Trotux

Résolu/Fermé
IgorMaria Messages postés 3 Date d'inscription dimanche 12 mars 2017 Statut Membre Dernière intervention 26 mars 2017 - 12 mars 2017 à 12:13
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 - 12 mars 2017 à 13:35
Bonjour,

Un petit problème de virus Trotux.

J'ai réinitialisé Google Chrome ainsi qu'Internet Explorer. Par contre je n'ai pas réussi à réinitialiser Mozilla Firefox donc je l'ai désinstallé.

Ensuite j'ai téléchargé FRST et voici les liens obtenus sur piijoint.malekal.com

https://pjjoint.malekal.com/files.php?id=FRST_20170312_s15m13w10f14r6

https://pjjoint.malekal.com/files.php?id=20170312_x12c5v5h13k15


Que dois-je faire ensuite?
Merci d'avance et bonne journée

2 réponses

Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
12 mars 2017 à 12:17
Salut,


Voici la correction à effectuer avec FRST. Tu peux t'aider de cette note explicative avec des captures d'écran.

Ouvre le bloc-notes : Touche Windows + R,
Dans le champs "Exécuter", saisir notepad et OK.
Copie/Colle dedans ce qui suit :

CreateRestorePoint:
CloseProcesses:
HKLM\...\Providers\lk9p59pw: C:\Program Files (x86)\Weqechchivosh Builder\local64spl.dll [307200 2017-03-10] ()
S2 a1fb79454c9f21586513ac679e7f793d; "C:\Program Files\a1fb79454c9f21586513ac679e7f793d\ee0072324882a15deb56e3ba5b603430.exe" [X]
2017-03-12 01:10 - 2017-03-12 01:10 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign805137b8414bccd0
2017-03-12 01:08 - 2017-03-12 01:08 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign7c1d17de6a4727cd
2017-03-12 01:08 - 2017-03-12 01:08 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3295a9c685551b05
2017-03-11 23:54 - 2017-03-11 23:54 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign83408731c46dc9fc
2017-03-11 23:51 - 2017-03-11 23:51 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6d7e7a0060578568
2017-03-11 23:51 - 2017-03-11 23:51 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5240d95c4753536e
2017-03-11 20:59 - 2017-03-11 20:59 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign54fcd02746994307
2017-03-11 20:01 - 2017-03-11 20:01 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign271e2344fd979976
2017-03-11 20:01 - 2017-03-11 20:01 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign25c4547c58449545
2017-03-11 12:39 - 2017-03-11 12:39 - 00000000 _____ C:\WINDOWS\SysWOW64\1
2017-03-11 00:40 - 2017-03-11 00:40 - 00003644 _____ C:\WINDOWS\System32\Tasks\mm
2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 ____D C:\Users\Maria Igor\Documents\PCSpeedUp
2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\Note-UP
2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 ____D C:\Program Files (x86)\MyMemory
2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 _____ C:\TOSTACK
2017-03-11 00:39 - 2017-03-12 11:40 - 00000000 ____D C:\Program Files (x86)\Accelerer PC
2017-03-11 00:39 - 2017-03-11 01:39 - 00000380 _____ C:\WINDOWS\Tasks\PC SpeedUp Service Deactivator.job
2017-03-11 00:39 - 2017-03-11 00:39 - 00002838 _____ C:\WINDOWS\System32\Tasks\PC SpeedUp Service Deactivator
2017-03-11 00:39 - 2017-03-11 00:39 - 00001130 _____ C:\Users\Maria Igor\Desktop\Accelerer PC.lnk
2017-03-11 00:39 - 2017-03-11 00:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC
2017-03-11 00:38 - 2017-03-11 00:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\FindIp
2017-03-11 00:13 - 2017-03-11 00:13 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5dd462ea6d431ff4
2017-03-11 00:07 - 2017-03-11 00:07 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignbe4f0760bcc9ba4d
2017-03-11 00:07 - 2017-03-11 00:07 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign71426a82ff040858
2017-03-10 18:19 - 2017-03-10 18:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignecd0d6a82d3ec19a
2017-03-10 18:17 - 2017-03-10 18:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign556c9efaa92182f3
2017-03-10 18:17 - 2017-03-10 18:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign0fae7fbb16f99c74
2017-03-10 17:06 - 2017-03-11 13:28 - 00000000 ____D C:\Program Files (x86)\amulell
2017-03-10 17:06 - 2017-03-11 12:42 - 00003684 _____ C:\WINDOWS\System32\Tasks\Milimili
2017-03-10 17:06 - 2017-03-10 17:06 - 00000386 _____ C:\WINDOWS\SysWOW64\data.bin
2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\amuleC
2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\aMule
2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 ____D C:\Program Files (x86)\MIO
2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 _____ C:\WINDOWS\SysWOW64\4
2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 _____ C:\WINDOWS\SysWOW64\3
2017-03-10 17:05 - 2017-03-11 13:26 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\WinSAPSvc
2017-03-10 17:05 - 2017-03-11 12:42 - 00003336 _____ C:\WINDOWS\System32\Tasks\BikaQ_FetchAndUpgrade_CanBeDel
2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\WinSnare
2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BikaQ
2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\Program Files (x86)\WinSnare(4.2.8)
2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\Program Files (x86)\BikaQRss
2017-03-10 17:01 - 2017-03-11 12:42 - 00000000 ____D C:\Program Files (x86)\MK
2017-03-10 00:38 - 2017-03-11 12:52 - 00000000 ____D C:\Users\Maria Igor\AppData\LocalLow\Youtube AdBlock
2017-03-10 00:37 - 2017-03-12 10:58 - 00000000 ____D C:\Program Files (x86)\DiskP
2017-03-10 00:37 - 2017-03-12 10:54 - 00000000 ____D C:\Program Files\EJ7PE5E84Q
