Aller au contenu

kingleroideskong

Membres
  • Compteur de contenus

    142
  • Inscription

  • Dernière visite

Tout ce qui a été posté par kingleroideskong

  1. Bonsoir voici le rapport Malwarebytes' Anti-Malware 1.33 Version de la base de données: 1742 Windows 5.1.2600 Service Pack 2 10/12/2008 20:40:33 mbam-log-2008-12-10 (20-40-33).txt Type de recherche: Examen rapide Eléments examinés: 76777 Temps écoulé: 8 minute(s), 4 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 1 Clé(s) du Registre infectée(s): 4 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 7 Fichier(s) infecté(s): 14 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): C:\Program Files\Privacy components\tools\sp\sp.dll (Trojan.FakeAlert) -> Delete on reboot. Clé(s) du Registre infectée(s): HKEY_CLASSES_ROOT\sp.tieadvbho (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{d032570a-5f63-4812-a094-87d007c23012} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{d032570a-5f63-4812-a094-87d007c23012} (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d032570a-5f63-4812-a094-87d007c23012} (Trojan.BHO) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): C:\Program Files\Privacy components (Trojan.Fraudtool) -> Delete on reboot. C:\Program Files\Privacy components\tools (Trojan.Fraudtool) -> Delete on reboot. C:\Program Files\Privacy components\tools\sp (Trojan.Fraudtool) -> Delete on reboot. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\keys (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\temp (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. Fichier(s) infecté(s): C:\Program Files\Privacy components\tools\sp\sp.dll (Trojan.BHO) -> Delete on reboot. C:\Program Files\Privacy components\agent.exe (Trojan.Fraudtool) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases\cg.dat (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases\mw.dat (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases\rd.dat (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases\sc.dat (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases\sm.dat (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\dbases\sp.dat (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\keys\cg.key (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\keys\rd.key (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\keys\sc.key (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\keys\sp.key (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\temp\settings.ini (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. C:\Documents and Settings\marion.CLAIRDELUNE\Application Data\Privacy components\temp\spfilter (Rogue.PrivacyComponents) -> Quarantined and deleted successfully. A+
  2. bonsoir merci pour ta reponse et ton aide rapide Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:10:17, on 09/12/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\CDBurnerXP\NMSAccessU.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\explorer.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Neuf\Kit\WiFi\9wifi.exe C:\Program Files\Common Files\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Real\RealPlayer\RealPlay.exe C:\Program Files\Microsoft ActiveSync\Wcescomm.exe C:\Program Files\Privacy components\agent.exe C:\PROGRA~1\MI3AA1~1\rapimgr.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\Program Files\Secunia\PSI\psi.exe c:\program files\avira\antivir personaledition classic\avcenter.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Documents and Settings\marion.CLAIRDELUNE\Local Settings\Temporary Internet Files\Content.IE5\01QNS1MN\HiJackThis[1].exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: (no name) - {D032570A-5F63-4812-A094-87D007C23012} - C:\PROGRA~1\PRIVAC~1\tools\sp\sp.dll O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] "C:\Program Files\Neuf\Kit\WiFi\9wifi.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe" O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichier...ion_3_0_4_0.cab O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 5155 bytes
  3. Bonjour, Je suis infecté par privacy component. Pouvez vous m aider A+
  4. http://senduit.com/2d2cfd http://senduit.com/03048d J4ESPERE QUE CELA VA ETRE BON CETTE FOIS CI a+
  5. Bonjour, Je t'ai envoyé les fichiers suivants le lien que tu m'a donné, j'espère que cela a fonctionné. A+
  6. test de Yann
  7. Bonjour, Le probleme, et j'allais y venir un peu plus tard, c'est que sur les 4 pc qu'il y a chez moi, celui dont nous nous occupons (enfin dont tu t'occupe!!) est le seul que je n'arrive pas à connecter sur le net via ouifi (pour les 3 autres ca marche impec, hormis cette sal.....té de PSP, mais c'est pas grave) Donc je ne peux faire de scan en ligne. Et quant à brancher ce PC via ethernet ou USB, il est trop loin du modem neuf) A+
  8. Bonsoir Report file date: jeudi 25 décembre 2008 16:10 Jobname: 'Local Drives' Scanning for 284303 virus strains and unwanted programs. Licensed to: AntiVir PersonalEdition Classic Serialnumber: 0000149996-WURGE-0001 Platform: Windows XP Windowsversion: (Service Pack 2) [5.1.2600] Username: philippe Computername: SN202258260001 Versioninformations: AVSCAN.EXE : 7.0.0.19 524328 23/01/2006 14:35:48 AVSCAN.DLL : 7.0.0.19 42536 23/01/2006 14:35:48 LUKE.DLL : 7.0.0.19 114728 23/01/2006 14:35:48 LUKERES.DLL : 7.0.0.19 27688 23/01/2006 14:35:48 ANTIVIR0.VDF : 6.32.0.60 4323840 06/12/2005 09:47:34 ANTIVIR1.VDF : 6.33.0.97 675328 18/01/2006 13:31:52 ANTIVIR2.VDF : 6.33.0.131 122880 18/01/2006 13:31:52 ANTIVIR3.VDF : 6.33.0.139 28160 18/01/2006 13:31:52 AVEWIN32.DLL : 6.33.0.30 1016320 20/01/2006 10:42:50 AVPREF.DLL : 6.34.0.0 38440 18/01/2006 11:06:02 AVREP.DLL : 6.33.0.106 2301992 10/01/2006 09:10:46 AVPACK32.DLL : 6.33.0.6 331816 09/01/2006 08:03:38 AVREG.DLL : 6.31.0.90 27688 28/07/2005 09:06:36 NETNT.DLL : 6.32.0.0 6696 27/09/2005 06:56:50 NETNW.DLL : 6.32.0.0 9768 27/09/2005 06:56:50 Start of the scan: jeudi 25 décembre 2008 16:10 Start scanning boot sectors: Boot sector 'C:' [NOTE] No virus was found! Boot sector 'F:' [NOTE] No virus was found! Boot sector 'L:' [NOTE] In the drive 'L:' no data medium is inserted! Boot sector 'G:' [NOTE] No virus was found! Starting to scan the registry. The registry was scanned ( 35 files ). Starting the file scan: C:\pagefile.sys [WARNING] The file could not be opened! C:\Anuman Interactive\Impression CD-DVD\images\Thumbs.dble [WARNING] The file could not be opened! C:\APPS\CLICKME\IMAGES\Thumbs.dble [WARNING] The file could not be opened! C:\APPS\RecordNow\Explain\Images\Thumbs.dble [WARNING] The file could not be opened! C:\COKTEL\Thumbs.dble [WARNING] The file could not be opened! C:\COKTEL\ADI4OEMP\Thumbs.dble [WARNING] The file could not be opened! C:\COKTEL\ADIBOUPB\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\OD2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\i pod\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\jeux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\jeux\sims\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\nintendo ds\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\ps3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\ps3\ps2 noir$\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\psp\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\xbox\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\fleur\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image film\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image film\veronice mars\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image marrante\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image marrante\chat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\chat gri\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\chat gri o dessu et blan en dessou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\chat roux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\cookie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\maincoon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\persan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\plusieure chat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\andalou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\appaloosa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\camarguai\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\lilou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\manitou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\oshine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\bulitt\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\cartone\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\chevaux de trait\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\dridri\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\elton\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\far\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\fax\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\gandhi\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\gandhi\clair de lune\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\hongo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\igor\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\jaliskah\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\le club\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les pur sang\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\mouchou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\tango\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\too much\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\mascotte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\plusieurs chevaux ensemble\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\selim\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\tartine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\tic tac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\twist\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\cross\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\CSO\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\falabella\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\fjord\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frison ki se cabre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons a l aret\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons ki done un cou de cul\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons o galo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons o pa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons o tro\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\plusieurs frisons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\tete frisons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\haflinger\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\montages\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\paint horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\pur sang anglais\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\pur sang arabe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\quarter horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\shetland\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\sorraia\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\tinker\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\beauceron\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\beauceron\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\beauceron\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger allemands\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger allemands\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger allemands\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger d'anatolie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\chien blanc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\chien blanc\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\lucky\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\plusieurs chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\rotweiler\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\terre