Je pense etre infecté par un trojan W32
Résolu/Fermé
A voir également:
- Je pense etre infecté par un trojan W32
- Trojan remover - Télécharger - Antivirus & Antimalwares
- Trojan al11 ✓ - Forum Virus
- Trojan win32 - Forum Virus
- Trojan spyware ✓ - Forum Virus
- Google infecté huawei ✓ - Forum Virus
104 réponses
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
24 juil. 2008 à 23:38
24 juil. 2008 à 23:38
renomme combofix.exe en combo-fix.exe.
Lance l'éxecutable.
Si ça ne marche pas, on passe à gmer.
Lance l'éxecutable.
Si ça ne marche pas, on passe à gmer.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
24 juil. 2008 à 23:46
24 juil. 2008 à 23:46
non sa marche toujours pas combofix renommer ... et j'ai remarquer autre chose,
Si je ferme la fenetre "select file to crack" ... au bout de 5 min, j'ai droit a un bel ecran bleu !!! :(
Bon ba ... passons a gmer alors ^^
Si je ferme la fenetre "select file to crack" ... au bout de 5 min, j'ai droit a un bel ecran bleu !!! :(
Bon ba ... passons a gmer alors ^^
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
24 juil. 2008 à 23:52
24 juil. 2008 à 23:52
dézippe-le (clic droit et extraire sur le bureau )
Double-clique sur gmer.exe sur le bureau. Si ton antivirus réagit, ne t'inquiète et ignore l'alerte.
* Clique sur l'onglet "rootkit", puis clique sur scan.
* A la fin du scan, clique sur le bouton save.
cela devrait te sauvegarder un fichier .log
Enregistre-le sur le bureau.
* Edite ce rapport dans ta prochaine réponse.
Double-clique sur gmer.exe sur le bureau. Si ton antivirus réagit, ne t'inquiète et ignore l'alerte.
* Clique sur l'onglet "rootkit", puis clique sur scan.
* A la fin du scan, clique sur le bouton save.
cela devrait te sauvegarder un fichier .log
Enregistre-le sur le bureau.
* Edite ce rapport dans ta prochaine réponse.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
24 juil. 2008 à 23:57
24 juil. 2008 à 23:57
Enfin un truc qui arrive a marcher lol ... voici le log :
GMER 1.0.14.14536 - http://www.gmer.net
Rootkit scan 2008-07-24 23:55:24
Windows 5.1.2600 Service Pack 2
---- Services - GMER 1.0.14 ----
Service D:\WINDOWS\system32\drivers\srosa.sys (*** hidden *** ) [SYSTEM] srosa <-- ROOTKIT !!!
---- Registry - GMER 1.0.14 ----
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468960-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a801-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468961-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468963-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 1
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468964-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\GLOBAL 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Media Player Classic\mplayerc.exe D:\Program Files\Media Player Classic\mplayerc.exe:*:Enabled:Media Player Classic
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\PeerTV\PeerCast.exe D:\Program Files\PeerTV\PeerCast.exe:*:Enabled:PeerCast
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe:*:Enabled:sudoku
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\FlatOut2\FlatOut2.exe J:\Program Files\FlatOut2\FlatOut2.exe:*:Enabled:FlatOut2
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\utorrent\utorrent.exe J:\Program Files\utorrent\utorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logitech\Video\Launcher.exe D:\Program Files\Logitech\Video\Launcher.exe:*:Enabled:Logitech QuickCam
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe:*:Enabled:MessengerDiscovery Live the Windows Live Messenger addon
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\Loader.exe D:\Program Files\MessengerDiscovery\Loader.exe:*:Enabled:Loader
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\FileZilla\FileZilla.exe D:\Program Files\FileZilla\FileZilla.exe:*:Enabled:FileZilla
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Opera\Opera.exe D:\Program Files\Opera\Opera.exe:*:Enabled:Opera Internet Browser
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Dream Match Tennis Pro\FA.exe J:\Program Files\Dream Match Tennis Pro\FA.exe:*:Enabled:FA
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\adsltv.exe D:\Program Files\adslTV\adsltv.exe:*:Enabled:adsl TV
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\vlc.exe D:\Program Files\adslTV\vlc.exe:*:Enabled:vlc.exe
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Valve\Steam\steam.exe J:\Program Files\Valve\Steam\steam.exe:*:Enabled:Steam
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\EarthView\EarthView.exe D:\Program Files\EarthView\EarthView.exe:*:Enabled:EarthView
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\uTorrent\uTorrent.exe D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe:*:Enabled:Pro Evolution Soccer 2008
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVUPlayer\TVUPlayer.exe J:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\SopCast.exe J:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\adv\SopAdver.exe J:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVAnts\Tvants.exe J:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Internet Explorer\iexplore.exe D:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\JLC's Software\Internet TV\Internet TV.exe D:\Program Files\JLC's Software\Internet TV\Internet TV.exe:*:Enabled:Internet TV
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\IEPro\MiniDM.exe D:\Program Files\IEPro\MiniDM.exe:*:Enabled:MiniDM
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\VLC\vlc.exe D:\Program Files\VLC\vlc.exe:*:Enabled:VLC media player
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\tetrinet\TETRINET.EXE J:\Program Files\tetrinet\TETRINET.EXE:*:Enabled:TETRINET
