Trotux

Résolu
IgorMaria Messages postés 4 Statut Membre -  
Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour,

Un petit problème de virus Trotux.

J'ai réinitialisé Google Chrome ainsi qu'Internet Explorer. Par contre je n'ai pas réussi à réinitialiser Mozilla Firefox donc je l'ai désinstallé.

Ensuite j'ai téléchargé FRST et voici les liens obtenus sur piijoint.malekal.com

https://pjjoint.malekal.com/files.php?id=FRST_20170312_s15m13w10f14r6

https://pjjoint.malekal.com/files.php?id=20170312_x12c5v5h13k15

Que dois-je faire ensuite?
Merci d'avance et bonne journée

2 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Voici la correction à effectuer avec FRST. Tu peux t'aider de cette note explicative avec des captures d'écran.

    Ouvre le bloc-notes : Touche Windows + R,
    Dans le champs "Exécuter", saisir notepad et OK.
    Copie/Colle dedans ce qui suit :

    CreateRestorePoint:
    CloseProcesses:
    HKLM\...\Providers\lk9p59pw: C:\Program Files (x86)\Weqechchivosh Builder\local64spl.dll [307200 2017-03-10] ()
    S2 a1fb79454c9f21586513ac679e7f793d; "C:\Program Files\a1fb79454c9f21586513ac679e7f793d\ee0072324882a15deb56e3ba5b603430.exe" [X]
    2017-03-12 01:10 - 2017-03-12 01:10 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign805137b8414bccd0
    2017-03-12 01:08 - 2017-03-12 01:08 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign7c1d17de6a4727cd
    2017-03-12 01:08 - 2017-03-12 01:08 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3295a9c685551b05
    2017-03-11 23:54 - 2017-03-11 23:54 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign83408731c46dc9fc
    2017-03-11 23:51 - 2017-03-11 23:51 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6d7e7a0060578568
    2017-03-11 23:51 - 2017-03-11 23:51 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5240d95c4753536e
    2017-03-11 20:59 - 2017-03-11 20:59 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign54fcd02746994307
    2017-03-11 20:01 - 2017-03-11 20:01 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign271e2344fd979976
    2017-03-11 20:01 - 2017-03-11 20:01 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign25c4547c58449545
    2017-03-11 12:39 - 2017-03-11 12:39 - 00000000 _____ C:\WINDOWS\SysWOW64\1
    2017-03-11 00:40 - 2017-03-11 00:40 - 00003644 _____ C:\WINDOWS\System32\Tasks\mm
    2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 ____D C:\Users\Maria Igor\Documents\PCSpeedUp
    2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\Note-UP
    2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 ____D C:\Program Files (x86)\MyMemory
    2017-03-11 00:40 - 2017-03-11 00:40 - 00000000 _____ C:\TOSTACK
    2017-03-11 00:39 - 2017-03-12 11:40 - 00000000 ____D C:\Program Files (x86)\Accelerer PC
    2017-03-11 00:39 - 2017-03-11 01:39 - 00000380 _____ C:\WINDOWS\Tasks\PC SpeedUp Service Deactivator.job
    2017-03-11 00:39 - 2017-03-11 00:39 - 00002838 _____ C:\WINDOWS\System32\Tasks\PC SpeedUp Service Deactivator
    2017-03-11 00:39 - 2017-03-11 00:39 - 00001130 _____ C:\Users\Maria Igor\Desktop\Accelerer PC.lnk
    2017-03-11 00:39 - 2017-03-11 00:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC
    2017-03-11 00:38 - 2017-03-11 00:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\FindIp
    2017-03-11 00:13 - 2017-03-11 00:13 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5dd462ea6d431ff4
    2017-03-11 00:07 - 2017-03-11 00:07 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignbe4f0760bcc9ba4d
    2017-03-11 00:07 - 2017-03-11 00:07 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign71426a82ff040858
    2017-03-10 18:19 - 2017-03-10 18:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignecd0d6a82d3ec19a
    2017-03-10 18:17 - 2017-03-10 18:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign556c9efaa92182f3
    2017-03-10 18:17 - 2017-03-10 18:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign0fae7fbb16f99c74
    2017-03-10 17:06 - 2017-03-11 13:28 - 00000000 ____D C:\Program Files (x86)\amulell
    2017-03-10 17:06 - 2017-03-11 12:42 - 00003684 _____ C:\WINDOWS\System32\Tasks\Milimili
    2017-03-10 17:06 - 2017-03-10 17:06 - 00000386 _____ C:\WINDOWS\SysWOW64\data.bin
    2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\amuleC
    2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\aMule
    2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 ____D C:\Program Files (x86)\MIO
    2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 _____ C:\WINDOWS\SysWOW64\4
    2017-03-10 17:06 - 2017-03-10 17:06 - 00000000 _____ C:\WINDOWS\SysWOW64\3
    2017-03-10 17:05 - 2017-03-11 13:26 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\WinSAPSvc
    2017-03-10 17:05 - 2017-03-11 12:42 - 00003336 _____ C:\WINDOWS\System32\Tasks\BikaQ_FetchAndUpgrade_CanBeDel
    2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\Users\Maria Igor\AppData\Roaming\WinSnare
    2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BikaQ
    2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\Program Files (x86)\WinSnare(4.2.8)
    2017-03-10 17:05 - 2017-03-10 17:05 - 00000000 ____D C:\Program Files (x86)\BikaQRss
    2017-03-10 17:01 - 2017-03-11 12:42 - 00000000 ____D C:\Program Files (x86)\MK
    2017-03-10 00:38 - 2017-03-11 12:52 - 00000000 ____D C:\Users\Maria Igor\AppData\LocalLow\Youtube AdBlock
    2017-03-10 00:37 - 2017-03-12 10:58 - 00000000 ____D C:\Program Files (x86)\DiskP
    2017-03-10 00:37 - 2017-03-12 10:54 - 00000000 ____D C:\Program Files\EJ7PE5E84Q
    2017-03-10 00:37 - 2017-03-11 13:17 - 00000000 ____D C:\Program Files (x86)\Youtube AdBlockU
