ENCORE DES FENETRE POP-UP

Bonjour, et ReBonjour, a se qui mon aidé il y a 4-5 jour sa marche bien mieu maitenant MAIS g toujour 1 fenétre pop-up qui souvre toute les 25-30 min a peuprer le nom c "apartementjackpot" voila donc si kelkun pouvai m'aider . . . . . encore.
La derniére foi c chiquitine29 et ^^marie^^ qui mon aider donc voila aider moi svp
Configuration: Windows Vista
Internet Explorer 7.0

62 réponses

Résumé de la discussion

La problématique concerne des pop-ups récurrents portant le nom 'apartementjackpot' sur un PC sous Windows Vista avec Internet Explorer 7.0, malgré des tentatives de nettoyage déjà effectuées. Plusieurs solutions préconisent des outils de détection et de suppression d'adware, notamment GenProc et ComboFix, puis l'analyse des rapports obtenus et leur partage pour diagnostic. D'autres propositions suggèrent l'examen des résidus d'adware comme Navipromo et l'utilisation d'outils en ligne ou de rapports antivirus pour triage, y compris des analyses via VirusTotal. Pour autant, certains guides recommandent de sauvegarder les rapports et de tester les résultats sur une session distincte avant toute modification majeure du système afin d'éviter toute perte de données.

Bobot (l’IA à votre service)
  1. Contributeur
    Si ces fichiers n'ont pas été détectés, je te suggère de les soumettre dans un premier temps ici http://secubox.gateweb.org/mad.php

    Ouvre le blocnote de windows puis copie-colle dedans ce qui est en gras juste ci-dessous (Les deux lignes et rien d'autre)

    fyrevoyrkv
    qcurch


    Puis dans le blocnote, vas dans fichier/enregistrer sous :

    Appelle-le NavScript.txt
    Enregistre-le dans C:\program files\Navilog1 (C'est impératif)

    Double-clique sur le raccourci Navilog1 présent sur ton bureau.
    Laisse toi guider et patiente.
    Le Fix va automatiquement démarrer sans passer par le menu principal.

    Le fix va t'informer qu'il va alors redémarrer ton PC
    Ferme toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
    Appuie sur une touche comme demandé.
    (si ton Pc ne redémarre pas automatiquement, fais-le toi-même)
    Au redémarrage de ton PC, choisis ta session habituelle si nécessaire.
    Patiente jusqu'au message :
    *** Nettoyage Termine le ..... ***
    Le blocnote va s'ouvrir.
    Sauvegarde le rapport de manière à le retrouver
    Ton bureau va réapparaitre.

    Poste le rapport Cleannavi.txt
    3
    1. Contributeur
      Bonjour,

      télécharge GenProc http://www.alt-shift-return.org/Info/Fichiers/GenProc.zip sur ton bureau

      dézippe le dossier, double-clique sur GenProc.bat [img]http://forum.telecharger.01net.com/forum/[/img] et poste le contenu du rapport qui s'ouvre

      Aide en images : http://www.alt-shift-return.org/Info/GenProc-HowTo.html
      1
      1. voila le raport

        GenProc 2.119 [1] 15/10/2008 - Windows Vista : Aucune infection caractéristique trouvée .

        Merci de poster un rapport Nod32 https://www.eset.com/
        (coche toutes les cases à chaque fois)
        A la fin, colle le rapport : C:\Program Files\EsetOnlineScanner\log.txt
        0
        1. Contributeur
          OK, fais le scan en ligne proposé
          1
          1. alor g annalysé mon pc et il a trouver un truc que g suprimmé comme sa cété une music infecter mé l'anti-virus la pa détecter je fé koi maitenant??
            0
            1. voila le détail du rapport

              "a variant of WMA/TrojanDownloader.GetCodec.gen trojan"
              C:\User\gaetan\music\divers\greg edmonson - greatest hits.mp3

              donc je sui aller dan ma music g trouver cette chanson et je les supprimé c pa sufisan, si ??????
              0
              1. plus personne me répond ! ! ! ! ! ! ! ! ! ! !
                pfffff encore -_-'
                0
                1. Contributeur
                  il me faut beaucoup de temps pour traduire ton dialecte SMS, pardonne-moi

                  et sinon le problème, c'est réglé ?
                  -1
                  1. -_-' (profon soupir) . . . . lOol
                    enfin bref sa continu toujour j'ai toujour cette fenétre pop-up qui s'ouvre et qui et bloquer par l'anti-virus donc cété pas sa voila, mais la je refet une analyse pour voir si sa la vraiment supprimé. Donc voila j'attend la fin du scan !
                    0
                    1. Contributeur
                      Poste un rapport HijackThis plutot http://forum.telecharger.01net.com/forum/high-tech/PRODUITS/Questions-techniques/hijackthis-version-install-sujet_199100_1.htm
                      1
                      1. voila le rapport

