[Résolu] Windows 7, erreur $RECYCLEBIN\Vlc.rar / adobe.rar

Aide à la désinfection pour supprimer les virus, adwares, ransomwares, trojans.

Modérateurs : Mods Windows, Helper

Nour
Messages : 2
Inscription : 18 mars 2017 19:11

Re: [Résolu] Windows 7, erreur $RECYCLEBIN\Vlc.rar / adobe.rar

Message par Nour » 18 mars 2017 19:15

Bonjour,
j'ai le meme probleme, voici les liens demandes:

FRST:
http://pjjoint.malekal.com/files.php?id ... q5v14w6d15

Addition
http://pjjoint.malekal.com/files.php?id ... x12p510w11

Shortcut:
http://pjjoint.malekal.com/files.php?id ... 4z8g5x11e5

Merci infiniment pour votre aide.

Avatar de l’utilisateur
angelique
Geek à longue barbe
Geek à longue barbe
Messages : 26998
Inscription : 28 févr. 2008 14:58
Localisation : Breizhilienne à l' 0u3st
Contact :

Re: [Résolu] Windows 7, erreur $RECYCLEBIN\Vlc.rar / adobe.rar

Message par angelique » 18 mars 2017 19:40

Bonjour,

et bien, quelle poubelle à merdes lol

Désinstalle via programmes et fonctionnalités ce que tu peux ci dessous sinon continue:

OffersWizard Network System Driver (HKLM-x32\...\inethnfd) (Version: 1.0.0.3001 - ) <==== ATTENTION

Positive Finds (HKLM-x32\...\Positive Finds) (Version: 2.0.5516.36974 - Positive Finds) <==== ATTENTION

Software Version Updater (HKLM-x32\...\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}) (Version: 1.1.3.9 - ) <==== ATTENTION

Trust Media Viewer (HKLM-x32\...\TrustMediaViewerV1alpha6140) (Version: 1.1 - Trust Media Viewer) <==== ATTENTION

UpdateChecker (HKU\S-1-5-21-3768977029-3246216658-927387095-1001\...\Popajar, inc UpdateChecker) (Version: - Popajar, inc) <==== ATTENTION

WebCake 3.00 (HKLM\...\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}) (Version: 3.00 - WebCake LLC) <==== ATTENTION

Webexp Enhanced (HKLM-x32\...\Webexp Enhanced) (Version: 1.1 - Webexp Enhanced) <==== ATTENTION

WinSnare (HKLM-x32\...\{FC5A2575-5D95-4466-A08A-8908998E49D0}) (Version: 4.3.3 - WinSnare) <==== ATTENTION

YAC(Yet Another Cleaner!) (HKLM-x32\...\iSafe) (Version: - ELEX DO BRASIL PARTICIPAÇÕES LTDA) <==== ATTENTION

  • Ouvre le bloc-notes : Menu Démarrer / Tous les programmes / Accessoires et Bloc-Notes. (ou executer➫notepad)
    Copie/colle dedans ce qui suit :

