

rossi_kawa
Membres-
Compteur de contenus
98 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par rossi_kawa
-
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Qc001, Mise à jour Java faite, nettoyage terminé, MBAM gardé pour analyses régulières..... J'ai fais un scan Antivir, il m'a trouvé une bestiole je te joins le rapport. Sinon, toujours des soucis avec IE, si j'ouvre 8 - 10 pages, et que je surfe lontemps, la charge utile grimpe à mort, parfois jusque 1200 Mo !!!! De quoi cela peut-il venir? Merci infiniment de ton aide, vous faites un super boulot, membres du forum, continuez !!!! Rapport Antivir : Avira AntiVir Personal Report file date: jeudi 15 janvier 2009 19:40 Scanning for 1215215 virus strains and unwanted programs. Licensed to: Avira AntiVir PersonalEdition Classic Serial number: 0000149996-ADJIE-0001 Platform: Windows XP Windows version: (Service Pack 3) [5.1.2600] Boot mode: Normally booted Username: SYSTEM Computer name: MARTIAL Version information: BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00 AVSCAN.EXE : 8.1.4.10 315649 Bytes 25/11/2008 20:03:45 AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40 LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19 LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52 ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 19:28:11 ANTIVIR1.VDF : 7.1.1.113 2817536 Bytes 14/01/2009 18:01:32 ANTIVIR2.VDF : 7.1.1.114 2048 Bytes 14/01/2009 18:01:33 ANTIVIR3.VDF : 7.1.1.125 173568 Bytes 15/01/2009 18:03:09 Engineversion : 8.2.0.54 AEVDF.DLL : 8.1.0.6 102772 Bytes 16/10/2008 10:36:16 AESCRIPT.DLL : 8.1.1.24 340348 Bytes 12/01/2009 17:30:03 AESCN.DLL : 8.1.1.5 123251 Bytes 07/11/2008 18:45:01 AERDL.DLL : 8.1.1.3 438645 Bytes 05/11/2008 18:11:00 AEPACK.DLL : 8.1.3.5 393588 Bytes 12/01/2009 17:30:02 AEOFFICE.DLL : 8.1.0.33 196987 Bytes 11/12/2008 18:26:39 AEHEUR.DLL : 8.1.0.78 1532280 Bytes 12/01/2009 17:30:01 AEHELP.DLL : 8.1.2.0 119159 Bytes 18/11/2008 17:48:47 AEGEN.DLL : 8.1.1.8 323956 Bytes 11/12/2008 18:26:32 AEEMU.DLL : 8.1.0.9 393588 Bytes 16/10/2008 10:36:02 AECORE.DLL : 8.1.5.2 172405 Bytes 28/11/2008 20:03:45 AEBB.DLL : 8.1.0.3 53618 Bytes 16/10/2008 10:36:00 AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05 AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01 AVREP.DLL : 8.0.0.2 98344 Bytes 05/09/2008 20:35:32 AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40 AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23 AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49 SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02 SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40 NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10 RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07 RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37 Configuration settings for the scan: Jobname..........................: Complete system scan Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp Logging..........................: low Primary action...................: interactive Secondary action.................: ignore Scan master boot sector..........: on Scan boot sector.................: on Boot sectors.....................: C:, Process scan.....................: on Scan registry....................: on Search for rootkits..............: on Scan all files...................: All files Scan archives....................: on Recursion depth..................: 20 Smart extensions.................: on Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, Macro heuristic..................: on File heuristic...................: medium Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR, Start of the scan: jeudi 15 janvier 2009 19:40 Starting search for hidden objects. '58325' objects were checked, '0' hidden objects were found. The scan of running processes will be started Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avcenter.exe' - '1' Module(s) have been scanned Scan process 'wmiapsrv.exe' - '1' Module(s) have been scanned Scan process 'jqs.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process 'alg.exe' - '1' Module(s) have been scanned Scan process '1XConfig.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'RegSrvc.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'MDM.EXE' - '1' Module(s) have been scanned Scan process 'kpf4ss.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'DVDRAMSV.exe' - '1' Module(s) have been scanned Scan process 'CFSvcs.exe' - '1' Module(s) have been scanned Scan process 'CeEPwrSvc.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'qttask.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'winampa.exe' - '1' Module(s) have been scanned Scan process 'TPTray.exe' - '1' Module(s) have been scanned Scan process 'CeEKey.exe' - '1' Module(s) have been scanned Scan process 'CePMTray.exe' - '1' Module(s) have been scanned Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'ZCfgSvc.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'S24EvMon.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 44 processes with 44 modules were scanned Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Starting to scan the registry. The registry was scanned ( '68' files ). Starting the file scan: Begin scan in 'C:\' C:\hiberfil.sys [WARNING] The file could not be opened! C:\pagefile.sys [WARNING] The file could not be opened! C:\upload_moi_MARTIAL.tar.gz [0] Archive type: GZ --> upload_moi.tar [1] Archive type: TAR (tape archiver) --> WINDOWS/System32/IEDFix.C.exe [DETECTION] Is the TR/Agent.82432.1 Trojan [NOTE] The file was moved to '49db8447.qua'! C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig709\FRA___\Data1.cab [0] Archive type: CAB (Microsoft) --> VDK10.LNG7 [WARNING] No further files can be extracted from this archive. The archive will be closed C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig709\FRA____\Data1.cab [0] Archive type: CAB (Microsoft) --> VDK10.LNG7 [WARNING] No further files can be extracted from this archive. The archive will be closed End of the scan: jeudi 15 janvier 2009 20:22 Used time: 41:37 Minute(s) The scan has been done completely. 6352 Scanning directories 275392 Files were scanned 1 viruses and/or unwanted programs were found 0 Files were classified as suspicious: 0 files were deleted 0 files were repaired 1 files were moved to quarantine 0 files were renamed 2 Files cannot be scanned 275389 Files not concerned 6891 Archives were scanned 4 Warnings 1 Notes 58325 Objects were scanned with rootkit scan 0 Hidden objects were found -
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Qc001, Comme demandé, voici le rapport ComboFix. En revanche, JavaR refuse de faire une mise à jour en passant par jucheck.exe J'ai essayé une bonne dizaine de fois, même deux fois en désactivant le firewall au cas où, mais rien à faire. Quelle est la marche à suivre? ComboFix 09-01-13.04 - MARTIAL 2009-01-14 21:27:11.2 - NTFSx86 Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.2046.1542 [GMT 1:00] Lancé depuis: c:\documents and settings\MARTIAL\Bureau\ComboFix.exe Commutateurs utilisés :: c:\documents and settings\MARTIAL\Bureau\CFScript.txt AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Outdated) FW: Sunbelt Kerio Personal Firewall *disabled* * Un nouveau point de restauration a été créé . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . . ((((((((((((((((((((((((((((((((((((((( Pilotes/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_IDS00026 -------\Service_ids00026 ((((((((((((((((((((((((((((( Fichiers créés du 2008-12-14 au 2009-01-14 )))))))))))))))))))))))))))))))))))) . 2009-01-13 19:04 . 2009-01-13 19:04 <REP> d-------- C:\rsit 2009-01-04 22:49 . 2001-08-23 17:47 178,176 --a------ c:\windows\system32\LXMDSUI.DLL 2008-12-14 17:54 . 2009-01-06 18:29 54,156 --ah----- c:\windows\QTFont.qfn 2008-12-14 17:54 . 2008-12-14 17:54 1,409 --a------ c:\windows\QTFont.for . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2009-01-14 20:19 --------- d-----w c:\documents and settings\MARTIAL\Application Data\Skype 2009-01-14 18:42 --------- d-----w c:\documents and settings\MARTIAL\Application Data\skypePM 2009-01-12 21:53 --------- d-----w c:\program files\CCleaner 2009-01-12 19:28 5,835 ----a-w c:\windows\system32\drivers\fwdrv.err 2009-01-12 18:53 --------- d-----w c:\program files\Malwarebytes' Anti-Malware 2009-01-05 13:25 --------- d-----w c:\documents and settings\All Users\Application Data\Zylom 2009-01-04 17:38 38,496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys 2009-01-04 17:38 15,504 ----a-w c:\windows\system32\drivers\mbam.sys 2009-01-03 19:34 --------- d-----w c:\program files\emule 2008-12-16 23:20 29,680 ----a-w c:\documents and settings\MARTIAL\Application Data\wklnhst.dat 2008-12-11 10:57 333,952 ----a-w c:\windows\system32\drivers\srv.sys 2008-11-24 20:15 --------- d-----w c:\program files\Google 2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll 2008-10-16 20:18 826,368 ----a-w c:\windows\system32\wininet.dll 2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll 2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll 2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll 2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll 2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll 2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe 2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll 2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll 2008-08-27 18:17 144 --sha-w c:\windows\system32\470748447.dat 2008-09-17 12:08 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012008091720080918\index.dat . ((((((((((((((((((((((((((((( snapshot@2009-01-13_21.54.50,28 ))))))))))))))))))))))))))))))))))))))))) . + 2005-10-20 19:02:28 163,328 ----a-w c:\windows\ERDNT\subs\ERDNT.EXE - 2008-09-08 10:41:42 333,824 -c----w c:\windows\system32\dllcache\srv.sys + 2008-12-11 10:57:09 333,952 -c----w c:\windows\system32\dllcache\srv.sys - 2008-12-09 23:24:37 17,593,280 ----a-w c:\windows\system32\MRT.exe + 2009-01-10 01:35:28 20,853,704 ----a-w c:\windows\system32\MRT.exe . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-06-10 339968] "CeEPOWER"="c:\program files\TOSHIBA\Power Management\CePMTray.exe" [2004-08-18 135168] "CeEKEY"="c:\program files\TOSHIBA\E-KEY\CeEKey.exe" [2004-08-06 643072] "TPNF"="c:\program files\TOSHIBA\TouchPad\TPTray.exe" [2004-07-28 53248] "ZCfgSvc.exe"="c:\windows\system32\ZCfgSvc.exe" [2004-09-06 417856] "WinampAgent"="c:\program files\Winamp\winampa.exe" [2006-09-26 35328] "avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497] "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-09-24 282624] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Sebring] 2004-09-06 05:29 180290 c:\windows\system32\LgNotify.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "vidc.DIV3"= DivXc32.dll "vidc.DIV4"= DivXc32f.dll "msacm.divxa32"= DivXa32.acm [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Messenger\\msmsgs.exe"= "c:\\Program Files\\iTunes\\iTunes.exe"= "c:\program files\eChanblard\emule.exe"= c:\program files\eChanblard\emule.exe:192.168.1.105/255.255.255.255,192.168.1.107/255.255.255.255:Enabled:eMule "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"= "c:\\Program Files\\emule\\emule.exe"= "c:\\Program Files\\MSN Messenger\\msnmsgr.exe"= "c:\\Program Files\\MSN Messenger\\livecall.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= R1 fwdrv;Firewall Driver;c:\windows\system32\drivers\fwdrv.sys [2006-07-18 284184] R1 khips;Kerio HIPS Driver;c:\windows\system32\drivers\khips.sys [2006-07-18 91672] S3 CnxEtP;Conexant AccessRunner USB ADSL WAN Adapter Filter Driver;c:\windows\system32\drivers\CnxEtP.sys [2005-02-25 117132] S3 CnxEtU;Conexant AccessRunner USB ADSL Interface Device Driver;c:\windows\system32\drivers\CnxEtU.sys [2005-02-25 546044] S3 CnxTgN;Conexant AccessRunner USB ADSL WAN Adapter Driver;c:\windows\system32\drivers\CnxTgN.sys [2005-02-25 108292] S3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files\Lavalys\EVEREST Home Edition\kerneld.wnt [2005-08-17 7168] S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2008-11-02 195752] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4f36d266-f3de-11db-90dc-e9f06bbb25da}] \Shell\AutoRun\command - E:\InstallTomTomHOME.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{72d98c2b-f36d-11db-90d6-000e35a7e8d4}] \Shell\AutoRun\command - E:\InstallTomTomHOME.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f18738a7-7374-11dc-9177-000e35a7e8d4}] \Shell\AutoRun\command - E:\InstallTomTomHOME.exe . . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.google.fr/ IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O16 -: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://ma-config.com/activex/hardwaredetection_3_0_3_5.cab c:\windows\Downloaded Program Files\hardwaredetection.inf c:\windows\Downloaded Program Files\zylomgamesplayer.dll - O16 -: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} hxxp://game09.zylom.com/activex/zylomgamesplayer.cab c:\windows\Downloaded Program Files\ZylomGamesPlayer.inf . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-01-14 21:38:35 Windows 5.1.2600 Service Pack 3 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** [HKEY_LOCAL_MACHINE\System\ControlSet004\Services\EverestDriver] "ImagePath"="\??\c:\program files\Lavalys\EVEREST Home Edition\kerneld.wnt" . --------------------- DLLs chargées dans les processus actifs --------------------- - - - - - - - > 'winlogon.exe'(644) c:\windows\system32\LgNotify.dll - - - - - - - > 'explorer.exe'(2300) c:\progra~1\WINDOW~2\wmpband.dll . ------------------------ Autres processus actifs ------------------------ . c:\windows\system32\ati2evxx.exe c:\windows\system32\S24EvMon.exe c:\program files\Avira\AntiVir PersonalEdition Classic\sched.exe c:\program files\Avira\AntiVir PersonalEdition Classic\avguard.exe c:\program files\TOSHIBA\Power Management\CeEPwrSvc.exe c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe c:\windows\system32\DVDRAMSV.exe c:\program files\Sunbelt Software\Personal Firewall\kpf4ss.exe c:\program files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE c:\windows\system32\RegSrvc.exe c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe c:\program files\Sunbelt Software\Personal Firewall\kpf4gui.exe c:\windows\system32\1XConfig.exe c:\windows\system32\rundll32.exe . ************************************************************************** . Heure de fin: 2009-01-14 21:44:33 - La machine a redémarré ComboFix-quarantined-files.txt 2009-01-14 20:44:25 ComboFix2.txt 2009-01-13 20:57:15 Avant-CF: 33 610 178 560 octets libres Après-CF: 33,505,685,504 octets libres 163 --- E O F --- 2009-01-14 17:27:35 -
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
-
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Qc001, J'utilise régulièrement une clé USB, mais je doute qu'elle soit infectée; je bosse pour une organisation internationale, et je t'assure que les PC du boulot, sur lesquels j'utilse également la clé, sont blindés niveau sécurité. Il s ne détectent rien........ Cependant, on n'est jamais à l'abri d'une mauvaise surprise.... Donc comme tu le disais, il vaut mieux nettoyer tout ça.... Pour le rapport ComboFix, introuvable.... j'ai effectué une recherche avec "ComboFix.txt", ça ne donne rien.... Mais je crois me rappeler que je l'avais mis en route par erreur, et que comme on m'avait dit de ne pas l'utiliser sans avis, du coup je l'ai arrêté en cours de route.... -
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Qc001, Désolé de ne pas répondre de suite aux posts, je suis au boulot toute la journée, sans le PC .... Je passe MBAM tous les 10 - 15 jours, ainsi que Spybot, mais MBAM ne m'a rien détecté avant, c'est vrai.... Comme demandé, voici les deux rapports RSIT : - log : Logfile of random's system information tool 1.05 (written by random/random) Run by MARTIAL at 2009-01-13 19:04:08 Microsoft Windows XP Édition familiale Service Pack 3 System drive C: has 32 GB (42%) free of 76 GB Total RAM: 2046 MB (78% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:04:17, on 13/01/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\1XConfig.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\MARTIAL\Bureau\RSIT.exe C:\Documents and Settings\MARTIAL\Bureau\MARTIAL.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_5.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game09.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe -- End of file - 6501 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}] Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-09-23 1088296] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}] DriveLetterAccess - C:\WINDOWS\system32\dla\tfswshx.dll [2004-07-20 118842] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-06-10 339968] "CeEPOWER"=C:\Program Files\TOSHIBA\Power Management\CePMTray.exe [2004-08-18 135168] "CeEKEY"=C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe [2004-08-06 643072] "TPNF"=C:\Program Files\TOSHIBA\TouchPad\TPTray.exe [2004-07-28 53248] "ZCfgSvc.exe"=C:\WINDOWS\system32\ZCfgSvc.exe [2004-09-06 417856] "WinampAgent"=C:\Program Files\Winamp\winampa.exe [2006-09-26 35328] "avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497] "QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-09-24 282624] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Sebring] C:\WINDOWS\system32\LgNotify.dll [2004-09-06 180290] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 "NoDriveAutoRun"=4294967279 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Yahoo!\Messenger\YPager.exe"="C:\Program Files\Yahoo!\Messenger\YPager.exe:*:Enabled:Yahoo! Messenger" "C:\Program Files\Yahoo!\Messenger\YServer.exe"="C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server" "C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger" "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" "C:\Program Files\eChanblard\emule.exe"="C:\Program Files\eChanblard\emule.exe:192.168.1.105/255.255.255.255,192.168.1.107/255.255.255.255:Enabled:eMule" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe"="C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe:*:Enabled:Sunbelt Kerio Firewall GUI" "C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent" "C:\Program Files\emule\emule.exe"="C:\Program Files\emule\emule.exe:*:Enabled:eMule" "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice" "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" "C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4f36d266-f3de-11db-90dc-e9f06bbb25da}] shell\AutoRun\command - E:\InstallTomTomHOME.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{72d98c2b-f36d-11db-90d6-000e35a7e8d4}] shell\AutoRun\command - E:\InstallTomTomHOME.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9ad5cec0-352f-11db-8f8d-000e35a7e8d4}] shell\Auto\command - UFO.exe shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL UFO.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f18738a7-7374-11dc-9177-000e35a7e8d4}] shell\AutoRun\command - E:\InstallTomTomHOME.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ffe20c32-5b4f-11dd-92d8-000e35a7e8d4}] shell\Auto\command - AdobeR.exe e shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL AdobeR.exe e ======List of files/folders created in the last 1 months====== 2009-01-13 19:04:08 ----D---- C:\rsit 2009-01-12 22:55:28 ----D---- C:\WINDOWS\ERDNT 2009-01-12 22:55:28 ----D---- C:\Qoobox 2009-01-12 22:55:27 ----D---- C:\ComboFix 2009-01-12 22:55:22 ----A---- C:\WINDOWS\system32\CF30382.exe 2009-01-04 22:49:58 ----A---- C:\WINDOWS\system32\LXMDSUI.DLL ======List of files/folders modified in the last 1 months====== 2009-01-13 19:00:23 ----D---- C:\WINDOWS\Temp 2009-01-13 18:58:14 ----D---- C:\WINDOWS\system32\CatRoot2 2009-01-12 23:32:56 ----D---- C:\Documents and Settings\MARTIAL\Application Data\Skype 2009-01-12 22:55:29 ----D---- C:\WINDOWS\system32 2009-01-12 22:55:28 ----D---- C:\WINDOWS 2009-01-12 22:55:13 ----D---- C:\WINDOWS\Prefetch 2009-01-12 22:53:01 ----D---- C:\Program Files\CCleaner 2009-01-12 20:35:10 ----A---- C:\rapport.txt 2009-01-12 20:31:51 ----A---- C:\WINDOWS\system32\tmp.txt 2009-01-12 20:31:49 ----AD---- C:\autorun.inf 2009-01-12 20:28:40 ----A---- C:\WINDOWS\ntbtlog.txt 2009-01-12 19:53:00 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-01-12 19:52:59 ----D---- C:\WINDOWS\system32\drivers 2009-01-12 18:48:03 ----D---- C:\Documents and Settings\MARTIAL\Application Data\skypePM 2009-01-06 20:33:41 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-01-05 14:25:13 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-01-05 14:25:13 ----D---- C:\Documents and Settings\All Users\Application Data\Zylom 2009-01-04 22:45:42 ----A---- C:\WINDOWS\win.ini 2009-01-04 22:45:41 ----SHD---- C:\WINDOWS\Installer 2009-01-04 22:45:41 ----HD---- C:\Config.Msi 2009-01-04 22:44:34 ----D---- C:\WINDOWS\twain_32 2009-01-03 20:34:08 ----D---- C:\Program Files\emule 2008-12-18 18:58:53 ----HD---- C:\WINDOWS\inf 2008-12-17 21:49:26 ----RSHDC---- C:\WINDOWS\system32\dllcache 2008-12-17 21:48:22 ----HD---- C:\WINDOWS\$hf_mig$ ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2005-02-26 82380] R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys [] R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2008-11-25 75072] R1 fwdrv;Firewall Driver; C:\WINDOWS\system32\drivers\fwdrv.sys [2006-07-18 284184] R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576] R1 khips;Kerio HIPS Driver; C:\WINDOWS\system32\drivers\khips.sys [2006-07-18 91672] R1 meiudf;meiudf; C:\WINDOWS\System32\Drivers\meiudf.sys [2004-08-17 90480] R1 SrvcEKIOMngr;SrvcEKIOMngr; C:\WINDOWS\System32\Drivers\EKIoMngr.sys [2004-07-30 6400] R1 SrvcEPECioctl;SrvcEPECioctl; C:\WINDOWS\System32\Drivers\ECioctl.sys [2004-08-16 5376] R1 SrvcEPIOMngr;SrvcEPIOMngr; C:\WINDOWS\System32\Drivers\EPIoMngr.sys [2004-07-30 6400] R1 SrvcSSIOMngr;SrvcSSIOMngr; C:\WINDOWS\System32\Drivers\SSIoMngr.sys [2004-07-30 6400] R1 SrvcTPIOMngr;SrvcTPIOMngr; C:\WINDOWS\System32\Drivers\TPIoMngr.sys [2004-07-30 6400] R1 sscdbhk5;sscdbhk5; C:\WINDOWS\system32\drivers\sscdbhk5.sys [2004-07-14 5627] R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352] R1 ssrtln;ssrtln; C:\WINDOWS\system32\drivers\ssrtln.sys [2004-07-14 23545] R1 Tcpip6;Pilote du protocole IPv6 Microsoft; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2008-06-20 225856] R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.0.0.7; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2006-03-18 16015] R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [2002-08-14 17005] R2 drvnddm;drvnddm; C:\WINDOWS\system32\drivers\drvnddm.sys [2004-07-14 40448] R2 irda;Protocole IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192] R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\netdevio.sys [2003-01-29 12032] R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2004-06-02 11258] R2 tfsnboio;tfsnboio; C:\WINDOWS\system32\dla\tfsnboio.sys [2004-07-20 25723] R2 tfsncofs;tfsncofs; C:\WINDOWS\system32\dla\tfsncofs.sys [2004-07-20 34843] R2 tfsndrct;tfsndrct; C:\WINDOWS\system32\dla\tfsndrct.sys [2004-07-20 4123] R2 tfsndres;tfsndres; C:\WINDOWS\system32\dla\tfsndres.sys [2004-07-20 2271] R2 tfsnifs;tfsnifs; C:\WINDOWS\system32\dla\tfsnifs.sys [2004-07-20 86138] R2 tfsnopio;tfsnopio; C:\WINDOWS\system32\dla\tfsnopio.sys [2004-07-20 14587] R2 tfsnpool;tfsnpool; C:\WINDOWS\system32\dla\tfsnpool.sys [2004-07-20 6363] R2 tfsnudf;tfsnudf; C:\WINDOWS\system32\dla\tfsnudf.sys [2004-07-20 98714] R2 tfsnudfa;tfsnudfa; C:\WINDOWS\system32\dla\tfsnudfa.sys [2004-07-20 100603] R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2004-02-24 400384] R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-06-21 626204] R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2004-05-08 101833] R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-06-10 746496] R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys [] R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952] R3 DKbFltr;Dritek HotKey Keyboard Filter Driver; C:\WINDOWS\System32\Drivers\DKbFltr.sys [2004-01-12 17497] R3 EMSCR;EMSCR; C:\WINDOWS\system32\DRIVERS\EMS7SK.sys [2004-06-25 58240] R3 EPOWER;Compal E-POWER Driver; C:\WINDOWS\System32\Drivers\hkdrv.sys [2004-08-20 4224] R3 ESDCR;ESDCR; C:\WINDOWS\system32\DRIVERS\ESD7SK.sys [2004-07-12 36480] R3 ESMCR;ESMCR; C:\WINDOWS\system32\DRIVERS\ESM7SK.sys [2004-07-12 330624] R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2006-07-14 14448] R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288] R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368] R3 Rasirda;Miniport réseau étendu (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584] R3 RTL8023;Realtek RTL8139/810x/8169/8110 all in one NDIS NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlnic51.sys [2003-08-13 65280] R3 SMCIRDA;SMSC IrCC Miniport Device Driver; C:\WINDOWS\system32\DRIVERS\smcirda.sys [2004-06-16 46080] R3 tunmp;Pilote de carte miniport Tun Microsoft; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288] R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128] R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208] R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520] R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 w22n51;Pilote Intel® PRO/Wireless 2200 Adapter pour Windows XP; C:\WINDOWS\system32\DRIVERS\w22n51.sys [2004-08-30 3151232] S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\WINDOWS\System32\Drivers\adildr.sys [] S3 adiusbaw;USB ADSL WAN Adapter; C:\WINDOWS\system32\DRIVERS\adiusbaw.sys [] S3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-02-21 1265388] S3 catchme;catchme; \??\C:\DOCUME~1\MARTIAL\LOCALS~1\Temp\catchme.sys [] S3 CnxEtP;Conexant AccessRunner USB ADSL WAN Adapter Filter Driver; C:\WINDOWS\system32\DRIVERS\CnxEtP.sys [2002-04-01 117132] S3 CnxEtU;Conexant AccessRunner USB ADSL Interface Device Driver; C:\WINDOWS\system32\DRIVERS\CnxEtU.sys [2002-04-01 546044] S3 CnxTgN;Conexant AccessRunner USB ADSL WAN Adapter Driver; C:\WINDOWS\system32\DRIVERS\CnxTgN.sys [2002-04-04 108292] S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys [] S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt [] S3 grmnusb;grmnusb; C:\WINDOWS\system32\drivers\grmnusb.sys [2007-03-08 8320] S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-03-08 49920] S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-03-08 16496] S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-03-08 21568] S3 ids00026;ids00026; \??\C:\Documents and Settings\All Users\Application Data\Kaspersky Anti-Virus Personal\5.0\bases\ids00026.sys [] S3 MSIRCOMM;Microsoft IR Communications Driver; C:\WINDOWS\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016] S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992] S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232] S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552] S3 TVICHW32;TVICHW32; \??\C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS [] S3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032] S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 6to4;Service d'application d'assistance IPv6; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2008-10-23 68865] R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2008-10-23 151297] R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-06-10 376832] R2 CeEPwrSvc;CeEPwrSvc; C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe [2004-06-23 36960] R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2004-06-16 36864] R2 DVD-RAM_Service;DVD-RAM_Service; C:\WINDOWS\system32\DVDRAMSV.exe [2004-08-17 106496] R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 Irmon;Moniteur infrarouge; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 KPF4;Sunbelt Kerio Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe [2006-07-18 1205784] R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120] R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 RegSrvc;RegSrvc; C:\WINDOWS\system32\RegSrvc.exe [2004-09-06 122950] R2 S24EventMonitor;Spectrum24 Event Monitor; C:\WINDOWS\system32\S24EvMon.exe [2004-09-06 286787] R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864] S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256] S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2006-09-25 451136] S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2008-11-02 195752] S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136] S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136] S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016] S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880] -----------------EOF----------------- - info : info.txt logfile of random's system information tool 1.05 2009-01-13 19:04:21 ======Uninstall list====== -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6} -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {9541FED0-327F-4df0-8B96-EF57EF622F19} -->MsiExec.exe /I{B5D8CCBF-08D8-46C0-8B04-3BC0CAEDA094} 32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7} Adobe Download Manager 2.2 (Supprimer uniquement)-->"C:\Program Files\Fichiers communs\Adobe\ESD\uninst.exe" Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe Adobe Photoshop 7.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Adobe\Photoshop 7.0\Uninst.isu" -c"C:\Program Files\Adobe\Photoshop 7.0\Uninst.dll" Adobe Reader 7.1.0 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A71000000002} ALPS Touch Pad Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}\setup.exe" UNINSTALL ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe ATI Control Panel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe" ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean Avanquest update-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}\setup.exe" -l0x40c -removeonly AVIcodec (remove only)-->"C:\Program Files\AVIcodec\uninst.exe" Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe" Complément Microsoft Word pour Microsoft Works Suite-->MsiExec.exe /I{7054ED85-498D-4D20-906F-14646AEC5581} Console TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3CF0858D-1AC5-4308-9DE7-AD15288A8BDC}\Setup.exe" -l0x40c Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe" Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe" Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe" Digital Voice Recorder V2.0-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Digital Voice Recorder V2.0\Uninst.isu" Direct Show Ogg Vorbis Filter (remove only)-->"C:\WINDOWS\system32\OggDSuninst.exe" DivX 5.0.1 Bundle-->C:\WINDOWS\unvise32.exe C:\Program Files\DivX\uninstal.log DivX Pro Codec-->C:\WINDOWS\unvise32.exe C:\Program Files\DivX\DivX Pro Bundle.log Easy Button-->C:\WINDOWS\UnInst32.exe EzButton.UNI eMulev0.47c.-MorphXTv9.2-->"C:\Program Files\eMule\unins000.exe" Encyclopédie Microsoft Encarta 2004-->MsiExec.exe /I{04460044-9149-45C6-A806-F2BF9CFCE762} EVEREST Home Edition v2.20-->"C:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe" ffdshow (remove only)-->"C:\Program Files\ffdshow\uninstall.exe" Garmin Communicator Plugin Beta-->MsiExec.exe /X{4C6C6FB5-8FE8-440D-928E-FE9E28C8A744} Garmin WebUpdater-->MsiExec.exe /X{366FFC89-C800-4366-B903-B9C4314109A5} HijackThis 2.0.2-->"C:\Documents and Settings\MARTIAL\Mes documents\perso\soft\HijackThis.exe" /uninstall Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe" Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe" hp deskjet 5100-->msiexec /x{15C165F1-1DAE-4476-AFB6-8723729B41E7} HP Imaging Device Functions 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat HP OCR Software 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat HP Photo and Imaging 2.0 - Deskjet Series-->MsiExec.exe /I{E0828692-FD9D-459F-9312-C645C3CA6650} HP Photosmart All-In-One Software 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\{B09BCBF6-87EE-4403-A336-3A9510856535}\setup\hpzscr01.exe -datfile hposcr15.dat HP Photosmart Essential 2.01-->C:\Program Files\Hewlett-Packard\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat hp print screen utility-->C:\Program Files\Hewlett-Packard\hp print screen utility\UnInstall\prnunins.exe HP Update-->MsiExec.exe /X{AB40272D-92AB-4F30-B36B-22EDE16F8FE5} HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3} Intel® mDriver-->MsiExec.exe /I{8C863827-645F-4ABB-8F6C-12D16F34B023} Intel® PROSet for Wireless-->MsiExec.exe /I{F6E587BD-D709-4A41-B144-1106D3D889AE} InterVideo WinDVD Creator 2-->"C:\Program Files\InstallShield Installation Information\{2FCE4FC5-6930-40E7-A4F1-F862207424EF}\setup.exe" REMOVEALL InterVideo WinDVD for TOSHIBA-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL iTunes-->MsiExec.exe /I{5878FF02-3B8F-4309-B4E5-0D3DB6F2E8E6} Java 2 Runtime Environment, SE v1.4.2_05-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050} Kaspersky Online Scanner-->C:\WINDOWS\system32\KASPER~1\KASPER~1\kavuninstall.exe Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall Ma-Config.com-->MsiExec.exe /X{DD987A54-122B-4CFD-A8C5-5577027A6B78} Macromedia Flash Player-->MsiExec.exe /X{0456ebd7-5f67-4ab6-852e-63781e3f389c} Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe" Manuels TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{188BA1CC-F3A1-49B0-A34D-8C861C64E1AE}\Setup.exe" -l0x40c Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700} Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp" Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{3F7924B9-D148-3141-87B1-68F36043A940} Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28} Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{511DF669-2930-30C0-8EB6-552887E29EC8} Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783} Microsoft AutoRoute v11.0-->MsiExec.exe /I{8704D51E-25B7-4F23-81E7-AA4F54790220} Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe" Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe" Microsoft Money-->MsiExec.exe /I{1D643CD2-4DD6-11D7-A4E0-000874180BB3} Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe" Microsoft Office OneNote 2003-->MsiExec.exe /I{91A1040C-6000-11D3-8CFE-0150048383C9} Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9} Microsoft Picture It! Photo Premium 9-->C:\WINDOWS\system32\msiexec.exe /i {DBA8B9E1-C6FF-4624-9598-73D3B41A0903} Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe" Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Microsoft Works-->MsiExec.exe /I{E6BAE954-487E-488B-BC4E-2E69E54E8117} Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media 9 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe" Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)-->"C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe" Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe" Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE} MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F} MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF} MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E} Outil de diagnostic PC TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\PCDiag\Uninst.isu" Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe" PCFriendly-->C:\Program Files\PCFriendly\inuninst.exe Pilote du DVD-RAM-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9D765FA6-F2BC-40AF-8145-50808F9BDF4E}\setup.exe" DVD-RAM Driver PowerDirector Express-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EDE721EC-870A-11D8-9D75-000129760D75}\setup.exe" -uninstall Quick Zip 4.60.014-->"C:\Program Files\QuickZip4\unins000.exe" QuickTime-->MsiExec.exe /I{55BF0E5F-EA8E-4C13-A8B4-9E4857F5A2DE} Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE Realtek Fast Ethernet Adapter Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{97AA0C55-AFAD-4126-B21C-F1318FB6DADA}\Setup.exe" -l0x40c REMOVE Réducteur de bruit lect. CD/DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x40c Satsuki Decoder Pack-->C:\Program Files\Satsuki Decoder Pack\Uninstall.exe Sélecteur d'installation de Microsoft Works 2004-->C:\Program Files\Microsoft Works Suite 2004\Setup\Launcher.exe D:\ SHARP GSM GPRS USB Driver Ver2.1.0-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{3D4B89AC-B4B3-47D4-8CEE-85390508F3D6} /l1036 Shockwave-->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82} SMSC IrCC V5.1.3600.5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F1B8DB67-D30E-4FF9-A85F-3CEE51825AA2}\setup.exe" -l0x40c UNINSTALL Sonic DLA-->MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6} Sonic RecordNow!-->MsiExec.exe /I{9541FED0-327F-4DF0-8B96-EF57EF622F19} Spybot - Search & Destroy 1.5.2.20-->"C:\WINDOWS\unins000.exe" Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe" SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.2-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{68D368EE-F5AC-4402-BD45-B454B5453FE1} Sunbelt Kerio Personal Firewall-->MsiExec.exe /X{E659E0EE-10E6-49B7-8696-60F38D0EB174} The Playa-->"C:\Program Files\The Playa\uninstall.exe" TOSHIBA ConfigFree-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}\setup.exe" -l0x40c UNINSTALL TOSHIBA Software Modem-->Tosmreg -U Touch and Launch-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3470FBE6-B743-420F-B5CE-0D27FA749C16}\Setup.exe" -l0x40c Utilitaire de zoom TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{64212898-097F-4F3F-AECA-6D34A7EF82DF}\setup.exe" Utilitaire Economie TOSHIBA-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{D674A81F-0216-4523-B6AB-3F18D789798E} /l1036 Utilitaire Hotkey TOSHIBA-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{A933190B-9C8E-4E81-B4D4-038D594A1675} /l1036 Utilitaire TouchPad ON/OFF-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{7EF2432D-8C52-40C1-962A-1EB0413F25ED} /l1036 VC_MergeModuleToMSI-->MsiExec.exe /I{900A92BA-19EF-4A34-86CF-7B6C85BDD971} WD Diagnostics-->MsiExec.exe /X{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B} Winamp (remove only)-->"C:\Program Files\Winamp\UninstWA.exe" Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe" Windows Live Messenger-->MsiExec.exe /I{F6326B60-1B1D-4ABF-BFCD-7B7404F44411} Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe" Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe" Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840} Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe" WinRAR Archiveur-->C:\Program Files\WinRAR\uninstall.exe WinZip-->C:\Program Files\WinZip\WINZIP32.EXE /uninstall XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe" ZebHelpProcess 2.27-->"C:\Program Files\ZebHelpProcess 2\unins000.exe" ======Hosts File====== 127.0.0.1 localhost ======Security center information====== AV: Avira AntiVir PersonalEdition FW: Sunbelt Kerio Personal Firewall System event log Computer Name: MARTIAL Event Code: 17 Message: AVGNTFLT successfully loaded Record Number: 5 Source Name: avgntflt Time Written: 20081123200716.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 4201 Message: Le système a détecté que la carte réseau Realtek RTL8139/810x Family Fast Ethernet NIC était connectée au réseau, et a lancé une opération normale sur la carte réseau. Record Number: 4 Source Name: Tcpip Time Written: 20081123200716.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 3100 Message: Le pilote de l'édition Développeur IPv6 Microsoft a été démarré. Record Number: 3 Source Name: Tcpip6 Time Written: 20081123200716.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 6005 Message: Le service d'Enregistrement d'événement a démarré. Record Number: 2 Source Name: EventLog Time Written: 20081123200653.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 6009 Message: Microsoft ® Windows ® 5.01. 2600 Service Pack 3 Uniprocessor Free. Record Number: 1 Source Name: EventLog Time Written: 20081123200653.000000+060 Event Type: Informations User: Application event log Computer Name: MARTIAL Event Code: 1002 Message: Les compteurs de performances pour le service SMSvcHost 3.0.0.0 (SMSvcHost 3.0.0.0) existent déjà dans le Registre des performances. Il n'est pas nécessaire de les réinstaller. Record Number: 1124 Source Name: LoadPerf Time Written: 20080229112630.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 1002 Message: Les compteurs de performances pour le service MSDTC Bridge 3.0.0.0 (MSDTC Bridge 3.0.0.0) existent déjà dans le Registre des performances. Il n'est pas nécessaire de les réinstaller. Record Number: 1123 Source Name: LoadPerf Time Written: 20080229112630.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 0 Message: The ServiceModelReg tool has completed successfully. Record Number: 1122 Source Name: System.ServiceModel.Install 3.0.0.0 Time Written: 20080229112532.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 0 Message: The ServiceModelReg tool will take the following actions: Reinstalling configuration section system.serviceModel to c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Config\machine.config. Reinstalling configuration section system.runtime.serialization to c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Config\machine.config. Reinstalling configuration section system.serviceModel.activation to c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Config\machine.config. Adding configuration entry for BuildProvider: System.ServiceModel.Activation.ServiceBuildProvider, System.ServiceModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 Reinstalling compilation assembly node to System.Web section group: System.Runtime.Serialization, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=MSIL Reinstalling compilation assembly node to System.Web section group: System.IdentityModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=MSIL Reinstalling compilation assembly node to System.Web section group: System.ServiceModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 Reinstalling HttpHandlers node to System.Web section group: *.svc Reinstalling HttpModules node to System.Web section group: ServiceModel Reinstalling WMI classes. Reinstalling Windows CardSpace (idsvc). Reinstalling Net.Tcp Port Sharing Service (NetTcpPortSharing). Reinstalling HTTP namespace reservations. Record Number: 1121 Source Name: System.ServiceModel.Install 3.0.0.0 Time Written: 20080229112524.000000+060 Event Type: Informations User: Computer Name: MARTIAL Event Code: 0 Message: Could not detect IIS installation or IIS is disabled, skipping the Web Host Script Mappings component since it depends upon IIS to function properly. If you believe this message is an error, check your IIS installation to make sure it is installed properly. Record Number: 1120 Source Name: System.ServiceModel.Install 3.0.0.0 Time Written: 20080229112524.000000+060 Event Type: Avertissement User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\QuickTime\QTSystem "windir"=%SystemRoot% "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "PROCESSOR_ARCHITECTURE"=x86 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 13 Stepping 6, GenuineIntel "PROCESSOR_REVISION"=0d06 "NUMBER_OF_PROCESSORS"=1 "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "CLASSPATH"=.;C:\Program Files\Java\j2re1.4.2_05\lib\ext\QTJava.zip "QTJAVA"=C:\Program Files\Java\j2re1.4.2_05\lib\ext\QTJava.zip -----------------EOF----------------- -
