Twitter iPhone pliant OnePlus 11 PS5 Disney+ Orange Livebox Windows 11

miraclesearch.com

3 réponses
Avatar
Anonyme
Bonjour,
Merci a tous ceux qui pourront m'aider. Des fenetres IE qui s'ouvrent a tout
moment. ad-aware et spybot ne m'aident pas beaucoup.

Voici mes logs HijackThis

Thanks


Logfile of HijackThis v1.98.2
Scan saved at 7:45:13 PM, on 12/4/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVPersonal\AVGUARD.EXE
C:\WINDOWS\Microsoft.NET\Framework\v2.0.40607\aspnet_admin.exe
C:\Program Files\AVPersonal\AVWUPSRV.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
C:\WINDOWS\System32\vmnat.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\fr\msnappau.exe
C:\Program Files\Visage\PDF Printer\vspdfprsrv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\AVPersonal\AVGNT.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\j2 Messenger\HotTray.exe
C:\Program Files\j2 Messenger\Dllcmd32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\waokpb.exe
C:\Program Files\Movie Maker\moviemk.exe
C:\DOCUME~1\Guy\LOCALS~1\Temp\Rar$EX00.562\HijackThis.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.mcpmarket.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.msn.com/0/1000/default.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
Liens
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 69.20.16.183 ieautosearch
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN
Apps\Updater\01.02.3000.1001\fr\msnappau.exe"
O4 - HKLM\..\Run: [vspdfprsrv.exe] C:\Program Files\Visage\PDF
Printer\vspdfprsrv.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AVGCtrl] "C:\Program Files\AVPersonal\AVGNT.EXE" /min
O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy PDF
Creator\EasyPDFCreator.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone
Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [kalvsys] C:\windows\system32\kalvaoh32.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe"
/background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft
ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [Yahoo! Pager]
C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe -quiet
O4 - HKCU\..\Run: [Mail.com] C:\Program Files\mail.com\mcalert.exe -auto
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search &
Destroy\TeaTimer.exe
O4 - Global Startup: Boldchat Operator Client .NET.lnk = ?
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: j2 Tray Menu.lnk = C:\Program Files\j2
Messenger\HotTray.exe
O4 - Global Startup: Live Menu.lnk = C:\Program Files\j2
Messenger\Dllcmd32.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel -
res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no
file)
O9 - Extra 'Tools' menuitem: Console Java (Sun) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: Scrambler - {2225A222-A789-11CE-86F8-0020AFD8C6DB} -
C:\PROGRA~1\PASSWO~1\pwscr.dll
O9 - Extra 'Tools' menuitem: Password Scrambler... -
{2225A222-A789-11CE-86F8-0020AFD8C6DB} - C:\PROGRA~1\PASSWO~1\pwscr.dll
O9 - Extra button: Create Mobile Favorite -
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft
ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} -
C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... -
{2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft
ActiveSync\INetRepl.dll
O9 - Extra button: Share in Hello - {B13B4423-2647-4cfc-A4B3-C7D56CB83487} -
C:\Program Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
Files\Messenger\msmsgs.exe
O12 - Plugin for .gsm: C:\Program Files\Internet
Explorer\PLUGINS\npqtplugin3.dll
O16 - DPF: ppctlcab - http://www.pestscan.com/scanner/ppctlcab.cab
O16 - DPF: {0D3983A9-4E29-4F33-8313-DA22B29D3F87} (QuickBooks Online Edition
Utilities Class v6) - https://accounting.quickbooks.com/v10.160/qboax6.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating
System Class) -
http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,81/mcinsctl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://207.188.7.150/3049de866c38ac6a7606/netzip/RdxIE601_fr.cab
O16 - DPF: {5A66E13A-311D-488B-828D-DDDF52EFB636} (strprint.trprints) -
https://partnering.one.microsoft.com/mcp/tools/MCPTranscriptPrint.CAB
O16 - DPF: {98BC86B6-F34A-4BCB-8F82-489C5F59EC2B} (VMRCClientControl
Class) -
http://microsoft.granitepillar.com/vlattend/shared/VMRCActiveXClient.cab
O16 - DPF: {99B6E512-3893-4155-9964-8EB8E06099CB} (WebSpyWareKiller Class) -
http://download.zonelabs.com/bin/promotions/spywaredetector/WebSWK.cab
O16 - DPF: {9B17FE0E-51F2-4692-8B32-8EFB805FC0E7} (HPObjectInstaller
Class) - http://h30155.www3.hp.com/ediags/gs/install/guidedsolutions.cab
O16 - DPF: {AD0E37CE-0A0E-4183-83E9-902CC84A4185} (RootInstaller Class) -
https://www.partners.extranet.microsoft.com/Content/launch/rootinst.dll
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) -
http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
O16 - DPF: {D92D7607-05D9-4DD8-B68B-D458948FB883} (QuickBooks Online Edition
Utilities Class v7) - https://accounting.quickbooks.com/v11.227/qboax7.cab
O16 - DPF: {E855A2D4-987E-4F3B-A51C-64D10A7E2479} (EPSImageControl Class) -
http://tools.ebayimg.com/eps/activex/EPSControl_v1-0-3-0.cab
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) -
http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?319
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/2,0,0,4372/mcfscan.cab
O16 - DPF: {F2A84794-EE6D-447B-8C21-3BA1DC77C5B4} (SDKInstall Class) -
http://activex.microsoft.com/activex/controls/sdkupdate/sdkinst.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = myho.net
O17 - HKLM\Software\..\Telephony: DomainName = myho.net
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = myho.net
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = myho.net
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} -
C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll

3 réponses

Avatar
robert 67
Anonyme a écrit dans le message de news: ug$
Bonjour,
Merci a tous ceux qui pourront m'aider. Des fenetres IE qui
s'ouvrent a tout moment. ad-aware et spybot ne m'aident pas
beaucoup.

Voici mes logs HijackThis

Thanks


Logfile of HijackThis v1.98.2
Scan saved at 7:45:13 PM, on 12/4/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesAVPersonalAVGUARD.EXE
C:WINDOWSMicrosoft.NETFrameworkv2.0.40607aspnet_admin.exe
C:Program FilesAVPersonalAVWUPSRV.EXE
C:Program FilesFichiers communsMicrosoft SharedVS7Debugmdm.exe
C:WINDOWSsystem32pctspk.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesVMwareVMware Workstationvmware-authd.exe
C:WINDOWSSystem32vmnat.exe
C:WINDOWSsystem32ZoneLabsvsmon.exe
C:WINDOWSsystem32fxssvc.exe
C:WINDOWSsystem32ctfmon.exe
C:PROGRA~1mcafee.comagentmcagent.exe
C:PROGRA~1mcafee.comagentmcupdate.exe
C:WINDOWSSystem32ezSP_Px.exe
C:Program FilesMSN AppsUpdater1.02.3000.1001frmsnappau.exe
C:Program FilesVisagePDF Printervspdfprsrv.exe
C:Program FilesQuickTimeqttask.exe
C:Program FilesAVPersonalAVGNT.EXE
C:Program FilesZone LabsZoneAlarmzlclient.exe
C:Program FilesMSN MessengerMsnMsgr.Exe
C:Program FilesMicrosoft ActiveSyncWCESCOMM.EXE
C:Program FilesSpybot - Search & DestroyTeaTimer.exe
C:Program FilesHewlett-PackardDigital Imagingbinhpohmr08.exe
C:Program FilesHewlett-PackardDigital Imagingbinhpotdd01.exe
C:Program Filesj2 MessengerHotTray.exe
C:Program Filesj2 MessengerDllcmd32.exe
C:WINDOWSsystem32rundll32.exe
C:Program FilesHewlett-PackardDigital Imagingbinhpoevm08.exe
C:Program FilesHewlett-PackardDigital ImagingBinhpoSTS08.exe
C:Program FilesHewlett-PackardDigital ImagingBinhpoSTS08.exe
C:Program FilesMicrosoft OfficeOffice10WINWORD.EXE
C:WINDOWSexplorer.exe
C:WINDOWSSystem32dllhost.exe
C:WINDOWSsystem32taskmgr.exe
C:WINDOWSsystem32waokpb.exe
C:Program FilesMovie Makermoviemk.exe
C:DOCUME~1GuyLOCALS~1TempRar$EX00.562HijackThis.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSsystem32NOTEPAD.EXE
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesMicrosoft OfficeOffice10OUTLOOK.EXE

