Aller au contenu

gdazouzou

Membres
  • Compteur de contenus

    14
  • Inscription

  • Dernière visite

Messages posté(e)s par gdazouzou

  1. Bonjour,

     

    J'ai un problème sur mon pc je veux installer un connecteur wifi usb nintendo pour que mon fils puisse jouer à la DS en wifi. Je l'avais installer et il fonctionnait correctement mais je l'ai désinstaller.

    Lorsque je lance l'installation il me met erreur de partage de la connexion internet (6) et arrête l'installation, donc je suis allée sur ma connexion internet (wanadoo 1024) et j'ai voulu mettre le partage des connexions et là il me met que le serveur RPC n'est pas disponible et pourtant il est activé en automatique.

     

    Si quelqu'un à une réponse merci d'avance.

     

    Nathalie

  2. KASPERSKY ONLINE SCANNER REPORT

    Sunday, July 30, 2006 7:41:51 PM

    Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

    Kaspersky Online Scanner version: 5.0.83.0

    Kaspersky Anti-Virus database last update: 30/07/2006

    Kaspersky Anti-Virus database records: 198299

    Scan Settings

    Scan using the following antivirus database standard

    Scan Archives true

    Scan Mail Bases true

    Scan Target My Computer

    A:\

    C:\

    D:\

    E:\

    Scan Statistics

    Total number of scanned objects 65056

    Number of viruses found 0

    Number of infected objects 0 / 0

    Number of suspicious objects 0

    Duration of the scan process 00:52:30

     

    Infected Object Name Virus Name Last Action

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cert8.db Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\formhistory.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\history.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\key3.db Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\parent.lock Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\call256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\callmember256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\chat512.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\contactgroup256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\index2.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\message256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\profile16384.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer512.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user1024.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user16384.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user4096.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\voicemail256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Cookies\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_001_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_002_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_003_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_MAP_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\MSHist012006073020060731\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\Propriétaire\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\Propriétaire\UserData\index.dat Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWDocMap.pht Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWInfopakMap.pht Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\D0000000.FCS Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\inuse.txt Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\L0000002.FCS Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\main.log Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.idx Object is locked skipped

    C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP637\change.log Object is locked skipped

    C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

    C:\WINDOWS\pfirewall.log Object is locked skipped

    C:\WINDOWS\SchedLgU.Txt Object is locked skipped

    C:\WINDOWS\SoftwareDistribution\EventCache\{4884BA1D-D3D5-449B-A484-8E58FB2D67AD}.bin Object is locked skipped

    C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

    C:\WINDOWS\Sti_Trace.log Object is locked skipped

    C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

    C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

    C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped

    C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

    C:\WINDOWS\system32\config\default Object is locked skipped

    C:\WINDOWS\system32\config\default.LOG Object is locked skipped

    C:\WINDOWS\system32\config\SAM Object is locked skipped

    C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

    C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

    C:\WINDOWS\system32\config\SECURITY Object is locked skipped

    C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

    C:\WINDOWS\system32\config\software Object is locked skipped

    C:\WINDOWS\system32\config\software.LOG Object is locked skipped

    C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

    C:\WINDOWS\system32\config\system Object is locked skipped

    C:\WINDOWS\system32\config\system.LOG Object is locked skipped

    C:\WINDOWS\system32\h323log.txt Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

    C:\WINDOWS\Temp\Perflib_Perfdata_54c.dat Object is locked skipped

    C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped

    C:\WINDOWS\wiadebug.log Object is locked skipped

    C:\WINDOWS\wiaservc.log Object is locked skipped

    C:\WINDOWS\WindowsUpdate.log Object is locked skipped

    Scan process completed.

  3. ewido anti-spyware - Scan Report

    ---------------------------------------------------------

     

    + Created at: 16:35:08 30/07/2006

     

    + Scan result:

     

     

     

    C:\Program Files\IncrediMail\bin\Incredimail Premium + CRACK + KEYGEN.exe -> Downloader.Zlob.nr : Cleaned with backup (quarantined).

    C:\Program Files\eMule\Incoming\Incredimail Premium + CRACK + KEYGEN.exe -> Downloader.Zlob.nr : Cleaned with backup (quarantined).

    :mozilla.247:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

    :mozilla.248:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

    :mozilla.249:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

    :mozilla.250:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

    :mozilla.251:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

    :mozilla.267:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.324:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.327:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.333:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.334:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.335:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.339:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.340:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.585:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.791:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.797:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

    :mozilla.876:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

    :mozilla.877:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

    :mozilla.233:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.

    :mozilla.234:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.

    C:\Documents and Settings\Propriétaire\Cookies\nathalie@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.

    :mozilla.378:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

    :mozilla.379:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

    :mozilla.380:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

    :mozilla.381:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

    :mozilla.382:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

    :mozilla.162:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned.

    :mozilla.275:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.

    :mozilla.145:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

    :mozilla.328:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

    :mozilla.59:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

    C:\Documents and Settings\Propriétaire\Cookies\nathalie@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.

    C:\RECYCLER\S-1-5-21-436374069-1788223648-839522115-1003\Dc49\propriétaire@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.

    :mozilla.691:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

    :mozilla.692:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

    :mozilla.693:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

    :mozilla.11:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.12:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.13:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.14:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.817:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.818:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.819:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.

    :mozilla.894:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.

    :mozilla.457:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Counted : Cleaned.

    :mozilla.134:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.

    :mozilla.131:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Estat : Cleaned.

    :mozilla.9:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Estat : Cleaned.

    C:\Documents and Settings\Propriétaire\Cookies\nathalie@estat[1].txt -> TrackingCookie.Estat : Cleaned.

    C:\RECYCLER\S-1-5-21-436374069-1788223648-839522115-1003\Dc49\propriétaire@estat[1].txt -> TrackingCookie.Estat : Cleaned.

    :mozilla.193:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.194:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.195:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.569:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.570:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.571:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.572:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.573:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.889:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

    :mozilla.891:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

    :mozilla.122:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.144:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.178:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.196:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.215:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.216:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.217:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.239:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.23:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.242:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.259:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.260:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.268:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.509:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.513:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.564:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.597:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.602:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.603:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.636:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.667:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.706:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.712:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.730:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.775:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

    :mozilla.164:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.165:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.166:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.167:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.168:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.465:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.466:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.664:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.880:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.881:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.882:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.883:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.884:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.903:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.940:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.941:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.942:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

    :mozilla.56:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

    :mozilla.57:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

    :mozilla.58:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

    :mozilla.59:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

    :mozilla.292:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

    :mozilla.57:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

    :mozilla.58:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

    :mozilla.61:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Overture : Cleaned.

    :mozilla.62:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Overture : Cleaned.

    :mozilla.848:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

    :mozilla.849:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

    :mozilla.850:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

    :mozilla.851:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

    :mozilla.707:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.

    :mozilla.708:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.

    :mozilla.91:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

    :mozilla.95:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

    :mozilla.96:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

    :mozilla.97:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

    :mozilla.98:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

    :mozilla.925:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.

    :mozilla.724:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

    :mozilla.725:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

    :mozilla.726:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

    :mozilla.727:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

    :mozilla.728:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

    :mozilla.236:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.237:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.439:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.440:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.504:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.505:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.507:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.508:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.511:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.682:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.683:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.711:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.854:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.855:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

    :mozilla.123:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.124:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.125:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.126:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.75:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.76:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.77:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

    :mozilla.558:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

    :mozilla.559:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

    :mozilla.116:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.117:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.118:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.119:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.120:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.45:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.50:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

    C:\Documents and Settings\Propriétaire\Cookies\nathalie@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.

    :mozilla.656:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.

    :mozilla.243:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.

    :mozilla.244:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.

    :mozilla.130:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.

    :mozilla.132:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.

    :mozilla.135:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.

    :mozilla.51:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned.

    :mozilla.52:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned.

    :mozilla.53:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned.

    C:\Documents and Settings\Propriétaire\Cookies\nathalie@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.

    :mozilla.140:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

    :mozilla.141:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

    :mozilla.254:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

    :mozilla.255:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

    :mozilla.755:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

    :mozilla.100:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

    :mozilla.101:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

    :mozilla.102:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

    :mozilla.104:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

     

     

    ::Report end

     

    Script clean par Malekal_morte - http://www.malekal.com

     

    *** SUPPRESSION DES FICHIERS

     

     

     

    *** Suppressions de trojans/vers sur...

    C:\WINDOWS\smdat32m.sys FOUND

    C:\WINDOWS\unvise32qt.exe FOUND

     

     

     

    *** Suppressions des adware connus...

     

     

    Logfile of HijackThis v1.99.1

    Scan saved at 18:01:47, on 30/07/2006

    Platform: Windows XP SP2 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    C:\Program Files\Alwil Software\Avast4\ashServ.exe

    C:\Program Files\ewido anti-spyware 4.0\guard.exe

    C:\WINDOWS\System32\FTRTSVC.exe

    C:\WINDOWS\system32\nvsvc32.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\CAPRPCSK.EXE

    C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe

    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

    C:\WINDOWS\Explorer.EXE

    C:\WINDOWS\SOUNDMAN.EXE

    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe

    C:\Program Files\Logitech\iTouch\iTouch.exe

    C:\Program Files\QuickTime\qttask.exe

    C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe

    C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

    C:\Program Files\Logitech\ImageStudio\LogiTray.exe

    C:\Program Files\Winamp\winampa.exe

    C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

    C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe

    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe

    C:\Program Files\Logitech\ImageStudio\LowLight.exe

    C:\Program Files\WiFiConnector\NintendoWFCReg.exe

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

    C:\OLIFAXVX\TOOLBAR.EXE

    C:\PROGRA~1\Wanadoo\ComComp.exe

    C:\WINDOWS\system32\ntvdm.exe

    C:\PROGRA~1\Wanadoo\Toaster.exe

    C:\PROGRA~1\Wanadoo\Inactivity.exe

    C:\PROGRA~1\Wanadoo\PollingModule.exe

    C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE

    C:\PROGRA~1\Wanadoo\Watch.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

     

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navcli...fr&ie=UTF-8

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

    R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

    O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

    O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

    O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"

    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

    O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe

    O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe

    O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background

    O4 - HKLM\..\Run: [CAPON] C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAPONN.EXE

    O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

    O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe

    O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe

    O4 - HKLM\..\Run: [ulead Memory Card Detector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

    O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"