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Qc001, ipl 001, Xeti, Merci de vous occuper de mon problème, pas de soucis pour vos interventions et désolé pour les petits soucis de comm que cela provoque !!! Désolé également d'avoir utilisé un outil sans vos recommandations, comme me l'a signalé un membre par MP, c'était idiot !!! c'est d'autant plus bête que je connais ces règles pour être venu régulièrement sur le forum il y a quelques mois. J'espère que mon erreur sera sans conséquences.... Je précise également, ce que j'aurais du faire au départ, que j'ai quelques notions avec ces outils pour les avoir utilisé par le passé ou les utiliser encore régulièrement aujourd'hui. Enfin, j'ai ce problème depuis un bout de temps, et j'étais persuadé que ça venait de IE, puisque ça a commencé par des soucis localisés uniquement pendant la navigation. En exécutant IE sans modules complémentaires, je n'ai plus de plantage en cours de surf. Mais de nouveaux bugs ont fait leur apparition par la suite. Je ne sais pas si tout cela est lié ???? J'ai passé MBAM comme demandé par Qc001, rien à signaler, je joins le rapport et attends les instructions. Merci encore pour votre aide, rossi_kawa Malwarebytes' Anti-Malware 1.32 Version de la base de données: 1647 Windows 5.1.2600 Service Pack 3 12/01/2009 23:10:24 mbam-log-2009-01-12 (23-10-24).txt Type de recherche: Examen rapide Eléments examinés: 60481 Temps écoulé: 4 minute(s), 51 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté) -
[résolu !] InfectionTroan "Virtumonde"
rossi_kawa a posté un sujet dans Analyses et éradication malwares
Salut à tous, Depuis quelques semaines, j'ai des problèmes avec mon PC : ralentissements, pages qui s'affichent seules, plantages, blocages..... Je pense avoir trouvé pourquoi mais j'ai besoin de votre expertise pour vérifier. J'ai passé un Spybot (qui ne détectais rien avant), il m'a détecté un truc nommé Virtumonde, avec C:\WINDOWS\KHALMNPR.Exe (trojan) et Smitfraud C. Ayant déjà eu affaire à Smitfraud-C sur le PC d'un ami, j'ai gardé archivée la procédure de désinfection, je l'ai exécuté, et après avoir repassé Spybot, plus de Smitfraud-C. Par contre, toujours Virtumonde detecté. J'aimerais donc bénéficier de votre aide pour supprimer ce problème, et vérifier si Smitfraud-C est bien effacé. Je vous joins un rapport HJT. Merci d'avance !!! Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:03:18, on 12/01/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\1XConfig.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_5.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game09.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe -- End of file - 6601 bytes -
Bonjour à tous, Ayant déjà pu bénéficier de vos services avertis (plusieurs fois sur le forum Sécurité), je me tourne de nouveau vers vous pour un problème avec mon PC portable. J'ai déjà posté ce message le 14.12.2008 sur le forum Sécurité, mais personne n'a répondu, donc je me suis dit que je ne devais pas m'adresser au bon forum. Lorsque je surfe, au début tout va bien, puis au bout d'un certain temps, l'UC est saturée, IE 7 plante complètement, plus rien ne charge, et là je m'aperçois que la charge utile est à un niveau très élevée (parfois jusque 1300 Mo), donc je suis obligé de quitter toutes mes pages avec le gestionnaire de tâches. Cela fait à peu près deux mois que ça dure, c'est pénible, surtout lorsque je suis au beau milieu d'une recherche. J'ai testé pendant une semaine l'exécution de IE 7 sans les modules complémentaires, et le problème disparaît. Pouvez-vous me dire pourquoi ça fait ça et ce qu'il faut faire pour résoudre ce problème? Mon PC tourne avec un monoprocesseur Intel 1,66 GHz, 2 GO de mémoire vive, Windows XP édition familiale avec SP3. Merci d'avance, rossi_kawa
-
Bonjour à tous, Ayant déjà pu bénéficier de vos services avertis, je me tourne de nouveau vers vous pour un petit problème avec mon PC portable. Lorsque je surfe, au début tout va bien, puis au bout d'un certain temps, l'UC est saturée, IE 7 plante complètement, plus rien ne charge, et là je m'aperçois que la charge utile est à un niveau très élevée (parfois jusque 1300 Mo), donc je suis obligé de quitter toutes mes pages avec le gestionnaire de tâches. Cela fait à peu près deux mois que ça dure, c'est pénible, surtout lorsque je suis au beau milieu d'une recherche. J'ai testé pendant une semaine l'exécution de IE 7 sans les modules complémentaires, et le problème disparaît. Pouvez-vous me dire pourquoi ça fait ça et ce qu'il faut faire pour résoudre ce problème? Mon PC tourne avec un monoprocesseur Intel 1,66 GHz, 2 GO de mémoire vive, Windows XP édition familiale avec SP3. Merci d'avance, Je vous joins au cas où un rapport HJT. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 16:10:17, on 14/12/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\1XConfig.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_5.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe -- End of file - 6199 bytes
-
UC utilisée à 100% avec rien qui tourne
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonjour Apollo, et merci de t'occuper de mon problème, Comme demandé, j'ai passé MBAM, qui n'a rien détecté. J'ai suivi ton conseille et désinstallé AVGAS. J'ai un processus qui apparait de temps à autre, infocard.exe, dait-tu ce qu'il gère? J'ai des soucis depuis que je suis passé au SP3, est-ce possible que cela soit lié? Rapport HJT : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:40:47, on 07/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\1XConfig.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_5.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe -- End of file - 6970 bytes -
UC utilisée à 100% avec rien qui tourne
rossi_kawa a posté un sujet dans Analyses et éradication malwares
Salut à tous ! Ayant déjà profité de vos services géniaux, je reviens vers vous pour un problème concernant mon pc portable. Plusieurs signes me font penser à une infection. Par exemple, le plus flagrant, quand j'ouvre 7-8 pages IE, mon UC sature à 100%. Ca le fait également sur certains sites, comme par exemple le site Europa, de la Cour de Justice européenne, que j'utilise très souvent pour mon boulot. C'est un site classique, non sécurisé, et pourtant quand je navige sur ce site, même si rien d'autre ne tourne et qu'aucune autre page IE n'est ouverte, UC à 100%, sans raison. D'autres fois, comme il y a quelques minutes, IE s'emballe, change tout seul d'affichage, ouvre des pages non demandées. C'est curieux, mais j'ai l'impression que quelqu'un d'autre commande mon PC, pourtant sécurisé (Antivir - Kerio Firewall). Autre signe : l'assistant d'installation nouveau matériel ne fonctionne pas toujours, quand je veux mettre ma carte SD 2Go de mon APN, mon lecteur de carte intégré ne détecte rien, il ne s'allume même pas, alors que si je mets ma micro-sd avec l'agrandisseur sd dans le même lecteur, ça marche (ma carte sd est détecté par un lecteur de carte sd externe). Le PC tourne sous XP Pro, monoprocesseur 1,6GHz, 2Go de mémoire vive, XP SP3, IE7. J'ai voulu désinstaller et réinstaller IE7, je ne peux pas le désinstaller, il me met une rreur, et l'ajout/suppression prog. ne me donne pas la case Supprimer. Je vous joins un rapport HJT et attends vos instructions, merci. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 23:44:18, on 06/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\1XConfig.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_5.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe -- End of file - 7203 bytes -
Problème accès panneau de configuration et saturation UC
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonjour Loup Blanc, J'ai exécuté l'utilitaire de désistallation Norton, il a fonctionné sans problème. J'ai toujours mon problème de saturation d'UC, c'est le processus iexplorer.exe qui consomme énormément, la charge utile associée à ce processus peut monter à 850 Mo. Par ailleurs, j'ai remarqué que j'avais pas moins de 9 processus nommés svchost.exe, pour system, réseau local et autre, est-ce normal? Ci-joint la copie du nouveau rapport HJT. Merci. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:57:46, on 29/09/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16705) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\1XConfig.exe C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing) O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://charon777.free.fr/plugins/hardwaredetection.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{2897031B-8297-45D1-BD2D-38887C17CE88}: NameServer = 194.117.200.10,194.117.200.15 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe -- End of file - 8041 bytes -
Problème accès panneau de configuration et saturation UC
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonjour Loup Blanc, Le problème de l'accès au panneau de configuration est résolu, je peux accéder à tous les réglages, par contre j'ai toujours ce problème de saturation de l'UC de temps en temps. Se peut-il que ce soit une petite bestiole qui soit derrière cela? Car parfois je sens un ralentissement, je vais donc voir les perfs de l'UC et je m'aperçois que sans action de ma part, la charge utile du PC grimpe toute seule, mais de manière forte. En tous les cas, merci de ton aide, Rossi_kawa. -
Problème accès panneau de configuration et saturation UC
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Salut Loup Blanc, Désolé pour le délai, programme chargé en ce moment pour moi, voici le rapport MBAM, 3 infections trouvées et éliminées : Malwarebytes' Anti-Malware 1.28 Version de la base de données: 1190 Windows 5.1.2600 Service Pack 3 22/09/2008 11:51:02 mbam-log-2008-09-22 (11-51-02).txt Type de recherche: Examen rapide Eléments examinés: 51968 Temps écoulé: 46 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 1 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 2 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\poof (Rootkit.Agent) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Broken.SecurityProviders) -> Bad: (msapsspc.dll schannel.dll digest.dll msnsspc.dll) Good: (msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("%1" %*) Good: ("%1" /S) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté) Merci de ta patience, -
Problème accès panneau de configuration et saturation UC
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Loup Blanc, Comme demandé, voici le rapport DiagHelp, DiagHelp version v1.4 - http://www.malekal.com excute le 17/09/2008 à 21:29:13,97 Liste des derniers fichies modifies/crees dans windir\system32 et prefetch C:\WINDOWS\prefetch\CHCP.COM-18156052.pf -->17/09/2008 21:29:05 C:\WINDOWS\prefetch\CMD.EXE-087B4001.pf -->17/09/2008 21:28:45 C:\WINDOWS\prefetch\AVWSC.EXE-347FCF75.pf -->17/09/2008 21:28:27 C:\WINDOWS\prefetch\IEXPLORE.EXE-27122324.pf -->17/09/2008 21:24:40 C:\WINDOWS\prefetch\Layout.ini -->17/09/2008 20:14:31 C:\WINDOWS\prefetch\WMIPRVSE.EXE-28F301A9.pf -->17/09/2008 19:56:03 C:\WINDOWS\prefetch\HELPSVC.EXE-2878DDA2.pf -->17/09/2008 19:55:50 C:\WINDOWS\prefetch\MPLAYERC.EXE-177D5BF4.pf -->17/09/2008 19:36:30 C:\WINDOWS\prefetch\AVNOTIFY.EXE-32FAE179.pf -->17/09/2008 17:01:45 C:\WINDOWS\prefetch\UPDATE.EXE-264167D5.pf -->17/09/2008 17:01:32 C:\WINDOWS\System32\drivers\fwdrv.err -->16/09/2008 23:15:29 C:\WINDOWS\System32\drivers\avipbb.sys -->27/06/2008 15:03:55 C:\WINDOWS\System32\drivers\tcpip.sys -->20/06/2008 13:51:12 C:\WINDOWS\System32\drivers\afd.sys -->20/06/2008 13:40:08 C:\WINDOWS\System32\drivers\tcpip6.sys -->20/06/2008 13:08:27 C:\WINDOWS\System32\drivers\bthport.sys -->14/06/2008 19:33:37 C:\WINDOWS\System32\drivers\avgntdd.sys -->09/05/2008 13:15:51 C:\WINDOWS\System32\PerfStringBackup.INI -->17/09/2008 14:13:11 C:\WINDOWS\System32\perfh00C.dat -->17/09/2008 14:13:11 C:\WINDOWS\System32\perfh009.dat -->17/09/2008 14:13:11 C:\WINDOWS\System32\perfc00C.dat -->17/09/2008 14:13:11 C:\WINDOWS\System32\perfc009.dat -->17/09/2008 14:13:11 C:\WINDOWS\System32\wpa.dbl -->17/09/2008 14:10:40 C:\WINDOWS\System32\spupdwxp.log -->17/09/2008 14:08:55 C:\WINDOWS\System32\FNTCACHE.DAT -->17/09/2008 14:07:25 C:\WINDOWS\System32\CONFIG.NT -->16/09/2008 23:13:28 C:\WINDOWS\System32\tmp.txt -->27/08/2008 22:40:34 C:\WINDOWS\System32\tmp.reg -->27/08/2008 22:40:34 C:\WINDOWS\System32\470748447.dat -->27/08/2008 20:17:26 C:\WINDOWS\System32\VACFix.exe -->27/08/2008 15:17:21 C:\WINDOWS\System32\MRT.exe -->26/08/2008 22:28:12 C:\WINDOWS\System32\AntiXPVSTFix.exe -->26/08/2008 20:19:02 C:\WINDOWS\System32\404Fix.exe -->18/08/2008 12:19:03 C:\WINDOWS\System32\IEDFix.C.exe -->14/08/2008 21:52:23 C:\WINDOWS\System32\TZLog.log -->14/08/2008 11:45:24 C:\WINDOWS\System32\cdm.dll -->18/07/2008 22:10:48 C:\WINDOWS\System32\wuauclt.exe -->18/07/2008 22:10:42 C:\WINDOWS\System32\wucltui.dll.mui -->18/07/2008 22:10:36 C:\WINDOWS\System32\wuaucpl.cpl.mui -->18/07/2008 22:09:56 C:\WINDOWS\System32\wucltui.dll -->18/07/2008 22:09:46 C:\WINDOWS\System32\wuaucpl.cpl -->18/07/2008 22:09:46 C:\WINDOWS\System32\wuweb.dll -->18/07/2008 22:09:44 C:\WINDOWS\win.ini -->17/09/2008 14:26:42 C:\WINDOWS\setupapi.log -->17/09/2008 14:13:06 C:\WINDOWS\setupact.log -->17/09/2008 14:13:06 C:\WINDOWS\Wdf01005Inst.log -->17/09/2008 14:13:05 C:\WINDOWS\spupdsvc.log -->17/09/2008 14:12:47 C:\WINDOWS\DtcInstall.log -->17/09/2008 14:11:51 C:\WINDOWS\wmsetup.log -->17/09/2008 14:11:44 C:\WINDOWS\OEWABLog.txt -->17/09/2008 14:11:01 C:\WINDOWS\spupdsvc.log.1.log -->17/09/2008 14:09:05 C:\WINDOWS\WindowsUpdate.log -->17/09/2008 14:09:02 C:\WINDOWS\wiadebug.log -->17/09/2008 14:08:53 C:\WINDOWS\setuplog.txt -->17/09/2008 14:08:50 C:\WINDOWS\wiaservc.log -->17/09/2008 14:08:45 C:\WINDOWS\0.log -->17/09/2008 14:08:02 C:\WINDOWS\bootstat.dat -->17/09/2008 14:07:44 winlogon.exe Verified: Signed svchost.exe Verified: Signed ws2_32.dll Verified: Signed user32.dll Verified: Signed tcpip.sys Verified: Signed ndis.sys Verified: Signed null.sys Verified: Signed ListDLLs v2.25 - DLL lister for Win9x/NT Copyright © 1997-2004 Mark Russinovich Sysinternals - www.sysinternals.com ------------------------------------------------------------------------------ explorer.exe pid: 2968 Command line: C:\WINDOWS\Explorer.EXE Base Size Version Path 0x77be0000 0x58000 7.00.2600.5512 C:\WINDOWS\system32\msvcrt.dll 0x779e0000 0x97000 5.131.2600.5512 C:\WINDOWS\system32\CRYPT32.dll 0x76610000 0x84000 5.131.2600.5512 C:\WINDOWS\system32\CRYPTUI.dll 0x44080000 0xd0000 7.00.6000.16705 C:\WINDOWS\system32\WININET.dll 0x00400000 0x9000 6.00.5441.0000 C:\WINDOWS\system32\Normaliz.dll 0x43e00000 0x45000 7.00.6000.16705 C:\WINDOWS\system32\iertutil.dll 0x76be0000 0x2e000 5.131.2600.5512 C:\WINDOWS\system32\WINTRUST.dll 0x753c0000 0x6b000 1.420.2600.5512 C:\WINDOWS\system32\USP10.dll 0x58b50000 0x9a000 5.82.2900.5512 C:\WINDOWS\system32\comctl32.dll 0x76f80000 0x7f000 2001.12.4414.0700 C:\WINDOWS\system32\CLBCATQ.DLL 0x77000000 0xd4000 2001.12.4414.0700 C:\WINDOWS\system32\COMRes.dll 0x10000000 0x13000 7.05.0001.0036 C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll 0x44160000 0x127000 7.00.6000.16705 C:\WINDOWS\system32\urlmon.dll 0x44360000 0x5cd000 7.00.6000.16705 C:\WINDOWS\system32\ieframe.dll 0x13420000 0x1a000 11.00.5721.5145 C:\PROGRA~1\WINDOW~2\wmpband.dll 0x76ac0000 0x11000 3.05.2284.0001 C:\WINDOWS\system32\ATL.DLL 0x44a40000 0x374000 7.00.6000.16705 C:\WINDOWS\system32\mshtml.dll 0x01dd0000 0x29000 3.10.0349.0000 C:\WINDOWS\system32\msls31.dll 0x7d200000 0x2bc000 3.01.4001.5512 C:\WINDOWS\system32\msi.dll 0x442b0000 0x3c000 7.00.6000.16705 C:\WINDOWS\system32\webcheck.dll 0x76010000 0x65000 6.02.3104.0000 C:\WINDOWS\system32\MSVCP60.dll 0x164a0000 0x23000 5.02.5721.5145 C:\WINDOWS\system32\WPDShServiceObj.dll 0x109c0000 0x2c000 5.02.5721.5145 C:\WINDOWS\system32\PortableDeviceTypes.dll 0x10930000 0x49000 5.02.5721.5145 C:\WINDOWS\system32\PortableDeviceApi.dll 0x03910000 0x187000 1.06.0000.0012 C:\PROGRA~1\SPYBOT~1\SDHelper.dll 0x43ff0000 0xa000 7.00.6000.16705 C:\WINDOWS\system32\jsproxy.dll 0x74730000 0x3d000 3.525.1132.0000 C:\WINDOWS\system32\ODBC32.dll 0x1f840000 0x18000 3.525.1117.0000 C:\WINDOWS\system32\odbcint.dll 0x03f90000 0x1c000 7.00.0000.0000 C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll 0x04180000 0x1d000 6.04.0000.0001 C:\Program Files\Illustrate\dBpowerAMP\dBShell.dll 0x00dd0000 0xb000 2.00.0000.0000 C:\PROGRA~1\WinZip\wzshlext.dll 0x73ce0000 0x27000 4.00.1183.0001 C:\WINDOWS\system32\CRTDLL.dll 0x40000000 0x9000 1.00.0000.0001 C:\PROGRA~1\WINZIP\WZCAB2.DLL 0x02290000 0x29000 C:\Program Files\WinRAR\rarext.dll 0x01b80000 0x12000 7.00.0000.0015 C:\Program Files\Avira\AntiVir PersonalEdition Classic\shlext.dll 0x7c250000 0x102000 7.10.3077.0000 C:\Program Files\Avira\AntiVir PersonalEdition Classic\MFC71U.DLL 0x03d20000 0x56000 7.10.3052.0004 C:\Program Files\Avira\AntiVir PersonalEdition Classic\MSVCR71.dll 0x5d360000 0xf000 7.10.3077.0000 C:\WINDOWS\system32\MFC71FRA.DLL 0x02310000 0x1f000 1.04.0008.0000 C:\WINDOWS\system32\dla\tfswshx.dll 0x00960000 0xf000 1.04.0008.0000 C:\WINDOWS\system32\tfswapi.dll 0x04b80000 0x9b000 1.04.0008.0000 C:\WINDOWS\system32\dla\tfswcres.dll ListDLLs v2.25 - DLL lister for Win9x/NT Copyright © 1997-2004 Mark Russinovich Sysinternals - www.sysinternals.com ------------------------------------------------------------------------------ winlogon.exe pid: 648 Command line: winlogon.exe Base Size Version Path 0x01000000 0x82000 \??\C:\WINDOWS\system32\winlogon.exe 0x77be0000 0x58000 7.00.2600.5512 C:\WINDOWS\system32\msvcrt.dll 0x779e0000 0x97000 5.131.2600.5512 C:\WINDOWS\system32\CRYPT32.dll 0x76be0000 0x2e000 5.131.2600.5512 C:\WINDOWS\system32\WINTRUST.dll 0x753c0000 0x6b000 1.420.2600.5512 C:\WINDOWS\system32\USP10.dll 0x58b50000 0x9a000 5.82.2900.5512 C:\WINDOWS\system32\COMCTL32.dll 0x74730000 0x3d000 3.525.1132.0000 C:\WINDOWS\system32\ODBC32.dll 0x1f840000 0x18000 3.525.1117.0000 C:\WINDOWS\system32\odbcint.dll 0x013a0000 0x3b000 1.07.0017.0000 C:\WINDOWS\system32\WgaLogon.dll 0x76f80000 0x7f000 2001.12.4414.0700 C:\WINDOWS\system32\CLBCATQ.DLL 0x77000000 0xd4000 2001.12.4414.0700 C:\WINDOWS\system32\COMRes.dll 0x22000000 0x2f000 8.01.0000.0047 C:\WINDOWS\system32\LgNotify.dll Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\WINDOWS\system 14/08/2002 15:03 4 672 WOWPOST.EXE 1 fichier(s) 4 672 octets 0 Rép(s) 39 588 544 512 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\WINDOWS\system32 14/04/2008 04:33 6 144 csrss.exe 1 fichier(s) 6 144 octets 0 Rép(s) 39 588 544 512 octets libres Contenu de Downloaded Program Files Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\WINDOWS\Downloaded Program Files 30/05/2008 18:29 <REP> . 30/05/2008 18:29 <REP> .. 26/04/2006 08:31 880 640 asquared.ocx 20/08/2004 09:14 65 desktop.ini 19/07/2007 10:23 449 024 driveragent.ocx 16/05/2007 08:22 399 gp.inf 26/03/2007 12:46 1 570 hardwaredetection.inf 25/08/2003 18:12 1 096 iuctl.inf 08/08/2006 11:45 576 kavwebscan.inf 03/06/2002 17:53 144 QTPlugin.inf 09/11/2006 15:36 5 019 swflash.inf 20/07/2007 22:17 23 600 tvichw32.sys 08/05/2008 19:18 6 313 288 tvpc.exe 11 fichier(s) 7 675 421 octets Total des fichiers listés : 11 fichier(s) 7 675 421 octets 2 Rép(s) 39 588 544 512 octets libres Recherche de rootkit! (Merci S!Ri) Recherche d'infections connues Export des clefs sensibles.. Liste des fichiers en exception sur le pare-feu XP SP2 "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe:*:Enabled:Yahoo! Messenger" "C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server" "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger" "C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes" "C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:192.168.1.105/255.255.255.255,192.168.1.107/255.255.255.255:Enabled:eMule" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" "C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"="C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe:*:Enabled:Sunbelt Kerio Firewall GUI" "C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent" "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype" "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" Export de la clef SharedTaskScheduler [sharedTaskScheduler] "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui" "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant" "IPC Configuration Utility"="IPC Configuration Utility" "{020487CC-FC04-4B1E-863F-D9801796230B}"="Windows Installer Class" exports des policies REGEDIT4 [system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 Export des clefs sensibles.. Rechercher adresses sensibles dans le fichier HOSTS... catchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-09-17 21:30:40 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden services & system hive ... scanning hidden registry entries ... scanning hidden files ... scan completed successfully hidden services: 0 hidden files: 0 KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg) Process list by traversal of KiWaitListHead 4 - System 324 - avguard.exe 340 - guard.exe 392 - CeEPwrSvc.exe 416 - avgas.exe 444 - CFSvcs.exe 608 - iexplore.exe 620 - csrss.exe 648 - winlogon.exe 696 - services.exe 708 - lsass.exe 900 - ati2evxx.exe 924 - svchost.exe 980 - svchost.exe 1020 - svchost.exe 1112 - S24EvMon.exe 1480 - MDM.EXE 1508 - ctfmon.exe 1560 - spoolsv.exe 1572 - svchost.exe 1596 - sched.exe 1976 - avgnt.exe 2032 - TPTray.exe 2084 - hpqtra08.exe 2344 - alg.exe 2680 - ZCfgSvc.exe 2968 - explorer.exe 3228 - cmd.exe 3388 - 1XConfig.exe 3916 - emule.exe 4008 - atiptaxx.exe 4092 - CePMTray.exe Total number of processes = 32 NOTE: Under WinXP, this will not show all processes. KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg) Driver/Module list by traversal of PsLoadedModuleList 804D7000 - \WINDOWS\system32\ntoskrnl.exe 806EE000 - \WINDOWS\system32\hal.dll F7987000 - \WINDOWS\system32\KDCOM.DLL F7897000 - \WINDOWS\system32\BOOTVID.dll F75A7000 - ACPI.sys F7989000 - \WINDOWS\system32\DRIVERS\WMILIB.SYS F7596000 - pci.sys F75F7000 - isapnp.sys F7607000 - ohci1394.sys F7617000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS F789B000 - compbatt.sys F789F000 - \WINDOWS\system32\DRIVERS\BATTC.SYS F7A4F000 - pciide.sys F7707000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS F798B000 - intelide.sys F74D8000 - pcmcia.sys F7627000 - MountMgr.sys F74B9000 - ftdisk.sys F78A3000 - ACPIEC.sys F7A50000 - \WINDOWS\system32\DRIVERS\OPRGHDLR.SYS F770F000 - PartMgr.sys F7637000 - VolSnap.sys F74A1000 - atapi.sys F7647000 - disk.sys F7657000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS F7481000 - fltmgr.sys F746F000 - sr.sys F745A000 - drvmcdb.sys F7667000 - PxHelp20.sys F7870000 - KSecDD.sys F7B52000 - Ntfs.sys F7843000 - NDIS.sys F7829000 - Mup.sys F7677000 - agp440.sys F791B000 - \SystemRoot\system32\DRIVERS\tunmp.sys F76C7000 - \SystemRoot\system32\DRIVERS\intelppm.sys F7991000 - \SystemRoot\System32\Drivers\hkdrv.sys BAEC3000 - \SystemRoot\system32\DRIVERS\ati2mtag.sys BAEAF000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS F773F000 - \SystemRoot\system32\DRIVERS\usbuhci.sys BAE8B000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS F7747000 - \SystemRoot\system32\DRIVERS\usbehci.sys F76D7000 - \SystemRoot\system32\DRIVERS\nic1394.sys F76E7000 - \SystemRoot\system32\DRIVERS\Rtlnic51.sys BAB89000 - \SystemRoot\system32\DRIVERS\w22n51.sys F76F7000 - \SystemRoot\system32\DRIVERS\EMS7SK.sys F7586000 - \SystemRoot\system32\DRIVERS\ESD7SK.sys BAA98000 - \SystemRoot\system32\DRIVERS\ESM7SK.sys F7576000 - \SystemRoot\system32\DRIVERS\smcirda.sys F7923000 - \SystemRoot\system32\DRIVERS\irenum.sys BAA84000 - \SystemRoot\system32\DRIVERS\parport.sys F792B000 - \SystemRoot\system32\DRIVERS\CmBatt.sys F7566000 - \SystemRoot\system32\DRIVERS\i8042prt.sys F792F000 - \SystemRoot\System32\Drivers\DKbFltr.sys F777F000 - \SystemRoot\system32\DRIVERS\kbdclass.sys BAA6B000 - \SystemRoot\system32\DRIVERS\Apfiltr.sys F778F000 - \SystemRoot\system32\DRIVERS\mouclass.sys F7556000 - \SystemRoot\system32\DRIVERS\imapi.sys F7546000 - \SystemRoot\System32\Drivers\AFS2K.SYS F793F000 - \SystemRoot\system32\drivers\pfc.sys F7997000 - \SystemRoot\system32\drivers\sscdbhk5.sys F7536000 - \SystemRoot\system32\DRIVERS\cdrom.sys F7526000 - \SystemRoot\system32\DRIVERS\redbook.sys BAA20000 - \SystemRoot\system32\DRIVERS\ks.sys F77A7000 - \SystemRoot\System32\Drivers\GEARAspiWDM.sys BA989000 - \SystemRoot\system32\drivers\ALCXWDM.SYS BA965000 - \SystemRoot\system32\drivers\portcls.sys F7516000 - \SystemRoot\system32\drivers\drmk.sys BA903000 - \SystemRoot\system32\drivers\ALCXSENS.SYS F7A5D000 - \SystemRoot\system32\DRIVERS\audstub.sys F77C7000 - \SystemRoot\system32\DRIVERS\rasirda.sys F77D7000 - \SystemRoot\system32\DRIVERS\TDI.SYS F7506000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys BAFEC000 - \SystemRoot\system32\DRIVERS\ndistapi.sys BA8EC000 - \SystemRoot\system32\DRIVERS\ndiswan.sys F74F6000 - \SystemRoot\system32\DRIVERS\raspppoe.sys F744A000 - \SystemRoot\system32\DRIVERS\raspptp.sys F77F7000 - \SystemRoot\system32\DRIVERS\ptilink.sys F7807000 - \SystemRoot\system32\DRIVERS\raspti.sys F743A000 - \SystemRoot\system32\DRIVERS\termdd.sys F799D000 - \SystemRoot\system32\DRIVERS\swenum.sys BA7EE000 - \SystemRoot\system32\DRIVERS\update.sys BAFDC000 - \SystemRoot\system32\DRIVERS\mssmbios.sys F742A000 - \SystemRoot\System32\Drivers\NDProxy.SYS F7887000 - \SystemRoot\system32\DRIVERS\usbhub.sys F79AB000 - \SystemRoot\system32\DRIVERS\USBD.SYS F79C7000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS F7A73000 - \SystemRoot\System32\Drivers\Null.SYS F79CB000 - \SystemRoot\System32\Drivers\Beep.SYS F776F000 - \SystemRoot\system32\drivers\ssrtln.sys F7A65000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys F7777000 - \SystemRoot\System32\drivers\vga.sys F79CF000 - \SystemRoot\System32\Drivers\mnmdd.SYS F79D3000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys A260D000 - \SystemRoot\system32\drivers\fwdrv.sys A25F6000 - \SystemRoot\System32\Drivers\meiudf.sys A25E5000 - \SystemRoot\System32\Drivers\Udfs.SYS F77AF000 - \SystemRoot\system32\DRIVERS\usbccgp.sys F77BF000 - \SystemRoot\System32\Drivers\Msfs.SYS F77DF000 - \SystemRoot\System32\Drivers\Npfs.SYS BAA4F000 - \SystemRoot\system32\DRIVERS\rasacd.sys A25D2000 - \SystemRoot\system32\DRIVERS\ipsec.sys F76B7000 - \SystemRoot\system32\DRIVERS\msgpc.sys A2579000 - \SystemRoot\system32\DRIVERS\tcpip.sys F7937000 - \SystemRoot\system32\DRIVERS\hidusb.sys BAB79000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS F77EF000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS A2489000 - \SystemRoot\system32\DRIVERS\netbt.sys A2463000 - \SystemRoot\system32\DRIVERS\ipnat.sys BAB69000 - \SystemRoot\system32\DRIVERS\wanarp.sys A242B000 - \SystemRoot\system32\DRIVERS\tcpip6.sys BAFFC000 - \SystemRoot\system32\DRIVERS\mouhid.sys BAB59000 - \SystemRoot\system32\DRIVERS\arp1394.sys A2409000 - \SystemRoot\System32\drivers\afd.sys BAB49000 - \SystemRoot\system32\drivers\ip6fw.sys BAB39000 - \SystemRoot\system32\DRIVERS\netbios.sys F772F000 - \SystemRoot\system32\DRIVERS\ssmdrv.sys F79E1000 - \SystemRoot\System32\Drivers\TPIoMngr.sys F79E5000 - \SystemRoot\System32\Drivers\SSIoMngr.sys F79E9000 - \SystemRoot\System32\Drivers\EPIoMngr.sys F79ED000 - \SystemRoot\System32\Drivers\ECioctl.sys F79F1000 - \SystemRoot\System32\Drivers\EKIoMngr.sys A23DE000 - \SystemRoot\system32\DRIVERS\rdbss.sys A236E000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys A2359000 - \SystemRoot\system32\drivers\khips.sys BAB29000 - \SystemRoot\System32\Drivers\Fips.SYS A2348000 - \SystemRoot\system32\DRIVERS\avipbb.sys F79F5000 - \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys F7A5F000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys A22F4000 - \SystemRoot\System32\Drivers\dump_atapi.sys F79BD000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS BF800000 - \SystemRoot\System32\win32k.sys A2571000 - \SystemRoot\System32\drivers\Dxapi.sys F7797000 - \SystemRoot\System32\watchdog.sys BF9C3000 - \SystemRoot\System32\drivers\dxg.sys F7A79000 - \SystemRoot\System32\drivers\dxgthk.sys BF9D5000 - \SystemRoot\System32\ati2dvag.dll BFA0C000 - \SystemRoot\System32\ati2cqag.dll BFA44000 - \SystemRoot\System32\ati3duag.dll BFC53000 - \SystemRoot\System32\ativvaxx.dll BA87C000 - \SystemRoot\system32\drivers\drvnddm.sys F7A9F000 - \SystemRoot\system32\dla\tfsndres.sys A2194000 - \SystemRoot\system32\dla\tfsnifs.sys A222C000 - \SystemRoot\system32\dla\tfsnopio.sys F79B9000 - \SystemRoot\system32\dla\tfsnpool.sys F77B7000 - \SystemRoot\system32\dla\tfsnboio.sys BA86C000 - \SystemRoot\system32\dla\tfsncofs.sys F7A9B000 - \SystemRoot\system32\dla\tfsndrct.sys A217B000 - \SystemRoot\system32\dla\tfsnudf.sys A2162000 - \SystemRoot\system32\dla\tfsnudfa.sys A21D6000 - \SystemRoot\system32\DRIVERS\AegisP.sys A205C000 - \SystemRoot\system32\DRIVERS\irda.sys A21C6000 - \SystemRoot\system32\DRIVERS\s24trans.sys A21BA000 - \SystemRoot\system32\DRIVERS\ndisuio.sys A21AA000 - \SystemRoot\system32\DRIVERS\netdevio.sys A1E27000 - \SystemRoot\system32\DRIVERS\mrxdav.sys A1F34000 - \SystemRoot\System32\Drivers\Aspi32.SYS A1DC3000 - \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys A1AC9000 - \SystemRoot\system32\DRIVERS\srv.sys BFFA0000 - \SystemRoot\System32\ATMFD.DLL A17A9000 - \SystemRoot\system32\drivers\wdmaud.sys A17BE000 - \SystemRoot\system32\drivers\sysaudio.sys A13FC000 - \SystemRoot\System32\Drivers\HTTP.sys A17CE000 - \SystemRoot\System32\Drivers\Cdfs.SYS F7A6B000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys Total number of drivers = 165 Liste des programmes installes 32 Bit HP CIO Components Installer Adobe Download Manager 2.2 (Supprimer uniquement) Adobe Flash Player ActiveX Adobe Photoshop 7.0 Adobe Reader 7.1.0 - Français AIO_Scan ALPS Touch Pad Driver ATI - Utilitaire de désinstallation du logiciel ATI Control Panel ATI Display Driver Avanquest update AVG Anti-Spyware 7.5 AVIcodec (remove only) Avira AntiVir Personal - Free Antivirus BufferChm C4200 C4200_doccd c4200_Help CCleaner (remove only) Complément Microsoft Word pour Microsoft Works Suite Console TOSHIBA Copy Correctif pour Lecteur Windows Media 11 (KB939683) Correctif pour Windows Internet Explorer 7 (KB947864) Correctif pour Windows XP (KB952287) CustomerResearchQFolder dBpowerAMP Music Converter dBpowerAMP WMA V9.1 Codec Destination Component DeviceDiscovery DeviceManagementQFolder Digital Voice Recorder V2.0 Direct Show Ogg Vorbis Filter (remove only) DivX 5.0.1 Bundle DivX Pro Codec DocProc DocProcQFolder Easy Button eMulev0.47c.-MorphXTv9.2 Encyclopédie Microsoft Encarta 2004 eSupportQFolder EVEREST Home Edition v2.20 ffdshow (remove only) Garmin Communicator Plugin Beta Garmin WebUpdater HardwareDetection HijackThis 2.0.2 Hotfix for Windows Media Format 11 SDK (KB929399) HP Customer Participation Program 9.0 hp deskjet 5100 HP Imaging Device Functions 9.0 HP OCR Software 9.0 HP Photo and Imaging 2.0 - Deskjet Series HP Photosmart All-In-One Software 9.0 HP Photosmart Essential 2.01 HP Photosmart Essential2.01 hp print screen utility HP Smart Web Printing HP Solution Center 9.0 HP Update HPProductAssistant HPSSupply Intel® mDriver Intel® PROSet for Wireless InterVideo WinDVD Creator 2 InterVideo WinDVD for TOSHIBA iTunes Java 2 Runtime Environment, SE v1.4.2_05 Kaspersky Online Scanner Lecteur Windows Media 11 Macromedia Flash Player Manuels TOSHIBA MarketResearch Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 French Language Pack Microsoft .NET Framework 1.1 Hotfix (KB928366) Microsoft .NET Framework 2.0 Language Pack - FRA Microsoft .NET Framework 2.0 Service Pack 1 Microsoft .NET Framework 3.0 French Language Pack Microsoft .NET Framework 3.0 Service Pack 1 Microsoft AutoRoute v11.0 Microsoft Compression Client Pack 1.0 for Windows XP Microsoft Internationalized Domain Names Mitigation APIs Microsoft Money Microsoft National Language Support Downlevel APIs Microsoft Office OneNote 2003 Microsoft Office Professional Edition 2003 Microsoft Picture It! Photo Premium 9 Microsoft Picture It! Photo Premium 9 Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Visual C++ 2005 Redistributable Microsoft Works Mise à jour de sécurité pour Lecteur Windows Media (KB911564) Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782) Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154) Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) Mise à jour de sécurité pour Lecteur Windows Media 9 (KB911565) Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734) Mise à jour de sécurité pour Step by Step Interactive Training (KB898458) Mise à jour de sécurité pour Step by Step Interactive Training (KB923723) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB933566) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB937143) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB939653) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838) Mise à jour de sécurité pour Windows XP (KB938464) Mise à jour de sécurité pour Windows XP (KB941569) Mise à jour de sécurité pour Windows XP (KB946648) Mise à jour de sécurité pour Windows XP (KB950760) Mise à jour de sécurité pour Windows XP (KB950762) Mise à jour de sécurité pour Windows XP (KB950974) Mise à jour de sécurité pour Windows XP (KB951066) Mise à jour de sécurité pour Windows XP (KB951376-v2) Mise à jour de sécurité pour Windows XP (KB951376) Mise à jour de sécurité pour Windows XP (KB951698) Mise à jour de sécurité pour Windows XP (KB951748) Mise à jour de sécurité pour Windows XP (KB952954) Mise à jour de sécurité pour Windows XP (KB953839) Mise à jour pour Windows XP (KB951072-v2) Module de compatibilité pour Microsoft Office System 2007 Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0 MSXML 4.0 SP2 (KB927978) MSXML 4.0 SP2 (KB936181) MSXML 6.0 Parser (KB933579) NVIDIA Drivers Outil de diagnostic PC TOSHIBA Package de base Microsoft de service de chiffrement pour cartes à puce PCFriendly Pilote du DVD-RAM PowerDirector Express PS_AIO_ProductContext PS_AIO_Software PS_AIO_Software_min PSSWCORE Quick Zip 4.60.014 QuickTime Realtek AC'97 Audio Realtek Fast Ethernet Adapter Driver Réducteur de bruit lect. CD/DVD Satsuki Decoder Pack Scan SHARP GSM GPRS USB Driver Ver2.1.0 SHARP GSM GPRS USB Driver Ver2.1.0 Shockwave Skype™ 3.8 SMSC IrCC V5.1.3600.5 SolutionCenter Sonic DLA Sonic RecordNow! Spybot - Search & Destroy Spybot - Search & Destroy 1.5.2.20 SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.2 SRS WOW XT Plug-In for Windows Media Player for Toshiba version 1.0.2 Status Sélecteur d'installation de Microsoft Works 2004 Sunbelt Kerio Personal Firewall The Playa Toolbox TOSHIBA ConfigFree TOSHIBA Hotkey Utility TOSHIBA Power Management TOSHIBA Software Modem TOSHIBA Zooming Hotkey Hook Touch and Launch TouchPad On/Off Utility TrayApp UnloadSupport Utilitaire de zoom TOSHIBA Utilitaire Economie TOSHIBA Utilitaire Hotkey TOSHIBA Utilitaire TouchPad ON/OFF VC_MergeModuleToMSI VideoToolkit01 WD Diagnostics WebFldrs XP WebReg Winamp (remove only) Windows Communication Foundation Language Pack - FRA Windows Genuine Advantage Notifications (KB905474) Windows Genuine Advantage Validation Tool (KB892130) Windows Genuine Advantage Validation Tool (KB892130) Windows Imaging Component Windows Internet Explorer 7 Windows Live Messenger Windows Media Format 11 runtime Windows Media Format 11 runtime Windows Media Player 11 Windows Presentation Foundation Windows Presentation Foundation Language Pack (FRA) Windows Workflow Foundation FR Language Pack Windows XP Service Pack 3 WinRAR Archiveur WinZip XML Paper Specification Shared Components Language Pack 1.0 XML Paper Specification Shared Components Pack 1.0 Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\Program Files 05/09/2008 22:30 <REP> . 05/09/2008 22:30 <REP> .. 18/10/2007 21:12 <REP> Adobe 16/09/2008 23:15 <REP> Alwil Software 20/08/2004 10:46 <REP> Apoint2K 05/09/2007 12:07 <REP> Astonsoft 20/08/2004 10:27 <REP> ATI Technologies 30/08/2008 17:18 <REP> AtomixMP3 01/11/2007 12:55 <REP> Avanquest update 31/01/2007 02:29 <REP> AVIcodec 05/09/2008 22:30 <REP> Avira 03/10/2006 15:31 <REP> Axon Data 18/09/2006 20:58 <REP> CCleaner 19/09/2006 14:32 <REP> Cegetel 20/08/2004 09:13 <REP> ComPlus Applications 03/10/2006 15:53 <REP> Cryptainer LE 17/08/2008 15:18 <REP> CyberLink 20/03/2006 23:19 <REP> Digital Voice Recorder V2.0 23/02/2005 08:45 <REP> DivX 21/02/2005 21:40 <REP> DVD-RAM 24/02/2007 14:52 <REP> eChanblard 17/09/2008 21:25 <REP> emule 06/10/2007 00:44 <REP> ewido anti-spyware 4.0 13/09/2006 23:46 <REP> EzButton 23/02/2005 08:46 <REP> ffdshow 01/09/2008 13:33 <REP> Fichiers communs 03/11/2007 12:49 <REP> Garmin GPS Plugin 06/10/2007 00:50 <REP> Grisoft 22/05/2007 00:39 <REP> HardwareDetection 01/09/2008 13:37 <REP> Hewlett-Packard 30/05/2008 18:18 <REP> Hijackthis 01/09/2008 13:37 <REP> HP 16/01/2007 16:09 <REP> Illustrate 18/03/2006 19:32 <REP> Intel 14/08/2008 11:53 <REP> Internet Explorer 21/02/2005 21:48 <REP> InterVideo 03/10/2006 10:20 <REP> iPod 03/10/2006 10:21 <REP> iTunes 20/08/2004 09:24 <REP> Java 20/07/2007 22:15 <REP> Lavalys 16/02/2008 00:13 <REP> Logitech 20/08/2004 11:11 <REP> ltmoh 17/09/2008 13:29 <REP> Messenger 12/04/2005 19:33 <REP> Microsoft AutoRoute 24/08/2004 13:26 <REP> Microsoft Encarta 20/08/2004 09:16 <REP> microsoft frontpage 24/08/2004 13:23 <REP> Microsoft Money 25/02/2008 20:00 <REP> Microsoft Office 19/02/2005 16:26 <REP> Microsoft Picture It! 9 25/02/2005 00:25 <REP> Microsoft Visual Studio 24/08/2004 13:22 <REP> Microsoft Works 24/08/2004 13:18 <REP> Microsoft Works Suite 2004 20/08/2004 11:33 <REP> Microsoft.NET 20/10/2006 17:39 <REP> Mobile Media Studio 17/09/2008 13:25 <REP> Movie Maker 30/01/2008 13:16 <REP> MSBuild 25/02/2008 19:59 <REP> MSECache 20/08/2004 09:12 <REP> MSN 20/08/2004 09:13 <REP> MSN Gaming Zone 16/11/2007 23:15 <REP> MSN Messenger 18/11/2006 12:42 <REP> MSXML 4.0 30/01/2008 13:19 <REP> MSXML 6.0 17/09/2008 13:21 <REP> NetMeeting 09/05/2008 13:55 <REP> Neuf 05/10/2007 22:37 <REP> nLite 20/08/2004 09:13 <REP> Online Services 17/09/2008 13:21 <REP> Outlook Express 19/02/2005 17:42 <REP> PCFriendly 03/10/2006 10:20 <REP> QuickTime 13/04/2006 13:40 <REP> QuickZip4 30/01/2008 13:13 <REP> Reference Assemblies 22/08/2005 16:24 <REP> RegCleaner 31/01/2007 02:32 <REP> Satsuki Decoder Pack 20/08/2004 09:14 <REP> Services en ligne 10/04/2005 19:14 <REP> SHARP GSM GPRS USB Driver 25/10/2006 18:03 <REP> Siber Systems 03/05/2008 14:49 <REP> Skype 21/02/2005 21:47 <REP> Sonic 30/08/2008 17:22 <REP> Spybot - Search & Destroy 20/08/2004 11:26 <REP> srslabs 22/09/2006 12:45 <REP> Sunbelt Software 23/02/2005 08:43 <REP> The Playa 26/04/2007 00:36 <REP> TomTom DesktopSuite 05/10/2007 23:03 <REP> TomTom HOME 20/08/2004 11:28 <REP> TOSHIBA 22/11/2007 14:17 <REP> Western Digital Technologies 11/01/2007 13:25 <REP> Winamp 05/01/2007 14:42 <REP> Windows Media Connect 2 17/09/2008 13:21 <REP> Windows Media Player 17/09/2008 13:21 <REP> Windows NT 24/05/2006 19:46 <REP> WinRAR 01/08/2008 18:24 <REP> WinZip 20/08/2004 09:16 <REP> xerox 0 fichier(s) 0 octets 93 Rép(s) 39 535 874 048 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\Program Files\fichiers communs 01/09/2008 13:33 <REP> . 01/09/2008 13:33 <REP> .. 18/10/2007 21:15 <REP> Adobe 30/05/2008 18:08 <REP> Borland Shared 25/02/2005 00:25 <REP> DESIGNER 01/09/2008 13:32 <REP> Hewlett-Packard 01/09/2008 13:33 <REP> HP 20/08/2004 11:11 <REP> InstallShield 20/08/2004 09:24 <REP> Java 16/02/2008 00:13 <REP> Logitech 25/02/2008 19:59 <REP> Microsoft Shared 20/08/2004 09:14 <REP> MSSoap 20/08/2004 11:08 <REP> ODBC 20/08/2004 09:14 <REP> Services 03/05/2008 14:49 <REP> Skype 20/08/2004 11:08 <REP> SpeechEngines 20/08/2004 11:26 <REP> SRS 21/09/2006 19:12 <REP> Symantec Shared 17/09/2008 13:21 <REP> System 23/09/2006 12:36 <REP> {1C0F0D1F-063E-1036-1130-040408260021} 0 fichier(s) 0 octets 20 Rép(s) 39 535 874 048 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders 25/02/2005 00:24 <REP> . 25/02/2005 00:24 <REP> .. 