015-01-04 21:09 - 01965032 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\QPNL.exe
2015-01-04 21:08 - 2015-01-04 21:08 - 01200016 _____ () C:\Users\Julie\Downloads\Player(2).exe
2015-01-04 20:45 - 2015-01-04 20:45 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-04 20:44 - 2015-01-04 20:44 - 00000000 ____D () C:\Users\Julie\AppData\Local\com
2015-01-04 20:35 - 2015-01-05 15:29 - 00001350 _____ () C:\WINDOWS\Tasks\LJ.job
2015-01-04 20:35 - 2015-01-05 13:56 - 00001352 _____ () C:\WINDOWS\Tasks\KII.job
2015-01-04 20:35 - 2015-01-04 22:30 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-04 20:35 - 2015-01-04 21:10 - 01549288 _____ (Enter) C:\Users\Julie\AppData\Roaming\KII.exe
2015-01-04 20:35 - 2015-01-04 21:10 - 00004360 _____ () C:\WINDOWS\System32\Tasks\KII
2015-01-04 20:35 - 2015-01-04 20:35 - 01549288 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\LJ.exe
2015-01-04 20:35 - 2015-01-04 20:35 - 00004358 _____ () C:\WINDOWS\System32\Tasks\LJ
2015-01-04 20:35 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-04 20:34 - 2015-01-04 23:18 - 00001706 _____ () C:\WINDOWS\Tasks\YKHICJXT.job
2015-01-04 20:34 - 2015-01-04 23:18 - 00001704 _____ () C:\WINDOWS\Tasks\XSGUXHF.job
2015-01-04 20:34 - 2015-01-04 21:10 - 02047464 _____ (Enter) C:\Users\Julie\AppData\Roaming\YKHICJXT.exe
2015-01-04 20:34 - 2015-01-04 21:10 - 00004714 _____ () C:\WINDOWS\System32\Tasks\YKHICJXT
2015-01-04 20:34 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 20:34 - 2015-01-04 20:34 - 02047464 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\XSGUXHF.exe
2015-01-04 20:34 - 2015-01-04 20:34 - 00004714 _____ () C:\WINDOWS\System32\Tasks\XSGUXHF
2015-01-04 20:34 - 2015-01-04 20:34 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
Task: {01369165-1857-40E7-9BF7-218C5D9E5777} - System32\Tasks\NHOGYRI => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {35B829AB-AAE3-4B2E-B536-1B1AFA213099} - System32\Tasks\YKHICJXT => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {3D2E75E8-F640-4271-A3D2-390E56C73619} - System32\Tasks\KII => C:\Users\Julie\AppData\Roaming\KII.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7} - System32\Tasks\DBLDTXL => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: {565D363D-0E86-43DC-96E2-DCB623CFA492} - System32\Tasks\upfs7235 => C:\PROGRA~2\Flwsrf\upfs7235.exe
Task: {779DDDA7-34B8-497B-A423-AA7F9D63B270} - System32\Tasks\QPNL => C:\Users\Julie\AppData\Roaming\QPNL.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {856D37B7-CA94-4CE1-A48E-8AA08C02ADF5} - System32\Tasks\{C62EC590-F1DE-44D9-9B53-F744F54E301E} => pcalua.exe -a C:\Users\Julie\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {89078F39-FDA4-483B-B3CC-D0845BDF96FA} - System32\Tasks\XSGUXHF => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {A76480E0-C2C6-4F09-96E8-BF2EB9AE647E} - System32\Tasks\LJ => C:\Users\Julie\AppData\Roaming\LJ.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {B16677CF-4662-4F8B-8301-AC04154CE3CC} - System32\Tasks\{F7FB3814-469D-41FD-A81C-AB757501215C} => pcalua.exe -a C:\Users\Julie\AppData\Local\BeamriseUninstall\Bootstrapper{1.Y2VqPwRP.100}.exe -c uninstall -slot=1 -bagKey=yikAakHwZJ8U
Task: {CC4E466D-54C4-4E6C-93D9-180227A04C4C} - System32\Tasks\JDDYK => C:\Users\Julie\AppData\Roaming\JDDYK.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: C:\WINDOWS\Tasks\DBLDTXL.job => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\JDDYK.job => C:\Users\Julie\AppData\Roaming\JDDYK.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\KII.job => C:\Users\Julie\AppData\Roaming\KII.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\LJ.job => C:\Users\Julie\AppData\Roaming\LJ.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\NHOGYRI.job => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\QPNL.job => C:\Users\Julie\AppData\Roaming\QPNL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\XSGUXHF.job => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\YKHICJXT.job => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM-x32\...\Run: [mwyyntm1ndi1zdz] => C:\Program Files (x86)\Smwyyntm1ndi1zdz\mwiynzm4ndy1yjz.exe [2385408 2015-01-04] ()
CHR HomePage: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
CHR StartupUrls: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
2015-01-04 22:22 - 2015-01-04 22:22 - 00000000 ____D () C:\Users\Julie\AppData\Roaming\QuickScan
2015-01-04 22:13 - 2015-01-04 22:24 - 00004536 _____ () C:\WINDOWS\SysWOW64\abengine.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\SysWOW64\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\system32\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:13 - 00003086 _____ () C:\WINDOWS\System32\Tasks\upfs7235
2015-01-04 22:10 - 2015-01-04 23:18 - 00001360 _____ () C:\WINDOWS\Tasks\DBLDTXL.job
2015-01-04 22:10 - 2015-01-04 22:10 - 01549288 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\DBLDTXL.exe
2015-01-04 22:10 - 2015-01-04 22:10 - 00004370 _____ () C:\WINDOWS\System32\Tasks\DBLDTXL
2015-01-04 22:09 - 2015-01-04 23:18 - 00001356 _____ () C:\WINDOWS\Tasks\JDDYK.job
2015-01-04 22:09 - 2015-01-04 22:09 - 02047464 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\JDDYK.exe
2015-01-04 22:09 - 2015-01-04 22:09 - 00004366 _____ () C:\WINDOWS\System32\Tasks\JDDYK
2015-01-04 21:58 - 2015-01-04 21:58 - 00003886 _____ () C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-01-04 21:15 - 2015-01-05 22:24 - 00001002 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-01-04 21:15 - 2015-01-04 21:15 - 00003890 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-01-04 21:10 - 2015-01-05 15:00 - 00001360 _____ () C:\WINDOWS\Tasks\NHOGYRI.job
2015-01-04 21:10 - 2015-01-04 21:10 - 01330664 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\NHOGYRI.exe
2015-01-04 21:10 - 2015-01-04 21:10 - 00004368 _____ () C:\WINDOWS\System32\Tasks\NHOGYRI
2015-01-04 21:09 - 2015-01-04 23:18 - 00001354 _____ () C:\WINDOWS\Tasks\QPNL.job
2015-01-04 21:09 - 2015-01-04 21:10 - 00004362 _____ () C:\WINDOWS\System32\Tasks\QPNL
2015-01-04 21:09 - 2015-01-04 21:09 - 01965032 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\QPNL.exe
2015-01-04 21:08 - 2015-01-04 21:08 - 01200016 _____ () C:\Users\Julie\Downloads\Player(2).exe
2015-01-04 20:45 - 2015-01-04 20:45 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-04 20:44 - 2015-01-04 20:44 - 00000000 ____D () C:\Users\Julie\AppData\Local\com
2015-01-04 20:35 - 2015-01-05 15:29 - 00001350 _____ () C:\WINDOWS\Tasks\LJ.job
2015-01-04 20:35 - 2015-01-05 13:56 - 00001352 _____ () C:\WINDOWS\Tasks\KII.job
2015-01-04 20:35 - 2015-01-04 22:30 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-04 20:35 - 2015-01-04 21:10 - 01549288 _____ (Enter) C:\Users\Julie\AppData\Roaming\KII.exe
2015-01-04 20:35 - 2015-01-04 21:10 - 00004360 _____ () C:\WINDOWS\System32\Tasks\KII
2015-01-04 20:35 - 2015-01-04 20:35 - 01549288 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\LJ.exe
2015-01-04 20:35 - 2015-01-04 20:35 - 00004358 _____ () C:\WINDOWS\System32\Tasks\LJ
2015-01-04 20:35 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-04 20:34 - 2015-01-04 23:18 - 00001706 _____ () C:\WINDOWS\Tasks\YKHICJXT.job
2015-01-04 20:34 - 2015-01-04 23:18 - 00001704 _____ () C:\WINDOWS\Tasks\XSGUXHF.job
2015-01-04 20:34 - 2015-01-04 21:10 - 02047464 _____ (Enter) C:\Users\Julie\AppData\Roaming\YKHICJXT.exe
2015-01-04 20:34 - 2015-01-04 21:10 - 00004714 _____ () C:\WINDOWS\System32\Tasks\YKHICJXT
2015-01-04 20:34 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 20:34 - 2015-01-04 20:34 - 02047464 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\XSGUXHF.exe
2015-01-04 20:34 - 2015-01-04 20:34 - 00004714 _____ () C:\WINDOWS\System32\Tasks\XSGUXHF
2015-01-04 20:34 - 2015-01-04 20:34 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
Task: {01369165-1857-40E7-9BF7-218C5D9E5777} - System32\Tasks\NHOGYRI => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {35B829AB-AAE3-4B2E-B536-1B1AFA213099} - System32\Tasks\YKHICJXT => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {3D2E75E8-F640-4271-A3D2-390E56C73619} - System32\Tasks\KII => C:\Users\Julie\AppData\Roaming\KII.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7} - System32\Tasks\DBLDTXL => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: {565D363D-0E86-43DC-96E2-DCB623CFA492} - System32\Tasks\upfs7235 => C:\PROGRA~2\Flwsrf\upfs7235.exe