    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

    O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

    O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe

    O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE

    O4 - Startup: Moniteur Fax-Voix.lnk = C:\OLIFAXVX\MONITEUR.EXE

    O4 - Global Startup: Fenêtre d'état Canon LBP-800.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

    O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe

    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe

    O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html

    O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html

    O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html

    O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html

    O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html

    O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)

    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab

    O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Media Bar) - http://sib1.od2.com/common/musicmanager/in...nagerPlugin.CAB

    O17 - HKLM\System\CCS\Services\Tcpip\..\{A93E0375-4ADC-47BD-9E91-2909954CED87}: NameServer = 80.10.246.130 80.10.246.3

    O18 - Protocol: bw+0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw+0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw-0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw-0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw00 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw00s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw10 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw10s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw20 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw20s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw30 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw30s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw40 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw40s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw50 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw50s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw60 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw60s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw70 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw70s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw80 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw80s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw90 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw90s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwa0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwa0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwb0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwb0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwc0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwc0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwd0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwd0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwe0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwe0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwf0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwf0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

    O18 - Protocol: bwg0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwg0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwh0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwh0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwi0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwi0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwj0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwj0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwk0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwk0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwl0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwl0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwm0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwm0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwn0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwn0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwo0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwo0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwp0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwp0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwq0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwq0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwr0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwr0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bws0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bws0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwt0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwt0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwu0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwu0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwv0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwv0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bww0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bww0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwx0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwx0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwy0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwy0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwz0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwz0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

    O18 - Protocol: offline-8876480 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

    O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)

    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe

    O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

  4. Sunday, July 30, 2006 5:54:50 PM

    Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

    Kaspersky Online Scanner version: 5.0.83.0

    Kaspersky Anti-Virus database last update: 30/07/2006

    Kaspersky Anti-Virus database records: 198286

    Scan Settings

    Scan using the following antivirus database standard

    Scan Archives true

    Scan Mail Bases true

    Scan Target My Computer

    A:\

    C:\

    D:\

    E:\

    Scan Statistics

    Total number of scanned objects 76711

    Number of viruses found 3

    Number of infected objects 1607 / 0

    Number of suspicious objects 0

    Duration of the scan process 01:00:20

     

    Infected Object Name Virus Name Last Action

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

    C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cert8.db Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\history.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\key3.db Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\parent.lock Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\call256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\callmember256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\chat512.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\contactgroup256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\index2.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\message256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\profile16384.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer512.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user1024.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user16384.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user4096.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\voicemail256.dbb Object is locked skipped

    C:\Documents and Settings\Propriétaire\Cookies\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_001_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_002_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_003_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_MAP_ Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\Propriétaire\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\Propriétaire\ntuser.dat.LOG Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWDocMap.pht Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWInfopakMap.pht Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\D0000000.FCS Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\inuse.txt Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\L0000002.FCS Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\main.log Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.idx Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.dat Object is locked skipped

    C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.idx Object is locked skipped

    C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191421.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191422.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191423.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191424.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191425.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191426.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191427.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191428.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191429.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191430.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191431.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191432.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191433.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191434.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191435.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191436.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191437.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191438.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191439.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191440.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191441.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191442.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191443.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191444.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191445.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191446.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191447.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191448.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191449.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191450.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191451.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191452.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191453.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191454.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191455.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191456.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191457.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191458.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191459.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191460.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191461.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191462.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191463.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191464.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191465.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191466.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191467.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191468.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191469.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191470.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191471.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191472.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191473.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191474.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191475.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191476.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191477.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191478.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191479.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191480.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191481.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191482.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191483.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191484.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191485.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191486.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191487.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191488.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191489.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191490.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191491.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191492.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191493.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191494.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191495.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191496.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191497.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191498.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191499.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191500.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191501.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191502.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191503.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191504.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191505.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191506.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191507.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191508.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191509.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191510.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191511.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191512.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191513.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191514.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191515.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191516.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191517.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191518.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191519.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191520.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191521.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191522.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191523.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191524.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191525.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191526.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191527.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191528.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191529.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191530.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191531.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191532.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191533.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191534.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191535.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191536.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191537.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191538.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191539.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191540.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191541.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191542.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191543.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191544.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191545.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191546.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191547.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191548.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191549.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191550.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191551.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191552.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191553.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191554.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191555.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191556.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191557.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191558.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191559.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191560.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191561.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191562.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191563.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191564.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191565.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191566.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191567.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191568.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191569.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191570.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191571.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191572.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191573.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191574.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191575.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191576.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191577.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191578.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191579.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191580.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191581.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191582.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191583.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191584.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191585.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191586.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191587.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191588.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191589.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191590.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191591.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191592.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191593.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191594.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191595.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191596.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191597.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191598.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191599.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191600.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191601.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191602.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191603.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191604.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191605.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191606.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191607.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191608.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191609.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191610.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191611.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191612.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191613.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191614.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191615.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191616.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191617.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191618.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191619.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191620.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191621.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191622.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191623.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191624.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191625.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191626.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191627.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191628.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191629.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191630.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191631.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191632.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191633.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191634.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191635.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191636.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191637.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191638.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191639.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191640.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191641.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191642.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191643.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191644.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191645.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191646.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191647.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191648.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191649.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191650.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191651.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191652.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191653.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191654.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191655.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191656.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191657.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191658.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191659.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191660.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191661.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191662.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191663.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191664.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191665.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191666.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191667.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191668.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191669.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191670.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191671.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191672.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191673.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191674.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191675.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191676.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191677.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191678.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191679.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191680.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191681.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191682.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191683.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191684.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191685.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191686.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191687.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191688.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191689.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191690.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191691.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191692.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191693.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191694.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191695.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191696.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191697.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191698.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191699.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191700.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191701.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191702.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191703.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191704.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191705.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191706.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191707.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191708.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191709.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191710.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191711.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191712.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191713.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191714.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191715.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191716.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191717.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191718.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191719.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191720.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191721.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191722.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191723.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191724.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191725.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191726.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191727.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191728.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191729.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191730.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191731.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191732.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191733.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191734.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191735.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191736.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191737.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191738.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191739.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191740.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191741.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191742.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191743.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191744.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191745.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191746.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191747.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191748.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191749.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191750.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191751.exe Infected: P2P-Worm.Win32.VB.dz skipped

    C:\S

  5. C:\WINDOWS\System32\wpa.dbl -->30/07/2006 14:58:53

    C:\WINDOWS\System32\nvapps.xml -->30/07/2006 14:58:53

    C:\WINDOWS\System32\perfh040.dat -->16/07/2006 19:59:25

    C:\WINDOWS\System32\perfc040.dat -->16/07/2006 19:59:25

    C:\WINDOWS\System32\PerfStringBackup.INI -->16/07/2006 19:55:10

    C:\WINDOWS\System32\perfh00C.dat -->16/07/2006 19:55:10

    C:\WINDOWS\System32\perfh009.dat -->16/07/2006 19:55:10

    C:\WINDOWS\System32\perfc00C.dat -->16/07/2006 19:55:10

    C:\WINDOWS\System32\perfc009.dat -->16/07/2006 19:55:10

    C:\WINDOWS\System32\zllictbl.dat -->16/07/2006 18:53:56

    C:\WINDOWS\System32\MRT.exe -->07/07/2006 03:21:46

    C:\WINDOWS\System32\rasmans.dll -->22/06/2006 12:48:06

    C:\WINDOWS\System32\WgaLogon.dll -->19/06/2006 16:20:42

    C:\WINDOWS\System32\LegitCheckControl.dll -->19/06/2006 16:19:42

    C:\WINDOWS\System32\WgaTray.exe -->19/06/2006 16:19:26

    C:\WINDOWS\System32\CONFIG.NT -->06/06/2006 06:36:39

    C:\WINDOWS\System32\jgpl400.dll -->01/06/2006 20:48:44

    C:\WINDOWS\System32\jgdw400.dll -->01/06/2006 20:48:44

    C:\WINDOWS\System32\aswBoot.exe -->31/05/2006 11:02:04

    C:\WINDOWS\System32\AVASTSS.scr -->31/05/2006 10:54:35

    C:\WINDOWS\System32\shdocvw.dll -->29/05/2006 17:29:14

    C:\WINDOWS\System32\mshtml.dll -->19/05/2006 17:09:50

    C:\WINDOWS\System32\iphlpapi.dll -->19/05/2006 15:23:35

    C:\WINDOWS\System32\dnsapi.dll -->19/05/2006 15:23:35

    C:\WINDOWS\System32\dhcpcsvc.dll -->19/05/2006 15:23:35

     

    C:\WINDOWS\pfirewall.log -->30/07/2006 15:18:07

    C:\WINDOWS\ModemLog_OLITEC Self Memory 2000 PnP.txt -->30/07/2006 14:59:03

    C:\WINDOWS\QTFont.qfn -->30/07/2006 14:58:49

    C:\WINDOWS\0.log -->30/07/2006 14:58:42

    C:\WINDOWS\wiadebug.log -->30/07/2006 14:58:20

    C:\WINDOWS\WindowsUpdate.log -->30/07/2006 14:58:19

    C:\WINDOWS\wiaservc.log -->30/07/2006 14:58:17

    C:\WINDOWS\bootstat.dat -->30/07/2006 14:58:13

    C:\WINDOWS\ntbtlog.txt -->30/07/2006 14:57:03

    C:\WINDOWS\setupact.log -->30/07/2006 13:01:19

    C:\WINDOWS\SchedLgU.Txt -->30/07/2006 12:57:21

    C:\WINDOWS\pfirewall.log.old -->29/07/2006 18:29:44

    C:\WINDOWS\Ulead32.ini -->26/07/2006 18:40:50

    C:\WINDOWS\setupapi.log -->26/07/2006 18:15:41

    C:\WINDOWS\wmsetup.log -->17/07/2006 19:03:07

     

     

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est A0F5-2C5F

     

    R‚pertoire de C:\WINDOWS\system32

     

    20/08/2004 01:09 6ÿ144 csrss.exe

    1 fichier(s) 6ÿ144 octets

    0 R‚p(s) 36ÿ138ÿ496ÿ000 octets libres

     

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est A0F5-2C5F

     

    R‚pertoire de C:\Program Files

     

    30/07/2006 15:00 <REP> .

    30/07/2006 15:00 <REP> ..