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TmNationsForever\TmForever.exe J:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\msnmsgr.exe D:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\livecall.exe D:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe:*:Disabled:Football Manager 2008
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\eMule\emule.exe j:\Program Files\eMule\emule.exe:*:Enabled:eMuleMorphXT
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ground Control II\gcii.exe J:\Program Files\Ground Control II\gcii.exe:*:Enabled:Ground Control II
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe:*:Enabled:S2DNG
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 -438549677
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 821074155
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 D:\Program Files\DAEMON Tools\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x4D 0x3D 0x1E 0xFF ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0xB1 0x3F 0x46 0xFA ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0xF7 0xD0 0x16 0x7B ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xDD 0x24 0x30 0x6D ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@Start 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@ErrorControl 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@DisplayName Megadrv3
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468960-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a801-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468961-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468963-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 1
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468964-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\GLOBAL 0
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Media Player Classic\mplayerc.exe D:\Program Files\Media Player Classic\mplayerc.exe:*:Enabled:Media Player Classic
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\PeerTV\PeerCast.exe D:\Program Files\PeerTV\PeerCast.exe:*:Enabled:PeerCast
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe:*:Enabled:sudoku
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\FlatOut2\FlatOut2.exe J:\Program Files\FlatOut2\FlatOut2.exe:*:Enabled:FlatOut2
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\utorrent\utorrent.exe J:\Program Files\utorrent\utorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logitech\Video\Launcher.exe D:\Program Files\Logitech\Video\Launcher.exe:*:Enabled:Logitech QuickCam
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe:*:Enabled:MessengerDiscovery Live the Windows Live Messenger addon
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\Loader.exe D:\Program Files\MessengerDiscovery\Loader.exe:*:Enabled:Loader
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\FileZilla\FileZilla.exe D:\Program Files\FileZilla\FileZilla.exe:*:Enabled:FileZilla
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Opera\Opera.exe D:\Program Files\Opera\Opera.exe:*:Enabled:Opera Internet Browser
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Dream Match Tennis Pro\FA.exe J:\Program Files\Dream Match Tennis Pro\FA.exe:*:Enabled:FA
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\adsltv.exe D:\Program Files\adslTV\adsltv.exe:*:Enabled:adsl TV
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\vlc.exe D:\Program Files\adslTV\vlc.exe:*:Enabled:vlc.exe
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Valve\Steam\steam.exe J:\Program Files\Valve\Steam\steam.exe:*:Enabled:Steam
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\EarthView\EarthView.exe D:\Program Files\EarthView\EarthView.exe:*:Enabled:EarthView
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\uTorrent\uTorrent.exe D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe:*:Enabled:Pro Evolution Soccer 2008
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVUPlayer\TVUPlayer.exe J:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\SopCast.exe J:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\adv\SopAdver.exe J:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVAnts\Tvants.exe J:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Internet Explorer\iexplore.exe D:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\JLC's Software\Internet TV\Internet TV.exe D:\Program Files\JLC's Software\Internet TV\Internet TV.exe:*:Enabled:Internet TV
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\IEPro\MiniDM.exe D:\Program Files\IEPro\MiniDM.exe:*:Enabled:MiniDM
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\VLC\vlc.exe D:\Program Files\VLC\vlc.exe:*:Enabled:VLC media player
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\tetrinet\TETRINET.EXE J:\Program Files\tetrinet\TETRINET.EXE:*:Enabled:TETRINET
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TmNationsForever\TmForever.exe J:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\msnmsgr.exe D:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\livecall.exe D:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe:*:Disabled:Football Manager 2008
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\eMule\emule.exe j:\Program Files\eMule\emule.exe:*:Enabled:eMuleMorphXT
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ground Control II\gcii.exe J:\Program Files\Ground Control II\gcii.exe:*:Enabled:Ground Control II
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe:*:Enabled:S2DNG
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 D:\Program Files\DAEMON Tools\
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x4D 0x3D 0x1E 0xFF ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0xB1 0x3F 0x46 0xFA ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0xF7 0xD0 0x16 0x7B ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xDD 0x24 0x30 0x6D ...
