Bonjour,
Je n'arrive pas à supprimer ads.
Ce que j'ai fait pour le moment :
- Nettoyage CCleaner
- Analyse ADWCleaner
- Analyse Malwarebytes
Que faire à présent ?
Supprimer ads
Modérateurs : Mods Windows, Helper
- Messages : 113158
- Inscription : 10 sept. 2005 13:57
Re: Supprimer ads
Salut,
Suis ce tutoriel FRST: https://www.malekal.com/tutorial-farbar ... tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
* FRST.txt
* Shortcut.txt
* Additionnal.txt
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Suis ce tutoriel FRST: https://www.malekal.com/tutorial-farbar ... tool-frst/
(et bien prendre le temps de lire afin d'appliquer correctement - tout y est expliqué).
Télécharge et lance le scan FRST, cela va générer trois rapports FRST :
* FRST.txt
* Shortcut.txt
* Additionnal.txt
Envoie, comme expliqué, ces trois rapports sur le site http://pjjoint.malekal.com et en retour donne les trois liens pjjoint qui mènent à ses rapports ici dans une nouvelle réponse afin que l'on puisse les consulter.
Première règle élémentaire de sécurité : on réfléchit puis on clic et pas l'inverse - Les fichiers/programmes c'est comme les bonbons, quand ça vient d'un inconnu, on n'accepte pas !
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
Re: Supprimer ads
Ok. J'étais en train de faire les scans pour les rapports.
Les voici :
http://pjjoint.malekal.com/files.php?id ... 10x10o12q7
http://pjjoint.malekal.com/files.php?id ... t8z9y6m116
http://pjjoint.malekal.com/files.php?id ... h8n7l6j8h9
C'est bon?
Les voici :
http://pjjoint.malekal.com/files.php?id ... 10x10o12q7
http://pjjoint.malekal.com/files.php?id ... t8z9y6m116
http://pjjoint.malekal.com/files.php?id ... h8n7l6j8h9
C'est bon?
- Messages : 113158
- Inscription : 10 sept. 2005 13:57
Re: Supprimer ads
Désinstalle Spybot,
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutorial-farbar ... -frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
Task: {144356AD-67F9-4FA6-AFCF-7FBD528691FC} - System32\Tasks\Kg1cMyO01E9KCxu => C:\Users\administration\AppData\Roaming\LtQmk2L\l4d4Fm4.exe [2015-02-13] ( )
Task: {171E0B86-2663-4C8C-94CA-24F6D860422D} - System32\Tasks\fZKdCeB69giAbnp => C:\Users\administration\AppData\Roaming\xenyq2i\WSXYPTE.exe
Task: {1DCC682B-9B97-4D7F-8201-0ACB54E5F802} - System32\Tasks\HRTWRWNwxTJyaP3 => C:\Users\administration\AppData\Roaming\lmEqHVk\xWXpIps.exe
Task: {213B5866-1CE7-44BF-8D21-4A587169EBE6} - \avaxvavya No Task File <==== ATTENTION
Task: {2431720D-3D0A-41C5-A213-F1F3FAC9E034} - System32\Tasks\WIN-statsAdmin => C:\Users\administration\AppData\Local\Microsoft\WinU\~dlkpanc.exe <==== ATTENTION
Task: {3F495379-A72D-424C-A45D-5D0827657DAD} - \Binkiland nife No Task File <==== ATTENTION
Task: {C15CAC85-9FE2-44DC-973F-2E6251B96F25} - \avaxvyyvyf No Task File <==== ATTENTION
Task: {D6CD79FC-AF43-47E0-A252-8A125A09E42B} - \96e1f90a-b093-42e1-b7bb-db82e2740f78-2 No Task File <==== ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:63050;https=127.0.0.1:63050 [Attention - Possible Proxy Malicieux]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected]8d153fc76.com [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gfkbfjcbkhnmiignagpkiijohkcdkffb] - https://clients2.google.com/service/update2/crx
S2 afa5aa21; c:\Program Files (x86)\SystemEnterprise\SystemEnterprise.dll [2088960 2015-01-11] () [File not signed]
2015-02-23 16:42 - 2015-02-23 16:42 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsd2296.tmp
2015-02-23 14:17 - 2015-02-23 14:17 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nseCB9.tmp
2014-11-05 23:53 - 2014-11-05 23:53 - 0613042 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsgDE32.tmp
2015-02-20 02:16 - 2015-02-20 02:16 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsnC944.tmp
2014-11-06 00:43 - 2014-11-06 00:43 - 0628480 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsu7489.tmp
2015-01-15 00:05 - 2015-01-15 00:05 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsv8D9C.tmp
2015-02-18 18:23 - 2015-02-18 18:23 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsw91FF.tmp
2015-02-22 01:12 - 2015-02-22 01:12 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsy559F.tmp
2014-03-20 20:02 - 2014-03-20 20:02 - 0000000 _____ () C:\Users\administration\AppData\Local\{78769857-8AE5-4074-91E9-C5AB7790B681}
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
* Firefox : http://forum.malekal.com/firefox-extens ... 36057.html
* Google Chrome : http://forum.malekal.com/google-chrome- ... 35837.html
* Internet Explorer et modules complémentaires / moteurs de recherche : http://forum.malekal.com/reparametrer-internet-explor
Voici la correction à effectuer avec FRST.