neuve\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\terre neuve\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images famille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images famille\isabelle\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\guepard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\leopard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\leopard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\lion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\lion\lionco\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\lion\plusieurs lion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\loup\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\loup\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\loup\plusieur loup\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\panthere\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\panthere\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\panthere\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\puma\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\plusieur renard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\tigre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\tigre\tigre blan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\tigre\tigre du bengale\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images imaginaires\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images lapin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images lapin\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images maleurese\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images maleurese\hippophagie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images ours\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images ours\ours blanc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\avril lavigne\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\beyonce\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\britney spears\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\charmed\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\lindsay lohan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\paris hilton\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\pussycat dolls\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\rihanna\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\sarah michel gellar\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\shakira\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\veronice mars(kristen bell)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\bill et tom kaulitz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\bill kaulitz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\logo tokio hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\tokio hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\comms\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\image fashion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\logo chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\metier du cheval\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\paysage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\paysage\cascade\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\vetement chaussure\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\vetement chaussure\chaussures\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Image\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Avril Lavigne\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Pink\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Pink - Missundaztood\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Pussycat Dolls\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Rihanna\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Shakira\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Tokio Hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes fichiers reçus\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes Historiques de Conversation\juin 2008\Images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes video\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes video\Chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes video\Chevaux\Clair de lune\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes video\Tokio.Hotel.Zimmer.483.Live.In.Europe.2007.iNTERNAL.DVDRip.XviD-NANT\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Ma musique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Mes fichiers MSN reçus\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Mes images\Snapshot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\philippe\ntuser.dat [WARNING] The file could not be opened! C:\Documents and Settings\philippe\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Application Data\MobileAction\HandsetManager\Album\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\blac day\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\COMPULSION\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\DOWN\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\EXCITER REMIXES\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\PAINKILLERS\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\SILENCE\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\COVER\TINY GIRLS\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\fichiers clé USB\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\halo mod\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\halo mod\Textures\BMP\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\photo playmobil\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Google\GoogleEarth\icons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Messenger\nathalieleclercq2@msn.com\SharingMetadata\jennyfer_663@msn.com\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Messenger\spartan_thomas@msn.com\SharingMetadata\alexvalras@hotmail.fr\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Dossier Bluetooth Exchange\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Bloodline\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Hydrology plus 1 + 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Liquid\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Unsound Methods\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Beatles\The_Beatles_-_Love-CD-2006-SQ\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Beatles\VA - Beatles Regrooved (2005)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Dave Gahan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Dave Gahan\DaveGahanOfficial_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Dave Gahan\Hourglass\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Dave Gahan\Paper Monsters\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Dancing In My Shoes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Electronic Boys Vol 6\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Exciter Remixes 2003\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Forbidden Fruits 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Fourplay\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Just In Time\Volume 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\People Are People\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Playing The Angel\(Remixes)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Playing The Angel\Mixing The Angel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Playing The Angel\Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Playing The Angel\Remixes (Vol 2)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\The Complete\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Ultra Strike 20 Exciter Total\CD1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Ultra Strike 20 Exciter Total\CD2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\01 ALBUM A TELECHARGER\Ultra Strike 6\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version Bargu\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version Bargu\Disc a\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version Bargu\Disc b\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version classique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version classique\Disc a\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version classique\Disc b\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\18 th Strike The Ultra Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A Broken Frame\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\11\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\14\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\15\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\17\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\18\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\19\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\19\[1990-05] Policy Of Truth (CDBONG19)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\20\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\21\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\22\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\23\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\24\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\24\[1994-01] In Your Room (CDBONG24)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\24\[1994-01] In Your Room (XLCDBONG24)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\25\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\25\[1997-02] Barrel Of A Gun (CDBONG25)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\25\[1997-02] Barrel Of A Gun (LCDBONG25)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\26\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\29\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\29\[1998-09] Only When I Lose Myself (CDBONG29)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\29\[1998-09] Only When I Lose Myself (XLCDBONG29)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\31\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\31\[2001-07] I Feel Loved (CDBONG31)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\32\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\32\UK CD\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\32\UK LCD\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\33\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\cdbong36\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\depeche mode - dvdbong36\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\depeche mode - lcdbong36 (flac)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\[2005-12] A Pain That I'm Used To (CDBONG36)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\39\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\39\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\4\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\5\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\6\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\8\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Beat Box Mix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\pochettes_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Recherche Google DMBX_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_mutelibtech_com-depechemode-images-dmbx1_100_jpg_fichiers\CAE70DOX_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_mutelibtech_com-depechemode-images-dmbx1_100_jpg_fichiers\singlesboxset_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_shout_ru-releases-CDBong15_jpg_fichiers\dm_releases2004_e_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_shout_ru-releases-CDBong15_jpg_fichiers\imgres_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\[2006-02] Suffer Well (PRO-CD-101702)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Almost Acoustic Xmas - Los Angeles 98\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Another Black Day\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Apollo 82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Athens 