Petit astucien ![]() |
J'ai passé Bit defender et Malwares bytes qui ont trouvé des virus et éliminés mais Windows defender me signale à chaque ouverture de fichier "menaces détectées" qui sont: Adware;Win32/Adpeak Browser:Win32/Sweet page/blnk Et la galère continue. Différents rapports: http://www.cjoint.com/c/GKojfnamoN2
Ma configuration:
[Configuration automatique à compléter] Merci de ce vous voudrez bien faire !
| |||||||
Publicité | ||||||||
Groupe Sécurité ![]() | Je vais vous prendre en charge Je reviens | |||||||
Equipe PC Astuces | Bonjour, Le sujet a été déplacé par la modération dans le forum Analyse de rapports et désinfection qui semble plus adéquat. Vous pouvez continuer la discussion à la suite de ce message. A bientôt. | |||||||
Groupe Sécurité ![]() | • Mon prénom est Gerard, si vous pensez que votre machine est infectée, lisez ceci: https://forum.pcastuces.com/sujet.asp?f=26&s=4
• utilisez vous AVG PC TuneUp ?
Solution de repli stratégique
![]()
Code
Adobe AIR AVG 2015 AVG PC TuneUp Bitdefender Agent Java
Citation
Script ZHPFix ShortcutFix IFEOFix SysRestore HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14A405A2-BBB2-40B2-92F9-C3306C5EA27C} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{14A405A2-BBB2-40B2-92F9-C3306C5EA27C} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14A405A2-BBB2-40B2-92F9-C3306C5EA27C} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{14A405A2-BBB2-40B2-92F9-C3306C5EA27C} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{171DD993-D0FC-493F-A471-C9EE9369F2BE} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{171DD993-D0FC-493F-A471-C9EE9369F2BE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{171DD993-D0FC-493F-A471-C9EE9369F2BE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{171DD993-D0FC-493F-A471-C9EE9369F2BE} C:\Windows\System32\Tasks\{773AE4F6-DD8F-4AF5-B3A8-9CBBCAAC499F} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{17F2AFE8-A120-4986-AA5A-78CF534A2C20} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{17F2AFE8-A120-4986-AA5A-78CF534A2C20} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{17F2AFE8-A120-4986-AA5A-78CF534A2C20} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{17F2AFE8-A120-4986-AA5A-78CF534A2C20} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32CC9263-1380-4172-9FAE-6E9AD3AAFD19} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{32CC9263-1380-4172-9FAE-6E9AD3AAFD19} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32CC9263-1380-4172-9FAE-6E9AD3AAFD19} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{32CC9263-1380-4172-9FAE-6E9AD3AAFD19} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{376526E1-AF64-4BFB-A210-D1A172C964E3} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{376526E1-AF64-4BFB-A210-D1A172C964E3} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{376526E1-AF64-4BFB-A210-D1A172C964E3} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{376526E1-AF64-4BFB-A210-D1A172C964E3} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39FB2100-EC5F-429D-A135-5EBE8953CD28} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{39FB2100-EC5F-429D-A135-5EBE8953CD28} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39FB2100-EC5F-429D-A135-5EBE8953CD28} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{39FB2100-EC5F-429D-A135-5EBE8953CD28} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\StartRecording HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3BF936FB-74CA-4F48-BFCD-DC547ED182EE} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{3BF936FB-74CA-4F48-BFCD-DC547ED182EE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3BF936FB-74CA-4F48-BFCD-DC547ED182EE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{3BF936FB-74CA-4F48-BFCD-DC547ED182EE} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{506257A7-B108-4803-A0C6-6D1A3036C5F7} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{506257A7-B108-4803-A0C6-6D1A3036C5F7} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{506257A7-B108-4803-A0C6-6D1A3036C5F7} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{506257A7-B108-4803-A0C6-6D1A3036C5F7} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68F36545-6CE0-4135-B8A4-C42805E8A0AE} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{68F36545-6CE0-4135-B8A4-C42805E8A0AE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68F36545-6CE0-4135-B8A4-C42805E8A0AE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{68F36545-6CE0-4135-B8A4-C42805E8A0AE} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{787ECE58-8A43-4BD4-9F9A-4A85BFA21296} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{787ECE58-8A43-4BD4-9F9A-4A85BFA21296} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{787ECE58-8A43-4BD4-9F9A-4A85BFA21296} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{787ECE58-8A43-4BD4-9F9A-4A85BFA21296} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{81935253-21E0-4C18-A603-5405A75D9675} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{81935253-21E0-4C18-A603-5405A75D9675} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{81935253-21E0-4C18-A603-5405A75D9675} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{81935253-21E0-4C18-A603-5405A75D9675} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\OCURActivate HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{847FD5A9-6348-4CBC-B93B-96BEDC3DC2EE} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{847FD5A9-6348-4CBC-B93B-96BEDC3DC2EE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{847FD5A9-6348-4CBC-B93B-96BEDC3DC2EE} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{847FD5A9-6348-4CBC-B93B-96BEDC3DC2EE} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{997D4394-7E5C-400B-B4E2-20BA51785FEF} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{997D4394-7E5C-400B-B4E2-20BA51785FEF} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{997D4394-7E5C-400B-B4E2-20BA51785FEF} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{997D4394-7E5C-400B-B4E2-20BA51785FEF} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A2587097-736D-41D4-B6E6-4588F7BA112B} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A2587097-736D-41D4-B6E6-4588F7BA112B} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A2587097-736D-41D4-B6E6-4588F7BA112B} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A2587097-736D-41D4-B6E6-4588F7BA112B} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AECAA1BD-16B5-44AE-8D75-8518F3D0004B} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{AECAA1BD-16B5-44AE-8D75-8518F3D0004B} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AECAA1BD-16B5-44AE-8D75-8518F3D0004B} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{AECAA1BD-16B5-44AE-8D75-8518F3D0004B} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2522F46-BC3E-4444-AA4B-5D102053A4A2} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B2522F46-BC3E-4444-AA4B-5D102053A4A2} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2522F46-BC3E-4444-AA4B-5D102053A4A2} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B2522F46-BC3E-4444-AA4B-5D102053A4A2} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BC8CD153-9C9E-4703-BEE8-48B97FB65FD3} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BC8CD153-9C9E-4703-BEE8-48B97FB65FD3} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BC8CD153-9C9E-4703-BEE8-48B97FB65FD3} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BC8CD153-9C9E-4703-BEE8-48B97FB65FD3} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCAEB77F-8DA0-40EA-A8D3-FBF1EAC604A6} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BCAEB77F-8DA0-40EA-A8D3-FBF1EAC604A6} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCAEB77F-8DA0-40EA-A8D3-FBF1EAC604A6} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{BCAEB77F-8DA0-40EA-A8D3-FBF1EAC604A6} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CBB7DB2C-9306-4967-9051-45C1AA6B9A66} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CBB7DB2C-9306-4967-9051-45C1AA6B9A66} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CBB7DB2C-9306-4967-9051-45C1AA6B9A66} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CBB7DB2C-9306-4967-9051-45C1AA6B9A66} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCE71220-43D0-41B1-B46C-90FE6736D9F4} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CCE71220-43D0-41B1-B46C-90FE6736D9F4} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCE71220-43D0-41B1-B46C-90FE6736D9F4} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CCE71220-43D0-41B1-B46C-90FE6736D9F4} C:\Windows\System32\Tasks\Uninstaller_SkipUac_Maha HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA772A18-D21E-4177-ADD9-8A04E6C48644} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{DA772A18-D21E-4177-ADD9-8A04E6C48644} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DA772A18-D21E-4177-ADD9-8A04E6C48644} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{DA772A18-D21E-4177-ADD9-8A04E6C48644} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD498CD1-8204-4A84-8683-2C390E7892D9} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{DD498CD1-8204-4A84-8683-2C390E7892D9} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD498CD1-8204-4A84-8683-2C390E7892D9} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{DD498CD1-8204-4A84-8683-2C390E7892D9} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F42325BF-7A91-4CD1-A2F2-9D2705CCC5FF} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F42325BF-7A91-4CD1-A2F2-9D2705CCC5FF} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F42325BF-7A91-4CD1-A2F2-9D2705CCC5FF} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F42325BF-7A91-4CD1-A2F2-9D2705CCC5FF} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\mcupdate HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F97F4853-923F-4EDB-AF31-5A5A728607A3} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F97F4853-923F-4EDB-AF31-5A5A728607A3} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F97F4853-923F-4EDB-AF31-5A5A728607A3} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{F97F4853-923F-4EDB-AF31-5A5A728607A3} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FB7C022C-DE15-489C-9A41-F264AC701561} HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{FB7C022C-DE15-489C-9A41-F264AC701561} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FB7C022C-DE15-489C-9A41-F264AC701561} HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{FB7C022C-DE15-489C-9A41-F264AC701561} C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D} HKLM\Software\WOW6432Node\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ HKLM\Software\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} HKLM\Software\WOW6432Node\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ HKLM\Software\Classes\CLSID\{94243EC1-AEE5-4d44-A6CF-6407ED967FED} HKLM\Software\WOW6432Node\Classes\CLSID\{94243EC1-AEE5-4d44-A6CF-6407ED967FED} HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ HKLM\Software\Classes\CLSID\{6B9228DA-9C15-419e-856C-19E768A13BDC} HKLM\Software\WOW6432Node\Classes\CLSID\{6B9228DA-9C15-419e-856C-19E768A13BDC} HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} HKLM\Software\WOW6432Node\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ HKLM\Software\Classes\CLSID\{94243EC1-AEE5-4d44-A6CF-6407ED967FED} HKLM\Software\WOW6432Node\Classes\CLSID\{94243EC1-AEE5-4d44-A6CF-6407ED967FED} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Advanced SystemCare HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D} HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\AVG Shell Extension HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObit Malware Fighter HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SAScanShlExt HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SmartDefragExtension HKLM\Software\Classes\CLSID\{189F1E63-33A7-404B-B2F6-8C76A452CC54} HKLM\Software\Wow6432Node\Classes\CLSID\{189F1E63-33A7-404B-B2F6-8C76A452CC54} HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\IObit Malware Fighter HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObit Malware Fighter HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObit Malware Fighter HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\SAScanShlExt HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\SmartDefragExtension C:\Program Files\Spybot - Search & Destroy 2 C:\ProgramData\Spybot - Search & Destroy HKLM\SOFTWARE\adaware C:\ProgramData\adaware [HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{59a8b360-ed6e-4689-bc2f-3c86f98a1635}]:DhcpNameServer="" EmptyCLSID FirewallRaz EmptyPrefetch EmptyTemp EmptyFlash ProxyFix fin
Modifié par El Magnifico le 14/11/2017 17:49 | |||||||
Petit astucien ![]() |
un disque dur externe
• utilisez vous AVG PC TuneUp ?
Je l'ai utilisé mais il ya 3 ou 4 mois ensuite IOBIT Au plaisir. | |||||||
Groupe Sécurité ![]() | Bonsoir lovapom Non ce n'est pas normal que ZHPFix tourne aussi longtemps, au max quelques minutes , Arreter le si ce n'est déjà fait , on y reviendra si nécessaire , nous allons poursuivre avec d' autres outils ********** Vous allez controler l'état de votre disque dur: *********** Désactivez l' antivirus le temps des telechergements et des scans . ZHPCleaner
MBAR
ADWCleaner
Junkware Removal Tool
Kaspersky Virus Removal Tool
![]()
Modifié par El Magnifico le 15/11/2017 20:04 | |||||||
Petit astucien ![]() | ||||||||
Petit astucien ![]() | Bonjour, ci après résultat de ZHPCleaner http://www.cjoint.com/c/GKqpo0Ic6W2 MBAR n'a rien trouvé. ADWcleaner rien trouvé...mais je m'en servais déjà régulièrement voici le résultat quand même http://www.cjoint.com/c/GKqpyH421A2 Résultat JRT http://www.cjoint.com/c/GKqpsSwaLX2 Kaspersky n'a rien trouvé Et résultat final...YOUPIE mon ordi fonctionne de nouveau normalement...pourvu que ça dure ! Ce matin il à fait une mise à jour tout marche. Merci pour votre grande implication vous êtes formidables!
| |||||||
Groupe Sécurité ![]() | lovapom Nous n'avons pas complétement terminé, pour un nouveau diagnostic Refaire un scan ZHPDiag postez le rapport Refaire un scan FRST, postez les 3 rapports | |||||||
Publicité | ||||||||
Petit astucien ![]() | OK !merci Rapport de ZHP Diag http://www.cjoint.com/c/GKqqQPN4KF2 Concernant FRST il ne fonctionne pas chez moi étant en 32 bits ??? Solution?? | |||||||
Groupe Sécurité ![]() | FRST
| |||||||
Petit astucien ![]() | J'arrive pas à installer FRST sur le bureau et si je le met dans un autre fichier pour l'ouvrir il me demande les droits administrateurs??? | |||||||
Groupe Sécurité ![]() | Vous téléchargez à partir de quel navigateur ? si vous faites un clic droit puis ouvrir en tant qu'administrateur ? Si vous le téléchargez dans Téléchargements et que vous faites un clic droit puis ouvrir en tant qu'administrateur ? Avez vous désactivé votre antivirus . | |||||||
Petit astucien ![]() | Peu importe le navigateur c'est pareil.... Impossible d'ouvrir bit defender...j'ai relancé l'ordi...ça marche avec bit D qui effectivement bloquait le fichier ...je décoche...ça marche malgré un avertissement "Failed to uptade"...mais pas de rapport fenêtre Bit D me dit fichier bloqué??? malgré qu'il ne soit plus en fonction???(affiche votre appareil est à risque). Je refais l'analyse qui se lance bien et qui fait sa recherche...il me dit analyse terminée.FRXT.txt est enregistré dans le dossier ou se trouve FRST je clique OK! Je crois que du coup c'est bon! Je transmet
| |||||||
Petit astucien ![]() | Trois rapports FRST ci-après http://www.cjoint.com/c/GKqvauM1vo2
http://www.cjoint.com/c/GKqvcmLEHS2
http://www.cjoint.com/c/GKqvc5JyaP2
| |||||||
Groupe Sécurité ![]() | Re J'ai 2 fois addition mais pas shortcut | |||||||
Petit astucien ![]() | J'ai 3 rapports sur mon bureau qui effectivement semblent identique??? Intitulés: FRST.txt ADDITION.txt FichierFRST.txt ????
| |||||||
Publicité | ||||||||
Groupe Sécurité ![]() | Bon, ben on va s'en passer Je reviens avec un correctif pour FRST
| |||||||
Petit astucien ![]() | OK! merci. | |||||||
Groupe Sécurité ![]() | Voici un correctif avec FRST, croisons les doigts pour que tout se passe bien. Citation
start:: CreateRestorePoint: CloseProcesses: EmptyTemp: Hosts: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION GroupPolicy: Restriction - Chrome <==== ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-2817072459-3174899607-2184542296-1000\Software\Microsoft\Internet Explorer\Main,Start Page = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Pas de nom -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> Pas de fichier FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\Office14\NPSPWRAP.DLL [Pas de fichier] CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] - hxxps://clients2.google.com/service/update2/crx U3 idsvc; pas de ImagePath 2015-11-18 17:36 - 2015-11-28 09:12 - 000000918 _____ () C:\Users\Maha\AppData\Local\av.log 2017-11-14 14:21 - 2017-09-05 05:53 - 001615720 _____ (Microsoft Corporation) C:\Users\Maha\AppData\Local\Temp\dllnt_dump.dll 2017-11-06 16:51 - 2017-11-06 16:51 - 030950664 _____ () C:\Users\Maha\AppData\Local\Temp\vlc-2.2.6-win32.exe ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files\IObit\Advanced SystemCare\ASCExtMenu.dll -> Pas de fichier ContextMenuHandlers1: [AVG Shell Extension] -> {9F97547E-4609-42C5-AE0C-81C61FFAEBC3} => -> Pas de fichier ContextMenuHandlers1: [SAScanShlExt] -> {94243EC1-AEE5-4d44-A6CF-6407ED967FED} => -> Pas de fichier ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll -> Pas de fichier ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Pas de fichier ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers6: [SAScanShlExt] -> {94243EC1-AEE5-4d44-A6CF-6407ED967FED} => -> Pas de fichier ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll -> Pas de fichier Task: {0E1D0A55-BD72-4AFB-82D6-22323C59AE47} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {18F91492-3517-4893-847B-C2ADDC862B7D} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {2B2BD93D-D8B8-44FF-9443-AFE8B0F08AE5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {3ED202E6-9EF5-4931-8146-DE0A597CB69F} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {6010D4B3-ECC8-4145-A126-C930E0A27A4B} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {6BE2F919-151E-4C2B-8E3F-E1E085142337} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {6E8D805A-050C-4803-AAAF-FCBE8B0E95D7} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {7E02040D-93B0-4848-AC07-23961D29350E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {9267CB5E-BB6E-4F82-BED5-7137F8ECC5E4} - \CCleanerSkipUAC -> Pas de fichier <==== ATTENTION Task: {C3A0C95E-6565-4992-8353-38EE7A6E5A39} - \ASC10_SkipUac_Maha -> Pas de fichier <==== ATTENTION Task: {C4CF5967-0CFB-4444-A37B-F33C03F3BC87} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {D44192C0-6A62-4BF1-9722-5D4970153BD2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {D4AFEF63-A99B-4B57-91BD-377228A62FFC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {DFFFA0AC-7D39-4048-B354-47020A47B082} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\EPSON XP-442 445 Series Update {3AD71BA9-7090-4464-8558-B12E08F91672}.job => C:\WINDOWS\system32\spool\DRIVERS\W32X86\3\E_TTSRDE.EXE:/EXE:{3AD71BA9-7090-4464-8558-B12E08F91672} /F:UpdateWORKGROUP\PC$CSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{148310AB-A1FA-464E-9E86-0480668F6D76} DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{148310AB-A1FA-464E-9E86-0480668F6D76} C:\Windows\System32\Tasks\SoftwareInformerService DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664} DeleteKey: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFCB3198-32F3-4E8B-9539-4324694ED664} DeleteKey: HKLM\Software\Classes\CLSID\{FFCB3198-32F3-4E8B-9539-4324694ED664} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ DeleteKey: HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ DeleteKey: HKLM\Software\Classes\CLSID\{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ DeleteKey: HKLM\Software\Classes\CLSID\{94243EC1-AEE5-4d44-A6CF-6407ED967FED} DeleteKey: HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter DeleteKey: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter DeleteKey: HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ DeleteKey: HKLM\Software\Classes\CLSID\{6B9228DA-9C15-419e-856C-19E768A13BDC} DeleteKey: HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ DeleteKey: HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObit Malware Fighter <== Reinstall Software IObit Malware Fighter DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ DeleteKey: HKLM\Software\Classes\CLSID\{94243EC1-AEE5-4d44-A6CF-6407ED967FED} DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Advanced SystemCare DeleteKey: HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D} DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\AVG Shell Extension DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObit Malware Fighter DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SAScanShlExt DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SmartDefragExtension DeleteKey: HKLM\Software\Classes\CLSID\{189F1E63-33A7-404B-B2F6-8C76A452CC54} DeleteKey: HKLM\Software\Classes\CLSID\{189F1E63-33A7-404B-B2F6-8C76A452CC54} DeleteKey: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\IObit Malware Fighter DeleteKey: HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObit Malware Fighter DeleteKey: HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets DeleteKey: HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObit Malware Fighter DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\SAScanShlExt DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\SmartDefragExtension C:\Program Files\Spybot - Search & Destroy 2 C:\ProgramData\Spybot - Search & Destroy DeleteKey: HKLM\SOFTWARE\adaware C:\ProgramData\adaware DeleteKey: HKLM\SOFTWARE\Yahoo DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9155BE1A-C691-4F71-8ACA-08254EF79038} C:\Program Files\ma-config.com C:\ProgramData\ma-config.com cmd: ipconfig /flushdns cmd: netsh winsock reset Cmd: netsh advfirewall reset Cmd: Netsh advfirewall set allprofiles state on end::
Modifié par El Magnifico le 16/11/2017 23:43 | |||||||
Petit astucien ![]() | ||||||||
Groupe Sécurité ![]() | Ma mission se termine C ' est la dernière ligne droite
Adwcleaner ; FRST ; KVRT_Data
Fin de désinfection
Cloner son système Windows 7
Créer une image système Windows 8 Créer une image système Windows 8.1 Sauvegarde du système Windows 10 Recommandations aux possesseurs de nouveaux PC
| |||||||
Petit astucien ![]() | Concernant CCcleaner: Que dois-je comprendre quand vous dîtes "surlignez toutes les lignes sauf l'antivirus , puis cliquez en haut à droite sur DESACTIVER."
| |||||||
Petit astucien ![]() |
| |||||||
Groupe Sécurité ![]() | lovapom a écrit : Oui, c'est bien ça Je marque le sujet en résolu Bonne journée Gerard
| |||||||
Petit astucien ![]() | Merci encore une fois Gérard pour ce que vous avez fait pour moi! Que dire d'autre...je n'ose dire à bientôt. Bonne continuation | |||||||
Publicité | ||||||||
| ||||||||
Les bons plans du moment PC Astuces | Tous les Bons Plans | |||||||||||||||
|
Sujets relatifs | ||||||
|