Tu peux t'inspirer de cette note explicative avec des captures d'écran pour t'aider: https://www.malekal.com/tutorial-farbar ... -frst/#fix
Ouvre le bloc-notes : Touche Windows + R, dans le champs executer, tape notepad et OK.
Copie/colle dedans ce qui suit :
Task: {144356AD-67F9-4FA6-AFCF-7FBD528691FC} - System32\Tasks\Kg1cMyO01E9KCxu => C:\Users\administration\AppData\Roaming\LtQmk2L\l4d4Fm4.exe [2015-02-13] ( )
Task: {171E0B86-2663-4C8C-94CA-24F6D860422D} - System32\Tasks\fZKdCeB69giAbnp => C:\Users\administration\AppData\Roaming\xenyq2i\WSXYPTE.exe
Task: {1DCC682B-9B97-4D7F-8201-0ACB54E5F802} - System32\Tasks\HRTWRWNwxTJyaP3 => C:\Users\administration\AppData\Roaming\lmEqHVk\xWXpIps.exe
Task: {213B5866-1CE7-44BF-8D21-4A587169EBE6} - \avaxvavya No Task File <==== ATTENTION
Task: {2431720D-3D0A-41C5-A213-F1F3FAC9E034} - System32\Tasks\WIN-statsAdmin => C:\Users\administration\AppData\Local\Microsoft\WinU\~dlkpanc.exe <==== ATTENTION
Task: {3F495379-A72D-424C-A45D-5D0827657DAD} - \Binkiland nife No Task File <==== ATTENTION
Task: {C15CAC85-9FE2-44DC-973F-2E6251B96F25} - \avaxvyyvyf No Task File <==== ATTENTION
Task: {D6CD79FC-AF43-47E0-A252-8A125A09E42B} - \96e1f90a-b093-42e1-b7bb-db82e2740f78-2 No Task File <==== ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:63050;https=127.0.0.1:63050 [Attention - Possible Proxy Malicieux]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected]8d153fc76.com [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gfkbfjcbkhnmiignagpkiijohkcdkffb] - https://clients2.google.com/service/update2/crx
S2 afa5aa21; c:\Program Files (x86)\SystemEnterprise\SystemEnterprise.dll [2088960 2015-01-11] () [File not signed]
2015-02-23 16:42 - 2015-02-23 16:42 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsd2296.tmp
2015-02-23 14:17 - 2015-02-23 14:17 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nseCB9.tmp
2014-11-05 23:53 - 2014-11-05 23:53 - 0613042 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsgDE32.tmp
2015-02-20 02:16 - 2015-02-20 02:16 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsnC944.tmp
2014-11-06 00:43 - 2014-11-06 00:43 - 0628480 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsu7489.tmp
2015-01-15 00:05 - 2015-01-15 00:05 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsv8D9C.tmp
2015-02-18 18:23 - 2015-02-18 18:23 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsw91FF.tmp
2015-02-22 01:12 - 2015-02-22 01:12 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsy559F.tmp
2014-03-20 20:02 - 2014-03-20 20:02 - 0000000 _____ () C:\Users\administration\AppData\Local\{78769857-8AE5-4074-91E9-C5AB7790B681}
Une fois, le texte coller dans le bloc-note.
Menu Fichier puis Enregistrer sous.
A gauche, place toi sur le bureau.
Dans le champs en bas, nom du fichier mets : fixlist.txt
Clic sur Enregistrer - cela va créer un fichier fixlist.txt sur le bureau.
Relance FRST et clic sur le bouton Fix
Selon comment un redémarrage est nécessaire (pas obligatoire).
Un fichier texte apparaît, copie/colle le contenu ici dans un nouveau message.
Redémarre l'ordinateur
puis réinitialise tes navigateurs:
==================================
Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
* Firefox : http://forum.malekal.com/firefox-extens ... 36057.html
* Google Chrome : http://forum.malekal.com/google-chrome- ... 35837.html
* Internet Explorer et modules complémentaires / moteurs de recherche : http://forum.malekal.com/reparametrer-internet-explor
Première règle élémentaire de sécurité : on réfléchit puis on clic et pas l'inverse - Les fichiers/programmes c'est comme les bonbons, quand ça vient d'un inconnu, on n'accepte pas !
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
Re: Supprimer ads
Et voilà !
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-05-2015
Ran by administration at 2015-05-13 00:14:00 Run:1
Running from C:\Users\administration\Desktop
Loaded Profiles: administration (Available profiles: administration)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Task: {144356AD-67F9-4FA6-AFCF-7FBD528691FC} - System32\Tasks\Kg1cMyO01E9KCxu => C:\Users\administration\AppData\Roaming\LtQmk2L\l4d4Fm4.exe [2015-02-13] ( )
Task: {171E0B86-2663-4C8C-94CA-24F6D860422D} - System32\Tasks\fZKdCeB69giAbnp => C:\Users\administration\AppData\Roaming\xenyq2i\WSXYPTE.exe
Task: {1DCC682B-9B97-4D7F-8201-0ACB54E5F802} - System32\Tasks\HRTWRWNwxTJyaP3 => C:\Users\administration\AppData\Roaming\lmEqHVk\xWXpIps.exe
Task: {213B5866-1CE7-44BF-8D21-4A587169EBE6} - \avaxvavya No Task File <==== ATTENTION
Task: {2431720D-3D0A-41C5-A213-F1F3FAC9E034} - System32\Tasks\WIN-statsAdmin => C:\Users\administration\AppData\Local\Microsoft\WinU\~dlkpanc.exe <==== ATTENTION
Task: {3F495379-A72D-424C-A45D-5D0827657DAD} - \Binkiland nife No Task File <==== ATTENTION
Task: {C15CAC85-9FE2-44DC-973F-2E6251B96F25} - \avaxvyyvyf No Task File <==== ATTENTION
Task: {D6CD79FC-AF43-47E0-A252-8A125A09E42B} - \96e1f90a-b093-42e1-b7bb-db82e2740f78-2 No Task File <==== ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:63050;https=127.0.0.1:63050 [Attention - Possible Proxy Malicieux]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected]8d153fc76.com [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gfkbfjcbkhnmiignagpkiijohkcdkffb] - https://clients2.google.com/service/update2/crx
S2 afa5aa21; c:\Program Files (x86)\SystemEnterprise\SystemEnterprise.dll [2088960 2015-01-11] () [File not signed]
2015-02-23 16:42 - 2015-02-23 16:42 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsd2296.tmp
2015-02-23 14:17 - 2015-02-23 14:17 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nseCB9.tmp
2014-11-05 23:53 - 2014-11-05 23:53 - 0613042 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsgDE32.tmp
2015-02-20 02:16 - 2015-02-20 02:16 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsnC944.tmp
2014-11-06 00:43 - 2014-11-06 00:43 - 0628480 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsu7489.tmp
2015-01-15 00:05 - 2015-01-15 00:05 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsv8D9C.tmp
2015-02-18 18:23 - 2015-02-18 18:23 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsw91FF.tmp
2015-02-22 01:12 - 2015-02-22 01:12 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsy559F.tmp
2014-03-20 20:02 - 2014-03-20 20:02 - 0000000 _____ () C:\Users\administration\AppData\Local\{78769857-8AE5-4074-91E9-C5AB7790B681}
*****************
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{144356AD-67F9-4FA6-AFCF-7FBD528691FC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{144356AD-67F9-4FA6-AFCF-7FBD528691FC}" => Key deleted successfully.
C:\Windows\System32\Tasks\Kg1cMyO01E9KCxu => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Kg1cMyO01E9KCxu" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{171E0B86-2663-4C8C-94CA-24F6D860422D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{171E0B86-2663-4C8C-94CA-24F6D860422D}" => Key deleted successfully.
C:\Windows\System32\Tasks\fZKdCeB69giAbnp => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fZKdCeB69giAbnp" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1DCC682B-9B97-4D7F-8201-0ACB54E5F802}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DCC682B-9B97-4D7F-8201-0ACB54E5F802}" => Key deleted successfully.
C:\Windows\System32\Tasks\HRTWRWNwxTJyaP3 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HRTWRWNwxTJyaP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{213B5866-1CE7-44BF-8D21-4A587169EBE6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{213B5866-1CE7-44BF-8D21-4A587169EBE6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avaxvavya" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2431720D-3D0A-41C5-A213-F1F3FAC9E034}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2431720D-3D0A-41C5-A213-F1F3FAC9E034}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsAdmin => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3F495379-A72D-424C-A45D-5D0827657DAD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3F495379-A72D-424C-A45D-5D0827657DAD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Binkiland nife" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C15CAC85-9FE2-44DC-973F-2E6251B96F25}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C15CAC85-9FE2-44DC-973F-2E6251B96F25}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avaxvyyvyf" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D6CD79FC-AF43-47E0-A252-8A125A09E42B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6CD79FC-AF43-47E0-A252-8A125A09E42B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\96e1f90a-b093-42e1-b7bb-db82e2740f78-2" => Key deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected]8d153fc76.com not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gfkbfjcbkhnmiignagpkiijohkcdkffb" => Key deleted successfully.
afa5aa21 => Service not found.
C:\Users\administration\AppData\Local\nsd2296.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nseCB9.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsgDE32.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsnC944.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsu7489.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsv8D9C.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsw91FF.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsy559F.tmp => Moved successfully.
C:\Users\administration\AppData\Local\{78769857-8AE5-4074-91E9-C5AB7790B681} => Moved successfully.
==== End of Fixlog 00:14:06 ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-05-2015
Ran by administration at 2015-05-13 00:14:00 Run:1
Running from C:\Users\administration\Desktop
Loaded Profiles: administration (Available profiles: administration)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Task: {144356AD-67F9-4FA6-AFCF-7FBD528691FC} - System32\Tasks\Kg1cMyO01E9KCxu => C:\Users\administration\AppData\Roaming\LtQmk2L\l4d4Fm4.exe [2015-02-13] ( )
Task: {171E0B86-2663-4C8C-94CA-24F6D860422D} - System32\Tasks\fZKdCeB69giAbnp => C:\Users\administration\AppData\Roaming\xenyq2i\WSXYPTE.exe
Task: {1DCC682B-9B97-4D7F-8201-0ACB54E5F802} - System32\Tasks\HRTWRWNwxTJyaP3 => C:\Users\administration\AppData\Roaming\lmEqHVk\xWXpIps.exe
Task: {213B5866-1CE7-44BF-8D21-4A587169EBE6} - \avaxvavya No Task File <==== ATTENTION
Task: {2431720D-3D0A-41C5-A213-F1F3FAC9E034} - System32\Tasks\WIN-statsAdmin => C:\Users\administration\AppData\Local\Microsoft\WinU\~dlkpanc.exe <==== ATTENTION
Task: {3F495379-A72D-424C-A45D-5D0827657DAD} - \Binkiland nife No Task File <==== ATTENTION
Task: {C15CAC85-9FE2-44DC-973F-2E6251B96F25} - \avaxvyyvyf No Task File <==== ATTENTION
Task: {D6CD79FC-AF43-47E0-A252-8A125A09E42B} - \96e1f90a-b093-42e1-b7bb-db82e2740f78-2 No Task File <==== ATTENTION
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:63050;https=127.0.0.1:63050 [Attention - Possible Proxy Malicieux]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected]8d153fc76.com [Not Found]
FF Extension: No Name - C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [gfkbfjcbkhnmiignagpkiijohkcdkffb] - https://clients2.google.com/service/update2/crx
S2 afa5aa21; c:\Program Files (x86)\SystemEnterprise\SystemEnterprise.dll [2088960 2015-01-11] () [File not signed]
2015-02-23 16:42 - 2015-02-23 16:42 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsd2296.tmp
2015-02-23 14:17 - 2015-02-23 14:17 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nseCB9.tmp
2014-11-05 23:53 - 2014-11-05 23:53 - 0613042 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsgDE32.tmp
2015-02-20 02:16 - 2015-02-20 02:16 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsnC944.tmp
2014-11-06 00:43 - 2014-11-06 00:43 - 0628480 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsu7489.tmp
2015-01-15 00:05 - 2015-01-15 00:05 - 0628496 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsv8D9C.tmp
2015-02-18 18:23 - 2015-02-18 18:23 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsw91FF.tmp
2015-02-22 01:12 - 2015-02-22 01:12 - 0613057 _____ (CMI Limited) C:\Users\administration\AppData\Local\nsy559F.tmp
2014-03-20 20:02 - 2014-03-20 20:02 - 0000000 _____ () C:\Users\administration\AppData\Local\{78769857-8AE5-4074-91E9-C5AB7790B681}
*****************
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{144356AD-67F9-4FA6-AFCF-7FBD528691FC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{144356AD-67F9-4FA6-AFCF-7FBD528691FC}" => Key deleted successfully.
