Encore un virus

Fermé
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018 - 26 janv. 2010 à 12:45
 jowaish - 1 avril 2010 à 15:00
Bonjour,


J'ai fait un scan avec avast, car j'avais des redémarages de mon ordi et des choses un peu bizarre et il me trouve un virus Win32:Trojan-gen. Comment être sure de s'en débarrasser?

177 réponses

pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
27 janv. 2010 à 20:51
▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir

▶ Double clic sur le raccourci FindyKill sur ton bureau

▶ Au menu principal,choisi l option 2 (Suppression)


/!\ il y aura un redémarrage, laisse travailler l outils jusqu a l apparition du message "nettoyage effectué"

/!\ Ne te sert pas du pc durant la suppression , ton bureau ne sera pas accessible c est normal !

▶ ensuite post le rapport FindyKill.txt

* Note : le rapport FindyKill.txt est sauvegardé a la racine du disque
* Note : Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tapes explorer.exe et valides


A lire :

le danger des cracks

bagle/beagle
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
28 janv. 2010 à 12:52
voilà, je te poste le rapport :



############################## | FindyKill V5.028 |

# User : Isabelle (Administrateurs) # GEFFARD
# Update on 26/01/2010 by El Desaparecido
# Start at: 12:35:33 | 28/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com

# Intel(R) Core(TM)2 Duo CPU E8200 @ 2.66GHz
# Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-bit) # Service Pack 1
# Internet Explorer 8.0.6001.18882
# Windows Firewall Status : Enabled

# C:\ # Disque fixe local # 97,65 Go (30,36 Go free) # NTFS
# D:\ # Disque fixe local # 185,37 Go (112,72 Go free) [Divers] # NTFS
# E:\ # Disque fixe local # 15 Go (10,7 Go free) [RECOVERY] # NTFS
# F:\ # Disque CD-ROM
# G:\ # Disque amovible
# H:\ # Disque amovible
# I:\ # Disque amovible
# J:\ # Disque amovible
# K:\ # Disque amovible # 3,78 Go (595,05 Mo free) # FAT32
# L:\ # Disque CD-ROM

############################## | Processus actifs |

C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\MsPMSPSv.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Windows\system32\runonce.exe
C:\Windows\system32\wbem\wmiprvse.exe

################## | C: |


################## | C:\Windows |


################## | C:\Windows\Prefetch |

Supprimé ! C:\Windows\Prefetch\WINUPGRO.EXE-482730A2.pf

################## | C:\Windows\system32 |


################## | C:\Windows\system32\drivers |


################## | C:\Users\Isabelle\AppData\Roaming |

Supprimé ! C:\Users\Isabelle\AppData\Roaming\m\data.oct
Supprimé ! C:\Users\Isabelle\AppData\Roaming\m\list.oct
Supprimé ! C:\Users\Isabelle\AppData\Roaming\m\shared
Supprimé ! C:\Users\Isabelle\AppData\Roaming\m\srvlist.oct
Supprimé ! C:\Users\Isabelle\AppData\Roaming\m

################## | Autres suppressions ... |


################## | Zip File ... |

################## | Temporary Internet Files |

Supprimé ! C:\Users\Isabelle\AppData\Roaming\Microsoft\Windows\Cookies\Low\isabelle@www.serialshack[2].txt

################## | Registre |


################## | Etat |

# Mode sans echec : OK


# Affichage des fichiers cachés : OK

# Uac : OK

# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 2 ( Good = 2 | Bad = 4 )
# Wlansvc -> Start = 2 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# windefend -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )

################## | PEH |


################## | ! Fin du rapport # FindyKill V5.028 ! |
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
28 janv. 2010 à 21:01
Peux tu réessayer Gmer?
0
peux-tu me dire si je dois cocher le scan à droite dans la fenêtre de gmer ?
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
29 janv. 2010 à 13:33
Quand je fais gmer, je coche bien scan à droite et ensuite c/ et d/

merci
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
30 janv. 2010 à 00:54
Tu n'as pas l'onglet : Rootkit/Malware
0
bonjour

j'ai bien l'onglet rootkit/malware mais j'ai juste sur cette page là 3 lignes qui commencent par attached, puis dès que je clique sur une ligne je bloque tout et je suis obligée d'éteindre mon ordi pour le redémarrer.
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
30 janv. 2010 à 17:08
Je voudrais savoir si je dois faire autre chose s'il te plait
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
30 janv. 2010 à 20:02
il faut le laisser faire l'analyse GMER, c'est à la fin qu'il doit te dire s'il à trouvé quelque chose.
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
31 janv. 2010 à 10:17
J'ai fait et laissé faire, mais au bout d'un certain temps, l'ordi a redémarré seul sans que je fasse quoique ce soit
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
31 janv. 2010 à 14:23
et tu n'a aucun rapport sur ton bureau?
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
31 janv. 2010 à 14:28
non aucun rapport
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
31 janv. 2010 à 16:06
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent(car il est détecté a tort comme infection)