                        Logfile of Trend Micro HijackThis v2.0.2
                        Scan saved at 21:04:39, on 16/10/2008
                        Platform: Windows Vista SP1 (WinNT 6.00.1905)
                        MSIE: Internet Explorer v7.00 (7.00.6001.18000)
                        Boot mode: Normal

                        Running processes:
                        C:\Windows\system32\taskeng.exe
                        C:\Windows\system32\Dwm.exe
                        C:\Windows\Explorer.EXE
                        C:\Windows\RtHDVCpl.exe
                        C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
                        C:\Program Files\Common Files\Real\Update_OB\realsched.exe
                        C:\Program Files\Winamp\winampa.exe
                        C:\Windows\System32\rundll32.exe
                        C:\Program Files\Micro Application\Securite Internet 2007\avp.exe
                        C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
                        C:\Program Files\Windows Sidebar\sidebar.exe
                        C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
                        C:\Program Files\CursorXP\CursorXP.exe
                        C:\Windows\ehome\ehtray.exe
                        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                        C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
                        C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                        C:\Program Files\Winamp Remote\bin\OrbTray.exe
                        C:\Program Files\ppcbooster\ppcbooster.exe
                        C:\Windows\System32\rundll32.exe
                        C:\Windows\ehome\ehmsas.exe
                        C:\Program Files\Windows Sidebar\sidebar.exe
                        C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
                        C:\Windows\system32\conime.exe
                        C:\Windows\SYSTEM32\WISPTIS.EXE
                        C:\Program Files\Winamp\winamp.exe
                        C:\Program Files\Winamp\elevator.exe
                        C:\Windows\system32\SearchFilterHost.exe
                        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                        O1 - Hosts: ::1 localhost
                        O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                        O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
                        O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
                        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                        O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
                        O3 - Toolbar: Barre d'outils MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll
                        O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
                        O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
                        O4 - HKLM\..\Run: [Skytel] Skytel.exe
                        O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
                        O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
                        O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
                        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                        O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
                        O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
                        O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
                        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
                        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
                        O4 - HKLM\..\Run: [AVP] "C:\Program Files\Micro Application\Securite Internet 2007\avp.exe"
                        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
                        O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                        O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
                        O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
                        O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                        O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                        O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
                        O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
                        O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                        O4 - HKCU\..\Run: [Orb] "C:\Program Files\Winamp Remote\bin\OrbTray.exe" /background
                        O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
                        O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe
                        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                        O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                        O4 - Startup: ppcbooster.lnk = C:\Program Files\ppcbooster\ppcbooster.exe
                        O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
                        O8 - Extra context menu item: Ajouter à Anti-Banner - C:\Program Files\Micro Application\Securite Internet 2007\ie_banner_deny.htm
                        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
                        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
                        O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Micro Application\Securite Internet 2007\scieplugin.dll
                        O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
                        O13 - Gopher Prefix:
                        O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
                        O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - https://www.eset.com/
                        O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
                        O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                        O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                        O20 - AppInit_DLLs: C:\PROGRA~1\MICROA~1\SECURI~1\adialhk.dll,C:\PROGRA~1\MICROA~1\SECURI~1\r3hook.dll
                        O23 - Service: Sécurité Internet 2007 (AVP) - Micro Application - C:\Program Files\Micro Application\Securite Internet 2007\avp.exe
                        O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
                        O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
                        O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
                        O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
                        0
                        1. Contributeur
                          Ouvre le dossier GenProc, puis le sous-dossier "outil". Double clique sur le fichier "Uninstall.txt" et poste son contenu.
                          1
                          1. heu y a pas le fichier "Uninstall.txt" c'est "Uninstall.bat", c'est pareil,c'est sa ????
                            0
                            1. Contributeur
                              si tu doubles cliques sur ce fichier Uninstall.bat, tu n'obtiens pas un fichier Uninstall.txt ensuite ?
                              -1
                              1. non sa affiche une fenétre noir des truc défile et pui plu rien elle se ferme
                                0
                                1. OUPS je vien de le voir il était juste en desou (je c'est c débile) :) javé pa vu :D hihi . . . voila le contenu

