PC plante au démarrage

maxou552 Messages postés 162 Statut Membre -  
 Utilisateur anonyme -
Bonjour,
Depuis quelques temps mon PC plante à chaque démarrage. Windows se lance mais au moment de lancer internet, un film, ou quelque chose d'autre le PC se plante. Je ne peux plus rien faire. meme un ctrl-alt-supr ne marche pas. Au bout d'un petit moment un message d'erreur apparait qui dit :
"Le processus d'ouverture de session n'a pas pu créer la boîte de dialogue des options" "Echec option sécurité".
Je ne peux démarrer l'ordinateur qu'en mode sans échec.
En antivirus j'ai Orange antivirus firewall, mais je ne peux pas lancer d'analyse lorsque je suis en mode sans échec.
Pour info, l'ordi est sous vista.

Que puis-je faire pour résoudre ce probleme.

Merci de votre aide

9 réponses

Utilisateur anonyme
 
salut :

Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent(car il est detecté a tort comme infection)

▶ Télécharge List&Kill'em et enregistre le sur ton bureau

▶ Branche clés usb , disques durs externes , mp3 , mp4 , etc..

double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation

coche la case "creer une icone sur le bureau"

une fois terminée , clic sur "terminer" et le programme se lancera seul

choisis la langue puis choisis l'option 1 = Mode Recherche

▶ laisse travailler l'outil

à l'apparition de la fenetre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.

un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.

▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"

tu peux supprimer le rapport catchme.log de ton bureau maintenant.

0
maxou552 Messages postés 162 Statut Membre 6
 
Voici le rapport de List &killem

Merci de ton aide



List'em by g3n-h@ckm@n 1.2.0.0

thx to CCM team.....
User : Pierrick ()
Update on 19/01/2010 by g3n-h@ckm@n ::::: 15:30
Start at: 12:59:11 | 20/01/2010
Contact : g3n-h@ckm@n sur CCM

Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 8.0.6001.18865
Windows Firewall Status : Enabled
AV : Anti-virus firewall 9.10 9.10 [ (!) Disabled | Updated ]
FW : Anti-virus firewall 9.10[ (!) Disabled ]9.10

C:\ -> Disque fixe local | 74,52 Go (28,21 Go free) [VistaOS] | NTFS
D:\ -> Disque fixe local | 67,69 Go (20,16 Go free) [DATA] | NTFS
E:\ -> Disque CD-ROM
F:\ -> Disque amovible | 7,52 Go (3 Go free) | FAT32
G:\ -> Disque CD-ROM

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running

C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\Explorer.EXE
C:\Program Files\List_Kill'em\List_Kill'em.exe
C:\Windows\system32\cmd.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\Pierrick\AppData\Local\Temp\694.tmp\pv.exe

======================
Keys "Run"
======================
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\AdobeUpdater

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
NvSvc REG_SZ RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
NvCplDaemon REG_SZ RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
NvMediaCenter REG_SZ RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
RtHDVCpl REG_SZ RtHDVCpl.exe
Skytel REG_SZ Skytel.exe
ATKMEDIA REG_SZ C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
ASUS Screen Saver Protector REG_SZ C:\Windows\ASScrPro.exe
CognizanceTS REG_SZ rundll32.exe C:\PROGRA~1\ASUSSE~1\ASUSSE~1\Bin\ASTSVCC.dll,RegisterModule
IAAnotif REG_SZ "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
MSConfig REG_SZ "C:\Windows\system32\msconfig.exe" /auto
F-Secure Manager REG_SZ "C:\Program Files\Orange\Antivirus Firewall\Common\FSM32.EXE" /splash
F-Secure TNB REG_SZ "C:\Program Files\Orange\Antivirus Firewall\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

=====================
Other Keys
=====================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
ConsentPromptBehaviorAdmin REG_DWORD 2 (0x2)
ConsentPromptBehaviorUser REG_DWORD 1 (0x1)
EnableInstallerDetection REG_DWORD 1 (0x1)
EnableLUA REG_DWORD 1 (0x1)
EnableSecureUIAPaths REG_DWORD 1 (0x1)
EnableVirtualization REG_DWORD 1 (0x1)
PromptOnSecureDesktop REG_DWORD 1 (0x1)
ValidateAdminCodeSignatures REG_DWORD 0 (0x0)
dontdisplaylastusername REG_DWORD 0 (0x0)
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
scforceoption REG_DWORD 0 (0x0)
shutdownwithoutlogon REG_DWORD 1 (0x1)
undockwithoutlogon REG_DWORD 1 (0x1)
FilterAdministratorToken REG_DWORD 0 (0x0)