C:\Windows\System32\Tasks\Kg1cMyO01E9KCxu => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Kg1cMyO01E9KCxu" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{171E0B86-2663-4C8C-94CA-24F6D860422D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{171E0B86-2663-4C8C-94CA-24F6D860422D}" => Key deleted successfully.
C:\Windows\System32\Tasks\fZKdCeB69giAbnp => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fZKdCeB69giAbnp" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1DCC682B-9B97-4D7F-8201-0ACB54E5F802}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1DCC682B-9B97-4D7F-8201-0ACB54E5F802}" => Key deleted successfully.
C:\Windows\System32\Tasks\HRTWRWNwxTJyaP3 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HRTWRWNwxTJyaP3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{213B5866-1CE7-44BF-8D21-4A587169EBE6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{213B5866-1CE7-44BF-8D21-4A587169EBE6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avaxvavya" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2431720D-3D0A-41C5-A213-F1F3FAC9E034}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2431720D-3D0A-41C5-A213-F1F3FAC9E034}" => Key deleted successfully.
C:\Windows\System32\Tasks\WIN-statsAdmin => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WIN-statsAdmin" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3F495379-A72D-424C-A45D-5D0827657DAD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3F495379-A72D-424C-A45D-5D0827657DAD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Binkiland nife" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C15CAC85-9FE2-44DC-973F-2E6251B96F25}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C15CAC85-9FE2-44DC-973F-2E6251B96F25}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avaxvyyvyf" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D6CD79FC-AF43-47E0-A252-8A125A09E42B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6CD79FC-AF43-47E0-A252-8A125A09E42B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\96e1f90a-b093-42e1-b7bb-db82e2740f78-2" => Key deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\{607b689f-7600-45e4-b8e5-887f72dab15c} not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected]8d153fc76.com not found.
C:\Users\administration\AppData\Roaming\Mozilla\Firefox\Profiles\8rswkw0v.default\extensions\[email protected] not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gfkbfjcbkhnmiignagpkiijohkcdkffb" => Key deleted successfully.
afa5aa21 => Service not found.
C:\Users\administration\AppData\Local\nsd2296.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nseCB9.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsgDE32.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsnC944.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsu7489.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsv8D9C.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsw91FF.tmp => Moved successfully.
C:\Users\administration\AppData\Local\nsy559F.tmp => Moved successfully.
C:\Users\administration\AppData\Local\{78769857-8AE5-4074-91E9-C5AB7790B681} => Moved successfully.
==== End of Fixlog 00:14:06 ====
- Messages : 113158
- Inscription : 10 sept. 2005 13:57
Re: Supprimer ads

Voila, c'est terminé, tu peux supprimer les programmes utilisés.
Quelques conseils :
Pour prévenir les sites malicieux, tu peux installer Blockulicious : http://forum.malekal.com/blockulicious- ... 46656.html
Pour ne plus te faire avoir.
A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/
(Surtout active les détections LPIs pour détecter les programmes parasites et publicitaires)
Le reste de la sécurité : http://forum.malekal.com/comment-securi ... ateur.html
Première règle élémentaire de sécurité : on réfléchit puis on clic et pas l'inverse - Les fichiers/programmes c'est comme les bonbons, quand ça vient d'un inconnu, on n'accepte pas !
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
➔ Comment protéger son PC des virus
➔ Windows 11 : Compatibilité, Configuration minimale requise, télécharger ISO et installer Windows 11
Comment demander de l'aide sur le forum
Partagez malekal.com : n'hésitez pas à partager les articles qui vous plaisent sur la page Facebook du site.
-
- Sujets similaires
- Réponses
- Vues
- Dernier message
-
- 11 Réponses
- 450 Vues
-
Dernier message par Malekal_morte
-
- 5 Réponses
- 386 Vues
-
Dernier message par Malekal_morte
-
- 18 Réponses
- 224 Vues
-
Dernier message par Malekal_morte
-
- 1 Réponses
- 302 Vues
-
Dernier message par Malekal_morte
-
- 5 Réponses
- 139 Vues
-
Dernier message par Malekal_morte