Voila le rapport "Search" :
¤¤¤¤¤¤¤¤¤¤ List'em by g3n-h@ckm@n 2.1.3.1 ¤¤¤¤¤¤¤¤¤¤
User : Lixfe Gaumont ()
Update on 05/01/2011 by g3n-h@ckm@n ::::: 18.30
Start at: 01:38:04 | 06/01/2011
Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz
Microsoft Windows 7 Édition Familiale Premium (6.1.7600 64-bit) #
Internet Explorer 8.0.7600.16385
Windows Firewall Status : Enabled
C:\ -> Disque fixe local | 584,07 Go (434,76 Go free) [Packard Bell] | NTFS
D:\ -> Disque CD-ROM | 328,05 Mo (0 Mo free) [Digital_LG] | CDFS
¤¤¤¤¤ Sessions ¤¤¤¤¤
C:\Users\Lixfe Gaumont
C:\Users\Public
C:\Users\Default
Boot: Safeboot
¤¤¤¤¤¤ Processes ------- Memory(Ko) ------- Priority ------ Command ------- Signer
C:\Windows\SysWOW64\cmd.exe ---- 3636 Ko ---- High ---- C:\Windows\system32\cmd.exe /K List'em.bat ----
C:\Program Files (x86)\List_Kill'em\pv.L_K ---- 4460 Ko ---- Normal ---- pv.L_K -o%f ---- %m Ko ---- %p ---- %l ---- %s ----
¤¤¤¤¤¤¤¤¤¤ Keys Run ¤¤¤¤¤¤¤¤¤¤
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
cacaoweb = C:\Users\Lixfe Gaumont\AppData\Roaming\cacaoweb\cacaoweb.exe -noplayer
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
avgnt = C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe /min
Adobe Reader Speed Launcher = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Policies\explorer
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
¤¤¤¤¤¤
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
NoActiveDesktop = 1 (0x1)
NoActiveDesktopChanges = 1 (0x1)
ForceActiveDesktopOn = 0 (0x0)
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ AppInit_DLLS
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS =
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Winlogon
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
Shell = explorer.exe
Userinit = C:\Windows\SYSTEM32\Userinit.exe,
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Winlogon\Notify
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Explorer\ShellExecuteHooks
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ firewallpolicy
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
¤¤¤¤¤
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
¤¤¤¤¤¤¤¤¤¤ ActivX
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11CF-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}]
¤¤¤¤¤¤¤¤¤¤ BHO
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
¤¤¤¤¤¤¤¤¤¤ DNS
HKLM\SYSTEM\CS1\Services\Tcpip\..\{F88AE970-A247-41F6-8CEE-1D964C06EBFB}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{2F8CF2A0-C18C-434C-B10E-69983FD6F2B8}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{F88AE970-A247-41F6-8CEE-1D964C06EBFB}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
¤¤¤¤¤¤¤¤¤¤ Internet Explorer
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page = http://fr.msn.com/
Local Page = C:\Windows\SYSTEM32\blank.htm
Default_Search_URL =
Vous devez être
connecté pour voir les liens.
Default_Page_URL =
Vous devez être
connecté pour voir les liens.
Search Page =
Vous devez être
connecté pour voir les liens.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page = http://fr.msn.com/
Local Page = C:\Windows\system32\blank.htm
¤¤¤¤¤ Proxy
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
ProxyEnable = 0 (0x0)
¤¤¤¤¤¤¤¤¤¤ Safemode
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot : OK !!
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal : OK !!
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network : OK !!