2017-03-10 00:37 - 2017-03-11 13:17 - 00000000 ____D C:\Program Files (x86)\Youtube AdBlockU
2017-03-10 00:37 - 2017-03-11 13:17 - 00000000 ____D C:\Program Files (x86)\Stalughtplce
2017-03-10 00:37 - 2017-03-11 00:38 - 00000000 ____D C:\ProgramData\vCore
2017-03-10 00:37 - 2017-03-10 00:52 - 00000340 _____ C:\WINDOWS\Tasks\Update Service for Youtube AdBlock2.job
2017-03-10 00:37 - 2017-03-10 00:52 - 00000340 _____ C:\WINDOWS\Tasks\Update Service for Youtube AdBlock.job
2017-03-10 00:37 - 2017-03-10 00:38 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Rucother
2017-03-10 00:37 - 2017-03-10 00:37 - 00006092 _____ C:\WINDOWS\System32\Tasks\Weqechchivosh Builder
2017-03-10 00:37 - 2017-03-10 00:37 - 00005142 _____ C:\WINDOWS\System32\Tasks\Shkasejdetion
2017-03-10 00:37 - 2017-03-10 00:37 - 00003002 _____ C:\WINDOWS\System32\Tasks\Update Service for Youtube AdBlock2
2017-03-10 00:37 - 2017-03-10 00:37 - 00002698 _____ C:\WINDOWS\System32\Tasks\Update Service for Youtube AdBlock
2017-03-10 00:37 - 2017-03-10 00:37 - 00000000 ____D C:\Program Files (x86)\Weqechchivosh Builder
2017-03-10 00:37 - 2017-03-10 00:37 - 00000000 ____D C:\Program Files (x86)\Hotspot
R1 HWifiNetPro; C:\Program Files (x86)\Hotspot\HWifiNetPro64.sys [146752 2017-02-24] ()
2017-03-05 22:15 - 2017-03-05 22:15 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigneb28376e25ee29ba
2017-03-05 19:34 - 2017-03-05 19:34 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb72d50d593e1eddd
2017-03-05 19:34 - 2017-03-05 19:34 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign16f9b8f5826ed64b
2017-03-03 23:12 - 2017-03-03 23:12 - 00127368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2017-03-03 23:12 - 2017-03-03 23:12 - 00108424 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2017-03-02 20:10 - 2017-03-02 20:10 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign07dda83ba64b8c3a
2017-03-02 20:06 - 2017-03-02 20:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign99abd9994daab195
2017-03-02 20:06 - 2017-03-02 20:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1357fb6864aa2a58
2017-03-01 23:56 - 2017-03-01 23:56 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna2558591b99d67b7
2017-03-01 22:53 - 2017-03-01 22:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign83d1ab2f7b22a6c7
2017-03-01 22:53 - 2017-03-01 22:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1b62f1f27c7c8438
2017-02-28 22:44 - 2017-02-28 22:44 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignd3519d2ffadaa9e4
2017-02-28 21:53 - 2017-02-28 21:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignf0cec8b5bd4bb3fb
2017-02-28 21:53 - 2017-02-28 21:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3e2739ca88681758
2017-02-27 20:35 - 2017-02-27 20:35 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigndeffbd018efac5c6
2017-02-27 20:28 - 2017-02-27 20:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign78fdfc38947313fd
2017-02-27 20:28 - 2017-02-27 20:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign08e13f047ef85c48
2017-02-26 10:32 - 2017-02-26 10:32 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign4ac6478df282966a
2017-02-26 10:31 - 2017-02-26 10:31 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignabdc3bec1663e157
2017-02-26 10:31 - 2017-02-26 10:31 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign253d7888a66b4526
2017-02-25 18:18 - 2017-02-25 18:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5922fe6cb9920e5a
2017-02-25 17:57 - 2017-02-25 17:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign72db827eb5b22355
2017-02-25 17:57 - 2017-02-25 17:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign553c1e357e14e6d5
2017-02-24 17:33 - 2017-02-24 17:33 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignf1ce760f53e734dc
2017-02-24 17:06 - 2017-02-24 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6d1dcd234a921818
2017-02-24 17:06 - 2017-02-24 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign08cfdfd332557551
2017-02-23 20:58 - 2017-02-23 20:58 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignaf8d2aa0cab33a90
2017-02-22 19:37 - 2017-02-22 19:37 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign836108ca1bbf6cfb
2017-02-22 19:18 - 2017-02-22 19:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignc80a94a8fdb2655b
2017-02-22 19:18 - 2017-02-22 19:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign73b316077880afa1
2017-02-21 23:24 - 2017-02-21 23:24 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign45e15558ab82d82b
2017-02-21 23:19 - 2017-02-21 23:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigndefb95ab92b52c5e
2017-02-21 23:19 - 2017-02-21 23:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb31dbdbb04d8d108
2017-02-21 23:17 - 2017-02-21 23:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb494a2e31fd71a99
2017-02-21 23:17 - 2017-02-21 23:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign985738b1bc5542a0
2017-02-21 08:15 - 2017-03-08 18:00 - 00000000 ____D C:\ProgramData\tmp
2017-02-21 00:42 - 2017-02-21 00:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign32a81bdccf9a75cf
2017-02-21 00:40 - 2017-02-21 00:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6f01bc62f5f71ed8
2017-02-21 00:40 - 2017-02-21 00:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign36b4faeeb432fa53
2017-02-20 21:03 - 2017-02-20 21:03 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna49e35cd118eb9cb