    Code : Tout sélectionner

    HKU\S-1-5-21-3768977029-3246216658-927387095-1001\...\ChromeHTML: -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) <==== ATTENTION
    Task: {04C112EA-1530-4AE8-833F-1B0D7849F053} - System32\Tasks\{E66E516A-A93C-4BA7-8E64-2292EBFD2F9C} => pcalua.exe -a C:\Users\Mo\AppData\Local\Temp\GLF69A1\Setup.exe -d C:\Users\Mo\AppData\Local\Temp\GLF69A1 -c /s <==== ATTENTION
    Task: {088BD9E1-5C1F-41D3-BBB0-F84D47F6DE81} - System32\Tasks\Microsoft\Windows\Media Center\RegisterObject => C:\\ProgramData\\RegisterObject\\RegisterObject.exe [2017-03-10] () <==== ATTENTION
    Task: {0AC11D34-117B-4EC7-B0D3-32954803532B} - System32\Tasks\BitGuard => Sc.exe start BitGuard <==== ATTENTION
    Task: {1267745A-9A13-4DCB-BFA0-7176B2141DAE} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-7 => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-7.exe  <==== ATTENTION
    Task: {1B82E7B5-CDD8-49AB-B3D3-11FC7C9EC191} - System32\Tasks\AmiUpdXp => C:\Users\Mo\AppData\Local\27715\a19676.exe  <==== ATTENTION
    Task: {37F8C792-F1A7-476B-95E2-188D71CF4159} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-11 => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-11.exe  <==== ATTENTION
    Task: {3AF500C1-3FB5-4372-95A5-A2FC3C8A5858} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-4 => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-4.exe  <==== ATTENTION
    Task: {3B35B8BC-2119-4835-94F1-D25CB4249CD5} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-10_user => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-10.exe  <==== ATTENTION
    Task: {43EB5960-E50C-4D7C-A2D2-83F136F3DEC0} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5_user => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5.exe  <==== ATTENTION
    Task: {456E6404-CE10-4E8B-944F-1C4605515802} - System32\Tasks\Pladesy Adapter => C:\Program Files (x86)\Ghogile\xarerpit.exe 
    Task: {5D2B56CF-C53D-41D3-BDC0-44C8AA3153E4} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
    Task: {6027F17F-93E9-4684-BA92-D47CD1D2DAAA} - System32\Tasks\Drberghzagiph => "msiexec" /i hxxp://d2buh1bf1g584w.cloudfront.net/msi/rel.php?u=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&amp;v=20170310 /q <==== ATTENTION
    Task: {7209C990-2346-4892-92A1-538B43406529} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5 => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5.exe  <==== ATTENTION
    Task: {A33B24B1-6146-470E-8C1E-DAAD037576AB} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-7 => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-7.exe  <==== ATTENTION
    Task: {C1673DD9-72F4-4E14-B323-8781B1F1B5F4} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe  <==== ATTENTION
    Task: {C1AED223-AC94-4AD1-A49E-AF5142FDF4D7} - System32\Tasks\GoforFilesUpdate => C:\Program Files (x86)\GoforFiles\GFFUpdater.exe  <==== ATTENTION
    Task: {EBC3D345-6FE8-45E9-8C5D-38B6256A509C} - System32\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-6 => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-6.exe  <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-6.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-6.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-7.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-1-7.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-10_user.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-10.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-11.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-11.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-4.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-4.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5_user.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-5.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-6.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-6.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-7.job => C:\Program Files (x86)\Internet Speed Checker\6b2d2f55-7a60-4b19-8309-d8250f3ce3ba-7.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\AmiUpdXp.job => C:\Users\Mo\AppData\Local\27715\a19676.exe <==== ATTENTION
    ShortcutWithArgument: C:\Users\Mo\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    ShortcutWithArgument: C:\Users\Mo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    ShortcutWithArgument: C:\Users\Mo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.startpageing123.com/?type=sc&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    ShortcutWithArgument: C:\Users\Mo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    ShortcutWithArgument: C:\Users\Mo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) -> hxxp://www.startpageing123.com/?type=sc&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe*******************************************************************************