20/08/2004 11:33 <REP> 1033 25/02/2005 00:24 <REP> 1036 11/07/2003 10:15 1 292 872 MSONSEXT.DLL 15/07/2003 06:52 35 896 MSOSV.DLL 03/06/1999 12:09 122 937 MSOWS409.DLL 07/03/2001 07:00 127 033 MSOWS40c.DLL 11/07/2003 02:25 80 448 PKMWS.DLL 5 fichier(s) 1 659 186 octets 4 Rép(s) 39 535 874 048 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\ 04/04/2002 14:32 225 280 CnxAdslL.exe 04/04/2002 14:33 397 312 CnxDslTb.exe 04/04/2002 14:33 208 896 CnxUnist.exe 24/05/2001 12:59 162 304 UNWISE.EXE 4 fichier(s) 993 792 octets 0 Rép(s) 39 535 874 048 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 1C0F-0D1F Répertoire de C:\ c:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.0.1.8\iTunesSetupAdmin.exe c:\Documents and Settings\MARTIAL\Application Data\Adobe\Acrobat\7.0\Updater\AdbeRdr709_fr_FR.exe c:\Documents and Settings\MARTIAL\Application Data\Adobe\Acrobat\7.0\Updater\AdbeRdr710_fr_FR.exe c:\Documents and Settings\MARTIAL\Application Data\Microsoft\Installer\{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}\ARPPRODUCTICON.exe c:\Documents and Settings\MARTIAL\Application Data\Microsoft\Installer\{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}\Uninstall_WD_Diagnos_0AB76F69E7614CFAB9B0A1906B4E9E4B.exe c:\Documents and Settings\MARTIAL\Application Data\Microsoft\Installer\{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}\WinDlg.exe_0AB76F69E7614CFAB9B0A1906B4E9E4B_3.exe c:\Documents and Settings\MARTIAL\Bureau\AdbeRdr709_fr_FR.exe c:\Documents and Settings\MARTIAL\Bureau\antivir-personal-edition_avira_antivir_personal_free_8.1.0.367_anglais_10821.exe c:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe c:\Documents and Settings\MARTIAL\Bureau\SDFix.exe c:\Documents and Settings\MARTIAL\Bureau\SkypeSetup.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\catchme.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\diff.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\dumphive.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\FilesInfoCmd.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\find2.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\Fport.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\grep.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\gzip.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\KProcCheck.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\LFiles.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\LISTDLLS.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\md5sums.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\pslist.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\sigcheck.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\streams.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\swreg.exe c:\Documents and Settings\MARTIAL\Bureau\DiagHelp\tar.exe c:\Documents and Settings\MARTIAL\Mes documents\Compression\azl_wrar28_kg.exe c:\Documents and Settings\MARTIAL\Mes documents\Compression\WINZIP70.EXE c:\Documents and Settings\MARTIAL\Mes documents\Compression\wrar300fr.exe c:\Documents and Settings\MARTIAL\Mes documents\Correctif Mydoom\f-mydoom.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\ffdshow-20021110.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\XviD-22032003-1.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\XviD-24012003-1.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\AC3Codec\Ac3 Codecs\AC3DEC.EXE c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\DivX 3.11 alpha\Register_DivX.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\DivX 3.11 alpha\SetStereo.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\DivX 4.11\DivX411Bundle.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\DivX 5.01\DivX -- 5.01 basique.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\Divx 5.05\divx 5.05 Pro.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\ogg\OggDS.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Codecs\ogg\OggDS0990.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Mes images\dap8.exe c:\Documents and Settings\MARTIAL\Mes documents\Ma musique\Mes images\eChanblard.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\aswclear.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\logiciels\everesthome220.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\logiciels\FileFormatConverters.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\logiciels\french_translated.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\logiciels\revealer.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\logiciels\Satsuki.Decoder.Pack.3.1.1.0.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes fichiers reçus\logiciels\setpoint440.exe c:\Documents and Settings\MARTIAL\Mes documents\Mes images\eChanblard.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\ffdshow-20021110.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\XviD-22032003-1.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\XviD-24012003-1.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\AC3Codec\Ac3 Codecs\AC3DEC.EXE c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\DivX 3.11 alpha\Register_DivX.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\DivX 3.11 alpha\SetStereo.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\DivX 4.11\DivX411Bundle.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\DivX 5.01\DivX -- 5.01 basique.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\Divx 5.05\divx 5.05 Pro.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\ogg\OggDS.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Codecs\ogg\OggDS0990.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Correctif Ver Blaster\FixBlast.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Correctif Ver Blaster\WindowsXP-KB823980-ia64-FRA.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Correctif Ver Blaster\WindowsXP-KB823980-x86-FRA.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\forum_zeb\kerio-personal-firewall_kerio_personal_firewall_4.3.268_francais_11071.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\Process Explorer\procexp.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\avgas-setup-7.5.1.43.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\ccsetup133.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\FileFormatConverters.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\HiJackThis.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\nLite-1.3.5.installer.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\ZHP 2.27.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\TCPView\tcpvcon.exe c:\Documents and Settings\MARTIAL\Mes documents\perso\soft\TCPView\Tcpview.exe c:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\help.dll c:\Documents and Settings\All Users\Application Data\HP\Digital Imaging\Data\hpqd_cul_s.dll c:\Documents and Settings\All Users\Application Data\HP\Digital Imaging\Data\Destination\aiopfl.dll c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll c:\Documents and Settings\MARTIAL\Application Data\HPAppData\RegClean.dll c:\Documents and Settings\MARTIAL\Application Data\Microsoft\IdentityCRL\Production\ppcrlconfig.dll ****** Fin du rapport DiagHelp Veuillez svp envoyer le fichier C:\upload_moi_MARTIAL.tar.gz a l'adresse http://upload.malekal.com Par ailleurs, j'ai encore eu le message pour S32EVNT1.DLL, le message est le le suivant : C :\WINDOWS\system32\cmd.exe C:\PROGRA~1\Symantec\S32EVNT1.DLL. L'initialisation de la DLL d'un pilote de périphérique installable a échoué. Choisissez "Fermer" pour mettre fin à l'application. Voila, bonne soirée. -
Problème accès panneau de configuration et saturation UC
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
J'avais oublié de mettre dans le post précédent, pendant le scan SDFix, un message m'a avertit de l'impossibilité de démarrer un fichier dll, du nom suivant : C:\PROGRA~1\Symantec\S32EVNT1.DLL Je ne sais pas si cela a son importance, mais j'ai cliqué sur Ignorer pour poursuivre le scan, voilà. -
Problème accès panneau de configuration et saturation UC
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonsoir Loup Blanc, Désolé d'avoir répondu si tard, trsè occupé en ce moment, et un grand merci de t'occuper de mon souci, les réactions du PC ne me semblaient pas normales. J'ai supprimé Avast!, ce que je devais faire depuis une semaine, depuis que j'avais installé Antivir, mais j'attendais pour le faire de demander de l'aide. Voici le rapport SDFix, SDFix: Version 1.226 Run by MARTIAL on 16/09/2008 at 23:31 Microsoft Windows XP [version 5.1.2600] Running From: C:\SDFix Checking Services : Restoring Default Security Values Restoring Default Hosts File Rebooting Checking Files : No Trojan Files Found Removing Temp Files ADS Check : Final Check : catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-09-16 23:40:20 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... IPC error: 2 Le fichier spécifié est introuvable. scanning hidden services & system hive ... scanning hidden registry entries ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden services: 0 hidden files: 0 Remaining Services : Authorized Application Key Export: [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe:*:Enabled:Yahoo! Messenger" "C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server" "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger" "C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes" "C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:192.168.1.105/255.255.255.255,192.168.1.107/255.255.255.255:Enabled:eMule" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" "C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"="C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe:*:Enabled:Sunbelt Kerio Firewall GUI" "C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent" "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" Remaining Files : Files with Hidden Attributes : Mon 4 Feb 2008 5,341,184 A..H. --- "C:\Program Files\emule\emule.exe" Tue 8 Nov 2005 830,464 A..H. --- "C:\Program Files\emule\mediainfo.dll" Wed 15 Nov 2006 672,199 A..H. --- "C:\Program Files\emule\unins000.exe" Thu 15 Sep 2005 160,768 A..H. --- "C:\Program Files\emule\unrar.dll" Thu 14 Aug 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe" Wed 30 Jul 2008 4,891,984 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" Mon 7 Mar 2005 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak" Thu 25 Oct 2007 59,392 ...H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL0158.tmp" Mon 12 Nov 2007 61,440 ...H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL0543.tmp" Mon 21 Feb 2005 53,248 A..H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL2494.tmp" Thu 25 Oct 2007 61,952 ...H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL2830.tmp" Wed 24 Oct 2007 57,344 ...H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL2857.tmp" Mon 21 Feb 2005 49,152 A..H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL3464.tmp" Thu 25 Oct 2007 60,416 ...H. --- "C:\Documents and Settings\MARTIAL\Mes documents\~WRL3521.tmp" Mon 19 Mar 2007 3,912,963 A..H. --- "C:\Program Files\emule\config\clients.met.bak" Sun 11 Dec 2005 278,528 A..H. --- "C:\Program Files\emule\config\countryflag.dll" Sun 11 Dec 2005 339,968 A..H. --- "C:\Program Files\emule\config\countryflag32.dll" Sat 18 Mar 2006 76,302 A..H. --- "C:\Program Files\emule\config\eMule Light.tmpl" Fri 20 Oct 2006 119,603 A..H. --- "C:\Program Files\emule\config\eMule.tmpl" Mon 21 Aug 2006 117,197 A..H. --- "C:\Program Files\emule\config\Multiuser eMule.tmpl" Sat 4 Nov 2006 212,992 A..H. --- "C:\Program Files\emule\lang\de_DE.dll" Sat 4 Nov 2006 237,568 A..H. --- "C:\Program Files\emule\lang\es_ES_T.dll" Sat 4 Nov 2006 245,760 A..H. --- "C:\Program Files\emule\lang\fr_FR.dll" Sat 4 Nov 2006 253,952 A..H. --- "C:\Program Files\emule\lang\it_IT.dll" Sat 4 Nov 2006 143,360 A..H. --- "C:\Program Files\emule\lang\nl_NL.dll" Sat 4 Nov 2006 139,264 A..H. --- "C:\Program Files\emule\lang\pl_PL.dll" Sat 4 Nov 2006 221,184 A..H. --- "C:\Program Files\emule\lang\pt_BR.dll" Sat 4 Nov 2006 102,400 A..H. --- "C:\Program Files\emule\lang\zh_CN.dll" Sun 11 Dec 2005 32,519 A..H. --- "C:\Program Files\emule\wapserver\eMule_Wap.tmpl" Wed 31 Jan 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv03.tmp" Fri 8 Aug 2008 22,016 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0004.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0331.tmp" Fri 8 Aug 2008 29,696 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0511.tmp" Fri 8 Aug 2008 30,720 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0617.tmp" Thu 7 Aug 2008 37,888 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0695.tmp" Thu 7 Aug 2008 38,912 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0705.tmp" Fri 8 Aug 2008 24,064 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL0780.tmp" Thu 7 Aug 2008 72,704 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1103.tmp" Fri 8 Aug 2008 25,600 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1208.tmp" Thu 7 Aug 2008 41,472 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1223.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1224.tmp" Fri 8 Aug 2008 22,528 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1241.tmp" Thu 7 Aug 2008 73,728 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1245.tmp" Fri 8 Aug 2008 26,112 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1430.tmp" Fri 8 Aug 2008 94,720 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1552.tmp" Thu 7 Aug 2008 39,936 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1619.tmp" Fri 8 Aug 2008 22,528 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL1900.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2003.tmp" Fri 8 Aug 2008 24,064 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2012.tmp" Fri 8 Aug 2008 24,064 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2217.tmp" Fri 8 Aug 2008 29,696 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2328.tmp" Tue 5 Aug 2008 37,888 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2421.tmp" Wed 6 Aug 2008 77,312 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2646.tmp" Fri 8 Aug 2008 26,624 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2672.tmp" Fri 8 Aug 2008 28,672 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2752.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2910.tmp" Fri 8 Aug 2008 22,528 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL2925.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL3026.tmp" Thu 7 Aug 2008 40,960 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL3086.tmp" Fri 8 Aug 2008 25,600 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL3417.tmp" Thu 7 Aug 2008 77,824 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL3418.tmp" Thu 7 Aug 2008 38,400 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL3571.tmp" Thu 7 Aug 2008 41,472 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\~WRL3897.tmp" Tue 3 Oct 2006 50,280 ...H. --- "C:\Program Files\Fichiers communs\Adobe\ESD\DLMCleanup.exe" Thu 8 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\71fa8e4b1f1c72b0e3a5d30a0a049f55\BIT1.tmp" Wed 13 Feb 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f1d01f188c8132c12d35c3222b7723a4\BIT2.tmp" Fri 8 Aug 2008 22,016 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0004.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0331.tmp" Fri 8 Aug 2008 29,696 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0511.tmp" Fri 8 Aug 2008 30,720 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0617.tmp" Thu 7 Aug 2008 37,888 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0695.tmp" Thu 7 Aug 2008 38,912 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0705.tmp" Fri 8 Aug 2008 24,064 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL0780.tmp" Thu 7 Aug 2008 72,704 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1103.tmp" Fri 8 Aug 2008 25,600 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1208.tmp" Thu 7 Aug 2008 41,472 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1223.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1224.tmp" Fri 8 Aug 2008 22,528 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1241.tmp" Thu 7 Aug 2008 73,728 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1245.tmp" Fri 8 Aug 2008 26,112 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1430.tmp" Fri 8 Aug 2008 94,720 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1552.tmp" Thu 7 Aug 2008 39,936 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1619.tmp" Fri 8 Aug 2008 22,528 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL1900.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2003.tmp" Fri 8 Aug 2008 24,064 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2012.tmp" Fri 8 Aug 2008 24,064 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2217.tmp" Fri 8 Aug 2008 29,696 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2328.tmp" Tue 5 Aug 2008 37,888 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2421.tmp" Wed 6 Aug 2008 77,312 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2646.tmp" Fri 8 Aug 2008 26,624 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2672.tmp" Fri 8 Aug 2008 28,672 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2752.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2910.tmp" Fri 8 Aug 2008 22,528 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL2925.tmp" Thu 7 Aug 2008 40,448 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL3026.tmp" Thu 7 Aug 2008 40,960 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL3086.tmp" Fri 8 Aug 2008 25,600 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL3417.tmp" Thu 7 Aug 2008 77,824 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL3418.tmp" Thu 7 Aug 2008 38,400 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL3571.tmp" Thu 7 Aug 2008 41,472 A..H. --- "C:\Documents and Settings\MARTIAL\Bureau\word_safety copy\word\~WRL3897.tmp" Wed 7 Dec 2005 30,720 A..H. --- "C:\Documents and Settings\MARTIAL\Mes documents\master_2\contentieux\~WRL1387.tmp" Wed 7 Dec 2005 32,256 A..H. --- "C:\Documents and Settings\MARTIAL\Mes documents\master_2\contentieux\~WRL2324.tmp" Wed 7 Dec 2005 30,720 A..H. --- "C:\Documents and Settings\MARTIAL\Mes documents\master_2\contentieux\~WRL2395.tmp" Tue 7 Mar 2006 596,480 A..H. --- "C:\Documents and Settings\MARTIAL\Mes documents\master_2\contentieux\REC\~WRL3118.tmp" Finished! -
Salut à tous, Pour commencer, un grand merci aux membres de ce forum, qui nous accordent gentiment leur temps et leur savoir-faire pour la résolution de nos problèmes, particulièrement à Gof, qui m'a récemment aidé pour résoudre un souci qui est (presque) réglé. Nouveau post à propos de mon portable cette fois. Il y a 15 jours, j'ai été infecté par un spyware, qui faisait des fausses alertes d'infections par spyware et me proposait de télécharger un logiciel pour m'en débarasser, me renvoyant sur un lien internet. Déjà infecté par le passé et effectuant régulièrement des désinfections ou des remises à jour pour des amis, parfois avec l'aide des membres de ce forum, j'ai flairé l'arnaque et essayé de résoudre ce problème. J'ai constaté que le souci que j'ai eu avait déjà été traité sur ce forum, donc j'ai suivi à la lettre les prescriptions pur éradiquer cette menace. je pensais être tranquille, mais c'est apparemment plus sérieux que ca n'y parassait. En effet, j'ai remis après cette désinfection une photo en fond d'écran, dont j'ai voulu régler la taille et les propriétés. Mais je me suis apercu que je n'avais plus accès à la configuration de l'affichage. De plus, Internet explorer me joue parfois des tours. Lorsque j'ouvre beaucoup de pages, il arrive que l'UC monte à 100% d'utilisation, je n'ai plus alors le contrôle de rien. Après avoir fermé quelques pages, j'arrive à accéder au gestionnaire des taches, et je constate que la charge utile monte sans cesse alords que je n'ai ouvert aucune page (au contraire j'en ai fermé), atteignant parfois des sommets (jusqu'à 1200 Mo). Je suis alors obligé d'éteindre le PC en force. Une première analyse avec Antivir a révélé 6 infections. Je joins le rapport Antivir et un rapport HighjackThis, merci d'avance. Rapport Antivir : Avira AntiVir Personal Report file date: samedi 6 septembre 2008 11:29 Scanning for 1599979 virus strains and unwanted programs. Licensed to: Avira AntiVir PersonalEdition Classic Serial number: 0000149996-ADJIE-0001 Platform: Windows XP Windows version: (Service Pack 2) [5.1.2600] Boot mode: Normally booted Username: SYSTEM Computer name: MARTIAL Version information: BUILD.DAT : 8.1.0.331 16934 Bytes 12/08/2008 11:46:00 AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 08:57:53 AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40 LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19 LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52 ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34 ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 13:54:15 ANTIVIR2.VDF : 7.0.6.94 2998784 Bytes 31/08/2008 20:35:31 ANTIVIR3.VDF : 7.0.6.124 202240 Bytes 05/09/2008 20:35:32 Engineversion : 8.1.1.28 AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21 AESCRIPT.DLL : 8.1.0.70 319866 Bytes 05/09/2008 20:35:38 AESCN.DLL : 8.1.0.23 119156 Bytes 10/07/2008 12:44:49 AERDL.DLL : 8.1.1.1 397683 Bytes 05/09/2008 20:35:37 AEPACK.DLL : 8.1.2.1 364917 Bytes 15/07/2008 12:58:35 AEOFFICE.DLL : 8.1.0.23 196987 Bytes 05/09/2008 20:35:36 AEHEUR.DLL : 8.1.0.51 1397111 Bytes 05/09/2008 20:35:36 AEHELP.DLL : 8.1.0.15 115063 Bytes 10/07/2008 12:44:48 AEGEN.DLL : 8.1.0.36 315764 Bytes 05/09/2008 20:35:34 AEEMU.DLL : 8.1.0.7 430452 Bytes 31/07/2008 08:33:21 AECORE.DLL : 8.1.1.11 172406 Bytes 05/09/2008 20:35:33 AEBB.DLL : 8.1.0.1 53617 Bytes 10/07/2008 12:44:48 AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05 AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01 AVREP.DLL : 8.0.0.2 98344 Bytes 05/09/2008 20:35:32 AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40 AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23 AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49 SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02 SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40 NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10 RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07 RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37 Configuration settings for the scan: Jobname..........................: Complete system scan Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp Logging..........................: low Primary action...................: interactive Secondary action.................: ignore Scan master boot sector..........: on Scan boot sector.................: on Boot sectors.....................: C:, Process scan.....................: on Scan registry....................: on Search for rootkits..............: on Scan all files...................: All files Scan archives....................: on Recursion depth..................: 20 Smart extensions.................: on Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, Macro heuristic..................: on File heuristic...................: medium Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR, Start of the scan: samedi 6 septembre 2008 11:29 Starting search for hidden objects. '49488' objects were checked, '0' hidden objects were found. The scan of running processes will be started Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'rundll32.exe' - '1' Module(s) have been scanned Scan process 'wuauclt.exe' - '1' Module(s) have been scanned Scan process 'alg.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process '1XConfig.exe' - '1' Module(s) have been scanned Scan process 'ashWebSv.exe' - '1' Module(s) have been scanned Scan process 'ashMaiSv.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'RegSrvc.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'MDM.EXE' - '1' Module(s) have been scanned Scan process 'kpf4ss.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'DVDRAMSV.exe' - '1' Module(s) have been scanned Scan process 'CFSvcs.exe' - '1' Module(s) have been scanned Scan process 'CeEPwrSvc.exe' - '1' Module(s) have been scanned Scan process 'guard.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned Scan process 'qttask.exe' - '1' Module(s) have been scanned Scan process 'avgas.exe' - '1' Module(s) have been scanned Scan process 'winampa.exe' - '1' Module(s) have been scanned Scan process 'ashDisp.exe' - '1' Module(s) have been scanned Scan process 'TPTray.exe' - '1' Module(s) have been scanned Scan process 'CeEKey.exe' - '1' Module(s) have been scanned Scan process 'CePMTray.exe' - '1' Module(s) have been scanned Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'ashServ.exe' - '1' Module(s) have been scanned Scan process 'aswUpdSv.exe' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'ZCfgSvc.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'S24EvMon.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 52 processes with 52 modules were scanned Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Starting to scan the registry. The registry was scanned ( '89' files ). Starting the file scan: Begin scan in 'C:\' C:\hiberfil.sys [WARNING] The file could not be opened! C:\pagefile.sys [WARNING] The file could not be opened! C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig709\FRA___\Data1.cab [0] Archive type: CAB (Microsoft) --> VDK10.LNG7 [WARNING] No further files can be extracted from this archive. The archive will be closed C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP861\A0784085.exe [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786148.exe [DETECTION] Contains recognition pattern of the DR/Tool.Reboot.F.131 dropper C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786148.exe [0] Archive type: RAR SFX (self extracting) --> SmitfraudFix\restart.exe [DETECTION] Contains recognition pattern of the SPR/Tool.Hardoff.A program [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786160.exe [DETECTION] Contains recognition pattern of the APPL/Tool.PsKill.2 application [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786176.exe [DETECTION] Contains recognition pattern of the SPR/Tool.Hardoff.A program [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP870\A0794142.exe [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan [NOTE] The file was deleted! End of the scan: samedi 6 septembre 2008 12:41 Used time: 1:11:45 Hour(s) The scan has been done completely. 5901 Scanning directories 322195 Files were scanned 6 viruses and/or unwanted programs were found 0 Files were classified as suspicious: 5 files were deleted 0 files were repaired 0 files were moved to quarantine 0 files were renamed 2 Files cannot be scanned 322187 Files not concerned 6896 Archives were scanned 3 Warnings 5 Notes 49488 Objects were scanned with rootkit scan 0 Hidden objects were found _________________________________________ Rapport HighjackThis : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:47:51, on 07/09/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16705) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe C:\Program Files\MSN Messenger\usnsvc.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer - Tiscali - R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Policies\Explorer\Run: [{1C0F0D1F-063E-1036-1130-040408260021}] "C:\Program Files\Fichiers communs\{1C0F0D1F-063E-1036-1130-040408260021}\Update.exe" mc-110-12-0000272 O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://charon777.free.fr/plugins/hardwaredetection.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{2897031B-8297-45D1-BD2D-38887C17CE88}: NameServer = 194.117.200.10,194.117.200.15 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: IPC Configuration Utility - IPC Configuration Utility - (no file) O22 - SharedTaskScheduler: Windows Installer Class - {020487CC-FC04-4B1E-863F-D9801796230B} - (no file) O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe -- End of file - 8826 bytes Merci d'avance pour le traitement de ce problème.
-
[Résolu] Suspicion d'infection de mon ordinateur
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonjour Gof, Désolé pour le retard dans la réponse, weekend chargé. Le navigateur fonctionne à merveille, le dernier souci constaté était sans doute dû à un bug temporaire. Ma vitesse de connection est bonne (pour un vieux PC ...), tout fonctionne bien, excepté ce problème de son sur le net que je traîne depuis un bout de temps et qui n'est toujours pas résolu. Media Player, Winamp et Quicktime aucun problème, le son passe bien, mais lorsque je vais sur YouTube ou sur le site paroles de chansons, pour écouter des extraits, pas de son, alors que c'est un lecteur intégré à la page Internet. Je ne comprends pas pourquoi .... En dehors de cela, tout est OK et je te remercie encore infiniment pour ton aide. J'ai lu la page de Malekal Morte sur le fait qu'Avast ne nous protège pas assez, et je pense que je vais garder Antivir, qui m'a l'air de bien fonctionner et qui lui aussi est gratuit. Bonne journée. -
[Résolu] Suspicion d'infection de mon ordinateur
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Salut Gof, les outils utilisés sont désinstallés, les rapports supprimés, les mises à jour faites après analyse de ce qui était à mettre à jour à l'aide de Secunia, et les anciennes versions désinstallées. Mon problème de disparition de son sut Internet n'est pas résolu, et j'ai une nouvelle difficulté : lorsque j'essaie d'ouvrir ton dernier post (cet après-midi, 15h47) sur le PC traité (là je te répond de mon portable), UC utilisée à 100%, page bloquée je peux plus rien faire, j'ai réessayé une bonne dizaine de fois, obligé de tout quitter, alors que sur le portable ça marche nickel. Qu'en penses-tu? Cela vient-t-il d'une mise à jour que j'ai faite? (principales MAJ : Winamp, Quicktime, et plusieurs Flash Player). Comme demané je te joins le rapport JavaR : JavaRa 1.11 Removal Log. Report follows after line. ------------------------------------ The JavaRa removal process was started on Sun Sep 07 16:54:17 2008 Found and removed: C:\Program Files\Java\jre1.5.0_05 Found and removed: Software\JavaSoft\Java2D\1.5.0_05 Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} Found and removed: SOFTWARE\Classes\Installer\Features\8A0F842331866D117AB7000B0D510005 Found and removed: SOFTWARE\Classes\Installer\Products\8A0F842331866D117AB7000B0D510005 Found and removed: SOFTWARE\Classes\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D510005 Found and removed: SOFTWARE\Classes\JavaPlugin.150_05 Found and removed: SOFTWARE\Classes\JavaWebStart.isInstalled.1.5.0.0 Found and removed: SOFTWARE\JavaSoft\Java Plug-in\1.5.0_05 Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.5 Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.5.0_05 Found and removed: SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ACBB9B2318A96D117A58000B0D510005 Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8A0F842331866D117AB7000B0D510005 Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0150050} Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.5.0_05 Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA} Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.5.0_05\ Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1 Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_02 Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_03 Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_04 Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.2 Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.2.0_01 Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA} Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB} ------------------------------------ Finished reporting. -
Salut à tous, Pour commencer, un grand merci aux membres de ce forum, qui nous accordent gentiment leur temps et leur savoir-faire pour la résolution de nos problèmes, particulièrement à Gof, qui m'a récemment aidé pour résoudre un souci qui est (presque) réglé. Nouveau post à propos de mon portable cette fois. Il y a 15 jours, j'ai été infecté par un spyware, qui faisait des fausses alertes d'infections par spyware et me proposait de télécharger un logiciel pour m'en débarasser, me renvoyant sur un lien internet. Déjà infecté par le passé et effectuant régulièrement des désinfections ou des remises à jour pour des amis, parfois avec l'aide des membres de ce forum, j'ai flairé l'arnaque et essayé de résoudre ce problème. J'ai constaté que le souci que j'ai eu avait déjà été traité sur ce forum, donc j'ai suivi à la lettre les prescriptions pur éradiquer cette menace. je pensais être tranquille, mais c'est apparemment plus sérieux que ca n'y parassait. En effet, j'ai remis après cette désinfection une photo en fond d'écran, dont j'ai voulu régler la taille et les propriétés. Mais je me suis apercu que je n'avais plus accès à la configuration de l'affichage. De plus, Internet explorer me joue parfois des tours. Lorsque j'ouvre beaucoup de pages, il arrive que l'UC monte à 100% d'utilisation, je n'ai plus alors le contrôle de rien. Après avoir fermé quelques pages, j'arrive à accéder au gestionnaire des taches, et je constate que la charge utile monte sans cesse alords que je n'ai ouvert aucune page (au contraire j'en ai fermé), atteignant parfois des sommets (jusqu'à 1200 Mo). Je suis alors obligé d'éteindre le PC en force. Une première analyse avec Antivir a révélé 6 infections. Je joins le rapport Antivir et un rapport HighjackThis, merci d'avance. Rapport Antivir : Avira AntiVir Personal Report file date: samedi 6 septembre 2008 11:29 Scanning for 1599979 virus strains and unwanted programs. Licensed to: Avira AntiVir PersonalEdition Classic Serial number: 0000149996-ADJIE-0001 Platform: Windows XP Windows version: (Service Pack 2) [5.1.2600] Boot mode: Normally booted Username: SYSTEM Computer name: MARTIAL Version information: BUILD.DAT : 8.1.0.331 16934 Bytes 12/08/2008 11:46:00 AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 08:57:53 AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40 LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19 LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52 ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34 ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 13:54:15 ANTIVIR2.VDF : 7.0.6.94 2998784 Bytes 31/08/2008 20:35:31 ANTIVIR3.VDF : 7.0.6.124 202240 Bytes 05/09/2008 20:35:32 Engineversion : 8.1.1.28 AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21 AESCRIPT.DLL : 8.1.0.70 319866 Bytes 05/09/2008 20:35:38 AESCN.DLL : 8.1.0.23 119156 Bytes 10/07/2008 12:44:49 AERDL.DLL : 8.1.1.1 397683 Bytes 05/09/2008 20:35:37 AEPACK.DLL : 8.1.2.1 364917 Bytes 15/07/2008 12:58:35 AEOFFICE.DLL : 8.1.0.23 196987 Bytes 05/09/2008 20:35:36 AEHEUR.DLL : 8.1.0.51 1397111 Bytes 05/09/2008 20:35:36 AEHELP.DLL : 8.1.0.15 115063 Bytes 10/07/2008 12:44:48 AEGEN.DLL : 8.1.0.36 315764 Bytes 05/09/2008 20:35:34 AEEMU.DLL : 8.1.0.7 430452 Bytes 31/07/2008 08:33:21 AECORE.DLL : 8.1.1.11 172406 Bytes 05/09/2008 20:35:33 AEBB.DLL : 8.1.0.1 53617 Bytes 10/07/2008 12:44:48 AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05 AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01 AVREP.DLL : 8.0.0.2 98344 Bytes 05/09/2008 20:35:32 AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40 AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23 AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49 SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02 SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40 NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10 RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07 RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37 Configuration settings for the scan: Jobname..........................: Complete system scan Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp Logging..........................: low Primary action...................: interactive Secondary action.................: ignore Scan master boot sector..........: on Scan boot sector.................: on Boot sectors.....................: C:, Process scan.....................: on Scan registry....................: on Search for rootkits..............: on Scan all files...................: All files Scan archives....................: on Recursion depth..................: 20 Smart extensions.................: on Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, Macro heuristic..................: on File heuristic...................: medium Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR, Start of the scan: samedi 6 septembre 2008 11:29 Starting search for hidden objects. '49488' objects were checked, '0' hidden objects were found. The scan of running processes will be started Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'rundll32.exe' - '1' Module(s) have been scanned Scan process 'wuauclt.exe' - '1' Module(s) have been scanned Scan process 'alg.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process '1XConfig.exe' - '1' Module(s) have been scanned Scan process 'ashWebSv.exe' - '1' Module(s) have been scanned Scan process 'ashMaiSv.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'RegSrvc.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'MDM.EXE' - '1' Module(s) have been scanned Scan process 'kpf4ss.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'DVDRAMSV.exe' - '1' Module(s) have been scanned Scan process 'CFSvcs.exe' - '1' Module(s) have been scanned Scan process 'CeEPwrSvc.exe' - '1' Module(s) have been scanned Scan process 'guard.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned Scan process 'qttask.exe' - '1' Module(s) have been scanned Scan process 'avgas.exe' - '1' Module(s) have been scanned Scan process 'winampa.exe' - '1' Module(s) have been scanned Scan process 'ashDisp.exe' - '1' Module(s) have been scanned Scan process 'TPTray.exe' - '1' Module(s) have been scanned Scan process 'CeEKey.exe' - '1' Module(s) have been scanned Scan process 'CePMTray.exe' - '1' Module(s) have been scanned Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'ashServ.exe' - '1' Module(s) have been scanned Scan process 'aswUpdSv.exe' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'ZCfgSvc.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'S24EvMon.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 52 processes with 52 modules were scanned Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Starting to scan the registry. The registry was scanned ( '89' files ). Starting the file scan: Begin scan in 'C:\' C:\hiberfil.sys [WARNING] The file could not be opened! C:\pagefile.sys [WARNING] The file could not be opened! C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig709\FRA___\Data1.cab [0] Archive type: CAB (Microsoft) --> VDK10.LNG7 [WARNING] No further files can be extracted from this archive. The archive will be closed C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP861\A0784085.exe [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786148.exe [DETECTION] Contains recognition pattern of the DR/Tool.Reboot.F.131 dropper C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786148.exe [0] Archive type: RAR SFX (self extracting) --> SmitfraudFix\restart.exe [DETECTION] Contains recognition pattern of the SPR/Tool.Hardoff.A program [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786160.exe [DETECTION] Contains recognition pattern of the APPL/Tool.PsKill.2 application [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP863\A0786176.exe [DETECTION] Contains recognition pattern of the SPR/Tool.Hardoff.A program [NOTE] The file was deleted! C:\System Volume Information\_restore{3B0B07F2-42FE-4807-B606-4B97DC04CDF5}\RP870\A0794142.exe [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan [NOTE] The file was deleted! End of the scan: samedi 6 septembre 2008 12:41 Used time: 1:11:45 Hour(s) The scan has been done completely. 5901 Scanning directories 322195 Files were scanned 6 viruses and/or unwanted programs were found 0 Files were classified as suspicious: 5 files were deleted 0 files were repaired 0 files were moved to quarantine 0 files were renamed 2 Files cannot be scanned 322187 Files not concerned 6896 Archives were scanned 3 Warnings 5 Notes 49488 Objects were scanned with rootkit scan 0 Hidden objects were found _________________________________________ Rapport HighjackThis : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:47:51, on 07/09/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16705) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\S24EvMon.exe C:\WINDOWS\system32\ZCfgSvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\TOSHIBA\Power Management\CePMTray.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\DVDRAMSV.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\RegSrvc.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe C:\Program Files\MSN Messenger\usnsvc.exe C:\Documents and Settings\MARTIAL\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer - Tiscali - R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [CeEPOWER] C:\Program Files\TOSHIBA\Power Management\CePMTray.exe O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Policies\Explorer\Run: [{1C0F0D1F-063E-1036-1130-040408260021}] "C:\Program Files\Fichiers communs\{1C0F0D1F-063E-1036-1130-040408260021}\Update.exe" mc-110-12-0000272 O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O14 - IERESET.INF: START_PAGE_URL=http://www.libertysurf.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://charon777.free.fr/plugins/hardwaredetection.cab O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{2897031B-8297-45D1-BD2D-38887C17CE88}: NameServer = 194.117.200.10,194.117.200.15 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O22 - SharedTaskScheduler: IPC Configuration Utility - IPC Configuration Utility - (no file) O22 - SharedTaskScheduler: Windows Installer Class - {020487CC-FC04-4B1E-863F-D9801796230B} - (no file) O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\TOSHIBA\Power Management\CeEPwrSvc.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe -- End of file - 8826 bytes Merci d'avance pour le traitement de ce problème.