    03/12/2004 19:19 <REP> Activision

    12/11/2004 21:16 <REP> Adobe

    20/03/2006 20:45 <REP> ADSL Autoconnect

    25/07/2003 18:39 <REP> Agfa

    14/11/2003 21:10 <REP> ahead

    28/04/2005 19:10 <REP> AIDA32 - Personal System Information

    07/05/2006 09:29 <REP> Alwil Software

    26/07/2003 14:16 <REP> ArcSoft

    07/05/2006 09:19 <REP> AviSynth 2.5

    25/07/2003 17:53 <REP> AvRack

    09/07/2006 14:30 <REP> BankPerfect

    17/01/2005 21:43 <REP> Bayo

    26/07/2003 14:20 <REP> Canon

    02/10/2004 13:24 <REP> Click-N-Stick

    27/04/2005 20:04 <REP> Common Files

    25/07/2003 17:21 <REP> ComPlus Applications

    18/08/2005 20:27 <REP> Dictionnaire

    27/07/2003 11:52 <REP> directx

    16/07/2006 19:52 <REP> DivX

    02/02/2005 19:09 <REP> DivXPack.NG

    27/04/2005 20:04 <REP> DivXthŠque

    16/07/2006 19:53 <REP> EA Games

    10/09/2003 11:30 <REP> EHMINSTALL

    14/11/2003 21:23 <REP> Eidos Interactive

    24/10/2003 18:15 <REP> Elaborate Bytes

    19/10/2003 11:32 <REP> emme

    16/07/2006 19:52 <REP> eMule

    29/10/2005 09:14 <REP> eurobarre

    19/06/2004 18:50 <REP> Europress

    29/01/2005 17:19 <REP> ffdshow

    07/05/2006 09:27 <REP> Fichiers communs

    29/01/2005 14:28 <REP> FlasKMPEG_594h

    29/01/2005 17:18 <REP> Gabest

    27/04/2005 20:05 <REP> GameSpy Arcade

    20/04/2006 19:02 <REP> Gestion Film

    26/02/2006 13:22 <REP> Google

    05/02/2006 16:31 <REP> Hasbro Interactive

    30/07/2006 15:01 <REP> HijackThis

    07/05/2006 08:47 <REP> IKEA Home Planner Kitchen

    07/05/2006 08:44 <REP> IncrediMail

    26/07/2003 14:12 <REP> InterActual

    19/06/2006 13:00 <REP> Internet Explorer

    07/05/2006 08:49 <REP> IrfanView

    08/02/2006 19:25 <REP> Java

    26/07/2003 10:28 <REP> JavaSoft

    04/03/2006 11:20 <REP> kakuro master demo

    24/12/2004 19:57 <REP> Kazaa

    24/12/2004 19:58 <REP> Kazaa K++

    03/06/2005 20:50 <REP> Lavasoft

    07/05/2006 08:49 <REP> LearnChinese

    20/12/2003 20:35 <REP> LEGO Interactive

    28/12/2005 19:06 <REP> LGGSM

    03/12/2004 19:28 <REP> Logitech

    07/05/2006 08:51 <REP> Ludiclub

    28/01/2006 18:04 <REP> Macrogaming

    13/10/2005 18:07 <REP> Media Player Classic

    17/10/2005 07:18 <REP> Mediabarre

    29/05/2004 18:11 <REP> Messager Wanadoo

    16/02/2005 10:38 <REP> Messenger

    07/05/2006 09:16 <REP> Micro Application

    25/07/2003 17:24 <REP> microsoft frontpage

    27/04/2005 19:35 <REP> Microsoft Games

    26/07/2006 18:43 <REP> Microsoft Money

    25/06/2006 19:57 <REP> Microsoft Money 2005

    26/07/2003 13:54 <REP> Microsoft Office

    28/07/2003 21:38 <REP> Microsoft Plus!

    26/07/2003 13:57 <REP> Microsoft Visual Studio

    03/12/2003 17:10 <REP> Milan

    02/02/2005 22:49 <REP> Morgan

    10/10/2004 09:51 <REP> Movie Maker

    30/07/2006 15:01 <REP> Mozilla Firefox

    30/07/2006 12:17 <REP> Mozilla Thunderbird

    25/07/2003 17:21 <REP> MSN

    26/12/2004 18:14 <REP> MSN Apps

    25/07/2003 17:21 <REP> MSN Gaming Zone

    11/02/2006 09:24 <REP> MSN Messenger

    20/03/2006 21:58 <REP> MyWay

    27/01/2005 21:28 <REP> Neodivx

    16/07/2006 19:43 <REP> NET Traffic Meter

    10/10/2004 09:46 <REP> NetMeeting

    26/01/2005 19:03 <REP> nutri

    09/07/2006 13:25 <REP> OriaSoft

    12/04/2006 22:53 <REP> Outlook Express

    20/09/2004 12:25 <REP> Pense-bete

    07/05/2006 09:09 <REP> ppStream

    15/10/2003 16:34 <REP> Puzzle Bobble 2x

    10/09/2005 15:04 <REP> QO Labs

    10/09/2005 20:24 <REP> QQLive

    18/10/2003 15:22 <REP> QuickTime

    16/07/2006 19:31 <REP> R19 Software

    15/04/2004 17:06 <REP> Real

    25/07/2003 17:53 <REP> Realtek Sound Manager

    04/01/2005 18:15 <REP> ReflexiveArcade

    07/05/2006 09:09 <REP> RegSupreme

    27/04/2005 20:06 <REP> Ricochet Xtreme

    07/05/2006 09:10 <REP> Ripp-it_AM

    02/02/2005 22:48 <REP> Rippackv3

    25/07/2003 18:15 <REP> Roxio

    25/07/2003 17:23 <REP> Services en ligne

    21/10/2003 20:21 <REP> Sierra On-Line

    22/05/2005 17:57 <REP> Skype

    08/01/2004 14:07 <REP> SodeaSoft

    07/05/2006 09:10 <REP> Soulseek

    07/05/2006 09:11 <REP> Spybot - Search & Destroy

    04/03/2006 20:52 <REP> sudoku_quest

    16/07/2006 20:02 <REP> Sunbelt Software

    07/05/2006 08:59 <REP> Symantec

    07/05/2006 10:03 <REP> SymNetDrv

    28/01/2006 14:26 <REP> Taroteam

    17/12/2003 14:24 <REP> THQ

    07/05/2006 08:47 <REP> Ubi Soft

    24/04/2005 13:37 <REP> UBISOFT

    30/01/2005 18:12 <REP> Ulead Systems

    25/07/2003 18:03 <REP> VIA Technologies, Inc

    30/07/2006 14:58 <REP> Wanadoo

    25/05/2004 08:39 <REP> Wanadoo Messager

    19/07/2004 07:28 <REP> Weight Watchers

    18/04/2006 19:21 <REP> WiFiConnector

    05/09/2004 12:32 <REP> Winamp

    15/04/2004 17:06 <REP> Windows Media Components

    16/02/2006 08:27 <REP> Windows Media Player

    10/10/2004 09:45 <REP> Windows NT

    25/02/2005 19:12 <REP> WinRAR

    12/10/2003 19:09 <REP> WinZip

    25/07/2003 17:24 <REP> xerox

    08/02/2006 19:23 <REP> ZTE Corporation

    0 fichier(s) 0 octets

    128 R‚p(s) 36ÿ138ÿ483ÿ712 octets libres

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est A0F5-2C5F

     

    R‚pertoire de C:\Program Files\fichiers communs

     

    07/05/2006 09:27 <REP> .

    07/05/2006 09:27 <REP> ..

    25/07/2003 18:15 <REP> Adaptec Shared

    12/11/2004 21:16 <REP> Adobe

    14/11/2003 21:10 <REP> Ahead

    26/07/2003 13:57 <REP> Designer

    04/12/2004 12:18 <REP> DirectX

    15/04/2004 17:06 <REP> FotoWire

    20/12/2003 20:35 <REP> InstallShield

    03/12/2004 19:29 <REP> Logitech

    22/12/2005 18:57 <REP> Microsoft Shared

    25/07/2003 17:22 <REP> MSSoap

    25/07/2003 18:10 <REP> ODBC

    18/08/2005 21:50 <REP> Real

    25/07/2003 17:22 <REP> Services

    30/01/2005 18:13 <REP> sndp202

    25/07/2003 18:10 <REP> SpeechEngines

    07/05/2006 09:27 <REP> Symantec Shared

    12/04/2006 22:53 <REP> System

    30/01/2005 18:12 <REP> Ulead Systems

    23/05/2004 16:45 <REP> Vbox

    18/08/2005 21:50 <REP> xing shared

    0 fichier(s) 0 octets

    22 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est A0F5-2C5F

     

    R‚pertoire de C:\Program Files\common files

     

    27/04/2005 20:04 <REP> .

    27/04/2005 20:04 <REP> ..

    02/08/2004 17:33 <REP> System

    0 fichier(s) 0 octets

    3 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est A0F5-2C5F

     

    R‚pertoire de C:\

     

    24/05/2001 13:59 162ÿ304 UNWISE.EXE

    1 fichier(s) 162ÿ304 octets

    0 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres

    c:\Documents and Settings\Propri‚taire\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdatepl\fpupdatepl.exe

    c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\Installer\{9BBE1474-DA14-4309-AD6E-75673873EB5D}\wwicon.exe

    c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\Installer\{F86FFD86-1966-4C6C-99D9-44A6E7AB97E3}\ARPPRODUCTICON.exe

    c:\Documents and Settings\Propri‚taire\Bureau\chercher\chercher\LFiles.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\_ISDEL.EXE

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\12exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\13exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\14exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\17exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\18exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\21exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\23exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\24exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\25exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\27exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\28exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\31exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\36exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\37exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\39exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\3exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\44exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\47exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\48exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\52exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\54exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\55exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\61exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\63exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\67exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\69exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\73exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\74exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\75exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\79exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\7exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\81exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\84exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\85exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\87exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\8exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\91exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\93exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\94exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\95exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\96exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\99exmodul32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\AutoRun.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\eauninstall.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU1C6.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU21.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU3FB.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBUC6.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBUE.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\First15.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\Harry Potter Quidditch World Cup_uninst.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\msnsearch.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\nsu9A.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\SETUP.EXE