2001\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\BBC London 1986\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Celebration\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Celebration - Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Day\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Violation The Special 15th Strike Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Boys Are Boys - Hannover 82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Catching Up With\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Classics Beats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Classics Beats\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Classics Beats\CD 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Construction Time Again\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Cosmic Blues\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Deliriously Surrendered In Helsinki\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Depeche_Mode_-_Enjoy_the_Silence__Incl_16_B_Remixes-Vinyl-2004-QMI\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Down\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Rumours\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Silence 04 by Richard X and Ewan Pearson and Cicada and The Brat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Silence 04 by Timo Maas and Ewan Pearson\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Silence 04 by Timo Maas and Ewan Pearson and Black Strobe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Exciter\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Exciter Remixes (2001)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Exciter Remixes (2001)\artwork\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Exciting Ice Palace\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\First Stand In Vienna 88\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\For the masses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Gothenburg.1998\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Halo Promotional\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Hysterika - Milan 84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\In The Mix (The Reunion 15th) Best Of The Mix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Les Bains Douches - Paris - 81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Live For BBC 1983\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Music For The Masses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Never Let Me Down Again Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\New Life Amsterdam 83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Painkillers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Paris Bercy 1998\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Performance - Basel 84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Personal Funky Beats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Playing The Angel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 04 by Black Strobe and Cicada and Rex The Dog\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 04 by Goldfrapp and Ulrich Schnauss\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Depeche Mode 2004 - The Remixes 81 - 04 Limited Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Depeche Mode 2004 - The Remixes 81 - 04 Limited Edition\CD3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Depeche Mode 2004 - The Remixes 81 - 04 Limited Edition\RARE TRACKS BUNDLE CD4 bonus secret site\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Depeche Mode - Black\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Depeche Mode - Blue\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Depeche Mode - Green\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Depeche Mode - Red\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Depeche Mode - White\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Shades\Depeche Mode - Yellow\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Silence\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Singles Remix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Singles Remix\Covers originaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\+++ Donny's Depeche Mode Page +++ Donny's Depeche Mode Page +++ Donny's Depeche Mode Page +++_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Depeche Mode - Le site belge - (index)_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\DevoteeM Archiv - Devotee Downloads_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Kaiser's DM Remixes Download Center_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Résultats de la recherche d’image Google à partir de http--www_tuug_utu_fi-~jaakko-kuvat-andrew_gif_fichiers\articles2_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Résultats de la recherche d’image Google à partir de http--www_tuug_utu_fi-~jaakko-kuvat-andrew_gif_fichiers\CAEVIZUX_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Some Great Reward\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Songs Of Faith And Devotion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Songs Of Faith And Devotion Live\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Speak And Spell\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Special Duo Remix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Best Of\Depeche Mode - The Best of Volume 1 (Remixes) [2006] - House [www.torrentazos.com]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\-Depeche Mode-_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1980\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1981\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1982\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1983\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1984\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1985\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1986\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\Version traduite de la page http--www_devoteem_de-archiv-modules-archiv-index_phpid_art=1_fichiers\displayimage_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\Version traduite de la page http--www_devoteem_de-archiv-modules-archiv-index_phpid_art=1_fichiers\translate_n_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Secret Remixes\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Secret Remixes\CD 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\A PAIN That I'm Used To\(CDBong36)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\A PAIN That I'm Used To\(LCDBONG 36)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\A PAIN That I'm Used To\(Promo CDM)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Depeche Mode - Precious US Promo [DJSounds PROMO Pack]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Depeche Mode - suffer_well_club_promo-mixs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Depeche_Mode-Martyr-Promo-CDM-2006-WRE_www.trancezone.pun.pl\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Enjoy The Silence 04\(CDBONG 34)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Martyr [Club Promo CDM] (2006)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(CDM)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(PCDBong35)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(Pro-CDR-101658) (US Promo)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(Promo)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(RCDBong35)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Shake The Disease [20 Years Aniversary] [Covers] [2005]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Suffer Well\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Singles 81-85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Singles 86-98\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Symphonic Music Of Depeche Mode\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Very Best Of\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Tiny Girls\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Toys Glasgow Tiffany's 82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultimate Remixes 81 04\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 4\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 5\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 6 Millennium Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 7 Emotion 2000 Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 8\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\Downloads_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Violator\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Violator Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Walking In My Boots - San Francisco 94\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Westwood In Concert 85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Wonderworld 81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violation Backing Tapes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violation Backing Tapes\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violator Tour - Stockholm Sweden (Globen)-Une Nuit A La Mode-[1990-10-06]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violator Tour - Stockholm Sweden (Globen)-Une Nuit A La Mode-[1990-10-06]\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DJ Club House Music\VA - Fuck Me Im Famous Volume 2 [2005] [House] [Covers]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\1-Dreaming of me 20-02-81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\2-New life 13-06-81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\3-Just can't get enough 07-09-81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\4-See you 29-01-82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\5-The meaning of love 26-04-82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\6-Leave in silence 16-08-82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\07-Get the balance right! 31-01-83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\08-Everything counts 11-08-83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\09-Love in itself 19-09-83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\10-People are people 21-03-84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\11-Master and servant 20-08-84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\12-Blasphemous rumours 29-10-84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\13-Shake the disease 28-04-85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\14-It's called a heart 16-09-85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\15-Stripped 10-02-86\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\16-A question of lust 14-04-86\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\17-A question of time 11-08-86\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\18-Little 15 16-05-88\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\Covers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\19-Strangelove 13-04-87\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\20-Never let me down again 24-08-87\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\21-Behind the wheel 28-12-87\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\22-Everything counts-live 13-02-89\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\23-Personal Jesus 29-08-89\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\24-Enjot the silence 05-02-90\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\25-Policy of truth 07-05-90\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\26-World in my eyes 17-09-90\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\27-I feel you 15-02-93\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\28-Walking in my shoes 29-04-93\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\29-Condemnation 13-09-93\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\30-In you room 10-01-94\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\31-Barrel of a gun 03-02-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\32-It's