¤¤¤¤¤¤¤¤¤¤ SVC | svchost
svchost.exe 584 DcomLaunch, PlugPlay, Power
svchost.exe 664 RpcEptMapper, RpcSs
svchost.exe 720 eventlog
svchost.exe 804 ProfSvc, Winmgmt
svchost.exe 864 wudfsvc
svchost.exe 904 CryptSvc
¤¤¤¤¤¤¤¤¤¤ IFEO | debugger
¤¤¤¤¤¤¤¤¤¤ Mountpoints2
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\e\shell
@ = AutoRun
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\e\shell\AutoRun
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{78557bc6-004e-11e0-bb4d-705ab64ba97c}\shell
@ = None
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{78557bc6-004e-11e0-bb4d-705ab64ba97c}\shell\Autoplay
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c589d852-3e41-4ab2-ada5-3be50d381784}\shell
@ = None
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c589d852-3e41-4ab2-ada5-3be50d381784}\shell\Autoplay
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ebaff481-bcd1-11df-ae7f-705ab64ba97c}\shell
@ = None
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ebaff481-bcd1-11df-ae7f-705ab64ba97c}\shell\Autoplay
¤¤¤¤¤¤¤¤¤¤ Services
¤ Ndisuio => Start : 3 ( OK = 3 )
¤ EapHost => Start : 3 ( OK = 2 )
¤ Wlansvc => Start : 2 ( OK = 2 )
¤ SharedAccess => Start : 3 ( OK = 2 )
¤ windefend => Start : 2 ( OK = 2 )
¤ wuauserv => Start : 2 ( OK = 2 )
¤ wscsvc => Start : 2 ( OK = 2 )
¤¤¤¤¤¤¤¤¤¤ First Scan
Hijack WBEM : Modified : does
¤¤¤¤¤¤¤¤¤¤ HKCU | HKLM
[HKEY_CURRENT_USER\software\Acer]
[HKEY_CURRENT_USER\software\Ad-Remover]
[HKEY_CURRENT_USER\software\Adobe]
[HKEY_CURRENT_USER\software\AppDataLow]
[HKEY_CURRENT_USER\software\Apple Computer, Inc.]
[HKEY_CURRENT_USER\software\Apple Inc.]
[HKEY_CURRENT_USER\software\Avira]
[HKEY_CURRENT_USER\software\BitTorrent]
[HKEY_CURRENT_USER\software\Bomers]
[HKEY_CURRENT_USER\software\cacaoweb]
[HKEY_CURRENT_USER\software\Clients]
[HKEY_CURRENT_USER\software\cybelsoft]
[HKEY_CURRENT_USER\software\Cyberlink]
[HKEY_CURRENT_USER\software\DivX]
[HKEY_CURRENT_USER\software\DivXNetworks]
[HKEY_CURRENT_USER\software\Dritek]
[HKEY_CURRENT_USER\software\DT Soft]
[HKEY_CURRENT_USER\software\Emulators]
[HKEY_CURRENT_USER\software\ESET]
[HKEY_CURRENT_USER\software\Google]
[HKEY_CURRENT_USER\software\IPCameraDSFilter]
[HKEY_CURRENT_USER\software\IPCameraDSFilterRTSP]
[HKEY_CURRENT_USER\software\JavaSoft]
[HKEY_CURRENT_USER\software\Lake]
[HKEY_CURRENT_USER\software\Lexmark 5400 Series]
[HKEY_CURRENT_USER\software\LexmarkPhoto]
[HKEY_CURRENT_USER\software\Liteon]
[HKEY_CURRENT_USER\software\Local AppWizard-Generated Applications]
[HKEY_CURRENT_USER\software\Macromedia]
[HKEY_CURRENT_USER\software\Mainconcept]
[HKEY_CURRENT_USER\software\Malwarebytes' Anti-Malware]
[HKEY_CURRENT_USER\software\Microsoft]
[HKEY_CURRENT_USER\software\Mozilla]
[HKEY_CURRENT_USER\software\MozillaPlugins]
[HKEY_CURRENT_USER\software\MyDefrag]
[HKEY_CURRENT_USER\software\Nero]
[HKEY_CURRENT_USER\software\Netscape]
[HKEY_CURRENT_USER\software\Norton]