▶ Télécharge et installe List&Kill'em et enregistre le sur ton bureau

▶ Branche clés usb , disques durs externes , mp3 , mp4 , etc..

double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation

coche la case "créer une icône sur le bureau"

une fois terminée , clic sur "terminer" et le programme se lancera seul

choisis la langue puis choisis l'option 1 = Mode Recherche

▶ laisse travailler l'outil

à l'apparition de la fenêtre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.

un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.

▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"

tu peux supprimer le rapport catchme.log de ton bureau maintenant.

Ensuite héberger le rapport :

▶ Rendez-vous à cette adresse d'hébergement gratuit : http://www.cijoint.fr/

▶ Cliquez sur parcourir, chercher le rapport .txt puis cliquez sur ici pour déposer le fichier

▶ Une fois le lien crée, faite un clique droit dessus et copier l'adresse du lien pour venir le coller dans votre réponse
0
Uchiha-Madara Messages postés 175 Date d'inscription lundi 7 décembre 2009 Statut Membre Dernière intervention 1 février 2010 16
31 janv. 2010 à 16:17
Salut.

Je t'invite à lire ça : https://forum.malekal.com/viewtopic.php?t=2652&start=
y'a une solution trouvée dedans, et je pense que tu trouveras un rapport avec le problème de virus que t'as.

Bon courage.
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
31 janv. 2010 à 16:25
Merci mais y a pas besoin.
0
Uchiha-Madara Messages postés 175 Date d'inscription lundi 7 décembre 2009 Statut Membre Dernière intervention 1 février 2010 16
31 janv. 2010 à 16:34
Problème résolu?
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
31 janv. 2010 à 17:26
tu n'as pas plus simple pour moi pimprenelle. Ca a l'air compliqué non ?
0
Utilisateur anonyme
31 janv. 2010 à 18:44
non ces pas compliquer tous est expliquer a la lettre
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
31 janv. 2010 à 19:52
non c'est pas compliqué tu suis à lettre ce qui est marqué.
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
1 févr. 2010 à 16:08
List'em by g3n-h@ckm@n 1.2.1.2
User : Isabelle (Administrateurs)
Update on 29/01/2010 by g3n-h@ckm@n ::::: 11:50
Start at: 15:35:26 | 01/02/2010
Contact : g3n-h@ckm@n sur CCM

Intel(R) Core(TM)2 Duo CPU E8200 @ 2.66GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-bit) # Service Pack 1
Internet Explorer 8.0.6001.18882
Windows Firewall Status : Disabled

C:\ -> Disque fixe local | 97,65 Go (18,93 Go free) | NTFS
D:\ -> Disque fixe local | 185,37 Go (95,6 Go free) [Divers] | NTFS
E:\ -> Disque fixe local | 15 Go (10,7 Go free) [RECOVERY] | NTFS
F:\ -> Disque CD-ROM
G:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque amovible
L:\ -> Disque CD-ROM | 3,11 Go (0 Mo free) [MASTER COLLECTIO] | CDFS

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running

C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\NCH Software\BroadCam\broadcam.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\MsPMSPSv.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Omni\Omni keyboard driver\6.0\KbdAp32A.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Common Files\aol\1230316066\ee\aolsoftware.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\NCH Software\BroadCam\broadcam.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Omni\OmniMouse driver\10.0\GTGMouse.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Users\Isabelle\Program Files\DNA\btdna.exe
D:\Picasa2\PicasaMediaDetector.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\AOL 9.0 VRb\waol.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\AOL 9.0 VRb\shellmon.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10d.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\List_Kill'em\List_Kill'em.scr
C:\Windows\system32\cmd.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\Isabelle\AppData\Local\Temp\F2FE.tmp\pv.exe