no good 31-03-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\33-Home 16-06-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\34-Useless 20-10-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\35-Only when I lose myself 07-09-98\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\36-Dream on 23-04-01\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Better Living Through Chemistry\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Greates Remixs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Halfway Between The Gutter And The Stars\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\On The Floor At The Boutique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\You've Come A Long Way Baby\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Gorillaz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Gorillaz\2004 Gorillaz - Greatest Hits\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Martin Gore\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Martin Gore\An Italian Night With Martin Gore\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Moby - Hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Musique radioblog\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Musique radioblog\musik marion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Musique radioblog\musik marion\Musique mp3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Back To Mine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Brotherhood\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Get Ready\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Low Life\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Movement\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Power Corruption & Lies\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Retro\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Sustance\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Sustance\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Sustance\CD 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\The Best Of\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\The Rest Of\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Waiting For The Siren's Call\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Always Outnumbered Never Outgunned\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Experience Expanded\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Music For The Jilted Generation\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Rare & Remixed\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\The Dirtchamber Sessions Vol. 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\The Fat Of The Land\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Sean Paul\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Sean Paul\The Trinity\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Tears For Fears\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\The Servant\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\The Servant\The Servant\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes fichiers MSN reçus\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes Google Gadgets\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes Historiques de Conversation\février 2008\Images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Anni. maryvonne 14 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Elne avril 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Elne été 2004\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\La Bande Janvier 1990\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\rodrigue\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\virginie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Concert Depeche Mode Toulouse 03 02 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Concert Depeche Mode Toulouse 03 02 2006\DM 03 02 06 à Toulouse\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\desg\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\Humour.com\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\pack_david_guetta\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\police halo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\04 02 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\04 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\06 08 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\06 08 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\07 07 2008 carca\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\07 08 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\17 08 2008\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\20 08 2008\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\2008 gorges galamus\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\21 10 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\25 05 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\30 04 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\anniv maion 2008\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv Mathilde 01 01 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv nath 2007\10150101\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv nath 2007\10171103\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv nath 2007\10271103\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv Nath 37 ans\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv tom 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10070805\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\100_FUJI\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10170803\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10170804\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10170805\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10270804\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10270805\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10470723\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10770729\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10870731\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire thomas 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme Benji 2006\09 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme Benji 2006\10 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme Benji 2006\11 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme théo 04 03 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\DIVERS 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\DIVERS 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\fete de fin année marion 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Fete fin annee marion 24 06 05\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\karting 2008\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\pique nique 08 09 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Premier CSO Marion 15 10 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\St Frajou 13 01 2008\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\St Frajou gelé 01 01 2008\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Images Barcelone\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Images Barcelone\Images a mettre sur CD\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\palmOne Photos\philip\Expansion card 6eb\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\palmOne Photos\philip\Expansion card 7c05\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\palmOne Photos\philip\Handheld\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Snapshot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Snapshot\Movie Snapshot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Anni. maryvonne 14 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\A CHARGER SUR SITE INTERNET\Музыкальные и видео файлы Depeche Mode для свободного скачивания_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Behind The Wheel\Depeche_Mode_-_Behind_The_Wheel_(Audiorobbers_Mix)-(Whitelabel-Vinyl)-2005-DRUM\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Exciter Tour Barcelona 2001\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Some Great Reward Tour\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Strange Too 1990 VHSrip\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Suffer Well\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Television Set In Amsterdam 81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Touring The Angel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Touring The Angel\Rock Am Ring\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Films\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Malcom\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Mariés deux enfants\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\soiree saint frajou 08 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\The Muppet Show\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Vidéos papa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Vidéos papa\SUR K7 CAMERA\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Vidéos papa\SUR K7 VIDEO\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\9 télécom\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\9 télécom\conexion ADSL 512 K st frajou 10 2005_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\9 télécom\Modification de l'offre neuf telecom le 22 12 2004_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Autoradio\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Autoradio\1982 PIONEER car radios_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Perpignan\Baho\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Perpignan\Torreilles\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Budget\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Factures pour déménageurs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Itinéraire Lille Oliat_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Photos au premier jour le 12 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Photos pendant travaux cuisines\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Achat\Photos pendant visite\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Plans\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Plans\Photos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Vente\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Vente\Compromis de vente Faches thumesnil\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\maisons\Saint-Frajou\Vente\Photos au dernier jour le 09 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Mutation pour Blagnac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Nouvel emploi\ANPE\Mes télécandidatures_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Nouvel emploi\ASSEDIC\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Nouvel emploi\Big Mat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Nouvel emploi\Kronembourg\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Nouvel emploi\La plateforme du batiment\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Nouvel emploi\Mr Bricolage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Photo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Voiture\Amende\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Voiture\Assurance auto\Proposition auchan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Voiture\Assurance auto\Proposition groupama\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Affiche axe mrf\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Dossiers Internet de thomas\Temporary Internet Files\Content.IE5\DB0D5ISW\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\50 Cents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\50 Cents\50 Cent - (Before) Curtis [2007] [www.Us-Warez.Com]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\50 Cents\The Massacre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Mes vidéos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\UNSC_Edition.bootskin\Thumbs.dble [WARNING] The file could not be opened! C:\eJay\Thumbs.dble [WARNING] The file could not be