Windows ne demarre pas... - Page 2

Précédent
  • 1
  • 2
arkelin Messages postés 16 Date d'inscription   Statut Membre Dernière intervention  
 
ca s'est arreté en plein milieu ... j'ai du redemarré l'ordi...
0
g3n-h@ckm@n Messages postés 14350 Statut Membre 948
 
fais-le en mode sans echec
0
arkelin Messages postés 16 Date d'inscription   Statut Membre Dernière intervention  
 
voila:
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Script | 3.0725 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

julia : Windows 7 Home Premium (64 bits)

Switchs : http://www.sosvirus.net/tutoriels/switchs-pre-script-t312.html

New restorepoint created

Script : 12:28:43

Boot : Safemode

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤ | Stopped Processes

(1020) -- explorer.exe
(288) -- ctfmon.exe
(1264) -- splwow64.exe

¤¤¤¤¤¤¤¤¤¤ | Deletion | Drivers | Services

Service : ESGIGUARD Not actif
Service : ASWFSBLK Not actif
Service : ASWMONFLT Not actif
Service : ASWRDR Not actif
Service : ASWRVRT Not actif
Service : ASWSNX Not actif
Service : ASWSP Not actif
Service : ASWVMM Not actif
Service : MFEAPFK Not actif
Service : MFEAVFK Not actif
Service : MFEAVFK01 Not actif
Service : MFEAVFK02 Not actif
Service : MFEFIREK Not actif
Service : MFEFIREK01 Not actif
Service : MFEHIDK Not actif
Service : MFEHIDK01 Not actif
Service : MFERKDET Not actif
Service : MFEWFPK Not actif

Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWFSBLK]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWFSBLK]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWFSBLK]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWMONFLT]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWMONFLT]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWMONFLT]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWRDR]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWRDR]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWRDR]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWRVRT]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWRVRT]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWRVRT]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWSNX]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWSNX]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWSNX]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWSP]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWSP]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWSP]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_ASWVMM]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_ASWVMM]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_ASWVMM]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEAPFK]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEAPFK]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEAPFK]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEAVFK]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEAVFK]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEAVFK]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEAVFK01]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEAVFK01]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEAVFK01]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEAVFK02]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEAVFK02]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEAVFK02]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEFIREK]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEFIREK]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEFIREK]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEFIREK01]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEFIREK01]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEFIREK01]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEHIDK]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEHIDK]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEHIDK]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEHIDK01]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEHIDK01]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEHIDK01]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFERKDET]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFERKDET]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFERKDET]
Deleted : [HKLM\..\ControlSet001\..\Root\LEGACY_MFEWFPK]
Deleted : [HKLM\..\ControlSet002\..\Root\LEGACY_MFEWFPK]
Deleted : [HKLM\..\CurrentControlSet\..\Root\LEGACY_MFEWFPK]

¤

¤¤¤¤¤¤¤¤¤¤ | Registry Deletions

Value Deleted : [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:
Value Deleted : [HKLM\SOFTWARE\wow6432Node\Microsoft\Windows\CurrentVersion\Run]:
Key Deleted : HKU\S-1-5-21-2881734339-2456129866-1708820037-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{46B7193C-011C-4F57-BA58-A1499542093E}
Key Deleted : HKU\S-1-5-21-2881734339-2456129866-1708820037-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{0972B098-DEE9-4279-AC7E-4BAAA029102D}
Key Deleted : HKU\S-1-5-21-2881734339-2456129866-1708820037-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{49C9FECC-02EE-49D9-8171-F548577E7ACD}
Key Deleted : HKU\S-1-5-21-2881734339-2456129866-1708820037-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{0972B098-DEE9-4279-AC7E-4BAAA029102D}
Key Deleted : HKU\S-1-5-21-2881734339-2456129866-1708820037-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{49C9FECC-02EE-49D9-8171-F548577E7ACD}
Key Deleted : HKU\S-1-5-21-2881734339-2456129866-1708820037-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AC42E1C6-2D4C-49c7-947C-1BA3D7E309FC}
Key Deleted : HKLM\Software\NoRemove'Microsoft'
Key Deleted : HKLM\Software\Wow6432Node\NoRemove'Microsoft'
Value Deleted : [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]:TCP Query User{AF670227-AD2A-400F-87AC-0B2DA48A4CD8}C:\users\julia\appdata\roaming\cacaoweb\cacaoweb.exe
Value Deleted : [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules]:UDP Query User{FD321DC7-ED02-4F9F-8D08-6ED9B194E0D0}C:\users\julia\appdata\roaming\cacaoweb\cacaoweb.exe