======================
Keys "Run"
======================
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
LogitechSoftwareUpdate REG_SZ "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
GTGMOUSE REG_SZ "C:\Program Files\Omni\OmniMouse driver\10.0\GTGMouse.exe"
msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} REG_SZ "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
ares REG_SZ "C:\Program Files\Ares\Ares.exe" -h
BitTorrent DNA REG_SZ "C:\Users\Isabelle\Program Files\DNA\btdna.exe"
Picasa Media Detector REG_SZ D:\Picasa2\PicasaMediaDetector.exe
WMPNSCFG REG_SZ C:\Program Files\Windows Media Player\WMPNSCFG.exe
LaunchList REG_SZ C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe
AOL Fast Start REG_SZ "C:\Program Files\AOL 9.0 VRb\AOL.EXE" -b
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\AdobeUpdater

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
StartCCC REG_SZ C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
LogitechVideoRepair REG_SZ C:\Program Files\Logitech\Video\ISStart.exe
LogitechVideoTray REG_SZ C:\Program Files\Logitech\Video\LogiTray.exe
LWBKEYBOARD REG_SZ "C:\Program Files\Omni\Omni keyboard driver\6.0\KbdAp32A.exe"
dellsupportcenter REG_SZ "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter
HostManager REG_SZ C:\Program Files\Common Files\AOL\1230316066\ee\AOLSoftware.exe
VirtualCloneDrive REG_SZ "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
NeroFilterCheck REG_SZ C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
fssui REG_SZ "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
avast! REG_SZ C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
Adobe_ID0EYTHM REG_SZ C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE
AppleSyncNotifier REG_SZ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
Adobe ARM REG_SZ "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
USB2Check REG_SZ RUNDLL32.EXE "C:\Windows\system32\PCLECoInst.dll",CheckUSBController
PCLEUSBTip REG_SZ C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
BroadCam REG_SZ "C:\Program Files\NCH Software\BroadCam\broadcam.exe" -logon
TkBellExe REG_SZ "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

=====================
Other Keys
=====================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
ConsentPromptBehaviorAdmin REG_DWORD 2 (0x2)
ConsentPromptBehaviorUser REG_DWORD 1 (0x1)
EnableInstallerDetection REG_DWORD 1 (0x1)
EnableLUA REG_DWORD 1 (0x1)
EnableSecureUIAPaths REG_DWORD 1 (0x1)
EnableVirtualization REG_DWORD 1 (0x1)
PromptOnSecureDesktop REG_DWORD 1 (0x1)
ValidateAdminCodeSignatures REG_DWORD 0 (0x0)
dontdisplaylastusername REG_DWORD 0 (0x0)
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
scforceoption REG_DWORD 0 (0x0)
shutdownwithoutlogon REG_DWORD 1 (0x1)
undockwithoutlogon REG_DWORD 1 (0x1)
FilterAdministratorToken REG_DWORD 0 (0x0)
EnableUIADesktopToggle REG_DWORD 0 (0x0)
UacDisableNotify REG_DWORD 0 (0x0)

===============
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS REG_SZ

===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
ReportBootOk REG_SZ 1
Shell REG_SZ explorer.exe
Userinit REG_SZ C:\Windows\system32\userinit.exe,
VmApplet REG_SZ rundll32 shell32,Control_RunDLL "sysdm.cpl"
AutoRestartShell REG_DWORD 1 (0x1)
LegalNoticeCaption REG_SZ
LegalNoticeText REG_SZ
PowerdownAfterShutdown REG_SZ 0
ShutdownWithoutLogon REG_SZ 0
cachedlogonscount REG_SZ 10
forceunlocklogon REG_DWORD 0 (0x0)
passwordexpirywarning REG_DWORD 14 (0xe)
Background REG_SZ 0 0 0
DebugServerCommand REG_SZ no
WinStationsDisabled REG_SZ 0
DisableCAD REG_DWORD 1 (0x1)
scremoveoption REG_SZ 0
ShutdownFlags REG_DWORD 43 (0x2b)
AutoAdminLogon REG_SZ 0
allocatecdroms REG_SZ 1
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\AutoLogonChecked

===============

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

===============
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
C:\Program Files\BitTorrent\bittorrent.exe REG_SZ C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

===============
ActivX controls
===============
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8AD9C840-044E-11D1-B3E9-00805F499D93}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{D27CDB6E-AE6D-11CF-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}

===============
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{233C1507-6A77-46A4-9443-F871F945D258}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2A202491-F00D-11cf-87CC-0020AFEECF20}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11CF-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}

==============
BHO :
======
[<NO NAME> REG_SZ ]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{1a71246c-3eb0-4d6c-af77-3ab756017c3a}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{f592709f-ff4a-4862-b659-4afabda56312}]

