Gros beug et pc lent - Page 2

  1. tu dois avoir un bout de rapport dans c:\ heberge-leet donne le lien
    0
    1. Je ne trouve pas heberge-leet.
      0
      1. lol ^^

        tu dois avoir un bout de rapport C:\Pre_scan.txt

        héberge-le et donne le lien obtenu
        0
        1. Salut, me revoila aprés 3 semaine d'absence. =)

          Je n'est pas de fichier C:\Pre_scan.txt

          :/
          0
          1. hello refais suppression avec usbfix et poste le rapport
            0
            1. ############################## | UsbFix V 7.094 | [Suppression]

              Utilisateur: deb (Administrateur) # PC-DE-DEB
              Mis à jour le 20/07/2012 par El Desaparecido
              Lancé à 23:18:00 | 25/08/2012

              Site Web: https://www.sosvirus.net/
              Forum: http://forum.eldesaparecido.com
              Fichier suspect ? : http://eldesaparecido.com/upload.php
              Contact: contact@eldesaparecido.com

              PC: PACKARD BELL BV (EasyNote MH36) (X86-based PC) # Desktop Computer
              CPU: Intel(R) Celeron(R) CPU 900 @ 2.20GHz (2194)
              RAM -> [Total : 2972 | Free : 1723]
              BIOS: PhoenixBIOS 4.0 Release 6.1
              BOOT: Normal boot

              OS: Microsoft® Windows Vista(TM) Édition Familiale Basique (6.0.6002 32-Bit) # Service Pack 2
              WB: Windows Internet Explorer 9.0.8112.16421

              SC: Security Center Service [Enabled]
              WU: Windows Update Service [Enabled]
              AV: Avira Desktop [(!) Disabled | Updated]
              FW: Windows FireWall Service [Enabled]

              C:\ (%systemdrive%) -> Disque fixe # 220 Go (143 Go libre(s) - 65%) [OS] # NTFS
              D:\ -> CD-ROM

              ################## | Processus Actif |

              C:\Windows\system32\csrss.exe (500)
              C:\Windows\system32\wininit.exe (548)
              C:\Windows\system32\csrss.exe (556)
              C:\Windows\system32\services.exe (592)
              C:\Windows\system32\lsass.exe (604)
              C:\Windows\system32\lsm.exe (612)
              C:\Windows\system32\winlogon.exe (640)
              C:\Windows\system32\svchost.exe (816)
              C:\Windows\system32\svchost.exe (888)
              C:\Windows\System32\svchost.exe (924)
              C:\Windows\System32\svchost.exe (1052)
              C:\Windows\system32\svchost.exe (1068)
              C:\Windows\system32\svchost.exe (1164)
              C:\Windows\system32\SLsvc.exe (1180)
              C:\Windows\system32\svchost.exe (1224)
              C:\Windows\system32\svchost.exe (1396)
              C:\Windows\System32\spoolsv.exe (1636)
              C:\Program Files\Avira\AntiVir Desktop\sched.exe (1692)
              C:\Windows\system32\Dwm.exe (1752)
              C:\Windows\Explorer.EXE (1764)
              C:\Windows\system32\svchost.exe (1792)
              C:\Windows\system32\taskeng.exe (1800)
              C:\Windows\System32\svchost.exe (480)
              C:\Program Files\Avira\AntiVir Desktop\avguard.exe (560)
              C:\Program Files\Packard Bell\Packard Bell Recovery Management\Service\ETService.exe (752)
              C:\Windows\system32\FsUsbExService.Exe (1540)
              C:\Windows\system32\lxddcoms.exe (1504)
              C:\Windows\system32\svchost.exe (2008)
              C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (2180)
              C:\Windows\system32\svchost.exe (2236)
              C:\Windows\System32\svchost.exe (2292)
              C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2384)
              C:\Windows\system32\SearchIndexer.exe (2432)
              C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (2484)
              C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2548)
              C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (2884)
              C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (3140)
              C:\Windows\System32\alg.exe (3252)
              C:\Windows\system32\taskeng.exe (3416)
              C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe (996)
              C:\Windows\System32\hkcmd.exe (1872)
              C:\Windows\System32\igfxpers.exe (2808)
              C:\Program Files\Lexmark 2500 Series\lxddmon.exe (2864)
              C:\Program Files\Lexmark 2500 Series\lxddamon.exe (2084)
              C:\Program Files\BearShare Applications\MediaBar\Datamngr\datamngrUI.exe (2836)
              C:\Windows\RtHDVCpl.exe (2332)
              C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe (2340)
              C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (2448)
              C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (2720)
              C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (1132)
              C:\Users\deb\AppData\Local\Akamai\netsession_win.exe (2904)
              C:\Program Files\McAfee Security Scan\3.0.207\SSScheduler.exe (3428)
              C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVH.EXE (3532)
              C:\Program Files\Windows Media Player\wmpnscfg.exe (3548)
              C:\Program Files\Windows Media Player\wmpnetwk.exe (3668)
              C:\Windows\system32\igfxsrvc.exe (2724)
              C:\Windows\system32\svchost.exe (2828)
              C:\Windows\system32\wbem\unsecapp.exe (2472)
              C:\Windows\system32\wbem\wmiprvse.exe (2612)
              C:\Users\deb\AppData\Local\Akamai\netsession_win.exe (1016)
              Q:\140061.fra\Office14\ONENOTEM.EXE (192)
              C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe (2152)
              C:\Program Files\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe (1964)
              C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (4292)
              C:\Program Files\Packard Bell\Packard Bell Recovery Management\NotificationCenter\Framework.NotificationCenter.exe (5976)
              C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (4540)
              C:\Windows\servicing\TrustedInstaller.exe (4760)
              C:\UsbFix\Go.exe (5720)
              C:\Windows\system32\wbem\wmiprvse.exe (5784)