opened! C:\eJay\Dance5_Demo\eJay\eJay\ArrangerRessources\Thumbs.dble [WARNING] The file could not be opened! C:\eJay\Techno4_Rave4_Demo\eJay\ejay\Modules\ArrangerConstants\Runtime\Thumbs.dble [WARNING] The file could not be opened! C:\pmw\Thumbs.dble [WARNING] The file could not be opened! C:\pointsoft\images\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Activision\Dark Reign\dark\graphics\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Activision\Dark Reign\dark\graphics\INTFACE\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Azureus\Incoming\50_Cent-Curtis_(Special_Edition)-2007-VAG_INT\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Beneton Movie GIF\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\DivX\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Documents To Go\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\DVD Shrink\Still Images\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\HappyCollection_2.2d\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\JDA\Intactix casto\Photos\Logos\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\JDA\Intactix casto\Photos\Photos ILV\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\JDA\Intactix casto\Photos\Photos mobiliers\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\JDA\Intactix casto\Photos\Photos produits\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\JDA\Intactix Tridome\Photos logos\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\K-Lite Codec Pack\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Labtec\WebCam\Labtec\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\ma-config.com\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Messenger\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Microsoft Games\Halo\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\cagcat10\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\office10\autoshap\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\office10\bullets\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\office10\lines\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Mozilla Firefox\res\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Navilog1\Process.exe [DETECTION] Contains signature of the SPR/Processor.20 program C:\Program Files\palmOne\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Components\Resources\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Components\Resources\HSW\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Components\Resources\Samples\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\philip\Photos\offline copy location\2e202020\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Themes\Resources\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\RubyFortune\theme\rubyfortune\global\commonframes\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\SLD Codec Pack\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Video Convert Master\skins\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\vmntoolbar\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Windows Media Connect\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Windows Media Connect 2\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Windows Media Player\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\WinISO\Thumbs.dble [WARNING] The file could not be opened! C:\Sierra\Empereur\DATA\Thumbs.dble [WARNING] The file could not be opened! C:\Sierra\Empereur\Res\Icons\Thumbs.dble [WARNING] The file could not be opened! C:\Sierra\Empereur\Res\Images\Thumbs.dble [WARNING] The file could not be opened! C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP5\A0018056.exe [DETECTION] Contains signature of the SPR/Processor.20 program C:\WINDOWS\Thumbs.dble [WARNING] The file could not be opened! C:\WINDOWS\system32\config\DEFAULT [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SOFTWARE [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SYSTEM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! The path L:\ could ot be found! Le fichier spécifié est introuvable. G:\securite PC\mbam-setup analyse PC.exe [WARNING] The file could not be opened! G:\securite PC\zaSetup_fr.exe [WARNING] The file could not be opened! The path D:\ could ot be found! Le périphérique n'est pas prêt. The path E:\ could ot be found! Le périphérique n'est pas prêt. End of the scan: jeudi 25 décembre 2008 19:09 Used time: 2:58:34 min The scan has been done completely. 11056 Scanning directories 359802 Files were scanned 2 viruses and/or unwanted programs was found 0 files were deleted 0 files were repaired 2 files were moved to quarantine 0 files were renamed 8509 Archives were scanned 1370 Warnings 1 Notes A+
  9. Bonsoir, Je t'envoie les 3 rapports Search Navipromo version 3.7.0 commencé le 24/12/2008 à 16:41:52.39 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!! !!! Postez ce rapport sur le forum pour le faire analyser !!! !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!! Outil exécuté depuis C:\Program Files\navilog1 Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2 X86-based PC ( Uniprocessor Free : AMD Athlon XP 3000+ ) BIOS : Phoenix - AwardBIOS v6.00PG USER : philippe ( Administrator ) BOOT : Normal boot Antivirus : Norton AntiVirus 2005 2005 (Activated) Firewall : ZoneAlarm Firewall 7.0.337.000 (Activated) C:\ (Local Disk) - NTFS - Total:144 Go (Free:51 Go) D:\ (CD or DVD) E:\ (CD or DVD) F:\ (Local Disk) - FAT32 - Total:6 Go (Free:5 Go) G:\ (USB) - FAT - Total:1010 Mo (Free:0 Go) L:\ (Local Disk) - FAT32 - Total:465 Go (Free:289 Go) Recherche executé en mode normal *** Recherche Programmes installés *** Favorit *** Recherche dossiers dans "C:\WINDOWS" *** *** Recherche dossiers dans "C:\Program Files" *** *** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" *** *** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" *** *** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" *** *** Recherche dossiers dans "C:\Documents and Settings\philippe\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\MARION~1.SN2\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\nathalie\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\PROPRI~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\thomas\applic~1" *** *** Recherche dossiers dans "C:\Documents and Settings\philippe\locals~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\MARION~1.SN2\locals~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\nathalie\locals~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\thomas\locals~1\applic~1" *** *** Recherche dossiers dans "C:\Documents and Settings\philippe\menudm~1\progra~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" *** *** Recherche dossiers dans "C:\DOCUME~1\MARION~1.SN2\menudm~1\progra~1" *** *** Recherche dossiers dans "C:\DOCUME~1\nathalie\menudm~1\progra~1" *** *** Recherche dossiers dans "C:\DOCUME~1\thomas\menudm~1\progra~1" *** *** Recherche avec Catchme-rootkit/stealth malware detector par gmer *** pour + d'infos : http://www.gmer.net *** Recherche avec GenericNaviSearch *** !!! Tous ces résultats peuvent révéler des fichiers légitimes !!! !!! A vérifier impérativement avant toute suppression manuelle !!! * Recherche dans "C:\WINDOWS\system32" * * Recherche dans "C:\Documents and Settings\philippe\locals~1\applic~1" * * Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" * * Recherche dans "C:\DOCUME~1\MARION~1.SN2\locals~1\applic~1" * * Recherche dans "C:\DOCUME~1\nathalie\locals~1\applic~1" * * Recherche dans "C:\DOCUME~1\thomas\locals~1\applic~1" * *** Recherche fichiers *** *** Recherche clés spécifiques dans le Registre *** !! Les clés trouvées ne sont pas forcément infectées !! HKEY_CURRENT_USER\Software\Lanconfig trouvé ! [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ikeweieqgu"="c:\\documents and settings\\philippe\\local settings\\application data\\ikeweieqgu.exe ikeweieqgu" *** Module de Recherche complémentaire *** (Recherche fichiers spécifiques) 1)Recherche nouveaux fichiers Instant Access : 2)Recherche Heuristique : * Dans "C:\WINDOWS\system32" : * Dans "C:\Documents and Settings\philippe\locals~1\applic~1" : * Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" : * Dans "C:\DOCUME~1\MARION~1.SN2\locals~1\applic~1" : * Dans "C:\DOCUME~1\nathalie\locals~1\applic~1" : * Dans "C:\DOCUME~1\thomas\locals~1\applic~1" : 3)Recherche Certificats : Certificat Egroup trouvé ! Certificat Electronic-Group trouvé ! Certificat Montorgueil absent ! Certificat OOO-Favorit trouvé ! Certificat Sunny-Day-Design-Ltd absent ! 4)Recherche autres dossiers et fichiers connus : *** Analyse terminée le 24/12/2008 à 16:58:20.43 *** Clean Navipromo version 3.7.0 commencé le 24/12/2008 à 17:01:01.90 Outil exécuté depuis C:\Program Files\navilog1 Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2 X86-based PC ( Uniprocessor Free : AMD Athlon XP 3000+ ) BIOS : Phoenix - AwardBIOS v6.00PG USER : philippe ( Administrator ) BOOT : Normal boot Antivirus : Norton AntiVirus 2005 2005 (Activated) Firewall : ZoneAlarm Firewall 7.0.337.000 (Activated) C:\ (Local Disk) - NTFS - Total:144 Go (Free:51 Go) D:\ (CD or DVD) E:\ (CD or DVD) F:\ (Local Disk) - FAT32 - Total:6 Go (Free:5 Go) G:\ (USB) - FAT - Total:1010 Mo (Free:0 Go) L:\ (Local Disk) - FAT32 - Total:465 Go (Free:289 Go) Mode suppression automatique avec prise en charge résultats Catchme et GNS Nettoyage exécuté au redémarrage de l'ordinateur *** fsbl1.txt non trouvé *** (Assurez-vous que Catchme n'avait rien trouvé lors de la recherche) *** Suppression avec sauvegardes résultats GenericNaviSearch *** * Suppression dans "C:\WINDOWS\System32" * * Suppression dans "C:\Documents and Settings\philippe\locals~1\applic~1" * * Suppression dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" * * Suppression dans "C:\DOCUME~1\MARION~1.SN2\locals~1\applic~1" * * Suppression dans "C:\DOCUME~1\nathalie\locals~1\applic~1" * * Suppression dans "C:\DOCUME~1\thomas\locals~1\applic~1" * *** Suppression dossiers dans "C:\WINDOWS" *** *** Suppression dossiers dans "C:\Program Files" *** *** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" *** *** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1" *** *** Suppression dossiers dans "c:\docume~1\alluse~1\applic~1" *** *** Suppression dossiers dans "C:\Documents and Settings\philippe\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\MARION~1.SN2\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\nathalie\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\PROPRI~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\thomas\applic~1" *** *** Suppression dossiers dans "C:\Documents and Settings\philippe\locals~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\MARION~1.SN2\locals~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\nathalie\locals~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\thomas\locals~1\applic~1" *** *** Suppression dossiers dans "C:\Documents and Settings\philippe\menudm~1\progra~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" *** *** Suppression dossiers dans "C:\DOCUME~1\MARION~1.SN2\menudm~1\progra~1" *** *** Suppression dossiers dans "C:\DOCUME~1\nathalie\menudm~1\progra~1" *** *** Suppression dossiers dans "C:\DOCUME~1\thomas\menudm~1\progra~1" *** *** Suppression fichiers *** *** Suppression fichiers temporaires *** Nettoyage contenu C:\WINDOWS\Temp effectué ! Nettoyage contenu C:\Documents and Settings\philippe\locals~1\Temp effectué ! *** Traitement Recherche complémentaire *** (Recherche fichiers spécifiques) 1)Suppression avec sauvegardes nouveaux fichiers Instant Access : 2)Recherche, création sauvegardes et suppression Heuristique : * Dans "C:\WINDOWS\system32" * * Dans "C:\Documents and Settings\philippe\locals~1\applic~1" * * Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" * * Dans "C:\DOCUME~1\MARION~1.SN2\locals~1\applic~1" * * Dans "C:\DOCUME~1\nathalie\locals~1\applic~1" * * Dans "C:\DOCUME~1\thomas\locals~1\applic~1" * *** Sauvegarde du Registre vers dossier Safebackup *** sauvegarde du Registre réalisée avec succès ! *** Nettoyage Registre *** Nettoyage Registre Ok *** Certificats *** Certificat Egroup supprimé ! Certificat Electronic-Group supprimé ! Certificat Montorgueil absent ! Certificat OOO-Favorit supprimé ! Certificat Sunny-Day-Design-Ltdt absent ! *** Recherche autres dossiers et fichiers connus *** *** Nettoyage terminé le 24/12/2008 à 17:12:22.85 *** Malwarebytes' Anti-Malware 1.31 Version de la base de données: 1456 Windows 5.1.2600 Service Pack 2 24/12/2008 17:47:44 mbam-log-2008-12-24 (17-47-44).txt Type de recherche: Examen rapide Eléments examinés: 64191 Temps écoulé: 12 minute(s), 23 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté) A+ et joyeux noel