Task: {779DDDA7-34B8-497B-A423-AA7F9D63B270} - System32\Tasks\QPNL => C:\Users\Julie\AppData\Roaming\QPNL.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {856D37B7-CA94-4CE1-A48E-8AA08C02ADF5} - System32\Tasks\{C62EC590-F1DE-44D9-9B53-F744F54E301E} => pcalua.exe -a C:\Users\Julie\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {89078F39-FDA4-483B-B3CC-D0845BDF96FA} - System32\Tasks\XSGUXHF => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {A76480E0-C2C6-4F09-96E8-BF2EB9AE647E} - System32\Tasks\LJ => C:\Users\Julie\AppData\Roaming\LJ.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {B16677CF-4662-4F8B-8301-AC04154CE3CC} - System32\Tasks\{F7FB3814-469D-41FD-A81C-AB757501215C} => pcalua.exe -a C:\Users\Julie\AppData\Local\BeamriseUninstall\Bootstrapper{1.Y2VqPwRP.100}.exe -c uninstall -slot=1 -bagKey=yikAakHwZJ8U
Task: {CC4E466D-54C4-4E6C-93D9-180227A04C4C} - System32\Tasks\JDDYK => C:\Users\Julie\AppData\Roaming\JDDYK.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: C:\WINDOWS\Tasks\DBLDTXL.job => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\JDDYK.job => C:\Users\Julie\AppData\Roaming\JDDYK.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\KII.job => C:\Users\Julie\AppData\Roaming\KII.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\LJ.job => C:\Users\Julie\AppData\Roaming\LJ.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\NHOGYRI.job => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\QPNL.job => C:\Users\Julie\AppData\Roaming\QPNL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\XSGUXHF.job => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\YKHICJXT.job => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe <==== ATTENTION
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
voici le rapport après la réparation.
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-01-2015
Ran by Julie at 2015-01-05 23:04:34 Run:1
Running from C:\Users\Julie\Desktop
Loaded Profile: Julie (Available profiles: Julie)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
HKLM-x32\...\Run: [mwyyntm1ndi1zdz] => C:\Program Files (x86)\Smwyyntm1ndi1zdz\mwiynzm4ndy1yjz.exe [2385408 2015-01-04] ()
CHR HomePage: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
CHR StartupUrls: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
2015-01-04 22:22 - 2015-01-04 22:22 - 00000000 ____D () C:\Users\Julie\AppData\Roaming\QuickScan
2015-01-04 22:13 - 2015-01-04 22:24 - 00004536 _____ () C:\WINDOWS\SysWOW64\abengine.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\SysWOW64\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\system32\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:13 - 00003086 _____ () C:\WINDOWS\System32\Tasks\upfs7235
2015-01-04 22:10 - 2015-01-04 23:18 - 00001360 _____ () C:\WINDOWS\Tasks\DBLDTXL.job
2015-01-04 22:10 - 2015-01-04 22:10 - 01549288 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\DBLDTXL.exe
2015-01-04 22:10 - 2015-01-04 22:10 - 00004370 _____ () C:\WINDOWS\System32\Tasks\DBLDTXL
2015-01-04 22:09 - 2015-01-04 23:18 - 00001356 _____ () C:\WINDOWS\Tasks\JDDYK.job
2015-01-04 22:09 - 2015-01-04 22:09 - 02047464 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\JDDYK.exe
2015-01-04 22:09 - 2015-01-04 22:09 - 00004366 _____ () C:\WINDOWS\System32\Tasks\JDDYK
2015-01-04 21:58 - 2015-01-04 21:58 - 00003886 _____ () C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-01-04 21:15 - 2015-01-05 22:24 - 00001002 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-01-04 21:15 - 2015-01-04 21:15 - 00003890 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-01-04 21:10 - 2015-01-05 15:00 - 00001360 _____ () C:\WINDOWS\Tasks\NHOGYRI.job
2015-01-04 21:10 - 2015-01-04 21:10 - 01330664 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\NHOGYRI.exe
2015-01-04 21:10 - 2015-01-04 21:10 - 00004368 _____ () C:\WINDOWS\System32\Tasks\NHOGYRI
2015-01-04 21:09 - 2015-01-04 23:18 - 00001354 _____ () C:\WINDOWS\Tasks\QPNL.job
2015-01-04 21:09 - 2015-01-04 21:10 - 00004362 _____ () C:\WINDOWS\System32\Tasks\QPNL
2015-01-04 21:09 - 2015-01-04 21:09 - 01965032 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\QPNL.exe
2015-01-04 21:08 - 2015-01-04 21:08 - 01200016 _____ () C:\Users\Julie\Downloads\Player(2).exe
2015-01-04 20:45 - 2015-01-04 20:45 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-04 20:44 - 2015-01-04 20:44 - 00000000 ____D () C:\Users\Julie\AppData\Local\com
2015-01-04 20:35 - 2015-01-05 15:29 - 00001350 _____ () C:\WINDOWS\Tasks\LJ.job
2015-01-04 20:35 - 2015-01-05 13:56 - 00001352 _____ () C:\WINDOWS\Tasks\KII.job
2015-01-04 20:35 - 2015-01-04 22:30 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-04 20:35 - 2015-01-04 21:10 - 01549288 _____ (Enter) C:\Users\Julie\AppData\Roaming\KII.exe
2015-01-04 20:35 - 2015-01-04 21:10 - 00004360 _____ () C:\WINDOWS\System32\Tasks\KII
2015-01-04 20:35 - 2015-01-04 20:35 - 01549288 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\LJ.exe
2015-01-04 20:35 - 2015-01-04 20:35 - 00004358 _____ () C:\WINDOWS\System32\Tasks\LJ
2015-01-04 20:35 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-04 20:34 - 2015-01-04 23:18 - 00001706 _____ () C:\WINDOWS\Tasks\YKHICJXT.job
2015-01-04 20:34 - 2015-01-04 23:18 - 00001704 _____ () C:\WINDOWS\Tasks\XSGUXHF.job
2015-01-04 20:34 - 2015-01-04 21:10 - 02047464 _____ (Enter) C:\Users\Julie\AppData\Roaming\YKHICJXT.exe
2015-01-04 20:34 - 2015-01-04 21:10 - 00004714 _____ () C:\WINDOWS\System32\Tasks\YKHICJXT
2015-01-04 20:34 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 20:34 - 2015-01-04 20:34 - 02047464 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\XSGUXHF.exe
2015-01-04 20:34 - 2015-01-04 20:34 - 00004714 _____ () C:\WINDOWS\System32\Tasks\XSGUXHF
2015-01-04 20:34 - 2015-01-04 20:34 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
Task: {01369165-1857-40E7-9BF7-218C5D9E5777} - System32\Tasks\NHOGYRI => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {35B829AB-AAE3-4B2E-B536-1B1AFA213099} - System32\Tasks\YKHICJXT => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {3D2E75E8-F640-4271-A3D2-390E56C73619} - System32\Tasks\KII => C:\Users\Julie\AppData\Roaming\KII.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7} - System32\Tasks\DBLDTXL => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: {565D363D-0E86-43DC-96E2-DCB623CFA492} - System32\Tasks\upfs7235 => C:\PROGRA~2\Flwsrf\upfs7235.exe
Task: {779DDDA7-34B8-497B-A423-AA7F9D63B270} - System32\Tasks\QPNL => C:\Users\Julie\AppData\Roaming\QPNL.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {856D37B7-CA94-4CE1-A48E-8AA08C02ADF5} - System32\Tasks\{C62EC590-F1DE-44D9-9B53-F744F54E301E} => pcalua.exe -a C:\Users\Julie\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {89078F39-FDA4-483B-B3CC-D0845BDF96FA} - System32\Tasks\XSGUXHF => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {A76480E0-C2C6-4F09-96E8-BF2EB9AE647E} - System32\Tasks\LJ => C:\Users\Julie\AppData\Roaming\LJ.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {B16677CF-4662-4F8B-8301-AC04154CE3CC} - System32\Tasks\{F7FB3814-469D-41FD-A81C-AB757501215C} => pcalua.exe -a C:\Users\Julie\AppData\Local\BeamriseUninstall\Bootstrapper{1.Y2VqPwRP.100}.exe -c uninstall -slot=1 -bagKey=yikAakHwZJ8U
Task: {CC4E466D-54C4-4E6C-93D9-180227A04C4C} - System32\Tasks\JDDYK => C:\Users\Julie\AppData\Roaming\JDDYK.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: C:\WINDOWS\Tasks\DBLDTXL.job => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\JDDYK.job => C:\Users\Julie\AppData\Roaming\JDDYK.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\KII.job => C:\Users\Julie\AppData\Roaming\KII.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\LJ.job => C:\Users\Julie\AppData\Roaming\LJ.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\NHOGYRI.job => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\QPNL.job => C:\Users\Julie\AppData\Roaming\QPNL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\XSGUXHF.job => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\YKHICJXT.job => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe <==== ATTENTION
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mwyyntm1ndi1zdz => value deleted successfully.