================
Internet Explorer :
================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr

========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]

Ndisuio : 0x3
EapHost : 0x2
Wlansvc : 0x2
SharedAccess : 0x2
windefend : 0x2
wuauserv : 0x2
wscsvc : 0x2

=========
Atapi.sys
=========

%%%% HASHDEEP-1.0
%%%% size,md5,sha256,filename
## Invoked from: C:\Users\Isabelle\AppData\Local\Temp\F2FE.tmp
## C:\> hashdeep C:\Windows\System32\Drivers\atapi.sys
##
19048,a779ca2c76da4fcb595e692c05e8e4eb,4ffe51944090d8eed0350b8b00e5f2993215ee0aceabec4564175a70c34154e9,C:\Windows\System32\Drivers\atapi.sys


Sources
=======


Référence :
==========

Win XP_32b : a64013e98426e1877cb653685c5c0009
Win XP_SP2_32b : CDFE4411A69C224BD1D11B2DA92DAC51
Win XP_SP3_32b : 9F3A2F5AA6875C72BF062C712CFA2674
Vista_32b : e03e8c99d15d0381e02743c36afc7c6f
Vista_SP1_32b : 2d9c903dc76a66813d350a562de40ed9
Vista_SP2_32b : 1F05B78AB91C9075565A9D8A4B880BC4
Vista_SP2_64b : 1898FAE8E07D97F2F6C2D5326C633FAC
Windows 7_32b : 80C40F7FDFC376E4C5FEEC28B41C119E
Windows 7_64b : 02062C0B390B7729EDC9E69C680A6F3C

=======
Drive :
=======

D‚fragmenteur de disque Windows
Copyright (c) 2006 Microsoft Corp.

¤¤¤¤¤¤¤¤¤¤ Files/folders :

Present !! : C:\Windows\system32\XInput9_1_0.dll
Present !! : C:\Users\Isabelle\AppData\Roaming\inst.exe
Present !! : C:\Users\Isabelle\Local Settings\Temp\alm.log
Present !! : C:\Users\Isabelle\Local Settings\Temp\amt.log
Present !! : C:\Users\Isabelle\Local Settings\Temp\url.txt
Present !! : C:\Users\Isabelle\Local Settings\Temp\ytb.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\bcsetup.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\debutsetup.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\final_step.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\FlashPlayerUpdate.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\jre-6u12-windows-i586-p-iftw.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\jre-6u13-windows-i586-p-iftw.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\jre-6u15-windows-i586-iftw.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\jre-6u17-windows-i586-iftw-rv.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\octosetup1061191071051161019911998100116109113100115115117107111106112109991209711810411499113102104434170793811106408.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\ose00000.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\SearchWithGoogleUpdate.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\Stp2DF6_TMP.EXE
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\uninst.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\utt43B4.tmp.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\wlsetup-cvr.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\ytb.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_is1299.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_is6162.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_is67B7.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_is7450.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_is78AC.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_isC90E.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_isD3C8.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_isE1C6.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\_isFC98.exe
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\tmp69DA.tmp
Present !! : C:\Users\Isabelle\LOCAL Settings\Temp\tmp69EA.tmp

¤¤¤¤¤¤¤¤¤¤ Keys :

Present !! : "HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}"
Present !! : "HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}"
Present !! : HKCR\CLSID\{248dd896-bb45-11cf-9abc-0080c7e7b78d}
Present !! : HKCR\CLSID\{248dd897-bb45-11cf-9abc-0080c7e7b78d}
Present !! : HKCR\Interface\{248dd892-bb45-11cf-9abc-0080c7e7b78d}
Present !! : HKCR\Interface\{248dd893-bb45-11cf-9abc-0080c7e7b78d}
Present !! : HKCR\TypeLib\{248dd890-bb45-11cf-9abc-0080c7e7b78d}

============

catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-01 15:40:56
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK

==========
Programs
==========

2K Sports
ACD Systems
Adobe
Alwil Software
AOL
AOL 9.0 VR
AOL 9.0 VRa
AOL 9.0 VRb
Apple Software Update
ATI
ATI Technologies
Audacity
AviSynth 2.5
AVS4YOU
BitTorrent
Bonjour
BTjunkie
CCleaner
CDex_170b2
Common Files
Conduit
Corel
Cucusoft
Dell
Dell Support Center
desktop.ini
DNA
DVD Shrink
DVDVideoSoft
Elaborate Bytes
eMule
eRightSoft
Fichiers communs
Free Video Converter
Google
Hewlett-Packard
InstallShield Installation Information
Intel
Internet Explorer
iPod
iTunes
Java
JRE
Lavasoft
LimeWire
List_Kill'em
Logitech
ma-config.com
Magicbit
MediaCoder
megui
Microsoft
Microsoft CAPICOM 2.1.0.2
Microsoft Games
Microsoft Money 2005
Microsoft Office
Microsoft Office Outlook Connector
Microsoft Silverlight
Microsoft SQL Server
Microsoft SQL Server Compact Edition
Microsoft Sync Framework
Microsoft Visual Studio
Microsoft Visual Studio 8
Microsoft Works
Microsoft.NET
Mininova
Movie Maker
Mozilla Firefox
MSBuild
MSECache
MSXML 4.0
NCH Software
Nero
No‰l Danjou
Omni
OpenOffice.org 3
Pinnacle
QuickTime
ratDVD
Real
Reference Assemblies
Smallvideosoft
Sony
Sony Setup
Spybot - Search & Destroy
trend micro
Uninstall Information
Vstplugins
vtplus
Windows Calendar
Windows Collaboration
Windows Defender
Windows Journal
Windows Live
Windows Live SkyDrive
Windows Mail
Windows Media Player
Windows NT
Windows Photo Gallery
Windows Sidebar
WinRAR
WinTV
Wondershare
x264
Xara
Xvid
Yahoo!

============
Drive C:
============

$Recycle.Bin
Ad-Remover
Ad-Report-CLEAN[1].log
AUTOEXEC.BAT
Boot
bootmgr
config.sys
Documents and Settings
found.000
found.001
found.002
found.003
found.004
found.005
found.006
found.007
found.008
found.009
found.010
found.011
FyK
FyK.txt
Hauppauge
hiberfil.sys
IO.SYS
Kill'em
List'em.txt
Movavi files
MSDOS.SYS
MSOCache
pagefile.sys
PerfLogs
Program Files
ProgramData
rsit
System Volume Information
Users
Windows