  10. Bonjour, Depuis pas mal de temps mon fixe est tres lent au demarrage et dans l'execution des taches.Il y a de plus de nouveau fichiers avec des appelations composées de suite de chiffre et de lettre ou alors avec des symboles inconnus ( du moins pour moi) Pouvez vous m'aider? Je poste un rapport HJT à tout hazard Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 14:36:47, on 24/12/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\WINDOWS\system32\fxssvc.exe C:\WINDOWS\Explorer.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\Program Files\Windows Defender\MSASCui.exe C:\APPS\OD2\OD2State.exe C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\Program Files\Neuf\Kit\WiFi\9wifi.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe C:\Corel\Graphics8\Programs\MFIndexer.exe C:\Program Files\NETGEAR\WG111v3\WG111v3.exe C:\PROGRA~1\WIDCOMM\LOGICI~1\BTSTAC~1.EXE C:\Program Files\Windows Media Player\wmplayer.exe G:\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://recherche.neuf.fr/ie/default.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://recherche.neuf.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://recherche.neuf.fr/ R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://recherche.neuf.fr/ie/default.html R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {206E52E0-D52E-11D4-AD54-0000E86C26F6} - C:\PROGRA~1\FRESHD~1\FRESHD~1\fdcatch.dll O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O3 - Toolbar: FreshDownload Bar - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} - (no file) O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] "C:\Program Files\Neuf\Kit\WiFi\9wifi.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO O4 - HKCU\..\Run: [ikeweieqgu] c:\documents and settings\philippe\local settings\application data\ikeweieqgu.exe ikeweieqgu O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: Corel MEDIA FOLDERS INDEXER 8.LNK = C:\Corel\Graphics8\Programs\MFIndexer.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\microsoft office\Office\OSA9.EXE O4 - Global Startup: NETGEAR WG111v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG111v3\WG111v3.exe O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: FreshDownload - {777014FB-6979-43B9-8603-DC3D8824C0DE} - C:\WINDOWS\system32\shdocvw.dll O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{1EE29CCF-D5B1-4B3A-99AF-627C48AD75D9}: NameServer = 192.168.1.1 O23 - Service: AntiVir Scheduler (AntiVirScheduler) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Logitech Inc. - (no file) O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 11772 bytes A+
  11. Bonsoir, Tout est bien qui finit bien . Je te remercie et ferai de nouveau appel au zebulon pour un second PC fixe . Pour l'instant je n'arrive pas à le connecter au net via le ouifi mais je ne desespere pas d'y arriver un jour. Bonne soirée, la mienne s'annonce pas mal puisque ma femme me réclame, et je te souhaite de bonnes fetes de fin d'année A+
  12. Bonsoir, Voici le premier rapport combofix ComboFix 08-12-21.01 - marion 2008-12-21 21:45:29.2 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.511.209 [GMT 1:00] Lancé depuis: c:\documents and settings\marion.CLAIRDELUNE\Desktop\ComboFix.exe Commutateurs utilisés :: c:\documents and settings\marion.CLAIRDELUNE\Desktop\CFScript.txt * Un nouveau point de restauration a été créé . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . c:\program files\AskBarDis c:\program files\AskBarDis\bar\bin\askBar.dll c:\program files\AskBarDis\bar\bin\askPopStp.dll c:\program files\AskBarDis\bar\bin\AskService.exe c:\program files\AskBarDis\bar\bin\AskSplash.exe c:\program files\AskBarDis\bar\bin\AskTBApp.exe c:\program files\AskBarDis\bar\bin\ASKUpgrade.exe c:\program files\AskBarDis\bar\bin\psvince.dll c:\program files\AskBarDis\bar\Cache\022F8201 c:\program files\AskBarDis\bar\Cache\022F88BC c:\program files\AskBarDis\bar\Cache\02312823.bin c:\program files\AskBarDis\bar\Cache\023138AF.bin c:\program files\AskBarDis\bar\Cache\0231414A.bin c:\program files\AskBarDis\bar\Cache\02314302.bin c:\program files\AskBarDis\bar\Cache\0231447F.bin c:\program files\AskBarDis\bar\Cache\0231462E.bin c:\program files\AskBarDis\bar\Cache\02314872.bin c:\program files\AskBarDis\bar\Cache\files.ini c:\program files\AskBarDis\bar\History\search c:\program files\AskBarDis\bar\Settings\AskLogo.ico c:\program files\AskBarDis\bar\Settings\config.dat c:\program files\AskBarDis\bar\Settings\config.dat.bak c:\program files\AskBarDis\bar\Settings\prevcfg.htm c:\program files\AskBarDis\unins000.dat c:\program files\AskBarDis\unins000.exe . ((((((((((((((((((((((((((((((((((((((( Pilotes/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_ASKSERVICE -------\Legacy_ASKUPGRADE -------\Service_ASKService -------\Service_ASKUpgrade ((((((((((((((((((((((((((((( Fichiers créés du 2008-11-21 au 2008-12-21 )))))))))))))))))))))))))))))))))))) . 2008-12-19 21:50 . 2004-08-04 00:56 152,576 --a--c--- c:\windows\system32\irftp.exe 2008-12-19 21:50 . 2004-08-04 00:56 152,576 --a--c--- c:\windows\system32\dllcache\irftp.exe 2008-12-19 21:50 . 2004-08-04 00:56 27,136 --a--c--- c:\windows\system32\irmon.dll 2008-12-19 21:50 . 2004-08-04 00:56 27,136 --a--c--- c:\windows\system32\dllcache\irmon.dll 2008-12-19 21:50 . 2004-08-04 00:56 8,192 --a--c--- c:\windows\system32\wshirda.dll 2008-12-19 21:50 . 2004-08-04 00:56 8,192 --a--c--- c:\windows\system32\dllcache\wshirda.dll 2008-12-19 08:17 . 2008-06-13 14:10 272,128 -----c--- c:\windows\system32\dllcache\bthport.sys 2008-12-19 08:15 . 2008-08-14 10:57 2,185,984 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe 2008-12-19 08:15 . 2008-08-14 10:55 2,142,720 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe 2008-12-19 08:15 . 2008-08-14 10:18 2,062,976 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe 2008-12-19 08:15 . 2008-08-14 10:18 2,020,864 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe 2008-12-19 08:14 . 2008-10-24 12:25 455,936 -----c--- c:\windows\system32\dllcache\mrxsmb.sys 2008-12-19 08:10 . 2008-10-16 14:09 31,768 --a--c--- c:\windows\system32\wucltui.dll.mui 2008-12-19 08:10 . 2008-10-16 14:07 23,576 --a--c--- c:\windows\system32\wuaucpl.cpl.mui 2008-12-19 08:10 . 2008-10-16 14:07 23,576 --a--c--- c:\windows\system32\wuapi.dll.mui 2008-12-19 08:10 . 2008-10-16 14:07 18,456 --a--c--- c:\windows\system32\wuaueng.dll.mui 2008-12-18 21:19 . 2008-12-18 22:15 <DIR> d----c--- c:\program files\Navilog1 2008-12-18 07:05 . 2008-12-18 07:05 <DIR> d----c--- C:\rsit 2008-12-18 07:05 . 2008-12-18 07:07 <DIR> d----c--- c:\program files\trend micro 2008-12-17 18:34 . 2004-08-03 23:04 156,672 --a--c--- c:\windows\system32\dllcache\winzm.ime 2008-12-17 18:34 . 2004-08-03 23:04 156,672 --a--c--- c:\windows\system32\dllcache\winsp.ime 2008-12-17 18:34 . 2004-08-03 23:04 156,672 --a--c--- c:\windows\system32\dllcache\winpy.ime 2008-12-17 18:34 . 2001-08-23 13:00 28,288 --a--c--- c:\windows\system32\dllcache\xjis.nls 2008-12-17 18:32 . 2001-08-23 13:00 1,875,968 --a--c--- c:\windows\system32\dllcache\msir3jp.lex 2008-12-17 18:31 . 2001-08-23 13:00 1,158,818 --a--c--- c:\windows\system32\dllcache\korwbrkr.lex 2008-12-17 18:30 . 2001-08-23 13:00 13,463,552 --a--c--- c:\windows\system32\dllcache\hwxjpn.dll 2008-12-17 18:29 . 2001-08-23 13:00 1,677,824 --a--c--- c:\windows\system32\dllcache\chsbrkr.dll 2008-12-17 18:28 . 2004-08-04 00:56 2,134,528 --a--c--- c:\windows\system32\dllcache\smtpsnap.dll 2008-12-17 18:25 . 2008-12-17 18:25 488 -rah-c--- c:\windows\system32\logonui.exe.manifest 2008-12-17 18:24 . 2001-08-23 13:00 16,384 --a--c--- c:\windows\system32\dllcache\isignup.exe 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\WindowsShell.Manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\wuaucpl.cpl.manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\sapi.cpl.manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\nwc.cpl.manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\ncpa.cpl.manifest 2008-12-17 18:11 . 2001-08-23 13:00 24,661 --a--c--- c:\windows\system32\spxcoins.dll 2008-12-17 18:11 . 2001-08-23 13:00 24,661 --a--c--- c:\windows\system32\dllcache\spxcoins.dll 2008-12-17 18:11 . 2001-08-23 13:00 13,312 --a--c--- c:\windows\system32\irclass.dll 2008-12-17 18:11 . 2001-08-23 13:00 13,312 --a--c--- c:\windows\system32\dllcache\irclass.dll 2008-12-17 18:11 . 2008-12-19 23:18 1,393 --a--c--- c:\windows\imsins.BAK 2008-12-17 17:58 . 2008-12-17 17:58 268 --ah-c--- C:\sqmdata06.sqm 2008-12-17 17:58 . 2008-12-17 17:58 244 --ah-c--- C:\sqmnoopt06.sqm 2008-12-13 22:13 . 2008-12-16 20:06 10,192 --a--c--- c:\windows\setupapi.old 2008-12-09 18:39 . 2008-12-09 18:39 <DIR> d----c--- c:\program files\File Shredder 2008-12-09 18:19 . 2008-12-09 18:19 <DIR> d----c--- c:\program files\FreeUndelete 2008-12-09 17:19 . 2008-12-09 17:22 <DIR> d----c--- c:\program files\HappyCollection_2.2d 2008-12-09 17:16 . 2008-12-09 17:22 13,030 --a--c--- C:\PDOXUSRS.NET 2008-12-09 17:14 . 1999-01-20 05:01 210,032 --a--c--- c:\windows\system32\DBCLIENT.DLL 2008-12-09 17:13 . 2008-12-09 17:13 <DIR> d----c--- c:\program files\Common Files\Borland Shared 2008-12-09 17:13 . 1999-11-12 05:11 183,808 --a--c--- c:\windows\system32\BDEADMIN.CPL 2008-12-09 16:37 . 2008-12-09 18:10 <DIR> d----c--- c:\windows\system32\NtmsData 2008-12-08 20:47 . 2008-12-08 20:47 <DIR> d--h-c--- c:\windows\PIF 2008-12-07 18:36 . 2008-12-07 18:36 <DIR> d----c--- c:\program files\Free Audio Pack 2008-12-07 18:36 . 2005-02-24 12:10 2,084,864 --a--c--- c:\windows\system32\AudDesign.dll 2008-12-07 18:36 . 2004-03-08 23:00 662,288 --a--c--- c:\windows\system32\MSCOMCT2.OCX 2008-12-07 18:36 . 1998-06-16 23:00 516,173 --a--c--- c:\windows\system32\MSVCP60D.DLL 2008-12-07 18:36 . 2005-02-24 12:11 479,232 --a--c--- c:\windows\system32\AudioVisu.dll 2008-12-07 18:36 . 2005-02-24 15:21 458,752 --a--c--- c:\windows\system32\AudPlayer.dll 2008-12-07 18:36 . 2005-03-10 16:00 454,656 --a--c--- c:\windows\system32\AudioRecord.dll 2008-12-07 18:36 . 2005-02-24 12:10 417,792 --a--c--- c:\windows\system32\AudDisplay.dll 2008-12-07 18:36 . 1998-06-16 23:00 385,100 --a--c--- c:\windows\system32\MSVCRTD.DLL 2008-12-07 18:36 . 2004-03-08 23:00 224,016 --a--c--- c:\windows\system32\TABCTL32.OCX 2008-12-07 18:36 . 1998-06-24 00:00 164,144 --a--c--- c:\windows\system32\COMCT232.OCX 2008-12-07 18:36 . 1998-07-12 23:00 59,904 --a--c--- c:\windows\system32\Mscc2fr.dll 2008-12-07 18:36 . 1998-07-12 23:00 21,504 --a--c--- c:\windows\system32\TABCTFR.DLL 2008-12-04 22:21 . 2005-03-11 18:37 1,986,560 --a--c--- c:\windows\system32\AudFile.dll 2008-12-04 22:21 . 2005-02-24 13:11 1,212,416 --a--c--- c:\windows\system32\AudioInfos.dll 2008-12-04 22:21 . 2005-02-24 12:51 348,160 --a--c--- c:\windows\system32\WMAFile.dll 2008-12-04 22:21 . 2006-11-18 11:38 200,704 --a--c--- c:\windows\system32\vbalExpBar6.ocx 2008-12-04 22:21 . 2005-01-10 12:54 116,296 --a--c--- c:\windows\system32\NCTWMAProfiles.prx 2008-12-04 22:21 . 2000-05-22 14:58 115,920 --a--c--- c:\windows\system32\msinet.OCX 2008-12-04 22:21 . 1999-03-25 18:00 101,888 --a--c--- c:\windows\system32\VB6STKIT.DLL 2008-12-04 22:21 . 2003-01-26 12:41 40,960 --a--c--- c:\windows\system32\SSubTmr6.dll 2008-12-04 22:21 . 1998-07-12 22:00 15,360 --a--c--- c:\windows\system32\inetfr.DLL 2008-12-04 22:20 . 2008-12-13 22:21 <DIR> d----c--- c:\program files\Free Easy Burner 2008-12-04 22:20 . 