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
C:\Users\Julie\AppData\Roaming\QuickScan => Moved successfully.
C:\WINDOWS\SysWOW64\abengine.ini => Moved successfully.
C:\WINDOWS\SysWOW64\abengineOff.ini => Moved successfully.
C:\WINDOWS\system32\abengineOff.ini => Moved successfully.
C:\WINDOWS\System32\Tasks\upfs7235 => Moved successfully.
C:\WINDOWS\Tasks\DBLDTXL.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\DBLDTXL.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\DBLDTXL => Moved successfully.
C:\WINDOWS\Tasks\JDDYK.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\JDDYK.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\JDDYK => Moved successfully.
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => Moved successfully.
C:\WINDOWS\Tasks\NHOGYRI.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\NHOGYRI.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\NHOGYRI => Moved successfully.
C:\WINDOWS\Tasks\QPNL.job => Moved successfully.
C:\WINDOWS\System32\Tasks\QPNL => Moved successfully.
C:\Users\Julie\AppData\Roaming\QPNL.exe => Moved successfully.
C:\Users\Julie\Downloads\Player(2).exe => Moved successfully.
C:\ProgramData\1887373585 => Moved successfully.
C:\Users\Julie\AppData\Local\com => Moved successfully.
C:\WINDOWS\Tasks\LJ.job => Moved successfully.
C:\WINDOWS\Tasks\KII.job => Moved successfully.
C:\Users\Public\Temp => Moved successfully.
C:\Users\Julie\AppData\Roaming\KII.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\KII => Moved successfully.
C:\Users\Julie\AppData\Roaming\LJ.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\LJ => Moved successfully.
C:\Program Files (x86)\XTab => Moved successfully.
C:\WINDOWS\Tasks\YKHICJXT.job => Moved successfully.
C:\WINDOWS\Tasks\XSGUXHF.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\YKHICJXT.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\YKHICJXT => Moved successfully.
C:\Program Files (x86)\Umtayyznhndq1ntz => Moved successfully.
C:\Users\Julie\AppData\Roaming\XSGUXHF.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\XSGUXHF => Moved successfully.
C:\Program Files (x86)\Smwyyntm1ndi1zdz => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{01369165-1857-40E7-9BF7-218C5D9E5777}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{01369165-1857-40E7-9BF7-218C5D9E5777}" => Key deleted successfully.
C:\Windows\System32\Tasks\NHOGYRI not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\NHOGYRI" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{35B829AB-AAE3-4B2E-B536-1B1AFA213099}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{35B829AB-AAE3-4B2E-B536-1B1AFA213099}" => Key deleted successfully.
C:\Windows\System32\Tasks\YKHICJXT not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YKHICJXT" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3D2E75E8-F640-4271-A3D2-390E56C73619}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3D2E75E8-F640-4271-A3D2-390E56C73619}" => Key deleted successfully.
C:\Windows\System32\Tasks\KII not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\KII" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7}" => Key deleted successfully.
C:\Windows\System32\Tasks\DBLDTXL not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DBLDTXL" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{565D363D-0E86-43DC-96E2-DCB623CFA492}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{565D363D-0E86-43DC-96E2-DCB623CFA492}" => Key deleted successfully.
C:\Windows\System32\Tasks\upfs7235 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\upfs7235" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{779DDDA7-34B8-497B-A423-AA7F9D63B270}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{779DDDA7-34B8-497B-A423-AA7F9D63B270}" => Key deleted successfully.
C:\Windows\System32\Tasks\QPNL not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\QPNL" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{856D37B7-CA94-4CE1-A48E-8AA08C02ADF5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{856D37B7-CA94-4CE1-A48E-8AA08C02ADF5}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C62EC590-F1DE-44D9-9B53-F744F54E301E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C62EC590-F1DE-44D9-9B53-F744F54E301E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{89078F39-FDA4-483B-B3CC-D0845BDF96FA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89078F39-FDA4-483B-B3CC-D0845BDF96FA}" => Key deleted successfully.
C:\Windows\System32\Tasks\XSGUXHF not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\XSGUXHF" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A76480E0-C2C6-4F09-96E8-BF2EB9AE647E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A76480E0-C2C6-4F09-96E8-BF2EB9AE647E}" => Key deleted successfully.
C:\Windows\System32\Tasks\LJ not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LJ" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B16677CF-4662-4F8B-8301-AC04154CE3CC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B16677CF-4662-4F8B-8301-AC04154CE3CC}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F7FB3814-469D-41FD-A81C-AB757501215C} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F7FB3814-469D-41FD-A81C-AB757501215C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CC4E466D-54C4-4E6C-93D9-180227A04C4C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC4E466D-54C4-4E6C-93D9-180227A04C4C}" => Key deleted successfully.
C:\Windows\System32\Tasks\JDDYK not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\JDDYK" => Key deleted successfully.
C:\WINDOWS\Tasks\DBLDTXL.job not found.
C:\WINDOWS\Tasks\JDDYK.job not found.
C:\WINDOWS\Tasks\KII.job not found.
C:\WINDOWS\Tasks\LJ.job not found.
C:\WINDOWS\Tasks\NHOGYRI.job not found.
C:\WINDOWS\Tasks\QPNL.job not found.
C:\WINDOWS\Tasks\XSGUXHF.job not found.
C:\WINDOWS\Tasks\YKHICJXT.job not found.