                                  "Adobe Flash Player 9 ActiveX"
                                  "Adobe Flash Player ActiveX"
                                  "Adobe Reader 8"
                                  "Adobe Reader 8.1.1 - Français"
                                  "Adobe Shockwave Player"
                                  "Age of Empires III - The WarChiefs"
                                  "Age of Empires III - The WarChiefs"
                                  "Age of Empires III"
                                  "Age of Empires III"
                                  "Alexander"
                                  "Arcanum"
                                  "ArcSoft MediaConverter"
                                  "Assistant de connexion Windows Live"
                                  "Barre d'outils MSN"
                                  "Blitzkrieg"
                                  "Browser Address Error Redirector"
                                  "Celestia 1.5.1"
                                  "CleanUp!"
                                  "Cossacks - The Art of War"
                                  "Creator 9"
                                  "CursorXP"
                                  "Dealio Toolbar 3.4"
                                  "Deus Ex - Invisible War"
                                  "Diablo II"
                                  "Disciples: Sacred Lands"
                                  "Dungeon Lords"
                                  "EAX Unified"
                                  "Firefox"
                                  "Flash Player 9 Internet Explorer"
                                  "Free Mp3 Wma Converter V 1.7.3"
                                  "GameSpy Arcade"
                                  "Giants"
                                  "Glest 3.1.2"
                                  "Google BAE"
                                  "Google Toolbar for Internet Explorer"
                                  "Google Toolbar for Internet Explorer"
                                  "GoogleToolbar"
                                  "Guide routier France"
                                  "GUILD WARS"
                                  "HDReg France"
                                  "Heroes of Might & Magic V: Hammers of Fate"
                                  "Heroes of Might and Magic V"
                                  "Heroes of Might and Magic® IV"
                                  "HijackThis 2.0.2"
                                  "Infocentre Rev. 2.0"
                                  "Jarkanoid 3"
                                  "Java(TM) 6 Update 7"
                                  "LimeWire 4.16.7"
                                  "Metaboli"
                                  "Metal Wrath"
                                  "Microsoft .NET Framework 1.1 Hotfix (KB929729)"
                                  "Microsoft .NET Framework 1.1"
                                  "Microsoft .NET Framework 1.1"
                                  "Microsoft Silverlight"
                                  "Morrowind"
                                  "MS Access 97 SP2"
                                  "MSXML 4.0 SP2 (KB936181)"
                                  "MSXML 4.0 SP2 (KB941833)"
                                  "MSXML4 Parser"
                                  "Nero 7 Premium"
                                  "Neverwinter Nights 2"
                                  "NVIDIA Drivers"
                                  "OpenAL"
                                  "OpenOffice.org Installer 1.0"
                                  "Packard Bell Demo"
                                  "Packard Bell ImageWriter"
                                  "Packard Bell LCD Test"
                                  "Packard Bell Updator"
                                  "PPC Booster"
                                  "Prism Video Converter"
                                  "Purebreaker 2 version 1.0"
                                  "QuickTime"
                                  "RealPlayer"
                                  "Realtek HD Audio V6.0.1.5413"
                                  "Realtek High Definition Audio Driver"
                                  "RON Tool Bannerstyles15"
                                  "Roxio Creator 9 LE"
                                  "Search Settings 1.2"
                                  "Second Sight"
                                  "Security Update for CAPICOM (KB931906)"
                                  "Security Update for CAPICOM (KB931906)"
                                  "SetUp My PC"
                                  "Shockwave player 10"
                                  "SimCity 3000 World Edition"
                                  "Skype 2.5.2.151"
                                  "Skype™ 3.8"
                                  "Spellforce - Diamond Edition"
                                  "Sécurité Internet 2007"
                                  "Sécurité Internet 2007"
                                  "SweetIM for Messenger 2.5"
                                  "SweetIM Toolbar for Internet Explorer 3.1"
                                  "Switch"
                                  "TES Construction Set"
                                  "TrackMania Nations ESWC 1.7.9"
                                  "Video NVIDIA v158.34"
                                  "Warcraft III"
                                  "Warzone 2100"
                                  "Winamp Remote"
                                  "Winamp Toolbar for Firefox"
                                  "Winamp Toolbar for Internet Explorer"
                                  "Winamp"
                                  "Windows Live installer"
                                  "Windows Live Messenger"
                                  "WinRAR Archiveur"
                                  "Worms 4 Mayhem"
                                  "Xfire (remove only)"
                                  hex(2):45,00,53,00,45,00,54,00,20,00,4f,00,6e,00,6c,00,69,00,6e,\
                                  0
                                  1. Contributeur
                                    Le "Blitzkrieg", ça me rappelle un téléfilm allemand, "hass in kopf", l'as-tu vu ? c'est assez spécial.

                                    Pour en revenir à ton problème : Télécharge Toolbar-S&D (Team IDN) sur le Bureau.
                                    https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2 & Installe simplement le programme en exécutant le fichier téléchargé. double-clique sur son raccourci situé sur le Bureau. Tape sur "2" puis valide en appuyant sur "Entrée". Ne ferme pas la fenetre lors de la suppression.

                                    Lorsque terminé, poste le contenu du rapport C:\TB.txt
                                    1
                                    1. ok "Blitzkrieg" c un jeu de stratégie en tem réel sur la 2éme guerre mondiale enfin bref je fé sa et jenvoi le rapport
                                      0
                                      • 1
                                      • 2
                                      • 3
                                      • 4