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\setup_wm.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\uneb.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\VP6Install.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\xpinstall.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\0fced5b5-3b0d-43af-856a-d41e06255694\ADSL Autoconnect.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccApp.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccEvtMgr.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccLgView.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccPwdSvc.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccSetMgr.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\NMain.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ins1.tmp\LDMClient.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\IXP000.TMP\DX6SU100.EXE

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\_ISDel.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\Setup.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\Reader\AcroRd32.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\R‚pertoire temporaire 1 pour neodivx.zip\setup.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\R‚pertoire temporaire 1 pour PRINCE.OF.PERSIA SANDS OF TIME-NOCD-Crack !.zip\PRINCE.OF.PERSIA SANDS OF TIME-NOCD-Crack !\pop.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\{86DE85AD-1CB2-4E11-ACF8-1C394CD10F4A}\{41188D27-E354-40A2-9C38-E361E830A9C1}\SendStats.exe

    c:\Documents and Settings\Propri‚taire\Local Settings\Temp\{C9476F59-74AB-4E4B-A336-3A7D0FECB615}\SweetIESetup.exe

    c:\Documents and Settings\Propri‚taire\Menu D‚marrer\Programmes\COKTEL\Configuration 3D.exe

    c:\Documents and Settings\Propri‚taire\Menu D‚marrer\Programmes\COKTEL\D‚sinstalleur Coktel.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\QQLive1.0Beta01.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Ecole\ec_co_pt.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Ecole\ec_cp.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Inventaire\Ecole\ec_co_pt.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Inventaire\Ecole\ec_cp.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\dava.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\DisneylandParis_AH0506_F.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\install.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\Learn_Chinese_2006_v40_lechinois.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\poker.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\DOS4GW.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\INSTALL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\LOADPATS.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\OBELIX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\OBELIXW.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\71.89_win2kxp_international.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\aawsepersonal.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ac3filter_1_01a_rc1.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\AIDA_32_3.93_Personnal_Edition.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\dic_vietnamien.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\dictionnaire_setup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\FoxTarot400.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\GoogleEarthSetup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\gspot221.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ihp_kitchen1_6_2.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\INFO.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\INSTALL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\jecreemacuisineavecleroymerlin-1_0_0.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\mpc_install_6.4.8.4_fr.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\MW_ATIUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\PixelFusionWMP130.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\pllangs.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\pplivefoot1_2full.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\PPLiveSetup.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ppstreamsetup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\RegSupreme_setup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ri4m_setup_indispensables_rv10.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\RIAM_v402c_setup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SC2000.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SetupRiamCodecPack_4.0.1.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\setupwingrosmaig.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SkypeSetup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\VDETECT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\videoinspector.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\VRF_DLL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\ebsetupfr.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\KiddiesBarreIntall.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\mb152.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Photo\picasa2-current.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\INFO.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\INSTALL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\MW_ATIUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\SC2000.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VDETECT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VRF_DLL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\AHEAD\VESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\APPIAN\APVESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\ATI\MW_ATIUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\COMPAQ\CPQVESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\DIAMOND\24XVESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\DIAMOND\VESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\GENBOX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\VESABOX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\VESAMODE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\HEADLAND\HT-VESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\IBM\VESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\IBM\XGAVESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\PARADISE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1A1B.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1C.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1D.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESAX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\SPIDER\SETMODE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\SPIDER\SPBIOS.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\TECMAR\VESATEST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\TRIDENT\VESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\UNIVESA\UNIVESA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1A1B.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1C.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1D.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESAX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\autorun.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\install.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\IE\encpack.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\IE\ie6setup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\copymar.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\dw.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\fontinst.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnybb.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnybbsvc.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnyimprt.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnyinst.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\msmoney.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\salv.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\signin.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\uninst.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\update.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\PSS\mdac_typ.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Money\PSS\msizap.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\INSTALL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\DCOM95.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5COMP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5OEM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5SETUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IEAK5.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IEAK5CD.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\OAINST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\VRML2C.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\MSI\INSTMSI.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\MSI\INSTMSIW.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\OEM\TOOLS\CIW\CUSTWIZ.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ARTGALRY\ARTGALRY.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ARTGALRY\CAG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DATAMAP\DATAINST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DATAMAP\MSMAP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DBREP\WZCNFLCT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\EQUATION\EQNEDT32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\MSINFO\MSINFO32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\MSINFO\OFFPROV.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ORGCHART\ORGCHART.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\PHOTOED\PHOTOED.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ADMCGI\SCRIPTS\FPADMCGI.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\CFGWIZ.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPREMADM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSERVER.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSRVADM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\HTIMAGE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\IMAGEMAP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\TCPTEST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ISAPI\FPCOUNT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\FPCOUNT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\SHTML.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_ADM\ADMIN.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_AUT\AUTHOR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\FPWEBS\SERVER\VHTTPD32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\OUT40.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CCMDLIST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CNFNOT32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CWIMPORT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\MAPISP32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\ML3XEC16.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\NEWPROF.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\SCANPST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\MAPISP32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\ML3XEC16.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\NEWPROF.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\SCANPST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FP98SADM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FP98SWIN.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FPSRVADM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FPSRVWIN.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\BINDER.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\CONVTEXT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\DATCRT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\DLGCANCL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\EXCEL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FINDER.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FINDFAST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FRONTPG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\GRAPH9.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MAKECERT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSACCESS.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSACNV30.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSIMPORT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTPA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTPS.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSOHTMED.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSQRY32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\NSREX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OFFCLN9.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\ORG11SVR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\ORG21SVR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OSA9.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OTUNEUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OUTLOOK.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\POWERPNT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\REXPROXY.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\RXCBPRXY.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\SELFCERT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\SETLANG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIDISC.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIFORM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIPRES.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WAVTOASF.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WEBPUB.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WINWORD.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\MSOFFICE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\MSOHELP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\NFCLEAN.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFMOD32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFSETUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFSNT40.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\PROJWIZ.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\SCHDPL32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\WFXMSRVR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\WRKGADM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FORMS\1036\REGCFG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\XLATORS\PPVIEW32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\SNAPVIEW\SNAPVIEW.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\VSTUDIO\COMMON\IDE\IDE98\MSE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\DCOM\DCOM95.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\OAINST\OAINST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\OAINST\OFFOLE.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\BCP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\CMDWRAP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\CNFGSVR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DCOMSCM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DISTRIB.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DTSRUN.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DTSWIZ.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\LOGREAD.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\ODBCCMPT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\OSQL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REBUILDM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REGREBLD.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REPLMERG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SCM.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SNAPSHOT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLAGENT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLMANGR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLSERVR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SVRNETCN.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\VSWITCH.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\OTHER\DTCSETUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\_ISDEL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\MSETUP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\SETUPSQL.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\SQLSTP.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SYSTEM\CLICONFG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SYSTEM\REGSVR32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\OA4514.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\GIMEFIX.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\HHUPD.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OAINST.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OUT128.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OUT40.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\Q248120.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\RICHEDIT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\1\W2K_ARA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\12\W2K_FRA.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\9\W2K_ENG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\CLICONFG.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\EXTRACT.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\IMMC.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\ODBCAD32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\AWSNTO32.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\FIXMAPI.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\VIEWERS\QUIKVIEW.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEMNT\FIXMAPI.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEMNT\VIEWERS\QUIKVIEW.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\WINDOWS\HH.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\Office\WINDOWS\MSAGENT\AGENTSVR.EXE

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\ADSLAutoconnect206F7.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\antivir_workstation_win7u_en_h.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\bp.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\clientinstall.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\eMule0.47a-Installer.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\Firefox Setup 1.5.0.4.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\mon_budget_familial.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\setupfre.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\SkypeSetup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\SoccerTrainer2_0_Fr_DemoSetup.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\spybotsd14.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\Thunderbird Setup 1.5.0.4.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\zlsSetup_65_725_000_fr.exe

    c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\memodivx\MemoDivx.exe

    c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll

    c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll

    c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll

    c:\Documents and Settings\Propri‚taire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\npietab.dll

     

    Vérifications de quelques clefs

    Recherche de clefs EGDACCESS

     

    HKLM\SOFTWARE\Microsoft\Windows\explorer\SharedTaskScheduler

  6. Bonjour,

     

     

    J'ai fait le pré nettoyage comme il est préconisé antivir m'a trouvé 31 détections j'ai fait ensuite le HijakThis merci de me dire si mon ordi est toujours infecté

     

    Nath

     

     

    AntiVir PersonalEdition Classic

    Report file date: dimanche 30 juillet 2006 13:33

     

    Scanning for 397237 virus strains and unwanted programs.

     

    Licensed to: AntiVir PersonalEdition Classic

    Serial number: 0000149996-WURGE-0001

    Platform: Windows XP

    Windows version: (Service Pack 2) [5.1.2600]

    Username: Nathalie

    Computer name: GAUTIER-TYNJKWH

     

    Version informations:

    AVSCAN.EXE : 7.0.0.42 557096 30/07/2006 11:26:02

    AVSCAN.DLL : 7.0.0.42 53288 30/07/2006 11:26:02

    LUKE.DLL : 7.0.0.42 118824 30/07/2006 11:26:05

    LUKERES.DLL : 7.0.0.42 25640 30/07/2006 11:26:05

    ANTIVIR0.VDF : 6.35.0.1 7371264 30/07/2006 11:26:02

    ANTIVIR1.VDF : 6.35.0.4 2048 30/07/2006 11:26:02

    ANTIVIR2.VDF : 6.35.0.5 2048 30/07/2006 11:26:02

    ANTIVIR3.VDF : 6.35.0.6 2048 30/07/2006 11:26:02

    AVEWIN32.DLL : 7.1.0.10 1511936 30/07/2006 11:26:02

    AVPREF.DLL : 7.0.0.1 49192 30/07/2006 11:26:02

    AVREP.DLL : 6.35.0.1 643112 30/07/2006 11:26:02

    AVRPBASE.DLL : 7.0.0.0 2162728 30/07/2006 11:26:02

    AVPACK32.DLL : 7.1.0.1 335912 30/07/2006 11:26:02

    AVREG.DLL : 6.31.0.90 27688 30/07/2006 11:26:02

    NETNT.DLL : 6.32.0.0 6696 30/07/2006 11:26:05

    NETNW.DLL : 6.32.0.0 9768 30/07/2006 11:26:05

    RCIMAGE.DLL : 7.0.0.71 1642536 30/07/2006 11:26:06

    RCTEXT.DLL : 7.0.0.75 77864 30/07/2006 11:26:06

     

    Configuration settings for the scan:

    Jobname: '%s'.................: Manual Selection

    Configuration file............: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\PROFILES\folder.avp

    Boot sectors..................: C

    Scan memory...................: 1

    Process scan..................: 1

    Scan all files................: 1

    Scan archives.................: 1

    Recursion depth...............: 20

    Smart extensions..............: 1

    Skipped archive types.........: 1000,1001,1002,1003,1004,

    Macro heuristic...............: 1

    File heuristic................: 3

    Primary action................: 1

    Secondary action..............: 0

     

    Start of the scan: dimanche 30 juillet 2006 13:33

     

     

    The scan over running processes will be started

    14 Processes was scanned

     

    Start scanning boot sectors:

     

    Boot sector 'C:\'

    [NOTE] No virus was found!