==== End of Fixlog 23:04:40 ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-01-2015
Ran by Julie at 2015-01-05 23:04:34 Run:1
Running from C:\Users\Julie\Desktop
Loaded Profile: Julie (Available profiles: Julie)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
HKLM-x32\...\Run: [mwyyntm1ndi1zdz] => C:\Program Files (x86)\Smwyyntm1ndi1zdz\mwiynzm4ndy1yjz.exe [2385408 2015-01-04] ()
CHR HomePage: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
CHR StartupUrls: Default -> hxxp://isearch.omiga-plus.com/?type=hp&ts=1420399978&from=tugs&uid=ST750LM022XHN-M750MBB_S2UQJ9KD400293 [Pays US - 50.22.218.160]
2015-01-04 22:22 - 2015-01-04 22:22 - 00000000 ____D () C:\Users\Julie\AppData\Roaming\QuickScan
2015-01-04 22:13 - 2015-01-04 22:24 - 00004536 _____ () C:\WINDOWS\SysWOW64\abengine.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\SysWOW64\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:24 - 00002416 _____ () C:\WINDOWS\system32\abengineOff.ini
2015-01-04 22:13 - 2015-01-04 22:13 - 00003086 _____ () C:\WINDOWS\System32\Tasks\upfs7235
2015-01-04 22:10 - 2015-01-04 23:18 - 00001360 _____ () C:\WINDOWS\Tasks\DBLDTXL.job
2015-01-04 22:10 - 2015-01-04 22:10 - 01549288 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\DBLDTXL.exe
2015-01-04 22:10 - 2015-01-04 22:10 - 00004370 _____ () C:\WINDOWS\System32\Tasks\DBLDTXL
2015-01-04 22:09 - 2015-01-04 23:18 - 00001356 _____ () C:\WINDOWS\Tasks\JDDYK.job
2015-01-04 22:09 - 2015-01-04 22:09 - 02047464 _____ (Cinema HDV04.01) C:\Users\Julie\AppData\Roaming\JDDYK.exe
2015-01-04 22:09 - 2015-01-04 22:09 - 00004366 _____ () C:\WINDOWS\System32\Tasks\JDDYK
2015-01-04 21:58 - 2015-01-04 21:58 - 00003886 _____ () C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-01-04 21:15 - 2015-01-05 22:24 - 00001002 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-01-04 21:15 - 2015-01-04 21:15 - 00003890 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-01-04 21:10 - 2015-01-05 15:00 - 00001360 _____ () C:\WINDOWS\Tasks\NHOGYRI.job
2015-01-04 21:10 - 2015-01-04 21:10 - 01330664 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\NHOGYRI.exe
2015-01-04 21:10 - 2015-01-04 21:10 - 00004368 _____ () C:\WINDOWS\System32\Tasks\NHOGYRI
2015-01-04 21:09 - 2015-01-04 23:18 - 00001354 _____ () C:\WINDOWS\Tasks\QPNL.job
2015-01-04 21:09 - 2015-01-04 21:10 - 00004362 _____ () C:\WINDOWS\System32\Tasks\QPNL
2015-01-04 21:09 - 2015-01-04 21:09 - 01965032 _____ (smart-saverplus) C:\Users\Julie\AppData\Roaming\QPNL.exe
2015-01-04 21:08 - 2015-01-04 21:08 - 01200016 _____ () C:\Users\Julie\Downloads\Player(2).exe
2015-01-04 20:45 - 2015-01-04 20:45 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-04 20:44 - 2015-01-04 20:44 - 00000000 ____D () C:\Users\Julie\AppData\Local\com
2015-01-04 20:35 - 2015-01-05 15:29 - 00001350 _____ () C:\WINDOWS\Tasks\LJ.job
2015-01-04 20:35 - 2015-01-05 13:56 - 00001352 _____ () C:\WINDOWS\Tasks\KII.job
2015-01-04 20:35 - 2015-01-04 22:30 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-04 20:35 - 2015-01-04 21:10 - 01549288 _____ (Enter) C:\Users\Julie\AppData\Roaming\KII.exe
2015-01-04 20:35 - 2015-01-04 21:10 - 00004360 _____ () C:\WINDOWS\System32\Tasks\KII
2015-01-04 20:35 - 2015-01-04 20:35 - 01549288 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\LJ.exe
2015-01-04 20:35 - 2015-01-04 20:35 - 00004358 _____ () C:\WINDOWS\System32\Tasks\LJ
2015-01-04 20:35 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-04 20:34 - 2015-01-04 23:18 - 00001706 _____ () C:\WINDOWS\Tasks\YKHICJXT.job
2015-01-04 20:34 - 2015-01-04 23:18 - 00001704 _____ () C:\WINDOWS\Tasks\XSGUXHF.job
2015-01-04 20:34 - 2015-01-04 21:10 - 02047464 _____ (Enter) C:\Users\Julie\AppData\Roaming\YKHICJXT.exe
2015-01-04 20:34 - 2015-01-04 21:10 - 00004714 _____ () C:\WINDOWS\System32\Tasks\YKHICJXT
2015-01-04 20:34 - 2015-01-04 20:35 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 20:34 - 2015-01-04 20:34 - 02047464 _____ (HQProVideoV04.01) C:\Users\Julie\AppData\Roaming\XSGUXHF.exe
2015-01-04 20:34 - 2015-01-04 20:34 - 00004714 _____ () C:\WINDOWS\System32\Tasks\XSGUXHF
2015-01-04 20:34 - 2015-01-04 20:34 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
Task: {01369165-1857-40E7-9BF7-218C5D9E5777} - System32\Tasks\NHOGYRI => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {35B829AB-AAE3-4B2E-B536-1B1AFA213099} - System32\Tasks\YKHICJXT => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {3D2E75E8-F640-4271-A3D2-390E56C73619} - System32\Tasks\KII => C:\Users\Julie\AppData\Roaming\KII.exe [2015-01-04] (Enter) <==== ATTENTION
Task: {4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7} - System32\Tasks\DBLDTXL => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: {565D363D-0E86-43DC-96E2-DCB623CFA492} - System32\Tasks\upfs7235 => C:\PROGRA~2\Flwsrf\upfs7235.exe
Task: {779DDDA7-34B8-497B-A423-AA7F9D63B270} - System32\Tasks\QPNL => C:\Users\Julie\AppData\Roaming\QPNL.exe [2015-01-04] (smart-saverplus) <==== ATTENTION
Task: {856D37B7-CA94-4CE1-A48E-8AA08C02ADF5} - System32\Tasks\{C62EC590-F1DE-44D9-9B53-F744F54E301E} => pcalua.exe -a C:\Users\Julie\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=tugs
Task: {89078F39-FDA4-483B-B3CC-D0845BDF96FA} - System32\Tasks\XSGUXHF => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {A76480E0-C2C6-4F09-96E8-BF2EB9AE647E} - System32\Tasks\LJ => C:\Users\Julie\AppData\Roaming\LJ.exe [2015-01-04] (HQProVideoV04.01) <==== ATTENTION
Task: {B16677CF-4662-4F8B-8301-AC04154CE3CC} - System32\Tasks\{F7FB3814-469D-41FD-A81C-AB757501215C} => pcalua.exe -a C:\Users\Julie\AppData\Local\BeamriseUninstall\Bootstrapper{1.Y2VqPwRP.100}.exe -c uninstall -slot=1 -bagKey=yikAakHwZJ8U
Task: {CC4E466D-54C4-4E6C-93D9-180227A04C4C} - System32\Tasks\JDDYK => C:\Users\Julie\AppData\Roaming\JDDYK.exe [2015-01-04] (Cinema HDV04.01) <==== ATTENTION
Task: C:\WINDOWS\Tasks\DBLDTXL.job => C:\Users\Julie\AppData\Roaming\DBLDTXL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\JDDYK.job => C:\Users\Julie\AppData\Roaming\JDDYK.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\KII.job => C:\Users\Julie\AppData\Roaming\KII.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\LJ.job => C:\Users\Julie\AppData\Roaming\LJ.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\NHOGYRI.job => C:\Users\Julie\AppData\Roaming\NHOGYRI.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\QPNL.job => C:\Users\Julie\AppData\Roaming\QPNL.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\XSGUXHF.job => C:\Users\Julie\AppData\Roaming\XSGUXHF.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\YKHICJXT.job => C:\Users\Julie\AppData\Roaming\YKHICJXT.exe <==== ATTENTION
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mwyyntm1ndi1zdz => value deleted successfully.
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
C:\Users\Julie\AppData\Roaming\QuickScan => Moved successfully.
C:\WINDOWS\SysWOW64\abengine.ini => Moved successfully.
C:\WINDOWS\SysWOW64\abengineOff.ini => Moved successfully.
C:\WINDOWS\system32\abengineOff.ini => Moved successfully.
C:\WINDOWS\System32\Tasks\upfs7235 => Moved successfully.
C:\WINDOWS\Tasks\DBLDTXL.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\DBLDTXL.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\DBLDTXL => Moved successfully.
C:\WINDOWS\Tasks\JDDYK.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\JDDYK.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\JDDYK => Moved successfully.
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => Moved successfully.
C:\WINDOWS\Tasks\NHOGYRI.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\NHOGYRI.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\NHOGYRI => Moved successfully.
C:\WINDOWS\Tasks\QPNL.job => Moved successfully.
C:\WINDOWS\System32\Tasks\QPNL => Moved successfully.
C:\Users\Julie\AppData\Roaming\QPNL.exe => Moved successfully.
C:\Users\Julie\Downloads\Player(2).exe => Moved successfully.
C:\ProgramData\1887373585 => Moved successfully.
C:\Users\Julie\AppData\Local\com => Moved successfully.
C:\WINDOWS\Tasks\LJ.job => Moved successfully.
C:\WINDOWS\Tasks\KII.job => Moved successfully.
C:\Users\Public\Temp => Moved successfully.
C:\Users\Julie\AppData\Roaming\KII.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\KII => Moved successfully.
C:\Users\Julie\AppData\Roaming\LJ.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\LJ => Moved successfully.
C:\Program Files (x86)\XTab => Moved successfully.
C:\WINDOWS\Tasks\YKHICJXT.job => Moved successfully.
C:\WINDOWS\Tasks\XSGUXHF.job => Moved successfully.
C:\Users\Julie\AppData\Roaming\YKHICJXT.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\YKHICJXT => Moved successfully.
C:\Program Files (x86)\Umtayyznhndq1ntz => Moved successfully.
C:\Users\Julie\AppData\Roaming\XSGUXHF.exe => Moved successfully.
C:\WINDOWS\System32\Tasks\XSGUXHF => Moved successfully.
C:\Program Files (x86)\Smwyyntm1ndi1zdz => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{01369165-1857-40E7-9BF7-218C5D9E5777}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{01369165-1857-40E7-9BF7-218C5D9E5777}" => Key deleted successfully.
C:\Windows\System32\Tasks\NHOGYRI not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\NHOGYRI" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{35B829AB-AAE3-4B2E-B536-1B1AFA213099}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{35B829AB-AAE3-4B2E-B536-1B1AFA213099}" => Key deleted successfully.