2003-03-18 20:20 1,060,864 --a--c--- c:\windows\system32\MFC71.dll 2008-12-04 22:20 . 2008-09-24 20:33 484,352 --a--c--- c:\windows\system32\lame_enc.dll 2008-12-04 22:20 . 2000-11-29 01:07 307,200 --a--c--- c:\windows\system32\msvcr70.dll 2008-12-04 22:20 . 1998-07-12 22:00 141,312 --a--c--- c:\windows\system32\MSCMCFR.DLL 2008-12-04 22:20 . 2003-04-18 15:29 44,544 --a--c--- c:\windows\system32\msxml4a.dll 2008-12-04 22:20 . 1998-07-12 18:00 32,768 --a--c--- c:\windows\system32\CMDLGFR.DLL 2008-12-02 21:50 . 2008-12-02 21:50 <DIR> d----c--- c:\program files\Totally Free Burner 2008-12-02 21:34 . 2008-12-02 21:34 <DIR> d----c--- c:\windows\system32\hdined32.nls.{00021401-0000-0000-C000-000000000046} 2008-12-02 21:17 . 2008-12-02 21:22 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\DeepBurner 2008-12-02 21:16 . 2008-12-02 21:24 <DIR> d----c--- c:\program files\Astonsoft 2008-12-02 12:28 . 2008-12-02 13:15 <DIR> d----c--- c:\program files\Azureus 2008-12-01 21:29 . 2008-12-09 15:44 <DIR> d----c--- C:\VEMODE_VIDEOS 2008-12-01 20:31 . 2008-12-09 16:57 <DIR> d----c--- c:\program files\VEMoDe 1.0b 2008-12-01 20:31 . 2008-12-01 20:31 <DIR> d----c--- c:\program files\AviSynth 2.5 2008-12-01 20:31 . 2008-12-01 20:31 57,344 --a--c--- c:\windows\SSEUninstaller.exe 2008-12-01 20:31 . 2008-12-01 20:31 44,544 --a--c--- c:\windows\system32\Gif89.dll 2008-12-01 20:31 . 2008-12-01 20:31 32,768 --a--c--- c:\windows\system32\ShellLnkSSE.dll 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\program files\MegauploadToolbar 2008-12-01 20:21 . 2008-12-21 20:55 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\MegauploadToolbar 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\EmailNotifier 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\documents and settings\All Users.WINDOWS\Application Data\Megaupload 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\documents and settings\All Users.WINDOWS\Application Data\EmailNotifier 2008-11-30 20:59 . 2008-12-21 18:20 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\Azureus 2008-11-30 20:59 . 2008-11-30 20:59 <DIR> d----c--- c:\documents and settings\All Users.WINDOWS\Application Data\Azureus 2008-11-30 20:57 . 2008-11-30 20:57 <DIR> d----c--- c:\program files\Common Files\i4j_jres 2008-11-28 19:37 . 2008-12-12 07:06 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\dvdcss 2008-11-27 12:33 . 2008-11-27 13:16 <DIR> d----c--- c:\program files\Dofus 2008-11-26 22:34 . 2008-11-26 22:34 <DIR> d----c--- c:\windows\system32\LogFiles . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-12-21 20:51 12,347,424 -csha-w c:\windows\system32\drivers\fidbox.dat 2008-12-21 20:50 1,710,976 -c--a-w c:\windows\Internet Logs\tvDebug.zip 2008-12-21 20:49 145,604 -csha-w c:\windows\system32\drivers\fidbox.idx 2008-12-17 17:22 --------- dc----w c:\program files\Windows Media Connect 2 2008-12-17 15:45 90,112 ----a-w c:\windows\DUMP5da6.tmp 2008-12-17 15:45 90,112 ----a-w c:\windows\DUMP5d60.tmp 2008-12-17 15:44 90,112 ----a-w c:\windows\DUMP5e1e.tmp 2008-12-17 14:46 90,112 ----a-w c:\windows\DUMP51d6.tmp 2008-12-16 18:18 90,112 ----a-w c:\windows\DUMP524e.tmp 2008-12-16 18:17 90,112 ----a-w c:\windows\DUMP5294.tmp 2008-11-30 20:19 --------- dc----w c:\program files\Vuze 2008-11-18 20:18 43,862 -c--a-w c:\windows\Internet Logs\UpdClient_2nd_2008_11_18_17_35_22_small.dmp.zip 2008-11-18 20:18 42,407 -c--a-w c:\windows\Internet Logs\UpdClient_2nd_2008_11_18_17_35_11_small.dmp.zip 2008-11-18 20:12 --------- dc----w c:\program files\Microsoft Silverlight 2008-11-18 16:50 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\vlc 2008-11-18 16:15 --------- dc-h--w c:\program files\InstallShield Installation Information 2008-11-18 16:15 --------- dc----w c:\program files\OLITEC 2008-11-18 15:33 15,890 -c--a-w c:\windows\system32\drivers\mdc8021x.sys 2008-11-18 15:24 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\WinZip 2008-11-18 15:13 --------- dc----w c:\program files\ma-config.com 2008-11-18 15:13 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\ma-config.com 2008-11-18 14:03 --------- dc----w c:\program files\MSXML 6.0 2008-11-18 14:01 --------- dc----w c:\program files\MSXML 4.0 2008-11-18 13:36 --------- dc----w c:\program files\Microsoft FrontPage 2008-11-18 13:36 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\Microsoft Web Folders 2008-11-18 13:24 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\MSNInstaller 2008-11-18 13:22 --------- dc----w c:\program files\MSN Messenger 2008-11-18 13:13 --------- dc----w c:\program files\7-Zip 2008-11-18 12:21 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\Avira 2008-11-18 11:36 21,035 -c--a-w c:\windows\system32\drivers\AegisP.sys 2008-11-18 10:30 --------- dc----w c:\program files\SonicWALL 2008-11-18 10:30 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\MailFrontier 2008-11-18 10:30 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\MailFrontier 2008-11-02 01:32 --------- dc----w c:\documents and settings\marion\Application Data\Azureus 2008-11-01 15:50 --------- dc----w c:\program files\EA GAMES 2008-10-24 11:25 455,936 -c--a-w c:\windows\system32\drivers\mrxsmb.sys 2008-10-23 12:51 284,160 -c--a-w c:\windows\system32\gdi32.dll 2008-10-16 13:13 202,776 -c--a-w c:\windows\system32\wuweb.dll 2008-10-16 13:13 1,809,944 -c--a-w c:\windows\system32\wuaueng.dll 2008-10-16 13:12 561,688 -c--a-w c:\windows\system32\wuapi.dll 2008-10-16 13:12 323,608 -c--a-w c:\windows\system32\wucltui.dll 2008-10-16 13:09 92,696 -c--a-w c:\windows\system32\cdm.dll 2008-10-16 13:09 51,224 -c--a-w c:\windows\system32\wuauclt.exe 2008-10-16 13:09 43,544 -c--a-w c:\windows\system32\wups2.dll 2008-10-16 13:08 34,328 -c--a-w c:\windows\system32\wups.dll 2008-10-16 13:06 268,648 -c--a-w c:\windows\system32\mucltui.dll 2008-10-16 13:06 208,744 -c--a-w c:\windows\system32\muweb.dll 2008-10-16 10:20 667,648 -c--a-w c:\windows\system32\wininet.dll 2008-10-03 10:15 247,326 -c--a-w c:\windows\system32\strmdll.dll 2007-04-23 13:21 269,824 -c--a-w c:\windows\inf\WG111v3\Vista64\wg111v3.sys 2007-04-23 13:11 224,896 -c--a-w c:\windows\inf\WG111v3\wg111v3.sys 2006-12-15 10:30 98,304 -c--a-w c:\windows\inf\WG111v3\UScanM.exe 2006-12-15 10:30 66,048 -c--a-w c:\windows\inf\WG111v3\EAPPkt.sys 2006-12-15 10:30 315,392 -c--a-w c:\windows\inf\WG111v3\InstallDriver.exe 2006-12-15 10:30 28,672 -c--a-w c:\windows\inf\WG111v3\SetDrv.exe 2006-12-15 10:30 212,992 -c--a-w c:\windows\inf\WG111v3\CopyWHQLDriver.exe 2006-12-15 10:30 20,480 -c--a-w c:\windows\inf\WG111v3\RTWUPath.exe 2006-12-15 10:30 19,968 -c--a-w c:\windows\inf\WG111v3\RTWREFU.EXE . ((((((((((((((((((((((((((((( snapshot@2008-12-21_20.48.59,11 ))))))))))))))))))))))))))))))))))))))))) . + 2005-10-20 19:02:28 163,328 -c--a-w c:\windows\ERDNT\subs\ERDNT.EXE - 2008-12-20 19:29:19 40,326 ----a-w c:\windows\system32\perfc009.dat + 2008-12-21 20:03:22 40,326 ----a-w c:\windows\system32\perfc009.dat - 2008-12-20 19:29:19 311,938 ----a-w c:\windows\system32\perfh009.dat + 2008-12-21 20:03:22 311,938 ----a-w c:\windows\system32\perfh009.dat . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A057A204-BACC-4D26-C39E-35F1D2A32EC8}] 2008-08-04 21:44 1947080 --a--c--- c:\progra~1\MEGAUP~1\MEGAUP~1.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{A057A204-BACC-4D26-C39E-35F1D2A32EC8}"= "c:\progra~1\MEGAUP~1\MEGAUP~1.DLL" [2008-08-04 1947080] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser] "{A057A204-BACC-4D26-C39E-35F1D2A32EC8}"= "c:\progra~1\MEGAUP~1\MEGAUP~1.DLL" [2008-08-04 1947080] [HKEY_CLASSES_ROOT\clsid\{a057a204-bacc-4d26-c39e-35f1d2a32ec8}] [HKEY_CLASSES_ROOT\megauploadtoolbar.MEGAUPLOADTOOLBAR] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360] "MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352] "MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2007-02-18 1694208] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497] "ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-07-09 919016] "Autoconfigurateur WiFi Neuf"="c:\program files\Neuf\Kit\WiFi\9wifi.exe" [2008-01-15 287984] "BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-04 c:\windows\system32\bthprops.cpl] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360] c:\documents and settings\marion\Start Menu\Programs\Startup\ Lanceur Pointsoft.lnk - c:\pointsoft\lanceur.exe [2000-11-07 71952] c:\documents and settings\All Users.WINDOWS\Start Menu\Programs\Startup\ Microsoft Office.lnk - c:\program files\Microsoft Office\Office\OSA9.EXE [1999-02-17 65588] [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\MSN Messenger\\msnmsgr.exe"= "c:\\Program Files\\MSN Messenger\\livecall.exe"= "c:\\Program Files\\Messenger\\msmsgs.exe"= S3 maconfservice;Ma-Config Service;"c:\program files\ma-config.com\maconfservice.exe" [2008-11-17 195752] S3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\system32\DRIVERS\wg111v3.sys [2007-04-23 224896] . . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.google.fr/ mWindow Title = O16 -: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_4_0.cab c:\windows\Downloaded Program Files\hardwaredetection.inf . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-12-21 21:50:31 Windows 5.1.2600 Service Pack 2 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** . ------------------------ Autres processus actifs ------------------------ . c:\windows\system32\ZoneLabs\vsmon.exe c:\program files\Avira\AntiVir PersonalEdition Classic\sched.exe c:\program files\Avira\AntiVir PersonalEdition Classic\avguard.exe c:\windows\system32\rundll32.exe . ************************************************************************** . Heure de fin: 2008-12-21 21:53:12 - La machine a redémarré ComboFix-quarantined-files.txt 2008-12-21 20:53:07 ComboFix2.txt 2008-12-21 19:49:41 Avant-CF: 45 669 191 680 bytes free Après-CF: 45,667,368,960 bytes freejt 289 --- E O F --- 2008-12-21 19:29:22 et le rapport hjt Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:58:15, on 21/12/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Neuf\Kit\WiFi\9wifi.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\explorer.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL O3 - Toolbar: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] "C:\Program Files\Neuf\Kit\WiFi\9wifi.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichier...ion_3_0_4_0.cab O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 4008 bytes A+