R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.mcpmarket.com/
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://go.msn.com/0/1000/default.asp
R0 - HKCUSoftwareMicrosoftInternet
ExplorerToolbar,LinksFolderName = Liens
O1 - Hosts: 69.20.16.183 auto.search.msn.com
O1 - Hosts: 69.20.16.183 search.netscape.com
O1 - Hosts: 69.20.16.183 ieautosearch
O1 - Hosts: 69.20.16.183 ieautosearch
O4 - HKLM..Run: [MCAgentExe]
c:PROGRA~1mcafee.comagentmcagent.exe
O4 - HKLM..Run: [MCUpdateExe]
C:PROGRA~1mcafee.comagentmcupdate.exe
O4 - HKLM..Run: [ezShieldProtector for Px]
C:WINDOWSSystem32ezSP_Px.exe
O4 - HKLM..Run: [msnappau] "C:Program FilesMSN
AppsUpdater1.02.3000.1001frmsnappau.exe"
O4 - HKLM..Run: [vspdfprsrv.exe] C:Program FilesVisagePDF
Printervspdfprsrv.exe
O4 - HKLM..Run: [NeroCheck] C:WINDOWSSystem32NeroCheck.exe
O4 - HKLM..Run: [QuickTime Task] "C:Program
FilesQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [AVGCtrl] "C:Program FilesAVPersonalAVGNT.EXE"
/min
O4 - HKLM..Run: [Easy PDF Creator] C:Program FilesEasy PDF
CreatorEasyPDFCreator.exe
O4 - HKLM..Run: [Zone Labs Client] "C:Program FilesZone
LabsZoneAlarmzlclient.exe"
O4 - HKLM..Run: [kalvsys] C:windowssystem32kalvaoh32.exe
O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 - HKCU..Run: [MsnMsgr] "C:Program FilesMSN
MessengerMsnMsgr.Exe" /background
O4 - HKCU..Run: [H/PC Connection Agent] "C:Program
FilesMicrosoft ActiveSyncWCESCOMM.EXE"
O4 - HKCU..Run: [Yahoo! Pager]
C:PROGRA~1Yahoo!MESSEN~1ypager.exe -quiet
O4 - HKCU..Run: [Mail.com] C:Program
Filesmail.commcalert.exe -auto
O4 - HKCU..Run: [SpybotSD TeaTimer] C:Program FilesSpybot -
Search & DestroyTeaTimer.exe
O4 - Global Startup: Boldchat Operator Client .NET.lnk = ?
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: j2 Tray Menu.lnk = C:Program Filesj2
MessengerHotTray.exe
O4 - Global Startup: Live Menu.lnk = C:Program Filesj2
MessengerDllcmd32.exe
O4 - Global Startup: Microsoft Office.lnk = C:Program
FilesMicrosoft OfficeOffice10OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel -
res://C:PROGRA~1MICROS~3Office10EXCEL.EXE/3000
O9 - Extra button: (no name) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: Console Java (Sun) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: Scrambler -
{2225A222-A789-11CE-86F8-0020AFD8C6DB} -
C:PROGRA~1PASSWO~1pwscr.dll
O9 - Extra 'Tools' menuitem: Password Scrambler... -
{2225A222-A789-11CE-86F8-0020AFD8C6DB} -
C:PROGRA~1PASSWO~1pwscr.dll
O9 - Extra button: Create Mobile Favorite -
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:Program FilesMicrosoft
ActiveSyncINetRepl.dll
O9 - Extra button: (no name) -
{2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:Program FilesMicrosoft
ActiveSyncINetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... -
{2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:Program FilesMicrosoft
ActiveSyncINetRepl.dll