-
[Résolu] Suspicion d'infection de mon ordinateur
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonjour Gof, Je te remercie infiniment de ton aide, je vais restaure le fichier bios320.exe, effecer mes points de restauration et en créer un neuf, qui sera sain. Cependant, un problème subsiste : j'ai bien retrouvé le son sur media player, mais je n'ai toujours pas de son lorsque je lis une vidéo sur YouTube, ou lorsque je veux écouter un extrait de clip sur des sites comme paroles de chansons.net, peux-tu m'aider à résoudre ce problème? Comme tu as du le remarquer, j'ai Soudmax d'installé sur le pc, cela peut-il venir de là? Par ailleurs, j'ai moi-même quelques soucis avec mon ordi portable, infections trouvé par antivir, j'ai eu la semaine dernière un spyware sur l'ordi, mais je pense qu'il reste des traces. Il me semble que selon les règles du forum, je dois ouvrir un nouveau post n'est-ce-pas? -
[Résolu] Suspicion d'infection de mon ordinateur
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Salut Gof, Je n'ai pas retrouvé le log de antivir passé en MSE, c'est de ma faute, j'ai désinstallé antivir de l'ordi pour éviter les conflits avec avast, bien que je compte par la suite passer à antivir et ne plus utiuliser avast, qui selon certains membres du forum ne nous protège pas vraiment. Par contre j'ai fait deux analyses, une vendredi et une aujourd'hui en mode normal, je te joins les deux rapports. Analyse vendredi mode normal : Avira AntiVir Personal Report file date: vendredi 5 septembre 2008 09:41 Scanning for 1598016 virus strains and unwanted programs. Licensed to: Avira AntiVir PersonalEdition Classic Serial number: 0000149996-ADJIE-0001 Platform: Windows XP Windows version: (Service Pack 2) [5.1.2600] Boot mode: Save mode Username: Lulu Computer name: ORDI Version information: BUILD.DAT : 8.1.0.331 16934 Bytes 12/08/2008 11:46:00 AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 08:57:53 AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40 LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19 LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52 ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34 ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 13:54:15 ANTIVIR2.VDF : 7.0.6.94 2998784 Bytes 31/08/2008 13:18:01 ANTIVIR3.VDF : 7.0.6.116 175104 Bytes 04/09/2008 13:18:03 Engineversion : 8.1.1.28 AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21 AESCRIPT.DLL : 8.1.0.70 319866 Bytes 04/09/2008 13:18:09 AESCN.DLL : 8.1.0.23 119156 Bytes 10/07/2008 12:44:49 AERDL.DLL : 8.1.1.1 397683 Bytes 04/09/2008 13:18:08 AEPACK.DLL : 8.1.2.1 364917 Bytes 15/07/2008 12:58:35 AEOFFICE.DLL : 8.1.0.23 196987 Bytes 04/09/2008 13:18:07 AEHEUR.DLL : 8.1.0.51 1397111 Bytes 04/09/2008 13:18:06 AEHELP.DLL : 8.1.0.15 115063 Bytes 10/07/2008 12:44:48 AEGEN.DLL : 8.1.0.36 315764 Bytes 04/09/2008 13:18:05 AEEMU.DLL : 8.1.0.7 430452 Bytes 31/07/2008 08:33:21 AECORE.DLL : 8.1.1.11 172406 Bytes 04/09/2008 13:18:04 AEBB.DLL : 8.1.0.1 53617 Bytes 10/07/2008 12:44:48 AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05 AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01 AVREP.DLL : 8.0.0.2 98344 Bytes 04/09/2008 13:18:03 AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40 AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23 AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49 SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02 SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40 NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10 RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07 RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37 Configuration settings for the scan: Jobname..........................: Complete system scan Configuration file...............: C:\Program Files\Avira\AntiVir PersonalEdition Classic\sysscan.avp Logging..........................: low Primary action...................: interactive Secondary action.................: ignore Scan master boot sector..........: on Scan boot sector.................: on Boot sectors.....................: C:, E:, Process scan.....................: on Scan registry....................: on Search for rootkits..............: on Scan all files...................: All files Scan archives....................: on Recursion depth..................: 20 Smart extensions.................: on Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, Macro heuristic..................: on File heuristic...................: medium Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR, Start of the scan: vendredi 5 septembre 2008 09:41 Starting search for hidden objects. The driver could not be initialized. The scan of running processes will be started Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avcenter.exe' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'guard.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'savedump.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 13 processes with 13 modules were scanned Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Boot sector 'E:\' [iNFO] No virus was found! Starting to scan the registry. The registry was scanned ( '91' files ). Starting the file scan: Begin scan in 'C:\' C:\pagefile.sys [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\acessquare.1.0.1.fr-FR.cab [0] Archive type: CAB (Microsoft) --> fmod.dll [WARNING] No further files can be extracted from this archive. The archive will be closed C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\bunnybounce.1.0.3.fr-FR.cab [0] Archive type: CAB (Microsoft) --> fmod.dll [WARNING] No further files can be extracted from this archive. The archive will be closed C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\xbios\bios320.exe [DETECTION] Contains recognition pattern of the APPL/BiosTool.D application [NOTE] The file was moved to '492fe55f.qua'! Begin scan in 'E:\' <Disque local> End of the scan: vendredi 5 septembre 2008 10:30 Used time: 49:00 Minute(s) The scan has been done completely. 6761 Scanning directories 312773 Files were scanned 1 viruses and/or unwanted programs were found 0 Files were classified as suspicious: 0 files were deleted 0 files were repaired 1 files were moved to quarantine 0 files were renamed 1 Files cannot be scanned 312771 Files not concerned 1746 Archives were scanned 3 Warnings 1 Notes Ananlyse aujourd'hui mode normal, plus poussée, dans laquelle une infection est encore trouvée : Avira AntiVir Personal Report file date: dimanche 7 septembre 2008 12:51 Scanning for 1599979 virus strains and unwanted programs. Licensed to: Avira AntiVir PersonalEdition Classic Serial number: 0000149996-ADJIE-0001 Platform: Windows XP Windows version: (Service Pack 3) [5.1.2600] Boot mode: Normally booted Username: SYSTEM Computer name: ORDI Version information: BUILD.DAT : 8.1.0.331 16934 Bytes 12/08/2008 11:46:00 AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 08:57:53 AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40 LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19 LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52 ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34 ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 13:54:15 ANTIVIR2.VDF : 7.0.6.94 2998784 Bytes 31/08/2008 10:49:04 ANTIVIR3.VDF : 7.0.6.124 202240 Bytes 05/09/2008 10:49:06 Engineversion : 8.1.1.28 AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21 AESCRIPT.DLL : 8.1.0.70 319866 Bytes 07/09/2008 10:49:11 AESCN.DLL : 8.1.0.23 119156 Bytes 10/07/2008 12:44:49 AERDL.DLL : 8.1.1.1 397683 Bytes 07/09/2008 10:49:10 AEPACK.DLL : 8.1.2.1 364917 Bytes 15/07/2008 12:58:35 AEOFFICE.DLL : 8.1.0.23 196987 Bytes 07/09/2008 10:49:09 AEHEUR.DLL : 8.1.0.51 1397111 Bytes 07/09/2008 10:49:09 AEHELP.DLL : 8.1.0.15 115063 Bytes 10/07/2008 12:44:48 AEGEN.DLL : 8.1.0.36 315764 Bytes 07/09/2008 10:49:07 AEEMU.DLL : 8.1.0.7 430452 Bytes 31/07/2008 08:33:21 AECORE.DLL : 8.1.1.11 172406 Bytes 07/09/2008 10:49:07 AEBB.DLL : 8.1.0.1 53617 Bytes 10/07/2008 12:44:48 AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05 AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01 AVREP.DLL : 8.0.0.2 98344 Bytes 07/09/2008 10:49:06 AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40 AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23 AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49 SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02 SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40 NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10 RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07 RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37 Configuration settings for the scan: Jobname..........................: Complete system scan Configuration file...............: C:\Program Files\Avira\AntiVir PersonalEdition Classic\sysscan.avp Logging..........................: medium Primary action...................: interactive Secondary action.................: ignore Scan master boot sector..........: on Scan boot sector.................: on Boot sectors.....................: C:, E:, Process scan.....................: on Scan registry....................: on Search for rootkits..............: off Scan all files...................: Intelligent file selection Scan archives....................: on Recursion depth..................: 20 Smart extensions.................: on Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, Macro heuristic..................: on File heuristic...................: medium Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR, Start of the scan: dimanche 7 septembre 2008 12:51 The scan of running processes will be started Scan process 'avwsc.exe' - '0' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'avcenter.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'notepad.exe' - '1' Module(s) have been scanned Scan process 'iexplore.exe' - '1' Module(s) have been scanned Scan process 'iexplore.exe' - '1' Module(s) have been scanned Scan process 'WgaTray.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process 'alg.exe' - '1' Module(s) have been scanned Scan process 'ashWebSv.exe' - '1' Module(s) have been scanned Scan process 'ashMaiSv.exe' - '1' Module(s) have been scanned Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'avgas.exe' - '1' Module(s) have been scanned Scan process 'SMax4.exe' - '1' Module(s) have been scanned Scan process 'SMax4PNP.exe' - '1' Module(s) have been scanned Scan process 'ADeck.exe' - '1' Module(s) have been scanned Scan process 'mixer.exe' - '1' Module(s) have been scanned Scan process 'vVX1000.exe' - '1' Module(s) have been scanned Scan process 'ashDisp.exe' - '1' Module(s) have been scanned Scan process 'DeviceManager.exe' - '1' Module(s) have been scanned Scan process 'LVComS.exe' - '1' Module(s) have been scanned Scan process 'raid_tool.exe' - '1' Module(s) have been scanned Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned Scan process 'hpotdd01.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'SMAgent.exe' - '1' Module(s) have been scanned Scan process 'MSCamS32.exe' - '1' Module(s) have been scanned Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'MDM.EXE' - '1' Module(s) have been scanned Scan process 'kpf4ss.exe' - '1' Module(s) have been scanned Scan process 'CDAC11BA.EXE' - '1' Module(s) have been scanned Scan process 'guard.exe' - '1' Module(s) have been scanned Scan process 'ADCDLicSvc.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'ashServ.exe' - '1' Module(s) have been scanned Scan process 'aswUpdSv.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 53 processes with 53 modules were scanned Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Boot sector 'E:\' [iNFO] No virus was found! Starting to scan the registry. C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\Program Files\Hewlett-Packard\Digital Imaging\bin\ C:\Program Files\ATI Technologies\ATI Control Panel\ C:\Program Files\ATI Technologies\ATI Control Panel\ C:\Program Files\VIA\RAID\ C:\Program Files\Fichiers communs\Logitech\QCDriver2\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\Program Files\Alwil Software\Avast4\ C:\WINDOWS\ C:\WINDOWS\ C:\Program Files\Analog Devices\SoundMAX\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\Program Files\Skype\Toolbars\Internet Explorer\ C:\Program Files\Skype\Toolbars\Internet Explorer\ C:\Program Files\Microsoft Office\OFFICE11\ C:\Program Files\Microsoft Office\OFFICE11\ C:\Program Files\Messenger\ C:\Program Files\Messenger\ C:\WINDOWS\system32\ C:\WINDOWS\inf\ C:\WINDOWS\ C:\WINDOWS\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\inf\ C:\WINDOWS\inf\ C:\WINDOWS\inf\ C:\WINDOWS\inf\ C:\WINDOWS\system32\ C:\WINDOWS\inf\ C:\WINDOWS\inf\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ C:\WINDOWS\system32\ The registry was scanned ( '78' files ). Starting the file scan: Begin scan in 'C:\' C:\ C:\pagefile.sys [WARNING] The file could not be opened! C:\90f7cf87d07faff0a7\ C:\ADCD\ C:\ADCD\FRE\ C:\Documents and Settings\Administrateur\ C:\Documents and Settings\Administrateur\Application Data\ C:\Documents and Settings\Administrateur\Application Data\Lavasoft\Ad-Aware\ C:\Documents and Settings\Administrateur\Application Data\Lavasoft\Ad-Aware\Logs\ C:\Documents and Settings\Administrateur\Application Data\Lavasoft\Ad-Aware\Quarantine\ C:\Documents and Settings\Administrateur\Application Data\Microsoft\HTML Help\ C:\Documents and Settings\Administrateur\Application Data\Microsoft\Internet Explorer\ C:\Documents and Settings\Administrateur\Application Data\Microsoft\Internet Explorer\Quick Launch\ C:\Documents and Settings\Administrateur\Application Data\Microsoft\Windows\Themes\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\0gj8bm7x.default\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\0gj8bm7x.default\Cache\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\0gj8bm7x.default\chrome\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\0gj8bm7x.default\extensions\ C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\0gj8bm7x.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\ C:\Documents and Settings\Administrateur\Bureau\ C:\Documents and Settings\Administrateur\Cookies\ C:\Documents and Settings\Administrateur\Favoris\ C:\Documents and Settings\Administrateur\Favoris\Liens\ C:\Documents and Settings\Administrateur\Local Settings\ C:\Documents and Settings\Administrateur\Local Settings\Application Data\ C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\ C:\Documents and Settings\Administrateur\Local Settings\Historique\ C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\ C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012007050720070514\ C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012007052420070525\ C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\ C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\49UB0L2Z\ C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\4XEB0DIR\ C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\KP6V49Y3\ C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\ODM7GLMB\ C:\Documents and Settings\Administrateur\Menu Démarrer\ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Accessibilité\ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Divertissement\ C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\ C:\Documents and Settings\Administrateur\Mes documents\ C:\Documents and Settings\Administrateur\Mes documents\Ma musique\ C:\Documents and Settings\Administrateur\Mes documents\Mes images\ C:\Documents and Settings\Administrateur\Modèles\ C:\Documents and Settings\Administrateur\Recent\ C:\Documents and Settings\Administrateur\SendTo\ C:\Documents and Settings\All Users\ C:\Documents and Settings\All Users\Application Data\ C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Apple Software Update 2.0.2.92\ C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\QuickTime 7.4.5.67\ C:\Documents and Settings\All Users\Application Data\Apple Computer\QuickTime\ C:\Documents and Settings\All Users\Application Data\Autodata Limited\Licenses\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\EVENTDB\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\IDX\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\JOBS\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\LOGFILES\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\ C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\REPORTS\ C:\Documents and Settings\All Users\Application Data\Browse Mapi Balm Glue\ C:\Documents and Settings\All Users\Application Data\Google\Custom Buttons\ C:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\ C:\Documents and Settings\All Users\Application Data\InstallShield\UpdateService\Database\ C:\Documents and Settings\All Users\Application Data\ma-config.com\ C:\Documents and Settings\All Users\Application Data\ma-config.com\Logs\ C:\Documents and Settings\All Users\Application Data\Macrovision\SafeCast\Product Licenses\ C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\ C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\ C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\ C:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ C:\Documents and Settings\All Users\Application Data\Microsoft\Machine Debug Manager\ C:\Documents and Settings\All Users\Application Data\Microsoft\Media Index\ C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\ C:\Documents and Settings\All Users\Application Data\Microsoft\Mse\1036\ C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\ C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\ C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA\ C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\ C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\Default Pictures\ C:\Documents and Settings\All Users\Application Data\Microsoft\USMT\ C:\Documents and Settings\All Users\Application Data\Skype\Pictures\ C:\Documents and Settings\All Users\Application Data\Skype\Plugins\ C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Local Cache\ C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Local Cache\Categories\ C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\ C:\Documents and Settings\All Users\Application Data\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Local Cache\ C:\Documents and Settings\All Users\Application Data\Skype\Wallpapers\ C:\Documents and Settings\All Users\Application Data\Skype\{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Backups\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti.zip [0] Archive type: ZIP --> sbRecovery.ini [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti1.zip [0] Archive type: ZIP --> aconti.sdb [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti2.zip [0] Archive type: ZIP --> aconti.dat [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti3.zip [0] Archive type: ZIP --> aconti.log [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti4.zip [0] Archive type: ZIP --> aconti.log [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti5.zip [0] Archive type: ZIP --> aconti.log [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti6.zip [0] Archive type: ZIP --> aconti.log [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Aconti7.zip [0] Archive type: ZIP --> aconti.log [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Central.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DSOExploit.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DSOExploit1.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DSOExploit2.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DSOExploit3.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DSOExploit4.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\GAINDashBar.zip [0] Archive type: ZIP --> sbRecovery.ini [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterdisabled.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SpyPry.zip [0] Archive type: ZIP --> ISHF_Ex.tlb [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Swizzor.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Swizzor1.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsAdTools.zip [0] Archive type: ZIP --> ide21201.vxd [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterAntiVirusDisableNotify.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterAntiVirusDisableNotify1.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterAntiVirusOverride.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterFirewallDisableNotify.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterFirewallDisableNotify1.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterFirewallDisableNotify2.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterFirewallDisableNotify3.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterFirewallDisableNotify4.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WindowsSecurityCenterFirewallDisableNotify5.zip [0] Archive type: ZIP --> sbRecovery.reg [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ZenoSearch.zip [0] Archive type: ZIP --> msnav32.ax [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ZenoSearch1.zip [0] Archive type: ZIP --> msnav32.ax [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ZenoSearch2.zip [0] Archive type: ZIP --> msnav32.ax [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots\ C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\ C:\Documents and Settings\All Users\Application Data\Symantec\hpc C:\Documents and Settings\All Users\Application Data\Symantec\LiveSubscribe\ C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\ C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\ C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\Portal\ C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\{D77F6F19-32A0-4845-8E61-0FC096F74231}\ C:\Documents and Settings\All Users\Application Data\Symantec\Norton Personal Firewall\ C:\Documents and Settings\All Users\Application Data\Symantec\Norton Personal Firewall\Log\ C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage\data\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\Delicious 2 Web\players\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\Pastry Passion Deluxe\players\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\Shangri La II Deluxe\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\TextExpress2Web\players\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\TrivialPursuitNinetiesWeb\players\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\TrivialPursuitWeb\players\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\TrivialPursuitWeb\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\Yahtzee\players\ C:\Documents and Settings\All Users\Application Data\Zylom\Games\Yahtzee\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\acessquare.1.0.1.fr-FR.cab [0] Archive type: CAB (Microsoft) --> AcesSquare.dll [NOTE] The archive header is damaged --> fmod.dll [WARNING] No further files can be extracted from this archive. The archive will be closed [WARNING] No further files can be extracted from this archive. The archive will be closed C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\images\screens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\audio\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\audio\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\Adverts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\Buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\Cards\cardsweb\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\CommonGFX\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\gui\BonusBar\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\gui\BonusBar\Bonuses\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\gui\Dialogs\basedialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\gui\Dialogs\WebDialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\Locale\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\screens\loadscreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\screens\pausescreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\Images\screens\playscreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\AcesSquare\fr-FR\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\locale\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\locale\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\locale\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\locale\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\locale\images\screens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\locale\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\audio\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\audio\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\audio\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\gui\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\gui\tempdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\minigameobjects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\minigames\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\minigames\ceasargame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\minigames\crosswords\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\minigames\findtheword\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\minigames\orderorder\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\misc\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\misc\gameoverview\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\misc\gamescreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\images\tower\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\properties\minigames\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\media\wordlists\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Babel\fr-FR\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BCASFWeb\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BCASydWeb\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\images\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\images\backdrops\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\images\mainmenubkg\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\images\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\puzzles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\bejeweled2\fr-FR\sounds\stream\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BigIslandBlends\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BigIslandBlends\fr-FR\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\bunnybounce.1.0.3.fr-FR.cab [0] Archive type: CAB (Microsoft) --> bunnybounce.dll [NOTE] The archive header is damaged --> fmod.dll [WARNING] No further files can be extracted from this archive. The archive will be closed [WARNING] No further files can be extracted from this archive. The archive will be closed C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\locale\images\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\locale\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\locale\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\locale\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\locale\images\scenes\play\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\locale\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\fonts\floaters\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\blue\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\clown\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\green\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\orange\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\purple\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\red\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\white\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\bunnies\yellow\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\dialogs\hintdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\dialogs\levelend\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\scenes\pause\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\scenes\play\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\scenes\play\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\scenes\play\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\images\scenes\play\elements\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\BunnyBounce\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\ad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\common\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\instructions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\particles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\bitmaps\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\levels\classic\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\psys\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\psys\instructions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\ad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\common\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\instructions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\links\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\particles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\sprites\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\uiscript\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\data\uiscript\state\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\locale\english\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\locale\english\data\bitmaps\ad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\locale\english\data\bitmaps\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\locale\english\data\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chainz2\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chocolatier\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chocolatier\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chocolatier\fr-FR\assets\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chocolatier\fr-FR\assets\ui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Textures\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Textures\advertisement\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Textures\Backdrops\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Textures\Backdrops_XMAS\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\chuzzle\fr-FR\Textures\XMAS\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\accessories\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\audio\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\audio\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\config\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\config\career\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\cursor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\customers\tourist_female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\customers\tourist_male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\customers\young_female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\flo\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\floscloset\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\floscloset\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\furniture\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\hiscore\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\layouts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\chairs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\food\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\furniture\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\people\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\props\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\restaurants\cruise\upgrades\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\scripts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\scripts\leveleditor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\ui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\ui\bubbles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\ui\levelspecific\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\ui\notes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\ui\upgrades\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ddfotg\fr-FR\assets\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\data\scenario_game_level_descriptions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\dialogs\default\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\dialogs\defaultpainter\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\dialogs\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\ingame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\ingame\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\appliances\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\decoration\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\objects\register\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\products\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\products\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\lunchroom\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\people\customers\business\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\people\customers\regular\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\people\customers\student\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\people\workers\waitress\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\scenes\gamescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\scenes\mapscene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\scenes\titlescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\screens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\text\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\images\text\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Delicious\fr-FR\media\sound\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\data\career\descriptions\career\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\data\career\layouts\career\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\data\general\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\data\presets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\data\scenario\descriptions\scenario\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\data\scenario\layouts\scenario\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\gui\default\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\gui\dialogdays\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\gui\dialogwinlose\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\gui\hintdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\misc\compound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\misc\orderballoon\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\misc\other\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\misc\workertray\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\appliances\choppingboard\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\appliances\coffeemachine\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\appliances\compound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\appliances\jarsandoven\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\appliances\soupandstove\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\decorations\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\other\counter\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\other\register\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\objects\bistro\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\business\female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\business\male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\cleaner1\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\elderly\female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\elderly\male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\emily\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\regular\female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\people\regular\male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\products\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\ingame\products\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\scenemap\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\sound\default\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\sound\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\media\sound\effects2\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\en-US\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\data\career\descriptions\career\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\data\career\layouts\career\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\data\general\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\data\presets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\data\scenario\descriptions\scenario\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\data\scenario\layouts\scenario\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\gui\default\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\gui\dialogdays\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\gui\dialogwinlose\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\gui\hintdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\misc\compound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\misc\orderballoon\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\misc\other\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\misc\workertray\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\appliances\choppingboard\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\appliances\coffeemachine\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\appliances\compound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\appliances\jarsandoven\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\appliances\soupandstove\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\decorations\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\other\counter\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\other\register\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\objects\bistro\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\business\female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\business\male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\cleaner1\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\elderly\female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\elderly\male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\emily\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\regular\female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\people\regular\male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\products\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\ingame\products\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\scenemap\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\sound\default\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\sound\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\media\sound\effects2\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\delicious2\fr-FR\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\data\scenario_game_level_descriptions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\dialogs\default\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\dialogs\defaultpainter\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\dialogs\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\ingame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\ingame\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\appliances\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\decoration\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\objects\register\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\products\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\products\icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\lunchroom\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\people\customers\business\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\people\customers\regular\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\people\customers\student\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\people\workers\waitress\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\scenes\gamescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\scenes\mapscene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\scenes\titlescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\screens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\text\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\images\text\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\deliciouswinteredition\fr-FR\media\sound\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\accessories\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\audio\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\audio\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\comics\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\config\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\cook\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\cursor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\old_male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\old_male\blue\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\old_male\green\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\old_male\purple\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\old_male\red\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\old_male\yellow\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\young_female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\young_female\blue\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\young_female\green\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\young_female\purple\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\young_female\red\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\customers\young_female\yellow\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\flo\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\furniture\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\hiscore\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\layouts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\restaurants\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\restaurants\diner\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\restaurants\diner\food\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\restaurants\diner\frames\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\restaurants\diner\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\scripts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\ui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\ui\doodles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash\fr-FR\assets\ui\upgrades\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\accessories\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\audio\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\audio\music\cafe\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\audio\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\config\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\cook\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\cursor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\customers\dad_male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\customers\kid_male\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\customers\mom_female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\customers\young_female\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\flo\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\furniture\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\hiscore\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\layouts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\chairs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\food\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\frames\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\furniture\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\people\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\props\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\tables\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\restaurants\cafe\upgrade_icons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\scripts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\ui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\ui\bubbles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\ui\notes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\ui\upgrades\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dinerdash2\fr-FR\assets\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\levels\003\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\levels\003_1\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\levels\003_2\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\levels\004\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\misc\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\misc\dreams\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\common\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\diary\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\hiscores\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\instructions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\main\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\main\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\menu\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\pause\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\summary\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\dreamchronicles\fr-FR\assets\states\users\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gamescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gui\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gui\defaultdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gui\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gui\hintdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\gui\pausedialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\blockers\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\bombs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\bonusses\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\borders\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\discs\normal\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\discs\pieces\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\effects\explosions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\misc\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\ingame\panels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\images\loadscene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ElDorado\fr-FR\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\GenericGameExtension\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\boards\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\gnomedata\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\images\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\images\gui\in-game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hammerheads\fr-FR\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\scenegame\bonusbaranimation\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\scenegame\level_end\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\scenegame\tiles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\images\sceneload\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\properties\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\hotelmahjong\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\game\64x64\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\gamescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\gamescene\pause\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\gui\ad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\gui\defaultdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\images\titlescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Lotus\fr-FR\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\ad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\main\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\particles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\powerups\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\bitmaps\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\EventHorizon\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\InTheShadowOfThePyramids\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\NavigatingtheAsteroidBelt\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\RasJourneyToTheWest\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\ScrollofThoth\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\SuperNova\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\TheInnerSolarSystem\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\maps\UraeusNefertari\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\psys\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\ad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\banners\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\main\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\particles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\powerups\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\sprites\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\uiscript\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\data\uiscript\state\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\locale\english\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\luxor\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\mahjongescape\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\images\screens\temp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\images\tilesets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\levels\arcade\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MahjongFortuna2\fr-FR\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MindMedley\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MumboJumboExtension\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MysterySolitaireSIWeb\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\MyZylomExtension\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\advertisement\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\dialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\puzzleConfigDialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\puzzles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\puzzleScreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\puzzleselectscreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastimePuzzles\fr-FR\media\titlescreen\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\dialogad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\dialogad2\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\dialoghinthenri\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\gui\dialoglevelend\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\scenearcade\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\scenegame\arcade\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\images\scenetitle\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PastryPassion\fr-FR\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\characters\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\dialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\game\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\interface\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\ip\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\ip\bad\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\levelselect\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\mainmenu\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\images\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\LevelEditor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\pegsongs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\peggle\fr-FR\trailer\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\images\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\images\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\images\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\pixelus\fr-FR\users\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PlayfirstExtension\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PlaytimeExtension\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\PopcapExtension\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\rainforestadventure\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\rainforestadventure\fr-FR\boards\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Ribiba\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Ribiba\fr-FR\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Ribiba\fr-FR\images\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Ribiba\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Ribiba\fr-FR\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\animals\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\dialogadvertisement\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\dialoggameelement\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\dialoghint\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\gui\dialoglevelend\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\objects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\scenegame\anim\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\scenegame\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\scenegame\collector\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\scenegame\tooltip\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\scenetitle\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\borders\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\cursor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\faces\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\shadows\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\shines\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\special\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\images\tilesets\tiles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\properties\animals\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\properties\difficulty\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\properties\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\properties\tilesets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\SafariIsland\fr-FR\_temp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\locale\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\locale\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\locale\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\locale\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\locale\images\screens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\locale\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\dialogs\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\dialogs\special\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\images\tiles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\data\leveldata\arcade\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\gui\dialoghint\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\gui\topbar\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\ingame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\ingame\granite parts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\ingame\granite