     

    Starting to scan the registry.

    The registry was scanned ( 43 files ).

     

     

    Starting the file scan:

     

    C:\pagefile.sys

    [WARNING] The file could not be opened!

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9

    [WARNING] The file could not be opened!

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9

    [WARNING] The file could not be opened!

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9

    [WARNING] The file could not be opened!

    C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9

    [WARNING] The file could not be opened!

    C:\Documents and Settings\NetworkService\NTUSER.DAT

    [WARNING] The file could not be opened!

    C:\Documents and Settings\NetworkService\ntuser.dat.LOG

    [WARNING] The file could not be opened!

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat

    [WARNING] The file could not be opened!

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG

    [WARNING] The file could not be opened!

    C:\Documents and Settings\Propriétaire\NTUSER.DAT

    [WARNING] The file could not be opened!

    C:\Documents and Settings\Propriétaire\ntuser.dat.LOG

    [WARNING] The file could not be opened!

    C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\i5y0841y.default\mail\local folders\inbox

    [0] Archive type: Netscape/Mozilla Mailbox

    --> Mailbox_[From: Lookatvideo.com <b-pop@radar.axicli.com>][subject: =?ISO-8859-1?B?W05vcnRvbiBBbnRpU3BhbV0gTGVzIG5v]10180.mim

    [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

    [1] Archive type: MIME

    --> file0.txt

    [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

    --> file1.html

    [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

    --> Mailbox_[subject: La newsletter de Look][From: Lookatvideo.com <b-pop@radar.axi.fr>]10890.mim

    [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

    [1] Archive type: MIME

    --> file1.html

    [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

    --> Mailbox_[From: "VISA Service" <VisaCard@visa.com>][subject: Attention! Several VISA Credit Card bases have ]18050.mim

    [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

    [1] Archive type: MIME

    --> file0.html

    [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

    [WARNING] The file was ignored!

    C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\i5y0841y.default\mail\local folders\junk

    [0] Archive type: Netscape/Mozilla Mailbox

    --> Mailbox_[From: "VISA Service" <VisaCard@visa.com>][subject: Attention! Several VISA Credit Card bases have ]396.mim

    [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

    [1] Archive type: MIME

    --> file0.html

    [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

    [WARNING] The file was ignored!

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat

    [WARNING] The file could not be opened!

    C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG

    [WARNING] The file could not be opened!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\24exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\26exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\27exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\28exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\34exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\47exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\51exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\53exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\5DE44YD9.htm

    [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\61exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\62exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\67exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\70exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\98exmscfgl.exe

    [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\FRVLLII2.htm

    [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\ISX6ERT7.htm

    [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\KML4BUC6.htm

    [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\KSWTTRKS.htm

    [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\tmp1.tmp

    [DETECTION] Contains signature of the worm WORM/Medbot.A

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\WTLFXNHX.htm

    [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\YZIDZ1NP.htm

    [DETECTION] Contains signature of the HTML script virus HTML/Exploit.Mhtml

    [iNFO] The file was deleted!

    C:\Documents and Settings\Propriétaire\Local Settings\Temp\Z6JUCD70.htm

    [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

    [iNFO] The file was deleted!

    C:\WINDOWS\system32\nvsvcd.exe

    [DETECTION] Contains signature of the worm WORM/Medbot.A

    [iNFO] The file was deleted!

    C:\WINDOWS\system32\config\default

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\default.LOG

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\SAM

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\SAM.LOG

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\SECURITY

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\SECURITY.LOG

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\software

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\software.LOG

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\system

    [WARNING] The file could not be opened!

    C:\WINDOWS\system32\config\system.LOG

    [WARNING] The file could not be opened!

     

     

    End of the scan: dimanche 30 juillet 2006 14:44

    Used time: 1:11:15 min

     

    The scan has been done completely.

     

    6346 Scanning directories

    285081 Files were scanned

    32 viruses and/or unwanted programs was found

    23 files were deleted

    0 files were repaired

    0 files were moved to quarantine

    0 files were renamed

    20387 Archives were scanned

    25 Warnings

    3 Notes

     

    Logfile of HijackThis v1.99.1

    Scan saved at 15:01:06, on 30/07/2006

    Platform: Windows XP SP2 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    C:\Program Files\Alwil Software\Avast4\ashServ.exe

    C:\WINDOWS\System32\FTRTSVC.exe

    C:\WINDOWS\system32\nvsvc32.exe

    C:\WINDOWS\System32\svchost.exe

    C:\WINDOWS\system32\CAPRPCSK.EXE

    C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe

    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

    C:\WINDOWS\Explorer.EXE

    C:\WINDOWS\SOUNDMAN.EXE

    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe

    C:\Program Files\Logitech\iTouch\iTouch.exe

    C:\Program Files\QuickTime\qttask.exe

    C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

    C:\Program Files\Logitech\ImageStudio\LogiTray.exe

    C:\Program Files\Winamp\winampa.exe

    C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

    C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe

    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

    C:\Program Files\WiFiConnector\NintendoWFCReg.exe

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

    C:\PROGRA~1\Wanadoo\ComComp.exe

    C:\Program Files\Logitech\ImageStudio\LowLight.exe

    C:\PROGRA~1\Wanadoo\Toaster.exe

    C:\OLIFAXVX\TOOLBAR.EXE

    C:\PROGRA~1\Wanadoo\Inactivity.exe

    C:\PROGRA~1\Wanadoo\PollingModule.exe

    C:\WINDOWS\system32\ntvdm.exe

    C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE

    C:\PROGRA~1\Wanadoo\Watch.exe

    C:\WINDOWS\system32\wuauclt.exe

    C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

     

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navcli...fr&ie=UTF-8

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

    R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

    O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

    O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

    O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"

    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

    O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe

    O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe

    O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background

    O4 - HKLM\..\Run: [CAPON] C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAPONN.EXE

    O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

    O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe

    O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe

    O4 - HKLM\..\Run: [ulead Memory Card Detector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

    O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"

    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

    O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

    O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe

    O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE

    O4 - Startup: Moniteur Fax-Voix.lnk = C:\OLIFAXVX\MONITEUR.EXE

    O4 - Global Startup: Fenêtre d'état Canon LBP-800.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

    O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe

    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe

    O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html

    O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html

    O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html

    O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html

    O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html

    O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)

    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

    O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Media Bar) - http://sib1.od2.com/common/musicmanager/in...nagerPlugin.CAB

    O17 - HKLM\System\CCS\Services\Tcpip\..\{A93E0375-4ADC-47BD-9E91-2909954CED87}: NameServer = 80.10.246.130 80.10.246.3

    O18 - Protocol: bw+0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw+0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw-0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw-0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw00 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw00s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw10 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw10s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw20 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw20s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw30 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw30s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw40 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw40s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw50 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw50s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw60 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw60s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw70 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw70s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw80 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw80s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw90 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bw90s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwa0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwa0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwb0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwb0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwc0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwc0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwd0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwd0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwe0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwe0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwf0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwf0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

    O18 - Protocol: bwg0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwg0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwh0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwh0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwi0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwi0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwj0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwj0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwk0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwk0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwl0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwl0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwm0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwm0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwn0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwn0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwo0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwo0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwp0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwp0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwq0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwq0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwr0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwr0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bws0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bws0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwt0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwt0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwu0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwu0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwv0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwv0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bww0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bww0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwx0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwx0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwy0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwy0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwz0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: bwz0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

    O18 - Protocol: offline-8876480 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

    O21 - SSODL: System - {F8091F39-0B87-406E-A7DC-9665DB5A9FFA} - C:\WINDOWS\system32\system32.dll

    O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)

    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

    O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

    O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe (file missing)

     

     

    Merci

  7. 07/15/06 17:45:53 [info]: BlackLight Engine 1.0.42 initialized

    07/15/06 17:45:53 [info]: OS: 5.1 build 2600 (Service Pack 2)

    07/15/06 17:45:54 [Note]: 7019 4

    07/15/06 17:45:54 [Note]: 7005 0

    07/15/06 17:45:57 [Note]: 7006 0

    07/15/06 17:45:57 [Note]: 7011 616

    07/15/06 17:45:57 [Note]: 7026 0

    07/15/06 17:45:57 [Note]: 7026 0

    07/15/06 17:46:05 [Note]: FSRAW library version 1.7.1019

    07/15/06 18:25:54 [Note]: 7007 0

     

     

    par contre j'ai un problème avec norton une fenêtre dis qu'il faut le désinstaller et le réinstaller

  8. je n'ai pas pu mettre à jour ewido

    je n'ai pas trouvé yrojtwfqlg.dat et yrojtwfqlg_nav.dat et yrojtwfqlg_navps.dat

    je n'ai pas trouvé c:\spyspotterwebinstall.exe

     

    Kaspersky

    KASPERSKY ONLINE SCANNER REPORT

    Saturday, July 15, 2006 4:11:09 PM

    Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

    Kaspersky Online Scanner version: 5.0.83.0

    Kaspersky Anti-Virus database last update: 15/07/2006

    Kaspersky Anti-Virus database records: 195124

     

     

    Scan Settings

    Scan using the following antivirus database standard

    Scan Archives true

    Scan Mail Bases true

     

    Scan Target My Computer

    C:\

    D:\

    E:\

     

    Scan Statistics

    Total number of scanned objects 55928

    Number of viruses found 0

    Number of infected objects 0 / 0

    Number of suspicious objects 0

    Duration of the scan process 00:50:00

     