Reg HKLM\SYSTEM\ControlSet002\Services\srosa
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@Type 1
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@Start 1
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@ErrorControl 0
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@DisplayName Megadrv3
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_LocalResources\error.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\App_LocalResources\createPermission.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\App_LocalResources\providerList.ascx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_GlobalResources\AppConfigCommon.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\App_LocalResources\manageSingleRole.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\App_LocalResources\setUpAuthentication.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\App_LocalResources\editUser.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\App_LocalResources\wizardAddUser.ascx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Data\GroupedProviders.xml 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\navigationBar.ascx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig\SmtpSettings.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Code\WebAdminPage.cs 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\WebAdminHelp.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Images\requiredBang.gif 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\managePermissions.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\ProviderList.ascx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\manageSingleRole.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\security.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\addUser.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\wizardAddUser.ascx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\alink.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfdll.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\system32\dfshim.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe.config 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ieexec.exe.config 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe.config 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscomp.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cvtres.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.rsp 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Common.Tasks 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.CSharp.targets 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild\Microsoft.Build.Commontypes.xsd 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild\Microsoft.Build.Core.xsd 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.xsd 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\fusion.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\peverify.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\Program Files\Internet Explorer\MUI\0409\mscorier.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RedistList\FrameworkList.xml 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ilasm.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CLR.mof 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Security.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CORPerfMonSymbols.h 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Culture.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\_dataperfcounters_shared12_neutral.h 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\_NetworkingPerfCounters.h 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.XML.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Design.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExec.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEHost.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorie.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorld.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscortim.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\netfxsbs12.hkf 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ngen.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\normalization.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shar
GMER 1.0.14.14536 - http://www.gmer.net
Rootkit scan 2008-07-24 23:55:24
Windows 5.1.2600 Service Pack 2
---- Services - GMER 1.0.14 ----
Service D:\WINDOWS\system32\drivers\srosa.sys (*** hidden *** ) [SYSTEM] srosa <-- ROOTKIT !!!
---- Registry - GMER 1.0.14 ----
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468960-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a801-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468961-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468963-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 1
Reg HKLM\SYSTEM\CurrentControlSet\Control\MediumCache\{e9468964-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\GLOBAL 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Media Player Classic\mplayerc.exe D:\Program Files\Media Player Classic\mplayerc.exe:*:Enabled:Media Player Classic
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\PeerTV\PeerCast.exe D:\Program Files\PeerTV\PeerCast.exe:*:Enabled:PeerCast
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe:*:Enabled:sudoku
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\FlatOut2\FlatOut2.exe J:\Program Files\FlatOut2\FlatOut2.exe:*:Enabled:FlatOut2
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\utorrent\utorrent.exe J:\Program Files\utorrent\utorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logitech\Video\Launcher.exe D:\Program Files\Logitech\Video\Launcher.exe:*:Enabled:Logitech QuickCam
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe:*:Enabled:MessengerDiscovery Live the Windows Live Messenger addon
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\Loader.exe D:\Program Files\MessengerDiscovery\Loader.exe:*:Enabled:Loader
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\FileZilla\FileZilla.exe D:\Program Files\FileZilla\FileZilla.exe:*:Enabled:FileZilla
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Opera\Opera.exe D:\Program Files\Opera\Opera.exe:*:Enabled:Opera Internet Browser
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Dream Match Tennis Pro\FA.exe J:\Program Files\Dream Match Tennis Pro\FA.exe:*:Enabled:FA
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\adsltv.exe D:\Program Files\adslTV\adsltv.exe:*:Enabled:adsl TV
