Aller au contenu

gt1900

Membres
  • Compteur de contenus

    2
  • Inscription

  • Dernière visite

Tout ce qui a été posté par gt1900

  1. bonjour et merci pour ta reponse,mais j en doute, j ai fait l essai de demarrer sans le dd ...aucun bip n est apparu ... mais a voir quand meme si d autre idée,je suis preneur gt
  2. bonjour j ai le pc de mon fils qui a du mal a s allumer,avant le bios,il peut mettre entre 10 mn et 3h j entend le cd et disque dur qui claque (bruit),et j ai l impression que la carte mere reboote en permanence. j ai essayé autre ram,et dd,toujour pareil. j ai utilisé spyboot,hijackthis,et combofix,enfin pas moi mais un ami via teamwiever quelqu un peut me dire a propos du log ? et voir meme une solution !!! merci d avance voici le log ComboFix 13-07-22.01 - tim 23/07/2013 8:22.2.2 - x86 Microsoft Windows 7 Professionnel 6.1.7601.1.1252.33.1036.18.3582.2804 [GMT 2:00] Lancé depuis: c:\users\tim\Downloads\ComboFix.exe AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F} SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2} SP: Spybot - Search and Destroy *Enabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((( Fichiers créés du 2013-06-23 au 2013-07-23 )))))))))))))))))))))))))))))))))))) . . 2013-07-23 06:30 . 2013-07-23 06:30 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-07-23 06:13 . 2013-07-23 06:13 29904 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0C4B650B-3954-40E2-A6F2-488E28C6D933}\MpKsle2aa121e.sys 2013-07-22 18:22 . 2010-06-02 02:55 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll 2013-07-22 18:22 . 2010-06-02 02:55 527192 ----a-w- c:\windows\system32\XAudio2_7.dll 2013-07-22 18:22 . 2010-06-02 02:55 239960 ----a-w- c:\windows\system32\xactengine3_7.dll 2013-07-22 18:22 . 2010-05-26 09:41 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll 2013-07-22 18:22 . 2010-05-26 09:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll 2013-07-22 18:22 . 2010-05-26 09:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll 2013-07-22 18:22 . 2010-05-26 09:41 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll 2013-07-22 18:22 . 2010-05-26 09:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll 2013-07-22 18:21 . 2013-07-22 18:22 -------- d--h--w- c:\windows\msdownld.tmp 2013-07-22 18:20 . 2013-07-22 18:20 -------- d-----w- c:\program files\SiSoftware 2013-07-22 18:06 . 2013-07-22 18:06 -------- d-----w- c:\program files\HD Tune 2013-07-22 16:06 . 2013-07-02 06:54 7143960 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0C4B650B-3954-40E2-A6F2-488E28C6D933}\mpengine.dll 2013-07-21 15:31 . 2013-07-21 15:31 -------- d-----w- c:\users\tim\AppData\Local\Macromedia 2013-07-21 15:30 . 2013-07-21 15:30 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-07-21 15:30 . 2013-07-21 15:30 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-07-21 15:26 . 2013-07-21 15:25 698504 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{85734E2A-DC22-4878-95B5-BECEC936ACCC}\gapaengine.dll 2013-07-21 15:26 . 2013-07-02 06:54 7143960 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2013-07-13 11:35 . 2013-07-13 11:35 -------- d-----w- c:\program files\TeamViewer 2013-07-11 11:38 . 2008-01-01 16:44 -------- d-----w- c:\windows\system32\MRT 2013-07-10 23:11 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\system32\DWrite.dll 2013-07-10 23:11 . 2013-05-06 04:56 1620480 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-07-10 23:11 . 2013-06-04 04:53 509440 ----a-w- c:\windows\system32\qedit.dll 2013-07-10 23:11 . 2013-06-05 03:05 2347520 ----a-w- c:\windows\system32\win32k.sys 2013-07-10 23:11 . 2013-04-10 05:03 936448 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll 2013-07-10 23:11 . 2013-04-10 05:04 1221632 ----a-w- c:\program files\Windows Journal\NBDoc.DLL 2013-07-10 23:11 . 2013-04-10 05:03 988672 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll 2013-07-10 23:11 . 2013-04-10 05:03 969216 ----a-w- c:\program files\Windows Journal\JNWDRV.dll 2013-07-10 23:11 . 2013-05-27 04:57 680960 ----a-w- c:\program files\Windows Defender\MpSvc.dll 2013-07-10 23:11 . 2013-05-27 04:57 392704 ----a-w- c:\program files\Windows Defender\MpClient.dll 2013-07-10 23:11 . 2013-05-27 04:57 224768 ----a-w- c:\program files\Windows Defender\MpCommu.dll 2013-07-10 10:36 . 2013-06-12 04:18 7068072 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine(6012).dll 2013-07-03 19:30 . 2013-07-03 19:30 -------- d-----w- c:\program files\WinPcap . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2013-06-22 20:02 . 2013-06-22 20:02 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2013-06-22 20:02 . 2013-04-07 18:45 789416 ----a-w- c:\windows\system32\deployJava1.dll 2013-06-22 20:02 . 2013-04-07 18:45 867240 ----a-w- c:\windows\system32\npDeployJava1.dll 2013-06-21 18:24 . 2012-10-02 17:24 724464 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll 2013-06-18 20:50 . 2013-06-18 20:50 211560 ----a-w- c:\windows\system32\drivers\MpFilter.sys 2013-06-18 20:50 . 