    HKLM\...\Providers\88hk1qxc: C:\Program Files (x86)\Pladesy Adapter\local64spl.dll [307712 2017-03-15] ()
    ShellExecuteHooks: No Name - {921DF8F6-0395-11E7-A44F-64006A5CFC23} - C:\Users\Mo\AppData\Roaming\Clhaght\Katutionvuzok.dll -> No File
    Startup: C:\Users\Mo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\C-cleaner.lnk [2015-05-26]
    ShortcutTarget: C-cleaner.lnk -> C:\Windows\System32\wscript.exe (Microsoft Corporation)
    Startup: C:\Users\Mo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Start.lnk [2016-02-23]
    ShortcutTarget: Start.lnk -> C:\Windows\System32\wscript.exe (Microsoft Corporation)
    Startup: C:\Users\Mo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\VideoLAN.lnk [2015-05-26]
    ShortcutTarget: VideoLAN.lnk -> C:\Windows\System32\wscript.exe (Microsoft Corporation)
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.startpageing123.com/?type=hp&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.startpageing123.com/?type=hp&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.startpageing123.com/?type=hp&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.startpageing123.com/?type=hp&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    HKU\S-1-5-21-3768977029-3246216658-927387095-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.startpageing123.com/?type=hp&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    HKU\S-1-5-21-3768977029-3246216658-927387095-1001\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://search.babylon.com/?affID=119293&babsrc=HP_ss_din2g&mntrId=AE22762737A3D605
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-3768977029-3246216658-927387095-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.startpageing123.com/search/?type=ds&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-3768977029-3246216658-927387095-1001 -> {6D7F2D29-B268-457F-A0AF-42B5C4C9DBB4} URL = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices
    Toolbar: HKU\S-1-5-21-3768977029-3246216658-927387095-1001 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -  No File
    Edge HomeButtonPage: HKU\S-1-5-21-3768977029-3246216658-927387095-1001 -> hxxp://www.startpageing123.com/?type=hp&ts=1489510441&z=1b102f6944bba66e18946ccg1zdbct1w6gde9z7z3c&from=che0812&uid=HitachiXHTS547564A9E384_J2130053DK2PJBDK2PJBX
    FF DefaultSearchEngine: Mozilla\Firefox\Profiles\d6yi91uk.default -> luck
    FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\d6yi91uk.default -> luck
    FF SelectedSearchEngine: Mozilla\Firefox\Profiles\d6yi91uk.default -> luck
    FF Homepage: Mozilla\Firefox\Profiles\d6yi91uk.default -> hxxp://www.luckysearch123.com?type=hp&ts=1489688995&from=41a00316&uid=hitachixhts547564a9e384_j2130053dk2pjbdk2pjbx&z=52ae80bbc245838b96daf0eg9zcbdtbq7bebbt4t9w
    FF NewTab: Mozilla\Firefox\Profiles\d6yi91uk.default -> hxxp://www.luckysearch123.com?type=hp&ts=1489688995&from=41a00316&uid=hitachixhts547564a9e384_j2130053dk2pjbdk2pjbx&z=52ae80bbc245838b96daf0eg9zcbdtbq7bebbt4t9w
    FF Extension: (Vaudix) - C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\Extensions\50a6436993c6d@50a6436993ca6.com [2016-02-13] [not signed]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\babylon.xml [2013-06-19]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\bingp.xml [2013-07-05]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\BrowserDefender.xml [2013-07-05]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\buenosearch.xml [2014-04-01]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\delta.xml [2013-06-19]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\luck.xml [2017-03-16]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Mozilla\Firefox\Profiles\d6yi91uk.default\searchplugins\startpageing123.xml [2017-03-14]
    FF Extension: (Vaudix) - C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\Extensions\50a6436993c6d@50a6436993ca6.com [2017-03-15] [not signed]
    FF Extension: (FF Adr) - C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\Extensions\@H99KV4DO-UCCF-9PFO-9ZLK-8RRP4FVOKD9O.xpi [2017-03-15] [not signed]
    FF Extension: (SaveFrom.net - helper) - C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\Extensions\helper-sig@savefrom.net.xpi [2015-10-18]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\babylon.xml [2013-06-19]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\bingp.xml [2013-07-05]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\BrowserDefender.xml [2013-07-05]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\buenosearch.xml [2014-04-01]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\delta.xml [2013-06-19]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\startpageing123.xml [2017-03-14]