O9 - Extra button: Share in Hello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:Program
FilesHelloPicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - C:Program
FilesHelloPicasaCapture.dll
O9 - Extra button: Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program
FilesMessengermsmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Program
FilesMessengermsmsgs.exe
O12 - Plugin for .gsm: C:Program FilesInternet
ExplorerPLUGINSnpqtplugin3.dll
O16 - DPF: ppctlcab - http://www.pestscan.com/scanner/ppctlcab.cab
O16 - DPF: {0D3983A9-4E29-4F33-8313-DA22B29D3F87} (QuickBooks Online
Edition Utilities Class v6) -
https://accounting.quickbooks.com/v10.160/qboax6.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com
Operating System Class) -
http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,81/mcinsctl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) -
http://207.188.7.150/3049de866c38ac6a7606/netzip/RdxIE601_fr.cab
O16 - DPF: {5A66E13A-311D-488B-828D-DDDF52EFB636}
(strprint.trprints) -
https://partnering.one.microsoft.com/mcp/tools/MCPTranscriptPrint.CAB
O16 - DPF: {98BC86B6-F34A-4BCB-8F82-489C5F59EC2B} (VMRCClientControl
Class) -
http://microsoft.granitepillar.com/vlattend/shared/VMRCActiveXClient.cab
O16 - DPF: {99B6E512-3893-4155-9964-8EB8E06099CB} (WebSpyWareKiller
Class) -
http://download.zonelabs.com/bin/promotions/spywaredetector/WebSWK.cab
O16 - DPF: {9B17FE0E-51F2-4692-8B32-8EFB805FC0E7} (HPObjectInstaller
Class) -
http://h30155.www3.hp.com/ediags/gs/install/guidedsolutions.cab
O16 - DPF: {AD0E37CE-0A0E-4183-83E9-902CC84A4185} (RootInstaller
Class) -
https://www.partners.extranet.microsoft.com/Content/launch/rootinst.dll
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector
Class) -
http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
O16 - DPF: {D92D7607-05D9-4DD8-B68B-D458948FB883} (QuickBooks Online
Edition Utilities Class v7) -
https://accounting.quickbooks.com/v11.227/qboax7.cab
O16 - DPF: {E855A2D4-987E-4F3B-A51C-64D10A7E2479} (EPSImageControl
Class) -
http://tools.ebayimg.com/eps/activex/EPSControl_v1-0-3-0.cab
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj
Class) - http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?319
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan
Class) -
http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/2,0,0,4372/mcfscan.cab
O16 - DPF: {F2A84794-EE6D-447B-8C21-3BA1DC77C5B4} (SDKInstall
Class) -
http://activex.microsoft.com/activex/controls/sdkupdate/sdkinst.cab
O17 - HKLMSystemCCSServicesTcpipParameters: Domain = myho.net
O17 - HKLMSoftware..Telephony: DomainName = myho.net
O17 - HKLMSystemCS1ServicesTcpipParameters: Domain = myho.net
O17 - HKLMSystemCS2ServicesTcpipParameters: Domain = myho.net
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} -
C:Program FilesFichiers communsMicrosoft SharedHelphxds.dll