parts\rubble\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\ingame\tiles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\ingame\wheeloffortune\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\scenearcade\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\scenegame\wordsnake\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\scenegame\wordsnake\explodeleft\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\scenegame\wordsnake\exploderight\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\images\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\media\sound\somatone\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ShangriLa2\fr-FR\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sunsetstudio\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Audio\Music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Audio\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\cursor\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Comic\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\FX\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Machines\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Mixers\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Paddle\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Sucker\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Textures\Glass\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Textures\Ingredients\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Textures\Machines\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Textures\Walls\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Vats\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Vents\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Vents\Joints\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Models\Walls\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Textures\Channels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Textures\Floors\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Textures\Pusher\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Textures\Shadows\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Textures\Sweets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\Textures\Vat\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\UI\InGame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\UI\Instructions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\UI\Loading\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\UI\MainMenu\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Game\UI\Pointers\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\hiscore\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Pages\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Scripts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\sweetopia\fr-FR\assets\Splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\data\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\dialogs\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\dialogs\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\dialogs\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\dialogs\hint\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\gamescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\gamescene\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\gamescene\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\gamescene\levelend\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\gamescene\train\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\images\loadingscene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\textexpress2\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\audio\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\audio\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\backgrounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\beetles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\buttons\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\characters\anwar\look\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\characters\bast\look\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\characters\kristine\look\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\helptips\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\models\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\scenes\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\sfx\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\splash\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\statues\statue0\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\statues\statue1\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\trails\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\triangles\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\triangles\clearanim\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\assets\urns\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\trijinx\fr-FR\screens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialogadvert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialogcategory\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialoggamesetup\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialoghint\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialogpause\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\gui\dialogquestion\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\board\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\endgame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\flags\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\roll\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenegame\tokens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\images\scenetitle\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\questions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuit\fr-FR\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\effects\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialogadvert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialogcategory\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialogdefault\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialoggamesetup\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialoghelp\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialoghint\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialogpause\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\gui\dialogquestion\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\board\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\endgame\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\flags\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\roll\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenegame\tokens\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\images\scenetitle\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\questions\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\TrivialPursuitNineties\fr-FR\music\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gamescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gamescene\die\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gamescene\die\white\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gamescene\scorecard\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gui\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gui\advert\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gui\defaultdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gui\help\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\gui\hintdialog\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\images\titlescene\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\media\sound\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Yahtzee\fr-FR\players\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\fonts\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\images\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\images\en-US\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\images\fr-FR\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\images\upsell\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\levels\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\levels\doubledip\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\levels\dynomite\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\levels\overlap\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\levels\spiral2\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\properties\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\Zuma\fr-FR\sounds\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ZylomDeluxeInstaller\ C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\zylom\ZylomExtension\ C:\Documents and Settings\All Users\Bureau\ C:\Documents and Settings\All Users\Documents\ C:\Documents and Settings\All Users\Documents\Ma musique\ C:\Documents and Settings\All Users\Documents\Ma musique\Sample Playlists\ C:\Documents and Settings\All Users\Documents\Ma musique\Sample Playlists\001B02EA\ C:\Documents and Settings\All Users\Documents\Ma musique\Sync Playlists\ C:\Documents and Settings\All Users\Documents\Ma musique\Sync Playlists\02DAF85B\ C:\Documents and Settings\All Users\Documents\Ma musique\Échantillons de musique\ C:\Documents and Settings\All Users\Documents\Mes images\ C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\ C:\Documents and Settings\All Users\Documents\Mes vidéos\ C:\Documents and Settings\All Users\DRM\ C:\Documents and Settings\All Users\Menu Démarrer\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Outils système\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AntiVir PersonalEdition Classic\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Autodata\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avast! Antivirus\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AVG Anti-Spyware 7.5\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Clic Concours\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CloneCD\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DivX\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DivX\DivX Player 2.1\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DivX\DivX Pro Codec\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Free Audio Pack\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\GSP\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Hewlett-Packard\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Hewlett-Packard\hp deskjet 5100 series\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Hewlett-Packard\hp print screen\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Hewlett-Packard\Memories Disc\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack\Configuration\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack\Information\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack\Tools\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Lavalys\EVEREST Home Edition\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LG PC Suite 2\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Clip Gallery\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft LifeCam\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office\Outils Microsoft Office\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mindscape\Entraîneur Cérébral 2\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero\Manuels d'Utilisation\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero\Nero 6 Ultra Edition\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nero\Nero Toolkit\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Philips Gestionnaire de périphériques\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Handycam Tools\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Picture Package Auto Slide\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Picture Package Auto Video\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Picture Package CD Backup\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Picture Package Menu\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Picture Package VCD Maker\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Package\Picture Package Viewer\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\PIXELA\ImageMixer VCD2\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\QuickTime\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SoundMAX\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Spybot - Search & Destroy\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Sunbelt Software\Personal Firewall\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Ubisoft\CSI-Miami\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Ubisoft\Les Experts-Crime Scene Investigation-Morts programmées\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\UltimateZip\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VIA\RAID\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Winamp\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR\ C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinZip\ C:\Documents and Settings\Default User\ C:\Documents and Settings\Default User\Application Data\ C:\Documents and Settings\Default User\Application Data\Microsoft\CLR Security Config\v1.1.4322\ C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\ C:\Documents and Settings\Default User\Cookies\ C:\Documents and Settings\Default User\Local Settings\ C:\Documents and Settings\Default User\Local Settings\Historique\ C:\Documents and Settings\Default User\Local Settings\Historique\History.IE5\ C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\ C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\49UB0L2Z\ C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\4XEB0DIR\ C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\KP6V49Y3\ C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\ODM7GLMB\ C:\Documents and Settings\Default User\Menu Démarrer\ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\ C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\ C:\Documents and Settings\Default User\Modèles\ C:\Documents and Settings\Default User\SendTo\ C:\Documents and Settings\LocalService\ C:\Documents and Settings\LocalService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\Application Data\Microsoft\Mse\ C:\Documents and Settings\LocalService\Application Data\Microsoft\Mse\1036\ C:\Documents and Settings\LocalService\Application Data\Microsoft\Office\ C:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\ C:\Documents and Settings\LocalService\Cookies\ C:\Documents and Settings\LocalService\Local Settings\ C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\ C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows Media\11.0\ C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows Media\9.0\ C:\Documents and Settings\LocalService\Local Settings\Historique\ C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\ C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\ C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\ C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\3ZE6D9DT\ C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\JU8FNC4Y\ C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\SD2UIK1B\ C:\Documents and Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\YHX6GSME\ C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\ C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\ C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\0D2R4HU7\ C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\7HIJTCDW\ C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\FYQIJBUD\ C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\W9ABO1QR\ C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\ C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\0PM3W9MF\ C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\8P274L23\ C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\KTQN452B\ C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\OPY7CDE7\ C:\Documents and Settings\LocalService\Menu Démarrer\Programmes\ C:\Documents and Settings\Lulu\ C:\Documents and Settings\Lulu\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\Lulu\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Lulu\Application Data\ C:\Documents and Settings\Lulu\Application Data\Adobe\Acrobat\Distiller 5\ C:\Documents and Settings\Lulu\Application Data\Adobe\Acrobat\Distiller 5\Cache\ C:\Documents and Settings\Lulu\Application Data\Adobe\Acrobat\Preferences\ C:\Documents and Settings\Lulu\Application Data\Adobe\Acrobat\Whapi\ C:\Documents and Settings\Lulu\Application Data\Adobe\FileBrowser\Photoshop7\ C:\Documents and Settings\Lulu\Application Data\Adobe\ImageReady\7.0\Paramètres\ C:\Documents and Settings\Lulu\Application Data\Adobe\ImageReady\7.0\Paramètres\ImageReady Actions\ C:\Documents and Settings\Lulu\Application Data\Adobe\Photoshop\7.0\Adobe Photoshop 7.0 Settings\ C:\Documents and Settings\Lulu\Application Data\Adobe\Photoshop\7.0\Paramètres Adobe Photoshop 7.0\ C:\Documents and Settings\Lulu\Application Data\Adobe\Workflow\ C:\Documents and Settings\Lulu\Application Data\Apple Computer\QuickTime\ C:\Documents and Settings\Lulu\Application Data\Azureus\ C:\Documents and Settings\Lulu\Application Data\Azureus\active\ C:\Documents and Settings\Lulu\Application Data\Azureus\dht\ C:\Documents and Settings\Lulu\Application Data\Azureus\logs\ C:\Documents and Settings\Lulu\Application Data\Azureus\logs\save\ C:\Documents and Settings\Lulu\Application Data\Azureus\torrents\ C:\Documents and Settings\Lulu\Application Data\EPSON\EPFB5\ES0015\ C:\Documents and Settings\Lulu\Application Data\Identities\{00013KEU-UKQE-K6V0-QFBF-21L0MSNVAVVA}\ C:\Documents and Settings\Lulu\Application Data\Identities\{00013KEU-UKQE-K6V0-QFBF-21L0MSNVAVVH}\ C:\Documents and Settings\Lulu\Application Data\Identities\{000HQ7FF-AD7A-3FG1-FP6A-215DM52C4VV9}\ C:\Documents and Settings\Lulu\Application Data\Identities\{000HQ7FF-AD7A-3FG2-5MGN-224B6D89UVVL}\ C:\Documents and Settings\Lulu\Application Data\Identities\{000HQ7FF-AD7A-3FG3-NGIN-25I8KVHMGVVG}\ C:\Documents and Settings\Lulu\Application Data\Identities\{000HQ7FF-AD7A-3FG3-NGIN-25I8KVHMGVVP}\ C:\Documents and Settings\Lulu\Application Data\Identities\{000HQ7FF-AD7A-3FG4-JM9C-24JLMUCREVUJ}\ C:\Documents and Settings\Lulu\Application Data\IsolatedStorage\Url.4xcukdarwegisbso5ccpferavrg40mtw\ C:\Documents and Settings\Lulu\Application Data\IsolatedStorage\Url.4xcukdarwegisbso5ccpferavrg40mtw\Url.4xcukdarwegisbso5ccpferavrg40mtw\ C:\Documents and Settings\Lulu\Application Data\IsolatedStorage\Url.4xcukdarwegisbso5ccpferavrg40mtw\Url.4xcukdarwegisbso5ccpferavrg40mtw\Files\Norton Ghost 9.0\ C:\Documents and Settings\Lulu\Application Data\Jane s Hotel\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\a69.g.akamai.net\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\ad-flow.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\agame.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\agame.com\mirror\flash\f\fox_adventure.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\agame.com\mirror\flash\i\icon_mario.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\agame.com\mirror\flash\l\legacy_of_pliskin.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\agame.com\mirror\flash\n\n-game.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\agame.com\mirror\flash\s\scooby_adventure_3.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\aimedia.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\atdmt.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\bannerfarm.ace.advertising.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\c.distralytics.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\canalsat.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\cbc.ca\kids\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\cpxinteractive.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\daxon.fr\Custom\l0\CatalogueInteractif\71\ga1\V313.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\ds.serving-sys.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\feuvert.fr\site\Excludes\Application\Produits\Rubrique\depliants\OP6\v320.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\files.agame.com\games\flash\b\bomb_it.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\files.jeuxvideo-flash.com\3b51a14b8f3672dd2ef8b513ef5052de\471cdc77\2197.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\firstadsolution.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\fr.youtube.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\game08.zylom.com\archives\166\_1.0.0_\to2_loader.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\game09.zylom.com\archives\2157\_1.0.0_\aw_loader.1.0.0.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\game11.zylom.com\archives\2079\_1.0.0_\talismania_loader.1.0.0.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\ifrance.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\images.soapbox.msn.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\images.soapbox.msn.com\flash\soapbox1_1.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\images.video.msn.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\images.video.msn.com\flash\soapbox1_1.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\images.video.msn.com\res\flash\633374031660000000\soapbox1_1.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\mcdonalds.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\meetic.fr\chat_flash4\chat5.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\meetic.fr\chat_flash4\tc5.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\mochibot.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\nissan.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\pagead2.googlesyndication.com\pagead\googleadplayer.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\prizee.com\fr\swf\gardien.fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\prizee.com\fr\swf\intrusion.fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\prizee.com\swf\gardien.fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\prizee.com\swf\intrusion.fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\renault.fr\rsite\cars\vehicule_selector.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\serving-sys.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\skype.com\#ui\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\skyregie.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\umoor.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\video.google.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\video.google.com\googleplayer.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\videos.leparisien.fr\swf\p.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.adultswim.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.dailymotion.com\flash\dmplayer\dmplayer-fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.dailymotion.com\flash\dmplayer\dmplayer.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.danone.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.gourmandia.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.gourmandia.com\flvplayerdemo2_us_test.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.ibishotel.com\flash\promo_ete\full_fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.mission-in-snowdriftland.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.nouvellestar.fr\videos\nouvelleStar.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.popstars.fr\videos\popStar.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\fr\swf\aquabulle.xx.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\fr\swf\archekoulapic.fr.swf\#Koulapic2\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\fr\swf\ricochet.fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\swf\aquabulle.xx.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\swf\archekoulapic.fr.swf\#Koulapic2\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\swf\ricochet.fr.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.prizee.com\swf\ticket.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.pronuptia.com\#Pronuptia\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.pronuptia.fr\#Pronuptia\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.skype.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.vistaprint.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.wideo.fr\swf\p.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www.youtube.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www8.agame.com\mirror\flash\f\fashion_run.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\www8.agame.com\mirror\flash\i\iwwalkabout.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\yieldmanager.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\zylom.com\archives\2009\_1.0.0_\bigkahunareef.1.0.0.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\#SharedObjects\F6NCGQU8\zylom.com\archives\2028\_1.0.0_\gemshop_loader.1.0.0.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#a69.g.akamai.net\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ad-flow.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#agame.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aimedia.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#atdmt.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bannerfarm.ace.advertising.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#c.distralytics.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#canalsat.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cbc.ca\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cpxinteractive.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#daxon.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ds.serving-sys.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#estb.msn.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#feuvert.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#files.agame.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#files.jeuxvideo-flash.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#firstadsolution.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fr.youtube.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#game08.zylom.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#game09.zylom.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#game11.zylom.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ifrance.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.soapbox.msn.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.video.msn.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mcdonalds.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#meetic.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mochibot.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nissan.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pagead2.googlesyndication.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#prizee.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#renault.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#serving-sys.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#skype.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#skyregie.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#umoor.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#videos.leparisien.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#woolythinking.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.adultswim.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dailymotion.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.danone.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.gourmandia.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.ibishotel.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mission-in-snowdriftland.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nouvellestar.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.popstars.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.prizee.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.pronuptia.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.pronuptia.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.skype.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.vistaprint.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.wideo.fr\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.x-menthelaststand.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www8.agame.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#yieldmanager.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zylom.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zylom.king.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zylomgames.com\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Flash Player\woolythinking.com\media\DarkRoom.swf\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\DirectSound\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FlashAsset\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FontAsset\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FontXtra\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\MacroMix\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SoundControl\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SWA\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextAsset\ C:\Documents and Settings\Lulu\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextXtra\ C:\Documents and Settings\Lulu\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\ C:\Documents and Settings\Lulu\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\ C:\Documents and Settings\Lulu\Application Data\Microsoft\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Address Book\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Clip Organizer\ C:\Documents and Settings\Lulu\Application Data\Microsoft\CLR Security Config\v1.1.4322\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Credentials\S-1-5-21-1060284298-884357618-1801674531-1003\ C:\Documents and Settings\Lulu\Application Data\Microsoft\CryptnetUrlCache\Content\ C:\Documents and Settings\Lulu\Application Data\Microsoft\CryptnetUrlCache\MetaData\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1060284298-884357618-1801674531-1003\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Excel\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Forms\ C:\Documents and Settings\Lulu\Application Data\Microsoft\HTML Help\ C:\Documents and Settings\Lulu\Application Data\Microsoft\IdentityCRL\Production\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Internet Explorer\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Internet Explorer\Quick Launch\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Media Catalog\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Media Player\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MMC\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Modèles\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\0\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1343754197\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1343754197\Backgrounds\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1343754197\MapFile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1343754197\UserTile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1343754197\Winks3\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1553560255\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1553560255\Backgrounds\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1553560255\MapFile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1553560255\UserTile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\1553560255\Winks3\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2653103471\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2653103471\Backgrounds\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2653103471\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2653103471\MapFile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2653103471\UserTile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2653103471\Winks3\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2829814732\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2829814732\Backgrounds\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2829814732\History\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2829814732\MapFile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2829814732\UserTile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\2829814732\Winks3\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3203218411\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3203218411\Backgrounds\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3203218411\MapFile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3203218411\UserTile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3203218411\Winks3\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\Backgrounds\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\CustomEmoticons\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\History\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\MapFile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\UserTile\ C:\Documents and Settings\Lulu\Application Data\Microsoft\MSN Messenger\3380766634\Winks3\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Network\Connections\Pbk\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Office\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Office\Récent\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Outlook\ C:\Documents and Settings\Lulu\Application Data\Microsoft\PowerPoint\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Proof\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Protect\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Protect\S-1-5-21-1060284298-884357618-1801674531-1003\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Shoebox\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Windows\Themes\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Windows Media Encoder\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Windows Messenger\3380766634\ C:\Documents and Settings\Lulu\Application Data\Microsoft\Épreuve\ C:\Documents and Settings\Lulu\Application Data\Mozilla\ C:\Documents and Settings\Lulu\Application Data\Mozilla\Firefox\ C:\Documents and Settings\Lulu\Application Data\Mozilla\Firefox\Profiles\00iqesqi.default\ C:\Documents and Settings\Lulu\Application Data\Mozilla\Firefox\Profiles\00iqesqi.default\Cache\ C:\Documents and Settings\Lulu\Application Data\Mozilla\Firefox\Profiles\00iqesqi.default\chrome\ C:\Documents and Settings\Lulu\Application Data\Mozilla\Firefox\Profiles\00iqesqi.default\extensions\ C:\Documents and Settings\Lulu\Application Data\Mozilla\Firefox\Profiles\00iqesqi.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\ C:\Documents and Settings\Lulu\Application Data\PlayFirst\Diner Dash\ C:\Documents and Settings\Lulu\Application Data\PlayFirst\dreamchronicles\ C:\Documents and Settings\Lulu\Application Data\PlayFirst\trijinx\activex\ C:\Documents and Settings\Lulu\Application Data\Skype\ C:\Documents and Settings\Lulu\Application Data\Skype\lulucanaille\ C:\Documents and Settings\Lulu\Application Data\Skype\lulucanaille\chatsync\34\ C:\Documents and Settings\Lulu\Application Data\Skype\lulucanaille\chatsync\ba\ C:\Documents and Settings\Lulu\Application Data\Skype\lulucanaille\dyncontent\ C:\Documents and Settings\Lulu\Application Data\Skype\lulucanaille\httpfe\ C:\Documents and Settings\Lulu\Application Data\Skype\Pictures\ C:\Documents and Settings\Lulu\Application Data\Skype\Wallpapers\ C:\Documents and Settings\Lulu\Application Data\skypePM\ C:\Documents and Settings\Lulu\Application Data\Sun\Java\Deployment\ C:\Documents and Settings\Lulu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\ C:\Documents and Settings\Lulu\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ C:\Documents and Settings\Lulu\Application Data\Sun\Java\Deployment\log\ C:\Documents and Settings\Lulu\Application Data\Symantec\Shared\ C:\Documents and Settings\Lulu\Application Data\Symantec\Shared\Sessions\ C:\Documents and Settings\Lulu\Application Data\Wildfire\ C:\Documents and Settings\Lulu\Application Data\Zylom\ C:\Documents and Settings\Lulu\Bureau\ C:\Documents and Settings\Lulu\Bureau\DiagHelp\ C:\Documents and Settings\Lulu\Contacts\ C:\Documents and Settings\Lulu\Contacts\gsxf_750@hotmail.com\ C:\Documents and Settings\Lulu\Contacts\lastardu62240@hotmail.fr\ C:\Documents and Settings\Lulu\Contacts\lastardu@hotmailfr\ C:\Documents and Settings\Lulu\Contacts\rossi_chti@hotmail.fr\ C:\Documents and Settings\Lulu\Cookies\ C:\Documents and Settings\Lulu\Favoris\ C:\Documents and Settings\Lulu\Favoris\Liens\ C:\Documents and Settings\Lulu\Favoris\Sites Web Microsoft\ C:\Documents and Settings\Lulu\Local Settings\ C:\Documents and Settings\Lulu\Local Settings\Application Data\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Ahead\Nero StartSmart\cache\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\01\00\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\04\14\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\05\09\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\10\01\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\12\14\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\12\15\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\13\06\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Apple Computer\QuickTime\downloads\14\10\ C:\Documents and Settings\Lulu\Local Settings\Application Data\ApplicationHistory\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Identities\{540E3B7F-A2CE-4FD6-AA0C-DBDB995ACD54}\Microsoft\Outlook Express\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Credentials\S-1-5-21-1060284298-884357618-1801674531-1003\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Feeds Cache\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Feeds Cache\13SEPEVN\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Feeds Cache\1AXTJR51\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Feeds Cache\HMLHHGIP\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Feeds Cache\YIOMQ0VS\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\FORMS\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\HelpCtr\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Internet Explorer\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Media Player\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\alainrocq@hotmail.com\ObjectStore\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\blues62@hotmail.fr\ObjectStore\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\ObjectStore\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\ObjectStore\Backgrounds\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\ObjectStore\CustomEmoticons\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\ObjectStore\DynamicBackgrounds\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\ObjectStore\UserTile\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\ObjectStore\Winks3\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\Sharing Folders\lilou-flo@hotmail.fr\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Installing\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\00\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\01\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\02\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\03\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\04\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\05\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\06\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\07\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\08\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\09\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\10\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\11\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\12\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\13\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\14\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\15\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\16\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\17\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\18\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\19\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\20\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\21\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\22\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\23\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\24\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\25\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\26\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\27\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\28\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\29\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\30\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\31\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\94\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\95\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\96\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\97\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\98\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\lilou-flo@hotmail.fr\DFSR\Staging\CS{B2F2DC61-9540-53E1-01F5-EBEF7370EEFB}\99\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\Logs\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\pidoux@hotmail.fr\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\pidoux@hotmail.fr\DFSR\Staging\CS{75F4CDAD-222E-7CC7-9405-EA0BD3A7AC3F}\01\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\Working\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\gsxf_750@hotmail.com\SharingMetadata\Working\database_9AE0_7CE3_E07C_C753\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\ObjectStore\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\ObjectStore\Backgrounds\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\ObjectStore\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\ObjectStore\DynamicBackgrounds\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\ObjectStore\UserTile\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\ObjectStore\Winks3\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\Sharing Folders\constance06@moi.com\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\SharingMetadata\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\SharingMetadata\constance06@moi.com\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\SharingMetadata\constance06@moi.com\DFSR\Staging\CS{1B15382C-86FF-525E-E54D-B6E7D765AEAE}\01\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\SharingMetadata\Logs\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\SharingMetadata\Working\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\lastardu62240@hotmail.fr\SharingMetadata\Working\database_9AE0_7CE3_E07C_C753\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\ObjectStore\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\ObjectStore\Backgrounds\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\ObjectStore\DynamicBackgrounds\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\ObjectStore\UserTile\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\ObjectStore\Winks3\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\SharingMetadata\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\SharingMetadata\Logs\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\SharingMetadata\Working\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\rossi_chti@hotmail.fr\SharingMetadata\Working\database_9AE0_7CE3_E07C_C753\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\titcarnet@hotmail.com\ObjectStore\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Messenger\titebitte@hotmail.fr\ObjectStore\DeluxeDisplayPictures\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Microsoft LifeCam\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Movie Maker\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\OFFICE\ONetConfig\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Outlook\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\gsxf_750@hotmail.com\real\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\gsxf_750@hotmail.com\shadow\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\lastardu62240@hotmail.fr\real\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\lastardu62240@hotmail.fr\shadow\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\lastardu@hotmailfr\real\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\rossi_chti@hotmail.fr\real\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Live Contacts\rossi_chti@hotmail.fr\shadow\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Media\10.0\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Media\11.0\ C:\Documents and Settings\Lulu\Local Settings\Application Data\Microsoft\Windows Media\9.0\ C:\Documents and Settings\Lulu\Local Settings\Historique\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012005072820050729\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012007070120070702\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008011320080114\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008030920080310\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008081820080825\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008082520080901\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090120080902\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090220080903\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090320080904\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090420080905\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090520080906\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090620080907\ C:\Documents and Settings\Lulu\Local Settings\Historique\History.IE5\MSHist012008090720080908\ C:\Documents and Settings\Lulu\Local Settings\Temp\ C:\Documents and Settings\Lulu\Local Settings\Temp\Historique\History.IE5\ C:\Documents and Settings\Lulu\Local Settings\Temp\IXP000.TMP\ C:\Documents and Settings\Lulu\Local Settings\Temp\pft23~tmp\WDM\ C:\Documents and Settings\Lulu\Local Settings\Temp\pft3~tmp\WDM\ C:\Documents and Settings\Lulu\Local Settings\Temp\pft4~tmp\WDM\ C:\Documents and Settings\Lulu\Local Settings\Temp\pft5~tmp\WDM\ C:\Documents and Settings\Lulu\Local Settings\Temp\pftE~tmp\WDM\ C:\Documents and Settings\Lulu\Local Settings\Temp\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\Lulu\Local Settings\Temp\Temporary Internet Files\Content.IE5\4F2BG3QF\ C:\Documents and Settings\Lulu\Local Settings\Temp\Temporary Internet Files\Content.IE5\C943AJW7\ C:\Documents and Settings\Lulu\Local Settings\Temp\Temporary Internet Files\Content.IE5\E3MZKROT\ C:\Documents and Settings\Lulu\Local Settings\Temp\Temporary Internet Files\Content.IE5\QZOB6BOR\ C:\Documents and Settings\Lulu\Local Settings\Temp\_ISTMP1.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Lulu\Local Settings\Temp\_ISTMP3.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Lulu\Local Settings\Temp\_ISTMP4.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Lulu\Local Settings\Temp\_ISTMP5.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Lulu\Local Settings\Temp\_ISTMP6.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Lulu\Local Settings\Temp\_ISTMP8.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Lulu\Local Settings\Temp\__SkypeIEToolbar_Cache\e70d95847a8f5723cfca6b3fd9946506\session\ C:\Documents and Settings\Lulu\Local Settings\Temp\__SkypeIEToolbar_Cache\e70d95847a8f5723cfca6b3fd9946506\static\ C:\Documents and Settings\Lulu\Local Settings\Temp\__SkypeIEToolbar_Cache\e70d95847a8f5723cfca6b3fd9946506\static\famfamfam\ C:\Documents and Settings\Lulu\Local Settings\Temp\{50A9AD08-3124-46C1-8A3C-8BD7A653983F}\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\6O6J3M5G\VUDBPA48\Offline\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\AntiPhishing\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\09YJKDA7\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\3NHNV58W\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\4H6J8XMN\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\67GBM3QH\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\8TAB0PE3\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\C1EFS5I7\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\C9YB8DAN\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\CH8DM3W9\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\KP67K1MN\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\LWJIRRT7\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\OPEN4H6J\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\SNRJ649P\ C:\Documents and Settings\Lulu\Local Settings\Temporary Internet Files\Content.IE5\URQBQ5AB\ C:\Documents and Settings\Lulu\Menu Démarrer\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\Accessoires\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\Accessoires\Accessibilité\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\Accessoires\Divertissement\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\Accessoires\Outils système\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\DivX\The Playa\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\GSP\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\Outils d'administration\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\Winamp\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\WinRAR\ C:\Documents and Settings\Lulu\Menu Démarrer\Programmes\XviD\ C:\Documents and Settings\Lulu\Mes documents\ C:\Documents and Settings\Lulu\Mes documents\AD1985\ C:\Documents and Settings\Lulu\Mes documents\AD1985\Migrate\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0006\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0007\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0009\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\000a\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\000b\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0010\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0011\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0012\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0013\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0014\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0019\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\001d\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\001e\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0404\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\040c\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0416\ C:\Documents and Settings\Lulu\Mes documents\AD1985\NT40\setupdir\0804\ C:\Documents and Settings\Lulu\Mes documents\AD1985\Redist\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SMAXWDM\SE\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SMAXWDM\W2K_XP\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\English\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\French\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\German\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Sys\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Comn\Wizards\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\English\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\French\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\German\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Micro\Sys\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\English\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\French\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\German\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Panel\Sys\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\English\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\French\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\German\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_PNP\Sys\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\English\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\French\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\German\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Panel\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Sys\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Sensa\Wave\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\DLS\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\English\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\French\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\German\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\AD1985\SM_Synth\Sys\ C:\Documents and Settings\Lulu\Mes documents\AD1985\Sys\ C:\Documents and Settings\Lulu\Mes documents\backups\ C:\Documents and Settings\Lulu\Mes documents\BANQUE\ C:\Documents and Settings\Lulu\Mes documents\BANQUE\Virement 260708 martial_fichiers\ C:\Documents and Settings\Lulu\Mes documents\BANQUE\Virements_fichiers\ C:\Documents and Settings\Lulu\Mes documents\drivers sagem fast 800\ C:\Documents and Settings\Lulu\Mes documents\drivers sagem fast 800\w3.02_std\ C:\Documents and Settings\Lulu\Mes documents\drivers sagem fast 800\w3.02_std\L1\cmv\ C:\Documents and Settings\Lulu\Mes documents\ds\ancien\ C:\Documents and Settings\Lulu\Mes documents\ds\carte\ C:\Documents and Settings\Lulu\Mes documents\ds\deja jouer\ C:\Documents and Settings\Lulu\Mes documents\ds\doosier ds bien\ C:\Documents and Settings\Lulu\Mes documents\ds\jeux cécile\ C:\Documents and Settings\Lulu\Mes documents\ds\nouveau\ C:\Documents and Settings\Lulu\Mes documents\lettre de motivation\ C:\Documents and Settings\Lulu\Mes documents\lettre de motivation\Monster_fr - Demande d'emploi en candidature spontanée_fichiers\ C:\Documents and Settings\Lulu\Mes documents\lettre de motivation\Monster_fr - Lettre claire et concise_fichiers\ C:\Documents and Settings\Lulu\Mes documents\lettre de motivation\Monster_fr - Lettre offensive_fichiers\ C:\Documents and Settings\Lulu\Mes documents\lettre de motivation\Monster_fr - Lettre positive_fichiers\ C:\Documents and Settings\Lulu\Mes documents\Ma musique\ C:\Documents and Settings\Lulu\Mes documents\martial master2\ C:\Documents and Settings\Lulu\Mes documents\martial master2\Linkin park - Minutes to Midnight (2007) (48kHz24bit) - FLAC\ C:\Documents and Settings\Lulu\Mes documents\martial master2\Linkin Park - Minutes To Midnight 2007 Advance\ C:\Documents and Settings\Lulu\Mes documents\martial master2\mémoires DEA\lille2\ C:\Documents and Settings\Lulu\Mes documents\martial master2\mémoires DEA\paris1\ C:\Documents and Settings\Lulu\Mes documents\martial master2\Radiohead - 2007 - In Rainbows\ C:\Documents and Settings\Lulu\Mes documents\martial master2\Radiohead - In Rainbows\ C:\Documents and Settings\Lulu\Mes documents\martial master2\Radiohead - In Rainbows\Disc One - October\ C:\Documents and Settings\Lulu\Mes documents\martial master2\Radiohead - In Rainbows\Disc Two - December\ C:\Documents and Settings\Lulu\Mes documents\martial master2\TRESS Home page_fichiers\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\8-12-05_fichiers\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\8-12-05_fichiers\button_fichiers\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\8-12-05_fichiers\gettext_fichiers\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\gaël\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\gsxf_7503380766634\Historique\ C:\Documents and Settings\Lulu\Mes documents\Mes fichiers reçus\une rose_fichiers\ C:\Documents and Settings\Lulu\Mes documents\Mes images\ C:\Documents and Settings\Lulu\Mes documents\Mes images\2008-08-18, Saut en parachute\ C:\Documents and Settings\Lulu\Mes documents\Mes images\alias\ C:\Documents and Settings\Lulu\Mes documents\Mes images\anniv Bettina\ C:\Documents and Settings\Lulu\Mes documents\Mes images\anniv juliette et elise\ C:\Documents and Settings\Lulu\Mes documents\Mes images\anniversaire 25 ans\ C:\Documents and Settings\Lulu\Mes documents\Mes images\Anniversaire 25 ans photo Marie Odile\ C:\Documents and Settings\Lulu\Mes documents\Mes images\AutoSlide\05_08_15_00\ C:\Documents and Settings\Lulu\Mes documents\Mes images\canaille\ C:\Documents and Settings\Lulu\Mes documents\Mes images\communion francois\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\3dbench\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\aida16\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\amset\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\astra\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\astra\EXAMPLES\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\atainf\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\atapicd\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\atapwd\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\avast\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\avg\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\bench\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\bios\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\bootpart\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\cdindex\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\cmospwd\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ctia\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ctram\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dbrowse\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\diskedit\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\diskman4\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dlgdiag4\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dlgdiag5\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dosnavig\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dosnavig\DOC\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dosnavig\DOC\ENGLISH\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\dosnavig\DOC\RUSSIAN\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\editbini\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\eraser\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\estool\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fdisk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\filelink\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fips\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fips\restorrb\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fips\source\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fmaven\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fprot\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\appinfo\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\bin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\bin\cp\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\bin\ctmouse\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\bin\ctmouse\utility\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\assign\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\atapicdd\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\attrib\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\choice\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\comp\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\cppacks\reduced\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\ctmouse\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\debug\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\deltree\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\diskcomp\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\diskcopy\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\display\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\edit\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\edlin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\emm386\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\exe2bin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\fasthelp\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\fc\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\fdisk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\fdxms\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\fdxms286\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\find\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\format\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\freecom\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\graphics\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\htmlhelp\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\keyb\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\label\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\lbacache\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\mem\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\mirror\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\mode\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\more\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\move\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\nansi\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\print\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\replace\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\scandisk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\share\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\shsucdx\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\sort\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\swsubst\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\swsubst\join\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\swsubst\subst\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\tdsk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\tree\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\undelete\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\unformat\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\doc\xcopy\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\help\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\help\hhstndrd\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\help\hhstndrd\authors\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\help\hhstndrd\batch\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\help\hhstndrd\cnfigsys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\freedos\nls\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\fujitsu\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\gwscn315\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\gwscn509\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\hutil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\intelfid\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\lfntools\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\lucifer\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\maxllf\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\mbrtool\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\mbrwork\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\mcafee\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\COLORS\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\DOC\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\ICO\DOS\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\ICO\WIN\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\SSAVERS\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\SSAVERS\SOURCE\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\ndn\XLT\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\netcopy\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\parallel\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\pcconfig\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\pci\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\pr\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\presizer\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\qwiktest\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\readntfs\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\samsung\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\satatool\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\savepart\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\savepart\doc\en\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\savepart\doc\fr_dos\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\savepart\doc\fr_win\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\scsimax\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\smartudm\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\spfdisk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\sst\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\stresscpu\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\testdisk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\uata100\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\uniflash\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\wipecmos\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\xbios\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\xfdisk\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\xosl\ C:\Documents and Settings\Lulu\Mes documents\Mes images\dosapps\xxcopy\ C:\Documents and Settings\Lulu\Mes documents\Mes images\football\ C:\Documents and Settings\Lulu\Mes documents\Mes images\Labtec\Album\Images\ C:\Documents and Settings\Lulu\Mes documents\Mes images\Labtec\Album\Vidéos\ C:\Documents and Settings\Lulu\Mes documents\Mes images\licenses\cd shell\ C:\Documents and Settings\Lulu\Mes documents\Mes images\licenses\cputype\ C:\Documents and Settings\Lulu\Mes documents\Mes images\licenses\diskemu\ C:\Documents and Settings\Lulu\Mes documents\Mes images\licenses\isolinux\ C:\Documents and Settings\Lulu\Mes documents\Mes images\licenses\memtest\ C:\Documents and Settings\Lulu\Mes documents\Mes images\licenses\Ranish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\lux + stras\ C:\Documents and Settings\Lulu\Mes documents\Mes images\luxembourg + foot\ C:\Documents and Settings\Lulu\Mes documents\Mes images\marion canaille neige\ C:\Documents and Settings\Lulu\Mes documents\Mes images\maëlie\ C:\Documents and Settings\Lulu\Mes documents\Mes images\maëlie a sa naissance\ C:\Documents and Settings\Lulu\Mes documents\Mes images\mon loulou\ C:\Documents and Settings\Lulu\Mes documents\Mes images\mon tatou\ C:\Documents and Settings\Lulu\Mes documents\Mes images\noel 2007\ C:\Documents and Settings\Lulu\Mes documents\Mes images\noel et nouvel an 2007\ C:\Documents and Settings\Lulu\Mes documents\Mes images\parachute image officielle\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\add on photoshop\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\COMMON\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\DUT\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\ENG\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\FRE\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\GER\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\ITA\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\LICENCE\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\POR\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\Autodata\SPA\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\déjà joué\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\moonshl\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\moonshl\custom\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\moonshl\custom\lang0\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\moonshl\custom\lang1\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\moonshl\plugin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\moonshl\skin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\_system_\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\jeu d'origine\_system_\ebook\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\fichier DS\nouveau jeu\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\moonshl\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\moonshl\custom\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\moonshl\custom\lang0\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\moonshl\custom\lang1\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\moonshl\plugin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\moonshl\skin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\_system_\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\marie léa\_system_\ebook\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\revue technique clio\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\Migrate\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\Redist\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SMAXWDM\SE\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SMAXWDM\W2K_XP\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Arabic\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Danish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Dutch\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Finnish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Hebrew\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Norwegan\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Swedish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\Thai\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Panel\Sys\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Sensa\Panel\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Sensa\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SM_Sensa\Wave\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SoundMAX Synthesizer\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SoundMAX Synthesizer\DLS\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\SoundMAX Synthesizer\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1980\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\Migrate\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0006\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0007\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0009\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\000a\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\000b\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0010\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0011\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0012\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0013\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0014\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0019\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\001d\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\001e\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0404\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\040c\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0416\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\NT40\setupdir\0804\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\Redist\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SMAXWDM\SE\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SMAXWDM\W2K_XP\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Comn\Wizards\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Micro\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Panel\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_PNP\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Panel\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Sensa\Wave\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\DLS\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Brazil\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\English\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\French\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\German\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Italian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Japanese\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Korean\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Polish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Russian\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\SimpChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\Spanish\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Help\TradChin\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\SM_Synth\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\perso\soft\AD1985\Sys\ C:\Documents and Settings\Lulu\Mes documents\Mes images\photo moto\ C:\Documents and Settings\Lulu\Mes documents\Mes images\photo saut en parachute Sony\ C:\Documents and Settings\Lulu\Mes documents\Mes images\Picture Package\'05_08_15_01\ C:\Documents and Settings\Lulu\Mes documents\Mes images\Picture Package\'05_08_15_01\DCIM\101MSDCF\ C:\Documents and Settings\Lulu\Mes documents\Mes images\Picture Package\'05_08_15_01\DCIM\101MSDCF\gonzagues\ C:\Documents and Settings\Lulu\Mes documents\Mes images\porte nom\ C:\Documents and Settings\Lulu\Mes documents\Mes images\soiree ludo + appart martial\ C:\Documents and Settings\Lulu\Mes documents\Mes images\soirée constance + kébab\ C:\Documents and Settings\Lulu\Mes documents\Mes images\surprise lydie\ C:\Documents and Settings\Lulu\Mes documents\Mes images\tatouages\ C:\Documents and Settings\Lulu\Mes documents\Mes images\video francois\ C:\Documents and Settings\Lulu\Mes documents\Mes vidéos\ C:\Documents and Settings\Lulu\Mes documents\musique\ C:\Documents and Settings\Lulu\Mes documents\musique\cabrel\ C:\Documents and Settings\Lulu\Mes documents\musique\cd luxembourg\ C:\Documents and Settings\Lulu\Mes documents\musique\cd2007\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\annee 80\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\année 60\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\cd plus mou\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\janine\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\janine\2008 - Piece Of My Soul\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\janine\CD-Enrique Iglesias-Insomniac-2007 Cast Music\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\janine\Celine Dion-Taking Chances\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\nouveau cd 14 juillet\ C:\Documents and Settings\Lulu\Mes documents\musique\chanson 14 juillet\poubelle\ C:\Documents and Settings\Lulu\Mes documents\musique\Christophe Willem - Inventaire 2007\ C:\Documents and Settings\Lulu\Mes documents\musique\Francis Cabrel LE VRAI (Des roses et des orties+CORVERS)\Des roses et des orties\ C:\Documents and Settings\Lulu\Mes documents\musique\Martin_Solveig-So_Far-2006-RNS\ C:\Documents and Settings\Lulu\Mes documents\musique\new cd\ C:\Documents and Settings\Lulu\Mes documents\musique\new cd\nouveau\ C:\Documents and Settings\Lulu\Mes documents\musique\new cd\poubelle\ C:\Documents and Settings\Lulu\Mes documents\musique\Nouveau dossier\ C:\Documents and Settings\Lulu\Mes documents\musique\Nouveau dossier\chanson pour le 13 juillet\ C:\Documents and Settings\Lulu\Mes documents\musique\Nouveau dossier\chanson pour le 13 juillet\cd chanson de l'été\ C:\Documents and Settings\Lulu\Mes documents\musique\Nouveau dossier\chanson pour le 13 juillet\poub\ C:\Documents and Settings\Lulu\Mes documents\musique\Nouveau dossier\poub\ C:\Documents and Settings\Lulu\Mes documents\musique\Nouveau dossier_2\ C:\Documents and Settings\Lulu\Mes documents\musique\w910i\images\ C:\Documents and Settings\Lulu\Mes documents\musique\w910i\musik\ C:\Documents and Settings\Lulu\Mes documents\musique\w910i\video\ C:\Documents and Settings\Lulu\Mes documents\My Skype Pictures\ C:\Documents and Settings\Lulu\Mes documents\pilotes\ C:\Documents and Settings\Lulu\Mes documents\pilotes\Mes images\ C:\Documents and Settings\Lulu\Mes documents\pilotes\Mes images\Photo\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\DrvDisk\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\DrvDisk\AMD64\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\DrvDisk\AMD64\2003x64\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\DrvDisk\i386\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\DrvDisk\i386\NT4\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\DrvDisk\i386\NT5\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\RaidTool\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\RaidTool\Utility\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\RaidTool\Utility\Win2000-xp\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\RaidTool\Utility\Win98-me\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\RaidTool\Utility\Winnt40\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viaagp\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viaagp\DRIVER\Svr2003\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viaagp\DRIVER\WIN2000\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viaagp\DRIVER\Win95\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viaagp\DRIVER\Win98_Me\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viaagp\DRIVER\WinXP\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viamach\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viamach\driver\win95\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viamach\driver\Win98\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viamach\driver\Win98SE\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viamach\driver\WinMe\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\viamach\driver\WINNT5\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\VIARaid\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\VIARaid\driver\2003x64\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\VIARaid\driver\Win98-me\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\VIARaid\driver\Winnt40\ C:\Documents and Settings\Lulu\Mes documents\pilotes\VIA_HyperionPro_V5.00A.0\VIARaid\driver\Winxp\ C:\Documents and Settings\Lulu\Mes documents\savage garden\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Banque de données droit international_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\cMUS - Frame page (French)_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\cMUS - Frame page (French)_fichiers\cmusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\cMUS - Frame page (French)_fichiers\cmustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\cMUS - Frame page (French)_fichiers\cpresscom2004-16_mus_20040331_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Communiques de presse 2001-16 - LaGrand (Allemagne c_ Etats-Unis d'Amérique)_1_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Communiques de presse 2001-16 - LaGrand (Allemagne c_ Etats-Unis d'Amérique)_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_1_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_1_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_1_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_1_fichiers\igus_ijudgment_separate_shi_20010627_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_2_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_2_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_2_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_2_fichiers\igus_ijudgment_dissenting_oda_20010627_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_3_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_3_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_3_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_3_fichiers\igus_ijudgment_separate_koroma_20010627_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_4_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_4_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_4_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_4_fichiers\igus_ijudgment_separate_parra_20010627_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_5_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_5_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_5_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_5_fichiers\igus_iudgment_dissenting_buergenthal_20010627_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_6_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_6_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_6_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_6_fichiers\cgus_capplication_cprovmeasures_19990302_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_fichiers\cgusbanner_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_fichiers\cgustoc_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Frame page of GUS(French)_fichiers\cgus_cjudgment_declaration_guillaume_20010627_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\GUS Arrêt du 27 juin 2001_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Internet juridique Les sites Web incontournables - Droit international et droits étrangers_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\Mémoires de DEA_fichiers\ C:\Documents and Settings\Lulu\Mes documents\sujets mémoire\SOMMAIRE Arrêt - Affaire LaGrand (Allemagne c_ Etats-Unis d'Amérique) - 27 juin 2001_fichiers\ C:\Documents and Settings\Lulu\Modèles\ C:\Documents and Settings\Lulu\Recent\ C:\Documents and Settings\Lulu\SendTo\ C:\Documents and Settings\Lulu\UserData\ C:\Documents and Settings\Lulu\UserData\1Q67BOVZ\ C:\Documents and Settings\Lulu\UserData\CYB6MQ3G\ C:\Documents and Settings\Lulu\UserData\NCGNUYQO\ C:\Documents and Settings\Lulu\UserData\OP2RGTIV\ C:\Documents and Settings\Lulu\Voisinage réseau\Mes sites Web sur MSN\ C:\Documents and Settings\Martial\ C:\Documents and Settings\Martial\Application Data\ C:\Documents and Settings\Martial\Application Data\Adobe\Acrobat\Preferences\ C:\Documents and Settings\Martial\Application Data\Adobe\FileBrowser\Photoshop7\ C:\Documents and Settings\Martial\Application Data\Adobe\Photoshop\7.0\Adobe Photoshop 7.0 Settings\ C:\Documents and Settings\Martial\Application Data\Adobe\Workflow\ C:\Documents and Settings\Martial\Application Data\Apple Computer\QuickTime\ C:\Documents and Settings\Martial\Application Data\Azureus\ C:\Documents and Settings\Martial\Application Data\Azureus\dht\ C:\Documents and Settings\Martial\Application Data\EPSON\EPFB5\ES0015\ C:\Documents and Settings\Martial\Application Data\Lavasoft\Ad-Aware\ C:\Documents and Settings\Martial\Application Data\Macromedia\Flash Player\#SharedObjects\KHXF32G3\www.metacafe.com\f\fp_embed_v3.swf\ C:\Documents and Settings\Martial\Application Data\Macromedia\Flash Player\#SharedObjects\KHXF32G3\www.youtube.com\ C:\Documents and Settings\Martial\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\ C:\Documents and Settings\Martial\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.metacafe.com\ C:\Documents and Settings\Martial\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\ C:\Documents and Settings\Martial\Application Data\Microsoft\Address Book\ C:\Documents and Settings\Martial\Application Data\Microsoft\CryptnetUrlCache\Content\ C:\Documents and Settings\Martial\Application Data\Microsoft\CryptnetUrlCache\MetaData\ C:\Documents and Settings\Martial\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1060284298-884357618-1801674531-1004\ C:\Documents and Settings\Martial\Application Data\Microsoft\HTML Help\ C:\Documents and Settings\Martial\Application Data\Microsoft\Internet Explorer\ C:\Documents and Settings\Martial\Application Data\Microsoft\Internet Explorer\Quick Launch\ C:\Documents and Settings\Martial\Application Data\Microsoft\Media Player\ C:\Documents and Settings\Martial\Application Data\Microsoft\Modèles\ C:\Documents and Settings\Martial\Application Data\Microsoft\Office\ C:\Documents and Settings\Martial\Application Data\Microsoft\Office\Récent\ C:\Documents and Settings\Martial\Application Data\Microsoft\Protect\ C:\Documents and Settings\Martial\Application Data\Microsoft\Protect\S-1-5-21-1060284298-884357618-1801674531-1004\ C:\Documents and Settings\Martial\Application Data\Microsoft\Windows\Themes\ C:\Documents and Settings\Martial\Application Data\Microsoft\Épreuve\ C:\Documents and Settings\Martial\Application Data\Mozilla\ C:\Documents and Settings\Martial\Application Data\Mozilla\Firefox\ C:\Documents and Settings\Martial\Application Data\Mozilla\Firefox\Profiles\yidbrhlo.default\ C:\Documents and Settings\Martial\Application Data\Mozilla\Firefox\Profiles\yidbrhlo.default\Cache\ C:\Documents and Settings\Martial\Application Data\Mozilla\Firefox\Profiles\yidbrhlo.default\chrome\ C:\Documents and Settings\Martial\Application Data\Mozilla\Firefox\Profiles\yidbrhlo.default\extensions\ C:\Documents and Settings\Martial\Application Data\Mozilla\Firefox\Profiles\yidbrhlo.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\ C:\Documents and Settings\Martial\Application Data\Sun\Java\Deployment\ C:\Documents and Settings\Martial\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\ C:\Documents and Settings\Martial\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ C:\Documents and Settings\Martial\Application Data\Sun\Java\Deployment\log\ C:\Documents and Settings\Martial\Application Data\Symantec\Shared\ C:\Documents and Settings\Martial\Application Data\Symantec\Shared\Sessions\ C:\Documents and Settings\Martial\Bureau\ C:\Documents and Settings\Martial\Cookies\ C:\Documents and Settings\Martial\Favoris\ C:\Documents and Settings\Martial\Favoris\Liens\ C:\Documents and Settings\Martial\Local Settings\ C:\Documents and Settings\Martial\Local Settings\Application Data\ C:\Documents and Settings\Martial\Local Settings\Application Data\Microsoft\ C:\Documents and Settings\Martial\Local Settings\Application Data\Microsoft\Internet Explorer\ C:\Documents and Settings\Martial\Local Settings\Application Data\Microsoft\Media Player\ C:\Documents and Settings\Martial\Local Settings\Application Data\Microsoft\Movie Maker\ C:\Documents and Settings\Martial\Local Settings\Application Data\Microsoft\Windows\ C:\Documents and Settings\Martial\Local Settings\Application Data\Microsoft\Windows Media\9.0\ C:\Documents and Settings\Martial\Local Settings\Historique\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005053020050606\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005060620050613\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005062220050623\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005062420050625\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005070220050703\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005070520050706\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005070720050708\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005071120050712\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005071420050715\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005072320050724\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005072920050730\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005073020050731\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005080220050803\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005080620050807\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012005080820050809\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012006062820060629\ C:\Documents and Settings\Martial\Local Settings\Historique\History.IE5\MSHist012007112020071121\ C:\Documents and Settings\Martial\Local Settings\Temp\ C:\Documents and Settings\Martial\Local Settings\Temp\feef66c8-c44d-4302-8aa0-da1bed8bc263\ C:\Documents and Settings\Martial\Local Settings\Temp\feef66c8-c44d-4302-8aa0-da1bed8bc263\lang\ C:\Documents and Settings\Martial\Local Settings\Temp\usmt\ C:\Documents and Settings\Martial\Local Settings\Temp\WER256c.dir00\ C:\Documents and Settings\Martial\Local Settings\Temp\WERa0b3.dir00\ C:\Documents and Settings\Martial\Local Settings\Temp\WERa889.dir00\ C:\Documents and Settings\Martial\Local Settings\Temp\WERa9bd.dir00\ C:\Documents and Settings\Martial\Local Settings\Temp\WERdf33.dir00\ C:\Documents and Settings\Martial\Local Settings\Temp\_ISTMP1.DIR\_ISTMP0.DIR\ C:\Documents and Settings\Martial\Local Settings\Temporary Internet Files\ C:\Documents and Settings\Martial\Local Settings\Temporary Internet Files\B79YNIKU\SR7216HJ\Offline\ C:\Documents and Settings\Martial\Local Settings\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\Martial\Menu Démarrer\ C:\Documents and Settings\Martial\Menu Démarrer\Programmes\ C:\Documents and Settings\Martial\Menu Démarrer\Programmes\Accessoires\ C:\Documents and Settings\Martial\Menu Démarrer\Programmes\Accessoires\Accessibilité\ C:\Documents and Settings\Martial\Menu Démarrer\Programmes\Accessoires\Divertissement\ C:\Documents and Settings\Martial\Menu Démarrer\Programmes\Démarrage\ C:\Documents and Settings\Martial\Mes documents\ C:\Documents and Settings\Martial\Modèles\ C:\Documents and Settings\Martial\Recent\ C:\Documents and Settings\Martial\SendTo\ C:\Documents and Settings\Martial\UserData\ C:\Documents and Settings\NetworkService\ C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Application Data\Microsoft\CLR Security Config\v1.1.4322\ C:\Documents and Settings\NetworkService\Application Data\Symantec\Shared\ C:\Documents and Settings\NetworkService\Cookies\ C:\Documents and Settings\NetworkService\Local Settings\ C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\ C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Historique\ C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\ C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\ C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\ C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\3DHPF5A6\ C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\4NDLHQZQ\ C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UE5L9EZX\ C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\ZVMS2EA3\ C:\Drivers\SonyUSB\ C:\EPSON\PERF640U\WIN\ C:\EPSON\SCANDRV\TWAIN5\ C:\Gamesurround Muse Series Drivers\ C:\GSP\TestQIFR\ C:\GSP\TestQIFR\cast\ C:\GSP\TestQIFR\Xtras\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\FILES\PFILES\COMMON\MSSHARED\DW\1036\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\FILES\PFILES\MSOFFICE\OFFICE11\1036\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\FILES\SETUP\ C:\MSOCache\All Users\9000040c-6000-11D3-8CFE-0150048383C9\FILES\WINDOWS\INF\ C:\Program Files\Activision\Call of Duty 2\ C:\Program Files\Adobe\Acrobat 5.0\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Browser\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Javascripts\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Optional\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\PalmPilot\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Photoshop\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Annotations\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Annotations\Stamps\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Annotations\Stamps\ENU\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Annotations\Stamps\FRA\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Catalog\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Catalog\VDKHome\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Catalog\VDKHome\ENU\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Catalog\VDKHome\FRA\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Catalog\VDKHome\Style\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\ImageConversion\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Movie\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Scan\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Brazilian\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Canadian\English\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Canadian\French\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Catalan\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Danish\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Dutch\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Finnish\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\French\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\German\German\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\German\German\Reformed\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\German\German\Traditional\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\German\Swiss\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\German\Swiss\OldSwiss\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\German\Swiss\Swiss\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Italian\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Norwegian\Bokmal\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Norwegian\Nynorsk\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Portuguese\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Spanish\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\Swedish\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\UK\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\UK\Legal\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\UK\Medical\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\US\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\US\GeoBio\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\US\Legal\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\US\Medical\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Spelling\Dictionaries\US\SciTech\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Table\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\VDKHome\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\VDKHome\ENU\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\VDKHome\FRA\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Webbuy\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Plug_ins\Webbuy\HTML\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Sequences\ENU\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\Sequences\FRA\ C:\Program Files\Adobe\Acrobat 5.0\Acrobat\SPPlugins\ C:\Program Files\Adobe\Acrobat 5.0\Distillr\ C:\Program Files\Adobe\Acrobat 5.0\Distillr\Data\ C:\Program Files\Adobe\Acrobat 5.0\Distillr\Settings\ C:\Program Files\Adobe\Acrobat 5.0\Distillr\Startup\ C:\Program Files\Adobe\Acrobat 5.0\Distillr\tmp\ C:\Program Files\Adobe\Acrobat 5.0\Distillr\Xtras\ C:\Program Files\Adobe\Acrobat 5.0\Help\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\assists\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\morgue\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\parts\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\pdd\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\style\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\temp\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\topicidx\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\trans\ C:\Program Files\Adobe\Acrobat 5.0\Help\ENU\Index\work\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\assists\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\morgue\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\parts\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\pdd\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\style\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\temp\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\topicidx\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\trans\ C:\Program Files\Adobe\Acrobat 5.0\Help\FRA\index\work\ C:\Program Files\Adobe\Acrobat 5.0\Juridique\ C:\Program Files\Adobe\Acrobat 5.0\Resource\ C:\Program Files\Adobe\Acrobat 5.0\Resource\Cmap\ C:\Program Files\Adobe\Acrobat 5.0\Resource\Font\ C:\Program Files\Adobe\Acrobat 5.0\Resource\Font\PFM\ C:\Program Files\Adobe\Photoshop 7.0\ C:\Program Files\Adobe\Photoshop 7.0\Aide\ C:\Program Files\Adobe\Photoshop 7.0\Aide\images\ C:\Program Files\Adobe\Photoshop 7.0\Exemples\ C:\Program Files\Adobe\Photoshop 7.0\Exemples\Animations ImageReady\ C:\Program Files\Adobe\Photoshop 7.0\Exemples\Droplets\Droplets ImageReady\ C:\Program Files\Adobe\Photoshop 7.0\Exemples\Droplets\Droplets Photoshop\ C:\Program Files\Adobe\Photoshop 7.0\Helpers\Jump To HTML Editor\ C:\Program Files\Adobe\Photoshop 7.0\Helpers\Preview In\ C:\Program Files\Adobe\Photoshop 7.0\Juridique\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe ImageReady Only\Filtres\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe ImageReady Only\Formats de fichiers\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe Photoshop Only\Automatisation\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe Photoshop Only\Extensions\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe Photoshop Only\Filtres\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe Photoshop Only\Formats de fichiers\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Adobe Photoshop Only\Importation-Exportation\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Conversion\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Digimarc\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Effets\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Filtres\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Filtres\Styles d'éclairage\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Formats de fichiers\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Images de référence\ C:\Program Files\Adobe\Photoshop 7.0\Modules externes\Importation-Exportation\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\2 encres\Gris-Noir\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\2 encres\PANTONE®\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\2 encres\Primaires\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\3 encres\Gris\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\3 encres\PANTONE®\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\3 encres\Primaires\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\4 encres\Gris\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\4 encres\PANTONE®\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Bichromie\4 encres\Primaires\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Catalogues de couleurs\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Contours\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Couleurs optimisées\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Dispositions\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Dégradés\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Formes\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Formes\Adobe Photoshop Only\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Formes personnalisées\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Diaporama vertical 1\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Diaporama vertical 2\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Diaporama vertical 2\images\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale bleu et gris\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale bleu et gris\images\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale claire\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale foncée\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale foncée\images\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale à dessins\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Horizontale à dessins\images\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Image horizontale\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Image verticale\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Simple\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Tableau\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Tableau\images\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Tableau - Bleu\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Galerie Web Photo\Tableau - Bleu\images\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Motifs\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Motifs\Adobe ImageReady Only\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Motifs\Motifs PostScript\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Nuanciers\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Nuanciers\Adobe Photoshop Only\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Outils\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Paramètres de sortie optimisés\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Paramètres optimisés\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Scripts Photoshop\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Styles\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\Textures\ C:\Program Files\Adobe\Photoshop 7.0\Paramètres prédéfinis\ZoomView\ C:\Program Files\Adobe\Photoshop 7.0\Required\ C:\Program Files\Adobe\Photoshop 7.0\Required\Scripts par défaut ImageReady\ C:\Program Files\Ahead\CoverDesigner\ C:\Program Files\Ahead\CoverDesigner\Templates\ C:\Program Files\Ahead\ImageDrive\ C:\Program Files\Ahead\Nero\ C:\Program Files\Ahead\Nero\CDI\ C:\Program Files\Ahead\Nero\Uninstall\ C:\Program Files\Ahead\Nero BackItUp\ C:\Program Files\Ahead\Nero SoundTrax\ C:\Program Files\Ahead\Nero StartSmart\ C:\Program Files\Ahead\Nero Toolkit\ C:\Program Files\Ahead\Nero Wave Editor\ C:\Program Files\Ahead\Nero Wave Editor\Presets\ C:\Program Files\Ahead\WMPBurn\ C:\Program Files\Alwil Software\Avast4\ C:\Program Files\Alwil Software\Avast4\DATA\ C:\Program Files\Alwil Software\Avast4\DATA\chest\ C:\Program Files\Alwil Software\Avast4\DATA\integ\ C:\Program Files\Alwil Software\Avast4\DATA\log\ C:\Program Files\Alwil Software\Avast4\DATA\report\ C:\Program Files\Alwil Software\Avast4\DATA\Skin\ C:\Program Files\Alwil Software\Avast4\FRENCH\ C:\Program Files\Alwil Software\Avast4\FRENCH\HELP\ C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\ C:\Program Files\Alwil Software\Avast4\images\ C:\Program Files\Alwil Software\Avast4\Setup\ C:\Program Files\Alwil Software\Avast4\Setup\INF\ C:\Program Files\Alwil Software\Avast4\Setup\INF\AMD64\ C:\Program Files\Alwil Software\Avast4\Setup\INF\IA64\ C:\Program Files\Analog Devices\SoundMAX\ C:\Program Files\Analog Devices\SoundMAX\Demo\ C:\Program Files\Analog Devices\SoundMAX\Help\ C:\Program Files\Analog Devices\SoundMAX\Test\ C:\Program Files\Apple Software Update\ C:\Program Files\Apple Software Update\plugins\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\da.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\de.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\en.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\es.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\fi.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\fr.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\it.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\ja.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\ko.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\nb.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\nl.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\ru.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\sv.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\zh_CN.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdate.Resources\zh_TW.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\da.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\de.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\en.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\es.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\fi.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\fr.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\it.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\ja.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\ko.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\nb.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\nl.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\ru.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\sv.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\zh_CN.lproj\ C:\Program Files\Apple Software Update\SoftwareUpdateFiles.Resources\zh_TW.lproj\ C:\Program Files\Application X\PowerDVD\ C:\Program Files\ATI Technologies\ATI Control Panel\ C:\Program Files\ATI Technologies\UninstallAll\ C:\Program Files\Avira\AntiVir PersonalEdition Classic\ C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\ C:\Program Files\Azureus\ C:\Program Files\Azureus\plugins\azplugins\ C:\Program Files\Azureus\plugins\azupdater\ C:\Program Files\Clic Concours\ C:\Program Files\Clic Concours\Xtras\ C:\Program Files\DivX\ C:\Program Files\DivX\DivX Player 2.1\ C:\Program Files\DivX\DivX Player 2.1\Skins\ C:\Program Files\DivX\DivX Pro Codec\ C:\Program Files\Elaborate Bytes\CloneCD\ C:\Program Files\Elaborate Bytes\CloneCD\Graphics\ C:\Program Files\Elaborate Bytes\CloneCD\Profiles\ C:\Program Files\Elaborate Bytes\CloneCD\Sounds\ C:\Program Files\Elaborate Bytes\CloneCD\Texts\ C:\Program Files\eMule\ C:\Program Files\eMule\config\Backup\ C:\Program Files\eMule\config\Backup2\ C:\Program Files\eMule\Incoming\ C:\Program Files\eMule\Temp\ C:\Program Files\eMule\Temp\Source Lists\ C:\Program Files\eMule\wapserver\ C:\Program Files\eMule_plus\Config\ C:\Program Files\eMule_plus\Db\ C:\Program Files\EPSON\EPSON SMART PANEL for Scanner\PmApp\ C:\Program Files\ewido anti-spyware 4.0\ C:\Program Files\EZFace\ActiveX\ C:\Program Files\EZFace\ActiveX\Cache\0\ C:\Program Files\ffdshow\help\ C:\Program Files\ffdshow\languages\ C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\ C:\Program Files\Fichiers communs\Adobe\Calibration\ C:\Program Files\Fichiers communs\Adobe\Color\ C:\Program Files\Fichiers communs\Adobe\Color\Profiles\ C:\Program Files\Fichiers communs\Adobe\Color\Profiles\Recommended\ C:\Program Files\Fichiers communs\Adobe\Color\Settings\ C:\Program Files\Fichiers communs\Adobe\Fonts\ C:\Program Files\Fichiers communs\Adobe\Fonts\Reqrd\Base\ C:\Program Files\Fichiers communs\Adobe\Fonts\Reqrd\Base\pfm\ C:\Program Files\Fichiers communs\Adobe\Fonts\Reqrd\CMaps\ C:\Program Files\Fichiers communs\Adobe\Hyphenation\ C:\Program Files\Fichiers communs\Adobe\PDFL\5.0\CMaps\ C:\Program Files\Fichiers communs\Adobe\PDFL\5.0\Fonts\ C:\Program Files\Fichiers communs\Adobe\PDFL\5.0\Fonts\PFM\ C:\Program Files\Fichiers communs\Adobe\Shell\ C:\Program Files\Fichiers communs\Adobe\Spelling\ C:\Program Files\Fichiers communs\Adobe\TypeSpt\ C:\Program Files\Fichiers communs\Adobe\TypeSpt\MojiKumi\ C:\Program Files\Fichiers communs\Adobe\Web\ C:\Program Files\Fichiers communs\Adobe\Workflow\ C:\Program Files\Fichiers communs\Ahead\AudioPlugins\ C:\Program Files\Fichiers communs\Ahead\DSFilter\ C:\Program Files\Fichiers communs\Ahead\Lib\ C:\Program Files\Fichiers communs\Autodata Limited Shared\Service\ C:\Program Files\Fichiers communs\Borland Shared\BDE\ C:\Program Files\Fichiers communs\DESIGNER\ C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\ C:\Program Files\Fichiers communs\InstallShield\Driver\7\Intel 32\ C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\ C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\ C:\Program Files\Fichiers communs\InstallShield\IScript\ C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\ C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\0701\Intel32\ C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\10\00\Intel32\ C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\10\50\Intel32\ C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\50\Intel32\ C:\Program Files\Fichiers communs\InstallShield\UpdateService\ C:\Program Files\Fichiers communs\InstallShield\UpdateService\Images\ C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\ C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\core1\bin\ C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\core1\bin\client\ C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_05.b05\ C:\Program Files\Fichiers communs\Logitech\QCDriver\ C:\Program Files\Fichiers communs\Logitech\QCDriver2\ C:\Program Files\Fichiers communs\Macrovision Shared\SafeCast\Install\ C:\Program Files\Fichiers communs\Microsoft Shared\Artgalry\ C:\Program Files\Fichiers communs\Microsoft Shared\Clipart\CagCat50\ C:\Program Files\Fichiers communs\Microsoft Shared\DAO\ C:\Program Files\Fichiers communs\Microsoft Shared\Database Replication\ C:\Program Files\Fichiers communs\Microsoft Shared\Database Replication\Resources\1033\ C:\Program Files\Fichiers communs\Microsoft Shared\Database Replication\Resources\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\DW\ C:\Program Files\Fichiers communs\Microsoft Shared\DW\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\EQUATION\ C:\Program Files\Fichiers communs\Microsoft Shared\EQUATION\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\EURO\ C:\Program Files\Fichiers communs\Microsoft Shared\GRPHFLT\ C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\ C:\Program Files\Fichiers communs\Microsoft Shared\INK\ C:\Program Files\Fichiers communs\Microsoft Shared\MODI\11.0\ C:\Program Files\Fichiers communs\Microsoft Shared\MODI\11.0\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\MODI\11.0\DRIVERS\ C:\Program Files\Fichiers communs\Microsoft Shared\MSClientDataMgr\ C:\Program Files\Fichiers communs\Microsoft Shared\MSDesigners7\ C:\Program Files\Fichiers communs\Microsoft Shared\MSDesigners7\Resources\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\MSENV\ C:\Program Files\Fichiers communs\Microsoft Shared\MSInfo\ C:\Program Files\Fichiers communs\Microsoft Shared\MSORUN\ C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\ C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\ C:\Program Files\Fichiers communs\Microsoft Shared\Portal\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1025\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1031\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1033\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\1043\ C:\Program Files\Fichiers communs\Microsoft Shared\PROOF\3082\ C:\Program Files\Fichiers communs\Microsoft Shared\Shoebox\ C:\Program Files\Fichiers communs\Microsoft Shared\Smart Tag\ C:\Program Files\Fichiers communs\Microsoft Shared\Smart Tag\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Smart Tag\LISTS\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Snapshot Viewer\ C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\ C:\Program Files\Fichiers communs\Microsoft Shared\Speech\ C:\Program Files\Fichiers communs\Microsoft Shared\Speech\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\TextConv\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\AFTRNOON\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\ARCTIC\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\AXIS\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\BLENDS\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\BLUECALM\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\BLUEPRNT\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\BOLDSTRI\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\BREEZE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\CANYON\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\CAPSULES\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\CASCADE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\COMPASS\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\CONCRETE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\DEEPBLUE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\ECHO\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\ECLIPSE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\EDGE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\EVRGREEN\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\EXPEDITN\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\ICE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\INDUST\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\IRIS\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\JOURNAL\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\LAYERS\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\LEVEL\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\NETWORK\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\PAPYRUS\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\PIXEL\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\PROFILE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\QUAD\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\RADIAL\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\REFINED\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\RICEPAPR\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\RIPPLE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\RMNSQUE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\SATIN\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\SKY\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\SLATE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\SONORA\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\SPRING\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\STRTEDGE\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\STUDIO\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\SUMIPNTG\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\WATER\ C:\Program Files\Fichiers communs\Microsoft Shared\THEMES11\WATERMAR\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\AREN\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ARFR\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ENAR\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ENES\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ENFR\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ENGE\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\ESEN\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\FRAR\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\FREN\ C:\Program Files\Fichiers communs\Microsoft Shared\TRANSLAT\GEEN\ C:\Program Files\Fichiers communs\Microsoft Shared\Triedit\ C:\Program Files\Fichiers communs\Microsoft Shared\VBA\VBA6\ C:\Program Files\Fichiers communs\Microsoft Shared\VBA\VBA6\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\VGX\ C:\Program Files\Fichiers communs\Microsoft Shared\Visual Database Tools\ C:\Program Files\Fichiers communs\Microsoft Shared\Visual Database Tools\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\ C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\11\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\11\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\1033\ C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\web server extensions\40\bin\ C:\Program Files\Fichiers communs\Microsoft Shared\web server extensions\40\bin\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\web server extensions\60\BIN\ C:\Program Files\Fichiers communs\Microsoft Shared\web server extensions\60\BIN\1036\ C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\ C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\1036\ C:\Program Files\Fichiers communs\MSSoap\Binaries\ C:\Program Files\Fichiers communs\MSSoap\Binaries\Resources\1036\ C:\Program Files\Fichiers communs\muvee Technologies\030625\ C:\Program Files\Fichiers communs\muvee Technologies\030625\S00002_Chaplinesque\ C:\Program Files\Fichiers communs\muvee Technologies\030625\S00007_OverTheTopMusicVideo\ C:\Program Files\Fichiers communs\muvee Technologies\030625\S00010_ProMedium\ C:\Program Files\Fichiers communs\muvee Technologies\030625\S00011_ProSlow\ C:\Program Files\Fichiers communs\muvee Technologies\030625\S00017_Smoky\ C:\Program Files\Fichiers communs\Real\Update\ C:\Program Files\Fichiers communs\Services\ C:\Program Files\Fichiers communs\Skype\ C:\Program Files\Fichiers communs\SpeechEngines\Microsoft\ C:\Program Files\Fichiers communs\SpeechEngines\Microsoft\Lexicon\1033\ C:\Program Files\Fichiers communs\SpeechEngines\Microsoft\TTS\1033\ C:\Program Files\Fichiers communs\Symantec Shared\ C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\ C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\ C:\Program Files\Fichiers communs\Symantec Shared\Registry Backup\ C:\Program Files\Fichiers communs\Symantec Shared\SPManifests\ C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\ C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\20050912.024\ C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\20060911.037\ C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\BinHub\ C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\TextHub\ C:\Program Files\Fichiers communs\System\ C:\Program Files\Fichiers communs\System\ado\ C:\Program Files\Fichiers communs\System\msadc\ C:\Program Files\Fichiers communs\System\MSMAPI\1036\ C:\Program Files\Fichiers communs\System\Ole DB\ C:\Program Files\Fichiers communs\System\Ole DB\resources\1033\ C:\Program Files\Fichiers communs\System\Ole DB\resources\1036\ C:\Program Files\Free Audio Pack\ C:\Program Files\Free Audio Pack\Easy Audio Cutter\ C:\Program Files\Free Audio Pack\Easy Audio Cutter\Lang\ C:\Program Files\Free Audio Pack\Free CD Ripper\ C:\Program Files\Free Audio Pack\Free CD Ripper\Images\ C:\Program Files\Free Audio Pack\Free CD Ripper\Lang\ C:\Program Files\Free Audio Pack\FreeConverter\ C:\Program Files\Free Audio Pack\FreeConverter\Lang\ C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\ C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Signatures\ C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Translations\ C:\Program Files\Hewlett-Packard\Digital Imaging\Album\ C:\Program Files\Hewlett-Packard\Digital Imaging\Album\Artwork\ C:\Program Files\Hewlett-Packard\Digital Imaging\Album\Help\ C:\Program Files\Hewlett-Packard\Digital Imaging\Album\Templates\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\common\css\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\common\htc\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\common\img\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\common\js\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\director\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\director\css\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\director\dso\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\director\img\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\director\js\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\director\loc\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\instantshare\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\instantshare\css\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\instantshare\img\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\instantshare\js\ C:\Program Files\Hewlett-Packard\Digital Imaging\bbfe\instantshare\loc\ C:\Program Files\Hewlett-Packard\Digital Imaging\bin\ C:\Program Files\Hewlett-Packard\Digital Imaging\Data\ C:\Program Files\Hewlett-Packard\Digital Imaging\Data\bmp\ C:\Program Files\Hewlett-Packard\Digital Imaging\Diagnostics\ C:\Program Files\Hewlett-Packard\Digital Imaging\Help\ C:\Program Files\Hewlett-Packard\Digital Imaging\hp deskjet 5100 series\data\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\5100\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\5100\fra\data\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\chrome\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\components\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\defaults\pref\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\res\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\res\builtin\ C:\Program Files\Hewlett-Packard\hp deskjet assistant\bin\res\fonts\ C:\Program Files\Hewlett-Packard\hp print screen utility\ C:\Program Files\Hewlett-Packard\hp print screen utility\UnInstall\ C:\Program Files\Hewlett-Packard\HP Software Update\ C:\Program Files\Hewlett-Packard\hpz\glue\ C:\Program Files\Hewlett-Packard\hpz\glue\fra\drivers\win2k_xp\ C:\Program Files\Hewlett-Packard\hpz\glue\util\ C:\Program Files\Hewlett-Packard\hpz\glue\util\common\ C:\Program Files\Hewlett-Packard\hpz\readme\ C:\Program Files\Hewlett-Packard\Memories Disc\ C:\Program Files\Hewlett-Packard\Memories Disc\audio\ C:\Program Files\Hewlett-Packard\Memories Disc\coregen\ C:\Program Files\Hewlett-Packard\Memories Disc\graphics\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\BROWSE\JS\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\BROWSE\STYLE\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\GRAPHICS\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\HTML\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\JS\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\SHOW\JS\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\SHOW\STYLE\ C:\Program Files\Hewlett-Packard\Memories Disc\pcgen\VIEW\STYLE\ C:\Program Files\Hewlett-Packard\Memories Disc\prgen\ C:\Program Files\Hewlett-Packard\Memories Disc\sdkgen\ C:\Program Files\Hewlett-Packard\Memories Disc\xslt\ C:\Program Files\Hewlett-Packard\webreg\bin\ C:\Program Files\Hewlett-Packard\webreg\Help\ C:\Program Files\HP\hpcoretech\ C:\Program Files\HP\hpcoretech\comp\ C:\Program Files\HP\hpcoretech\comp\content\ C:\Program Files\HP\hpcoretech\comp\Hewlett-Packard\deskjet5100\MY3A74P77T7A\data\ C:\Program Files\HP\hpcoretech\comp\xmlreg\ C:\Program Files\HP\hpcoretech\data\ C:\Program Files\HP\hpcoretech\data\xmlreg\ C:\Program Files\HP\hpcoretech\soln\ C:\Program Files\HP\hpcoretech\soln\content\ C:\Program Files\HP\hpcoretech\soln\xmlreg\ C:\Program Files\IconCool Software\MP3 WAV Studio\ C:\Program Files\Illustrate\dBpowerAMP\ C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\ C:\Program Files\InstallShield Installation Information\{1E2F8AE3-3437-44E6-BB75-E95751D6B83F}\ C:\Program Files\InstallShield Installation Information\{20D4A895-748C-4D88-871C-FDB1695B0169}\ C:\Program Files\InstallShield Installation Information\{2F11C0D0-39F1-4E65-A207-8AFA1480960F}\ C:\Program Files\InstallShield Installation Information\{36A9D3F8-3FCF-4FBA-A8AD-3C1CE56C8AF4}\ C:\Program Files\InstallShield Installation Information\{36A9D3F8-3FCF-4FBA-A8AD-3C1CE56C8AF4}\Devices\PSA235\Firmware\ C:\Program Files\InstallShield Installation Information\{36A9D3F8-3FCF-4FBA-A8AD-3C1CE56C8AF4}\Devices\PSA235\Font\ C:\Program Files\InstallShield Installation Information\{36A9D3F8-3FCF-4FBA-A8AD-3C1CE56C8AF4}\Devices\PSA235\Icons\ C:\Program Files\InstallShield Installation Information\{36A9D3F8-3FCF-4FBA-A8AD-3C1CE56C8AF4}\Devices\PSA235\Snippets\ C:\Program Files\InstallShield Installation Information\{3D30AB17-69E4-4F0F-9CF8-BED11CF8716F}\ C:\Program Files\InstallShield Installation Information\{43801800-CFEE-11D2-A41B-006097B55AD3}\ C:\Program Files\InstallShield Installation Information\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}\ C:\Program Files\InstallShield Installation Information\{9497EBAA-87AD-41E6-8ED6-E1E52995A76C}\ C:\Program Files\InstallShield Installation Information\{993960EE-CA4D-443F-8F88-E24260DD5FD2}\ C:\Program Files\InstallShield Installation Information\{9A3EABC0-CA06-11D4-BF77-00104B130C19}\ C:\Program Files\InstallShield Installation Information\{9A62C42C-FDB3-4BCC-A41A-89FA813250E3}\ C:\Program Files\InstallShield Installation Information\{9B94BE6F-7CA3-4C40-A266-62667FF746CC}\ C:\Program