===============
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS REG_SZ APSHook.dll

===============

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

===============
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

===============
ActivX controls
===============
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8AD9C840-044E-11D1-B3E9-00805F499D93}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}

===============
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11CF-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}

==============
BHO :
======
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{C6867EB7-8350-4856-877F-93CF8AE3DC9C}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]

================
Internet Explorer :
================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr/?ocid=iehp

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.lemonde.fr/

========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]

Ndisuio : 0x3
EapHost : 0x3
Wlansvc : 0x2
SharedAccess : 0x4
windefend : 0x2
wuauserv : 0x2
wscsvc : 0x2

=========
Atapi.sys
=========
%%%% HASHDEEP-1.0
%%%% size,md5,sha256,filename
## Invoked from: C:\Users\Pierrick\AppData\Local\Temp\694.tmp
## C:\> hashdeep C:\Windows\System32\Drivers\atapi.sys
##
21560,b35cfcef838382ab6490b321c87edf17,a13985b87b5918d123072c7128e12dc28b0fcfd68383afa6e1da72a25bd781e0,C:\Windows\System32\Drivers\atapi.sys


=======
Drive :
=======

D‚fragmenteur de disque Windows
Copyright (c) 2006 Microsoft Corp.

Rapport d'analyse pour le volume C: VistaOS

Taille du volume = 74.52 Go
Espace libre = 28.22 Go
tendue d'espace libre la plus grande = 4.20 Go
Pourcentage de fragmentation des fichiers = 7 %

Remarqueÿ: sur les volumes NTFS, les fragments de fichiers de plus de 64ÿMo ne sont pas inclus dans les statistiques de fragmentation.

Il n'est pas n‚cessaire de d‚fragmenter ce volume.

¤¤¤¤¤¤¤¤¤¤ Files/folders :

Present !! : C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
Present !! : C:\Restore\S-1-5-21-1482476501-1644491937-682003330-1013
Present !! : C:\Program Files\Ask.com
Present !! : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

¤¤¤¤¤¤¤¤¤¤ Keys :

Present !! : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\msconfig
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440}
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}"
HKLM\software\classes\appid\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
HKLM\software\classes\appid\GenericAskToolbar.DLL
HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\software\classes\GenericAskToolbar.ToolbarWnd
HKLM\software\classes\GenericAskToolbar.ToolbarWnd.1
HKLM\software\classes\installer\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\Software\Classes\TypeLib\{937936AF-28CA-4973-B8AE-F250406149A2}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\software\microsoft\windows\currentversion\uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

================
Other infections
================

catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-20 13:08:21
Windows 6.0.6000 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0018f337f16b]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\001d60a896d7]
"001c435deb2f"=hex:3b,0b,29,02,f3,af,15,3e,63,68,85,e1,9d,b7,65,59
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:b0,b5,65,86,57,a9,64,cb,02,0e,d6,d1,bb,76,f8,9c,32,d7,72,83,6d,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,69,bc,ba,84,26,b0,df,5c,09,92,b8,7d,d7,e5,ff,42,5f,..
"khjeh"=hex:f7,29,82,6f,5a,4a,b9,d1,05,e7,df,89,32,53,65,15,48,d1,f3,75,c2,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:5a,57,66,5b,d6,b4,bb,24,4b,d6,6e,26,94,d0,30,c7,f8,95,10,1f,6c,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\0018f337f16b]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\001d60a896d7]
"001c435deb2f"=hex:3b,0b,29,02,f3,af,15,3e,63,68,85,e1,9d,b7,65,59
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:b0,b5,65,86,57,a9,64,cb,02,0e,d6,d1,bb,76,f8,9c,32,d7,72,83,6d,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,69,bc,ba,84,26,b0,df,5c,09,92,b8,7d,d7,e5,ff,42,5f,..
"khjeh"=hex:f7,29,82,6f,5a,4a,b9,d1,05,e7,df,89,32,53,65,15,48,d1,f3,75,c2,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:5a,57,66,5b,d6,b4,bb,24,4b,d6,6e,26,94,d0,30,c7,f8,95,10,1f,6c,..

