Supprimer cross browser

Marilie0104 Messages postés 1 Statut Membre -  
 marilie -
Bonjour,

J'ai suivi la procédure que vous proposer.
Ci joint le lien pour le rapport adwcleaner
adwcleaner (s0).txt
https://pjjoint.malekal.com/files.php?id=20150617_t10p11y5m11z8
adwcleaner (R0.txt)
https://pjjoint.malekal.com/files.php?id=20150617_e9y8q10e6i6

Et ensuite

shortcut
https://pjjoint.malekal.com/files.php?id=20150617_7c6q14g10q12

addition
https://pjjoint.malekal.com/files.php?id=20150617_s6d11d14t11i13

FRST
https://pjjoint.malekal.com/files.php?id=20150617_z10v14y5s11y7

Pour être franche, je suis très nulle en informatique, j'ai suivi la procédure, en espérant que vous pourrez m'aider.
Merci d'avance
Marie

4 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Bonjour,

    Voici la correction à effectuer avec FRST.
    Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutoriel-farbar-recovery-scan-tool-frst/#fix

    Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
    Copie/colle dedans ce qui suit :

    HKU\S-1-5-21-3768875191-3010412958-1744395771-1000\...\Run: [GoogleChromeAutoLaunch_B0F2E69D798ABDFC5B3DFF1EB261E5A5] => C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window
    2015-06-17 21:21 - 2015-06-17 21:21 - 00000000 ____D C:\Users\rené\AppData\Local\WebShield
    2015-06-02 22:45 - 2015-06-02 22:45 - 00000000 ____D C:\ProgramData\Jlisrougobris
    2015-06-02 22:44 - 2015-06-09 22:39 - 00000000 ____D C:\Program Files\BrowserV02.06
    2015-06-02 22:44 - 2015-06-02 22:44 - 00001010 _____ C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job
    2015-06-02 22:42 - 2015-06-02 22:42 - 00002041 _____ C:\Users\Public\Desktop\Search.lnk
    2015-06-02 22:39 - 2015-06-17 19:45 - 00000400 _____ C:\Windows\Tasks\CheckMeUp Update.job
    2015-06-02 22:39 - 2015-06-02 22:39 - 00000000 ____D C:\ProgramData\ogwAmfKxHs
    2015-06-02 22:38 - 2015-06-02 22:38 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
    2015-06-02 22:33 - 2015-06-03 07:55 - 00000000 ____D C:\Program Files\Software
    2015-06-02 22:33 - 2015-06-02 22:33 - 00000000 ____D C:\Users\rené\AppData\Local\Software
    2015-06-02 22:30 - 2015-06-02 22:31 - 00000671 _____ C:\Users\rené\Downloads\Setup .website
    2015-05-25 17:30 - 2015-05-25 17:31 - 00000000 ____D C:\Users\rené\AppData\Local\{1650BD19-9E50-4800-8186-3FEE8FDB990C}
    2015-05-25 17:23 - 2015-05-25 17:23 - 00000000 ____D C:\b9597b8434de8a58f578
    2015-05-22 17:45 - 2015-06-17 21:21 - 00000024 _____ C:\Users\rené\AppData\Roaming\appdataFr25.bin
    2015-06-08 19:33 - 2015-04-18 11:35 - 00000000 ____D C:\ProgramData\11082214500681254622
    2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\rené\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb
    2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\rené\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb.exe
    Task: C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job => C:\Users\renýÿ\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb.exe <==== ATTENTION
    Task: C:\Windows\Tasks\CheckMeUp Update.job => C:\Program Files\version51CheckMeUp\m6CheckMeUpw79.exe
    Task: {04BA3509-E594-4205-81DC-7C431141BC09} - System32\Tasks\Jlisrougobris => C:\ProgramData\Jlisrougobris\1.0.1.0\saoxoavi.exe [2015-06-02] ()

    Une fois, le texte coller dans le bloc-note.
    Menu Fichier puis Enregistrer sous.
    A gauche, place toi sur le bureau.

    Dans le champs en bas, nom du fichier mets : fixlist.txt
    Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.

    Relance FRST qui doit se trouver sur le bureau et clic sur le bouton Fix
    Selon comment un redémarrage est nécessaire (pas obligatoire).
    Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.