C:\Windows\System32\Tasks\YKHICJXT not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YKHICJXT" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3D2E75E8-F640-4271-A3D2-390E56C73619}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3D2E75E8-F640-4271-A3D2-390E56C73619}" => Key deleted successfully.
C:\Windows\System32\Tasks\KII not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\KII" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F0FE499-1D0E-4F3B-B7B7-783315A2A8F7}" => Key deleted successfully.
C:\Windows\System32\Tasks\DBLDTXL not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DBLDTXL" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{565D363D-0E86-43DC-96E2-DCB623CFA492}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{565D363D-0E86-43DC-96E2-DCB623CFA492}" => Key deleted successfully.
C:\Windows\System32\Tasks\upfs7235 not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\upfs7235" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{779DDDA7-34B8-497B-A423-AA7F9D63B270}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{779DDDA7-34B8-497B-A423-AA7F9D63B270}" => Key deleted successfully.
C:\Windows\System32\Tasks\QPNL not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\QPNL" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{856D37B7-CA94-4CE1-A48E-8AA08C02ADF5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{856D37B7-CA94-4CE1-A48E-8AA08C02ADF5}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C62EC590-F1DE-44D9-9B53-F744F54E301E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C62EC590-F1DE-44D9-9B53-F744F54E301E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{89078F39-FDA4-483B-B3CC-D0845BDF96FA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89078F39-FDA4-483B-B3CC-D0845BDF96FA}" => Key deleted successfully.
C:\Windows\System32\Tasks\XSGUXHF not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\XSGUXHF" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A76480E0-C2C6-4F09-96E8-BF2EB9AE647E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A76480E0-C2C6-4F09-96E8-BF2EB9AE647E}" => Key deleted successfully.
C:\Windows\System32\Tasks\LJ not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LJ" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B16677CF-4662-4F8B-8301-AC04154CE3CC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B16677CF-4662-4F8B-8301-AC04154CE3CC}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F7FB3814-469D-41FD-A81C-AB757501215C} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F7FB3814-469D-41FD-A81C-AB757501215C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CC4E466D-54C4-4E6C-93D9-180227A04C4C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC4E466D-54C4-4E6C-93D9-180227A04C4C}" => Key deleted successfully.
C:\Windows\System32\Tasks\JDDYK not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\JDDYK" => Key deleted successfully.
C:\WINDOWS\Tasks\DBLDTXL.job not found.
C:\WINDOWS\Tasks\JDDYK.job not found.
C:\WINDOWS\Tasks\KII.job not found.
C:\WINDOWS\Tasks\LJ.job not found.
C:\WINDOWS\Tasks\NHOGYRI.job not found.
C:\WINDOWS\Tasks\QPNL.job not found.
C:\WINDOWS\Tasks\XSGUXHF.job not found.
C:\WINDOWS\Tasks\YKHICJXT.job not found.
==== End of Fixlog 23:04:40 ====
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
6 janv. 2015 à 09:17
6 janv. 2015 à 09:17
ok :)
Voila, c'est terminé, tu peux supprimer les programmes utilisés.
Quelques conseils :
Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Fais des scans réguliers avec, il est efficace.
(sauf si tu es sur un netbook)
Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=
Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/
Voila, c'est terminé, tu peux supprimer les programmes utilisés.
Quelques conseils :
Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Fais des scans réguliers avec, il est efficace.
(sauf si tu es sur un netbook)
Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=
Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
27 avril 2015 à 07:44
27 avril 2015 à 07:44
Salut,
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM-x32\...\Run: [mbot_fr_565] => [X]
HKLM-x32\...\Run: [gmsd_fr_362] => [X]
HKLM-x32\...\Run: [gmsd_fr_358] => [X]
HKLM-x32\...\Run: [gmsd_fr_365] => [X]
Winsock: Catalog9 01 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 02 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 03 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 04 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 16 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
HKLM-x32\...\Run: [mwyyntm1ndi1zdz] => C:\Program Files (x86)\Smwyyntm1ndi1zdz\y2iymzj2y3m2bdd.exe [2388480 2015-04-26] ()
FF HKLM-x32\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\fftoolbar2014@etech.com
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\faststartff@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [searchengine@gmail.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\searchengine@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [istart_ffnt@gmail.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\istart_ffnt@gmail.com
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-16] (XTab system)
R2 UniversalUpdater; C:\Program Files (x86)\Umtayyznhndq1ntz\mwmyzjmzngu1mdy.exe [709120 2015-03-31] () [File not signed]
S4 lomemuwe; C:\Users\BCG\AppData\Roaming\ABF0C328-1427810872-11E0-BA87-2485BF0C503B\nsy5369.tmp [X]
S4 nypikyjy; C:\Users\BCG\AppData\Roaming\ABF0C328-1427810872-11E0-BA87-2485BF0C503B\jnsb8622.tmp [X]
S2 Orbiter; C:/Program Files (x86)/ORBTR/orbiter.dll [X]
S2 Update PathMaxx; C:\Program Files (x86)\PathMaxx\updatePathMaxx.exe [X]
2015-04-26 20:36 - 2015-04-26 23:32 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-04-01 16:31 - 2015-04-01 16:32 - 00001328 _____ () C:\windows\Tasks\DVGAN.job
2015-04-01 16:31 - 2015-04-01 16:31 - 00007184 _____ () C:\windows\System32\Tasks\temp_1fbd11ed-2bfb-4782-b8fc-1d379461c127-6
2015-04-01 16:31 - 2015-04-01 16:31 - 00006496 _____ () C:\windows\System32\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4
2015-04-01 16:31 - 2015-04-01 16:31 - 00004460 _____ () C:\windows\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.job
2015-04-01 16:31 - 2015-04-01 16:31 - 00004346 _____ () C:\windows\System32\Tasks\DVGAN
2015-04-01 16:31 - 2015-04-01 16:31 - 00003452 _____ () C:\windows\System32\Tasks\ProPCCleaner_Popup
2015-04-01 16:31 - 2015-04-01 16:31 - 00003186 _____ () C:\windows\System32\Tasks\ProPCCleaner_Start
2015-04-01 16:30 - 2015-04-01 16:32 - 00001678 _____ () C:\windows\Tasks\ZKQHAXFZ.job
2015-04-01 16:30 - 2015-04-01 16:32 - 00001678 _____ () C:\windows\Tasks\PUKYLKRG.job
2015-04-01 16:30 - 2015-04-01 16:32 - 00001326 _____ () C:\windows\Tasks\VEKR.job
2015-04-01 16:30 - 2015-04-01 16:30 - 00004696 _____ () C:\windows\System32\Tasks\ZKQHAXFZ
2015-04-01 16:30 - 2015-04-01 16:30 - 00004696 _____ () C:\windows\System32\Tasks\PUKYLKRG