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK

==========
Programs
==========

Activation Assistant for the 2007 Microsoft Office suites
Adobe
AdorageI-GfxDatas
AdorageI-SAL
Alwil Software
Apple Software Update
ArcPrintManager.dll
ArcRegister.exe
ArcRegister.set
ArcRevenueSharing.dll
ArcRevenueSharingRes.dll
ArcRevenueSharingUI
Ask.com
ASUS
ASUS Security Center
ATK Hotkey
ATKGFNEX
ATKOSD2
attsr
AVG
Bonjour
CheckUpdate.dll
CheckUpdate.exe
checkupdate.set
Common Files
CSR
Cyanide
CyberLink
DAEMON Tools Lite
desktop.ini
DVDVideoSoft
Elaborate Bytes
Fingerprint Sensor
FPXLIB.DLL
GdiPlus.dll
Google
InstallShield Installation Information
Intel
Internet Explorer
iPod
iTunes
Java
JDownloader
JpegLossless.dll
kgl.dll
List_Kill'em
MagCore.dll
magengin.dll
magFileIO.dll
magFpxio.dll
MagicDLL
MagicFrame.dll
MagPCMac.dll
magPltfm.dll
magTools.dll
MagUIEngine.dll
MagUIImage.dll
MagUIInter.dll
Messenger Plus! Live
Microsoft
Microsoft Encarta
Microsoft Games
Microsoft Office
Microsoft Office Outlook Connector
Microsoft Silverlight
Microsoft SQL Server Compact Edition
Microsoft Sync Framework
Microsoft Visual Studio
Microsoft Visual Studio 8
Microsoft Works
Microsoft.NET
Motorola
Movie Maker
Mozilla Firefox
MSBuild
MSN
MSN Messenger
msvcp60.dll
msvcp71.dll
msvcr71.dll
MSXML 4.0
Nero
Nikon
OpenOffice.org 2.3
Orange
P4G
PDFCreator
Photocite Collection 4
PhotoFiltre
PICSDK.dll
PICSDK.ini
Pinnacle
PIXELA
PlugIn
PMK.exe
PMK.set
PowerForPhone
proDAD
QuickTime
RawEngine.dll
Realtek
Reference Assemblies
Skype
Support
Synaptics
Template
Thumb.xml
uEditHostDll.dll
UI
uMyExtrasCtrl.dll
unicows.dll
Uninstall Information
uPhotoStitchEngine.dll
VideoLAN
Windows Calendar
Windows Collaboration
Windows Defender
Windows Journal
Windows Live
Windows Live SkyDrive
Windows Mail
Windows Media Player
Windows NT
Windows Photo Gallery
Windows Sidebar
WinRAR
Wireless Console 2

============
Lecteur C:
============

$AVG
$RECYCLE.BIN
adorage-protocol.txt
AUTOEXEC.BAT
Boot
bootmgr
BOOTSECT.BAK
CA12.txt
config.sys
devlist.txt
Documents and Settings
e0010b1741669d7b78
F3Sc.BIN
F3Sc_F3Sv_Vista.20
F3Sv.BIN
Finish.log
found.000
Intel
IO.SYS
Kill'em
List'em.txt
MSDOS.SYS
MSOCache
MyWorks
NERO.LOG
OFFICE2007_A.TXT
pagefile.sys
Pass.txt
Patch.LOG
Program Files
ProgramData
RECOVERY.DAT
RESTORE
RHDSetup.log
setup.log
SPDISK
System Volume Information
Users
V53.TXT
Windows