¤

Folder Moved to quarantine successfully : |D| - C:\Users\julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
Folder Moved to quarantine successfully : |D| - C:\965220b42de6065eb03b1d62c6429b
Folder Moved to quarantine successfully : |D| - C:\8864e2d16db4b5ffb4
C:\Users\Public\Desktop\Choix de navigateur .lnk : Not Found !
File Moved to quarantine successfully : |AH| - C:\Users\julia\Downloads\~$c1 (1).docx
File Moved to quarantine successfully : |A| - C:\Users\julia\AppData\Roaming\AltShell.ini
File Moved to quarantine successfully : |ASH| - C:\ProgramData\1pb78m8n6he1l1565b3k36w7o7of8ksb88y53s63tpqg0vl
File Moved to quarantine successfully : |ASH| - C:\Users\julia\AppData\Local\1pb78m8n6he1l1565b3k36w7o7of8ksb88y53s63tpqg0vl
File Moved to quarantine successfully : |A| - C:\Windows\System32\Tasks\CreateChoiceProcessTask
File Moved to quarantine successfully : |A| - C:\Windows\System32\Tasks\{A842CA6A-6B50-4B9C-A7B8-0584F8E9A7D1}
File Moved to quarantine successfully : |A| - C:\Windows\System32\Tasks\{5FBEB426-5688-414F-A2D9-A614DDF089C8}
File Moved to quarantine successfully : |A| - C:\Windows\System32\Tasks\{4621167F-625D-4C03-96A5-743CA0691C8F}
File Moved to quarantine successfully : |A| - C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar

¤¤¤¤¤¤¤¤¤¤ | MBR

Windows Version: Windows 7 Home Premium Edition
Windows Information: Service Pack 1 (build 7601), 64-bit
Base Board Manufacturer: Acer
BIOS Manufacturer: Phoenix Technologies LTD
System Manufacturer: Acer
System Product Name: Aspire 7736
Logical Drives Mask: 0x0000000c

Analysis of file "C:\Pre_Scan\MBR.bin":
Windows 2008 MBR code detected

64 bits Not supported by MBR.exe , Dump : C:\Pre_Scan\MBR.Bin

¤

¤¤¤¤¤¤¤¤¤¤ | Disk cleaning

FreeSpace : 120637

Cleaning disk...

FreeSpace : 120608

¤

¤¤¤¤¤¤¤¤¤¤ ( EOF ) ¤¤¤¤¤¤¤¤¤¤ | End : 12:33:00
0
g3n-h@ckm@n Messages postés 14350 Statut Membre 948
 
bon maintenant tu n'as pas d'antivirus , il faut en installer un
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
arkelin Messages postés 16 Date d'inscription   Statut Membre Dernière intervention  
 
avast free irait? Je l'avais viré au debut des manip
0
g3n-h@ckm@n Messages postés 14350 Statut Membre 948
 
oui j'ai vu :) oui instale avast 8
0
arkelin Messages postés 16 Date d'inscription   Statut Membre Dernière intervention  
 
Ca y est...
0
arkelin Messages postés 16 Date d'inscription   Statut Membre Dernière intervention  
 
je vire tous les programmes?
0
g3n-h@ckm@n Messages postés 14350 Statut Membre 948
 
?
0
arkelin Messages postés 16 Date d'inscription   Statut Membre Dernière intervention  
 
ceux que tu m'as fait installer!!! tout al'air de fonctionner correctement en tout cas. Mais j'attends tes instructions s'il y en a!
0
g3n-h@ckm@n Messages postés 14350 Statut Membre 948
 
fais le menage

https://forums-fec.be/entraide/viewtopic.php?f=11&t=229
0
Précédent
  • 1
  • 2