    FF SearchPlugin: C:\Users\Mo\AppData\Roaming\Firefox\Firefox\Profiles\d6yi91uk.default\searchplugins\startsearch.xml [2017-03-15]
    FF Extension: (BasicServe) - C:\Program Files (x86)\Mozilla Firefox\extensions\{740B3FD5-4483-469D-BE7F-8555B153BD04} [2014-02-09] [not signed]
    FF HKLM-x32\...\Firefox\Extensions: [ext@WebexpEnhancedV1alpha145.net] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha145\ff
    FF Extension: (No Name) - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha145\ff [2015-05-03] [not signed]
    FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewerV1alpha497.net] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha497\ff => not found
    FF HKLM-x32\...\Firefox\Extensions: [ext@MediaViewV1alpha190.net] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha190\ff
    FF Extension: (No Name) - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha190\ff [2015-05-03] [not signed]
    FF HKLM-x32\...\Firefox\Extensions: [ext@MediaWatchV1home78.net] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home78\ff => not found
    FF HKLM-x32\...\Firefox\Extensions: [ext@MediaBuzzV1mode3712.net] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3712\ff
    FF Extension: (No Name) - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3712\ff [2015-05-03] [not signed]
    FF HKLM-x32\...\Firefox\Extensions: [ext@RichMediaViewV1release1035.net] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1035\ff => not found
    FF HKLM-x32\...\Firefox\Extensions: [ext@TrustMediaViewerV1alpha6140.net] - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha6140\ff
    FF Extension: (No Name) - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha6140\ff [2015-05-03] [not signed]
    FF HKLM-x32\...\Firefox\Extensions: [ocr@babylon.com] - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\ocr@babylon.com => not found
    FF HKU\S-1-5-21-3768977029-3246216658-927387095-1001\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Mo\AppData\Roaming\IDM\idmmzcc5
    FF Extension: (IDM CC) - C:\Users\Mo\AppData\Roaming\IDM\idmmzcc5 [2017-03-18] [not signed]
    FF HKU\S-1-5-21-3768977029-3246216658-927387095-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Mo\AppData\Roaming\IDM\idmmzcc5
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\mystartsearch.xml [2015-03-14]
    CHR HKLM-x32\...\Chrome\Extension: [ajampdjjkdeaojkmkhegnaaibkmplhak] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha497\ch\MediaViewerV1alpha497.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [ammpcjibdpcmmddaljpppekkncagdadl] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha145\ch\WebexpEnhancedV1alpha145.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [bnoafjbjknpbmjbdnbifnohcljenmceh] - C:\Program Files (x86)\TrustMediaViewerV1\TrustMediaViewerV1alpha6140\ch\TrustMediaViewerV1alpha6140.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [dfocifdopblilaidkkfcfjijmjffcdjb] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha190\ch\MediaViewV1alpha190.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [ecemgonpfgkijgfjpghpjhdapfbfiikf] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode3712\ch\MediaBuzzV1mode3712.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [fjbbjfdilbioabojmcplalojlmdngbjl] - C:\Users\Mo\AppData\Local\Temp\swlfiles\smileyswelovetoolbar.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [fjoijdanhaiflhibkljeklcghcmmfffh] - C:\Program Files (x86)\WebCake\WebCakeLayers.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [hnhjkeaampmidkceoeecjpcibiafjpnm] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home78\ch\MediaWatchV1home78.crx <not found>
    CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - <no Path/update_url>
    CHR HKLM-x32\...\Chrome\Extension: [kmfkbkcmjbfaikgnlcnoadffdgohbemm] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release1035\ch\RichMediaViewV1release1035.crx <not found>
    StartMenuInternet: Google Chrome.JOY7OF3FJY3ZOR22FVNLMANEC4 - c:\users\mo\appdata\local\google\chrome\application\chrome.exe
    HKU\S-1-5-21-3768977029-3246216658-927387095-1001\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Hipmy\Application\chrome.exe (Google Inc.) <==== ATTENTION
    R2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [131024 2016-12-02] (Elex do Brasil Participações Ltda)
    R2 WinSAPSvc; C:\Users\Mo\AppData\Roaming\WinSAPSvc\WinSAP.dll [218624 2017-03-18] (Windows) [File not signed]
    R2 WinSnare; C:\Users\Mo\AppData\Roaming\WinSnare\WinSnare.dll [776704 2017-03-17] (InterSect Alliance Pty Ltd) [File not signed] <==== ATTENTION
    S2 AIPS; C:\Program Files (x86)\netcut\services\AIPS.exe [X]
    R1 iSafeKrnl; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [262344 2016-05-23] (Elex do Brasil Participações Ltda)