Files\InstallShield Installation Information\{A16E2D86-7D92-48F4-9649-6029C96D4D8F}\ C:\Program Files\InstallShield Installation Information\{C3ABE126-2BB2-4246-BFE1-6797679B3579}\ C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\ C:\Program Files\InstallShield Installation Information\{F8C6BABF-0837-4EA0-AD6C-8E5A392A7538}\ C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\ C:\Program Files\InstallShield Installation Information\{FC1C2427-5954-451C-9ED8-A92D48ED7E07}\ C:\Program Files\Internet Explorer\ C:\Program Files\Internet Explorer\Connection Wizard\ C:\Program Files\Internet Explorer\fr-fr\ C:\Program Files\Internet Explorer\MUI\0409\ C:\Program Files\Internet Explorer\PLUGINS\ C:\Program Files\Internet Explorer\SIGNUP\ C:\Program Files\Internet Explorer\_temp\ C:\Program Files\Internet Explorer\_temp\log\ C:\Program Files\Java\jre1.5.0_05\ C:\Program Files\Java\jre1.5.0_05\bin\ C:\Program Files\Java\jre1.5.0_05\bin\client\ C:\Program Files\Java\jre1.5.0_05\lib\ C:\Program Files\Java\jre1.5.0_05\lib\cmm\ C:\Program Files\Java\jre1.5.0_05\lib\ext\ C:\Program Files\Java\jre1.5.0_05\lib\fonts\ C:\Program Files\Java\jre1.5.0_05\lib\i386\ C:\Program Files\Java\jre1.5.0_05\lib\im\ C:\Program Files\Java\jre1.5.0_05\lib\images\cursors\ C:\Program Files\Java\jre1.5.0_05\lib\javaws\ C:\Program Files\Java\jre1.5.0_05\lib\management\ C:\Program Files\Java\jre1.5.0_05\lib\security\ C:\Program Files\Java\jre1.5.0_05\lib\zi\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Africa\ C:\Program Files\Java\jre1.5.0_05\lib\zi\America\ C:\Program Files\Java\jre1.5.0_05\lib\zi\America\Argentina\ C:\Program Files\Java\jre1.5.0_05\lib\zi\America\Indiana\ C:\Program Files\Java\jre1.5.0_05\lib\zi\America\Kentucky\ C:\Program Files\Java\jre1.5.0_05\lib\zi\America\North_Dakota\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Antarctica\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Asia\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Atlantic\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Australia\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Etc\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Europe\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Indian\ C:\Program Files\Java\jre1.5.0_05\lib\zi\Pacific\ C:\Program Files\K-Lite Codec Pack\ C:\Program Files\K-Lite Codec Pack\gspot\ C:\Program Files\K-Lite Codec Pack\lame\ C:\Program Files\K-Lite Codec Pack\Media Player Classic\ C:\Program Files\Lavalys\EVEREST Home Edition\ C:\Program Files\Lavalys\EVEREST Home Edition\Language\ C:\Program Files\LG Electronics\LG USB Modem Driver\ C:\Program Files\LG PC Suite 2\ C:\Program Files\LG PC Suite 2\BackUp Tool\ C:\Program Files\LG PC Suite 2\Common\ C:\Program Files\LG PC Suite 2\Driver\ C:\Program Files\LG PC Suite 2\Help\ C:\Program Files\LG PC Suite 2\Image Editor\ C:\Program Files\LG PC Suite 2\Internet Kit\ C:\Program Files\LG PC Suite 2\My DJ\ C:\Program Files\LG PC Suite 2\PC Sync\ C:\Program Files\LG PC Suite 2\Phone Manager\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\deco\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\face\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\hair\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\pants\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\scene\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU380\shirts\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\deco\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\face\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\hair\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\pants\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\scene\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\KU450\shirts\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\deco\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\face\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\hair\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\pants\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\scene\ C:\Program Files\LG PC Suite 2\Phone Manager\avatar\L600V\shirts\ C:\Program Files\LG PC Suite 2\Phone Manager\dll\ C:\Program Files\LG PC Suite 2\Phone Manager\DX9\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia\ani\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia\picture\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia\preani\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia\presound\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia\sound\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia_U900\ani\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia_U900\picture\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia_U900\preani\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia_U900\presound\ C:\Program Files\LG PC Suite 2\Phone Manager\emsmedia_U900\sound\ C:\Program Files\LG PC Suite 2\Phone Manager\Resource\ C:\Program Files\ma-config.com\ C:\Program Files\ma-config.com\Drivers\ C:\Program Files\ma-config.com\Langues\ C:\Program Files\Malwarebytes' Anti-Malware\ C:\Program Files\Malwarebytes' Anti-Malware\Languages\ C:\Program Files\Messenger\ C:\Program Files\Microsoft LifeCam\ C:\Program Files\Microsoft LifeCam\1036\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect01\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect02\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect03\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect04\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect05\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect06\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect07\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect08\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect09\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect10\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect11\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect12\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect13\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect14\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect15\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect16\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect17\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect18\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect20\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect21\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect22\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect23\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect24\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect25\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect26\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect27\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect28\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect29\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect30\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect31\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect32\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect33\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect34\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect35\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect36\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect37\ C:\Program Files\Microsoft LifeCam\Components\VisualEffects\Effect38\ C:\Program Files\Microsoft LifeCam\Driver32\NX6000\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1028\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1031\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1032\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1033\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1034\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1036\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1040\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1041\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1042\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\1046\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\2052\ C:\Program Files\Microsoft LifeCam\Driver32\VX1000\2070\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1028\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1031\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1032\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1033\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1034\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1036\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1040\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1041\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1042\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\1046\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\2052\ C:\Program Files\Microsoft LifeCam\Driver32\VX3000\2070\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1028\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1031\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1032\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1033\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1034\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1036\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1040\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1041\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1042\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\1046\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\2052\ C:\Program Files\Microsoft LifeCam\Driver32\VX6000\2070\ C:\Program Files\Microsoft Office\CLIPART\PUB60COR\ C:\Program Files\Microsoft Office\CLIPART\Publisher\Backgrounds\ C:\Program Files\Microsoft Office\MEDIA\CAGCAT10\ C:\Program Files\Microsoft Office\MEDIA\CAGCAT10\1036\ C:\Program Files\Microsoft Office\MEDIA\OFFICE11\ C:\Program Files\Microsoft Office\MEDIA\OFFICE11\1036\ C:\Program Files\Microsoft Office\MEDIA\OFFICE11\AUTOSHAP\ C:\Program Files\Microsoft Office\MEDIA\OFFICE11\BULLETS\ C:\Program Files\Microsoft Office\MEDIA\OFFICE11\LINES\ C:\Program Files\Microsoft Office\OFFICE11\ C:\Program Files\Microsoft Office\OFFICE11\1025\ C:\Program Files\Microsoft Office\OFFICE11\1031\ C:\Program Files\Microsoft Office\OFFICE11\1033\ C:\Program Files\Microsoft Office\OFFICE11\1033\BOTSTYLE\ C:\Program Files\Microsoft Office\OFFICE11\1036\ C:\Program Files\Microsoft Office\OFFICE11\1036\011\ C:\Program Files\Microsoft Office\OFFICE11\1036\BOTSTYLE\ C:\Program Files\Microsoft Office\OFFICE11\1036\DataServices\ C:\Program Files\Microsoft Office\OFFICE11\1036\PUBBRD\ C:\Program Files\Microsoft Office\OFFICE11\1036\PUBFTSCM\ C:\Program Files\Microsoft Office\OFFICE11\1036\PUBSPAPR\ C:\Program Files\Microsoft Office\OFFICE11\1036\PUBWIZ\ C:\Program Files\Microsoft Office\OFFICE11\1043\ C:\Program Files\Microsoft Office\OFFICE11\3082\ C:\Program Files\Microsoft Office\OFFICE11\AccessWeb\ C:\Program Files\Microsoft Office\OFFICE11\ADDINS\ C:\Program Files\Microsoft Office\OFFICE11\Bibliothèque\ C:\Program Files\Microsoft Office\OFFICE11\Bibliothèque\Analyse\ C:\Program Files\Microsoft Office\OFFICE11\Bibliothèque\SOLVER\ C:\Program Files\Microsoft Office\OFFICE11\BITMAPS\DBWIZ\ C:\Program Files\Microsoft Office\OFFICE11\BITMAPS\STYLES\ C:\Program Files\Microsoft Office\OFFICE11\BORDERS\ C:\Program Files\Microsoft Office\OFFICE11\CONVERT\ C:\Program Files\Microsoft Office\OFFICE11\CONVERT\1036\ C:\Program Files\Microsoft Office\OFFICE11\FORMS\1036\ C:\Program Files\Microsoft Office\OFFICE11\HTML\ C:\Program Files\Microsoft Office\OFFICE11\HTML\XMLLINKS\ C:\Program Files\Microsoft Office\OFFICE11\HTML\XMLLINKS\1036\ C:\Program Files\Microsoft Office\OFFICE11\INFFORMS\1036\ C:\Program Files\Microsoft Office\OFFICE11\MACROS\ C:\Program Files\Microsoft Office\OFFICE11\MEDIA\ C:\Program Files\Microsoft Office\OFFICE11\Migration\ C:\Program Files\Microsoft Office\OFFICE11\QUERIES\ C:\Program Files\Microsoft Office\OFFICE11\SAMPLES\ C:\Program Files\Microsoft Office\OFFICE11\SAMPLES\INFOPATH\ C:\Program Files\Microsoft Office\OFFICE11\VS Runtime\ C:\Program Files\Microsoft Office\OFFICE11\VS Runtime\1036\ C:\Program Files\Microsoft Office\OFFICE11\VS Runtime\SCHEMAS\HTML\ C:\Program Files\Microsoft Office\OFFICE11\VS Runtime\SCHEMAS\XML\ C:\Program Files\Microsoft Office\OFFICE11\XLATORS\ C:\Program Files\Microsoft Office\Stationery\1036\ C:\Program Files\Microsoft Office\Templates\1036\ C:\Program Files\Microsoft Office\Templates\1036\FAX\ C:\Program Files\Microsoft Office\Templates\3084\ C:\Program Files\Microsoft Office\Templates\MseNewFileItems\ C:\Program Files\Microsoft Office\Templates\Presentation Designs\ C:\Program Files\Microsoft Picture It! PhotoPub\ C:\Program Files\Microsoft Picture It! PhotoPub\1036\ C:\Program Files\Microsoft Picture It! PhotoPub\DswMedia\anim\ C:\Program Files\Microsoft Picture It! PhotoPub\DswMedia\Shared\Code\ C:\Program Files\Microsoft Picture It! PhotoPub\DswMedia\Shared\Media\ C:\Program Files\Microsoft Picture It! PhotoPub\My Web Pages\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\paint\brushes\creative\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\paint\brushes\distort\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\paint\brushes\rubber\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\paint\Shapes\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\paint\textures\ C:\Program Files\Microsoft Picture It! PhotoPub\PiFiles\Warps\ C:\Program Files\Microsoft Picture It! PhotoPub\PIP\PIP2001\ C:\Program Files\Microsoft Picture It! PhotoPub\wkslnchr\ C:\Program Files\Microsoft Visual Studio\COMMON\IDE\IDE98\ C:\Program Files\Microsoft Works\ C:\Program Files\Microsoft Works\1033\ C:\Program Files\Microsoft.NET\Primary Interop Assemblies\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\BoxPacker\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Categories\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\CodeBreaker\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\CompassPoint\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Dictionary\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Domino\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Images\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Images\Bars\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Images\Hexagons\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\MazeRunner\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\MissingObject\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\NumberBalance\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\PyramidSum\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\RouteFinder\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\ShapeMatch\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\ShapeShifter\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Skins\FR\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Soroban\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Soroban\BigAbacus\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\Sounds\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\SplitWords\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\WordLadder\ C:\Program Files\Mindscape\Entraîneur Cérébral 2\WordWise\ C:\Program Files\Movie Maker\ C:\Program Files\Movie Maker\MUI\040c\ C:\Program Files\Movie Maker\shared\ C:\Program Files\Movie Maker\shared\profiles\ C:\Program Files\Mozilla Firefox\ C:\Program Files\Mozilla Firefox\chrome\overlayinfo\browser\content\ C:\Program Files\Mozilla Firefox\components\ C:\Program Files\Mozilla Firefox\extensions\ C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\ C:\Program Files\Mozilla Firefox\plugins\ C:\Program Files\MSN\ C:\Program Files\MSN\MSNCoreFiles\ C:\Program Files\MSN\MSNCoreFiles\1036\ C:\Program Files\MSN\MSNCoreFiles\install\ C:\Program Files\MSN\MSNCoreFiles\install\msn9components\ C:\Program Files\MSN\MSNCoreFiles\Markets\20\ C:\Program Files\MSN\MSNCoreFiles\Markets\36\ C:\Program Files\MSN\MSNCoreFiles\Markets\40\ C:\Program Files\MSN\MSNCoreFiles\Markets\71\ C:\Program Files\MSN\MSNCoreFiles\Setup\ C:\Program Files\MSN Gaming Zone\Windows\ C:\Program Files\MSN Messenger\ C:\Program Files\MSN Messenger\Device Manager\ C:\Program Files\MSN Messenger\Device Manager\Loc\10\ C:\Program Files\MSN Messenger\Device Manager\Loc\1028\ C:\Program Files\MSN Messenger\Device Manager\Loc\1046\ C:\Program Files\MSN Messenger\Device Manager\Loc\11\ C:\Program Files\MSN Messenger\Device Manager\Loc\12\ C:\Program Files\MSN Messenger\Device Manager\Loc\16\ C:\Program Files\MSN Messenger\Device Manager\Loc\17\ C:\Program Files\MSN Messenger\Device Manager\Loc\18\ C:\Program Files\MSN Messenger\Device Manager\Loc\19\ C:\Program Files\MSN Messenger\Device Manager\Loc\20\ C:\Program Files\MSN Messenger\Device Manager\Loc\22\ C:\Program Files\MSN Messenger\Device Manager\Loc\25\ C:\Program Files\MSN Messenger\Device Manager\Loc\29\ C:\Program Files\MSN Messenger\Device Manager\Loc\31\ C:\Program Files\MSN Messenger\Device Manager\Loc\4\ C:\Program Files\MSN Messenger\Device Manager\Loc\6\ C:\Program Files\MSN Messenger\Device Manager\Loc\7\ C:\Program Files\MSN Messenger\Device Manager\Loc\8\ C:\Program Files\MSN Messenger\Device Manager\Loc\9\ C:\Program Files\NetMeeting\ C:\Program Files\Outlook Express\ C:\Program Files\Philips\common\ C:\Program Files\Philips\Philips Device Manager\bin\ C:\Program Files\Philips\Philips Device Manager\bin\Devices\PSA235\Firmware\ C:\Program Files\Philips\Philips Device Manager\bin\Devices\PSA235\Font\ C:\Program Files\Philips\Philips Device Manager\bin\Devices\PSA235\Icons\ C:\Program Files\Philips\Philips Device Manager\bin\Devices\PSA235\Snippets\ C:\Program Files\Philips\Philips Device Manager\Help\ C:\Program Files\Philips\Philips Device Manager\Icon\ C:\Program Files\PIXELA\ImageMixer\ C:\Program Files\PIXELA\ImageMixer\Help\VCD\ C:\Program Files\PIXELA\ImageMixer\Help\VCD\images\ C:\Program Files\PIXELA\ImageMixer\Help\VCD\img\ C:\Program Files\PIXELA\ImageMixer\Resources\Button\ C:\Program Files\PIXELA\ImageMixer\Resources\NxtButton\ C:\Program Files\PIXELA\ImageMixer\Resources\Opening\ C:\Program Files\PIXELA\ImageMixer\Resources\Opening\vcd\ C:\Program Files\PIXELA\ImageMixer\Resources\PreButton\ C:\Program Files\PIXELA\ImageMixer\Resources\SoundSam\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_business_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_business_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_business_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Cake_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Cake_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Cake_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Celeb_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Celeb_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Celeb_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_dandelion_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_dandelion_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_dandelion_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_education_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_education_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_education_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_fantasy_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_fantasy_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_fantasy_VCD\Material_Item\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_fantasy_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Town_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Town_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Town_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Travel_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Travel_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Travel_VCD\Material_Item\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_Travel_VCD\ThemeResources\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_water_VCD\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_water_VCD\Material_Button\ C:\Program Files\PIXELA\ImageMixer\Resources\Style\IMx_water_VCD\ThemeResources\ C:\Program Files\QuickTime\ C:\Program Files\QuickTime\PictureViewer.Resources\ C:\Program Files\QuickTime\PictureViewer.Resources\da.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\de.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\en.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\es.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\fi.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\fr.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\it.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\ja.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\ko.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\nb.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\nl.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\pl.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\ru.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\sv.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\PictureViewer.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\Plugins\ C:\Program Files\QuickTime\PropertyPanels\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\da.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\de.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\en.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\es.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\fi.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\fr.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\it.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ja.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ko.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\nb.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\nl.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\pl.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ru.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\sv.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\da.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\de.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\en.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\es.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\fi.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\fr.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\it.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ja.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ko.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\nb.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\nl.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\pl.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\ru.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\sv.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\CoreVideo.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeH264.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeImage.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVR.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeVRAuthoring.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\da.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\de.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\en.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\es.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\fi.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\fr.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\it.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ja.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ko.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\nb.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\nl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pl.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\ru.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\sv.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QTSystem\QuickTimeWebHelper.Resources\zh_TW.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\da.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\de.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\en.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\es.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\fi.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\fr.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\it.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\ja.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\ko.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\nb.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\nl.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\pl.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\pt_PT.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\ru.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\sv.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\zh_CN.lproj\ C:\Program Files\QuickTime\QuickTimePlayer.Resources\zh_TW.lproj\ C:\Program Files\Realtek AC97\ C:\Program Files\RegCleaner\ C:\Program Files\RegCleaner\Backups\ C:\Program Files\RegCleaner\Languages\ C:\Program Files\Services en ligne\ C:\Program Files\Skype\Phone\ C:\Program Files\Skype\Plugin Manager\ C:\Program Files\Skype\Plugin Manager\MLS\ C:\Program Files\Skype\Toolbars\Internet Explorer\ C:\Program Files\Skype\Toolbars\Shared\ C:\Program Files\SoftwarePassport\ C:\Program Files\Sony Corporation\DI Portal\AppInfo\ C:\Program Files\Sony Corporation\DI Portal\MenuSwf\ C:\Program Files\Sony Corporation\Picture Package\MemMixImageTool\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\DefaultBGMDir\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Filter\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoSlide\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoSlide\Contents\00_cmn\STYLES\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoSlide\Contents\00_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoSlide\Contents\00_nav\images_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoSlide\Contents\Slide_topics\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoSlide\Contents\Slide_topics\images_slide\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoVideo\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoVideo\Contents\00_cmn\STYLES\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoVideo\Contents\00_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoVideo\Contents\00_nav\images_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoVideo\Contents\Video_topics\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\AutoVideo\Contents\Video_topics\images_video\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\CDBackUp\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\CDBackUp\Contents\00_cmn\STYLES\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\CDBackUp\Contents\00_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\CDBackUp\Contents\00_nav\images_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\CDBackUp\Contents\CDBR_topics\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\help\CDBackUp\Contents\CDBR_topics\images_cdr\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\Events\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\help\html\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\help\html\Contents\00_cmn\STYLES\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\help\html\Contents\00_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\help\html\Contents\00_nav\images_nav\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\help\html\Contents\VIW_topics\ C:\Program Files\Sony Corporation\Picture Package\Picture Package Viewer\help\html\Contents\VIW_topics\images_viw\ C:\Program Files\Sony Corporation\Picture Package\USBStrTool\ C:\Program Files\Spybot - Search & Destroy\ C:\Program Files\Spybot - Search & Destroy\Dummies\ C:\Program Files\Spybot - Search & Destroy\Help\ C:\Program Files\Spybot - Search & Destroy\Includes\ C:\Program Files\Spybot - Search & Destroy\Languages\ C:\Program Files\Spybot - Search & Destroy\Plugins\ C:\Program Files\Spybot - Search & Destroy\Skins\ C:\Program Files\Spybot - Search & Destroy\Updates\ C:\Program Files\Sunbelt Software\Personal Firewall\ C:\Program Files\Sunbelt Software\Personal Firewall\Config\ C:\Program Files\Sunbelt Software\Personal Firewall\Config\IDSRules\ C:\Program Files\Sunbelt Software\Personal Firewall\DbgHelp\ C:\Program Files\Sunbelt Software\Personal Firewall\logs\ C:\Program Files\Sunbelt Software\Personal Firewall\Trans\ C:\Program Files\Symantec\ C:\Program Files\The Playa\ C:\Program Files\TomTom HOME\ C:\Program Files\Ubisoft\369\CSI-Miami\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_1\Art\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_1\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_1\Data\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_1\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_2\Art\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_2\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_2\Data\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_2\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_3\Art\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_3\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_3\Data\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_3\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_4\Art\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_4\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_4\Data\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_4\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_5\Art\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_5\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_5\Data\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_5\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_6\Art\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_6\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_6\Data\ C:\Program Files\Ubisoft\369\CSI-Miami\Case_6\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\CSI-Miami\art\ C:\Program Files\Ubisoft\369\CSI-Miami\CSI-Miami\Code\ C:\Program Files\Ubisoft\369\CSI-Miami\CSI-Miami\Sound\ C:\Program Files\Ubisoft\369\CSI-Miami\Framework\CrimeFramework\ C:\Program Files\Ubisoft\369\CSI-Miami\Framework\Library\ C:\Program Files\Ubisoft\369\CSI-Miami\Support\Detection\ C:\Program Files\Ubisoft\369\CSI-Miami\Support\Manual\ C:\Program Files\Ubisoft\369\CSI-Miami\Support\register\ C:\Program Files\Ubisoft\369\CSI-Miami\Support\register\register\ C:\Program Files\Ubisoft\369\CSI-Miami\Support\register\register\dll\ C:\Program Files\Ubisoft\369\CSI-Miami\Support\Updates\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Licensed\Bink\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Licensed\buddyAPI 3.51\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Licensed\Media Lab\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Licensed\ResolutionXtra\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Accessibility\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Devices\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Flash Asset\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Media Support\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Mix\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Net Support\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Macromedia\Qt\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Shareware\ C:\Program Files\Ubisoft\369\CSI-Miami\xtras\Shareware\FileXtra4\ C:\Program Files\Ubisoft\Register\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Language_French\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_AnimsAndChores\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Audio\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Meshes\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Miscellaneous\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Properties\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Textures_A\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Textures_B\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Main\CSI4_Voice\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Optional_Install\CSI4_Movies_A\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Pack\CSI4_Optional_Install\CSI4_Movies_B\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Register\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Resources\de\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Resources\es\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Resources\fr\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Resources\it\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Resources\uk\ C:\Program Files\Ubisoft\Telltale Games\Les Experts-Crime Scene Investigation-Morts programmées\Resources\us\ C:\Program Files\UltimateZip\ C:\Program Files\UltimateZip\icons\ C:\Program Files\UltimateZip\sfx\ C:\Program Files\UltimateZip\skins\ C:\Program Files\VIA\RAID\ C:\Program Files\VIA\Setup\ C:\Program Files\VIA\Setup\RaidTool\ C:\Program Files\VIA\Setup\SATA\ C:\Program Files\VIA\Setup\viamach\ C:\Program Files\VIA\Setup\viaraid\ C:\Program Files\VIA\Setup\Vinyl\ C:\Program Files\VIA\VIAudioi\SBADeck\ C:\Program Files\Webteh\BSPlayer\doc\ C:\Program Files\Winamp\ C:\Program Files\Winamp\AOD\ C:\Program Files\Winamp\Lang\ C:\Program Files\Winamp\Plugins\ C:\Program Files\Winamp\Plugins\avs\ C:\Program Files\Winamp\Plugins\avs\Community Picks\ C:\Program Files\Winamp\Plugins\avs\newpicks\ C:\Program Files\Winamp\Plugins\avs\Winamp 5 Picks\ C:\Program Files\Winamp\Plugins\DSP_SPS\ C:\Program Files\Winamp\Plugins\freeform\wacs\freetype\ C:\Program Files\Winamp\Plugins\freeform\xml\ C:\Program Files\Winamp\Plugins\freeform\xml\about\ C:\Program Files\Winamp\Plugins\freeform\xml\checkbox\ C:\Program Files\Winamp\Plugins\freeform\xml\combobox\ C:\Program Files\Winamp\Plugins\freeform\xml\dropdownlist\ C:\Program Files\Winamp\Plugins\freeform\xml\historyeditbox\ C:\Program Files\Winamp\Plugins\freeform\xml\menubutton\ C:\Program Files\Winamp\Plugins\freeform\xml\msgbox\ C:\Program Files\Winamp\Plugins\freeform\xml\pathpicker\ C:\Program Files\Winamp\Plugins\freeform\xml\popupmenu\ C:\Program Files\Winamp\Plugins\freeform\xml\statusbar\ C:\Program Files\Winamp\Plugins\freeform\xml\tabsheet\ C:\Program Files\Winamp\Plugins\freeform\xml\titlebox\ C:\Program Files\Winamp\Plugins\freeform\xml\tooltips\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\fonts\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\garbage\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\menu\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\Scripts\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\window\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\groups\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\browser\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\button\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\editbox\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\slider\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\standardframe\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\text\ C:\Program Files\Winamp\Plugins\freeform\xml\wasabi\xml\xui\titlebar\ C:\Program Files\Winamp\Plugins\freeform\xml\winamp\cover\ C:\Program Files\Winamp\Plugins\Gracenote\ C:\Program Files\Winamp\Plugins\Milkdrop2\data\ C:\Program Files\Winamp\Plugins\Milkdrop2\docs\ C:\Program Files\Winamp\Plugins\Milkdrop2\presets\ C:\Program Files\Winamp\Plugins\Milkdrop2\textures\ C:\Program Files\Winamp\Plugins\ml\ C:\Program Files\Winamp\Skins\Bento\ C:\Program Files\Winamp\Skins\Bento\scripts\ C:\Program Files\Winamp\Skins\Bento\window\ C:\Program Files\Winamp\Skins\Bento\xml\ C:\Program Files\Winamp\Skins\Big Bento\ C:\Program Files\Winamp\Skins\Big Bento\about\ C:\Program Files\Winamp\Skins\Big Bento\about\nibbles\ C:\Program Files\Winamp\Skins\Big Bento\scripts\ C:\Program Files\Winamp\Skins\Big Bento\window\ C:\Program Files\Winamp\Skins\Big Bento\xml\ C:\Program Files\Winamp\Skins\Winamp Modern\ C:\Program Files\Winamp\Skins\Winamp Modern\about\ C:\Program Files\Winamp\Skins\Winamp Modern\notifier\ C:\Program Files\Winamp\Skins\Winamp Modern\player\ C:\Program Files\Winamp\Skins\Winamp Modern\scripts\ C:\Program Files\Winamp\Skins\Winamp Modern\shade\ C:\Program Files\Winamp\Skins\Winamp Modern\standardframe\ C:\Program Files\Winamp\Skins\Winamp Modern\titlebar\ C:\Program Files\Winamp\Skins\Winamp Modern\window\ C:\Program Files\Winamp\Skins\Winamp Modern\xml\ C:\Program Files\Winamp\System\ C:\Program Files\Windows Media Player\ C:\Program Files\Windows Media Player\Skins\ C:\Program Files\Windows NT\ C:\Program Files\Windows NT\Accessoires\ C:\Program Files\Windows NT\Pinball\ C:\Program Files\WinRAR\ C:\Program Files\WinRAR\Formats\ C:\Program Files\WinZip\ C:\Program Files\Zylom Games\Chuzzle Deluxe\cached\hwmode\Textures\ C:\Program Files\Zylom Games\Chuzzle Deluxe\cached\hwmode\Textures\bonus\ C:\Program Files\Zylom Games\Chuzzle Deluxe\cached\hwmode\Textures\zens\ C:\Program Files\Zylom Games\Chuzzle Deluxe\HardwareTestResults\ C:\Program Files\Zylom Games\Chuzzle Deluxe\Profiles\ C:\Program Files\Zylom Games\Chuzzle Deluxe\Profiles\Ludi\ C:\Program Files\Zylom Games\Dream Chronicles Deluxe\ C:\Program Files\Zylom Games\Dream Chronicles Deluxe\assets\ C:\Program Files\Zylom Games\Dream Chronicles Deluxe\assets\misc\ C:\Program Files\Zylom Games\Dream Chronicles Deluxe\assets\states\credits\ C:\Program Files\Zylom Games\Dream Chronicles Deluxe\assets\states\hiscores\ C:\Program Files\Zylom Games\Dream Chronicles Deluxe\assets\states\summary\ C:\Program Files\Zylom Games\Hexalot Deluxe\ C:\Program Files\Zylom Games\Hexalot Deluxe\images\ C:\Program Files\Zylom Games\Hexalot Deluxe\music\ C:\Program Files\Zylom Games\Hexalot Deluxe\saved\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\AudioBoy\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\AudioBoy\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\AudioBoy\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\AudioBoy\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businessman\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businessman\avatars\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businessman\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businessman\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businessman\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businesswoman\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businesswoman\avatars\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businesswoman\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businesswoman\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Businesswoman\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManGreen\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManGreen\avatars\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManGreen\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManGreen\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManGreen\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManRed\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManRed\avatars\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManRed\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManRed\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\FatManRed\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Italian\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Italian\avatars\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Italian\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Italian\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\Italian\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\objects\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman3\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman3\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman3\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\SimpleWoman3\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\WomanWithDog\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\WomanWithDog\avatars\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\WomanWithDog\coffee\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\WomanWithDog\emotions\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\Clients\WomanWithDog\read\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\comics\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\cursor\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fonts\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fx\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fx\dish\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fx\IBar\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fx\Map\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fx\money\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\fx\resurrection\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\help\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep1\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep1\idle\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep1\objects\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep2\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep2\idle\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep3\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep3\idle\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep4\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Ep4\idle\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Maid\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Maid\bedclothes\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Maid\clothe\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Maid\golf\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\Maid\leika\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\pianist\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\hero\pianist\royal_patch\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\interface\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\levels\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\map\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\additional\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\additional\fx\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\exit\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\LevelEnd\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\loading\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\upgrade\1\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\upgrade\2\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\upgrade\3\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\upgrade\4\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\upgrade\back\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\menu\vetka\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\ep2\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\ep3\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\ep4\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\ep4\flowers\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\epizod1\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\rooms\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\rooms\ep2\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\rooms\ep3\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\rooms\ep4\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\objects\rooms\fx\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\sounds\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\tips\ C:\Program Files\Zylom Games\Jane's Hotel Deluxe\data\wishes\ C:\Program Files\Zylom Games\Little Shop of Treasures Deluxe\ C:\RECYCLER\NPROTECT\ C:\RECYCLER\NPROTECT\00002794.cfg [0] Archive type: ZIP --> WPWIN.EXE [WARNING] The archive is encrypted [WARNING] The archive is encrypted C:\RECYCLER\S-1-5-21-1060284298-884357618-1801674531-1003\ C:\RECYCLER\S-1-5-21-1060284298-884357618-1801674531-1004\ C:\RECYCLER\S-1-5-21-1060284298-884357618-1801674531-500\ C:\System Volume Information\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP131\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP131\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP131\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP131\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP132\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP132\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP132\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP132\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP133\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP133\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP133\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP133\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP134\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP134\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP134\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP134\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP135\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP135\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP135\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP135\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP136\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP136\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP136\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP136\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP137\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP137\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP137\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP137\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP138\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP138\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP138\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP138\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP139\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP139\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP139\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP139\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP140\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP140\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP140\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP140\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP141\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP141\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP141\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP141\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP142\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP142\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP142\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP142\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP143\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP143\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP143\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP143\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP144\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP144\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP144\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP144\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP145\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP145\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP145\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP145\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP146\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP146\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP146\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP146\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP147\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP148\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP149\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP149\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP149\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP149\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP150\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP150\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP150\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP150\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP151\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP151\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP151\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP151\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP152\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP152\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP152\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP152\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP153\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP153\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP153\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP153\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP154\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP154\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP154\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP154\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP155\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP155\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP155\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP155\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP156\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP156\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP156\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP156\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP157\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP157\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP157\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP157\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP158\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP158\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP158\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP158\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP159\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP159\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP159\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP159\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP160\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP160\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP160\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP160\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP161\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP161\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP161\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP161\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP162\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP162\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP162\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP162\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP163\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP163\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP163\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP163\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP164\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP164\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP164\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP164\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP165\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP165\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP165\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP165\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP166\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP166\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP166\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP166\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP167\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP167\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP167\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP167\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP168\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP168\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP168\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP168\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP169\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP169\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP169\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP169\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP170\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP170\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP170\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP170\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP171\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP171\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP171\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP171\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP172\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP172\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP172\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP172\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP173\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP173\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP173\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP173\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP174\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP174\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP174\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP174\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP175\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP175\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP175\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP175\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP176\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP176\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP176\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP176\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP177\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP177\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP177\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP177\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP178\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP178\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP178\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP178\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP179\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP179\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP179\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP179\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP180\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP180\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP180\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP180\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP181\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP181\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP181\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP181\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP182\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP182\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP182\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP182\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP183\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP183\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP183\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP183\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP184\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP184\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP184\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP184\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP185\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP185\A0040767.