Probleme antispyware expert

Bonjour,

Antispyware expert s'est installé sur mon ordinateur cet apres-midi, et il m'est impossible de le supprimer depuis. J'ai lu toutes les solutions qui existent sur un peu tout les forums, mais aucune ne peut resoudre mon cas. Effectivement, depuis qu'il s'est installer je n'ai plus acces au gestionnaire des taches, plus aucun programme ne se lance (meme en mode sans echec), je n'ai plus acces a internet, j'ai meme essayer d'installer win_fix mais sans succes.

Quelqu'un aurait-il une solution pour enlever cette m**** ?

Config: Windows XP media center.
Configuration: Windows Vista
Internet Explorer 7.0

12 réponses

  1. Modérateur
    cyrano ---> Merci de créer ton propre sujet.
    0
    1. bonjour
      actruellement j'ai aussi un problème avec ce AntispywareExpert... Il n'arrête pas de m'envoyer ce message "you have a security problem" et je ne sais pas quoi faire pour le virer...
      J'ai vu que tu avais mis fin à son processus dans le gestionnaire des tâches, mais le problème est que je ne vois pas sous quel nom il est inscrit... Tu pourrais me dire quelle abréviation il porte ?
      Merci bien
      0
      1. moi j ai su m en débarrasser en mettant fin a son processus dans le gestionnaire des taches !

        j espére que ça ira
        0
        1. je viens d'essayer, ca fait comme avec les autres applications, j'ai doncv essayé en mode sans echec, et j'obtiens ce message:

          Windows fonctionne en mode sans echec.

          Ce mode de diagnostic speciale de windows vous permet de resoudre un probleme qui peut etre lié a votre réseau...

          A la fin du message il m'est demandé soit de cliquer sur oui pour continuer en mode sans echec, soit sur non pour acceder au mode restauration du systeme, j'ai donc essayé la restauration mais le point de restauration correspondait à une heure où j'était deja infecte.
          0
          1. Modérateur
            Essaie de restaurer le gestionnaire des tâches avec ceci :
            http://telechargement.zebulon.fr/zeb-restore.html
            0
            1. Oui j'ai essayé en mode sans echec, et le resultat est le meme, de plus j'ai oublié de preciser que le gestionnaire des taches était bloqué, et que l'option tous les programmes du menu démarrer n'apparait plus.

              J'ai bien peur de devoir formater, mais j'espere quand meme une solution miracle
              0
              1. Modérateur
                As-tu essayé en mode sans échec ?
                0
                1. Toujours le meme probleme qu'avec les autres applications, quand je veux lancer l'installl, tout ce qui est present à l'écran se disparait puis reapparait, mais l'application ne se lance pas.
                  0
                  1. Modérateur
                    - Télécharge et installe MalwareByte's Anti-Malware :
                    http://www.download.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.htm

                    - Mets-le à jour

                    - Redémarre en mode sans échec (Recommandé) :
                    https://www.malekal.com/demarrer-windows-mode-sans-echec/

                    - Choisis ta session habituelle

                    - Fais un scan complet avec MalwareByte's Anti-Malware

                    - Supprime tout ce que le logiciel trouve, enregistre le rapport

                    - Redémarre en mode normal et poste le rapport ici

                    Tutorial :
                    https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
                    0
                    1. je viens d'essayer, j'ai le meme probleme qu'avec les autres programmes en .exe, la premiere fois j'ai l'erreur explorer.exe doit fermer, et apres quand je reessaye, les icones du bureau disparaissent puis reapparaissent mais l'install ne se lance pas.
                      0
                      1. Modérateur
                        Salut,

                        - Télécharge HijackThis V 2.02 (HijackThis Installer) :
                        http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe

                        - Fais un double-clic sur HJTInstall.exe afin de lancer l'installation

                        - Clique sur Install ensuite sur I Accept

                        - Clique sur Do a scan system and save log file

                        - Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse.
                        0
                        1. J'ai aussi des problèmes avec ce antipsyware expert.

                          J'ai installé et exécuté High Jack et j'ai obtenu ce message d'analyse.

                          Pourriez-vous m'aider?
                          Merci.

                          Logfile of Trend Micro HijackThis v2.0.2
                          Scan saved at 11:08:46, on 2008-10-05
                          Platform: Windows Vista SP1 (WinNT 6.00.1905)
                          MSIE: Internet Explorer v7.00 (7.00.6001.18000)
                          Boot mode: Normal

                          Running processes:
                          C:\Windows\system32\Dwm.exe
                          C:\Windows\system32\taskeng.exe
                          C:\Program Files\Windows Defender\MSASCui.exe
                          C:\Windows\RtHDVCpl.exe
                          C:\hp\support\hpsysdrv.exe
                          C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
                          C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
                          C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
                          c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
                          C:\Program Files\Winamp\winampa.exe
                          C:\Windows\System32\rundll32.exe
                          C:\Program Files\Windows Sidebar\sidebar.exe
                          C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                          C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                          C:\Program Files\Windows Media Player\wmpnscfg.exe
                          C:\Windows\System32\rundll32.exe
                          C:\Windows\System32\rundll32.exe
                          C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
                          C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
                          C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
                          C:\hp\kbd\kbd.exe
                          C:\Windows\system32\wuauclt.exe
                          C:\Windows\explorer.exe
                          C:\Windows\system32\SearchFilterHost.exe
                          C:\Program Files\Mozilla Firefox\firefox.exe
                          C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.ca/?gws_rd=ssl
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                          R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
                          R3 - URLSearchHook: Yahoo! Barre d'outils - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
                          O1 - Hosts: ::1 localhost
                          O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
                          O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                          O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
                          O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
                          O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
                          O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
                          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                          O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                          O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
                          O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                          O3 - Toolbar: Yahoo! Barre d'outils - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
                          O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
                          O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                          O3 - Toolbar: (no name) - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - (no file)
                          O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
                          O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
                          O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                          O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
                          O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
                          O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
                          O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
                          O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                          O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
                          O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                          O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
                          O4 - HKLM\..\Run: [snpstd] C:\Windows\vsnpstd.exe
                          O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                          O4 - HKLM\..\Run: [MyWebSearch Plugin] rundll32 C:\PROGRA~1\MYWEBS~1\bar\3.bin\M3PLUGIN.DLL,UPF
                          O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
                          O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\3.bin\m3SrchMn.exe" /m=2 /w
                          O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
                          O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
                          O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
                          O4 - HKLM\..\Run: [MSServer] rundll32.exe C:\Windows\system32\ljJDUmLf.dll,#1
                          O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                          O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
                          O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                          O4 - HKCU\..\Run: [Orb] "C:\Program Files\Winamp Remote\bin\OrbTray.exe" /background
                          O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                          O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
                          O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\Roman\AppData\Local\Temp\khfFUNFv.dll,#1
                          O4 - HKCU\..\Run: [cmds] rundll32.exe C:\Users\Roman\AppData\Local\Temp\byXNgheD.dll,c
                          O4 - HKCU\..\Run: [BM47841ae5] Rundll32.exe "C:\Users\Roman\AppData\Local\Temp\fxweijli.dll",s
                          O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                          O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                          O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                          O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
                          O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
                          O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZCfox000
                          O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
                          O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
                          O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
                          O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
                          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
                          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
                          O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
                          O13 - Gopher Prefix:
                          O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
                          O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
                          O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - c:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
                          O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
                          O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
                          O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
                          O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
                          O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                          O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
                          O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
                          O23 - Service: LiveUpdate - Symantec Corporation - c:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
                          O23 - Service: LiveUpdate Notice - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
                          O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
                          O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
                          O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
                          0