2012-03-20 18:44 107392 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys 2013-06-14 12:41 . 2013-06-14 12:41 380928 ----a-w- c:\windows\system32\srkey.exe 2013-05-13 04:45 . 2013-06-12 20:26 1160192 ----a-w- c:\windows\system32\crypt32.dll 2013-05-13 04:45 . 2013-06-12 20:26 140288 ----a-w- c:\windows\system32\cryptsvc.dll 2013-05-13 04:45 . 2013-06-12 20:26 103936 ----a-w- c:\windows\system32\cryptnet.dll 2013-05-13 03:08 . 2013-06-12 20:26 903168 ----a-w- c:\windows\system32\certutil.exe 2013-05-13 03:08 . 2013-06-12 20:26 43008 ----a-w- c:\windows\system32\certenc.dll 2013-05-12 10:15 . 2011-03-28 16:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2013-05-10 03:20 . 2013-06-12 20:26 24576 ----a-w- c:\windows\system32\cryptdlg.dll 2013-05-08 05:38 . 2013-06-12 20:16 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-05-06 05:06 . 2013-06-12 20:21 3968872 ----a-w- c:\windows\system32\ntkrnlpa.exe 2013-05-06 05:06 . 2013-06-12 20:21 3913576 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-05-02 15:28 . 2012-07-01 11:56 238872 ------w- c:\windows\system32\MpSigStub.exe 2013-04-26 04:55 . 2013-06-12 20:26 492544 ----a-w- c:\windows\system32\win32spl.dll 2013-04-25 23:30 . 2013-06-12 20:26 1505280 ----a-w- c:\windows\system32\d3d11.dll . . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-04-11 3672384] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux1"=wdmaud.drv . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . R2 MBAMScheduler;MBAMScheduler;c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376] R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512] R3 esgiguard;esgiguard;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [x] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2013-06-18 107392] R3 NisSrv;Inspection du réseau Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2013-06-20 295376] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848] R3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP2\RpcAgentSrv.exe [2009-03-01 71832] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 49664] R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2013-04-12 104720] R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [x] R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2012-07-01 1343400] R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\IObit\Game Booster 3\Driver\WinRing0.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040] S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-10-06 242240] S1 MpKsle2aa121e;MpKsle2aa121e;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{0C4B650B-3954-40E2-A6F2-488E28C6D933}\MpKsle2aa121e.sys [2013-07-23 29904] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128] S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2010-01-27 50704] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-05-16 1817560] S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-05-16 1033688] S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-05-15 171928] S2 TeamViewer8;TeamViewer 8;c:\program files\TeamViewer\Version8\TeamViewer_Service.exe [2013-07-08 4153184] S3 netr28;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28.sys [2012-12-06 2046560] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856] . . --- Autres Services/Pilotes en mémoire --- . *NewlyCreated* - MPKSLE2AA121E . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2008-01-01 20:03 1173456 ----a-w- c:\program files\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe . Contenu du dossier 'Tâches planifiées' . 2013-07-23 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-21 15:30] . 2013-07-10 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2246215519-3917550094-1022796302-1000Core.job - c:\users\tim\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-10-13 10:47] . 2013-07-22 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2246215519-3917550094-1022796302-1000UA.job - c:\users\tim\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-10-13 10:47] . 2013-07-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2013-06-22 20:34] . 2013-07-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2013-06-22 20:34] . . ------- Examen supplémentaire ------- . TCP: DhcpNameServer = 192.168.0.254 FF - ProfilePath - c:\users\tim\AppData\Roaming\Mozilla\Firefox\Profiles\4gqf2n6z.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr . . --------------------- CLES DE REGISTRE BLOQUEES --------------------- . [HKEY_USERS\S-1-5-21-2246215519-3917550094-1022796302-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.Email.1" . [HKEY_USERS\S-1-5-21-2246215519-3917550094-1022796302-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice] @Denied: (2) (LocalSystem) "Progid"="WindowsLiveMail.VCard.1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Heure de fin: 2013-07-23 08:33:11 ComboFix-quarantined-files.txt 2013-07-23 06:33 ComboFix2.txt 2013-07-22 19:16 . Avant-CF: 116 255 285 248 octets libres Après-CF: 116 122 034 176 octets libres . - - End Of File - - 7B8DF1CCA07601013C0A617B1499C2CB A36C5E4F47E84449FF07ED3517B43A31
×
×
  • Créer...