Ecran blanc: Please wait while...

dallaire31 Messages postés 60 Statut Membre -  
 Utilisateur anonyme -
Bonjour,


Mes parents sont pris avec le virus de l'ecran blanc avec un message disant: Please wait while the connection beeing processing.

J'ai lu d'autre forum a ce sujet et voici le lien pour le rapport que m'a donner OTLPE:

https://pjjoint.malekal.com/files.php?id=OTL_20120724_p9o11o12i13g8

J'attend de vos nouvelles le plus vite possible.

Merci d'avance.
A voir également:

99 réponses

dallaire31 Messages postés 60 Statut Membre 1
 
Non, je n'ai pas compter de blague, où tu voit une blague ?!?!?!?

Tu m'as dit qu'il faudrait réparer l'amorce de windows, ensuite tu m'as demander si je savais graver un fichier image. Mais tu ne m'as jamais dit quel fichier je devais graver pour réparer l'amorce de windows.

Je ne sais pas comment réparer l'amorce de windows. Je suis tu supposé savoir ça?? Je ne suis pas nul en informatique, mais je ne suis pas non plus un expert.
1
Utilisateur anonyme
 
hello

il est encore en ligne celui-là ? ca fait chépa combien de temps que je l'ai pas vu..

colle ca en bas dans la cas blanche sous "custom scan/fixes" puis clique sur RUnFix et colle le rapport


:OTL
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found
IE - HKU\Famille_GLEM_ON_C\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\Famille_GLEM_ON_C\..\URLSearchHook: {85c1dd6e-1181-41f2-9ab2-79d5f46f491b} - Reg Error: Key error. File not found
FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
[2010/10/17 20:19:57 | 000,001,456 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\WebSearchober41601531.xml
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O4 - HKLM\..\Run: [ZZChw4ZycSefR9n] C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe (CJSC "Computing Forces")
O4 - HKU\Famille_GLEM_ON_C\..\Run: [ZZChw4ZycSefR9n] C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe (CJSC "Computing Forces")
O7 - HKU\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 1
O7 - HKU\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
O20 - HKLM Winlogon: Shell - (C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe) - C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe (CJSC "Computing Forces")
O20 - HKLM Winlogon: UserInit - (C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe) - C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe (CJSC "Computing Forces")
O20 - HKU\Famille_GLEM_ON_C Winlogon: Shell - (C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe) - C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe (CJSC "Computing Forces")
O20 - HKU\Famille_GLEM_ON_C Winlogon: UserInit - (C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe) - C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe (CJSC "Computing Forces")
[2012/05/15 12:11:30 | 000,276,992 | ---- | C] (CJSC "Computing Forces") -- C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe
[46 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2011/04/15 10:57:31 | 000,013,992 | -HS- | C] () -- C:\Documents and Settings\Famille GLEM\Local Settings\Application Data\1204144926
[2011/04/15 10:57:31 | 000,013,992 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\1204144926
[2010/04/02 12:15:01 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Famille GLEM\Local Settings\Application Data\prvlcl.dat
[2008/07/16 20:41:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\espionServerData


:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Shell"="explorer.exe"
"userinit"="C:\Windows\system32\userinit.exe,"


¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
0
dallaire31 Messages postés 60 Statut Membre 1
 
Merci!

Voici le rapport obtenu apres le RunFix:

========== OTL ==========
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\Famille_GLEM_ON_C\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\Famille_GLEM_ON_C\Software\Microsoft\Internet Explorer\URLSearchHooks\\{85c1dd6e-1181-41f2-9ab2-79d5f46f491b} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{85c1dd6e-1181-41f2-9ab2-79d5f46f491b}\ not found.
Prefs.js: "Web Search" removed from browser.search.defaultenginename
Prefs.js: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 removed from extensions.enabledItems
C:\Program Files\Mozilla Firefox\searchplugins\WebSearchober41601531.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53707962-6F74-2D53-2644-206D7942484F}\ deleted successfully.
C:\Program Files\Spybot - Search & Destroy\SDHelper.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\\Software\Microsoft\Windows\CurrentVersion\Run not found.
C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe moved successfully.
Registry value HKEY_USERS\Famille_GLEM_ON_C\\Software\Microsoft\Windows\CurrentVersion\Run\\ZZChw4ZycSefR9n deleted successfully.
File C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe not found.
Registry value HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDesktop deleted successfully.
Registry value HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableTaskMgr deleted successfully.
Registry value HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_USERS\LocalService_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_USERS\NetworkService_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_USERS\systemprofile_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\LocalService_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\NetworkService_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\systemprofile_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\LocalService_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\NetworkService_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_USERS\systemprofile_ON_C\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe deleted successfully.
File C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit:C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe deleted successfully.
File C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe not found.
Registry value HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe deleted successfully.
File C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe not found.
Registry value HKEY_USERS\Famille_GLEM_ON_C\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit:C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe deleted successfully.
File C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe not found.
File C:\Documents and Settings\Famille GLEM\Application Data\BSI.bund.exe not found.
C:\WINDOWS\000001_.tmp deleted successfully.
C:\WINDOWS\002759_.tmp deleted successfully.
C:\WINDOWS\DUMP41bc.tmp deleted successfully.
C:\WINDOWS\DUMP467e.tmp deleted successfully.
C:\WINDOWS\DUMP46ad.tmp deleted successfully.
C:\WINDOWS\DUMP4769.tmp deleted successfully.
C:\WINDOWS\DUMP476a.tmp deleted successfully.
C:\WINDOWS\DUMP476b.tmp deleted successfully.
C:\WINDOWS\DUMP47a7.tmp deleted successfully.
C:\WINDOWS\DUMP4815.tmp deleted successfully.
C:\WINDOWS\DUMP4844.tmp deleted successfully.
C:\WINDOWS\DUMP4892.tmp deleted successfully.
C:\WINDOWS\DUMP498c.tmp deleted successfully.
C:\WINDOWS\DUMP49bb.tmp deleted successfully.
C:\WINDOWS\DUMP4a57.tmp deleted successfully.
C:\WINDOWS\DUMP4ac4.tmp deleted successfully.
C:\WINDOWS\DUMP52c3.tmp deleted successfully.
C:\WINDOWS\DUMP53ec.tmp deleted successfully.
C:\WINDOWS\DUMP54d6.tmp deleted successfully.
C:\WINDOWS\DUMP5515.tmp deleted successfully.
C:\WINDOWS\DUMP5563.tmp deleted successfully.
C:\WINDOWS\DUMP56ab.tmp deleted successfully.
C:\WINDOWS\DUMP56ca.tmp deleted successfully.
C:\WINDOWS\DUMP5709.tmp deleted successfully.
C:\WINDOWS\DUMP5767.tmp deleted successfully.
C:\WINDOWS\DUMP5bbc.tmp deleted successfully.
C:\WINDOWS\DUMP5d91.tmp deleted successfully.
C:\WINDOWS\DUMP5eba.tmp deleted successfully.
C:\WINDOWS\DUMP5f94.tmp deleted successfully.
C:\WINDOWS\DUMP5fb4.tmp deleted successfully.
C:\WINDOWS\DUMP5fd3.tmp deleted successfully.
C:\WINDOWS\DUMP5ff2.tmp deleted successfully.
C:\WINDOWS\DUMP6002.tmp deleted successfully.
C:\WINDOWS\DUMP605f.tmp deleted successfully.
C:\WINDOWS\DUMP60ae.tmp deleted successfully.
C:\WINDOWS\DUMP60bd.tmp deleted successfully.
C:\WINDOWS\DUMP60fc.tmp deleted successfully.
C:\WINDOWS\DUMP61b7.tmp deleted successfully.
C:\WINDOWS\DUMP633e.tmp deleted successfully.
C:\WINDOWS\DUMP6409.tmp deleted successfully.
C:\WINDOWS\DUMP6dae.tmp deleted successfully.
C:\WINDOWS\DUMP7148.tmp deleted successfully.
C:\WINDOWS\DUMP7a8f.tmp deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
C:\Documents and Settings\Famille GLEM\Local Settings\Application Data\1204144926 moved successfully.
C:\Documents and Settings\All Users\Application Data\1204144926 moved successfully.
C:\Documents and Settings\Famille GLEM\Local Settings\Application Data\prvlcl.dat moved successfully.
C:\Documents and Settings\All Users\Application Data\espionServerData folder moved successfully.
========== REGISTRY ==========
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\"Shell"|"explorer.exe" /E : value set successfully!
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\"userinit"|"C:\Windows\system32\userinit.exe," /E : value set successfully!

OTLPE by OldTimer - Version 3.1.48.0 log created on 07242012_133223




Je vais redemarrer l'ordi et faire un petit menage pour les malwares et adwares et je vais mettre a jour windows et tous ce qui doit etre mis a jours.

Es-ce qu'il y a autre chose d'important que je dois faire absolument?
0
Utilisateur anonyme
 
oui ne rien faire d'autre et me suivre

demarre ton pc normalement puis

Attention : cet outil peut etre détecté à tort comme virus

tous les processus "non vitaux de windows" vont être coupés , enregistre ton travail.

