Les programmes ne repondent pas help me - Page 2

Précédent
  • 1
  • 2
  1. micro
     
    et pour le premiere fiuché que je devait analysé sa ma dit
    0 bytes size received / Se ha recibido un archivo vacio
    celui la C:\Windows\System32\drivers\sptd.sys
    0
  2. micro
     
    excuse moi j ai pas compris la avec otl je refait run scan
    0
  3. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  4. micro
     
    voila en passant bonjour et passe une bonne journée et merci de t'occupé demon cas
    tien
    http://www.cijoint.fr/cjlink.php?file=cj200906/cijVWaNtar.txt
    0
  5. gen-hackman
     
    Double clic sur OTL.exe pour le lancer.

    Copie la liste qui se trouve en gras ci-dessous,

    et colle-la dans la zone sous Customs Scans/Fixes


    :OTL
    O33 - MountPoints2\{5f9de735-2ed6-11de-9097-001eec8a4e07}\Shell\AutoRun\command - "" = F:\husyu8n.exe -- File not found
    O33 - MountPoints2\{5f9de735-2ed6-11de-9097-001eec8a4e07}\Shell\open\Command - "" = F:\husyu8n.exe -- File not found
    O33 - MountPoints2\{7dab5bac-5450-11de-8d4f-001eec8a4e07}\Shell\AutoRun\command - "" = F:\start.exe -- File not found
    O33 - MountPoints2\{7dab5bac-5450-11de-8d4f-001eec8a4e07}\Shell\guadeloupe\command - "" = F:\start.exe -- File not found
    O33 - MountPoints2\{b7e46304-9632-11dd-87d4-001eec8a4e07}\Shell\Auto\command - "" = fun.xls.exe


    :commands
    [emptytemp]

    Clique sur RunFix pour lancer la suppression.

    Poste le rapport.

    ==========
    0
    1. micro
       
      donc voila
      ========== OTL ==========
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5f9de735-2ed6-11de-9097-001eec8a4e07}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5f9de735-2ed6-11de-9097-001eec8a4e07}\ not found.
      File F:\husyu8n.exe not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5f9de735-2ed6-11de-9097-001eec8a4e07}\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5f9de735-2ed6-11de-9097-001eec8a4e07}\ not found.
      File F:\husyu8n.exe not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7dab5bac-5450-11de-8d4f-001eec8a4e07}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7dab5bac-5450-11de-8d4f-001eec8a4e07}\ not found.
      File F:\start.exe not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7dab5bac-5450-11de-8d4f-001eec8a4e07}\ not found.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7dab5bac-5450-11de-8d4f-001eec8a4e07}\ not found.
      File F:\start.exe not found.
      Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b7e46304-9632-11dd-87d4-001eec8a4e07}\ deleted successfully.
      Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b7e46304-9632-11dd-87d4-001eec8a4e07}\ not found.
      File fun.xls.exe not found.
      ========== COMMANDS ==========
      User's Internet Explorer cache folder emptied.
      User's Temporary Internet Files folder emptied.
      Windows Temp folder emptied.
      Temp folders emptied.

      OTL by OldTimer - Version 2.1.1.0 log created on 06112009_124421
      0
  6. gen-hackman
     
    tu as un lecteur F:\ que tu n 'as pas branché pendant la desinfection ?
    0
    1. micro
       
      non enfaite c'était ma clé usb
      sinon il y a encore des problèmes je me demande d'où sa vient le problème du clavier et en plus des fois sa change les touche de place ou alors que la touche efface qui fonctionne au faite pas pas trouver de virus dans les analyse j-ai refait les mises a jours et c'est reparti il y a la mise a jours intempestive de sécurité pour microsoft XML core services 4.0 service pack 2 (KB954430)
      0
  7. gen-hackman
     
    relances rsit stp
    0
    1. micro
       
      tien voila monsieur
      http://www.cijoint.fr/cjlink.php?file=cj200906/cijseL0rH1.txt
      0
  8. gen-hackman
     
    ---> Désactive ton antivirus le temps de la manipulation car OTM est détecté comme une infection à tort.

    ---> Télécharge OTM (OldTimer) sur ton Bureau :

    ---> Double-clique sur OTM.exe afin de le lancer.

    ---> Copie (Ctrl+C) le texte suivant ci-dessous :



    :processes
    explorer.exe

    :services
    aineuulx

    :files
    C:\Windows\system32\reg.exe
    C:\Windows\system32\tmp.txt
    C:\Users\gaindja\AppData\Roaming\vlc(33)
    C:\Windows\system32\un2065.txt
    C:\Windows\system32\2065.txt

    :reg
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "msnmsgr"=-
    "ares"=-

    :commands
    [purity]
    [emptytemp]
    [start explorer]
    [reboot]



    ---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.

    ---> Clique maintenant sur le bouton MoveIt! puis ferme OTM

    Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
    Accepte en cliquant sur YES.

    ---> Poste le rapport situé dans ce dossier : C:\_OTM\MovedFiles\
    Le nom du rapport correspond au moment de sa création : date_heure.log
    0
    1. micro
       
      voila oula maintenant le pc blocka chaque fois je suis obliger de redemarer sa devien soulant merci a toi de m aider

      ========== PROCESSES ==========
      Process explorer.exe killed successfully.
      ========== SERVICES/DRIVERS ==========
      Service\Driver aineuulx not found.

      ========== FILES ==========
      File move failed. C:\Windows\system32\reg.exe scheduled to be moved on reboot.
      C:\Windows\system32\tmp.txt moved successfully.
      C:\Users\gaindja\AppData\Roaming\vlc(33) moved successfully.
      C:\Windows\system32\un2065.txt moved successfully.
      C:\Windows\system32\2065.txt moved successfully.
      ========== REGISTRY ==========
      Unable to delete registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}\\ .
      Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
      Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ares deleted successfully.
      ========== COMMANDS ==========
      File delete failed. C:\Users\gaindja\AppData\Local\Temp\etilqs_14v8Ov6uuroY43YuuwVR scheduled to be deleted on reboot.
      File delete failed. C:\Users\gaindja\AppData\Local\Temp\JET41D0.tmp scheduled to be deleted on reboot.
      File delete failed. C:\Users\gaindja\AppData\Local\Temp\MainFrame.Log.txt scheduled to be deleted on reboot.
      User's Temp folder emptied.
      User's Internet Explorer cache folder emptied.
      Windows Temp folder emptied.
      FireFox cache emptied.
      Temp folders emptied.
      Explorer started successfully

      OTM by OldTimer - Version 2.1.0.1 log created on 06112009_145745
      0
  9. gen-hackman
     
    regarde si tu peut supprimer ceci manuellement

    C:\Windows\system32\reg.exe
    0
    1. micro
       
      dsl je peu pas sa me dit il faut une autorisation je peu pas
      0
  10. gen-hackman
     
    demarrer / executer / puis tapes :

    cmd

    puis ok

    dans la fenetre noire tapes

    del /F /Q C:\Windows\system32\reg.exe

    puis entrée

    espace avant chaque "/"
    0
    1. micro
       
      dsl sa me fait acces refusé deja essayé" plein de fois je peu pas
      0
Précédent
  • 1
  • 2