¤¤¤¤¤¤¤¤¤¤ Cracks | Keygens | Serials

C:\Patch.LOG
C:\Program Files\Adobe\Adobe Bridge CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Bridge CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Bridge CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Device Central CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Device Central CS3\LMResources\ar_AE\SerializationWF.exv
C:\Program Files\Adobe\Adobe Device Central CS3\LMResources\he_IL\SerializationWF.exv
C:\Program Files\Adobe\Adobe Photoshop CS3\LMResources\SerializationWF.exv
C:\Program Files\Adobe\Adobe Photoshop CS3\LMResources\ar_ae\SerializationWF.exv
C:\Program Files\Adobe\Adobe Photoshop CS3\LMResources\he_il\SerializationWF.exv
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\000 Preview Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\001 Natural Drums
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\002 Natural Percussion
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\003 Contemporary Kits
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\004 Contemporary Percussion
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\005 Drum Menus
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\006 Drum Loops
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\007 Acoustic Pianos
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\008 Electric Pianos
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\009 Clavinets
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\010 Organs
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\011 Harpsichord
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\012 Mallets
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\013 Bells
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\014 Percussive
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\015 Synth Basses
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\016 Acoustic Basses
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\017 Electric Basses
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\018 Acoustic Guitars
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\019 Electric Guitars Clean
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\020 Electric Guitars Distorted
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\021 Strings
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\022 Orchestral
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\023 Hits
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\024 Vocal
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\025 Brass Sections
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\026 Solo Brass
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\027 Saxes
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\028 Woodwinds
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\029 Ethnic
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\030 Accordions + Harmonicas
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\031 Soft Pads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\032 Bright Pads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\033 Moving Pads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\034 Soundscapes
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\035 Techno Synths
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\036 Poly Synths
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\037 Arpeggios
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\038 Synth Brass
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\039 Soft Leads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\040 Hard Leads
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\041 Synth FX
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\042 Sound FX
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\043 Test Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\078 GM Patches
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\079 GM Drums
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\090 PCLE Instruments
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\092 PCLE Test
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\000 Arctic Bubbles Scape.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\001 High Whispers Scape.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\002 Down To Earth.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\003 Filmscape 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\004 The Sanctuary.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\005 The Big Pad.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\006 Venice.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\007 Filmscape 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\008 Manhattan.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\009 Drum Kit Constructor.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\010 Chaotic Drum Selector.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\011 Chaotic Loop Selector.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\012 Orchestral Symphony.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\013 Orchestral Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\014 Filmscore Starter 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\015 Filmscore Starter 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\016 Japanese Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\017 Pop Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\018 RnB Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\019 Downbeat Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\020 Trip Hop Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\021 Tribal Techno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\022 Ethno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\023 HipHop US Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\024 HipHop German Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\025 Disco Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\026 Ambient Starter 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\027 Ambient Starter 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\028 60s Pop Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\029 Funk Starter .fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\030 Jazz Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\031 Reggae Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\032 Rock Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\033 Soul Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\034 Industrial Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\035 Beatbox Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\036 Analog Synth Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\037 Trance Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\038 EuroTechno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\039 Techno Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\040 Electro Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\041 House Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\042 Drum n Bass Starter.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\043 Piano-Strings XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\044 Pizz-Piano XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\045 Soft Ep-Nyl Gtr XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\046 Sitar-Panpipes XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\047 Soft Pad-Harm Xfade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\048 Swoosh-Big Pad XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\049 Soft Pad-String XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\050 Soft Pad-Sweep XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\051 Soft-Bright Pad Xfade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\052 Soft-Brightscape XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\053 Perc Morpher XFade.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\054 7th Driven Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\055 Deep Core Sonic Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\056 Filmscape 3.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\057 Bouncy HP Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\058 Hollywood.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\059 Keep Still Pad.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\060 Layer 5th.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\061 Nirvana Guitar Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\062 Phantastica.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\063 Spherosonic.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\064 Sweep It.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\065 Sweeping World.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\066 Sweet Sizzle Layer.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\067 Standards XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\068 Keyboarders XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\069 Jazz XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\070 House Stack XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\071 Stab XSplit.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\072 Big Joe Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\073 Pop RnB Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\074 RnB Jam Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\075 Dble Bass+Piano Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\076 Dble Bass+Vibes Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\077 Bass+Organ Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\078 Bass+Wah Guitar Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\079 Dream Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\080 Techno Split 1.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\081 Techno Split 2.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\082 Techno Split 3.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\083 Analog Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\084 Bassline+Saw Lead.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\085 Syn Bass+Lead 1 Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\086 Syn Bass+Lead 2 Split.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\087 Lost In Space.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\088 Hurricane.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\089 FX Menu.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\090 Space FX Fades.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\091 Frontal Rear.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\092 Sacral Room.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\093 Lunatic Room.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\094 Surround About.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\095 Raum Zeitlos.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\096 Quadroloops n Noises.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\097 Downtown.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\098 Surrounded By Crowd.fxb
C:\Program Files\Pinnacle\Shared Files\SoundStage\Hypersonic Content\Patches\120 Combis\099 Wind + Water.fxb




¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
0
maxou552 Messages postés 162 Statut Membre 6
 
up
0
maxou552 Messages postés 162 Statut Membre 6
 
Que me dit ce rapport?
MErci d'avance
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
▶ Relance List&Kill'em(soit en clic droit pour vista),avec le raccourci sur ton bureau.
mais cette fois-ci :

▶ choisis l'option 2 = Mode Suppression

laisse travailler l'outil.

en fin de scan un rapport s'ouvre

▶ colle le contenu dans ta reponse
0
maxou552 Messages postés 162 Statut Membre 6
 
Voila:

Kill'em by g3n-h@ckm@n 1.2.0.0

User : Pierrick ()
Update on 19/01/2010 by g3n-h@ckm@n ::::: 15:30
Start at: 16:59:55 | 21/01/2010
Contact : g3n-h@ckm@n sur CCM

Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 8.0.6001.18865
Windows Firewall Status : Enabled
AV : Anti-virus firewall 9.10 9.10 [ Enabled | Updated ]
FW : Anti-virus firewall 9.10[ Enabled ]9.10

C:\ -> Disque fixe local | 74,52 Go (28,14 Go free) [VistaOS] | NTFS
D:\ -> Disque fixe local | 67,69 Go (20,16 Go free) [DATA] | NTFS
E:\ -> Disque CD-ROM
G:\ -> Disque CD-ROM


¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running

C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\Explorer.EXE
C:\Program Files\List_Kill'em\List_Kill'em.exe
C:\Windows\system32\cmd.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\Pierrick\AppData\Local\Temp\A5C.tmp\pv.exe

Detections :
==========


¤¤¤¤¤¤¤¤¤¤ Files/folders :

Quarantined & Deleted !! : C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
Quarantined & Deleted !! : C:\Restore\S-1-5-21-1482476501-1644491937-682003330-1013
Quarantined & Deleted !! : C:\Program Files\Ask.com
Quarantined & Deleted !! : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}


==============
host file OK !
==============

========
Registry
========
Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440}

============
Disk Cleaned
============

================
Prefetch cleaned
================



¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤



MErci de votre aide
0
Utilisateur anonyme
 
relance List_Kill'em option desinstaller

ensuite :


▶ Désactivez le contrôle des comptes utilisateurs avant utilisation de cet outil:

▶ Allez dans "Démarrer" puis Panneau de configuration.
▶ Double Cliquez sur l'icône Comptes d'utilisateurs et sur "Activer ou désactiver le contrôle des comptes d'utilisateurs".
▶ Décochez la case Utiliser le contrôle des comptes d'utilisateurs pour vous aider à protéger votre ordinateur.
▶ Validez par OK et redémarrez .

ensuite

▶ Télécharge Ad-remover ( de C_XX ) sur ton bureau :


▶ Déconnecte toi et ferme toutes applications en cours !

▶ clic droit sur "Ad-R.exe" en tant qu'administrateur pour lancer l'installation et laisse les paramètres d'installation par défaut .

▶ clic droit sur le raccourci Ad-remover en tant qu'administrateur qui est sur ton bureau pour lancer l'outil .

▶ Au menu principal choisis l'option "L" et tape sur [entrée] .

▶ Laisse travailler l'outil et ne touche à rien ...

▶ Poste le rapport qui apparait à la fin , sur le forum ...

( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )

▶ Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
0
maxou552 Messages postés 162 Statut Membre 6
 
Le voila enfin, désolé du retard mais ce n'est pas mon pc qui a ce probleme et j'ai pas vu la personne depuis jeudi.

Encore merci de votre aide



======= RAPPORT D'AD-REMOVER 1.1.4.6_I | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 21.01.2010 à 9:13
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 22:00:37, 24/01/2010 | Mode sans echec | Option: SCAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows Vista™ HomePremium Service Pack 2 v6.0.6000
Nom du PC: PC-DE-PIERRICK | Utilisateur actuel: Pierrick
.
============== ÉLÉMENT(S) TROUVÉ(S) ==============
.