    Infected Object Name Virus Name Last Action

    C:\Documents and Settings\All Users\Application Data\QSLLPSVCShare Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Microsoft\Modèles\Normal.dot Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\call256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chat2048.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chat256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chat512.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chatmsg1024.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chatmsg256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chatmsg512.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\contactgroup256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\index2.dat Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\profile16384.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\transfer256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user1024.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user16384.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user4096.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\voicemail256.dbb Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Cookies\index.dat Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Local Settings\Temp\~DF89F7.tmp Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\NTUSER.DAT Object is locked skipped

     

    C:\Documents and Settings\gdazouzou\ntuser.dat.LOG Object is locked skipped

     

    C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

     

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

     

    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

     

    C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

     

    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

     

    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

     

    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

     

    C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped

     

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

     

    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

     

    C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

     

    C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

     

    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

     

    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

     

    C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

     

    C:\System Volume Information\_restore{EA39A09C-50BA-4996-869B-915C83FE3B53}\RP214\change.log Object is locked skipped

     

    C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

     

    C:\WINDOWS\SchedLgU.Txt Object is locked skipped

     

    C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

     

    C:\WINDOWS\Sti_Trace.log Object is locked skipped

     

    C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

     

    C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

     

    C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

     

    C:\WINDOWS\system32\config\DEFAULT Object is locked skipped

     

    C:\WINDOWS\system32\config\default.LOG Object is locked skipped

     

    C:\WINDOWS\system32\config\SAM Object is locked skipped

     

    C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

     

    C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

     

    C:\WINDOWS\system32\config\SECURITY Object is locked skipped

     

    C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

     

    C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped

     

    C:\WINDOWS\system32\config\software.LOG Object is locked skipped

     

    C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

     

    C:\WINDOWS\system32\config\SYSTEM Object is locked skipped

     

    C:\WINDOWS\system32\config\system.LOG Object is locked skipped

     

    C:\WINDOWS\system32\h323log.txt Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

     

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

     

    C:\WINDOWS\wiadebug.log Object is locked skipped

     

    C:\WINDOWS\wiaservc.log Object is locked skipped

     

    C:\WINDOWS\WindowsUpdate.log Object is locked skipped

     

    Scan process completed.

     

    Ewido

     

    ewido anti-spyware - Scan Report

    ---------------------------------------------------------

     

    + Created at: 14:57:14 15/07/2006

     

    + Scan result:

     

     

     

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@com[1].txt -> TrackingCookie.Com : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@as1.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@banner.newyorkcasino[1].txt -> TrackingCookie.Newyorkcasino : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@a.tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.

    C:\Documents and Settings\gdazouzou\Cookies\gdazouzou@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.

    C:\RECYCLER\S-1-5-21-2433654532-216968239-3774263056-1006\Dc28.UWA6PV_0001_N76M1904\setup.exe -> Trojan.Fakealert : Cleaned with backup (quarantined).

     

     

    ::Report end

     

    Clean

     

    Script clean par Malekal_morte - http://www.malekal.com

     

    *** SUPPRESSION DES FICHIERS

     

     

     

    *** Suppressions de trojans/vers sur...

    C:\WINDOWS\inf\unregmp2.exe FOUND

    C:\WINDOWS\unvise32qt.exe FOUND

    C:\WINDOWS\system32\stera.job FOUND

     

     

     

    *** Suppressions des adware connus...

     

     

    "C:\Program Files\Fichiers communs\*.exe" FOUND

     

    Blacklight

     

    7/15/06 16:18:09 [info]: BlackLight Engine 1.0.42 initialized

    07/15/06 16:18:09 [info]: OS: 5.1 build 2600 (Service Pack 2)

    07/15/06 16:18:09 [Note]: 7019 4

    07/15/06 16:18:09 [Note]: 7005 0

    07/15/06 16:18:12 [Note]: 7006 0

    07/15/06 16:18:12 [Note]: 7011 724

    07/15/06 16:18:12 [Note]: 7026 0

    07/15/06 16:18:13 [Note]: 7026 0

    07/15/06 16:18:24 [Note]: FSRAW library version 1.7.1019

    07/15/06 16:28:31 [Note]: 7007 0

     

     

    Logfile of HijackThis v1.99.1

    Scan saved at 16:29:26, on 15/07/2006

    Platform: Windows XP SP2 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\Ati2evxx.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

    C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe

    C:\WINDOWS\system32\Ati2evxx.exe

    C:\WINDOWS\Explorer.EXE

    C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\Program Files\ewido anti-spyware 4.0\guard.exe

    C:\WINDOWS\System32\FTRTSVC.exe

    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe

    C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe

    C:\Program Files\Wireless 802.11g Monitor\WLService.exe

    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

    C:\Program Files\Wireless 802.11g Monitor\WLanCfgG.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\system32\CAP4RSK.EXE

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

    C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe

    C:\Program Files\Dell\QuickSet\quickset.exe

    C:\Program Files\Apoint\Apoint.exe

    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe

    C:\Program Files\Dell\Media Experience\DMXLauncher.exe

    C:\Program Files\Apoint\Apntex.exe

    C:\WINDOWS\system32\dla\tfswctrl.exe

    C:\Program Files\ScanSoft\OmniPageSE\opware32.exe

    C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    C:\Program Files\Microsoft Office\Office\WINWORD.EXE

    C:\Program Files\MSN Messenger\msnmsgr.exe

    C:\PROGRA~1\Wanadoo\TaskBarIcon.exe

    C:\Program Files\ewido anti-spyware 4.0\ewido.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe

    C:\PROGRA~1\Wanadoo\ComComp.exe

    C:\PROGRA~1\Wanadoo\Toaster.exe

    C:\PROGRA~1\Wanadoo\Inactivity.exe

    C:\PROGRA~1\Wanadoo\PollingModule.exe

    C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE

    C:\PROGRA~1\Wanadoo\Watch.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\Program Files\Digital Line Detect\DLG.exe

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4SWK.EXE

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Documents and Settings\gdazouzou\Mes documents\Téléchargement\HijackThis.exe

     

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr/

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aliceadsl.fr

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.fr/myway

    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.aliceadsl.fr

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

    R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll

    R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

    O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll

    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll

    O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

    O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll

    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll

    O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll

    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll

    O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll

    O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

    O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"

    O4 - HKLM\..\Run: [intelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless

    O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe

    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe

    O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe

    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"

    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe

    O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

    O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start

    O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer

    O4 - HKLM\..\Run: [Omnipage] C:\Program Files\ScanSoft\OmniPageSE\opware32.exe

    O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

    O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe

    O4 - HKLM\..\Run: [yrojtwfqlg] c:\windows\system32\yrojtwfqlg.exe yrojtwfqlg

    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized

    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKCU\..\Run: [PDFSaver] C:\Program Files\Photos de Famille\PdfDrv\Install\PDFSaver.exe

    O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=

    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

    O4 - HKCU\..\Run: [msnmsgr] ~"C:\Program Files\MSN Messenger\msnmsgr.exe" /background

    O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

    O4 - Global Startup: Digital Line Detect.lnk = ?

    O4 - Global Startup: Fenêtre d'état de Canon LBP3200.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE

    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE

    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html

    O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm

    O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html

    O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html

    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html

    O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?5eefbc3fd0fd42d38f44bcef1b055da

    O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?5eefbc3fd0fd42d38f44bcef1b055da

    O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html

    O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll

    O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe

    O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe

    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)

    O9 - Extra button: Alice ADSL - {5BBC284F-EE45-47B8-B5FA-71603738280C} - http://www.aliceadsl.fr (file missing) (HKCU)

    O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll

    O14 - IERESET.INF: START_PAGE_URL=http://www.aliceadsl.fr

    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab

    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

    O17 - HKLM\System\CCS\Services\Tcpip\..\{3F04F2AA-1E24-4D8D-BD89-483FAC93F4A1}: NameServer = 213.36.80.1,192.168.1.1

    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

    O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll

    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

    O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe (file missing)

    O23 - Service: Symantec Network Proxy (ccProxy) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe (file missing)

    O23 - Service: Symantec Password Validation (ccPwdSvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe (file missing)

    O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe (file missing)

    O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe

    O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

    O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe

    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe

    O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe

    O23 - Service: R54G Wireless Service - Unknown owner - C:\Program Files\Wireless 802.11g Monitor\WLService.exe

    O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

    O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe

    O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing)

    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe (file missing)

    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing)

    O23 - Service: SymWMI Service (SymWSC) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe (file missing)

    O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe

    O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

  9. Bonsoir,

     

    Télécharge F-Secure Blacklight : https://europe.f-secure.com/blacklight/try.shtml

    - Clic en bas sur "I accept"

    - Dans la nouvelle fenêtre, clic sur le bouton en haut du tableau Download.

    - Lance-le en double-cliquant sur le fichier blbeta.exe

    - Accepte la licence, et clique enfin sur "Scan"

    - Poste le rapport qui a été créé dans le fichier fsbl-bxxxx.log en l'ouvrant avec le bloc-note.