¤¤¤¤¤¤¤¤¤¤ Cracks | Keygens | Serials

C:\Program Files\Adobe\Adobe Bridge CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Bridge CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Bridge CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Device Central CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Device Central CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Device Central CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Dreamweaver CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Dreamweaver CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Dreamweaver CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Flash CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Flash CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Flash CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Illustrator CS3\Support Files\Contents\Windows\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Illustrator CS3\Support Files\Contents\Windows\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Illustrator CS3\Support Files\Contents\Windows\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Photoshop CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Photoshop CS3\LMResources\ar_ae\SerializationWF.exv
C:\Program Files\Adobe\Adobe Photoshop CS3\LMResources\he_il\SerializationWF.exv
C:\Program Files\Adobe\Adobe Premiere Pro CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Premiere Pro CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Premiere Pro CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Soundbooth CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Soundbooth CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Soundbooth CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\000 Preview Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\001 Natural Drums
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\002 Natural Percussion
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\003 Contemporary Kits
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\004 Contemporary Percussion
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\005 Drum Menus
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\006 Drum Loops
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\007 Acoustic Pianos
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\008 Electric Pianos
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\009 Clavinets
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\010 Organs
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\011 Harpsichord
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\012 Mallets
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\013 Bells
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\014 Percussive
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\015 Synth Basses
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\016 Acoustic Basses
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\017 Electric Basses
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\018 Acoustic Guitars
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\019 Electric Guitars Clean
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\020 Electric Guitars Distorted
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\021 Strings
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\022 Orchestral
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\023 Hits
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\024 Vocal
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\025 Brass Sections
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\026 Solo Brass
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\027 Saxes
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\028 Woodwinds
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\029 Ethnic
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\030 Accordions + Harmonicas
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\031 Soft Pads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\032 Bright Pads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\033 Moving Pads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\034 Soundscapes
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\035 Techno Synths
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\036 Poly Synths
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\037 Arpeggios
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\038 Synth Brass
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\039 Soft Leads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\040 Hard Leads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\041 Synth FX
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\042 Sound FX
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\043 Test Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\078 GM Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\079 GM Drums
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\090 PCLE Instruments
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\092 PCLE Test
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\000 Arctic Bubbles Scape.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\001 High Whispers Scape.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\002 Down To Earth.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\003 Filmscape 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\004 The Sanctuary.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\005 The Big Pad.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\006 Venice.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\007 Filmscape 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\008 Manhattan.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\009 Drum Kit Constructor.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\010 Chaotic Drum Selector.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\011 Chaotic Loop Selector.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\012 Orchestral Symphony.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\013 Orchestral Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\014 Filmscore Starter 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\015 Filmscore Starter 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\016 Japanese Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\017 Pop Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\018 RnB Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\019 Downbeat Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\020 Trip Hop Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\021 Tribal Techno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\022 Ethno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\023 HipHop US Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\024 HipHop German Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\025 Disco Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\026 Ambient Starter 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\027 Ambient Starter 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\028 60s Pop Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\029 Funk Starter .fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\030 Jazz Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\031 Reggae Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\032 Rock Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\033 Soul Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\034 Industrial Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\035 Beatbox Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\036 Analog Synth Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\037 Trance Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\038 EuroTechno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\039 Techno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\040 Electro Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\041 House Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\042 Drum n Bass Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\043 Piano-Strings XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\044 Pizz-Piano XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\045 Soft Ep-Nyl Gtr XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\046 Sitar-Panpipes XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\047 Soft Pad-Harm Xfade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\048 Swoosh-Big Pad XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\049 Soft Pad-String XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\050 Soft Pad-Sweep XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\051 Soft-Bright Pad Xfade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\052 Soft-Brightscape XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\053 Perc Morpher XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\054 7th Driven Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\055 Deep Core Sonic Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\056 Filmscape 3.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\057 Bouncy HP Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\058 Hollywood.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\059 Keep Still Pad.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\060 Layer 5th.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\061 Nirvana Guitar Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\062 Phantastica.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\063 Spherosonic.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\064 Sweep It.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\065 Sweeping World.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\066 Sweet Sizzle Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\067 Standards XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\068 Keyboarders XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\069 Jazz XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\070 House Stack XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\071 Stab XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\072 Big Joe Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\073 Pop RnB Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\074 RnB Jam Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\075 Dble Bass+Piano Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\076 Dble Bass+Vibes Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\077 Bass+Organ Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\078 Bass+Wah Guitar Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\079 Dream Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\080 Techno Split 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\081 Techno Split 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\082 Techno Split 3.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\083 Analog Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\084 Bassline+Saw Lead.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\085 Syn Bass+Lead 1 Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\086 Syn Bass+Lead 2 Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\087 Lost In Space.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\088 Hurricane.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\089 FX Menu.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\090 Space FX Fades.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\091 Frontal Rear.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\092 Sacral Room.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\093 Lunatic Room.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\094 Surround About.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\095 Raum Zeitlos.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\096 Quadroloops n Noises.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\097 Downtown.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\098 Surrounded By Crowd.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\099 Wind + Water.fxb
D:\Logiciels\N‚ro 7_8_5\Serial.txt




¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
1 févr. 2010 à 16:16
je suis allée sur ci-joint.fr et j'ai fait parcourir, mais je le cherche dans quoi le rapport txt ? Il n'est pas sur le bureau . Merci
0
pimprenelle27 Messages postés 20857 Date d'inscription lundi 10 décembre 2007 Statut Contributeur sécurité Dernière intervention 8 octobre 2019 2 502
1 févr. 2010 à 17:49
tu va devoir tout ce que lis&killem à détecté là Cracks | Keygens | Serials

car c'est la source de tes virus, ensuite ceci :

Nettoyage :


! Déconnecte toi ferme toutes tes applications en cours !

* Redémarrer ton PC en mode sans échec manuellement
* Tapez sur la touche F8 avant de voir apparaître la barre de progression, avant l'écran de logo Windows
* Sélectionnez alors le mode sans échec sans prise en charge réseau et appuyez sur la touche entrée de votre clavier.


▶ Relance List&Kill'em(soit en clic droit pour vista),avec le raccourci sur ton bureau.
mais cette fois-ci :

▶ choisis l'option 2 = Mode Suppression

laisse travailler l'outil.

en fin de scan un rapport s'ouvre

▶ colle le contenu dans ta réponse
0
menagedordi Messages postés 176 Date d'inscription samedi 2 février 2008 Statut Membre Dernière intervention 12 janvier 2018
1 févr. 2010 à 18:00
tu va devoir tout ce que lis&killem à détecté là Cracks | Keygens | Serials : je ne comprends pas cette phrase


là je redémare en mode sans échec ou je fais quelque chose avant ,
0
Utilisateur anonyme
1 févr. 2010 à 18:07
tu a des crack sur ton ordi des keygene qui sont des sources d'infection
0