    Redémarre l'ordinateur

    puis réinitialise tes navigateurs:
    ==================================
    Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :

    0
    1. marilie0104
       
      bonjour,

      Merci beaucoup pour votre aide, ci joint le rapport ....pour le moment je suis toujours embêter, téléchargements intempestifs, ouverture de page internet... je vais réinitialiser.
      Merci de votre retour


      Fix result of Farbar Recovery Scan Tool (x86) Version: 13-06-2015
      Ran by rené at 2015-06-18 22:20:51 Run:1
      Running from C:\Users\rené\Desktop
      Loaded Profiles: rené (Available Profiles: rené)
      Boot Mode: Normal

      ==============================================

      fixlist content:

      HKU\S-1-5-21-3768875191-3010412958-1744395771-1000\...\Run: [GoogleChromeAutoLaunch_B0F2E69D798ABDFC5B3DFF1EB261E5A5] => C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window

      2015-06-17 21:21 - 2015-06-17 21:21 - 00000000 ____D C:\Users\rené\AppData\Local\WebShield

      2015-06-02 22:45 - 2015-06-02 22:45 - 00000000 ____D C:\ProgramData\Jlisrougobris

      2015-06-02 22:44 - 2015-06-09 22:39 - 00000000 ____D C:\Program Files\BrowserV02.06

      2015-06-02 22:44 - 2015-06-02 22:44 - 00001010 _____ C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job

      2015-06-02 22:42 - 2015-06-02 22:42 - 00002041 _____ C:\Users\Public\Desktop\Search.lnk

      2015-06-02 22:39 - 2015-06-17 19:45 - 00000400 _____ C:\Windows\Tasks\CheckMeUp Update.job

      2015-06-02 22:39 - 2015-06-02 22:39 - 00000000 ____D C:\ProgramData\ogwAmfKxHs

      2015-06-02 22:38 - 2015-06-02 22:38 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf

      2015-06-02 22:33 - 2015-06-03 07:55 - 00000000 ____D C:\Program Files\Software

      2015-06-02 22:33 - 2015-06-02 22:33 - 00000000 ____D C:\Users\rené\AppData\Local\Software

      2015-06-02 22:30 - 2015-06-02 22:31 - 00000671 _____ C:\Users\rené\Downloads\Setup .website

      2015-05-25 17:30 - 2015-05-25 17:31 - 00000000 ____D C:\Users\rené\AppData\Local\{1650BD19-9E50-4800-8186-3FEE8FDB990C}

      2015-05-25 17:23 - 2015-05-25 17:23 - 00000000 ____D C:\b9597b8434de8a58f578

      2015-05-22 17:45 - 2015-06-17 21:21 - 00000024 _____ C:\Users\rené\AppData\Roaming\appdataFr25.bin

      2015-06-08 19:33 - 2015-04-18 11:35 - 00000000 ____D C:\ProgramData\11082214500681254622

      2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\rené\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb

      2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\rené\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb.exe

      Task: C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job => C:\Users\renýÿ\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb.exe <==== ATTENTION

      Task: C:\Windows\Tasks\CheckMeUp Update.job => C:\Program Files\version51CheckMeUp\m6CheckMeUpw79.exe

      Task: {04BA3509-E594-4205-81DC-7C431141BC09} - System32\Tasks\Jlisrougobris => C:\ProgramData\Jlisrougobris\1.0.1.0\saoxoavi.exe [2015-06-02] ()


      HKU\S-1-5-21-3768875191-3010412958-1744395771-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_B0F2E69D798ABDFC5B3DFF1EB261E5A5 => value removed successfully.
      C:\Users\rené\AppData\Local\WebShield => moved successfully.
      C:\ProgramData\Jlisrougobris => moved successfully.
      C:\Program Files\BrowserV02.06 => moved successfully.
      C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job => moved successfully.
      C:\Users\Public\Desktop\Search.lnk => moved successfully.
      0
  2. marilie
     
    bonjour,

    Merci beaucoup pour votre aide, ci joint le rapport ....pour le moment je suis toujours embêter, téléchargements intempestifs, ouverture de page internet... je vais réinitialiser. Mais à priori j'ai en extension yellow ads blocker que je n'arrive pas à supprimer.
    Merci de votre retour

    Fix result of Farbar Recovery Scan Tool (x86) Version: 13-06-2015
    Ran by rené at 2015-06-18 22:20:51 Run:1
    Running from C:\Users\rené\Desktop
    Loaded Profiles: rené (Available Profiles: rené)
    Boot Mode: Normal

    ==============================================

    fixlist content:

    HKU\S-1-5-21-3768875191-3010412958-1744395771-1000\...\Run: [GoogleChromeAutoLaunch_B0F2E69D798ABDFC5B3DFF1EB261E5A5] => C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window

    2015-06-17 21:21 - 2015-06-17 21:21 - 00000000 ____D C:\Users\rené\AppData\Local\WebShield

    2015-06-02 22:45 - 2015-06-02 22:45 - 00000000 ____D C:\ProgramData\Jlisrougobris

    2015-06-02 22:44 - 2015-06-09 22:39 - 00000000 ____D C:\Program Files\BrowserV02.06

    2015-06-02 22:44 - 2015-06-02 22:44 - 00001010 _____ C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job

    2015-06-02 22:42 - 2015-06-02 22:42 - 00002041 _____ C:\Users\Public\Desktop\Search.lnk

    2015-06-02 22:39 - 2015-06-17 19:45 - 00000400 _____ C:\Windows\Tasks\CheckMeUp Update.job

    2015-06-02 22:39 - 2015-06-02 22:39 - 00000000 ____D C:\ProgramData\ogwAmfKxHs

    2015-06-02 22:38 - 2015-06-02 22:38 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf

    2015-06-02 22:33 - 2015-06-03 07:55 - 00000000 ____D C:\Program Files\Software

    2015-06-02 22:33 - 2015-06-02 22:33 - 00000000 ____D C:\Users\rené\AppData\Local\Software

    2015-06-02 22:30 - 2015-06-02 22:31 - 00000671 _____ C:\Users\rené\Downloads\Setup .website

    2015-05-25 17:30 - 2015-05-25 17:31 - 00000000 ____D C:\Users\rené\AppData\Local\{1650BD19-9E50-4800-8186-3FEE8FDB990C}

    2015-05-25 17:23 - 2015-05-25 17:23 - 00000000 ____D C:\b9597b8434de8a58f578

    2015-05-22 17:45 - 2015-06-17 21:21 - 00000024 _____ C:\Users\rené\AppData\Roaming\appdataFr25.bin

    2015-06-08 19:33 - 2015-04-18 11:35 - 00000000 ____D C:\ProgramData\11082214500681254622

    2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\rené\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb

    2015-04-20 16:05 - 2015-04-20 16:05 - 1579520 _____ () C:\Users\rené\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb.exe

    Task: C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job => C:\Users\renýÿ\AppData\Roaming\oZ1YlnbVVcS3Mgcx4vnPb.exe <==== ATTENTION

    Task: C:\Windows\Tasks\CheckMeUp Update.job => C:\Program Files\version51CheckMeUp\m6CheckMeUpw79.exe

    Task: {04BA3509-E594-4205-81DC-7C431141BC09} - System32\Tasks\Jlisrougobris => C:\ProgramData\Jlisrougobris\1.0.1.0\saoxoavi.exe [2015-06-02] ()

    HKU\S-1-5-21-3768875191-3010412958-1744395771-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_B0F2E69D798ABDFC5B3DFF1EB261E5A5 => value removed successfully.
    C:\Users\rené\AppData\Local\WebShield => moved successfully.
    C:\ProgramData\Jlisrougobris => moved successfully.
    C:\Program Files\BrowserV02.06 => moved successfully.
    C:\Windows\Tasks\oZ1YlnbVVcS3Mgcx4vnPb.job => moved successfully.
    C:\Users\Public\Desktop\Search.lnk => moved successfully.
    0
  3. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Ca doit commencer à aller mieux.
    Histoire de, fais un nettoyage Malwarebytes.

    Malwarebytes (temps : environ 40min de scan):
    ==================================================
    Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
    Mets le à jour puis lance un examen.

    A la fin du scan, clic sur "Supprimer Selection" en bas à gauche.
    Redémarre l'ordinateur si besoin.
    Après redémarrage, relance Malwarebytes.
    Vas chercher le rapport dans l'onglet Historique.
    A gauche Journal des examens.
    Doube-clic sur l'examen dans la liste.
    Puis en bas Copier dans le presse papier
    Vas sur http://pjjoint.malekal.com et en bas, clic droit / coller pour coller le rapport du scan Malwarebytes.
    Clic sur envoyer.
    Dans un nouveau message ici en réponse, donne le lien pjjoint afin de pouvoir consulter le rapport.

    0
  4. marilie
     
    Merci bcp pour votre aide et vos conseils :) ça va mieux. Bonne soirée
    Marie
    0