2017-02-20 20:57 - 2017-02-20 20:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1e6587d74e66b8b8
2017-02-20 20:57 - 2017-02-20 20:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1154dd22300967ec
2017-02-19 19:57 - 2017-02-19 19:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign00705518d525d72e
2017-02-19 19:40 - 2017-02-19 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignf210f29e6bb36de7
2017-02-19 19:40 - 2017-02-19 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign453610ed9ec6e884
2017-02-18 13:24 - 2017-02-18 13:24 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna7b232fb80334e22
2017-02-18 13:16 - 2017-02-18 13:16 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna9acb255cda7a66a
2017-02-18 13:16 - 2017-02-18 13:16 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign70950ee1d5fe4e76
2017-02-17 18:31 - 2017-02-17 18:31 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3a38af5f10c14bde
2017-02-17 17:48 - 2017-02-17 17:48 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign18d7079e7ad67f5d
2017-02-17 17:42 - 2017-02-17 17:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6a10bca54c702b36
2017-02-17 17:42 - 2017-02-17 17:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1d25cb702b5ee5b0
2017-02-13 20:21 - 2017-02-13 20:56 - 00000000 ____D C:\Users\Maria Igor\Desktop\Nouveau dossier
2017-02-11 14:19 - 2017-02-11 14:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignd60f4b41a3c7c102
2017-02-11 14:11 - 2017-02-11 14:11 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign8006ecce8d525198
2017-02-11 14:11 - 2017-02-11 14:11 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign2f13208ec702f479
2017-02-10 21:49 - 2017-02-10 21:49 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign78f932743b4cc3d4
2017-02-10 20:48 - 2017-02-10 20:48 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign4d62b257fbbd4fa2
2017-02-10 20:48 - 2017-02-10 20:48 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign00bb8a48508e4e0e
2017-03-09 15:38 - 2017-03-09 15:56 - 00000000 ____D C:\Users\Maria Igor\Desktop\immo link
2017-03-09 15:25 - 2017-03-09 15:25 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign213975d40d43c1cf
2017-03-09 15:22 - 2017-03-09 15:22 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign939da3179590b7cb
2017-03-09 15:22 - 2017-03-09 15:22 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign8e1def3e2c62b089
2017-03-09 13:42 - 2017-03-09 13:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign55369d38675aa342
2017-03-09 13:28 - 2017-03-09 13:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign240441d60530b1e5
2017-03-09 13:28 - 2017-03-09 13:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign04e0ed463d09ccf0
2017-03-09 13:05 - 2017-03-09 13:05 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignaba2ccf97f684790
2017-03-09 12:57 - 2017-03-09 12:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigncb149df6eef90d03
2017-03-09 12:57 - 2017-03-09 12:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3151d63181f8332d
2017-03-09 00:18 - 2017-03-09 00:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign607e8edc791ad00e
2017-03-09 00:17 - 2017-03-09 00:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign68490bdb15960982
2017-03-09 00:17 - 2017-03-09 00:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5cdbad5adbce91bc
2017-03-08 19:40 - 2017-03-08 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign96c76c23b13b418d
2017-03-08 19:40 - 2017-03-08 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign8da3cee85f3e89e6
2017-03-08 19:40 - 2017-03-08 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign18a0a544abb465d3
2017-03-07 23:41 - 2017-03-07 23:41 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign9c22b3108ec53d75
2017-03-07 23:25 - 2017-03-07 23:25 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb2e638a24435f021
2017-03-07 23:25 - 2017-03-07 23:25 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6aab8757587485ab
2017-03-07 17:04 - 2017-03-07 17:04 - 03186367 _____ C:\WINDOWS\d053a6f0a1479e12144925d4dc796533.exe
ShellExecuteHooks: Pas de nom - {5874D758-038F-11E7-AB7D-64006A5CFC23} - C:\Users\Maria Igor\AppData\Roaming\Sergtionghefaty\Kwilytqerry.dll -> Pas de fichier
ShortcutWithArgument: C:\Users\Maria Igor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086
ShortcutWithArgument: C:\Users\Maria Igor\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086
ShortcutWithArgument: C:\Users\Maria Igor\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086 --disable-quic
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086 --disable-quic
Task: C:\WINDOWS\Tasks\PC SpeedUp Service Deactivator.job => C:\Program Files (x86)\Accelerer PC\PCSUSD.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Update Service for Youtube AdBlock.job => C:\Program Files (x86)\Youtube AdBlockU\Ke81Wob.dll
Task: C:\WINDOWS\Tasks\Update Service for Youtube AdBlock2.job => C:\Program Files (x86)\Youtube AdBlockU\Ke81Wob.dll
Task: {62DE8BFE-6A87-4A3A-9758-00140D666C48} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\12 => C:\Program Files (x86)\DiskP\DiskPower.exe [2017-02-10] () <==== ATTENTION
Task: {0EA5EE7E-A5C0-4756-BF53-75A3AE7263B4} - System32\Tasks\Microsoft\Windows\Media Center\VCore => C:\\ProgramData\\vCore\\VCore.exe [2017-03-06] () <==== ATTENTION
Hosts:
EmptyTemp:
RemoveProxy:
Reboot:


Une fois, le texte collé dans le Bloc-notes,
Menu "Fichier" puis "Enregistrer sous",
A gauche, place toi sur le Bureau,
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clique sur "Enregistrer", cela va créer fixlist.txt sur le Bureau.

Relance FRST et clique sur le bouton "Corriger / Fix"
Un redémarrage sera peut-être nécessaire ( pas obligatoire )
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.

Redémarre l'ordinateur.


2°)
Réinitialise/Répare les navigateurs WEB concernés par les problèmes :

3°)
Fais un nettoyage Malwarebytes - Tutoriel Malwarebytes Anti-Malware version gratuite

4°)
Refais un scan FRST et donne les nouveaux rapports via pjjoint


0
IgorMaria Messages postés 3 Date d'inscription dimanche 12 mars 2017 Statut Membre Dernière intervention 26 mars 2017
12 mars 2017 à 13:30
Merci beaucoup!!!!
ça a marché!!
Bon dimanche
0
Malekal_morte- Messages postés 180304 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 628
12 mars 2017 à 13:35
de rien et bon WE :)

Supprime le dossier C:\FRST


Termine par un nettoyage Malwarebytes - Tutoriel Malwarebytes Anti-Malware version gratuite


Quelques conseils :

Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : Dossier Adwares/PUPs : programmes indésirables et parasites
(Surtout active les détections LPIs pour détecter les programmes parasites et publicitaires)

0