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\vlc.exe D:\Program Files\adslTV\vlc.exe:*:Enabled:vlc.exe
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Valve\Steam\steam.exe J:\Program Files\Valve\Steam\steam.exe:*:Enabled:Steam
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\EarthView\EarthView.exe D:\Program Files\EarthView\EarthView.exe:*:Enabled:EarthView
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\uTorrent\uTorrent.exe D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe:*:Enabled:Pro Evolution Soccer 2008
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVUPlayer\TVUPlayer.exe J:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\SopCast.exe J:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\adv\SopAdver.exe J:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVAnts\Tvants.exe J:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Internet Explorer\iexplore.exe D:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\JLC's Software\Internet TV\Internet TV.exe D:\Program Files\JLC's Software\Internet TV\Internet TV.exe:*:Enabled:Internet TV
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\IEPro\MiniDM.exe D:\Program Files\IEPro\MiniDM.exe:*:Enabled:MiniDM
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\VLC\vlc.exe D:\Program Files\VLC\vlc.exe:*:Enabled:VLC media player
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\tetrinet\TETRINET.EXE J:\Program Files\tetrinet\TETRINET.EXE:*:Enabled:TETRINET
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TmNationsForever\TmForever.exe J:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\msnmsgr.exe D:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\livecall.exe D:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe:*:Disabled:Football Manager 2008
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\eMule\emule.exe j:\Program Files\eMule\emule.exe:*:Enabled:eMuleMorphXT
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ground Control II\gcii.exe J:\Program Files\Ground Control II\gcii.exe:*:Enabled:Ground Control II
Reg HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe:*:Enabled:S2DNG
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 -438549677
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 821074155
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 D:\Program Files\DAEMON Tools\
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x4D 0x3D 0x1E 0xFF ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0xB1 0x3F 0x46 0xFA ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0xF7 0xD0 0x16 0x7B ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xDD 0x24 0x30 0x6D ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@Type 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@Start 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@ErrorControl 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys
Reg HKLM\SYSTEM\CurrentControlSet\Services\srosa@DisplayName Megadrv3
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468960-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a801-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468961-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 0
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468963-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{a799a802-a46d-11d0-a18c-00a02401dcd4}\GLOBAL 1
Reg HKLM\SYSTEM\ControlSet002\Control\MediumCache\{e9468964-d0bf-11d1-beaf-00a0c9b03baa}-0-0@\\?\PCI#VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11#3&61aaa01&0&58#{65e8773d-8f56-11d0-a3b9-00a0c9223196}\GLOBAL 0
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Media Player Classic\mplayerc.exe D:\Program Files\Media Player Classic\mplayerc.exe:*:Enabled:Media Player Classic
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\PeerTV\PeerCast.exe D:\Program Files\PeerTV\PeerCast.exe:*:Enabled:PeerCast
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe D:\Program Files\Logiciels Sebastien GRENIER\Sudoku\sudoku.exe:*:Enabled:sudoku
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\FlatOut2\FlatOut2.exe J:\Program Files\FlatOut2\FlatOut2.exe:*:Enabled:FlatOut2
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\utorrent\utorrent.exe J:\Program Files\utorrent\utorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Logitech\Video\Launcher.exe D:\Program Files\Logitech\Video\Launcher.exe:*:Enabled:Logitech QuickCam
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe D:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe:*:Enabled:MessengerDiscovery Live the Windows Live Messenger addon
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\MessengerDiscovery\Loader.exe D:\Program Files\MessengerDiscovery\Loader.exe:*:Enabled:Loader
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\FileZilla\FileZilla.exe D:\Program Files\FileZilla\FileZilla.exe:*:Enabled:FileZilla
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Opera\Opera.exe D:\Program Files\Opera\Opera.exe:*:Enabled:Opera Internet Browser
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Dream Match Tennis Pro\FA.exe J:\Program Files\Dream Match Tennis Pro\FA.exe:*:Enabled:FA
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\adsltv.exe D:\Program Files\adslTV\adsltv.exe:*:Enabled:adsl TV
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\adslTV\vlc.exe D:\Program Files\adslTV\vlc.exe:*:Enabled:vlc.exe
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Valve\Steam\steam.exe J:\Program Files\Valve\Steam\steam.exe:*:Enabled:Steam
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\EarthView\EarthView.exe D:\Program Files\EarthView\EarthView.exe:*:Enabled:EarthView
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\uTorrent\uTorrent.exe D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:?Torrent
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe J:\Program Files\KONAMI\Pro Evolution Soccer 2008\PES2008.exe:*:Enabled:Pro Evolution Soccer 2008
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVUPlayer\TVUPlayer.exe J:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\SopCast.exe J:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\SopCast\adv\SopAdver.exe J:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TVAnts\Tvants.exe J:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Internet Explorer\iexplore.exe D:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\JLC's Software\Internet TV\Internet TV.exe D:\Program Files\JLC's Software\Internet TV\Internet TV.exe:*:Enabled:Internet TV
