Re: infecté sur chrome

Bonsoir,

 

Pour réinitialiser Google Chrome je te conseil ResetBrowser. En un clique tu auras tout réinitialisé :)

Pour ce qui est du script, c'est normal que la fenêtre reste vide, c'est à toi de la remplir en copiant le script indiqué à l'étape 11.

Il te faut en fait sélectionner le script, le copier avec CTRL + C, puis séléctionner la fenêtre de ZHPScript et coller le script, avec CTRL +...

Firefox-Addon "Super Drag": false detection?

hi Several weeks ago a had an issue with malware in Firefox and CHROME.

I opened a thread in this german Firefox forum: http://www.camp-firefox.de/forum/viewtopic.php?f=1&t=114723

We tried several times to remove the malware with some tools (ADW cleaner and tools like MBAM and JRT).

It didnt work so the moderators told me to refresh firefox (see https://support.mozilla.org/en-US/kb/refresh-f...

Re: infecté sur chrome

Bonjour Maxjules.

Pour commencer, on va faire l'export du dossier d'Extensions de Google Chrome.

  • Via l'explorateur, rends toi ici :
    C:\Users\max\AppData\Local\Google\Chrome\User Data\Default\
  • Ensuite fais un clic droit sur le dossier "Extensions", sélectionne "Envoyez-vers" puis "Dossier compressé".
  • Un fichier Extensions.zip est alors créé.
  • Rends toi sur up2sha.re.
  • Héberge ce fichier ...

Re: I'm not sure what to clean/remove.

Hi Chapi,

This is ZHPFixReport without using Drop-box opton:

Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015 Fichier d'export Registre : Run by My Computer at 11/27/2015 2:39:30 PM High Elevated Privileges : OK Windows Vista Business Edition, 64-bit  (Build 6000)

Recycle Bin emptied (14mn AMs) Prefetcher emptied

========== Software ========== REMOVES: Kaspersky Secu...

Re: I'm not sure what to clean/remove.

Ok, so I've made a more detailled explanation (all the links refer to a picture with what to do) :

Re: I'm not sure what to clean/remove.

Hi,

Sadly, that's not what I'm waitting for. Here is an example of a ZHPFix script :

Rapport de ZHPFix 2015.10.19.9 par Nicolas Coolman, Update du 19/10/2015
Fichier d'export Registre : 
Run by Chapi at 27/11/2015 17:43:39
High Elevated Privileges : OK
Windows 8 Home Premium Edition, 64-bit Service Pack 1 (9600)

Corbeille vidée (Annulé par l'utilisateur)


========== Récapitulatif =========...

Re: I'm not sure what to clean/remove.

Hi Chapi

Sorry about my confusing words, here's the ZHFixReport (1):

Script ZHPFix P2 - EXT FILE: (...) -- C:\Users\My Computer\AppData\Roaming\Mozilla\Firefox\Profiles\8kyk8yzd.default-1436897542862\extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi HKCU\SOFTWARE\AppDataLow\Software\arcadeparlorconfig O43 - CFD: 15/03/2015 - [] D -- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44} HKCU\SOFTWARE...

Re: I'm not sure what to clean/remove.

Here's the original script:

Script ZHPFix
P2 - EXT FILE: (...) -- C:\Users\My Computer\AppData\Roaming\Mozilla\Firefox\Profiles\8kyk8yzd.default-1436897542862\extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi
HKCU\SOFTWARE\AppDataLow\Software\arcadeparlorconfig
O43 - CFD: 15/03/2015 - [] D -- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44}
HKCU\SOFTWARE\DriverSupport
O43 - CFD: 21/11/2015 - []...

Re: I'm not sure what to clean/remove.

Hi from France :)

We will use ZHPFix, another tool from Nicolas Coolman, in order to remove what remains of those softwares and the little thing AdwCleaner missed.

  • Go on the download page of ZhpFix, click on the blue button "Download Now".
  • Save the file where do you want and launch it with right click : "launch as administrator".
  • Follow the instructions during the installation.
  • Then click ...

Re: I'm not sure what to clean/remove.

Hello from Canada,

Ok, before using a script to eliminate all remaining threats, I need you to tell me about some software that I don't know :

Do you know :

  • BankId: keeper
  • Turbo Tax ( 2010 2013 2014): keeper
  • Quick Tax: keeper
  • Memorex exPressit Label Design Studio: keeper
  • arcadeparlorconfig: definetly remove Spying!!

You also have some uncommon Firefox's extensions such as video download...