C:\Users\Pierrick\AppData\Roaming\Mozilla\FireFox\Profiles\2how000n.default\extensions\toolbar@ask.com
C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
C:\Users\Pierrick\AppData\Local\Temp\AskSearch
C:\Users\Pierrick\AppData\Local\AskToolbar
C:\Users\Pierrick\AppData\LocalLow\AskToolbar
.
HKCU\software\appdatalow\AskToolbarInfo
HKCU\software\appdatalow\software\AskToolbar
HKCU\software\Ask.com
HKCU\software\AskToolbar
HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC}
HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
HKLM\software\classes\appid\GenericAskToolbar.DLL
HKLM\Software\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\software\classes\GenericAskToolbar.ToolbarWnd
HKLM\software\classes\GenericAskToolbar.ToolbarWnd.1
HKLM\software\classes\installer\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
HKLM\software\microsoft\windows\currentversion\uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
HKU\s-1-5-21-2931406588-3270994945-4176157322-1000\software\appdatalow\AskToolbarInfo
HKU\s-1-5-21-2931406588-3270994945-4176157322-1000\software\appdatalow\software\AskToolbar
HKU\s-1-5-21-2931406588-3270994945-4176157322-1000\software\Ask.com
HKU\s-1-5-21-2931406588-3270994945-4176157322-1000\software\AskToolbar
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.5.7 [fr] *
.
Nom du profil: 2how000n.default (Pierrick)
.
(Pierrick, prefs.js) Browser.download.dir, d:\Users\Pierrick\Downloads
(Pierrick, prefs.js) Browser.download.lastDir, d:\Users\Pierrick\Desktop
(Pierrick, prefs.js) Browser.search.defaultenginename, Yahoo! Search
(Pierrick, prefs.js) Browser.search.defaulturl, hxxp://www.bing.com/search?FORM=IEFM1&q=
(Pierrick, prefs.js) Browser.search.selectedEngine, Google
(Pierrick, prefs.js) Browser.startup.homepage, hxxp://go.microsoft.com/fwlink/?LinkId=69157
(Pierrick, prefs.js) Extensions.enabledItems, toolbar@ask.com:3.5.2.106,{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.2,litmus-ff@f-secure.com:1.10,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7
(Pierrick, prefs.js) Keyword.URL, hxxp://www.bing.com/search?FORM=IEFM1&q=
.
(Pierrick, prefs.js) TROUVE - Extensions.asktb.cbid, N9
(Pierrick, prefs.js) TROUVE - Extensions.asktb.default-channel-url-mask, hxxp://fr.ask.com/web?q={query}&qsrc={qsrc}&o={o}&l={l}&dm=lang
(Pierrick, prefs.js) TROUVE - Extensions.asktb.fresh-install, false
(Pierrick, prefs.js) TROUVE - Extensions.asktb.l, dis
(Pierrick, prefs.js) TROUVE - Extensions.asktb.last-config-req, 1264169111374
(Pierrick, prefs.js) TROUVE - Extensions.asktb.locale, fr_FR
(Pierrick, prefs.js) TROUVE - Extensions.asktb.nero.userName,
(Pierrick, prefs.js) TROUVE - Extensions.asktb.o, 15418
(Pierrick, prefs.js) TROUVE - Extensions.asktb.overlay-reloaded-using-restart, true
(Pierrick, prefs.js) TROUVE - Extensions.asktb.qsrc, 2871
(Pierrick, prefs.js) TROUVE - Extensions.asktb.r, 2
(Pierrick, prefs.js) TROUVE - Extensions.enabledItems, toolbar@ask.com:3.5.2.106,{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.2,litmus-ff@f-secure.com:1.10,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.7
.
.
* Internet Explorer Version 8.0.6001.18882 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\Windows\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Start Page: hxxp://fr.msn.com/
Use Search Asst: no
Search Bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\Windows\System32\blank.htm
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
525 Octet(s) - C:\Ad-Report-CLEAN[1].log
525 Octet(s) - C:\Ad-Report-CLEAN[2].log
8055 Octet(s) - C:\Ad-Report-SCAN[1].log
.
820 Fichier(s) - C:\Users\Pierrick\AppData\Local\Temp
829 Fichier(s) - C:\Windows\Temp
74 Fichier(s) - C:\Windows\Prefetch
.
22 Fichier(s) - C:\Ad-Remover\BACKUP
0 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 22:04:18 | 24/01/2010 - SCAN[1]
.
============== E.O.F ==============
.
0
Utilisateur anonyme
 
bonsoir :

Télécharge OTL de OLDTimer

enregistre le sur ton Bureau.

▶ Double clic ( pour vista / 7 => clic droit "executer en tant qu'administrateur") sur OTL.exe pour le lancer.

▶ Coche les 2 cases Lop et Purity

▶ Coche la case devant scan all users

▶ règle-le sur "60 Days"

▶ dans la colonne de gauche , mets tout sur all

ne modifie pas ceci :

"files created whithin" et "files modified whithin"


▶Clic sur Run Scan.

A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).

Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)

▶▶▶ NE LE POSTE PAS SUR LE FORUM

Pour me le transmettre clique sur ce lien : http://www.cijoint.fr/

▶ Clique sur Parcourir et cherche le fichier ci-dessus.

▶ Clique sur Ouvrir.

▶ Clique sur "Cliquez ici pour déposer le fichier".

Un lien de cette forme :

http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

est ajouté dans la page.

▶ Copie ce lien dans ta réponse.

▶▶ Tu feras la meme chose avec le "Extra.txt".
0