2015-04-01 16:30 - 2015-04-01 16:30 - 00004344 _____ () C:\windows\System32\Tasks\VEKR
2015-04-01 16:29 - 2015-04-01 16:29 - 00745472 _____ () C:\windows\fcr.dat
2015-04-01 16:29 - 2015-04-01 16:29 - 00458240 _____ () C:\windows\mfcr.exe
2015-04-01 16:29 - 2015-04-01 16:29 - 00004006 _____ () C:\windows\System32\Tasks\LaunchSignup
2015-04-01 16:29 - 2015-04-01 16:29 - 00003278 _____ () C:\windows\System32\Tasks\aPbBcfTYw0EAMMI
2015-04-01 16:29 - 2015-04-01 16:29 - 00003236 _____ () C:\windows\System32\Tasks\TVjlOnDYelZYvbP
2015-04-01 16:29 - 2015-04-01 16:29 - 00003234 _____ () C:\windows\System32\Tasks\Z0GSBJeu3D7R0ql
2015-04-01 16:28 - 2015-04-01 16:29 - 00521216 _____ () C:\windows\fcr.exe
2015-04-01 16:28 - 2015-04-01 16:28 - 00003546 _____ () C:\windows\System32\Tasks\TQHPUTIBUB
2015-03-31 23:31 - 2015-03-31 23:31 - 00001463 _____ () C:\Users\BCG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-31 18:56 - 2015-04-03 18:56 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP3.job
2015-03-31 18:56 - 2015-04-01 18:56 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP2.job
2015-03-31 18:56 - 2015-03-31 18:56 - 00002822 _____ () C:\windows\System32\Tasks\APSnotifierPP3
2015-03-31 18:56 - 2015-03-31 18:56 - 00002822 _____ () C:\windows\System32\Tasks\APSnotifierPP2
2015-03-31 18:40 - 2015-04-01 16:23 - 00001326 _____ () C:\windows\Tasks\NEWL.job
2015-03-31 18:40 - 2015-03-31 18:40 - 00004344 _____ () C:\windows\System32\Tasks\NEWL
2015-03-31 18:39 - 2015-04-01 16:23 - 00001678 _____ () C:\windows\Tasks\WDGGYEVU.job
2015-03-31 18:39 - 2015-03-31 18:39 - 00004696 _____ () C:\windows\System32\Tasks\WDGGYEVU
2015-03-31 18:36 - 2015-04-01 16:23 - 00001330 _____ () C:\windows\Tasks\JRPYSO.job
2015-03-31 18:36 - 2015-03-31 18:37 - 00004348 _____ () C:\windows\System32\Tasks\JRPYSO
2015-03-31 18:30 - 2015-04-01 16:59 - 00002196 _____ () C:\Users\BCG\Desktop\chrome.lnk
2015-03-31 18:20 - 2015-03-31 18:20 - 00003140 _____ () C:\windows\System32\Tasks\{079994B9-1342-49D1-9F17-28FE5531B887}
2015-03-31 18:16 - 2015-03-31 18:16 - 00001642 _____ () C:\windows\SysWOW64\${LOGFILE}
2015-03-31 17:33 - 2015-03-31 18:38 - 00000000 ____D () C:\Program Files (x86)\Software
2015-03-31 17:31 - 2015-03-31 23:30 - 00000378 _____ () C:\windows\Tasks\APSnotifierPP1.job
2015-03-31 17:31 - 2015-03-31 18:56 - 00002824 _____ () C:\windows\System32\Tasks\APSnotifierPP1
2015-03-31 17:31 - 2015-03-31 18:07 - 00001928 _____ () C:\windows\patsearch.bin
2015-03-31 17:31 - 2015-03-31 17:31 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webTinstMKTN_01009.Wdf
2015-03-31 17:30 - 2015-03-31 17:30 - 00000000 __SHD () C:\Users\BCG\AppData\Roaming\AnyProtectEx
2015-03-31 17:04 - 2015-03-31 20:08 - 00000004 _____ () C:\windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-03-31 16:25 - 2015-03-31 16:26 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-03-31 16:24 - 2015-03-31 18:41 - 00008448 _____ () C:\windows\SysWOW64\VCLOff.ini
2015-03-31 16:24 - 2015-03-31 18:41 - 00008448 _____ () C:\windows\system32\VCLOff.ini
2015-03-31 16:23 - 2015-04-01 16:23 - 00001676 _____ () C:\windows\Tasks\RRUOJVE.job
2015-03-31 16:23 - 2015-04-01 16:23 - 00001322 _____ () C:\windows\Tasks\FA.job
2015-03-31 16:23 - 2015-03-31 16:23 - 00004694 _____ () C:\windows\System32\Tasks\RRUOJVE
2015-03-31 16:23 - 2015-03-31 16:23 - 00004340 _____ () C:\windows\System32\Tasks\FA
2015-03-31 16:23 - 2015-03-20 15:54 - 00335064 _____ (VC Corporation) C:\windows\SysWOW64\VCL.dll
2015-03-31 16:20 - 2015-03-31 16:20 - 00004022 _____ () C:\windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-03-31 16:07 - 2015-03-30 18:30 - 00048776 _____ (StdLib) C:\windows\system32\Drivers\{61bc9620-8c15-4bf6-b992-006d0996a7bb}Gw64.sys
2015-03-31 16:04 - 2015-04-12 13:09 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-03-31 16:03 - 2015-03-31 16:03 - 00003136 _____ () C:\windows\System32\Tasks\Run_Bobby_Browser
2015-03-30 23:04 - 2015-04-04 16:09 - 00000000 ____D () C:\Users\BCG\AppData\Roaming\ImgBurn
2015-03-30 08:42 - 2015-03-30 08:42 - 00000000 _____ () C:\windows\SysWOW64\sho7BA2.tmp
2015-03-31 23:29 - 2015-03-25 21:52 - 00000000 ____D () C:\Users\BCG\AppData\Roaming\Internet-Controller
Task: {116790B6-E786-4E2A-BFC2-B20678FE396C} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {119D2FF5-C37D-4692-A8F6-2CDBF6EEDB74} - System32\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4 => C:\Program Files (x86)\Sm23mS\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.exe <==== ATTENTION
Task: {1579EE1D-6587-463E-AA70-013DFB7EE548} - System32\Tasks\PUKYLKRG => C:\Users\BCG\AppData\Roaming\PUKYLKRG.exe <==== ATTENTION
Task: {23FE1B03-F568-4691-9EAA-4403E605EC18} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {2A2C2CE8-F110-458F-8664-E3B3A6E67F45} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\BCG\AppData\Local\SmartWeb\SmartWebHelper.exe <==== ATTENTION
Task: {3512B02E-AD1F-4A6E-A18E-BA4DADE8AA98} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {48012C8F-00EB-44DC-9756-455ED43B2C15} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {5408235C-358E-4C8C-9A3A-D30D5DD428C2} - System32\Tasks\VEKR => C:\Users\BCG\AppData\Roaming\VEKR.exe <==== ATTENTION
Task: {56737AC4-4672-4644-A1FB-DDA6DD070BCA} - System32\Tasks\TVjlOnDYelZYvbP => C:\Users\BCG\AppData\Roaming\g6gzCH1\bETMFIz.exe
Task: {5BF73BB4-7092-4280-839C-F4B4E2FFFD00} - System32\Tasks\NEWL => C:\Users\BCG\AppData\Roaming\NEWL.exe <==== ATTENTION
Task: {5C5AEA22-B4D1-424F-8798-24AE2112A62E} - System32\Tasks\temp_1fbd11ed-2bfb-4782-b8fc-1d379461c127-6 => C:\Program Files (x86)\Sm23mS\1fbd11ed-2bfb-4782-b8fc-1d379461c127-6.exe <==== ATTENTION
Task: {60E80CC2-DCC1-4D6F-9BD6-17958767BF0D} - System32\Tasks\ProPCCleaner_Start => C:\Program Files (x86)\Pro PC Cleaner\ProPCCleaner.exe <==== ATTENTION
Task: {6D8B663C-180B-413A-BE37-8A59166D5D0E} - System32\Tasks\Run_Bobby_Browser => C:\Users\BCG\AppData\Local\BoBrowser\Application\bobrowser.exe <==== ATTENTION
Task: {6F69C546-3F3D-46AF-A9F3-2863C56628E8} - System32\Tasks\ZKQHAXFZ => C:\Users\BCG\AppData\Roaming\ZKQHAXFZ.exe <==== ATTENTION
Task: {7BE26EE5-B474-41C8-A933-45BF02BC0E22} - System32\Tasks\TQHPUTIBUB => C:\ProgramData\c23f8769a0bb48b69b1f10fa17020bc6\c23f8769a0bb48b69b1f10fa17020bc6.exe
Task: {7FF6ABFA-FC25-4A66-9B6F-8353EF056569} - System32\Tasks\ProPCCleaner_Popup => C:\Program Files (x86)\Pro PC Cleaner\Splash.exe <==== ATTENTION
Task: {8E4CCBA6-F883-4012-989D-1FD1F6C00B3C} - System32\Tasks\WDGGYEVU => C:\Users\BCG\AppData\Roaming\WDGGYEVU.exe <==== ATTENTION
Task: {A03650AC-06E7-4AA0-813C-AD06B5F809EE} - System32\Tasks\WSE_Astromenda => C:\Users\BCG\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {A445A4C3-6168-48AF-A5D0-F4842B4E712E} - System32\Tasks\RRUOJVE => C:\Users\BCG\AppData\Roaming\RRUOJVE.exe <==== ATTENTION
Task: {A7C4C69B-D83F-4E31-AE96-38F8F734454C} - System32\Tasks\FA => C:\Users\BCG\AppData\Roaming\FA.exe <==== ATTENTION