              ################## | Processus Stoppés |

              Stoppé! C:\Windows\system32\SLsvc.exe (1180)
              Stoppé! C:\Windows\System32\spoolsv.exe (1636)
              Stoppé! C:\Program Files\Avira\AntiVir Desktop\sched.exe (1692)
              Stoppé! C:\Windows\Explorer.EXE (1764)
              Stoppé! C:\Windows\system32\taskeng.exe (1800)
              Stoppé! C:\Program Files\Avira\AntiVir Desktop\avguard.exe (560)
              Stoppé! C:\Program Files\Packard Bell\Packard Bell Recovery Management\Service\ETService.exe (752)
              Stoppé! C:\Windows\system32\FsUsbExService.Exe (1540)
              Stoppé! C:\Windows\system32\lxddcoms.exe (1504)
              Stoppé! C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (2180)
              Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2384)
              Stoppé! C:\Windows\system32\SearchIndexer.exe (2432)
              Stoppé! C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (2484)
              Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2548)
              Stoppé! C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (2884)
              Stoppé! C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (3140)
              Stoppé! C:\Windows\System32\alg.exe (3252)
              Stoppé! C:\Windows\system32\taskeng.exe (3416)
              Stoppé! C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe (996)
              Stoppé! C:\Windows\System32\hkcmd.exe (1872)
              Stoppé! C:\Windows\System32\igfxpers.exe (2808)
              Stoppé! C:\Program Files\Lexmark 2500 Series\lxddmon.exe (2864)
              Stoppé! C:\Program Files\Lexmark 2500 Series\lxddamon.exe (2084)
              Stoppé! C:\Program Files\BearShare Applications\MediaBar\Datamngr\datamngrUI.exe (2836)
              Stoppé! C:\Windows\RtHDVCpl.exe (2332)
              Stoppé! C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe (2340)
              Stoppé! C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (2448)
              Stoppé! C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (2720)
              Stoppé! C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (1132)
              Stoppé! C:\Users\deb\AppData\Local\Akamai\netsession_win.exe (2904)
              Stoppé! C:\Program Files\McAfee Security Scan\3.0.207\SSScheduler.exe (3428)
              Stoppé! C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVH.EXE (3532)
              Stoppé! C:\Program Files\Windows Media Player\wmpnscfg.exe (3548)
              Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (3668)
              Stoppé! C:\Windows\system32\igfxsrvc.exe (2724)
              Stoppé! C:\Users\deb\AppData\Local\Akamai\netsession_win.exe (1016)
              Stoppé! Q:\140061.fra\Office14\ONENOTEM.EXE (192)
              Stoppé! C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe (2152)
              Stoppé! C:\Program Files\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe (1964)
              Stoppé! C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (4292)
              Stoppé! C:\Program Files\Packard Bell\Packard Bell Recovery Management\NotificationCenter\Framework.NotificationCenter.exe (5976)
              Stoppé! C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (4540)
              Stoppé! C:\Windows\servicing\TrustedInstaller.exe (4760)

              ################## | Éléments infectieux |

              Supprimé! C:\$RECYCLE.BIN\S-1-5-21-4010412767-3807525827-3392870768-1000

              (!) Fichiers temporaires supprimés.