Désactive toutes tes protections si possible , antivirus , sandbox , etc....

telecharge et enregistre Pre_Scan sur ton bureau :

http://forums-fec.be/gen-hackman/Pre_Scan.exe
http://general-changelog-team.fr/fr/downloads/viewdownload/41-outils-de-gen-hackman/52-pre-scan

Avertissement :Il y aura une extinction du bureau pendant le scan --> pas de panique.

une fois telechargé lance-le , laisse faire le scan jusqu'à l'apparition de "Pre_scan_la_date_et_l'heure.txt" sur le bureau.

si l'outil est relancé plusieurs fois , il te proposera un menu et qu'aucune option n'est demandée, lance l'option "Kill"

si l'outil est bloqué par l'infection utilise cette version avec extension .pif :

http://forums-fec.be/gen-hackman/Pre_Scan.pif

si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"

Il se peut qu'une multitude de fenêtres noires clignotent , laisse-le travailler

Poste Pre_Scan_la_date_et_l'heure.txt qui apparaitra sur le bureau en fin de scan


NE LE POSTE PAS SUR LE FORUM !!! (il est trop long)

Heberge le rapport sur http://pjjoint.malekal.com puis donne le lien obtenu en echange sur le forum où tu te fais aider

0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
dallaire31 Messages postés 60 Statut Membre 1
 
Premièrement, je n'ai aucun icône de visible sur mon bureau.

Deuxièmement, pre_scan fige vers la fin a MBR control ce qui fait que mon ordi fige aussi et je ne suis plus capable de rien faire. Cela arrive lorsqu'une fenêtre de commande DOS ouvre pour MBR control. J'ai essayer pre_scan.pif, mais ça n'a rien changé.

J'ai arrêter pourtant tous ce qui se rapportait a AVAST.
0
Utilisateur anonyme
 
ok fournis le rapport qui est dans c:\hébergé comme indiqué stp
0
dallaire31 Messages postés 60 Statut Membre 1
 
voici le lien pour le rapport que Pre_scan a donné:

https://pjjoint.malekal.com/files.php?id=20120726_u7e15n10z14e14
0
Utilisateur anonyme
 
ok j'ai trouvé la bête

telecharge HDDfix :

http://forums-fec.be/gen-hackman/HDDFix.exe

lance-le , clic sur listing et heberge le rapport qui se trouvera sur ton bureau ici :

https://www.cjoint.com/ puis donne lien obtenu pour le consulter
0
dallaire31 Messages postés 60 Statut Membre 1
 
Voici le lien pour le rapport de HDDfix:

https://www.cjoint.com/?BGArMR5vmhT
0
Utilisateur anonyme
 
re

relance hddfix , puis clique "Repair"

pûis clique sur partition active

à Disk number tu réponds :

0


à partition number tu mets 1

0
dallaire31 Messages postés 60 Statut Membre 1
 
Ok c'est fait! et ensuite
0
Utilisateur anonyme
 
refais listing voir ?
0
dallaire31 Messages postés 60 Statut Membre 1
 
Voici le lien du rapport de HDDfix:

https://www.cjoint.com/?BGCbi3rB7PF
0
Utilisateur anonyme
 
ok tu as redemarré le pc entre temps ?
0
dallaire31 Messages postés 60 Statut Membre 1
 
Entre le premier listing et celui la... oui. Parce que ce n'est pas mon ordi et je n'ai qu'un câble d'alimentation. Donc, je dois arrêter l'ordi infecté pour pourvoir utilisé mon ordi. Cela est un problème???
0
Utilisateur anonyme
 
non je voulais dire entre le moment ou tu as executé ca :

https://forums.commentcamarche.net/forum/affich-25661522-ecran-blanc-please-wait-while#9

et maintenant
0
dallaire31 Messages postés 60 Statut Membre 1
 
Non je n'est pas redémarré après avoir fait REPAIR.

Es-ce qu'il faut que je redémarre??
0
Utilisateur anonyme
 
oui
0
dallaire31 Messages postés 60 Statut Membre 1
 
J'ai redémarré l'ordi.

Qu'es-ce qu'il faut faire ensuite??
0
Utilisateur anonyme
 
refais-moi un listing stp histoire d'etre sûr que la partition qui doit etre active est bien restée active car si on vire la bete et qu'elle a repris le controle de ton disque dur , ton pc demarrera plus
0
dallaire31 Messages postés 60 Statut Membre 1
 
voici le rapport du listing:

https://www.cjoint.com/?BGCtdzTIlDK

Qu'es-ce qu'on fait ensuite?
0