Task: {BA5C0CAE-27D7-47DA-8C85-EF17A1280ED7} - System32\Tasks\Z0GSBJeu3D7R0ql => C:\Users\BCG\AppData\Roaming\vxGpv4r\1O46Bn8.exe
Task: {CFF21541-0B0D-411D-8421-B9B58AB9DF0F} - System32\Tasks\JRPYSO => C:\Users\BCG\AppData\Roaming\JRPYSO.exe <==== ATTENTION
Task: {D878526C-D17B-46E1-BEB7-397A163B6782} - System32\Tasks\DVGAN => C:\Users\BCG\AppData\Roaming\DVGAN.exe <==== ATTENTION
Task: {F9BF2C11-CB99-4DC9-B1CD-BD3F37D267E8} - System32\Tasks\aPbBcfTYw0EAMMI => C:\Users\BCG\AppData\Roaming\HbsL25u\vi9lbZE.exe
Task: C:\windows\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.job => C:\Program Files (x86)\Sm23mS\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.exe <==== ATTENTION
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\DVGAN.job => C:\Users\BCG\AppData\Roaming\DVGAN.exe <==== ATTENTION
Task: C:\windows\Tasks\FA.job => C:\Users\BCG\AppData\Roaming\FA.exe <==== ATTENTION
Task: C:\windows\Tasks\JRPYSO.job => C:\Users\BCG\AppData\Roaming\JRPYSO.exe <==== ATTENTION
Task: C:\windows\Tasks\NEWL.job => C:\Users\BCG\AppData\Roaming\NEWL.exe <==== ATTENTION
Task: C:\windows\Tasks\PUKYLKRG.job => C:\Users\BCG\AppData\Roaming\PUKYLKRG.exe <==== ATTENTION
Task: C:\windows\Tasks\RRUOJVE.job => C:\Users\BCG\AppData\Roaming\RRUOJVE.exe <==== ATTENTION
Task: C:\windows\Tasks\VEKR.job => C:\Users\BCG\AppData\Roaming\VEKR.exe <==== ATTENTION
Task: C:\windows\Tasks\WDGGYEVU.job => C:\Users\BCG\AppData\Roaming\WDGGYEVU.exe <==== ATTENTION
Task: C:\windows\Tasks\WSE_Astromenda.job => C:\Users\BCG\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\windows\Tasks\ZKQHAXFZ.job => C:\Users\BCG\AppData\Roaming\ZKQHAXFZ.exe <==== ATTENTION
cmd: netsh winsock reset
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST qui doit se trouver sur le bureau et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
HKLM-x32\...\Run: [mbot_fr_565] => [X]
HKLM-x32\...\Run: [gmsd_fr_362] => [X]
HKLM-x32\...\Run: [gmsd_fr_358] => [X]
HKLM-x32\...\Run: [gmsd_fr_365] => [X]
Winsock: Catalog9 01 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 02 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 03 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 04 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
Winsock: Catalog9 16 C:\windows\SysWOW64\VCL.dll [335064 2015-03-31] (VC Corporation)
HKLM-x32\...\Run: [mwyyntm1ndi1zdz] => C:\Program Files (x86)\Smwyyntm1ndi1zdz\y2iymzj2y3m2bdd.exe [2388480 2015-04-26] ()
FF HKLM-x32\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\fftoolbar2014@etech.com
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\faststartff@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [searchengine@gmail.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\searchengine@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [istart_ffnt@gmail.com] - C:\Users\BCG\AppData\Roaming\Mozilla\Firefox\Profiles\mephx8pv.default\extensions\istart_ffnt@gmail.com
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-16] (XTab system)
R2 UniversalUpdater; C:\Program Files (x86)\Umtayyznhndq1ntz\mwmyzjmzngu1mdy.exe [709120 2015-03-31] () [File not signed]
S4 lomemuwe; C:\Users\BCG\AppData\Roaming\ABF0C328-1427810872-11E0-BA87-2485BF0C503B\nsy5369.tmp [X]
S4 nypikyjy; C:\Users\BCG\AppData\Roaming\ABF0C328-1427810872-11E0-BA87-2485BF0C503B\jnsb8622.tmp [X]
S2 Orbiter; C:/Program Files (x86)/ORBTR/orbiter.dll [X]
S2 Update PathMaxx; C:\Program Files (x86)\PathMaxx\updatePathMaxx.exe [X]
2015-04-26 20:36 - 2015-04-26 23:32 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-04-01 16:31 - 2015-04-01 16:32 - 00001328 _____ () C:\windows\Tasks\DVGAN.job
2015-04-01 16:31 - 2015-04-01 16:31 - 00007184 _____ () C:\windows\System32\Tasks\temp_1fbd11ed-2bfb-4782-b8fc-1d379461c127-6
2015-04-01 16:31 - 2015-04-01 16:31 - 00006496 _____ () C:\windows\System32\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4
2015-04-01 16:31 - 2015-04-01 16:31 - 00004460 _____ () C:\windows\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.job
2015-04-01 16:31 - 2015-04-01 16:31 - 00004346 _____ () C:\windows\System32\Tasks\DVGAN
2015-04-01 16:31 - 2015-04-01 16:31 - 00003452 _____ () C:\windows\System32\Tasks\ProPCCleaner_Popup
2015-04-01 16:31 - 2015-04-01 16:31 - 00003186 _____ () C:\windows\System32\Tasks\ProPCCleaner_Start
2015-04-01 16:30 - 2015-04-01 16:32 - 00001678 _____ () C:\windows\Tasks\ZKQHAXFZ.job
2015-04-01 16:30 - 2015-04-01 16:32 - 00001678 _____ () C:\windows\Tasks\PUKYLKRG.job
2015-04-01 16:30 - 2015-04-01 16:32 - 00001326 _____ () C:\windows\Tasks\VEKR.job
2015-04-01 16:30 - 2015-04-01 16:30 - 00004696 _____ () C:\windows\System32\Tasks\ZKQHAXFZ
2015-04-01 16:30 - 2015-04-01 16:30 - 00004696 _____ () C:\windows\System32\Tasks\PUKYLKRG
2015-04-01 16:30 - 2015-04-01 16:30 - 00004344 _____ () C:\windows\System32\Tasks\VEKR
2015-04-01 16:29 - 2015-04-01 16:29 - 00745472 _____ () C:\windows\fcr.dat
2015-04-01 16:29 - 2015-04-01 16:29 - 00458240 _____ () C:\windows\mfcr.exe
2015-04-01 16:29 - 2015-04-01 16:29 - 00004006 _____ () C:\windows\System32\Tasks\LaunchSignup
2015-04-01 16:29 - 2015-04-01 16:29 - 00003278 _____ () C:\windows\System32\Tasks\aPbBcfTYw0EAMMI
2015-04-01 16:29 - 2015-04-01 16:29 - 00003236 _____ () C:\windows\System32\Tasks\TVjlOnDYelZYvbP
2015-04-01 16:29 - 2015-04-01 16:29 - 00003234 _____ () C:\windows\System32\Tasks\Z0GSBJeu3D7R0ql
2015-04-01 16:28 - 2015-04-01 16:29 - 00521216 _____ () C:\windows\fcr.exe
2015-04-01 16:28 - 2015-04-01 16:28 - 00003546 _____ () C:\windows\System32\Tasks\TQHPUTIBUB
2015-03-31 23:31 - 2015-03-31 23:31 - 00001463 _____ () C:\Users\BCG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-31 18:56 - 2015-04-03 18:56 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP3.job
2015-03-31 18:56 - 2015-04-01 18:56 - 00000376 _____ () C:\windows\Tasks\APSnotifierPP2.job
2015-03-31 18:56 - 2015-03-31 18:56 - 00002822 _____ () C:\windows\System32\Tasks\APSnotifierPP3
2015-03-31 18:56 - 2015-03-31 18:56 - 00002822 _____ () C:\windows\System32\Tasks\APSnotifierPP2
2015-03-31 18:40 - 2015-04-01 16:23 - 00001326 _____ () C:\windows\Tasks\NEWL.job
2015-03-31 18:40 - 2015-03-31 18:40 - 00004344 _____ () C:\windows\System32\Tasks\NEWL
2015-03-31 18:39 - 2015-04-01 16:23 - 00001678 _____ () C:\windows\Tasks\WDGGYEVU.job
2015-03-31 18:39 - 2015-03-31 18:39 - 00004696 _____ () C:\windows\System32\Tasks\WDGGYEVU
2015-03-31 18:36 - 2015-04-01 16:23 - 00001330 _____ () C:\windows\Tasks\JRPYSO.job
2015-03-31 18:36 - 2015-03-31 18:37 - 00004348 _____ () C:\windows\System32\Tasks\JRPYSO
2015-03-31 18:30 - 2015-04-01 16:59 - 00002196 _____ () C:\Users\BCG\Desktop\chrome.lnk
2015-03-31 18:20 - 2015-03-31 18:20 - 00003140 _____ () C:\windows\System32\Tasks\{079994B9-1342-49D1-9F17-28FE5531B887}
2015-03-31 18:16 - 2015-03-31 18:16 - 00001642 _____ () C:\windows\SysWOW64\${LOGFILE}
2015-03-31 17:33 - 2015-03-31 18:38 - 00000000 ____D () C:\Program Files (x86)\Software