[HKEY_CURRENT_USER\software\NVIDIA Corporation]
[HKEY_CURRENT_USER\software\ODBC]
[HKEY_CURRENT_USER\software\OEM]
[HKEY_CURRENT_USER\software\OpenOffice.org]
[HKEY_CURRENT_USER\software\PartyFrance]
[HKEY_CURRENT_USER\software\PhotoFiltre Studio X]
[HKEY_CURRENT_USER\software\Piriform]
[HKEY_CURRENT_USER\software\Policies]
[HKEY_CURRENT_USER\software\Realtek]
[HKEY_CURRENT_USER\software\Skype]
[HKEY_CURRENT_USER\software\SkypeApps]
[HKEY_CURRENT_USER\software\Synaptics]
[HKEY_CURRENT_USER\software\Team17SoftwareLTD]
[HKEY_CURRENT_USER\software\Trolltech]
[HKEY_CURRENT_USER\software\TuneUp]
[HKEY_CURRENT_USER\software\VB and VBA Program Settings]
[HKEY_CURRENT_USER\software\Veetle]
[HKEY_CURRENT_USER\software\VirtualDJ]
[HKEY_CURRENT_USER\software\webcamXP]
[HKEY_CURRENT_USER\software\Wildbits]
[HKEY_CURRENT_USER\software\Windows Live Writer]
[HKEY_CURRENT_USER\software\WinRAR]
[HKEY_CURRENT_USER\software\WinRAR SFX]
[HKEY_CURRENT_USER\software\wLite]
[HKEY_CURRENT_USER\software\Wow6432Node]
[HKEY_CURRENT_USER\software\YahooPartnerToolbar]
[HKEY_CURRENT_USER\software\Classes]
[@ = ]
[HKEY_LOCAL_MACHINE\software\ACE Compression Software]
[HKEY_LOCAL_MACHINE\software\Adobe]
[HKEY_LOCAL_MACHINE\software\AGEIA Technologies]
[HKEY_LOCAL_MACHINE\software\AppDataLow]
[HKEY_LOCAL_MACHINE\software\Apple]
[HKEY_LOCAL_MACHINE\software\Apple Inc.]
[HKEY_LOCAL_MACHINE\software\Audible]
[HKEY_LOCAL_MACHINE\software\Avira]
[HKEY_LOCAL_MACHINE\software\cybelsoft]
[HKEY_LOCAL_MACHINE\software\DivX]
[HKEY_LOCAL_MACHINE\software\DivXNetworks]
[HKEY_LOCAL_MACHINE\software\Dritek]
[HKEY_LOCAL_MACHINE\software\DT Soft]
[HKEY_LOCAL_MACHINE\software\emme]
[HKEY_LOCAL_MACHINE\software\emmegroups]
[HKEY_LOCAL_MACHINE\software\ESET]
[HKEY_LOCAL_MACHINE\software\FRANCE TELECOM]
[HKEY_LOCAL_MACHINE\software\Google]
[HKEY_LOCAL_MACHINE\software\InstallShield]
[HKEY_LOCAL_MACHINE\software\Intel]
[HKEY_LOCAL_MACHINE\software\Internet Download Manager]
[HKEY_LOCAL_MACHINE\software\IPCameraDSFilter]
[HKEY_LOCAL_MACHINE\software\IPCameraDSFilterRTSP]
[HKEY_LOCAL_MACHINE\software\JavaSoft]
[HKEY_LOCAL_MACHINE\software\JDownloader]
[HKEY_LOCAL_MACHINE\software\JreMetrics]
[HKEY_LOCAL_MACHINE\software\Khronos]
[HKEY_LOCAL_MACHINE\software\Lake]
[HKEY_LOCAL_MACHINE\software\LexmarkInkjet]
[HKEY_LOCAL_MACHINE\software\Macromedia]
[HKEY_LOCAL_MACHINE\software\Macrovision]
[HKEY_LOCAL_MACHINE\software\Malwarebytes' Anti-Malware]
[HKEY_LOCAL_MACHINE\software\Microsoft]
[HKEY_LOCAL_MACHINE\software\Mozilla]
[HKEY_LOCAL_MACHINE\software\mozilla.org]
[HKEY_LOCAL_MACHINE\software\MozillaPlugins]
[HKEY_LOCAL_MACHINE\software\Nero]
[HKEY_LOCAL_MACHINE\software\Notepad]
[HKEY_LOCAL_MACHINE\software\ODBC]
[HKEY_LOCAL_MACHINE\software\OEM]
[HKEY_LOCAL_MACHINE\software\OpenOffice.org]
[HKEY_LOCAL_MACHINE\software\Packard Bell]
[HKEY_LOCAL_MACHINE\software\Realtek]
[HKEY_LOCAL_MACHINE\software\Realtek Semiconductor Corp.]