    2017-03-10 00:37 - 2017-03-11 13:17 - 00000000 ____D C:\Program Files (x86)\Stalughtplce
    2017-03-10 00:37 - 2017-03-11 00:38 - 00000000 ____D C:\ProgramData\vCore
    2017-03-10 00:37 - 2017-03-10 00:52 - 00000340 _____ C:\WINDOWS\Tasks\Update Service for Youtube AdBlock2.job
    2017-03-10 00:37 - 2017-03-10 00:52 - 00000340 _____ C:\WINDOWS\Tasks\Update Service for Youtube AdBlock.job
    2017-03-10 00:37 - 2017-03-10 00:38 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Rucother
    2017-03-10 00:37 - 2017-03-10 00:37 - 00006092 _____ C:\WINDOWS\System32\Tasks\Weqechchivosh Builder
    2017-03-10 00:37 - 2017-03-10 00:37 - 00005142 _____ C:\WINDOWS\System32\Tasks\Shkasejdetion
    2017-03-10 00:37 - 2017-03-10 00:37 - 00003002 _____ C:\WINDOWS\System32\Tasks\Update Service for Youtube AdBlock2
    2017-03-10 00:37 - 2017-03-10 00:37 - 00002698 _____ C:\WINDOWS\System32\Tasks\Update Service for Youtube AdBlock
    2017-03-10 00:37 - 2017-03-10 00:37 - 00000000 ____D C:\Program Files (x86)\Weqechchivosh Builder
    2017-03-10 00:37 - 2017-03-10 00:37 - 00000000 ____D C:\Program Files (x86)\Hotspot
    R1 HWifiNetPro; C:\Program Files (x86)\Hotspot\HWifiNetPro64.sys [146752 2017-02-24] ()
    2017-03-05 22:15 - 2017-03-05 22:15 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigneb28376e25ee29ba
    2017-03-05 19:34 - 2017-03-05 19:34 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb72d50d593e1eddd
    2017-03-05 19:34 - 2017-03-05 19:34 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign16f9b8f5826ed64b
    2017-03-03 23:12 - 2017-03-03 23:12 - 00127368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
    2017-03-03 23:12 - 2017-03-03 23:12 - 00108424 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
    2017-03-02 20:10 - 2017-03-02 20:10 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign07dda83ba64b8c3a
    2017-03-02 20:06 - 2017-03-02 20:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign99abd9994daab195
    2017-03-02 20:06 - 2017-03-02 20:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1357fb6864aa2a58
    2017-03-01 23:56 - 2017-03-01 23:56 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna2558591b99d67b7
    2017-03-01 22:53 - 2017-03-01 22:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign83d1ab2f7b22a6c7
    2017-03-01 22:53 - 2017-03-01 22:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1b62f1f27c7c8438
    2017-02-28 22:44 - 2017-02-28 22:44 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignd3519d2ffadaa9e4
    2017-02-28 21:53 - 2017-02-28 21:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignf0cec8b5bd4bb3fb
    2017-02-28 21:53 - 2017-02-28 21:53 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3e2739ca88681758
    2017-02-27 20:35 - 2017-02-27 20:35 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigndeffbd018efac5c6
    2017-02-27 20:28 - 2017-02-27 20:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign78fdfc38947313fd
    2017-02-27 20:28 - 2017-02-27 20:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign08e13f047ef85c48
    2017-02-26 10:32 - 2017-02-26 10:32 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign4ac6478df282966a
    2017-02-26 10:31 - 2017-02-26 10:31 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignabdc3bec1663e157
    2017-02-26 10:31 - 2017-02-26 10:31 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign253d7888a66b4526
    2017-02-25 18:18 - 2017-02-25 18:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5922fe6cb9920e5a
    2017-02-25 17:57 - 2017-02-25 17:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign72db827eb5b22355
    2017-02-25 17:57 - 2017-02-25 17:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign553c1e357e14e6d5
    2017-02-24 17:33 - 2017-02-24 17:33 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignf1ce760f53e734dc
    2017-02-24 17:06 - 2017-02-24 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6d1dcd234a921818
    2017-02-24 17:06 - 2017-02-24 17:06 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign08cfdfd332557551
    2017-02-23 20:58 - 2017-02-23 20:58 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignaf8d2aa0cab33a90
    2017-02-22 19:37 - 2017-02-22 19:37 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign836108ca1bbf6cfb
    2017-02-22 19:18 - 2017-02-22 19:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignc80a94a8fdb2655b
    2017-02-22 19:18 - 2017-02-22 19:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign73b316077880afa1
    2017-02-21 23:24 - 2017-02-21 23:24 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign45e15558ab82d82b
    2017-02-21 23:19 - 2017-02-21 23:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigndefb95ab92b52c5e
    2017-02-21 23:19 - 2017-02-21 23:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb31dbdbb04d8d108
    2017-02-21 23:17 - 2017-02-21 23:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb494a2e31fd71a99
    2017-02-21 23:17 - 2017-02-21 23:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign985738b1bc5542a0
    2017-02-21 08:15 - 2017-03-08 18:00 - 00000000 ____D C:\ProgramData\tmp
    2017-02-21 00:42 - 2017-02-21 00:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign32a81bdccf9a75cf
    2017-02-21 00:40 - 2017-02-21 00:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6f01bc62f5f71ed8
    2017-02-21 00:40 - 2017-02-21 00:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign36b4faeeb432fa53
    2017-02-20 21:03 - 2017-02-20 21:03 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna49e35cd118eb9cb
    2017-02-20 20:57 - 2017-02-20 20:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1e6587d74e66b8b8