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] The file was moved to '48f3bf08.qua'! C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP185\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP185\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP185\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP186\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP186\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP186\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP186\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP187\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP187\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP187\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP187\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP188\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP188\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP188\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP188\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP189\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP189\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP189\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP189\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP190\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP190\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP190\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP190\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP191\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP191\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP191\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP191\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP192\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP192\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP192\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP192\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP193\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP193\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP193\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP193\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP194\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP194\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP194\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP194\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP195\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP195\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP195\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP195\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP196\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP197\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP197\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP197\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP197\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP198\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP198\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP198\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP198\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP199\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP200\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP200\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP200\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP200\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP201\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP202\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP202\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP202\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP202\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP203\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP203\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP203\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP203\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP204\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP204\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP204\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP204\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP205\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP205\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP205\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP205\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP206\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP206\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP206\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP206\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP207\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP207\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP207\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP207\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP208\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP208\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP208\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP208\snapshot\Repository\FS\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP209\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP209\snapshot\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP209\snapshot\Repository\ C:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP209\snapshot\Repository\FS\ C:\temp\ C:\WINDOWS\ C:\WINDOWS\$hf_mig$\KB873333\ C:\WINDOWS\$hf_mig$\KB873333\SP2QFE\ C:\WINDOWS\$hf_mig$\KB873333\update\ C:\WINDOWS\$hf_mig$\KB873339\ C:\WINDOWS\$hf_mig$\KB873339\SP2QFE\ C:\WINDOWS\$hf_mig$\KB873339\update\ C:\WINDOWS\$hf_mig$\KB883939\ C:\WINDOWS\$hf_mig$\KB883939\SP2QFE\ C:\WINDOWS\$hf_mig$\KB883939\update\ C:\WINDOWS\$hf_mig$\KB885250\ C:\WINDOWS\$hf_mig$\KB885250\SP2QFE\ C:\WINDOWS\$hf_mig$\KB885250\update\ C:\WINDOWS\$hf_mig$\KB885835\ C:\WINDOWS\$hf_mig$\KB885835\SP2QFE\ C:\WINDOWS\$hf_mig$\KB885835\update\ C:\WINDOWS\$hf_mig$\KB885836\ C:\WINDOWS\$hf_mig$\KB885836\SP2QFE\ C:\WINDOWS\$hf_mig$\KB885836\update\ C:\WINDOWS\$hf_mig$\KB886185\ C:\WINDOWS\$hf_mig$\KB886185\SP2QFE\ C:\WINDOWS\$hf_mig$\KB886185\update\ C:\WINDOWS\$hf_mig$\KB887472\ C:\WINDOWS\$hf_mig$\KB887472\SP2QFE\ C:\WINDOWS\$hf_mig$\KB887472\update\ C:\WINDOWS\$hf_mig$\KB887742\ C:\WINDOWS\$hf_mig$\KB887742\SP2QFE\ C:\WINDOWS\$hf_mig$\KB887742\update\ C:\WINDOWS\$hf_mig$\KB888113\ C:\WINDOWS\$hf_mig$\KB888113\SP2QFE\ C:\WINDOWS\$hf_mig$\KB888113\update\ C:\WINDOWS\$hf_mig$\KB888302\ C:\WINDOWS\$hf_mig$\KB888302\SP2QFE\ C:\WINDOWS\$hf_mig$\KB888302\update\ C:\WINDOWS\$hf_mig$\KB890046\ C:\WINDOWS\$hf_mig$\KB890046\SP2QFE\ C:\WINDOWS\$hf_mig$\KB890046\update\ C:\WINDOWS\$hf_mig$\KB890175\ C:\WINDOWS\$hf_mig$\KB890175\SP2QFE\ C:\WINDOWS\$hf_mig$\KB890175\update\ C:\WINDOWS\$hf_mig$\KB890859\ C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ C:\WINDOWS\$hf_mig$\KB890859\update\ C:\WINDOWS\$hf_mig$\KB890923\ C:\WINDOWS\$hf_mig$\KB890923\SP2QFE\ C:\WINDOWS\$hf_mig$\KB890923\update\ C:\WINDOWS\$hf_mig$\KB891781\ C:\WINDOWS\$hf_mig$\KB891781\SP2QFE\ C:\WINDOWS\$hf_mig$\KB891781\update\ C:\WINDOWS\$hf_mig$\KB893066\ C:\WINDOWS\$hf_mig$\KB893066\SP2QFE\ C:\WINDOWS\$hf_mig$\KB893066\update\ C:\WINDOWS\$hf_mig$\KB893086\ C:\WINDOWS\$hf_mig$\KB893086\SP2QFE\ C:\WINDOWS\$hf_mig$\KB893086\update\ C:\WINDOWS\$hf_mig$\KB893756\ C:\WINDOWS\$hf_mig$\KB893756\SP2QFE\ C:\WINDOWS\$hf_mig$\KB893756\update\ C:\WINDOWS\$hf_mig$\KB894391\ C:\WINDOWS\$hf_mig$\KB894391\SP2QFE\ C:\WINDOWS\$hf_mig$\KB894391\update\ C:\WINDOWS\$hf_mig$\KB896358\ C:\WINDOWS\$hf_mig$\KB896358\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896358\update\ C:\WINDOWS\$hf_mig$\KB896422\ C:\WINDOWS\$hf_mig$\KB896422\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896422\update\ C:\WINDOWS\$hf_mig$\KB896423\ C:\WINDOWS\$hf_mig$\KB896423\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896423\update\ C:\WINDOWS\$hf_mig$\KB896424\ C:\WINDOWS\$hf_mig$\KB896424\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896424\update\ C:\WINDOWS\$hf_mig$\KB896428\ C:\WINDOWS\$hf_mig$\KB896428\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896428\update\ C:\WINDOWS\$hf_mig$\KB896688\ C:\WINDOWS\$hf_mig$\KB896688\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896688\update\ C:\WINDOWS\$hf_mig$\KB896727\ C:\WINDOWS\$hf_mig$\KB896727\SP2QFE\ C:\WINDOWS\$hf_mig$\KB896727\update\ C:\WINDOWS\$hf_mig$\KB898461\ C:\WINDOWS\$hf_mig$\KB898461\update\ C:\WINDOWS\$hf_mig$\KB899587\ C:\WINDOWS\$hf_mig$\KB899587\SP2QFE\ C:\WINDOWS\$hf_mig$\KB899587\update\ C:\WINDOWS\$hf_mig$\KB899588\ C:\WINDOWS\$hf_mig$\KB899588\SP2QFE\ C:\WINDOWS\$hf_mig$\KB899588\update\ C:\WINDOWS\$hf_mig$\KB899589\ C:\WINDOWS\$hf_mig$\KB899589\SP2QFE\ C:\WINDOWS\$hf_mig$\KB899589\update\ C:\WINDOWS\$hf_mig$\KB899591\ C:\WINDOWS\$hf_mig$\KB899591\SP2QFE\ C:\WINDOWS\$hf_mig$\KB899591\update\ C:\WINDOWS\$hf_mig$\KB900485\ C:\WINDOWS\$hf_mig$\KB900485\SP2QFE\ C:\WINDOWS\$hf_mig$\KB900485\update\ C:\WINDOWS\$hf_mig$\KB900725\ C:\WINDOWS\$hf_mig$\KB900725\SP2QFE\ C:\WINDOWS\$hf_mig$\KB900725\update\ C:\WINDOWS\$hf_mig$\KB901017\ C:\WINDOWS\$hf_mig$\KB901017\SP2QFE\ C:\WINDOWS\$hf_mig$\KB901017\update\ C:\WINDOWS\$hf_mig$\KB901214\ C:\WINDOWS\$hf_mig$\KB901214\SP2QFE\ C:\WINDOWS\$hf_mig$\KB901214\update\ C:\WINDOWS\$hf_mig$\KB902400\ C:\WINDOWS\$hf_mig$\KB902400\SP2QFE\ C:\WINDOWS\$hf_mig$\KB902400\update\ C:\WINDOWS\$hf_mig$\KB904706\ C:\WINDOWS\$hf_mig$\KB904706\SP2QFE\ C:\WINDOWS\$hf_mig$\KB904706\update\ C:\WINDOWS\$hf_mig$\KB905414\ C:\WINDOWS\$hf_mig$\KB905414\SP2QFE\ C:\WINDOWS\$hf_mig$\KB905414\update\ C:\WINDOWS\$hf_mig$\KB905749\ C:\WINDOWS\$hf_mig$\KB905749\SP2QFE\ C:\WINDOWS\$hf_mig$\KB905749\update\ C:\WINDOWS\$hf_mig$\KB905915\ C:\WINDOWS\$hf_mig$\KB905915\SP2QFE\ C:\WINDOWS\$hf_mig$\KB905915\update\ C:\WINDOWS\$hf_mig$\KB908519\ C:\WINDOWS\$hf_mig$\KB908519\SP2QFE\ C:\WINDOWS\$hf_mig$\KB908519\update\ C:\WINDOWS\$hf_mig$\KB908531\ C:\WINDOWS\$hf_mig$\KB908531\SP2QFE\ C:\WINDOWS\$hf_mig$\KB908531\update\ C:\WINDOWS\$hf_mig$\KB910437\ C:\WINDOWS\$hf_mig$\KB910437\SP2QFE\ C:\WINDOWS\$hf_mig$\KB910437\update\ C:\WINDOWS\$hf_mig$\KB911280\ C:\WINDOWS\$hf_mig$\KB911280\SP2QFE\ C:\WINDOWS\$hf_mig$\KB911280\update\ C:\WINDOWS\$hf_mig$\KB911562\ C:\WINDOWS\$hf_mig$\KB911562\SP2QFE\ C:\WINDOWS\$hf_mig$\KB911562\update\ C:\WINDOWS\$hf_mig$\KB911567\ C:\WINDOWS\$hf_mig$\KB911567\SP2QFE\ C:\WINDOWS\$hf_mig$\KB911567\update\ C:\WINDOWS\$hf_mig$\KB911927\ C:\WINDOWS\$hf_mig$\KB911927\SP2QFE\ C:\WINDOWS\$hf_mig$\KB911927\update\ C:\WINDOWS\$hf_mig$\KB912812\ C:\WINDOWS\$hf_mig$\KB912812\SP2QFE\ C:\WINDOWS\$hf_mig$\KB912812\update\ C:\WINDOWS\$hf_mig$\KB912919\ C:\WINDOWS\$hf_mig$\KB912919\SP2QFE\ C:\WINDOWS\$hf_mig$\KB912919\update\ C:\WINDOWS\$hf_mig$\KB913446\ C:\WINDOWS\$hf_mig$\KB913446\SP2QFE\ C:\WINDOWS\$hf_mig$\KB913446\update\ C:\WINDOWS\$hf_mig$\KB913580\ C:\WINDOWS\$hf_mig$\KB913580\SP2QFE\ C:\WINDOWS\$hf_mig$\KB913580\update\ C:\WINDOWS\$hf_mig$\KB914388\ C:\WINDOWS\$hf_mig$\KB914388\SP2QFE\ C:\WINDOWS\$hf_mig$\KB914388\update\ C:\WINDOWS\$hf_mig$\KB914389\ C:\WINDOWS\$hf_mig$\KB914389\SP2QFE\ C:\WINDOWS\$hf_mig$\KB914389\update\ C:\WINDOWS\$hf_mig$\KB916281\ C:\WINDOWS\$hf_mig$\KB916281\SP2QFE\ C:\WINDOWS\$hf_mig$\KB916281\update\ C:\WINDOWS\$hf_mig$\KB916595\ C:\WINDOWS\$hf_mig$\KB916595\SP2QFE\ C:\WINDOWS\$hf_mig$\KB916595\update\ C:\WINDOWS\$hf_mig$\KB917159\ C:\WINDOWS\$hf_mig$\KB917159\SP2QFE\ C:\WINDOWS\$hf_mig$\KB917159\update\ C:\WINDOWS\$hf_mig$\KB917344\ C:\WINDOWS\$hf_mig$\KB917344\SP2QFE\ C:\WINDOWS\$hf_mig$\KB917344\update\ C:\WINDOWS\$hf_mig$\KB917422\ C:\WINDOWS\$hf_mig$\KB917422\SP2QFE\ C:\WINDOWS\$hf_mig$\KB917422\update\ C:\WINDOWS\$hf_mig$\KB917953\ C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\ C:\WINDOWS\$hf_mig$\KB917953\update\ C:\WINDOWS\$hf_mig$\KB918118\ C:\WINDOWS\$hf_mig$\KB918118\SP2QFE\ C:\WINDOWS\$hf_mig$\KB918118\update\ C:\WINDOWS\$hf_mig$\KB918439\ C:\WINDOWS\$hf_mig$\KB918439\SP2QFE\ C:\WINDOWS\$hf_mig$\KB918439\update\ C:\WINDOWS\$hf_mig$\KB918899\ C:\WINDOWS\$hf_mig$\KB918899\SP2QFE\ C:\WINDOWS\$hf_mig$\KB918899\update\ C:\WINDOWS\$hf_mig$\KB919007\ C:\WINDOWS\$hf_mig$\KB919007\SP2QFE\ C:\WINDOWS\$hf_mig$\KB919007\update\ C:\WINDOWS\$hf_mig$\KB920213\ C:\WINDOWS\$hf_mig$\KB920213\SP2QFE\ C:\WINDOWS\$hf_mig$\KB920213\update\ C:\WINDOWS\$hf_mig$\KB920214\ C:\WINDOWS\$hf_mig$\KB920214\SP2QFE\ C:\WINDOWS\$hf_mig$\KB920214\update\ C:\WINDOWS\$hf_mig$\KB920670\ C:\WINDOWS\$hf_mig$\KB920670\SP2QFE\ C:\WINDOWS\$hf_mig$\KB920670\update\ C:\WINDOWS\$hf_mig$\KB920683\ C:\WINDOWS\$hf_mig$\KB920683\SP2QFE\ C:\WINDOWS\$hf_mig$\KB920683\update\ C:\WINDOWS\$hf_mig$\KB920685\ C:\WINDOWS\$hf_mig$\KB920685\SP2QFE\ C:\WINDOWS\$hf_mig$\KB920685\update\ C:\WINDOWS\$hf_mig$\KB920872\ C:\WINDOWS\$hf_mig$\KB920872\SP2QFE\ C:\WINDOWS\$hf_mig$\KB920872\update\ C:\WINDOWS\$hf_mig$\KB921398\ C:\WINDOWS\$hf_mig$\KB921398\SP2QFE\ C:\WINDOWS\$hf_mig$\KB921398\update\ C:\WINDOWS\$hf_mig$\KB921503\ C:\WINDOWS\$hf_mig$\KB921503\SP2QFE\ C:\WINDOWS\$hf_mig$\KB921503\update\ C:\WINDOWS\$hf_mig$\KB921883\ C:\WINDOWS\$hf_mig$\KB921883\SP2QFE\ C:\WINDOWS\$hf_mig$\KB921883\update\ C:\WINDOWS\$hf_mig$\KB922582\ C:\WINDOWS\$hf_mig$\KB922582\SP2QFE\ C:\WINDOWS\$hf_mig$\KB922582\update\ C:\WINDOWS\$hf_mig$\KB922616\ C:\WINDOWS\$hf_mig$\KB922616\SP2QFE\ C:\WINDOWS\$hf_mig$\KB922616\update\ C:\WINDOWS\$hf_mig$\KB922760\ C:\WINDOWS\$hf_mig$\KB922760\SP2QFE\ C:\WINDOWS\$hf_mig$\KB922760\update\ C:\WINDOWS\$hf_mig$\KB922819\ C:\WINDOWS\$hf_mig$\KB922819\SP2QFE\ C:\WINDOWS\$hf_mig$\KB922819\update\ C:\WINDOWS\$hf_mig$\KB923414\ C:\WINDOWS\$hf_mig$\KB923414\SP2QFE\ C:\WINDOWS\$hf_mig$\KB923414\update\ C:\WINDOWS\$hf_mig$\KB923694\ C:\WINDOWS\$hf_mig$\KB923694\SP2QFE\ C:\WINDOWS\$hf_mig$\KB923694\update\ C:\WINDOWS\$hf_mig$\KB923980\ C:\WINDOWS\$hf_mig$\KB923980\SP2QFE\ C:\WINDOWS\$hf_mig$\KB923980\update\ C:\WINDOWS\$hf_mig$\KB924191\ C:\WINDOWS\$hf_mig$\KB924191\SP2QFE\ C:\WINDOWS\$hf_mig$\KB924191\update\ C:\WINDOWS\$hf_mig$\KB924270\ C:\WINDOWS\$hf_mig$\KB924270\SP2QFE\ C:\WINDOWS\$hf_mig$\KB924270\update\ C:\WINDOWS\$hf_mig$\KB924496\ C:\WINDOWS\$hf_mig$\KB924496\SP2QFE\ C:\WINDOWS\$hf_mig$\KB924496\update\ C:\WINDOWS\$hf_mig$\KB925454\ C:\WINDOWS\$hf_mig$\KB925454\SP2QFE\ C:\WINDOWS\$hf_mig$\KB925454\update\ C:\WINDOWS\$hf_mig$\KB925486\ C:\WINDOWS\$hf_mig$\KB925486\SP2QFE\ C:\WINDOWS\$hf_mig$\KB925486\update\ C:\WINDOWS\$hf_mig$\KB925902\ C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\ C:\WINDOWS\$hf_mig$\KB925902\update\ C:\WINDOWS\$hf_mig$\KB926255\ C:\WINDOWS\$hf_mig$\KB926255\SP2QFE\ C:\WINDOWS\$hf_mig$\KB926255\update\ C:\WINDOWS\$hf_mig$\KB926436\ C:\WINDOWS\$hf_mig$\KB926436\SP2QFE\ C:\WINDOWS\$hf_mig$\KB926436\update\ C:\WINDOWS\$hf_mig$\KB927779\ C:\WINDOWS\$hf_mig$\KB927779\SP2QFE\ C:\WINDOWS\$hf_mig$\KB927779\update\ C:\WINDOWS\$hf_mig$\KB927802\ C:\WINDOWS\$hf_mig$\KB927802\SP2QFE\ C:\WINDOWS\$hf_mig$\KB927802\update\ C:\WINDOWS\$hf_mig$\KB927891\ C:\WINDOWS\$hf_mig$\KB927891\SP2QFE\ C:\WINDOWS\$hf_mig$\KB927891\update\ C:\WINDOWS\$hf_mig$\KB928090\ C:\WINDOWS\$hf_mig$\KB928090\SP2QFE\ C:\WINDOWS\$hf_mig$\KB928090\update\ C:\WINDOWS\$hf_mig$\KB928255\ C:\WINDOWS\$hf_mig$\KB928255\SP2QFE\ C:\WINDOWS\$hf_mig$\KB928255\update\ C:\WINDOWS\$hf_mig$\KB928843\ C:\WINDOWS\$hf_mig$\KB928843\SP2QFE\ C:\WINDOWS\$hf_mig$\KB928843\update\ C:\WINDOWS\$hf_mig$\KB929123\ C:\WINDOWS\$hf_mig$\KB929123\SP2QFE\ C:\WINDOWS\$hf_mig$\KB929123\update\ C:\WINDOWS\$hf_mig$\KB929338\ C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ C:\WINDOWS\$hf_mig$\KB929338\update\ C:\WINDOWS\$hf_mig$\KB929969\ C:\WINDOWS\$hf_mig$\KB929969\SP2QFE\ C:\WINDOWS\$hf_mig$\KB929969\update\ C:\WINDOWS\$hf_mig$\KB930178\ C:\WINDOWS\$hf_mig$\KB930178\SP2QFE\ C:\WINDOWS\$hf_mig$\KB930178\update\ C:\WINDOWS\$hf_mig$\KB930916\ C:\WINDOWS\$hf_mig$\KB930916\SP2QFE\ C:\WINDOWS\$hf_mig$\KB930916\update\ C:\WINDOWS\$hf_mig$\KB931261\ C:\WINDOWS\$hf_mig$\KB931261\SP2QFE\ C:\WINDOWS\$hf_mig$\KB931261\update\ C:\WINDOWS\$hf_mig$\KB931768\ C:\WINDOWS\$hf_mig$\KB931768\SP2QFE\ C:\WINDOWS\$hf_mig$\KB931768\update\ C:\WINDOWS\$hf_mig$\KB931784\ C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ C:\WINDOWS\$hf_mig$\KB931784\update\ C:\WINDOWS\$hf_mig$\KB931836\ C:\WINDOWS\$hf_mig$\KB931836\SP2QFE\ C:\WINDOWS\$hf_mig$\KB931836\update\ C:\WINDOWS\$hf_mig$\KB932168\ C:\WINDOWS\$hf_mig$\KB932168\SP2QFE\ C:\WINDOWS\$hf_mig$\KB932168\update\ C:\WINDOWS\$hf_mig$\KB933360\ C:\WINDOWS\$hf_mig$\KB933360\SP2QFE\ C:\WINDOWS\$hf_mig$\KB933360\update\ C:\WINDOWS\$hf_mig$\KB933566\ C:\WINDOWS\$hf_mig$\KB933566\SP2QFE\ C:\WINDOWS\$hf_mig$\KB933566\update\ C:\WINDOWS\$hf_mig$\KB933729\ C:\WINDOWS\$hf_mig$\KB933729\SP2QFE\ C:\WINDOWS\$hf_mig$\KB933729\update\ C:\WINDOWS\$hf_mig$\KB935839\ C:\WINDOWS\$hf_mig$\KB935839\SP2QFE\ C:\WINDOWS\$hf_mig$\KB935839\update\ C:\WINDOWS\$hf_mig$\KB935840\ C:\WINDOWS\$hf_mig$\KB935840\SP2QFE\ C:\WINDOWS\$hf_mig$\KB935840\update\ C:\WINDOWS\$hf_mig$\KB936021\ C:\WINDOWS\$hf_mig$\KB936021\SP2QFE\ C:\WINDOWS\$hf_mig$\KB936021\update\ C:\WINDOWS\$hf_mig$\KB937143\ C:\WINDOWS\$hf_mig$\KB937143\SP2QFE\ C:\WINDOWS\$hf_mig$\KB937143\update\ C:\WINDOWS\$hf_mig$\KB937894\ C:\WINDOWS\$hf_mig$\KB937894\SP2QFE\ C:\WINDOWS\$hf_mig$\KB937894\update\ C:\WINDOWS\$hf_mig$\KB938127\ C:\WINDOWS\$hf_mig$\KB938127\SP2QFE\ C:\WINDOWS\$hf_mig$\KB938127\update\ C:\WINDOWS\$hf_mig$\KB938127-v2-IE7\ C:\WINDOWS\$hf_mig$\KB938127-v2-IE7\SP2QFE\ C:\WINDOWS\$hf_mig$\KB938127-v2-IE7\update\ C:\WINDOWS\$hf_mig$\KB938828\ C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\ C:\WINDOWS\$hf_mig$\KB938828\update\ C:\WINDOWS\$hf_mig$\KB938829\ C:\WINDOWS\$hf_mig$\KB938829\SP2QFE\ C:\WINDOWS\$hf_mig$\KB938829\update\ C:\WINDOWS\$hf_mig$\KB939653\ C:\WINDOWS\$hf_mig$\KB939653\SP2QFE\ C:\WINDOWS\$hf_mig$\KB939653\update\ C:\WINDOWS\$hf_mig$\KB941202\ C:\WINDOWS\$hf_mig$\KB941202\SP2QFE\ C:\WINDOWS\$hf_mig$\KB941202\update\ C:\WINDOWS\$hf_mig$\KB941568\ C:\WINDOWS\$hf_mig$\KB941568\SP2QFE\ C:\WINDOWS\$hf_mig$\KB941568\update\ C:\WINDOWS\$hf_mig$\KB941644\ C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\ C:\WINDOWS\$hf_mig$\KB941644\update\ C:\WINDOWS\$hf_mig$\KB941693\ C:\WINDOWS\$hf_mig$\KB941693\SP2QFE\ C:\WINDOWS\$hf_mig$\KB941693\update\ C:\WINDOWS\$hf_mig$\KB942615\ C:\WINDOWS\$hf_mig$\KB942615\SP2QFE\ C:\WINDOWS\$hf_mig$\KB942615\update\ C:\WINDOWS\$hf_mig$\KB942763\ C:\WINDOWS\$hf_mig$\KB942763\SP2QFE\ C:\WINDOWS\$hf_mig$\KB942763\update\ C:\WINDOWS\$hf_mig$\KB942840\ C:\WINDOWS\$hf_mig$\KB942840\SP2QFE\ C:\WINDOWS\$hf_mig$\KB942840\update\ C:\WINDOWS\$hf_mig$\KB943055\ C:\WINDOWS\$hf_mig$\KB943055\SP2QFE\ C:\WINDOWS\$hf_mig$\KB943055\update\ C:\WINDOWS\$hf_mig$\KB943460\ C:\WINDOWS\$hf_mig$\KB943460\SP2QFE\ C:\WINDOWS\$hf_mig$\KB943460\update\ C:\WINDOWS\$hf_mig$\KB943485\ C:\WINDOWS\$hf_mig$\KB943485\SP2QFE\ C:\WINDOWS\$hf_mig$\KB943485\update\ C:\WINDOWS\$hf_mig$\KB944338\ C:\WINDOWS\$hf_mig$\KB944338\SP2QFE\ C:\WINDOWS\$hf_mig$\KB944338\update\ C:\WINDOWS\$hf_mig$\KB944533\ C:\WINDOWS\$hf_mig$\KB944533\SP2QFE\ C:\WINDOWS\$hf_mig$\KB944533\update\ C:\WINDOWS\$hf_mig$\KB944653\ C:\WINDOWS\$hf_mig$\KB944653\SP2QFE\ C:\WINDOWS\$hf_mig$\KB944653\update\ C:\WINDOWS\$hf_mig$\KB945553\ C:\WINDOWS\$hf_mig$\KB945553\SP2QFE\ C:\WINDOWS\$hf_mig$\KB945553\update\ C:\WINDOWS\$hf_mig$\KB946026\ C:\WINDOWS\$hf_mig$\KB946026\SP2QFE\ C:\WINDOWS\$hf_mig$\KB946026\update\ C:\WINDOWS\$hf_mig$\KB946627\ C:\WINDOWS\$hf_mig$\KB946627\update\ C:\WINDOWS\$hf_mig$\KB946648\ C:\WINDOWS\$hf_mig$\KB946648\SP2QFE\ C:\WINDOWS\$hf_mig$\KB946648\SP3GDR\ C:\WINDOWS\$hf_mig$\KB946648\SP3QFE\ C:\WINDOWS\$hf_mig$\KB946648\update\ C:\WINDOWS\$hf_mig$\KB947864\ C:\WINDOWS\$hf_mig$\KB947864\SP2QFE\ C:\WINDOWS\$hf_mig$\KB947864\update\ C:\WINDOWS\$hf_mig$\KB948590\ C:\WINDOWS\$hf_mig$\KB948590\SP2QFE\ C:\WINDOWS\$hf_mig$\KB948590\update\ C:\WINDOWS\$hf_mig$\KB948881\ C:\WINDOWS\$hf_mig$\KB948881\update\ C:\WINDOWS\$hf_mig$\KB950749\ C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\ C:\WINDOWS\$hf_mig$\KB950749\update\ C:\WINDOWS\$hf_mig$\KB950759\ C:\WINDOWS\$hf_mig$\KB950759\SP2QFE\ C:\WINDOWS\$hf_mig$\KB950759\SP3GDR\ C:\WINDOWS\$hf_mig$\KB950759\SP3QFE\ C:\WINDOWS\$hf_mig$\KB950759\update\ C:\WINDOWS\$hf_mig$\KB950760\ C:\WINDOWS\$hf_mig$\KB950760\update\ C:\WINDOWS\$hf_mig$\KB950762\ C:\WINDOWS\$hf_mig$\KB950762\SP2QFE\ C:\WINDOWS\$hf_mig$\KB950762\SP3GDR\ C:\WINDOWS\$hf_mig$\KB950762\SP3QFE\ C:\WINDOWS\$hf_mig$\KB950762\update\ C:\WINDOWS\$hf_mig$\KB950974\ C:\WINDOWS\$hf_mig$\KB950974\SP2QFE\ C:\WINDOWS\$hf_mig$\KB950974\SP3GDR\ C:\WINDOWS\$hf_mig$\KB950974\SP3QFE\ C:\WINDOWS\$hf_mig$\KB950974\update\ C:\WINDOWS\$hf_mig$\KB951066\ C:\WINDOWS\$hf_mig$\KB951066\SP2QFE\ C:\WINDOWS\$hf_mig$\KB951066\SP3GDR\ C:\WINDOWS\$hf_mig$\KB951066\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951066\update\ C:\WINDOWS\$hf_mig$\KB951072-v2\ C:\WINDOWS\$hf_mig$\KB951072-v2\SP2QFE\ C:\WINDOWS\$hf_mig$\KB951072-v2\SP3GDR\ C:\WINDOWS\$hf_mig$\KB951072-v2\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951072-v2\update\ C:\WINDOWS\$hf_mig$\KB951376\ C:\WINDOWS\$hf_mig$\KB951376\SP2QFE\ C:\WINDOWS\$hf_mig$\KB951376\SP3GDR\ C:\WINDOWS\$hf_mig$\KB951376\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951376\update\ C:\WINDOWS\$hf_mig$\KB951376-v2\ C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\ C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\ C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951376-v2\update\ C:\WINDOWS\$hf_mig$\KB951698\ C:\WINDOWS\$hf_mig$\KB951698\SP2QFE\ C:\WINDOWS\$hf_mig$\KB951698\SP3GDR\ C:\WINDOWS\$hf_mig$\KB951698\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951698\update\ C:\WINDOWS\$hf_mig$\KB951748\ C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\ C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\ C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951748\update\ C:\WINDOWS\$hf_mig$\KB951978\ C:\WINDOWS\$hf_mig$\KB951978\SP3QFE\ C:\WINDOWS\$hf_mig$\KB951978\update\ C:\WINDOWS\$hf_mig$\KB952287\ C:\WINDOWS\$hf_mig$\KB952287\SP2QFE\ C:\WINDOWS\$hf_mig$\KB952287\SP3GDR\ C:\WINDOWS\$hf_mig$\KB952287\SP3QFE\ C:\WINDOWS\$hf_mig$\KB952287\update\ C:\WINDOWS\$hf_mig$\KB952954\ C:\WINDOWS\$hf_mig$\KB952954\SP2QFE\ C:\WINDOWS\$hf_mig$\KB952954\SP3GDR\ C:\WINDOWS\$hf_mig$\KB952954\SP3QFE\ C:\WINDOWS\$hf_mig$\KB952954\update\ C:\WINDOWS\$hf_mig$\KB953838\ C:\WINDOWS\$hf_mig$\KB953838\SP2QFE\ C:\WINDOWS\$hf_mig$\KB953838\SP3GDR\ C:\WINDOWS\$hf_mig$\KB953838\SP3QFE\ C:\WINDOWS\$hf_mig$\KB953838\update\ C:\WINDOWS\$hf_mig$\KB953838-IE7\ C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\ C:\WINDOWS\$hf_mig$\KB953838-IE7\update\ C:\WINDOWS\$hf_mig$\KB953839\ C:\WINDOWS\$hf_mig$\KB953839\update\ C:\WINDOWS\$MSI31Uninstall_KB893803v2$\ C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\ C:\WINDOWS\$NtServicePackUninstall$\ C:\WINDOWS\$NtServicePackUninstall$\spuninst\ C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\ C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\ C:\WINDOWS\$NtUninstallKB873333$\ C:\WINDOWS\$NtUninstallKB873333$\spuninst\ C:\WINDOWS\$NtUninstallKB873339$\ C:\WINDOWS\$NtUninstallKB873339$\spuninst\ C:\WINDOWS\$NtUninstallKB883939$\ C:\WINDOWS\$NtUninstallKB883939$\spuninst\ C:\WINDOWS\$NtUninstallKB885250$\ C:\WINDOWS\$NtUninstallKB885250$\spuninst\ C:\WINDOWS\$NtUninstallKB885835$\ C:\WINDOWS\$NtUninstallKB885835$\spuninst\ C:\WINDOWS\$NtUninstallKB885836$\ C:\WINDOWS\$NtUninstallKB885836$\spuninst\ C:\WINDOWS\$NtUninstallKB886185$\ C:\WINDOWS\$NtUninstallKB886185$\spuninst\ C:\WINDOWS\$NtUninstallKB887472$\ C:\WINDOWS\$NtUninstallKB887472$\spuninst\ C:\WINDOWS\$NtUninstallKB887742$\ C:\WINDOWS\$NtUninstallKB887742$\spuninst\ C:\WINDOWS\$NtUninstallKB888113$\ C:\WINDOWS\$NtUninstallKB888113$\spuninst\ C:\WINDOWS\$NtUninstallKB888302$\ C:\WINDOWS\$NtUninstallKB888302$\spuninst\ C:\WINDOWS\$NtUninstallKB890046$\ C:\WINDOWS\$NtUninstallKB890046$\spuninst\ C:\WINDOWS\$NtUninstallKB890175$\ C:\WINDOWS\$NtUninstallKB890175$\spuninst\ C:\WINDOWS\$NtUninstallKB890859$\ C:\WINDOWS\$NtUninstallKB890859$\spuninst\ C:\WINDOWS\$NtUninstallKB890923$\ C:\WINDOWS\$NtUninstallKB890923$\spuninst\ C:\WINDOWS\$NtUninstallKB891781$\ C:\WINDOWS\$NtUninstallKB891781$\spuninst\ C:\WINDOWS\$NtUninstallKB893066$\ C:\WINDOWS\$NtUninstallKB893066$\spuninst\ C:\WINDOWS\$NtUninstallKB893086$\ C:\WINDOWS\$NtUninstallKB893086$\spuninst\ C:\WINDOWS\$NtUninstallKB893756$\ C:\WINDOWS\$NtUninstallKB893756$\spuninst\ C:\WINDOWS\$NtUninstallKB894391$\ C:\WINDOWS\$NtUninstallKB894391$\spuninst\ C:\WINDOWS\$NtUninstallKB896358$\ C:\WINDOWS\$NtUninstallKB896358$\spuninst\ C:\WINDOWS\$NtUninstallKB896422$\ C:\WINDOWS\$NtUninstallKB896422$\spuninst\ C:\WINDOWS\$NtUninstallKB896423$\ C:\WINDOWS\$NtUninstallKB896423$\spuninst\ C:\WINDOWS\$NtUninstallKB896424$\ C:\WINDOWS\$NtUninstallKB896424$\spuninst\ C:\WINDOWS\$NtUninstallKB896428$\ C:\WINDOWS\$NtUninstallKB896428$\spuninst\ C:\WINDOWS\$NtUninstallKB896688$\ C:\WINDOWS\$NtUninstallKB896688$\spuninst\ C:\WINDOWS\$NtUninstallKB896727$\ C:\WINDOWS\$NtUninstallKB896727$\spuninst\ C:\WINDOWS\$NtUninstallKB898461$\spuninst\ C:\WINDOWS\$NtUninstallKB899587$\ C:\WINDOWS\$NtUninstallKB899587$\spuninst\ C:\WINDOWS\$NtUninstallKB899588$\ C:\WINDOWS\$NtUninstallKB899588$\spuninst\ C:\WINDOWS\$NtUninstallKB899589$\ C:\WINDOWS\$NtUninstallKB899589$\spuninst\ C:\WINDOWS\$NtUninstallKB899591$\ C:\WINDOWS\$NtUninstallKB899591$\spuninst\ C:\WINDOWS\$NtUninstallKB900485$\ C:\WINDOWS\$NtUninstallKB900485$\spuninst\ C:\WINDOWS\$NtUninstallKB900725$\ C:\WINDOWS\$NtUninstallKB900725$\spuninst\ C:\WINDOWS\$NtUninstallKB901017$\ C:\WINDOWS\$NtUninstallKB901017$\spuninst\ C:\WINDOWS\$NtUninstallKB901214$\ C:\WINDOWS\$NtUninstallKB901214$\spuninst\ C:\WINDOWS\$NtUninstallKB902400$\ C:\WINDOWS\$NtUninstallKB902400$\spuninst\ C:\WINDOWS\$NtUninstallKB903235$\ C:\WINDOWS\$NtUninstallKB903235$\spuninst\ C:\WINDOWS\$NtUninstallKB904706$\ C:\WINDOWS\$NtUninstallKB904706$\spuninst\ C:\WINDOWS\$NtUninstallKB905414$\ C:\WINDOWS\$NtUninstallKB905414$\spuninst\ C:\WINDOWS\$NtUninstallKB905749$\ C:\WINDOWS\$NtUninstallKB905749$\spuninst\ C:\WINDOWS\$NtUninstallKB905915$\ C:\WINDOWS\$NtUninstallKB905915$\spuninst\ C:\WINDOWS\$NtUninstallKB908519$\ C:\WINDOWS\$NtUninstallKB908519$\spuninst\ C:\WINDOWS\$NtUninstallKB908531$\ C:\WINDOWS\$NtUninstallKB908531$\spuninst\ C:\WINDOWS\$NtUninstallKB910437$\ C:\WINDOWS\$NtUninstallKB910437$\spuninst\ C:\WINDOWS\$NtUninstallKB911280$\ C:\WINDOWS\$NtUninstallKB911280$\spuninst\ C:\WINDOWS\$NtUninstallKB911562$\ C:\WINDOWS\$NtUninstallKB911562$\spuninst\ C:\WINDOWS\$NtUninstallKB911564$\ C:\WINDOWS\$NtUninstallKB911564$\spuninst\ C:\WINDOWS\$NtUninstallKB911565$\ C:\WINDOWS\$NtUninstallKB911565$\spuninst\ C:\WINDOWS\$NtUninstallKB911567$\ C:\WINDOWS\$NtUninstallKB911567$\spuninst\ C:\WINDOWS\$NtUninstallKB911927$\ C:\WINDOWS\$NtUninstallKB911927$\spuninst\ C:\WINDOWS\$NtUninstallKB912812$\ C:\WINDOWS\$NtUninstallKB912812$\spuninst\ C:\WINDOWS\$NtUninstallKB912919$\ C:\WINDOWS\$NtUninstallKB912919$\spuninst\ C:\WINDOWS\$NtUninstallKB913446$\ C:\WINDOWS\$NtUninstallKB913446$\spuninst\ C:\WINDOWS\$NtUninstallKB913580$\ C:\WINDOWS\$NtUninstallKB913580$\spuninst\ C:\WINDOWS\$NtUninstallKB914388$\ C:\WINDOWS\$NtUninstallKB914388$\spuninst\ C:\WINDOWS\$NtUninstallKB914389$\ C:\WINDOWS\$NtUninstallKB914389$\spuninst\ C:\WINDOWS\$NtUninstallKB916281$\ C:\WINDOWS\$NtUninstallKB916281$\spuninst\ C:\WINDOWS\$NtUninstallKB916595$\ C:\WINDOWS\$NtUninstallKB916595$\spuninst\ C:\WINDOWS\$NtUninstallKB917159$\ C:\WINDOWS\$NtUninstallKB917159$\spuninst\ C:\WINDOWS\$NtUninstallKB917344$\ C:\WINDOWS\$NtUninstallKB917344$\spuninst\ C:\WINDOWS\$NtUninstallKB917422$\ C:\WINDOWS\$NtUninstallKB917422$\spuninst\ C:\WINDOWS\$NtUninstallKB917734_WMP10$\ C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\ C:\WINDOWS\$NtUninstallKB917734_WMP9$\ C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\ C:\WINDOWS\$NtUninstallKB917953$\ C:\WINDOWS\$NtUninstallKB917953$\spuninst\ C:\WINDOWS\$NtUninstallKB918118$\ C:\WINDOWS\$NtUninstallKB918118$\spuninst\ C:\WINDOWS\$NtUninstallKB918439$\ C:\WINDOWS\$NtUninstallKB918439$\spuninst\ C:\WINDOWS\$NtUninstallKB918899$\ C:\WINDOWS\$NtUninstallKB918899$\spuninst\ C:\WINDOWS\$NtUninstallKB919007$\ C:\WINDOWS\$NtUninstallKB919007$\spuninst\ C:\WINDOWS\$NtUninstallKB920213$\ C:\WINDOWS\$NtUninstallKB920213$\spuninst\ C:\WINDOWS\$NtUninstallKB920214$\ C:\WINDOWS\$NtUninstallKB920214$\spuninst\ C:\WINDOWS\$NtUninstallKB920670$\ C:\WINDOWS\$NtUninstallKB920670$\spuninst\ C:\WINDOWS\$NtUninstallKB920683$\ C:\WINDOWS\$NtUninstallKB920683$\spuninst\ C:\WINDOWS\$NtUninstallKB920685$\ C:\WINDOWS\$NtUninstallKB920685$\spuninst\ C:\WINDOWS\$NtUninstallKB920872$\ C:\WINDOWS\$NtUninstallKB920872$\spuninst\ C:\WINDOWS\$NtUninstallKB921398$\ C:\WINDOWS\$NtUninstallKB921398$\spuninst\ C:\WINDOWS\$NtUninstallKB921503$\ C:\WINDOWS\$NtUninstallKB921503$\spuninst\ C:\WINDOWS\$NtUninstallKB921883$\ C:\WINDOWS\$NtUninstallKB921883$\spuninst\ C:\WINDOWS\$NtUninstallKB922582$\ C:\WINDOWS\$NtUninstallKB922582$\spuninst\ C:\WINDOWS\$NtUninstallKB922616$\ C:\WINDOWS\$NtUninstallKB922616$\spuninst\ C:\WINDOWS\$NtUninstallKB922760$\ C:\WINDOWS\$NtUninstallKB922760$\spuninst\ C:\WINDOWS\$NtUninstallKB922819$\ C:\WINDOWS\$NtUninstallKB922819$\spuninst\ C:\WINDOWS\$NtUninstallKB923191$\ C:\WINDOWS\$NtUninstallKB923191$\spuninst\ C:\WINDOWS\$NtUninstallKB923414$\ C:\WINDOWS\$NtUninstallKB923414$\spuninst\ C:\WINDOWS\$NtUninstallKB923689$\ C:\WINDOWS\$NtUninstallKB923689$\spuninst\ C:\WINDOWS\$NtUninstallKB923694$\ C:\WINDOWS\$NtUninstallKB923694$\spuninst\ C:\WINDOWS\$NtUninstallKB923980$\ C:\WINDOWS\$NtUninstallKB923980$\spuninst\ C:\WINDOWS\$NtUninstallKB924191$\ C:\WINDOWS\$NtUninstallKB924191$\spuninst\ C:\WINDOWS\$NtUninstallKB924270$\ C:\WINDOWS\$NtUninstallKB924270$\spuninst\ C:\WINDOWS\$NtUninstallKB924496$\ C:\WINDOWS\$NtUninstallKB924496$\spuninst\ C:\WINDOWS\$NtUninstallKB924667$\ C:\WINDOWS\$NtUninstallKB924667$\spuninst\ C:\WINDOWS\$NtUninstallKB925398_WMP64$\ C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\ C:\WINDOWS\$NtUninstallKB925454$\ C:\WINDOWS\$NtUninstallKB925454$\spuninst\ C:\WINDOWS\$NtUninstallKB925486$\ C:\WINDOWS\$NtUninstallKB925486$\spuninst\ C:\WINDOWS\$NtUninstallKB925902$\ C:\WINDOWS\$NtUninstallKB925902$\spuninst\ C:\WINDOWS\$NtUninstallKB926255$\ C:\WINDOWS\$NtUninstallKB926255$\spuninst\ C:\WINDOWS\$NtUninstallKB926436$\ C:\WINDOWS\$NtUninstallKB926436$\spuninst\ C:\WINDOWS\$NtUninstallKB927779$\ C:\WINDOWS\$NtUninstallKB927779$\spuninst\ C:\WINDOWS\$NtUninstallKB927802$\ C:\WINDOWS\$NtUninstallKB927802$\spuninst\ C:\WINDOWS\$NtUninstallKB927891$\ C:\WINDOWS\$NtUninstallKB927891$\spuninst\ C:\WINDOWS\$NtUninstallKB928090$\ C:\WINDOWS\$NtUninstallKB928090$\spuninst\ C:\WINDOWS\$NtUninstallKB928255$\ C:\WINDOWS\$NtUninstallKB928255$\spuninst\ C:\WINDOWS\$NtUninstallKB928843$\ C:\WINDOWS\$NtUninstallKB928843$\spuninst\ C:\WINDOWS\$NtUninstallKB929123$\ C:\WINDOWS\$NtUninstallKB929123$\spuninst\ C:\WINDOWS\$NtUninstallKB929338$\ C:\WINDOWS\$NtUninstallKB929338$\spuninst\ C:\WINDOWS\$NtUninstallKB929969$\ C:\WINDOWS\$NtUninstallKB929969$\spuninst\ C:\WINDOWS\$NtUninstallKB930178$\ C:\WINDOWS\$NtUninstallKB930178$\spuninst\ C:\WINDOWS\$NtUninstallKB930916$\ C:\WINDOWS\$NtUninstallKB930916$\spuninst\ C:\WINDOWS\$NtUninstallKB931261$\ C:\WINDOWS\$NtUninstallKB931261$\spuninst\ C:\WINDOWS\$NtUninstallKB931768$\ C:\WINDOWS\$NtUninstallKB931768$\spuninst\ C:\WINDOWS\$NtUninstallKB931784$\ C:\WINDOWS\$NtUninstallKB931784$\spuninst\ C:\WINDOWS\$NtUninstallKB931836$\spuninst\ C:\WINDOWS\$NtUninstallKB932168$\ C:\WINDOWS\$NtUninstallKB932168$\spuninst\ C:\WINDOWS\$NtUninstallKB933360$\ C:\WINDOWS\$NtUninstallKB933360$\spuninst\ C:\WINDOWS\$NtUninstallKB933566$\ C:\WINDOWS\$NtUninstallKB933566$\spuninst\ C:\WINDOWS\$NtUninstallKB933729$\ C:\WINDOWS\$NtUninstallKB933729$\spuninst\ C:\WINDOWS\$NtUninstallKB935839$\ C:\WINDOWS\$NtUninstallKB935839$\spuninst\ C:\WINDOWS\$NtUninstallKB935840$\ C:\WINDOWS\$NtUninstallKB935840$\spuninst\ C:\WINDOWS\$NtUninstallKB936021$\ C:\WINDOWS\$NtUninstallKB936021$\spuninst\ C:\WINDOWS\$NtUninstallKB936782_WMP10$\ C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\ C:\WINDOWS\$NtUninstallKB937143$\ C:\WINDOWS\$NtUninstallKB937143$\spuninst\ C:\WINDOWS\$NtUninstallKB937894$\ C:\WINDOWS\$NtUninstallKB937894$\spuninst\ C:\WINDOWS\$NtUninstallKB938127$\ C:\WINDOWS\$NtUninstallKB938127$\spuninst\ C:\WINDOWS\$NtUninstallKB938828$\ C:\WINDOWS\$NtUninstallKB938828$\spuninst\ C:\WINDOWS\$NtUninstallKB938829$\ C:\WINDOWS\$NtUninstallKB938829$\spuninst\ C:\WINDOWS\$NtUninstallKB939653$\ C:\WINDOWS\$NtUninstallKB939653$\spuninst\ C:\WINDOWS\$NtUninstallKB941202$\ C:\WINDOWS\$NtUninstallKB941202$\spuninst\ C:\WINDOWS\$NtUninstallKB941568$\ C:\WINDOWS\$NtUninstallKB941568$\spuninst\ C:\WINDOWS\$NtUninstallKB941644$\ C:\WINDOWS\$NtUninstallKB941644$\spuninst\ C:\WINDOWS\$NtUninstallKB941693$\ C:\WINDOWS\$NtUninstallKB941693$\spuninst\ C:\WINDOWS\$NtUninstallKB942615$\ C:\WINDOWS\$NtUninstallKB942615$\spuninst\ C:\WINDOWS\$NtUninstallKB942763$\ C:\WINDOWS\$NtUninstallKB942763$\spuninst\ C:\WINDOWS\$NtUninstallKB942840$\ C:\WINDOWS\$NtUninstallKB942840$\spuninst\ C:\WINDOWS\$NtUninstallKB943055$\ C:\WINDOWS\$NtUninstallKB943055$\spuninst\ C:\WINDOWS\$NtUninstallKB943460$\ C:\WINDOWS\$NtUninstallKB943460$\spuninst\ C:\WINDOWS\$NtUninstallKB943485$\ C:\WINDOWS\$NtUninstallKB943485$\spuninst\ C:\WINDOWS\$NtUninstallKB944338$\ C:\WINDOWS\$NtUninstallKB944338$\spuninst\ C:\WINDOWS\$NtUninstallKB944533$\ C:\WINDOWS\$NtUninstallKB944533$\spuninst\ C:\WINDOWS\$NtUninstallKB944653$\ C:\WINDOWS\$NtUninstallKB944653$\spuninst\ C:\WINDOWS\$NtUninstallKB945553$\ C:\WINDOWS\$NtUninstallKB945553$\spuninst\ C:\WINDOWS\$NtUninstallKB946026$\ C:\WINDOWS\$NtUninstallKB946026$\spuninst\ C:\WINDOWS\$NtUninstallKB946627$\spuninst\ C:\WINDOWS\$NtUninstallKB946648$\ C:\WINDOWS\$NtUninstallKB946648$\spuninst\ C:\WINDOWS\$NtUninstallKB946648_0$\ C:\WINDOWS\$NtUninstallKB946648_0$\spuninst\ C:\WINDOWS\$NtUninstallKB947864$\ C:\WINDOWS\$NtUninstallKB947864$\spuninst\ C:\WINDOWS\$NtUninstallKB948590$\ C:\WINDOWS\$NtUninstallKB948590$\spuninst\ C:\WINDOWS\$NtUninstallKB948881$\ C:\WINDOWS\$NtUninstallKB948881$\spuninst\ C:\WINDOWS\$NtUninstallKB950749$\ C:\WINDOWS\$NtUninstallKB950749$\spuninst\ C:\WINDOWS\$NtUninstallKB950759$\ C:\WINDOWS\$NtUninstallKB950759$\spuninst\ C:\WINDOWS\$NtUninstallKB950759_0$\ C:\WINDOWS\$NtUninstallKB950759_0$\spuninst\ C:\WINDOWS\$NtUninstallKB950760$\ C:\WINDOWS\$NtUninstallKB950760$\spuninst\ C:\WINDOWS\$NtUninstallKB950762$\ C:\WINDOWS\$NtUninstallKB950762$\spuninst\ C:\WINDOWS\$NtUninstallKB950762_0$\ C:\WINDOWS\$NtUninstallKB950762_0$\spuninst\ C:\WINDOWS\$NtUninstallKB950974$\ C:\WINDOWS\$NtUninstallKB950974$\spuninst\ C:\WINDOWS\$NtUninstallKB950974_0$\ C:\WINDOWS\$NtUninstallKB950974_0$\spuninst\ C:\WINDOWS\$NtUninstallKB951066$\ C:\WINDOWS\$NtUninstallKB951066$\spuninst\ C:\WINDOWS\$NtUninstallKB951066_0$\ C:\WINDOWS\$NtUninstallKB951066_0$\spuninst\ C:\WINDOWS\$NtUninstallKB951072-v2$\ C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\ C:\WINDOWS\$NtUninstallKB951376$\ C:\WINDOWS\$NtUninstallKB951376$\spuninst\ C:\WINDOWS\$NtUninstallKB951376-v2$\ C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\ C:\WINDOWS\$NtUninstallKB951376-v2_0$\ C:\WINDOWS\$NtUninstallKB951376-v2_0$\spuninst\ C:\WINDOWS\$NtUninstallKB951376_0$\ C:\WINDOWS\$NtUninstallKB951376_0$\spuninst\ C:\WINDOWS\$NtUninstallKB951698$\ C:\WINDOWS\$NtUninstallKB951698$\spuninst\ C:\WINDOWS\$NtUninstallKB951698_0$\ C:\WINDOWS\$NtUninstallKB951698_0$\spuninst\ C:\WINDOWS\$NtUninstallKB951748$\ C:\WINDOWS\$NtUninstallKB951748$\spuninst\ C:\WINDOWS\$NtUninstallKB951748_0$\ C:\WINDOWS\$NtUninstallKB951748_0$\spuninst\ C:\WINDOWS\$NtUninstallKB951978$\ C:\WINDOWS\$NtUninstallKB951978$\spuninst\ C:\WINDOWS\$NtUninstallKB952287$\ C:\WINDOWS\$NtUninstallKB952287$\spuninst\ C:\WINDOWS\$NtUninstallKB952287_0$\ C:\WINDOWS\$NtUninstallKB952287_0$\spuninst\ C:\WINDOWS\$NtUninstallKB952954$\ C:\WINDOWS\$NtUninstallKB952954$\spuninst\ C:\WINDOWS\$NtUninstallKB952954_0$\ C:\WINDOWS\$NtUninstallKB952954_0$\spuninst\ C:\WINDOWS\$NtUninstallKB953838$\ C:\WINDOWS\$NtUninstallKB953838$\spuninst\ C:\WINDOWS\$NtUninstallKB953838_0$\ C:\WINDOWS\$NtUninstallKB953838_0$\spuninst\ C:\WINDOWS\$NtUninstallKB953839$\ C:\WINDOWS\$NtUninstallKB953839$\spuninst\ C:\WINDOWS\$NtUninstallWMFDist11$\ C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\ C:\WINDOWS\AppPatch\ C:\WINDOWS\assembly\ C:\WINDOWS\assembly\GAC\Accessibility\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\cscompmgd\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\IIEHost\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\ISymWrapper\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\ C:\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft.VisualBasic.Vsa\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft.VisualC\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft.Vsa\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft.Vsa.Vb.CodeDOMProcessor\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Microsoft_VsaVb\7.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\mscorcfg\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\ C:\WINDOWS\assembly\GAC\System.Configuration.Install\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\ C:\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\ C:\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\ C:\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\ C:\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\ C:\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_0fe4c680\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_3a9de3c1\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_8b77a856\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_5bbd607a\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_d311663a\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_d2869c4a\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_ceecd7ac\ C:\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_0675e4fe\ C:\WINDOWS\CSC\ C:\WINDOWS\Cursors\ C:\WINDOWS\Debug\ C:\WINDOWS\Debug\Setup\ C:\WINDOWS\Debug\Setup\Backup\ C:\WINDOWS\Debug\UserMode\ C:\WINDOWS\Debug\WPD\ C:\WINDOWS\Downloaded Program Files\ C:\WINDOWS\Driver Cache\i386\ C:\WINDOWS\EHome\ C:\WINDOWS\Fonts\ C:\WINDOWS\Help\ C:\WINDOWS\Help\mail\ C:\WINDOWS\Help\Tours\htmlTour\ C:\WINDOWS\Help\Tours\mmTour\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Audio\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Audio\Wav\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Cnt\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Css\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\Btn\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\WMarks\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Scr\ C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\ C:\WINDOWS\ie7\ C:\WINDOWS\ie7\spuninst\ C:\WINDOWS\ie7updates\KB938127-v2-IE7\ C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\ C:\WINDOWS\ie7updates\KB953838-IE7\ C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\ C:\WINDOWS\ime\ C:\WINDOWS\inf\ C:\WINDOWS\inf\catalog\ C:\WINDOWS\inf\IEM\040c\ C:\WINDOWS\Installer\ C:\WINDOWS\Installer\MSN Messenger 8.1.0178\ C:\WINDOWS\Installer\tsclientmsitrans\ C:\WINDOWS\Installer\{06526E3A-92DD-4F45-90CD-902953F1A8D2}\ C:\WINDOWS\Installer\{15C165F1-1DAE-4476-AFB6-8723729B41E7}\ C:\WINDOWS\Installer\{1838C5A2-AB32-4145-85C1-BB9B8DFA24CD}\ C:\WINDOWS\Installer\{3248F0A8-6813-11D6-A77B-00B0D0150050}\ C:\WINDOWS\Installer\{350C940c-3D7C-4EE8-BAA9-00BCB3D54227}\ C:\WINDOWS\Installer\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}\ C:\WINDOWS\Installer\{58DD5143-4417-4F43-A7DD-5B8B29CEDBEA}\ C:\WINDOWS\Installer\{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}\ C:\WINDOWS\Installer\{718263DE-E612-4653-BB7D-7154BA9E31AB}\ C:\WINDOWS\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\ C:\WINDOWS\Installer\{A93C9E60-29B6-49da-BA21-F70AC6AADE20}\ C:\WINDOWS\Installer\{ABEB838C-A1A7-4C5D-B7E1-8B4314600813}\ C:\WINDOWS\Installer\{B376402D-58EA-45EA-BD50-DD924EB67A70}\ C:\WINDOWS\Installer\{B74F042E-E1B9-4A5B-8D46-387BB172F0A4}\ C:\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\ C:\WINDOWS\Installer\{E0828692-FD9D-459F-9312-C645C3CA6650}\ C:\WINDOWS\Installer\{E659E0EE-10E6-49B7-8696-60F38D0EB174}\ C:\WINDOWS\Installer\{F6326B60-1B1D-4ABF-BFCD-7B7404F44411}\ C:\WINDOWS\Installer\{FB10FE1A-9906-44A1-B8AB-B70B19FEAB58}\ C:\WINDOWS\java\classes\ C:\WINDOWS\java\Packages\ C:\WINDOWS\java\Packages\Data\ C:\WINDOWS\l2schemas\ C:\WINDOWS\Media\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2903.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2904.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2905.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2906.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2907.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2908.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2909.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2910.0\ C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2911.0\ C:\WINDOWS\Microsoft.NET\Framework\ C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ASP.NETClientFiles\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CONFIG\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MUI\0409\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SHADOW192\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\ C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\ C:\WINDOWS\Minidump\ C:\WINDOWS\msagent\ C:\WINDOWS\msagent\chars\ C:\WINDOWS\msagent\intl\ C:\WINDOWS\network diagnostic\ C:\WINDOWS\OemDir\ C:\WINDOWS\Offline Web Pages\ C:\WINDOWS\PCHealth\HelpCtr\Binaries\ C:\WINDOWS\PCHealth\HelpCtr\Config\ C:\WINDOWS\PCHealth\HelpCtr\Config\Cache\ C:\WINDOWS\PCHealth\HelpCtr\Config\News\ C:\WINDOWS\PCHealth\HelpCtr\Database\ C:\WINDOWS\PCHealth\HelpCtr\DataColl\ C:\WINDOWS\PCHealth\HelpCtr\Indices\ C:\WINDOWS\PCHealth\HelpCtr\Logs\ C:\WINDOWS\PCHealth\HelpCtr\OfflineCache\ C:\WINDOWS\PCHealth\HelpCtr\OfflineCache\Professional_32#040c\ C:\WINDOWS\PCHealth\HelpCtr\PackageStore\ C:\WINDOWS\PCHealth\HelpCtr\System\ C:\WINDOWS\PCHealth\HelpCtr\System\blurbs\ C:\WINDOWS\PCHealth\HelpCtr\System\CompatCtr\ C:\WINDOWS\PCHealth\HelpCtr\System\css\ C:\WINDOWS\PCHealth\HelpCtr\System\dialogs\ C:\WINDOWS\PCHealth\HelpCtr\System\DVDUpgrd\ C:\WINDOWS\PCHealth\HelpCtr\System\ErrMsg\ C:\WINDOWS\PCHealth\HelpCtr\System\errors\ C:\WINDOWS\PCHealth\HelpCtr\System\images\ C:\WINDOWS\PCHealth\HelpCtr\System\images\16x16\ C:\WINDOWS\PCHealth\HelpCtr\System\images\24x24\ C:\WINDOWS\PCHealth\HelpCtr\System\images\32x32\ C:\WINDOWS\PCHealth\HelpCtr\System\images\48x48\ C:\WINDOWS\PCHealth\HelpCtr\System\images\Centers\ C:\WINDOWS\PCHealth\HelpCtr\System\images\Expando\ C:\WINDOWS\PCHealth\HelpCtr\System\NetDiag\ C:\WINDOWS\PCHealth\HelpCtr\System\panels\ C:\WINDOWS\PCHealth\HelpCtr\System\panels\subpanels\ C:\WINDOWS\PCHealth\HelpCtr\System\rc\ C:\WINDOWS\PCHealth\HelpCtr\System\Remote Assistance\ C:\WINDOWS\PCHealth\HelpCtr\System\Remote Assistance\Common\ C:\WINDOWS\PCHealth\HelpCtr\System\Remote Assistance\Css\ C:\WINDOWS\PCHealth\HelpCtr\System\Remote Assistance\Interaction\Client\ C:\WINDOWS\PCHealth\HelpCtr\System\Remote Assistance\Interaction\Common\ C:\WINDOWS\PCHealth\HelpCtr\System\Remote Assistance\Interaction\Server\ C:\WINDOWS\PCHealth\HelpCtr\System\scripts\ C:\WINDOWS\PCHealth\HelpCtr\System\sysinfo\ C:\WINDOWS\PCHealth\HelpCtr\System\sysinfo\graphics\ C:\WINDOWS\PCHealth\HelpCtr\System\sysinfo\graphics\33x16pie\ C:\WINDOWS\PCHealth\HelpCtr\System\sysinfo\graphics\47x24pie\ C:\WINDOWS\PCHealth\HelpCtr\System\UpdateCtr\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\ C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\ C:\WINDOWS\PCHealth\UploadLB\Binaries\ C:\WINDOWS\PCHealth\UploadLB\Config\ C:\WINDOWS\peernet\ C:\WINDOWS\Prefetch\ C:\WINDOWS\provisioning\schemas\ C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}\ C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\ C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}\ C:\WINDOWS\RegisteredPackages\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{60204BB3-7078-4F70-8F69-68297621941C}\ C:\WINDOWS\RegisteredPackages\{60204BB3-7078-4F70-8F69-68297621941C}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\ C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\ C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\ C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\ C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}\ C:\WINDOWS\RegisteredPackages\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}$BACKUP$\System\ C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}\ C:\WINDOWS\RegisteredPackages\{DD90D410-1823-43EB-9A16-A2331BF08799}$BACKUP$\System\ C:\WINDOWS\Registration\ C:\WINDOWS\repair\ C:\WINDOWS\Resources\Themes\ C:\WINDOWS\Resources\Themes\Luna\ C:\WINDOWS\Resources\Themes\Luna\Shell\Homestead\ C:\WINDOWS\Resources\Themes\Luna\Shell\Metallic\ C:\WINDOWS\Resources\Themes\Luna\Shell\NormalColor\ C:\WINDOWS\security\Database\ C:\WINDOWS\security\logs\ C:\WINDOWS\security\templates\ C:\WINDOWS\ServicePackFiles\i386\ C:\WINDOWS\ServicePackFiles\i386\lang\ C:\WINDOWS\ServicePackFiles\ServicePackCache\i386\ C:\WINDOWS\SHELLNEW\ C:\WINDOWS\SoftwareDistribution\ C:\WINDOWS\SoftwareDistribution\DataStore\ C:\WINDOWS\SoftwareDistribution\DataStore\Logs\ C:\WINDOWS\SoftwareDistribution\Download\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\10\msft\windows\gdiplus\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\10\policy\msft\windows\gdiplus\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\51\msft\windows\system\default\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\51\policy\msft\windows\system\default\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\52\msft\windows\net\dxmrtp\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\52\msft\windows\net\rtcdll\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\52\msft\windows\net\rtcres\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\52\policy\msft\windows\networking\dxmrtp\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\52\policy\msft\windows\networking\rtcdll\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\60\msft\vcrtl\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\60\msft\windows\common\controls\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\60\policy\60\comctl\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\60\policy\msft\vcrtl\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\70\msft\windows\mswincrt\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\asms\70\policy\msft\mswincrt\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\ip\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\lang\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\new\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\root\cmpnents\mediactr\i386\ C:\WINDOWS\SoftwareDistribution\Download\44b6174a4a693136d02d4a7ecd7cbd54\update\ C:\WINDOWS\SoftwareDistribution\Download\94e2de28cb8ee27606822ca199876d4a\ C:\WINDOWS\SoftwareDistribution\Download\d219c5aa727ee8fc0f9eb775006e580a\ C:\WINDOWS\SoftwareDistribution\Download\d219c5aa727ee8fc0f9eb775006e580a\update\ C:\WINDOWS\SoftwareDistribution\Download\db4586ec99dabcdd7b44713401efed2f\ C:\WINDOWS\SoftwareDistribution\Download\db4586ec99dabcdd7b44713401efed2f\SP2GDR\ C:\WINDOWS\SoftwareDistribution\Download\db4586ec99dabcdd7b44713401efed2f\SP2QFE\ C:\WINDOWS\SoftwareDistribution\Download\db4586ec99dabcdd7b44713401efed2f\update\ C:\WINDOWS\SoftwareDistribution\Download\ee674415c440815df9dbd79e20f94525\ C:\WINDOWS\SoftwareDistribution\Download\ee674415c440815df9dbd79e20f94525\SP2GDR\ C:\WINDOWS\SoftwareDistribution\Download\ee674415c440815df9dbd79e20f94525\SP2QFE\ C:\WINDOWS\SoftwareDistribution\Download\ee674415c440815df9dbd79e20f94525\update\ C:\WINDOWS\SoftwareDistribution\Download\f36593f13584dc8b311cfbaab602e80f\ C:\WINDOWS\SoftwareDistribution\Download\f36593f13584dc8b311cfbaab602e80f\sp3gdr\ C:\WINDOWS\SoftwareDistribution\Download\f36593f13584dc8b311cfbaab602e80f\sp3qfe\ C:\WINDOWS\SoftwareDistribution\Download\f36593f13584dc8b311cfbaab602e80f\update\ C:\WINDOWS\SoftwareDistribution\EventCache\ C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\ C:\WINDOWS\SoftwareDistribution\WebSetup\ C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\ C:\WINDOWS\srchasst\ C:\WINDOWS\srchasst\chars\ C:\WINDOWS\srchasst\mui\040C\ C:\WINDOWS\system\ C:\WINDOWS\system32\ C:\WINDOWS\system32\1033\ C:\WINDOWS\system32\1036\ C:\WINDOWS\system32\Adobe\SVG Viewer\ C:\WINDOWS\system32\bits\ C:\WINDOWS\system32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\ C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ C:\WINDOWS\system32\CatRoot2\ C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\ C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\ C:\WINDOWS\system32\Com\ C:\WINDOWS\system32\config\ C:\WINDOWS\system32\config\default [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\systemprofile\ C:\WINDOWS\system32\config\systemprofile\Application Data\ C:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\ C:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\MetaData\ C:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\Internet Explorer\ C:\WINDOWS\system32\config\systemprofile\Cookies\ C:\WINDOWS\system32\config\systemprofile\Local Settings\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012008090520080906\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\49UB0L2Z\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\4XEB0DIR\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\KP6V49Y3\ C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\ODM7GLMB\ C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\ C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\ C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\ C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Accessibilité\ C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Divertissement\ C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Démarrage\ C:\WINDOWS\system32\config\systemprofile\Modèles\ C:\WINDOWS\system32\config\systemprofile\SendTo\ C:\WINDOWS\system32\DirectX\Dinput\ C:\WINDOWS\system32\dllcache\ C:\WINDOWS\system32\drivers\ C:\WINDOWS\system32\drivers\etc\ C:\WINDOWS\system32\drivers\umdf\ C:\WINDOWS\system32\DRVSTORE\NX6000m_1641E40C8226D6C7FA61AF9AA0EFB6B9273BE97D\ C:\WINDOWS\system32\DRVSTORE\NX6000_2E35915C239DFE541CDDDD6085121FF3936DECC8\ C:\WINDOWS\system32\DRVSTORE\VX1000m_9E17035E12CE8FA975CA94AAC466040E08F8F16C\ C:\WINDOWS\system32\DRVSTORE\VX1000_F0D00687F2C6654412F544D2A9CB1DB0F291EC6A\ C:\WINDOWS\system32\DRVSTORE\VX1000_F0D00687F2C6654412F544D2A9CB1DB0F291EC6A\1036\ C:\WINDOWS\system32\DRVSTORE\VX3000m_428145A48B42B05FA3839506EEABA2505B02F2F7\ C:\WINDOWS\system32\DRVSTORE\VX3000_0433D7FB800BA3CD73AE2E16AC2F9C4C9B45C2DE\ C:\WINDOWS\system32\DRVSTORE\VX3000_0433D7FB800BA3CD73AE2E16AC2F9C4C9B45C2DE\1036\ C:\WINDOWS\system32\DRVSTORE\VX6000m_4D630797802C695830C86648B016FACDFBD9E58B\ C:\WINDOWS\system32\DRVSTORE\VX6000_2DD332AD17334A76BABFAE3D3F1C0795D0B900F6\ C:\WINDOWS\system32\DRVSTORE\VX6000_2DD332AD17334A76BABFAE3D3F1C0795D0B900F6\1036\ C:\WINDOWS\system32\DRVSTORE\wlphonecv_8800C151E3BB9442F62327FF05F053BF5567B318\ C:\WINDOWS\system32\fr\ C:\WINDOWS\system32\fr-fr\ C:\WINDOWS\system32\ias\ C:\WINDOWS\system32\icsxml\ C:\WINDOWS\system32\inetsrv\ C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\ C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\backup\VCUy6SiAsDER\ C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\bases\ C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\data\ C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\data\Patches\ C:\WINDOWS\system32\LogFiles\HTTPERR\ C:\WINDOWS\system32\Macromed\Common\ C:\WINDOWS\system32\Macromed\Director\ C:\WINDOWS\system32\Macromed\Flash\ C:\WINDOWS\system32\Macromed\Shockwave 10\ C:\WINDOWS\system32\Macromed\Shockwave 10\Xtras\ C:\WINDOWS\system32\Macromed\Shockwave 8\ C:\WINDOWS\system32\Macromed\Shockwave 8\Xtras\ C:\WINDOWS\system32\Microsoft\Protect\S-1-5-18\ C:\WINDOWS\system32\Microsoft\Protect\S-1-5-18\User\ C:\WINDOWS\system32\MsDtc\ C:\WINDOWS\system32\MsDtc\Trace\ C:\WINDOWS\system32\mui\000C\ C:\WINDOWS\system32\mui\0409\ C:\WINDOWS\system32\npp\ C:\WINDOWS\system32\NtmsData\ C:\WINDOWS\system32\oobe\ C:\WINDOWS\system32\oobe\actsetup\ C:\WINDOWS\system32\oobe\error\ C:\WINDOWS\system32\oobe\html\dslmain\ C:\WINDOWS\system32\oobe\html\iconnect\ C:\WINDOWS\system32\oobe\html\isptype\ C:\WINDOWS\system32\oobe\html\mouse\ C:\WINDOWS\system32\oobe\html\mouse\images\ C:\WINDOWS\system32\oobe\html\sconnect\ C:\WINDOWS\system32\oobe\icserror\ C:\WINDOWS\system32\oobe\images\ C:\WINDOWS\system32\oobe\isperror\ C:\WINDOWS\system32\oobe\regerror\ C:\WINDOWS\system32\oobe\setup\ C:\WINDOWS\system32\PreInstall\WinSE\wxp_x86_040C_v1\ C:\WINDOWS\system32\ras\ C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\ C:\WINDOWS\system32\ReinstallBackups\0002\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0002\DriverFiles\i386\ C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\B_12676\ C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\ C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\ C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\ C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\i386\ C:\WINDOWS\system32\Restore\ C:\WINDOWS\system32\Setup\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\5.8.0.2469\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.0.6000.374\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.0.6000.381\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.2.6001.784\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.0.6000.374\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.0.6000.381\ C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.2.6001.784\ C:\WINDOWS\system32\spool\drivers\color\ C:\WINDOWS\system32\spool\drivers\w32x86\ C:\WINDOWS\system32\spool\drivers\w32x86\3\ C:\WINDOWS\system32\spool\drivers\w32x86\hpdeskjet_51003913\ C:\WINDOWS\system32\spool\prtprocs\w32x86\ C:\WINDOWS\system32\URTTemp\ C:\WINDOWS\system32\usmt\ C:\WINDOWS\system32\wbem\ C:\WINDOWS\system32\wbem\AutoRecover\ C:\WINDOWS\system32\wbem\Logs\ C:\WINDOWS\system32\wbem\Performance\ C:\WINDOWS\system32\wbem\Repository\ C:\WINDOWS\system32\wbem\Repository\FS\ C:\WINDOWS\system32\wbem\xml\ C:\WINDOWS\Tasks\ C:\WINDOWS\Temp\ C:\WINDOWS\Temp\Perflib_Perfdata_620.dat [WARNING] The file could not be opened! C:\WINDOWS\Temp\_avast4_\ C:\WINDOWS\Temp\_avast4_\Webshlock.txt [WARNING] The file could not be opened! C:\WINDOWS\twain_32\ C:\WINDOWS\twain_32\EPFB5\ C:\WINDOWS\twain_32\EPFB5\ES0015\Lulu\ C:\WINDOWS\twain_32\EPFB5\ES0015\Lulu\Settings\ C:\WINDOWS\twain_32\QuickCam\ C:\WINDOWS\twain_32\QuickCam\Labtec\ C:\WINDOWS\twain_32\VX1000\ C:\WINDOWS\VirtualEar\ C:\WINDOWS\WBEM\ C:\WINDOWS\Web\ C:\WINDOWS\Web\printers\ C:\WINDOWS\Web\printers\images\ C:\WINDOWS\Web\Wallpaper\ C:\WINDOWS\WinSxS\InstallTemp\2167071\ C:\WINDOWS\WinSxS\InstallTemp\2172452\ C:\WINDOWS\WinSxS\Manifests\ C:\WINDOWS\WinSxS\Policies\x86_policy.1.0.Microsoft.Windows.GdiPlus_6595b64144ccf1df_x-ww_4e8510ac\ C:\WINDOWS\WinSxS\Policies\x86_policy.4.20.Microsoft.MSXML2_6bd6b9abf345378f_x-ww_88e8eab8\ C:\WINDOWS\WinSxS\Policies\x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510\ C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_x-ww_362e60dd\ C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Rtcdll_6595b64144ccf1df_x-ww_c7b7206f\ C:\WINDOWS\WinSxS\Policies\x86_policy.6.0.Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_x-ww_527a1c68\ C:\WINDOWS\WinSxS\Policies\x86_policy.6.0.Microsoft.Windows.Common-Controls_6595b64144ccf1df_x-ww_5ddad775\ C:\WINDOWS\WinSxS\Policies\x86_policy.7.0.Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_x-ww_a317e4b3\ C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_x-ww_77c24773\ C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a\ C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9841.0_x-ww_18171213\ C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9848.0_x-ww_1b897e9a\ C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries.Resources_6595b64144ccf1df_6.0.0.0_fr-FR_9d8c4a39\ C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7\ C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.9792.0_x-ww_08a6620a\ C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.10.0_x-ww_f7fb5805\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.10.0_x-ww_d8862ba3\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.10.0_x-ww_712befd8\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5512_x-ww_dfb54e0c\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_5.2.2.3_x-ww_468466a7\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcDll_6595b64144ccf1df_5.2.2.3_x-ww_d6bd8b95\ C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcRes_6595b64144ccf1df_5.2.2.3_fr_457ebf3 d\ Begin scan in 'E:\' <Disque local> E:\ E:\AVI\ E:\RECYCLER\NPROTECT\ E:\RECYCLER\S-1-5-21-1060284298-884357618-1801674531-1003\ E:\RECYCLER\S-1-5-21-1060284298-884357618-1801674531-1004\ E:\RECYCLER\S-1-5-21-1060284298-884357618-1801674531-500\ E:\RECYCLER\S-1-5-21-1202660629-1935655697-682003330-1003\ E:\RECYCLER\S-1-5-21-1202660629-1935655697-682003330-1004\ E:\Restore\ E:\Restore\Codecs\ E:\Restore\Codecs\AC3Codec\Ac3 Codecs\ E:\Restore\Codecs\DivX 3.11 alpha\ E:\Restore\Codecs\DivX 4.11\ E:\Restore\Codecs\DivX 5.01\ E:\Restore\Codecs\Divx 5.05\ E:\Restore\Codecs\ogg\ E:\Restore\Crack\ E:\Restore\Crack\crack_nsw2005\ E:\Restore\Drivers\FastSagem800\ E:\Restore\Drivers\Scanner\ E:\Restore\Firewall\N-F-P\ E:\Restore\Firewall\N-F-P\MANUAL\ E:\Restore\Firewall\N-F-P\MSI\WIN9X\ E:\Restore\Firewall\N-F-P\MSI\WINNT\ E:\Restore\Firewall\N-F-P\NPF\ E:\Restore\Firewall\N-F-P\SUPPORT\DCOM98\ E:\Restore\Firewall\N-F-P\SUPPORT\LIVEREG\ E:\Restore\Firewall\N-F-P\SUPPORT\LUPDATE\ E:\Restore\Firewall\N-F-P\SUPPORT\WINTDIST\ E:\Restore\Firewall\N-F-P\SUPPORT\WSCRIPT\ E:\Restore\Firewall\N-F-P\SUPPORT\XMLREDIST\ E:\Restore\Firewall\N-F-P\Zip\ E:\Restore\Gravure\CloneCd 2 Install\4.01.6\ E:\Restore\Gravure\CloneCD v4.0.1.9\ E:\Restore\Gravure\nero 6\ E:\Restore\Gravure\nero 6\plug in nero\Plug-ins collection for Nero 6\ E:\Restore\Id Bios\ E:\Restore\Manual Graphic Card\ E:\Restore\Navigateurs\ E:\Restore\PlatForm Java\ E:\Restore\Players\ E:\Restore\Players\Power DVD brut\ E:\Restore\Utilitaires\ E:\Restore\Utilitaires\Ad Aware\ E:\Restore\Utilitaires\Compression\ E:\Restore\Utilitaires\Compression\WINZIP70.EXE [0] Archive type: ZIP SFX (self extracting) --> SETUP.WZ [1] Archive type: ZIP --> WINZIP32.EX_ [NOTE] The file is password protected [NOTE] The file is password protected E:\Restore\Utilitaires\Correctif Mydoom\ E:\Restore\Utilitaires\Correctif Ver Blaster\ E:\Restore\Utilitaires\Spybot\ E:\Restore\Utilitaires\Win Commander\ E:\System Volume Information\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP135\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP143\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP144\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP146\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP147\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP148\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP149\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP150\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP152\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP153\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP156\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP157\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP160\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP171\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP177\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP183\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP184\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP186\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP187\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP195\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP196\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP202\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP203\ E:\System Volume Information\_restore{93C7772B-972F-4586-8129-72345E059CEB}\RP204\ End of the scan: dimanche 7 septembre 2008 14:04 Used time: 1:12:57 Hour(s) The scan has been done completely. 7264 Scanning directories 338757 Files were scanned 1 viruses and/or unwanted programs were found 0 Files were classified as suspicious: 0 files were deleted 0 files were repaired 1 files were moved to quarantine 0 files were renamed 61 Files cannot be scanned 338695 Files not concerned 1873 Archives were scanned 95 Warnings 5 Notes Voila, j'attends tes appréciations. -
[Résolu] Suspicion d'infection de mon ordinateur
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Salut Gof, Les symptomes : UC lente, toujours entre 10 et 15 % de ressources prises, IE lent (parfois très lent), j'ai passé antivir en MSE il m'a trouvé deux infections (éliminées), j'ai repssé Spybot en MSE, il m'a trouvé des infections (BlueStreak, MediaPlex, Right Media, Tradedoubler), éliminées, je n'ai pas de son sur Media Player ni sur les liens audio ou vidéos Internet, alors que Winamp est OK. Entre-temps, j'ai fait des mises à jour car j'étais à la traine là-dessus, j'ai donc installé IE7 avec une ou deux mises à jour et je suis passé au SP3 pour mon XP Pro. Serais-ce mon ordi qui commencerait à vieillir? C'est possible, je n'avais pas mis le top dessus..... -
[Résolu] Suspicion d'infection de mon ordinateur
rossi_kawa a répondu à un(e) sujet de rossi_kawa dans Analyses et éradication malwares
Bonjour Gof, Tu n'as pas à me remercier pour ma patience, c'est à moi de te remercier pour l'aide que tu m'apportes. Voici comme demandé le rapport MBAM : Malwarebytes' Anti-Malware 1.26 Version de la base de données: 1116 Windows 5.1.2600 Service Pack 2 05/09/2008 11:53:14 mbam-log-2008-09-05 (11-53-14).txt Type de recherche: Examen rapide Eléments examinés: 50851 Temps écoulé: 3 minute(s), 51 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 1 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\poof (Rootkit.Agent) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté)