winfixer qui me lance le programme

winfixer qui me lance le programme - Win NT/2K/XP - Windows & Software

Marsh Posté le 20-11-2005 à 13:51:43    

bjr.
j'ai le même problème qu'un membre ici..
 
Des que j'ouvre internet explorer j'ai des pop up qui apparaissent dont un qui veut m'installer un logiciel bidon (winfixer). J'ai utilisé ad aware, des anti virus, mais rien n'y fait.  
Commment s'en débarasser ?  
Voilà ce que donne HijackThis !  
 

Code :
  1. Logfile of HijackThis v1.97.7
  2. Scan saved at 13:53:41, on 20/11/2005
  3. Platform: Windows 2000 SP4 (WinNT 5.00.2195)
  4. MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
  5. Running processes:
  6. C:\WINNT\System32\smss.exe
  7. C:\WINNT\system32\winlogon.exe
  8. C:\WINNT\system32\services.exe
  9. C:\WINNT\system32\lsass.exe
  10. C:\WINNT\system32\svchost.exe
  11. C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
  12. C:\WINNT\system32\spoolsv.exe
  13. C:\WINNT\System32\svchost.exe
  14. C:\WINNT\System32\mgabg.exe
  15. C:\Program Files\Norton AntiVirus\navapsvc.exe
  16. C:\WINNT\system32\MSTask.exe
  17. C:\WINNT\system32\stisvc.exe
  18. C:\WINNT\system32\ZoneLabs\vsmon.exe
  19. C:\WINNT\System32\WBEM\WinMgmt.exe
  20. C:\WINNT\system32\svchost.exe
  21. C:\WINNT\System32\svchost.exe
  22. C:\WINNT\Explorer.EXE
  23. C:\WINNT\SOUNDMAN.EXE
  24. C:\WINNT\System32\PDesk\PDesk.exe
  25. C:\WINNT\Gtwatch.exe
  26. C:\WINNT\gtwatch.exe
  27. C:\WINNT\System32\UMonit2k.exe
  28. C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
  29. C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
  30. C:\PROGRA~1\MESSAG~1\Demon.exe
  31. C:\WINNT\autoclk.exe
  32. C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
  33. C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
  34. C:\Program Files\MSN Apps\Updater\01.03.0000.1005\fr\msnappau.exe
  35. C:\Program Files\SurfAccuracy\SAcc.exe
  36. C:\Program Files\MSN Messenger\MsnMsgr.Exe
  37. C:\Program Files\SAGEM\SAGEM F@st800\dslmon.exe
  38. C:\WINNT\twain_32\L3U16\WATCH.exe
  39. C:\WINNT\system32\wuauclt.exe
  40. D:\flash 32\Flash32.exe
  41. D:\mon forum php\EasyPHP1-8\EasyPHP.exe
  42. D:\MONFOR~1\EASYPH~1\Apache\apache.exe
  43. D:\MONFOR~1\EASYPH~1\Apache\apache.exe
  44. D:\MONFOR~1\EASYPH~1\MySql\bin\mysqld.exe
  45. C:\Program Files\Symantec\LiveUpdate\ALUNOTIFY.EXE
  46. C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
  47. C:\PROGRA~1\Wanadoo\ComComp.exe
  48. C:\PROGRA~1\Wanadoo\Watch.exe
  49. D:\mes fichiers importants\turbo lister ebay\Tl.exe
  50. C:\Program Files\Internet Explorer\iexplore.exe
  51. D:\anti virus\hitaschic\hijackthis.exe
  52. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/
  53. R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr/
  54. R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
  55. F2 - REG:system.ini: UserInit=C:\WINNT\System32\userinit.exe
  56. O2 - BHO: (no name) - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINNT\nem220.dll (file missing)
  57. O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
  58. O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
  59. O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
  60. O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
  61. O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
  62. O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
  63. O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
  64. O4 - HKLM\..\Run: [Matrox Powerdesk] C:\WINNT\System32\PDesk\PDesk.exe /Autolaunch
  65. O4 - HKLM\..\Run: [] C:\WINNT\Gtwatch.exe
  66. O4 - HKLM\..\Run: [Gtwatch] C:\WINNT\gtwatch.exe
  67. O4 - HKLM\..\Run: [Gene USB Monitor] C:\WINNT\System32\UMonit2k.exe
  68. O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
  69. O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe"
  70. O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
  71. O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
  72. O4 - HKLM\..\Run: [Demon] C:\PROGRA~1\MESSAG~1\Demon.exe
  73. O4 - HKLM\..\Run: [autoclk] autoclk.exe
  74. O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
  75. O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
  76. O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background
  77. O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\\NeroCheck.exe
  78. O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.03.0000.1005\fr\msnappau.exe"
  79. O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
  80. O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
  81. O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
  82. O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st800\dslmon.exe
  83. O4 - Global Startup: Watch.lnk = C:\WINNT\twain_32\L3U16\WATCH.exe
  84. O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
  85. O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 (HKLM)
  86. O9 - Extra button: Recherche (HKLM)
  87. O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub [...] tor/sw.cab
  88. O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/down [...] mv9VCM.CAB
  89. O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab
  90. O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) - http://v4.windowsupdate.microsoft. [...] 6415277778
  91. O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/ [...] loader.cab
  92. O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub [...] wflash.cab

Reply

Marsh Posté le 20-11-2005 à 13:51:43   

Reply

Sujets relatifs:

Leave a Replay

Make sure you enter the(*)required information where indicate.HTML code is not allowed