              ################## | Registre |

              Supprimé! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
              Supprimé! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives
              Supprimé! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives

              ################## | Mountpoints2 |

              ################## | Listing |

              [25/08/2012 - 23:20:14 | SHD ] C:\$RECYCLE.BIN
              [21/10/2009 - 19:46:43 | D ] C:\ACER
              [15/12/2010 - 23:15:25 | N | 2006] C:\aqua_bitmap.cpp
              [18/09/2006 - 23:43:36 | N | 24] C:\autoexec.bat
              [04/08/2012 - 01:37:59 | RAD ] C:\Autorun.inf
              [08/11/2009 - 15:56:06 | D ] C:\Boot
              [11/04/2009 - 08:36:36 | RASH | 333257] C:\bootmgr
              [09/01/2009 - 13:38:07 | N | 8192] C:\BOOTSECT.BAK
              [04/08/2012 - 03:06:16 | D ] C:\cequetuveux
              [04/08/2012 - 03:06:07 | N | 25990] C:\ComboFix.txt
              [18/09/2006 - 23:43:37 | N | 10] C:\config.sys
              [21/10/2009 - 19:44:15 | SHD ] C:\Documents and Settings
              [18/11/2009 - 21:26:41 | D ] C:\drivers
              [10/12/2009 - 01:38:46 | D ] C:\f7a12ff0f85ee1114d6e4e6d221ec70c
              [09/01/2009 - 05:52:21 | D ] C:\Intel
              [09/11/2009 - 16:01:03 | N | 0] C:\IO.SYS
              [18/11/2009 - 21:34:18 | D ] C:\logs
              [13/11/2009 - 16:43:48 | D ] C:\Microgaming
              [09/11/2009 - 16:01:03 | N | 0] C:\MSDOS.SYS
              [09/01/2009 - 06:02:24 | RD ] C:\MSOCache
              [25/08/2012 - 16:14:12 | ASH | 3430924288] C:\pagefile.sys
              [04/12/2009 - 01:12:14 | D ] C:\PerfLogs
              [04/08/2012 - 03:37:48 | D ] C:\Pre_Scan
              [25/08/2012 - 15:50:26 | D ] C:\Program Files
              [04/08/2012 - 03:07:22 | D ] C:\ProgramData
              [24/08/2010 - 14:59:36 | N | 91] C:\PS.log
              [04/08/2012 - 03:06:13 | D ] C:\Qoobox
              [09/01/2009 - 05:59:37 | N | 426] C:\RHDSetup.log
              [25/08/2012 - 15:43:57 | SHD ] C:\System Volume Information
              [12/09/2011 - 15:40:38 | D ] C:\Temp
              [25/08/2012 - 23:20:14 | D ] C:\UsbFix
              [25/08/2012 - 23:18:32 | A | 9829] C:\UsbFix.txt
              [04/08/2012 - 01:38:03 | N | 8142980] C:\UsbFix_Upload_Me_PC-DE-DEB.zip
              [21/10/2009 - 19:45:17 | D ] C:\Users
              [25/08/2012 - 15:37:04 | D ] C:\Windows

              ################## | Vaccin |

              C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)

              ################## | Upload |

              Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_PC-DE-DEB.zip
              http://eldesaparecido.com/upload.php
              Merci de votre contribution.

              ################## | E.O.F |
              0
              1. supprime pre_scan , retelecharge-le puis relance-le puis heberge le rapport qui sera sur ton bureau

                supprime aussi le dossier C:\Pre_Scan avant de le lancer

                http://forums-fec.be/gen-hackman/Pre_Scan.exe

                ¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
                0
                1. Toujours le meme probleme. Il a cessé de fonctionner lors du scan. :/
                  Il y a pas un autre moyen ? on peu passer par un autre logiciel non ?
                  0
                  1. non, pare feu et antivirus desactiver...
                    0
                    1. j'ai édité au dessus
                      0
                    2. Ok je vais suivre ce tuto.
                      0
                  2. Bon, quelques soucis me sont venus.

                    J'ai fais l'analyse avec Drweb en mode sans echec, l'analyse c'est bien déroulé mais a l'enregistrement du fichier, rien est apparu sur mon bureau (l'analyse était trop longue alors je suis parti en laissant l'analyse ce finir). J'ai donc recommencé une deuxieme fois en restant prés du pc, le fichier c'est bien enregistré sur le bureau mais je n'ai plus de connexion wifi, j'ai pour erreur Le service ou le groupe de dépendance n'a pas pu démarrer. J'ai suivi des tuto pour régler ce probleme mais rien y fais.

                    Que dois-je faire ?
                    0
                    1. le rapport :

                      c:\users\ta session\drWeb\CureIt.log

                      ton pc est bien demarré en mode normal ?
                      0
                      1. oui il est en mode normal...
                        0
                        1. ben j'attends toujours le rapport...
                          0
                          Précédent
                          • 1
                          • 2