[HKEY_LOCAL_MACHINE\software\Skype]
[HKEY_LOCAL_MACHINE\software\Sonic]
[HKEY_LOCAL_MACHINE\software\Sun Microsystems]
[HKEY_LOCAL_MACHINE\software\Team17 Software Ltd.]
[HKEY_LOCAL_MACHINE\software\TrendMicro]
[HKEY_LOCAL_MACHINE\software\TuneUp]
[HKEY_LOCAL_MACHINE\software\Veetle]
[HKEY_LOCAL_MACHINE\software\VideoLAN]
[HKEY_LOCAL_MACHINE\software\VirtualDJ]
[HKEY_LOCAL_MACHINE\software\Volatile]
[HKEY_LOCAL_MACHINE\software\Windows]
[HKEY_LOCAL_MACHINE\software\wLite]
[HKEY_LOCAL_MACHINE\software\X-AVCSD]
[HKEY_LOCAL_MACHINE\software\Classes]
[HKEY_LOCAL_MACHINE\software\Clients]
[HKEY_LOCAL_MACHINE\software\Policies]
[HKEY_LOCAL_MACHINE\software\RegisteredApplications]
¤¤¤¤¤¤¤¤¤¤ Files/folders ¤¤¤¤¤¤¤¤¤¤
Present !! : C:\Users\Lixfe Gaumont\AppData\Roaming\cacaoweb
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20100803_024709.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20100803_024732bis.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20100813_054210.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20100813_054223-2.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20100820_151014.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20100928_234849.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20101102_011754.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20101102_011813(2).reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20101105_215309.reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20101105_215321(2).reg
Present !! : C:\Users\Lixfe Gaumont\Documents\cc_20101228_031153.reg
Present !! : C:\Users\Lixfe Gaumont\AppData\Local\GDIPFONTCACHEV1.DAT
¤¤¤¤¤¤¤¤¤¤ Keys :
Present !! : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer : NoActiveDesktop
Present !! : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer : NoActiveDesktopChanges
Present !! : HKCR\CLSID\{0055c089-8582-441b-a0bf-17b458c2a3a8}
FEATURE_BROWSER_EMULATION | svchost :
====================================
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
driver loading error catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
Vous devez être
connecté pour voir les liens.
Rootkit scan 2011-01-06 01:40:15
Windows 6.1.7600 WOW64 FAT NTAPI
detected NTDLL code modification:
ZwEnumerateKey 0 != 47, ZwQueryKey 0 != 19, ZwOpenKey 0 != 15, ZwClose 0 != 12, ZwEnumerateValueKey 0 != 16, ZwQueryValueKey 0 != 20, ZwOpenFile 0 != 48, ZwQueryDirectoryFile 0 != 50, ZwQuerySystemInformation 0 != 51Initialization error
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer,
Vous devez être
connecté pour voir les liens.
Windows 6.1.7600
device: opened successfully
user: error reading MBR
Disk trace:
error: Read Descripteur non valide
kernel: error reading MBR
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
End of scan : 1:41:08
scan Clean cela ne marche pas, enfin quand je suis en mode sans écehc la procédure se lance bien mais au bout d'un moment l'explorateur s'ouvre, je le quitte et il ne reste qu'une page noire. Je suis alors obligé de relancer le processus explorer.exe pour retourner au Bureau.. Que dois je faire?
Pour la fin des procédures que tu me dictes, je ferais ca ce soir en rentrant chez moi.
A toute à l'heure.