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\IEPro\MiniDM.exe D:\Program Files\IEPro\MiniDM.exe:*:Enabled:MiniDM
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\VLC\vlc.exe D:\Program Files\VLC\vlc.exe:*:Enabled:VLC media player
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\tetrinet\TETRINET.EXE J:\Program Files\tetrinet\TETRINET.EXE:*:Enabled:TETRINET
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe D:\Program Files\Java\jre1.6.0_05\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\TmNationsForever\TmForever.exe J:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\msnmsgr.exe D:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@D:\Program Files\Windows Live\Messenger\livecall.exe D:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe j:\Program Files\Sports Interactive\Football Manager 2008\fm.exe:*:Disabled:Football Manager 2008
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@j:\Program Files\eMule\emule.exe j:\Program Files\eMule\emule.exe:*:Enabled:eMuleMorphXT
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ground Control II\gcii.exe J:\Program Files\Ground Control II\gcii.exe:*:Enabled:Ground Control II
Reg HKLM\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List@J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe J:\Program Files\Ubisoft\Funatics\The Settlers II - 10th Anniversary\bin\S2DNG.exe:*:Enabled:S2DNG
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 D:\Program Files\DAEMON Tools\
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x4D 0x3D 0x1E 0xFF ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0xB1 0x3F 0x46 0xFA ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0xF7 0xD0 0x16 0x7B ...
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xDD 0x24 0x30 0x6D ...
Reg HKLM\SYSTEM\ControlSet002\Services\srosa
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@Type 1
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@Start 1
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@ErrorControl 0
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys
Reg HKLM\SYSTEM\ControlSet002\Services\srosa@DisplayName Megadrv3
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_LocalResources\error.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\App_LocalResources\createPermission.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\App_LocalResources\providerList.ascx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_GlobalResources\AppConfigCommon.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\App_LocalResources\manageSingleRole.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\App_LocalResources\setUpAuthentication.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\App_LocalResources\editUser.aspx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\App_LocalResources\wizardAddUser.ascx.resx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Data\GroupedProviders.xml 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\navigationBar.ascx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig\SmtpSettings.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Code\WebAdminPage.cs 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\WebAdminHelp.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Images\requiredBang.gif 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\managePermissions.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\ProviderList.ascx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\manageSingleRole.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\security.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\addUser.aspx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\wizardAddUser.ascx 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\alink.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfdll.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\system32\dfshim.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe.config 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ieexec.exe.config 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe.config 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscomp.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cvtres.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.rsp 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Common.Tasks 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.CSharp.targets 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild\Microsoft.Build.Commontypes.xsd 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild\Microsoft.Build.Core.xsd 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.xsd 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\fusion.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\peverify.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\Program Files\Internet Explorer\MUI\0409\mscorier.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RedistList\FrameworkList.xml 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ilasm.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CLR.mof 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Security.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CORPerfMonSymbols.h 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Culture.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\_dataperfcounters_shared12_neutral.h 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\_NetworkingPerfCounters.h 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.XML.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Design.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExec.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEHost.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorie.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorld.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscortim.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\netfxsbs12.hkf 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ngen.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\normalization.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls@D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shar
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:04
25 juil. 2008 à 00:04
Tu relances Gmer.
Cette fois-ci, tu choisis l'onglet "Processes"
Sauvegarde le rapport et poste le moi.