    Tu peux consulter le tutorial de F-Secure BlackLight

    ET

    - Télécharge chercher.zip sur ton bureau

    - Ne double-clic pas dessus !! Fais un clic droit sur le fichier et extraire tout

    - Un nouveau dossier chercher va être créé

    - Ouvre le et double-clic sur chercher.cmd

    - Une fenêtre va s'ouvrir, laisse la ouverte et appuie sur une touche quand on te le demande

    - Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :

    -- Dans le bloc-note, cliquez sur le menu Edition / Selectionner tout

    -- A nouveau menu Edition / copier

    -- Dans un nouveau message ici, faire un clic droit / coller

     

     

    Merci voici les rapports

     

    F-Secure Blacklight

     

    07/15/06 08:08:36 [info]: BlackLight Engine 1.0.42 initialized

    07/15/06 08:08:36 [info]: OS: 5.1 build 2600 (Service Pack 2)

    07/15/06 08:08:36 [Note]: 7019 4

    07/15/06 08:08:36 [Note]: 7005 0

    07/15/06 08:08:39 [Note]: 7006 0

    07/15/06 08:08:39 [Note]: 7011 1884

    07/15/06 08:08:40 [Note]: 7026 0

    07/15/06 08:08:40 [Note]: 7026 0

    07/15/06 08:08:40 [Note]: 7024 3

    07/15/06 08:08:40 [info]: Hidden process: C:\windows\system32\yrojtwfqlg.exe

    07/15/06 08:08:40 [Note]: FSRAW library version 1.7.1019

    07/15/06 08:12:03 [info]: Hidden file: c:\WINDOWS\system32\yrojtwfqlg_nav.dat

    07/15/06 08:12:03 [Note]: 10002 1

    07/15/06 08:12:03 [info]: Hidden file: c:\WINDOWS\system32\yrojtwfqlg.dat

    07/15/06 08:12:03 [Note]: 10002 1

    07/15/06 08:12:04 [info]: Hidden file: C:\windows\system32\yrojtwfqlg.exe

    07/15/06 08:12:04 [Note]: 10002 1

    07/15/06 08:12:04 [info]: Hidden file: c:\WINDOWS\system32\yrojtwfqlg_navps.dat

    07/15/06 08:12:04 [Note]: 10002 1

    07/15/06 08:12:20 [info]: Hidden file: c:\WINDOWS\Prefetch\YROJTWFQLG.EXE-2664B0E3.pf

    07/15/06 08:12:20 [Note]: 10002 1

    07/15/06 08:12:38 [Note]: 7007 0

     

     

    Chercher

     

     

    C:\WINDOWS\System32\wpa.dbl -->15/07/2006 07:10:42

    C:\WINDOWS\System32\perfh00C.dat -->13/07/2006 07:33:08

    C:\WINDOWS\System32\perfh009.dat -->13/07/2006 07:33:08

    C:\WINDOWS\System32\perfc00C.dat -->13/07/2006 07:33:08

    C:\WINDOWS\System32\perfc009.dat -->13/07/2006 07:33:08

    C:\WINDOWS\System32\PerfStringBackup.INI -->13/07/2006 07:33:06

    C:\WINDOWS\System32\MRT.exe -->07/07/2006 03:21:46

    C:\WINDOWS\System32\nvs2.inf -->22/06/2006 20:02:32

    C:\WINDOWS\System32\rasmans.dll -->22/06/2006 12:48:06

    C:\WINDOWS\System32\WgaLogon.dll -->19/06/2006 16:20:42

    C:\WINDOWS\System32\LegitCheckControl.dll -->19/06/2006 16:19:42

    C:\WINDOWS\System32\WgaTray.exe -->19/06/2006 16:19:26

    C:\WINDOWS\System32\jgpl400.dll -->01/06/2006 20:48:44

    C:\WINDOWS\System32\jgdw400.dll -->01/06/2006 20:48:44

    C:\WINDOWS\System32\netral.ini -->01/06/2006 12:05:42

    C:\WINDOWS\System32\shdocvw.dll -->29/05/2006 17:34:15

    C:\WINDOWS\System32\stera.job -->20/05/2006 18:01:38

    C:\WINDOWS\System32\lvcoinst.log -->19/05/2006 17:24:35

    C:\WINDOWS\System32\mshtml.dll -->19/05/2006 17:07:57

    C:\WINDOWS\System32\iphlpapi.dll -->19/05/2006 15:23:35

     

    C:\WINDOWS\ModemLog_Conexant D110 MDC V.9x Modem.txt -->15/07/2006 07:10:17

    C:\WINDOWS\0.log -->15/07/2006 07:10:17

    C:\WINDOWS\wiadebug.log -->15/07/2006 07:10:16

    C:\WINDOWS\WindowsUpdate.log -->15/07/2006 07:10:15

    C:\WINDOWS\wiaservc.log -->15/07/2006 07:10:14

    C:\WINDOWS\bootstat.dat -->15/07/2006 07:10:07

    C:\WINDOWS\SchedLgU.Txt -->14/07/2006 22:42:17

    C:\WINDOWS\ntbtlog.txt -->14/07/2006 15:46:01

    C:\WINDOWS\wininit.ini -->14/07/2006 12:12:28

    C:\WINDOWS\mozver.dat -->14/07/2006 11:53:21

    C:\WINDOWS\win.ini -->14/07/2006 11:53:19

    C:\WINDOWS\tsoc.log -->12/07/2006 23:09:45

    C:\WINDOWS\setupapi.log -->12/07/2006 23:09:45

    C:\WINDOWS\ocmsn.log -->12/07/2006 23:09:45

    C:\WINDOWS\ocgen.log -->12/07/2006 23:09:45

     

     

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est C837-B9C9

     

    R‚pertoire de C:\Program Files

     

    15/07/2006 07:11 <REP> .

    15/07/2006 07:11 <REP> ..

    24/02/2006 13:06 <REP> A4Desk

    15/02/2006 12:35 2ÿ610ÿ456 a4desk_400_full_french.exe

    16/11/2005 01:52 <REP> Adobe

    21/04/2006 18:19 <REP> Alice

    21/04/2006 15:44 <REP> Alice SSID

    16/11/2005 01:47 <REP> Apoint

    22/01/2006 12:54 <REP> ArcSoft

    16/11/2005 01:45 <REP> ATI Technologies

    08/10/2003 17:02 106 autorun.inf

    26/08/2004 14:25 2ÿ048 BOOTCAT.BIN

    16/12/2003 20:27 2ÿ949ÿ120 BOOTIMG.BIN

    16/11/2005 01:48 <REP> Broadcom

    22/01/2006 12:58 <REP> Canon

    24/08/2004 17:24 132ÿ216 ccGSE.dll

    13/08/2004 21:23 240ÿ760 ccL30.dll

    24/08/2004 17:25 145ÿ016 ccScan.dll

    24/08/2004 19:10 111ÿ744 CDStart.exe

    26/08/2004 12:38 21ÿ425 CDStart.hlp

    20/05/2006 18:03 <REP> Common Files

    20/08/2004 12:35 <REP> ComPlus Applications

    16/11/2005 01:31 <REP> CONEXANT

    21/04/2006 12:39 <REP> CRACK

    16/11/2005 01:48 <REP> CyberLink

    13/08/2004 14:06 709ÿ728 DefUtDCD.dll

    16/11/2005 01:58 <REP> Dell

    16/11/2005 01:59 <REP> Dell Inc

    16/11/2005 01:46 <REP> Digital Line Detect

    22/04/2004 18:22 42ÿ112 ecmldr32.DLL

    15/07/2006 07:11 <REP> Fichiers communs

    06/03/2006 16:20 <REP> Google

    11/01/2006 20:49 <REP> Graphe AT Pro

    16/11/2005 01:45 <REP> Intel

    16/11/2005 01:46 <REP> Intel, Inc

    17/06/2006 18:15 <REP> Internet Explorer

    30/03/2006 13:55 <REP> Inventel

    18/11/2005 14:49 <REP> IxoVM

    16/11/2005 01:59 <REP> Jasc Software Inc

    16/11/2005 01:44 <REP> Java

    01/03/2006 11:35 243ÿ512 jre-1_5_0_06-windows-i586-p-iftw.exe

    31/05/2006 09:51 <REP> KenoGil

    13/07/2006 21:57 <REP> Kenosor

    20/05/2006 18:49 <REP> Lavasoft

    16/11/2005 01:52 <REP> Learn2.com

    24/08/2004 19:07 14ÿ261 Lisezmoi.txt

    02/03/2006 23:07 <REP> LotoStat 2.0

    23/01/2006 23:18 <REP> Macrogaming

    21/04/2006 12:39 <REP> Manual

    16/11/2005 01:44 <REP> Messenger

    20/08/2004 12:37 <REP> microsoft frontpage

    20/11/2005 15:11 <REP> Microsoft Office

    20/11/2005 15:16 <REP> Microsoft Visual Studio

    16/11/2005 01:50 <REP> Microsoft Works

    16/11/2005 01:46 <REP> Modem Helper

    20/08/2004 12:35 <REP> Movie Maker

    14/07/2006 12:08 <REP> Mozilla Thunderbird

    20/08/2004 12:34 <REP> MSN

    20/12/2005 08:35 <REP> MSN Apps

    20/08/2004 12:34 <REP> MSN Gaming Zone

    20/01/2006 09:39 <REP> MSN Messenger

    20/12/2005 08:35 <REP> MSN Toolbar Suite

    18/03/2003 21:14 499ÿ712 msvcp71.dll

    21/02/2003 05:42 348ÿ160 msvcr71.dll

    16/11/2005 02:00 <REP> MyWaySA

    21/04/2006 12:39 <REP> NAV

    24/08/2004 19:12 898ÿ176 NAVSetup.exe

    20/08/2004 12:35 <REP> NetMeeting

    01/06/2006 12:03 <REP> Netral

    16/11/2005 01:46 <REP> NetWaiting

    30/05/2006 19:16 <REP> neuro one

    13/07/2006 08:05 <REP> Norton Internet Security

    20/08/2004 12:34 <REP> Online Services

    17/04/2006 00:10 <REP> Outlook Express

    27/12/2005 09:05 <REP> Photos de Famille

    18/08/2004 08:44 197ÿ760 probeGSE.dll

    31/05/2006 15:30 <REP> Projet1

    16/11/2005 01:52 <REP> QuickTime

    16/11/2005 01:51 <REP> Real

    22/01/2006 12:56 <REP> ScanSoft

    22/04/2006 15:43 <REP> Secrets du Jeu

    20/08/2004 12:35 <REP> Services en ligne

    16/11/2005 01:32 <REP> Sigmatel

    24/12/2005 18:06 <REP> Skype

    16/11/2005 02:00 <REP> Sonic

    14/07/2006 13:20 <REP> Spybot - Search & Destroy

    21/04/2006 12:40 <REP> Support

    08/07/2006 22:41 <REP> Symantec

    19/11/2005 21:08 <REP> SymNetDrv

    26/12/2005 21:50 <REP> Toponymes

    26/12/2005 21:22 <REP> Tracker Software

    16/11/2005 01:52 <REP> Viewpoint

    21/04/2006 12:40 <REP> VirusDef

    15/07/2006 07:31 <REP> Wanadoo

    30/03/2006 14:01 <REP> Wanadoo Messager

    22/06/2006 20:02 <REP> WebMediaPlayer

    28/05/2006 11:59 <REP> Windows Media Player

    20/08/2004 12:34 <REP> Windows NT

    30/05/2006 14:35 <REP> WinRAR

    21/04/2006 15:44 <REP> Wireless 802.11g Monitor

    20/08/2004 12:37 <REP> xerox

    24/01/2006 22:34 <REP> Yahoo!

