PC lent qui affiche trop de message d'erreurs - Page 5

Précédent
  • 1
  • 2
  • 3
  • 4
  • 5
  1. gen-hackman
     
    salut j'ai pas eu l'alerte comme quoi tu avais repondu :S

    ▶ Relance List_Kill'em,avec le raccourci sur ton bureau.

    mais cette fois-ci :

    ▶ choisis l'Option Clean

    ▶▶▶ Ne clique qu'une seule fois sur le bouton !!

    laisse travailler l'outil.

    en fin de scan la fenetre se ferme , et tu as un rapport du nom de Kill'em.txt sur ton bureau ,

    ▶ colle le contenu dans ta reponse

    ▶ envoie le zip Upload_ta-session_List_Kill'em.zip via cijoint.fr
    0
  2. ib02 Messages postés 263 Statut Membre 5
     
    Salut, les rapports comme vous me l'avez demandé:

    ¤¤¤¤¤¤¤¤¤¤ Kill'em by g3n-h@ckm@n 2.1.3.5 ¤¤¤¤¤¤¤¤¤¤

    User : Admin (Utilisateurs)
    Update on 16/02/2011 by g3n-h@ckm@n ::::: 04.00
    Start at: 03:23:38 | 06/01/2002

    Intel(R) Pentium(R) 4 CPU 2.93GHz
    Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
    Internet Explorer 8.0.6001.18702
    Windows Firewall Status : Enabled
    AV : Avira AntiVir PersonalEdition 6.38.0.225
    [ (!) Disabled | (!) Outdated ]
    AV : avast! Antivirus 5.0.83886969 [ Enabled | Updated ]

    C:\ -> Disque fixe local | 75,77 Go (46,14 Go free) [Syst] | NTFS
    D:\ -> Disque CD-ROM
    E:\ -> Disque fixe local | 73,27 Go (51,94 Go free) [Caisse] | NTFS
    F:\ -> Disque amovible
    I:\ -> Disque amovible
    J:\ -> Disque amovible
    K:\ -> Disque amovible

    Killed : PID 3700 'explorer.exe'

    ¤¤¤¤¤¤¤¤¤¤ Files/folders :

    ¤¤¤¤¤¤¤¤¤¤ Hosts ¤¤¤¤¤¤¤¤¤¤

    127.0.0.1 localhost

    ¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤

    ¤¤¤¤¤¤¤¤¤¤ Internet Explorer ¤¤¤¤¤¤¤¤¤¤

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    Local Page = C:\WINDOWS\system32\blank.htm
    Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    Start Page = https://www.google.com/?gws_rd=ssl
    Local Page = C:\WINDOWS\system32\blank.htm
    Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

    ¤¤¤¤¤¤¤¤¤¤ Security Center ¤¤¤¤¤¤¤¤¤¤

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    FirstRunDisabled = 1 (0x1)
    AntiVirusDisableNotify = 0 (0x0)
    FirewallDisableNotify = 0 (0x0)
    UpdatesDisableNotify = 0 (0x0)
    AntiVirusOverride = 0 (0x0)
    FirewallOverride = 0 (0x0)

    ¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤

    Ndisuio -> Start = 3
    EapHost -> Start = 2
    Ip6Fw -> Start = 2
    SharedAccess -> Start = 2
    wuauserv -> Start = 2
    wscsvc -> Start = 2

    ¤¤¤¤¤¤¤¤¤¤ Winlogon

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    AutoRestartShell = 1 (0x1)
    Shell = explorer.exe
    Userinit = C:\WINDOWS\System32\userinit.exe,
    VMapplet = rundll32 shell32,Control_RunDLL sysdm.cpl
    System =

    ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
    Disk Cleaned
    Prefetch cleaned
    ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

    FEATURE_BROWSER_EMULATION | svchost :
    ====================================

    Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
    Windows 5.1.2600 Disk: Maxtor_6Y160M0 rev.YAR511W0 -> Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-e

    device: opened successfully
    user: MBR read successfully

    Disk trace:
    called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll intelide.sys PCIIDEX.SYS
    1 ntkrnlpa!IofCallDriver[0x804EE130] -> \Device\Harddisk0\DR0[0x82D859C0]
    3 CLASSPNP[0xF8693FD7] -> ntkrnlpa!IofCallDriver[0x804EE130] -> \Device\Ide\IdeDeviceP1T0L0-e[0x82DD3030]
    kernel: MBR read successfully
    user & kernel MBR OK

    End of Scan : 3:23:55

    ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ( EOF ) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

    Lien pour l'autre rapport liste_kill'em:

    http://www.cijoint.fr/cjlink.php?file=cj201103/cijPZZKEW9.zip
    0
  3. gen-hackman
     
    re

    tu l'as fait combien de fois le mode clean ?
    0
  4. ib02 Messages postés 263 Statut Membre 5
     
    Une seule fois depuis la reprise, je dirais :-) C'est à dire, je viens de le faire suite à votre reponse du 28 février;
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. gen-hackman
     
    ah ben oui avast n'est pas desactivé
    0
  7. ib02 Messages postés 263 Statut Membre 5
     
    Donc je le refais?
    0
  8. ib02 Messages postés 263 Statut Membre 5
     
    Voici les rapports:
    http://www.cijoint.fr/cjlink.php?file=cj201103/cijeWDQWwM.txt

    http://www.cijoint.fr/cjlink.php?file=cj201103/cij1P1uN1W.txt
    0
  9. gen-hackman
     
    reessaie ceci si le fichier est toujours present
    0
Précédent
  • 1
  • 2
  • 3
  • 4
  • 5