    S3 iSafeKrnlBoot; C:\WINDOWS\System32\DRIVERS\iSafeKrnlBoot.sys [55056 2016-05-23] (Elex do Brasil Participações Ltda)
    S1 iSafeKrnlKit; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [110112 2016-05-23] (Elex do Brasil Participações Ltda)
    R1 iSafeKrnlMon; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [52440 2016-05-23] (Elex do Brasil Participações Ltda)
    R1 iSafeKrnlR3; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [103904 2016-05-23] (Elex do Brasil Participações Ltda)
    R1 iSafeNetFilter; C:\WINDOWS\System32\DRIVERS\iSafeNetFilter.sys [52392 2016-05-19] (Elex do Brasil Participações Ltda)
    R1 p1489509041am; C:\Users\Mo\AppData\Local\Temp\bk6C77.tmp\p1489509041am.sys [746960 2017-03-14] (一普明为(北京)信息技术有限公司) <==== ATTENTION
    S1 p1489509319am; \??\C:\Users\Mo\AppData\Local\Temp\bk9F1C.tmp\p1489509319am.sys [X] <==== ATTENTION
    2017-03-18 13:24 - 2017-03-18 13:24 - 00000000 ____D C:\Program Files (x86)\{8B15EB99-4484-43D6-ADF4-D6D585313BC9}
    2017-03-18 13:23 - 2017-03-18 14:44 - 00000000 ____D C:\Program Files\88hk1qxc
    2017-03-18 12:54 - 2017-03-18 12:54 - 00000000 ____D C:\Users\Mo\Documents\aMule Downloads
    2017-03-18 01:25 - 2017-03-18 13:26 - 00000000 ____D C:\Program Files (x86)\WinSnare(4.3.3)
    2017-03-18 01:24 - 2017-03-18 01:24 - 00000000 ____D C:\Program Files (x86)\temp
    2017-03-16 21:18 - 2017-03-16 22:42 - 00000000 ____D C:\Users\Mo\Desktop\Imprimer Maison
    2017-03-15 19:29 - 2017-03-18 13:04 - 00000000 ____D C:\Users\Mo\AppData\Roaming\Clhaght
    2017-03-15 19:29 - 2017-03-15 19:33 - 00000000 ____D C:\Users\Mo\AppData\Local\Plderdomthosoied
    2017-03-15 19:29 - 2017-03-15 19:29 - 00006134 _____ C:\WINDOWS\System32\Tasks\Pladesy Adapter
    2017-03-15 19:29 - 2017-03-15 19:29 - 00000000 ____D C:\Program Files (x86)\Pladesy Adapter
    2017-03-15 19:27 - 2017-03-15 19:34 - 00000000 ____D C:\Users\Mo\AppData\Local\FindIp
    2017-03-15 15:37 - 2017-03-15 15:38 - 00000000 ____D C:\Users\Mo\AppData\LocalLow\Mozilla
    2017-03-15 15:30 - 2017-03-15 15:30 - 00000000 ____D C:\Users\Mo\AppData\Roaming\Firefox
    2017-03-15 15:30 - 2017-03-15 15:30 - 00000000 ____D C:\Users\Mo\AppData\Local\Firefox
    2017-03-15 15:30 - 2017-03-15 15:30 - 00000000 ____D C:\Program Files (x86)\Firefox
    2017-03-15 14:49 - 2017-03-15 14:49 - 00000000 ____D C:\Users\Mo\AppData\Local\Hipmy
    2017-03-15 14:48 - 2017-03-15 14:48 - 00000000 ____D C:\Program Files (x86)\Hipmy
    2017-03-15 14:47 - 2017-03-15 14:47 - 00000000 ____D C:\WINDOWS\system32\log
    2017-03-15 14:47 - 2016-05-23 02:41 - 00055056 _____ (Elex do Brasil Participações Ltda) C:\WINDOWS\system32\Drivers\iSafeKrnlBoot.sys
    2017-03-15 14:47 - 2016-05-19 06:42 - 00052392 _____ (Elex do Brasil Participações Ltda) C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys
    2017-03-15 14:46 - 2017-03-15 14:46 - 00000000 ____D C:\Users\Mo\AppData\Roaming\Elex-tech
    2017-03-15 14:46 - 2017-03-15 14:46 - 00000000 ____D C:\Program Files (x86)\Elex-tech
    2017-03-15 14:34 - 2017-03-18 13:24 - 00000000 _____ C:\Users\Public\Documents\temp.dat
    2017-03-15 14:34 - 2017-03-18 12:55 - 00000000 _____ C:\Users\Public\Documents\report.dat
    2017-03-15 14:34 - 2017-03-15 14:34 - 00000000 ____D C:\Program Files (x86)\58C950F9_cacayima
    2017-03-14 16:53 - 2017-03-18 13:16 - 00000000 ____D C:\Users\Mo\AppData\Roaming\aMule
    2017-03-14 16:40 - 2017-03-18 14:01 - 00000000 ____D C:\Program Files (x86)\BikaQRss
    2017-03-14 16:40 - 2017-03-18 13:27 - 00003666 _____ C:\WINDOWS\System32\Tasks\Milimili
    2017-03-14 16:40 - 2017-03-18 01:25 - 00000000 ____D C:\Users\Mo\AppData\Roaming\WinSnare
    2017-03-14 16:40 - 2017-03-14 16:40 - 00000000 ____D C:\Program Files (x86)\MIO
    2017-03-14 16:39 - 2017-03-18 13:28 - 00000000 ____D C:\Users\Mo\AppData\Roaming\WinSAPSvc
    2017-03-14 16:30 - 2017-03-18 01:10 - 00000000 ____D C:\Program Files (x86)\MK
    2017-03-14 16:30 - 2017-03-14 16:30 - 00000000 ____D C:\Program Files (x86)\{0BE47617-36A7-4003-AB9C-BD6FB12B6165}
    2017-03-14 13:32 - 2017-03-18 12:38 - 00000000 ____D C:\Program Files (x86)\WinMerge
    2017-03-10 22:28 - 2017-03-18 15:00 - 00000000 ____D C:\Program Files (x86)\Ghojetain
    2017-03-10 22:28 - 2017-03-10 22:28 - 00005152 _____ C:\WINDOWS\System32\Tasks\Drberghzagiph
    2017-03-10 22:28 - 2017-03-10 22:28 - 00000000 ____D C:\Users\Mo\AppData\Local\Cocesp
    2017-03-10 22:25 - 2017-03-15 19:27 - 00000000 ____D C:\ProgramData\RegisterObject
    2015-03-14 11:48 - 2015-03-14 11:48 - 0613255 _____ (CMI Limited) C:\Users\Mo\AppData\Local\nsc8D2C.tmp
    2014-02-02 18:36 - 2014-02-02 18:36 - 0000000 _____ () C:\ProgramData\25265e222e3b36_c
    Hosts:
    EmptyTemp:
    