    2017-02-20 20:57 - 2017-02-20 20:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1154dd22300967ec
    2017-02-19 19:57 - 2017-02-19 19:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign00705518d525d72e
    2017-02-19 19:40 - 2017-02-19 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignf210f29e6bb36de7
    2017-02-19 19:40 - 2017-02-19 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign453610ed9ec6e884
    2017-02-18 13:24 - 2017-02-18 13:24 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna7b232fb80334e22
    2017-02-18 13:16 - 2017-02-18 13:16 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigna9acb255cda7a66a
    2017-02-18 13:16 - 2017-02-18 13:16 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign70950ee1d5fe4e76
    2017-02-17 18:31 - 2017-02-17 18:31 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3a38af5f10c14bde
    2017-02-17 17:48 - 2017-02-17 17:48 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign18d7079e7ad67f5d
    2017-02-17 17:42 - 2017-02-17 17:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6a10bca54c702b36
    2017-02-17 17:42 - 2017-02-17 17:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign1d25cb702b5ee5b0
    2017-02-13 20:21 - 2017-02-13 20:56 - 00000000 ____D C:\Users\Maria Igor\Desktop\Nouveau dossier
    2017-02-11 14:19 - 2017-02-11 14:19 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignd60f4b41a3c7c102
    2017-02-11 14:11 - 2017-02-11 14:11 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign8006ecce8d525198
    2017-02-11 14:11 - 2017-02-11 14:11 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign2f13208ec702f479
    2017-02-10 21:49 - 2017-02-10 21:49 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign78f932743b4cc3d4
    2017-02-10 20:48 - 2017-02-10 20:48 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign4d62b257fbbd4fa2
    2017-02-10 20:48 - 2017-02-10 20:48 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign00bb8a48508e4e0e
    2017-03-09 15:38 - 2017-03-09 15:56 - 00000000 ____D C:\Users\Maria Igor\Desktop\immo link
    2017-03-09 15:25 - 2017-03-09 15:25 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign213975d40d43c1cf
    2017-03-09 15:22 - 2017-03-09 15:22 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign939da3179590b7cb
    2017-03-09 15:22 - 2017-03-09 15:22 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign8e1def3e2c62b089
    2017-03-09 13:42 - 2017-03-09 13:42 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign55369d38675aa342
    2017-03-09 13:28 - 2017-03-09 13:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign240441d60530b1e5
    2017-03-09 13:28 - 2017-03-09 13:28 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign04e0ed463d09ccf0
    2017-03-09 13:05 - 2017-03-09 13:05 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignaba2ccf97f684790
    2017-03-09 12:57 - 2017-03-09 12:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsigncb149df6eef90d03
    2017-03-09 12:57 - 2017-03-09 12:57 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign3151d63181f8332d
    2017-03-09 00:18 - 2017-03-09 00:18 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign607e8edc791ad00e
    2017-03-09 00:17 - 2017-03-09 00:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign68490bdb15960982
    2017-03-09 00:17 - 2017-03-09 00:17 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign5cdbad5adbce91bc
    2017-03-08 19:40 - 2017-03-08 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign96c76c23b13b418d
    2017-03-08 19:40 - 2017-03-08 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign8da3cee85f3e89e6
    2017-03-08 19:40 - 2017-03-08 19:40 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign18a0a544abb465d3
    2017-03-07 23:41 - 2017-03-07 23:41 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign9c22b3108ec53d75
    2017-03-07 23:25 - 2017-03-07 23:25 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsignb2e638a24435f021
    2017-03-07 23:25 - 2017-03-07 23:25 - 00000000 ____D C:\Users\Maria Igor\AppData\Local\Tempzxpsign6aab8757587485ab
    2017-03-07 17:04 - 2017-03-07 17:04 - 03186367 _____ C:\WINDOWS\d053a6f0a1479e12144925d4dc796533.exe
    ShellExecuteHooks: Pas de nom - {5874D758-038F-11E7-AB7D-64006A5CFC23} - C:\Users\Maria Igor\AppData\Roaming\Sergtionghefaty\Kwilytqerry.dll -> Pas de fichier
    ShortcutWithArgument: C:\Users\Maria Igor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086
    ShortcutWithArgument: C:\Users\Maria Igor\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086
    ShortcutWithArgument: C:\Users\Maria Igor\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086 --disable-quic
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489161984&z=f11826990356dee77383289g0zfb5teg4q8geteb3w&from=che0812&uid=SAMSUNGXMZ7PC128HAFU-000H1_S0U2NSAC118086 --disable-quic
    Task: C:\WINDOWS\Tasks\PC SpeedUp Service Deactivator.job => C:\Program Files (x86)\Accelerer PC\PCSUSD.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\Update Service for Youtube AdBlock.job => C:\Program Files (x86)\Youtube AdBlockU\Ke81Wob.dll
    Task: C:\WINDOWS\Tasks\Update Service for Youtube AdBlock2.job => C:\Program Files (x86)\Youtube AdBlockU\Ke81Wob.dll
    Task: {62DE8BFE-6A87-4A3A-9758-00140D666C48} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\12 => C:\Program Files (x86)\DiskP\DiskPower.exe [2017-02-10] () <==== ATTENTION
    Task: {0EA5EE7E-A5C0-4756-BF53-75A3AE7263B4} - System32\Tasks\Microsoft\Windows\Media Center\VCore => C:\\ProgramData\\vCore\\VCore.exe [2017-03-06] () <==== ATTENTION
    Hosts:
    EmptyTemp:
    RemoveProxy:
    Reboot:


    Une fois, le texte collé dans le Bloc-notes,
    Menu "Fichier" puis "Enregistrer sous",
    A gauche, place toi sur le Bureau,
    Dans le champs en bas, nom du fichier mets : fixlist.txt
    Clique sur "Enregistrer", cela va créer fixlist.txt sur le Bureau.

    Relance FRST et clique sur le bouton "Corriger / Fix"
    Un redémarrage sera peut-être nécessaire ( pas obligatoire )
    Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.

    Redémarre l'ordinateur.

    2°)
    Réinitialise/Répare les navigateurs WEB concernés par les problèmes :

    3°)
    Fais un nettoyage Malwarebytes - Tutoriel Malwarebytes Anti-Malware version gratuite

    4°)
    Refais un scan FRST et donne les nouveaux rapports via pjjoint

    0
    1. IgorMaria Messages postés 4 Statut Membre
       
      Merci beaucoup!!!!
      ça a marché!!
      Bon dimanche
      0
  2. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    de rien et bon WE :)

    Supprime le dossier C:\FRST

    Termine par un nettoyage Malwarebytes - Tutoriel Malwarebytes Anti-Malware version gratuite

    Quelques conseils :

    Pour ne plus te faire avoir.
    A lire - Programmes parasites / PUPs : Dossier Adwares/PUPs : programmes indésirables et parasites
    (Surtout active les détections LPIs pour détecter les programmes parasites et publicitaires)

    0