Bonjour
Alors la vous n etes pas sorti de l auberge
J ai mis un certain nombre d heures a me debarasser de ces saletes
Tous les utilitaires que j ai essayes ont ete inefficaces
La seule methode est la methode manuelle preconisee ici
http://www.echu.org/portail/modules/sections/index.php?op=viewarticle&artid#
mais c est long et laborieux d autant plus que votre scan Hijack date
de
avril 2004 ( la je ne comprends pas ??) et que vous devez trimbaler ca
de puis un moment . Sachant que ces Hijack creent des nouveaux
fichiers a
chaque fermeture de Win vous devez probablement avoir de nombreux
.exe (ainsi qu une flopee de .dll .log .dat ) sous windows et
windowssystem32
qu il faudra eliminer en mode sans echec obligatoirement et sans
parler
des reboot sauvages (en coupant le courant) pour eviter la creation
d un nouvel .exe a eliminer (sinon c est le serpent qui se mord la
queue)
Bon courage
Robert67
Avatar
Jceel
Bonjour anonyme qui nous a dit
Bonjour,
Merci a tous ceux qui pourront m'aider. Des fenetres IE qui s'ouvrent
a tout moment. ad-aware et spybot ne m'aident pas beaucoup.

Voici mes logs HijackThis





quelle cacophonie quand on installe plusieurs antivirus et autres
joyeusetés
commence par supprimer
C:WINDOWSMicrosoft.NETFrameworkv2.0.40607aspnet_admin.exe
C:Program FilesFichiers communsMicrosoft SharedVS7Debugmdm.exe
HKLM..Run: [msnappau] "C:Program FilesMSN
AppsUpdater1.02.3000.1001frmsnappau.exe"



O4 - HKLM..Run: [QuickTime Task] "C:Program
FilesQuickTimeqttask.exe" -atboottime




ce ne sont pas de malwares mais ça ne sert à rien sauf à
ralentir ton ordi

ensuite ne mets qu'un seul antivirus et un seul fire-wall
pourquoi lances tu notepad ???????????????????????,,,
mets le dans le quick-launch
refais un scan ensuite....en DEC pas AVRIL ;-(

--
@++++Jceel

En vérité je te le dis mais sous O E
internaute indécis pour le HacheuTeuMeuLeu
seul le click droit Control+F deux
la lumière t'apportera C'est ce qu'il y a de mieux
netevangile..selon Jceel.livre du windows.psaume alt-255..verset ÿp
Jceel http://jceel.free.fr l'hyper du gratuit du net
Founding Chairman of the International Pebkac Busters Company
Avatar
Anonyme
Ces logs datent du 4 décembre 2004

"Jceel" a écrit dans
le message de news:

Bonjour anonyme qui nous a dit
Bonjour,
Merci a tous ceux qui pourront m'aider. Des fenetres IE qui s'ouvrent
a tout moment. ad-aware et spybot ne m'aident pas beaucoup.

Voici mes logs HijackThis





quelle cacophonie quand on installe plusieurs antivirus et autres
joyeusetés
commence par supprimer
C:WINDOWSMicrosoft.NETFrameworkv2.0.40607aspnet_admin.exe
C:Program FilesFichiers communsMicrosoft SharedVS7Debugmdm.exe
HKLM..Run: [msnappau] "C:Program FilesMSN
AppsUpdater1.02.3000.1001frmsnappau.exe"



O4 - HKLM..Run: [QuickTime Task] "C:Program
FilesQuickTimeqttask.exe" -atboottime




ce ne sont pas de malwares mais ça ne sert à rien sauf à
ralentir ton ordi

ensuite ne mets qu'un seul antivirus et un seul fire-wall
pourquoi lances tu notepad ???????????????????????,,,
mets le dans le quick-launch
refais un scan ensuite....en DEC pas AVRIL ;-(

--
@++++Jceel

En vérité je te le dis mais sous O E
internaute indécis pour le HacheuTeuMeuLeu
seul le click droit Control+F deux
la lumière t'apportera C'est ce qu'il y a de mieux
netevangile..selon Jceel.livre du windows.psaume alt-255..verset ÿp
Jceel http://jceel.free.fr l'hyper du gratuit du net
Founding Chairman of the International Pebkac Busters Company