bjr.
j'ai le même problème qu'un membre ici..
Des que j'ouvre internet explorer j'ai des pop up qui apparaissent dont un qui veut m'installer un logiciel bidon (winfixer). J'ai utilisé ad aware, des anti virus, mais rien n'y fait.
Commment s'en débarasser ?
Voilà ce que donne HijackThis !
Code :
- Logfile of HijackThis v1.97.7
- Scan saved at 13:53:41, on 20/11/2005
- Platform: Windows 2000 SP4 (WinNT 5.00.2195)
- MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
- Running processes:
- C:\WINNT\System32\smss.exe
- C:\WINNT\system32\winlogon.exe
- C:\WINNT\system32\services.exe
- C:\WINNT\system32\lsass.exe
- C:\WINNT\system32\svchost.exe
- C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
- C:\WINNT\system32\spoolsv.exe
- C:\WINNT\System32\svchost.exe
- C:\WINNT\System32\mgabg.exe
- C:\Program Files\Norton AntiVirus\navapsvc.exe
- C:\WINNT\system32\MSTask.exe
- C:\WINNT\system32\stisvc.exe
- C:\WINNT\system32\ZoneLabs\vsmon.exe
- C:\WINNT\System32\WBEM\WinMgmt.exe
- C:\WINNT\system32\svchost.exe
- C:\WINNT\System32\svchost.exe
- C:\WINNT\Explorer.EXE
- C:\WINNT\SOUNDMAN.EXE
- C:\WINNT\System32\PDesk\PDesk.exe
- C:\WINNT\Gtwatch.exe
- C:\WINNT\gtwatch.exe
- C:\WINNT\System32\UMonit2k.exe
- C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
- C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
- C:\PROGRA~1\MESSAG~1\Demon.exe
- C:\WINNT\autoclk.exe
- C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
- C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
- C:\Program Files\MSN Apps\Updater\01.03.0000.1005\fr\msnappau.exe
- C:\Program Files\SurfAccuracy\SAcc.exe
- C:\Program Files\MSN Messenger\MsnMsgr.Exe
- C:\Program Files\SAGEM\SAGEM F@st800\dslmon.exe
- C:\WINNT\twain_32\L3U16\WATCH.exe
- C:\WINNT\system32\wuauclt.exe
- D:\flash 32\Flash32.exe
- D:\mon forum php\EasyPHP1-8\EasyPHP.exe
- D:\MONFOR~1\EASYPH~1\Apache\apache.exe
- D:\MONFOR~1\EASYPH~1\Apache\apache.exe
- D:\MONFOR~1\EASYPH~1\MySql\bin\mysqld.exe
- C:\Program Files\Symantec\LiveUpdate\ALUNOTIFY.EXE
- C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
- C:\PROGRA~1\Wanadoo\ComComp.exe
- C:\PROGRA~1\Wanadoo\Watch.exe
- D:\mes fichiers importants\turbo lister ebay\Tl.exe
- C:\Program Files\Internet Explorer\iexplore.exe
- D:\anti virus\hitaschic\hijackthis.exe
- R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/
- R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr/
- R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
- F2 - REG:system.ini: UserInit=C:\WINNT\System32\userinit.exe
- O2 - BHO: (no name) - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINNT\nem220.dll (file missing)
- O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
- O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
- O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
- O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
- O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
- O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
- O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
- O4 - HKLM\..\Run: [Matrox Powerdesk] C:\WINNT\System32\PDesk\PDesk.exe /Autolaunch
- O4 - HKLM\..\Run: [] C:\WINNT\Gtwatch.exe
- O4 - HKLM\..\Run: [Gtwatch] C:\WINNT\gtwatch.exe
- O4 - HKLM\..\Run: [Gene USB Monitor] C:\WINNT\System32\UMonit2k.exe
- O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
- O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe"
- O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
- O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
- O4 - HKLM\..\Run: [Demon] C:\PROGRA~1\MESSAG~1\Demon.exe
- O4 - HKLM\..\Run: [autoclk] autoclk.exe
- O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
- O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
- O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background
- O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\\NeroCheck.exe
- O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.03.0000.1005\fr\msnappau.exe"
- O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
- O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
- O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
- O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st800\dslmon.exe
- O4 - Global Startup: Watch.lnk = C:\WINNT\twain_32\L3U16\WATCH.exe
- O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
- O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 (HKLM)
- O9 - Extra button: Recherche (HKLM)
- O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub [...] tor/sw.cab
- O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/down [...] mv9VCM.CAB
- O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab
- O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft. [...] 6415277778
- O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/ [...] loader.cab
- O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub [...] wflash.cab
|