Cette fois-ci, tu choisis l'onglet "Processes"
Sauvegarde le rapport et poste le moi.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:06
25 juil. 2008 à 00:06
PS : ce site donne des indication interressante :
http://www.malekal.com//W32.Beagle.KF_Trojan.Tooso.R.php
Notament qu'il faudrai impérativement avoir un c:/ pour elibagla ( est ce que renomer une de mes partition provisoirement avec cette lettre peut résoudre le probleme ??? )
Est ce que le logiciel qu'il propose ( Beagled de sUBs ) vaut le coup ?
http://www.malekal.com//W32.Beagle.KF_Trojan.Tooso.R.php
Notament qu'il faudrai impérativement avoir un c:/ pour elibagla ( est ce que renomer une de mes partition provisoirement avec cette lettre peut résoudre le probleme ??? )
Est ce que le logiciel qu'il propose ( Beagled de sUBs ) vaut le coup ?
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:08
25 juil. 2008 à 00:08
C'est comboFix.
On continue avec gmer.
On continue avec gmer.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:08
25 juil. 2008 à 00:08
j'ai pas d'option "Scan" dans processe ... :(
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:10
25 juil. 2008 à 00:10
Il y a un onglet processes
En haut à côté de Rootkit/Malware , la double flêche.
En haut à côté de Rootkit/Malware , la double flêche.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:11
25 juil. 2008 à 00:11
oui ok .. mais une fois dans processe je fais quoi ? j'ai pas de bouton "scan" ...
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:14
25 juil. 2008 à 00:14
Désolé,
Dans la liste des process, peux-tu regarder si tu trouves wintems.exe, mdelk.exe, flec06.exe ?
Dis-moi lesquels sont présents ?
Dans la liste des process, peux-tu regarder si tu trouves wintems.exe, mdelk.exe, flec06.exe ?
Dis-moi lesquels sont présents ?
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:17
25 juil. 2008 à 00:17
aucun des 3 ... ( je n'ai pas fermer la fenetre du virus "select file to crack" car sinon ecran bleu aprés 5 min ) ... en revenche , en rouge j'ai un truc marquer : "hidden process" PID 1848
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:22
25 juil. 2008 à 00:22
hidden process pour processus caché.
Pourrais-tu aller vérifier la présence des fichers dans D:\windows\system32 ?
Ils sont peut être cachés ( outils --> options des dossiers --> affichage --> afficher les dossiers cachés )
dis moi lesquels des trois sont présents.
A+
Pourrais-tu aller vérifier la présence des fichers dans D:\windows\system32 ?
Ils sont peut être cachés ( outils --> options des dossiers --> affichage --> afficher les dossiers cachés )
dis moi lesquels des trois sont présents.
A+
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:35
25 juil. 2008 à 00:35
bon alors soucis ( décidement, je suis tomber sur un dur a cuire !!! :( ),
Je n'ai aucun des 3 dans system32 ... de plus impossible de trouver " afficher les dossier cacher" ... j'utilise parfois cette fonction donc je sais comment faire mais la ... je trouve pas ... dans affichage y'a pas ...
Je n'ai aucun des 3 dans system32 ... de plus impossible de trouver " afficher les dossier cacher" ... j'utilise parfois cette fonction donc je sais comment faire mais la ... je trouve pas ... dans affichage y'a pas ...
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:39
25 juil. 2008 à 00:39
Bon, on verra bien.
De toute façon, la manip qu'on va faire consiste à supprimer les processus.
Si ils sont présents, ils seront supprimés, sinon, ce n'est pas grave.
Fais la manip suivante. L'ordi devrait redémarrer. Fais moi signe ensuite .
Menu Démarrer --> exécuter et tape : cmd puis clique sur OK.
Tape chacune de ces lignes en appuyant sur la touche entrée à chaque fois pour valider la commande :
Tu peux faire du copier coller.
Copie une ligne --> dans la fenêtre cmd, click droit --> Coller
gmer -killall
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@Start 1"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@ErrorControl 0"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@DisplayName Megadrv3"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@Type 1"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@Start 1"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@ErrorControl 0"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@DisplayName Megadrv3"
gmer -del service srosa.sys
gmer -del file "D:\WINDOWS\system32\drivers\srosa.sys"
gmer -del file "D:\WINDOWS\SYSTEM32\WINTEMS.EXE"
gmer -del file "D:\WINDOWS\SYSTEM32\Mdelk.exe"
gmer -del file "D:\WINDOWS\SYSTEM32\Flec06.exe"
gmer -del file "D:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE"
gmer -reboot
A+
De toute façon, la manip qu'on va faire consiste à supprimer les processus.