    16/11/2005 02:00 <REP> Your Company Name

    17 fichier(s) 9ÿ166ÿ312 octets

    86 R‚p(s) 40ÿ506ÿ896ÿ384 octets libres

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est C837-B9C9

     

    R‚pertoire de C:\Program Files\fichiers communs

     

    15/07/2006 07:11 <REP> .

    15/07/2006 07:11 <REP> ..

    17/11/2005 15:00 <REP> Adobe

    17/11/2005 17:29 <REP> AOL

    20/11/2005 15:16 <REP> Designer

    30/03/2006 13:55 278ÿ528 FDEUnInstaller.exe

    16/11/2005 01:58 <REP> InstallShield

    16/11/2005 01:58 <REP> Jasc Software Inc

    16/11/2005 01:43 <REP> Java

    20/11/2005 15:15 <REP> Microsoft Shared

    20/08/2004 12:35 <REP> MSSoap

    16/11/2005 01:51 <REP> Nullsoft

    20/08/2004 12:30 <REP> ODBC

    16/11/2005 01:51 <REP> Real

    22/01/2006 12:57 <REP> ScanSoft Shared

    20/08/2004 12:35 <REP> Services

    16/11/2005 02:00 <REP> Sonic Shared

    20/08/2004 12:30 <REP> SpeechEngines

    14/07/2006 15:52 <REP> Symantec Shared

    17/04/2006 00:10 <REP> System

    16/11/2005 01:53 <REP> TiVo Shared

    28/04/2006 20:43 <REP> WinFixer 2005

    1 fichier(s) 278ÿ528 octets

    21 R‚p(s) 40ÿ506ÿ892ÿ288 octets libres

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est C837-B9C9

     

    R‚pertoire de C:\Program Files\common files

     

    20/05/2006 18:03 <REP> .

    20/05/2006 18:03 <REP> ..

    20/05/2006 18:03 <REP> Companion Wizard

    0 fichier(s) 0 octets

    3 R‚p(s) 40ÿ506ÿ892ÿ288 octets libres

    Le volume dans le lecteur C n'a pas de nom.

    Le num‚ro de s‚rie du volume est C837-B9C9

     

    R‚pertoire de C:\

     

    20/05/2006 18:43 2ÿ855ÿ080 aawsepersonal.exe

    22/11/2005 10:00 4ÿ324ÿ684 GrapheATPro.exe

    20/05/2006 16:28 15ÿ269ÿ672 Install_Messenger_Beta.exe

    03/07/2006 18:52 18ÿ846ÿ869 izispot.exe

    15/12/2005 22:05 1ÿ889ÿ052 lcplugin21b.exe

    29/04/2006 00:29 3ÿ088ÿ384 lotoVB.exe

    11/02/2006 21:39 438ÿ117 odebit.exe

    20/05/2006 18:43 533ÿ574 pllangs.exe

    19/05/2006 17:29 9ÿ396ÿ952 SkypeSetup.exe

    10/05/2006 07:01 281ÿ320 spyspotterwebinstall.exe

    23/01/2006 23:17 3ÿ745ÿ834 SweetImSetup.exe

    07/05/2006 10:41 2ÿ988ÿ224 vwdsetup.exe

    22/06/2006 20:00 931ÿ729 webmediaplayer_setup.exe

    13 fichier(s) 64ÿ589ÿ491 octets

    0 R‚p(s) 40ÿ506ÿ892ÿ288 octets libres

    c:\Documents and Settings\gdazouzou\remote.exe

    c:\Documents and Settings\gdazouzou\Application Data\Microsoft\Installer\{F86FFD86-1966-4C6C-99D9-44A6E7AB97E3}\ARPPRODUCTICON.exe

    c:\Documents and Settings\gdazouzou\Bureau\blbeta.exe

    c:\Documents and Settings\gdazouzou\Bureau\Install_MSN_Messenger.EXE

    c:\Documents and Settings\gdazouzou\Bureau\chercher\LFiles.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\~WA6PScannerSetup.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\EuroMax3.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\GLF1AGLF1A.EXE

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\GLF260GLF260.EXE

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\msnsearch.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\setup_wm.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\MMBPlayer\CloseWindowX.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\NI.UWA6PV_0001_N76M1904\setup.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\nstmp\uninstall.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\Onestleschampions.com Toolbar\bin\Onestleschampions.com Toolbar.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\pft411.tmp\_ISDEL.EXE

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\pft411.tmp\SETUP.EXE

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\R‚pertoire temporaire 1 pour collargol.zip\colargol\colargol\setup.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temp\~CL46.tmp\g2a_customer.exe

    c:\Documents and Settings\gdazouzou\Local Settings\Temporary Internet Files\Content.IE5\2XAHIGZX\XoftSpy422_193[1].exe

    c:\Documents and Settings\gdazouzou\Mes documents\GoogleEarth.exe

    c:\Documents and Settings\gdazouzou\Mes documents\Bridge\FBFR111FCGM44.EXE

    c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\Firefox Setup 1.5.0.4.exe

    c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\HijackThis.exe

    c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\spybotsd14.exe

    c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\Thunderbird Setup 1.5.0.4.exe

    c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\XoftSpy422_193.exe

     

    Vérifications de quelques clefs

    Recherche de clefs EGDACCESS

     

    HKLM\SOFTWARE\Microsoft\Windows\explorer\SharedTaskScheduler

     

    Merci

  10. Bonjour,

     

    J'ai des fenetres de systemdoctor et unibet qui s'affiche, j'avais winfixer j'ai suivi la procédure trouvée sur le forum et je l'ai enlevé voici mon log hijackthis

     

    Logfile of HijackThis v1.99.1

    Scan saved at 16:36:06, on 14/07/2006

    Platform: Windows XP SP2 (WinNT 5.01.2600)

    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

     

    Running processes:

    C:\WINDOWS\System32\smss.exe

    C:\WINDOWS\system32\winlogon.exe

    C:\WINDOWS\system32\services.exe

    C:\WINDOWS\system32\lsass.exe

    C:\WINDOWS\system32\Ati2evxx.exe

    C:\WINDOWS\system32\svchost.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

    C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe

    C:\WINDOWS\system32\Ati2evxx.exe

    C:\WINDOWS\Explorer.EXE

    C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe

    C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe

    C:\Program Files\Norton Internet Security\ISSVC.exe

    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe

    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe

    C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe

    C:\WINDOWS\system32\spoolsv.exe

    C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe

    C:\WINDOWS\System32\FTRTSVC.exe

    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe

    C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe

    C:\Program Files\Wireless 802.11g Monitor\WLService.exe

    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

    C:\Program Files\Wireless 802.11g Monitor\WLanCfgG.exe

    C:\WINDOWS\system32\svchost.exe

    C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

    C:\WINDOWS\system32\CAP4RSK.EXE

    C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

    C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe

    C:\Program Files\Dell\QuickSet\quickset.exe

    C:\WINDOWS\System32\svchost.exe

    C:\Program Files\Apoint\Apoint.exe

    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe

    C:\Program Files\Dell\Media Experience\DMXLauncher.exe

    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe

    C:\WINDOWS\system32\dla\tfswctrl.exe

    C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe

    C:\Program Files\Apoint\Apntex.exe

    C:\Program Files\ScanSoft\OmniPageSE\opware32.exe

    C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    C:\PROGRA~1\Wanadoo\TaskBarIcon.exe

    C:\WINDOWS\system32\ctfmon.exe

    C:\Program Files\MSN Messenger\msnmsgr.exe

    C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe

    C:\Program Files\Skype\Phone\Skype.exe

    C:\PROGRA~1\Wanadoo\ComComp.exe

    C:\PROGRA~1\Wanadoo\Toaster.exe

    C:\PROGRA~1\Wanadoo\Inactivity.exe

    C:\PROGRA~1\Wanadoo\PollingModule.exe

    C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE

    C:\Program Files\Digital Line Detect\DLG.exe

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE

    C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4SWK.EXE

    C:\PROGRA~1\Wanadoo\Watch.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Internet Explorer\iexplore.exe

    C:\Program Files\Messenger\msmsgs.exe

    C:\Documents and Settings\gdazouzou\Mes documents\Téléchargement\HijackThis.exe

     

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aliceadsl.fr

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.fr/myway

    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.aliceadsl.fr

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

    R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll

    R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

    O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll

    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll

    O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

    O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll

    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll

    O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll

    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll

    O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll

    O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

    O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"

    O4 - HKLM\..\Run: [intelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless

    O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe

    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe

    O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe

    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"

    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe

    O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

    O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start

    O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer

    O4 - HKLM\..\Run: [Omnipage] C:\Program Files\ScanSoft\OmniPageSE\opware32.exe

    O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

    O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe

    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

    O4 - HKCU\..\Run: [PDFSaver] C:\Program Files\Photos de Famille\PdfDrv\Install\PDFSaver.exe

    O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=

    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

    O4 - HKCU\..\Run: [msnmsgr] ~"C:\Program Files\MSN Messenger\msnmsgr.exe" /background

    O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

    O4 - Global Startup: Digital Line Detect.lnk = ?

    O4 - Global Startup: Fenêtre d'état de Canon LBP3200.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE

    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE

    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html

    O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm

    O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html

    O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html

    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html

    O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?5eefbc3fd0fd42d38f44bcef1b055da

    O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?5eefbc3fd0fd42d38f44bcef1b055da

    O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html

    O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll

    O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe

    O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe

    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)

    O9 - Extra button: Alice ADSL - {5BBC284F-EE45-47B8-B5FA-71603738280C} - http://www.aliceadsl.fr (file missing) (HKCU)

    O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll

    O14 - IERESET.INF: START_PAGE_URL=http://www.aliceadsl.fr

    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

    O17 - HKLM\System\CCS\Services\Tcpip\..\{3F04F2AA-1E24-4D8D-BD89-483FAC93F4A1}: NameServer = 213.36.80.1,192.168.1.1

    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

    O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll

    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe

    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe

    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe

    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe

    O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

    O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

    O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe

    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe

    O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe

    O23 - Service: R54G Wireless Service - Unknown owner - C:\Program Files\Wireless 802.11g Monitor\WLService.exe

    O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

    O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe

    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe

    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe

    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe

    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

    O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe

    O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

     

    Merci de votre aide

×
×
  • Créer...