2015-03-31 17:31 - 2015-03-31 23:30 - 00000378 _____ () C:\windows\Tasks\APSnotifierPP1.job
2015-03-31 17:31 - 2015-03-31 18:56 - 00002824 _____ () C:\windows\System32\Tasks\APSnotifierPP1
2015-03-31 17:31 - 2015-03-31 18:07 - 00001928 _____ () C:\windows\patsearch.bin
2015-03-31 17:31 - 2015-03-31 17:31 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webTinstMKTN_01009.Wdf
2015-03-31 17:30 - 2015-03-31 17:30 - 00000000 __SHD () C:\Users\BCG\AppData\Roaming\AnyProtectEx
2015-03-31 17:04 - 2015-03-31 20:08 - 00000004 _____ () C:\windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-03-31 16:25 - 2015-03-31 16:26 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-03-31 16:24 - 2015-03-31 18:41 - 00008448 _____ () C:\windows\SysWOW64\VCLOff.ini
2015-03-31 16:24 - 2015-03-31 18:41 - 00008448 _____ () C:\windows\system32\VCLOff.ini
2015-03-31 16:23 - 2015-04-01 16:23 - 00001676 _____ () C:\windows\Tasks\RRUOJVE.job
2015-03-31 16:23 - 2015-04-01 16:23 - 00001322 _____ () C:\windows\Tasks\FA.job
2015-03-31 16:23 - 2015-03-31 16:23 - 00004694 _____ () C:\windows\System32\Tasks\RRUOJVE
2015-03-31 16:23 - 2015-03-31 16:23 - 00004340 _____ () C:\windows\System32\Tasks\FA
2015-03-31 16:23 - 2015-03-20 15:54 - 00335064 _____ (VC Corporation) C:\windows\SysWOW64\VCL.dll
2015-03-31 16:20 - 2015-03-31 16:20 - 00004022 _____ () C:\windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-03-31 16:07 - 2015-03-30 18:30 - 00048776 _____ (StdLib) C:\windows\system32\Drivers\{61bc9620-8c15-4bf6-b992-006d0996a7bb}Gw64.sys
2015-03-31 16:04 - 2015-04-12 13:09 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-03-31 16:03 - 2015-03-31 16:03 - 00003136 _____ () C:\windows\System32\Tasks\Run_Bobby_Browser
2015-03-30 23:04 - 2015-04-04 16:09 - 00000000 ____D () C:\Users\BCG\AppData\Roaming\ImgBurn
2015-03-30 08:42 - 2015-03-30 08:42 - 00000000 _____ () C:\windows\SysWOW64\sho7BA2.tmp
2015-03-31 23:29 - 2015-03-25 21:52 - 00000000 ____D () C:\Users\BCG\AppData\Roaming\Internet-Controller
Task: {116790B6-E786-4E2A-BFC2-B20678FE396C} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {119D2FF5-C37D-4692-A8F6-2CDBF6EEDB74} - System32\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4 => C:\Program Files (x86)\Sm23mS\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.exe <==== ATTENTION
Task: {1579EE1D-6587-463E-AA70-013DFB7EE548} - System32\Tasks\PUKYLKRG => C:\Users\BCG\AppData\Roaming\PUKYLKRG.exe <==== ATTENTION
Task: {23FE1B03-F568-4691-9EAA-4403E605EC18} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {2A2C2CE8-F110-458F-8664-E3B3A6E67F45} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\BCG\AppData\Local\SmartWeb\SmartWebHelper.exe <==== ATTENTION
Task: {3512B02E-AD1F-4A6E-A18E-BA4DADE8AA98} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {48012C8F-00EB-44DC-9756-455ED43B2C15} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {5408235C-358E-4C8C-9A3A-D30D5DD428C2} - System32\Tasks\VEKR => C:\Users\BCG\AppData\Roaming\VEKR.exe <==== ATTENTION
Task: {56737AC4-4672-4644-A1FB-DDA6DD070BCA} - System32\Tasks\TVjlOnDYelZYvbP => C:\Users\BCG\AppData\Roaming\g6gzCH1\bETMFIz.exe
Task: {5BF73BB4-7092-4280-839C-F4B4E2FFFD00} - System32\Tasks\NEWL => C:\Users\BCG\AppData\Roaming\NEWL.exe <==== ATTENTION
Task: {5C5AEA22-B4D1-424F-8798-24AE2112A62E} - System32\Tasks\temp_1fbd11ed-2bfb-4782-b8fc-1d379461c127-6 => C:\Program Files (x86)\Sm23mS\1fbd11ed-2bfb-4782-b8fc-1d379461c127-6.exe <==== ATTENTION
Task: {60E80CC2-DCC1-4D6F-9BD6-17958767BF0D} - System32\Tasks\ProPCCleaner_Start => C:\Program Files (x86)\Pro PC Cleaner\ProPCCleaner.exe <==== ATTENTION
Task: {6D8B663C-180B-413A-BE37-8A59166D5D0E} - System32\Tasks\Run_Bobby_Browser => C:\Users\BCG\AppData\Local\BoBrowser\Application\bobrowser.exe <==== ATTENTION
Task: {6F69C546-3F3D-46AF-A9F3-2863C56628E8} - System32\Tasks\ZKQHAXFZ => C:\Users\BCG\AppData\Roaming\ZKQHAXFZ.exe <==== ATTENTION
Task: {7BE26EE5-B474-41C8-A933-45BF02BC0E22} - System32\Tasks\TQHPUTIBUB => C:\ProgramData\c23f8769a0bb48b69b1f10fa17020bc6\c23f8769a0bb48b69b1f10fa17020bc6.exe
Task: {7FF6ABFA-FC25-4A66-9B6F-8353EF056569} - System32\Tasks\ProPCCleaner_Popup => C:\Program Files (x86)\Pro PC Cleaner\Splash.exe <==== ATTENTION
Task: {8E4CCBA6-F883-4012-989D-1FD1F6C00B3C} - System32\Tasks\WDGGYEVU => C:\Users\BCG\AppData\Roaming\WDGGYEVU.exe <==== ATTENTION
Task: {A03650AC-06E7-4AA0-813C-AD06B5F809EE} - System32\Tasks\WSE_Astromenda => C:\Users\BCG\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {A445A4C3-6168-48AF-A5D0-F4842B4E712E} - System32\Tasks\RRUOJVE => C:\Users\BCG\AppData\Roaming\RRUOJVE.exe <==== ATTENTION
Task: {A7C4C69B-D83F-4E31-AE96-38F8F734454C} - System32\Tasks\FA => C:\Users\BCG\AppData\Roaming\FA.exe <==== ATTENTION
Task: {BA5C0CAE-27D7-47DA-8C85-EF17A1280ED7} - System32\Tasks\Z0GSBJeu3D7R0ql => C:\Users\BCG\AppData\Roaming\vxGpv4r\1O46Bn8.exe
Task: {CFF21541-0B0D-411D-8421-B9B58AB9DF0F} - System32\Tasks\JRPYSO => C:\Users\BCG\AppData\Roaming\JRPYSO.exe <==== ATTENTION
Task: {D878526C-D17B-46E1-BEB7-397A163B6782} - System32\Tasks\DVGAN => C:\Users\BCG\AppData\Roaming\DVGAN.exe <==== ATTENTION
Task: {F9BF2C11-CB99-4DC9-B1CD-BD3F37D267E8} - System32\Tasks\aPbBcfTYw0EAMMI => C:\Users\BCG\AppData\Roaming\HbsL25u\vi9lbZE.exe
Task: C:\windows\Tasks\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.job => C:\Program Files (x86)\Sm23mS\1fbd11ed-2bfb-4782-b8fc-1d379461c127-4.exe <==== ATTENTION
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\windows\Tasks\DVGAN.job => C:\Users\BCG\AppData\Roaming\DVGAN.exe <==== ATTENTION
Task: C:\windows\Tasks\FA.job => C:\Users\BCG\AppData\Roaming\FA.exe <==== ATTENTION
Task: C:\windows\Tasks\JRPYSO.job => C:\Users\BCG\AppData\Roaming\JRPYSO.exe <==== ATTENTION
Task: C:\windows\Tasks\NEWL.job => C:\Users\BCG\AppData\Roaming\NEWL.exe <==== ATTENTION
Task: C:\windows\Tasks\PUKYLKRG.job => C:\Users\BCG\AppData\Roaming\PUKYLKRG.exe <==== ATTENTION
Task: C:\windows\Tasks\RRUOJVE.job => C:\Users\BCG\AppData\Roaming\RRUOJVE.exe <==== ATTENTION
Task: C:\windows\Tasks\VEKR.job => C:\Users\BCG\AppData\Roaming\VEKR.exe <==== ATTENTION
Task: C:\windows\Tasks\WDGGYEVU.job => C:\Users\BCG\AppData\Roaming\WDGGYEVU.exe <==== ATTENTION
Task: C:\windows\Tasks\WSE_Astromenda.job => C:\Users\BCG\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\windows\Tasks\ZKQHAXFZ.job => C:\Users\BCG\AppData\Roaming\ZKQHAXFZ.exe <==== ATTENTION
cmd: netsh winsock reset
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST qui doit se trouver sur le bureau et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
- Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
- Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
- Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=
Malekal_morte-
Messages postés
180304
Date d'inscription
mercredi 17 mai 2006
Statut
Modérateur, Contributeur sécurité
Dernière intervention
15 décembre 2020
24 660
27 avril 2015 à 20:51
27 avril 2015 à 20:51
Tu as fait les manips ?