Si ils sont présents, ils seront supprimés, sinon, ce n'est pas grave.
Fais la manip suivante. L'ordi devrait redémarrer. Fais moi signe ensuite .
Menu Démarrer --> exécuter et tape : cmd puis clique sur OK.
Tape chacune de ces lignes en appuyant sur la touche entrée à chaque fois pour valider la commande :
Tu peux faire du copier coller.
Copie une ligne --> dans la fenêtre cmd, click droit --> Coller
gmer -killall
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@Start 1"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@ErrorControl 0"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys"
gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa@DisplayName Megadrv3"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@Type 1"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@Start 1"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@ErrorControl 0"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@ImagePath \??\D:\WINDOWS\system32\drivers\srosa.sys"
gmer -del reg "HKLM\SYSTEM\ControlSet002\Services\srosa@DisplayName Megadrv3"
gmer -del service srosa.sys
gmer -del file "D:\WINDOWS\system32\drivers\srosa.sys"
gmer -del file "D:\WINDOWS\SYSTEM32\WINTEMS.EXE"
gmer -del file "D:\WINDOWS\SYSTEM32\Mdelk.exe"
gmer -del file "D:\WINDOWS\SYSTEM32\Flec06.exe"
gmer -del file "D:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE"
gmer -reboot
A+
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:46
25 juil. 2008 à 00:46
faut que je tape cest ligne de d:\ ou de n'importe ou ? ( la en locurence je suis dans d:\documents and settings\Trex\ ... ?
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:49
25 juil. 2008 à 00:49
Va à la racine : tape cd.. puis entrée plusieurs fois pour arrriver à d:
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:51
25 juil. 2008 à 00:51
quand je tape la 1ere ligne j'ai :
"D:\windows\gner.dll est introuvable" suivie de "creatfile D:\windows\system32\drivers\gmer.sys : le fichier spécifier est introuvable" ...
PAS DE BOLLE JUSQUE LA QUAND MEME !!! :( lol
"D:\windows\gner.dll est introuvable" suivie de "creatfile D:\windows\system32\drivers\gmer.sys : le fichier spécifier est introuvable" ...
PAS DE BOLLE JUSQUE LA QUAND MEME !!! :( lol
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 00:53
25 juil. 2008 à 00:53
tape exit et recommence sans changer de chemin.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 00:57
25 juil. 2008 à 00:57
et quand je tape la commande "gmer -del reg "HKLM\SYSTEM\CurrentControlSet\Services\srosa"" j'ai droit a :
la meme chose que ci-dessus plus :
Warning !!!
loaded gmer's driver version is uncompatible with the currently running GMER application. You need to stop the driver with the command "net stop gmer" or restart your computer.
:(
la meme chose que ci-dessus plus :
Warning !!!
loaded gmer's driver version is uncompatible with the currently running GMER application. You need to stop the driver with the command "net stop gmer" or restart your computer.
:(
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 01:03
25 juil. 2008 à 01:03
Tu vas essayer avec ce lien de téléchargement.
http://www.gmer.net#files
Dézippe le sur le bureau et recommence la manip avec la fenêtre de commnades ms-dos ( cmd ).
On avise après.
http://www.gmer.net#files
Dézippe le sur le bureau et recommence la manip avec la fenêtre de commnades ms-dos ( cmd ).
On avise après.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 01:03
25 juil. 2008 à 01:03
sa marche pas mieux ... je crois que pour ce soir, je vais arreter la ... j'embauche a 6h du mat ... mais je serai la dès 14h ... je ne sais pas si tu sera la mais bon, sa m'embete bien cette histoire !!! :(
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 01:06
25 juil. 2008 à 01:06
OK.
Demain à 14 h.
Demain à 14 h.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 01:07
25 juil. 2008 à 01:07
meme soucis ... je me demande si il faudrai pas que je renomme mon D: en C: ... mais je crains que sa ne mette le bazard ...
verni29
Messages postés
6699
Date d'inscription
dimanche 6 juillet 2008
Statut
Contributeur sécurité
Dernière intervention
26 décembre 2016
180
25 juil. 2008 à 01:09
25 juil. 2008 à 01:09
ca mettra le bazard complet, sur et certain.
Plus aucun programme ne marchera.