    
  • Menu Fichier / Enregistrer-sous
    Place toi sur le bureau.
    Dans le champs en bas, nom du fichier mets : fixlist.txt
    Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
  • Ferme toutes les applications, y compris ton navigateur
  • Double-clique sur FRST.exe
    Image Sous Vista, Windows 7, 8,10, etc.... il faut lancer le fichier par clic-droit ➫ Exécuter en tant qu'administrateur
    Sur le menu principal, clique une seule fois sur Corriger/Fix et patiente le temps de la correction


    Un redémarrage peut être nécessaire (pas obligatoire).
  • L'outil va créer un rapport de correction Fixlog.txt. Poste ce rapport dans ta réponse avec ton commentaire si c'est mieux !
  • Dans le cas où vous avez installé des programmes parasites.
    Il peux-être nécessaire de re-paramétrer ses navigateurs WEB.

    ❃ Internet Explorer et modules complémentaires / moteurs de recherche : reparametrer-internet-explorer-modules- ... 41399.html
    ❃ Firefox : firefox-extensions-page-demarrage-recherche-t36057.html
    ❃ Google Chrome : google-chrome-parametrage-moteur-suppre ... 35837.html
Avec Gnu_Linux t'as un Noyau ... avec Ѡindows t'as que les pépins
http://angelik.altervista.org/
Supprimer les "virus" gratuitement http://www.supprimer-trojan.com/
Ne soyez pas Rat!
Image
---------------------------------------------------------------------------------------------------------------------
ZIK.:: R00tsL3gacy Reggae141.com
ZIK.:: LaGr0sseRadi0

Nour
Messages : 2
Inscription : 18 mars 2017 19:11

Re: [Résolu] Windows 7, erreur $RECYCLEBIN\Vlc.rar / adobe.rar

Message par Nour » 19 mars 2017 15:04

Bonjour, Merci infiniment pour votre aide.
Voici le rapport demande:
http://pjjoint.malekal.com/files.php?id ... d14c11u811

Avatar de l’utilisateur
angelique
Geek à longue barbe
Geek à longue barbe
Messages : 26998
Inscription : 28 févr. 2008 14:58
Localisation : Breizhilienne à l' 0u3st
Contact :

Re: [Résolu] Windows 7, erreur $RECYCLEBIN\Vlc.rar / adobe.rar

Message par angelique » 19 mars 2017 15:09

Passe un coup de malwarebytes en version gratuite , voir ➯ https://www.malekal.com/tutoriel-malwar ... i-malware/

supprime la sélection trouvée et poste le rapport.
Avec Gnu_Linux t'as un Noyau ... avec Ѡindows t'as que les pépins
http://angelik.altervista.org/
Supprimer les "virus" gratuitement http://www.supprimer-trojan.com/
Ne soyez pas Rat!
Image
---------------------------------------------------------------------------------------------------------------------
ZIK.:: R00tsL3gacy Reggae141.com
ZIK.:: LaGr0sseRadi0

Répondre

Revenir vers « VIRUS : Supprimer/Desinfecter (Trojan, Adwares, Ransomwares, Backdoor, Spywares) »

Qui est en ligne ?

Utilisateurs parcourant ce forum : Aucun utilisateur inscrit et 47 invités