Je vais aller chercher de l'aide pour demain.
Plus aucun programme ne marchera.
Je vais aller chercher de l'aide pour demain.
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 01:10
25 juil. 2008 à 01:10
ok, a demain, et merci de ton aide et de ta disponibilité ... car la ... je suis a cours de solution et je souhaite que le formatage ne sois que l'ultime recours ( meme si je ne formaterai que la partition D: qui ne contient que windows, mais comme tu le sais ... meme si on a les autres logiciel ailleur, faut tout réinstaller sinon sa marche pas !!! a moin que ... tu ne connaisse une manip miracle !!! lol ;) )...
Mais bon, c'est pas un p'tit bout de programme qui va faire sa loi !!! a demain !!! ;)
Mais bon, c'est pas un p'tit bout de programme qui va faire sa loi !!! a demain !!! ;)
Utilisateur anonyme
25 juil. 2008 à 01:50
25 juil. 2008 à 01:50
Salut
a ton retour demain
fais ceci :
Télécharge ToolsCleaner sur ton bureau.
-->
ftp://ftp.commentcamarche.com/download/ToolsCleaner2.exe
http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
http://pc-system.fr/
# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
ensuite :
Télécharge sur ton bureau DSS (ex Comboscan) de Deckard:
http://deckard.geekstogo.com/dss.exe
(choisis enregistrer, puis Bureau comme emplacement)
Ferme toutes les applications en cours.
Double-clic sur DSS.exe pour lancer l'outil.
Une fenêtre s'ouvre, invitant à fermer toutes les applications, clique sur OK.
A la fin de l'analyse, une fenêtre s'ouvre, clique sur OK.
Le rapport main.txt va s'afficher, copie le dans ta prochaine réponse.
Si un rapport complémentaire a été créé ( extra.txt ), poste le aussi dans ta réponse.
Les rapports sont ici :
(!) C:\Deckard\System Scanner\main.txt
(!) C:\Deckard\System Scanner\extra.txt
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
a ton retour demain
fais ceci :
Télécharge ToolsCleaner sur ton bureau.
-->
ftp://ftp.commentcamarche.com/download/ToolsCleaner2.exe
http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
http://pc-system.fr/
# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
ensuite :
Télécharge sur ton bureau DSS (ex Comboscan) de Deckard:
http://deckard.geekstogo.com/dss.exe
(choisis enregistrer, puis Bureau comme emplacement)
Ferme toutes les applications en cours.
Double-clic sur DSS.exe pour lancer l'outil.
Une fenêtre s'ouvre, invitant à fermer toutes les applications, clique sur OK.
A la fin de l'analyse, une fenêtre s'ouvre, clique sur OK.
Le rapport main.txt va s'afficher, copie le dans ta prochaine réponse.
Si un rapport complémentaire a été créé ( extra.txt ), poste le aussi dans ta réponse.
Les rapports sont ici :
(!) C:\Deckard\System Scanner\main.txt
(!) C:\Deckard\System Scanner\extra.txt
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Zouky86
Messages postés
58
Date d'inscription
jeudi 24 juillet 2008
Statut
Membre
Dernière intervention
26 juillet 2008
25 juil. 2008 à 13:38
25 juil. 2008 à 13:38
coucou, bon, deja j'ai résolu un soucis , celui du rapport de elibagle, j'ai en faite renomer la lettre de lecteur prise en compte quand je met ma clé usb ... j'ai renomer temporairement celle ci en c: le temps de l'analyse et voici le triste résultat :
Fri Jul 25 13:32:57 2008
EliBagle v11.62 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 24 de Julio del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
Fri Jul 25 13:33:01 2008
EliBagle v11.62 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 24 de Julio del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad D:\
Nº Total de Directorios: 4218
Nº Total de Ficheros: 42398
Nº de Ficheros Analizados: 7487
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0
Et oui, il ne me trouve rien sur ma partition contenant windows ...
Fri Jul 25 13:32:57 2008
EliBagle v11.62 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 24 de Julio del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
Fri Jul 25 13:33:01 2008
EliBagle v11.62 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 24 de Julio del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad D:\
Nº Total de Directorios: 4218
Nº Total de Ficheros: 42398
Nº de Ficheros Analizados: 7487
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0
Et oui, il ne me trouve rien sur ma partition contenant windows ...