  13. Bonsoir, voici le rapport ComboFix 08-12-21.01 - marion 2008-12-21 20:35:19.1 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.511.230 [GMT 1:00] Lancé depuis: c:\documents and settings\marion.CLAIRDELUNE\Desktop\ComboFix.exe * Un nouveau point de restauration a été créé . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . c:\windows\IE4 Error Log.txt c:\windows\system32\tmp.reg c:\windows\system32\w70n5msg.dll . ((((((((((((((((((((((((((((( Fichiers créés du 2008-11-21 au 2008-12-21 )))))))))))))))))))))))))))))))))))) . 2008-12-21 20:23 . 2008-12-21 20:23 <DIR> d----c--- c:\windows\LastGood 2008-12-19 21:50 . 2004-08-04 00:56 152,576 --a--c--- c:\windows\system32\irftp.exe 2008-12-19 21:50 . 2004-08-04 00:56 152,576 --a--c--- c:\windows\system32\dllcache\irftp.exe 2008-12-19 21:50 . 2004-08-04 00:56 27,136 --a--c--- c:\windows\system32\irmon.dll 2008-12-19 21:50 . 2004-08-04 00:56 27,136 --a--c--- c:\windows\system32\dllcache\irmon.dll 2008-12-19 21:50 . 2004-08-04 00:56 8,192 --a--c--- c:\windows\system32\wshirda.dll 2008-12-19 21:50 . 2004-08-04 00:56 8,192 --a--c--- c:\windows\system32\dllcache\wshirda.dll 2008-12-19 08:17 . 2008-06-13 14:10 272,128 -----c--- c:\windows\system32\dllcache\bthport.sys 2008-12-19 08:15 . 2008-08-14 10:57 2,185,984 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe 2008-12-19 08:15 . 2008-08-14 10:55 2,142,720 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe 2008-12-19 08:15 . 2008-08-14 10:18 2,062,976 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe 2008-12-19 08:15 . 2008-08-14 10:18 2,020,864 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe 2008-12-19 08:14 . 2008-10-24 12:25 455,936 -----c--- c:\windows\system32\dllcache\mrxsmb.sys 2008-12-19 08:10 . 2008-10-16 14:09 31,768 --a--c--- c:\windows\system32\wucltui.dll.mui 2008-12-19 08:10 . 2008-10-16 14:07 23,576 --a--c--- c:\windows\system32\wuaucpl.cpl.mui 2008-12-19 08:10 . 2008-10-16 14:07 23,576 --a--c--- c:\windows\system32\wuapi.dll.mui 2008-12-19 08:10 . 2008-10-16 14:07 18,456 --a--c--- c:\windows\system32\wuaueng.dll.mui 2008-12-18 21:19 . 2008-12-18 22:15 <DIR> d----c--- c:\program files\Navilog1 2008-12-18 07:05 . 2008-12-18 07:05 <DIR> d----c--- C:\rsit 2008-12-18 07:05 . 2008-12-18 07:07 <DIR> d----c--- c:\program files\trend micro 2008-12-17 18:34 . 2004-08-03 23:04 156,672 --a--c--- c:\windows\system32\dllcache\winzm.ime 2008-12-17 18:34 . 2004-08-03 23:04 156,672 --a--c--- c:\windows\system32\dllcache\winsp.ime 2008-12-17 18:34 . 2004-08-03 23:04 156,672 --a--c--- c:\windows\system32\dllcache\winpy.ime 2008-12-17 18:34 . 2001-08-23 13:00 28,288 --a--c--- c:\windows\system32\dllcache\xjis.nls 2008-12-17 18:32 . 2001-08-23 13:00 1,875,968 --a--c--- c:\windows\system32\dllcache\msir3jp.lex 2008-12-17 18:31 . 2001-08-23 13:00 1,158,818 --a--c--- c:\windows\system32\dllcache\korwbrkr.lex 2008-12-17 18:30 . 2001-08-23 13:00 13,463,552 --a--c--- c:\windows\system32\dllcache\hwxjpn.dll 2008-12-17 18:29 . 2001-08-23 13:00 1,677,824 --a--c--- c:\windows\system32\dllcache\chsbrkr.dll 2008-12-17 18:28 . 2004-08-04 00:56 2,134,528 --a--c--- c:\windows\system32\dllcache\smtpsnap.dll 2008-12-17 18:25 . 2008-12-17 18:25 488 -rah-c--- c:\windows\system32\logonui.exe.manifest 2008-12-17 18:24 . 2001-08-23 13:00 16,384 --a--c--- c:\windows\system32\dllcache\isignup.exe 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\WindowsShell.Manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\wuaucpl.cpl.manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\sapi.cpl.manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\nwc.cpl.manifest 2008-12-17 18:24 . 2008-12-17 18:24 749 -rah-c--- c:\windows\system32\ncpa.cpl.manifest 2008-12-17 18:11 . 2001-08-23 13:00 24,661 --a--c--- c:\windows\system32\spxcoins.dll 2008-12-17 18:11 . 2001-08-23 13:00 24,661 --a--c--- c:\windows\system32\dllcache\spxcoins.dll 2008-12-17 18:11 . 2001-08-23 13:00 13,312 --a--c--- c:\windows\system32\irclass.dll 2008-12-17 18:11 . 2001-08-23 13:00 13,312 --a--c--- c:\windows\system32\dllcache\irclass.dll 2008-12-17 18:11 . 2008-12-19 23:18 1,393 --a--c--- c:\windows\imsins.BAK 2008-12-17 17:58 . 2008-12-17 17:58 268 --ah-c--- C:\sqmdata06.sqm 2008-12-17 17:58 . 2008-12-17 17:58 244 --ah-c--- C:\sqmnoopt06.sqm 2008-12-13 22:13 . 2008-12-16 20:06 10,192 --a--c--- c:\windows\setupapi.old 2008-12-09 18:39 . 2008-12-09 18:39 <DIR> d----c--- c:\program files\File Shredder 2008-12-09 18:19 . 2008-12-09 18:19 <DIR> d----c--- c:\program files\FreeUndelete 2008-12-09 17:19 . 2008-12-09 17:22 <DIR> d----c--- c:\program files\HappyCollection_2.2d 2008-12-09 17:16 . 2008-12-09 17:22 13,030 --a--c--- C:\PDOXUSRS.NET 2008-12-09 17:14 . 1999-01-20 05:01 210,032 --a--c--- c:\windows\system32\DBCLIENT.DLL 2008-12-09 17:13 . 2008-12-09 17:13 <DIR> d----c--- c:\program files\Common Files\Borland Shared 2008-12-09 17:13 . 1999-11-12 05:11 183,808 --a--c--- c:\windows\system32\BDEADMIN.CPL 2008-12-09 16:37 . 2008-12-09 18:10 <DIR> d----c--- c:\windows\system32\NtmsData 2008-12-08 20:47 . 2008-12-08 20:47 <DIR> d--h-c--- c:\windows\PIF 2008-12-07 18:36 . 2008-12-07 18:36 <DIR> d----c--- c:\program files\Free Audio Pack 2008-12-07 18:36 . 2005-02-24 12:10 2,084,864 --a--c--- c:\windows\system32\AudDesign.dll 2008-12-07 18:36 . 2004-03-08 23:00 662,288 --a--c--- c:\windows\system32\MSCOMCT2.OCX 2008-12-07 18:36 . 1998-06-16 23:00 516,173 --a--c--- c:\windows\system32\MSVCP60D.DLL 2008-12-07 18:36 . 2005-02-24 12:11 479,232 --a--c--- c:\windows\system32\AudioVisu.dll 2008-12-07 18:36 . 2005-02-24 15:21 458,752 --a--c--- c:\windows\system32\AudPlayer.dll 2008-12-07 18:36 . 2005-03-10 16:00 454,656 --a--c--- c:\windows\system32\AudioRecord.dll 2008-12-07 18:36 . 2005-02-24 12:10 417,792 --a--c--- c:\windows\system32\AudDisplay.dll 2008-12-07 18:36 . 1998-06-16 23:00 385,100 --a--c--- c:\windows\system32\MSVCRTD.DLL 2008-12-07 18:36 . 2004-03-08 23:00 224,016 --a--c--- c:\windows\system32\TABCTL32.OCX 2008-12-07 18:36 . 1998-06-24 00:00 164,144 --a--c--- c:\windows\system32\COMCT232.OCX 2008-12-07 18:36 . 1998-07-12 23:00 59,904 --a--c--- c:\windows\system32\Mscc2fr.dll 2008-12-07 18:36 . 1998-07-12 23:00 21,504 --a--c--- c:\windows\system32\TABCTFR.DLL 2008-12-04 22:21 . 2005-03-11 18:37 1,986,560 --a--c--- c:\windows\system32\AudFile.dll 2008-12-04 22:21 . 2005-02-24 13:11 1,212,416 --a--c--- c:\windows\system32\AudioInfos.dll 2008-12-04 22:21 . 2005-02-24 12:51 348,160 --a--c--- c:\windows\system32\WMAFile.dll 2008-12-04 22:21 . 2006-11-18 11:38 200,704 --a--c--- c:\windows\system32\vbalExpBar6.ocx 2008-12-04 22:21 . 2005-01-10 12:54 116,296 --a--c--- c:\windows\system32\NCTWMAProfiles.prx 2008-12-04 22:21 . 2000-05-22 14:58 115,920 --a--c--- c:\windows\system32\msinet.OCX 2008-12-04 22:21 . 1999-03-25 18:00 101,888 --a--c--- c:\windows\system32\VB6STKIT.DLL 2008-12-04 22:21 . 2003-01-26 12:41 40,960 --a--c--- c:\windows\system32\SSubTmr6.dll 2008-12-04 22:21 . 1998-07-12 22:00 15,360 --a--c--- c:\windows\system32\inetfr.DLL 2008-12-04 22:20 . 2008-12-13 22:21 <DIR> d----c--- c:\program files\Free Easy Burner 2008-12-04 22:20 . 2003-03-18 20:20 1,060,864 --a--c--- c:\windows\system32\MFC71.dll 2008-12-04 22:20 . 2008-09-24 20:33 484,352 --a--c--- c:\windows\system32\lame_enc.dll 2008-12-04 22:20 . 2000-11-29 01:07 307,200 --a--c--- c:\windows\system32\msvcr70.dll 2008-12-04 22:20 . 1998-07-12 22:00 141,312 --a--c--- c:\windows\system32\MSCMCFR.DLL 2008-12-04 22:20 . 2003-04-18 15:29 44,544 --a--c--- c:\windows\system32\msxml4a.dll 2008-12-04 22:20 . 1998-07-12 18:00 32,768 --a--c--- c:\windows\system32\CMDLGFR.DLL 2008-12-02 21:50 . 2008-12-02 21:50 <DIR> d----c--- c:\program files\Totally Free Burner 2008-12-02 21:34 . 2008-12-02 21:34 <DIR> d----c--- c:\windows\system32\hdined32.nls.{00021401-0000-0000-C000-000000000046} 2008-12-02 21:17 . 2008-12-02 21:22 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\DeepBurner 2008-12-02 21:16 . 2008-12-02 21:24 <DIR> d----c--- c:\program files\Astonsoft 2008-12-02 12:28 . 2008-12-02 13:15 <DIR> d----c--- c:\program files\Azureus 2008-12-01 21:29 . 2008-12-09 15:44 <DIR> d----c--- C:\VEMODE_VIDEOS 2008-12-01 20:31 . 2008-12-09 16:57 <DIR> d----c--- c:\program files\VEMoDe 1.0b 2008-12-01 20:31 . 2008-12-01 20:31 <DIR> d----c--- c:\program files\AviSynth 2.5 2008-12-01 20:31 . 2008-12-01 20:31 57,344 --a--c--- c:\windows\SSEUninstaller.exe 2008-12-01 20:31 . 2008-12-01 20:31 44,544 --a--c--- c:\windows\system32\Gif89.dll 2008-12-01 20:31 . 2008-12-01 20:31 32,768 --a--c--- c:\windows\system32\ShellLnkSSE.dll 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\program files\MegauploadToolbar 2008-12-01 20:21 . 2008-12-21 20:26 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\MegauploadToolbar 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\EmailNotifier 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\documents and settings\All Users.WINDOWS\Application Data\Megaupload 2008-12-01 20:21 . 2008-12-01 20:21 <DIR> d----c--- c:\documents and settings\All Users.WINDOWS\Application Data\EmailNotifier 2008-11-30 20:59 . 2008-11-30 20:59 <DIR> d----c--- c:\program files\AskBarDis 2008-11-30 20:59 . 2008-12-21 18:20 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\Azureus 2008-11-30 20:59 . 2008-11-30 20:59 <DIR> d----c--- c:\documents and settings\All Users.WINDOWS\Application Data\Azureus 2008-11-30 20:57 . 2008-11-30 20:57 <DIR> d----c--- c:\program files\Common Files\i4j_jres 2008-11-28 19:37 . 2008-12-12 07:06 <DIR> d----c--- c:\documents and settings\marion.CLAIRDELUNE\Application Data\dvdcss 2008-11-27 12:33 . 2008-11-27 13:16 <DIR> d----c--- c:\program files\Dofus 2008-11-26 22:34 . 2008-11-26 22:34 <DIR> d----c--- c:\windows\system32\LogFiles . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-12-21 11:29 141,596 -csha-w c:\windows\system32\drivers\fidbox.idx 2008-12-21 11:29 12,261,408 -csha-w c:\windows\system32\drivers\fidbox.dat 2008-12-17 17:22 --------- dc----w c:\program files\Windows Media Connect 2 2008-12-17 15:45 90,112 ----a-w c:\windows\DUMP5da6.tmp 2008-12-17 15:45 90,112 ----a-w c:\windows\DUMP5d60.tmp 2008-12-17 15:44 90,112 ----a-w c:\windows\DUMP5e1e.tmp 2008-12-17 14:46 90,112 ----a-w c:\windows\DUMP51d6.tmp 2008-12-16 18:18 90,112 ----a-w c:\windows\DUMP524e.tmp 2008-12-16 18:17 90,112 ----a-w c:\windows\DUMP5294.tmp 2008-11-30 20:19 --------- dc----w c:\program files\Vuze 2008-11-18 20:18 43,862 -c--a-w c:\windows\Internet Logs\UpdClient_2nd_2008_11_18_17_35_22_small.dmp.zip 2008-11-18 20:18 42,407 -c--a-w c:\windows\Internet Logs\UpdClient_2nd_2008_11_18_17_35_11_small.dmp.zip 2008-11-18 20:12 --------- dc----w c:\program files\Microsoft Silverlight 2008-11-18 16:50 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\vlc 2008-11-18 16:15 --------- dc-h--w c:\program files\InstallShield Installation Information 2008-11-18 16:15 --------- dc----w c:\program files\OLITEC 2008-11-18 15:33 15,890 -c--a-w c:\windows\system32\drivers\mdc8021x.sys 2008-11-18 15:24 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\WinZip 2008-11-18 15:13 --------- dc----w c:\program files\ma-config.com 2008-11-18 15:13 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\ma-config.com 2008-11-18 14:03 --------- dc----w c:\program files\MSXML 6.0 2008-11-18 14:01 --------- dc----w c:\program files\MSXML 4.0 2008-11-18 13:36 --------- dc----w c:\program files\Microsoft FrontPage 2008-11-18 13:36 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\Microsoft Web Folders 2008-11-18 13:24 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\MSNInstaller 2008-11-18 13:22 --------- dc----w c:\program files\MSN Messenger 2008-11-18 13:13 --------- dc----w c:\program files\7-Zip 2008-11-18 12:21 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\Avira 2008-11-18 11:36 21,035 -c--a-w c:\windows\system32\drivers\AegisP.sys 2008-11-18 10:30 --------- dc----w c:\program files\SonicWALL 2008-11-18 10:30 --------- dc----w c:\documents and settings\marion.CLAIRDELUNE\Application Data\MailFrontier 2008-11-18 10:30 --------- dc----w c:\documents and settings\All Users.WINDOWS\Application Data\MailFrontier 2008-11-02 01:32 --------- dc----w c:\documents and settings\marion\Application Data\Azureus 2008-11-01 15:50 --------- dc----w c:\program files\EA GAMES 2008-10-24 11:25 455,936 -c--a-w c:\windows\system32\drivers\mrxsmb.sys 2008-10-23 12:51 284,160 -c--a-w c:\windows\system32\gdi32.dll 2008-10-16 13:13 202,776 -c--a-w c:\windows\system32\wuweb.dll 2008-10-16 13:13 1,809,944 -c--a-w c:\windows\system32\wuaueng.dll 2008-10-16 13:12 561,688 -c--a-w c:\windows\system32\wuapi.dll 2008-10-16 13:12 323,608 -c--a-w c:\windows\system32\wucltui.dll 2008-10-16 13:09 92,696 -c--a-w c:\windows\system32\cdm.dll 2008-10-16 13:09 51,224 -c--a-w c:\windows\system32\wuauclt.exe 2008-10-16 13:09 43,544 -c--a-w c:\windows\system32\wups2.dll 2008-10-16 13:08 34,328 -c--a-w c:\windows\system32\wups.dll 2008-10-16 13:06 268,648 -c--a-w c:\windows\system32\mucltui.dll 2008-10-16 13:06 208,744 -c--a-w c:\windows\system32\muweb.dll 2008-10-16 10:20 667,648 -c--a-w c:\windows\system32\wininet.dll 2008-10-03 10:15 247,326 -c--a-w c:\windows\system32\strmdll.dll 2007-04-23 13:21 269,824 -c--a-w c:\windows\inf\WG111v3\Vista64\wg111v3.sys 2007-04-23 13:11 224,896 -c--a-w c:\windows\inf\WG111v3\wg111v3.sys 2006-12-15 10:30 98,304 -c--a-w c:\windows\inf\WG111v3\UScanM.exe 2006-12-15 10:30 66,048 -c--a-w c:\windows\inf\WG111v3\EAPPkt.sys 2006-12-15 10:30 315,392 -c--a-w c:\windows\inf\WG111v3\InstallDriver.exe 2006-12-15 10:30 28,672 -c--a-w c:\windows\inf\WG111v3\SetDrv.exe 2006-12-15 10:30 212,992 -c--a-w c:\windows\inf\WG111v3\CopyWHQLDriver.exe 2006-12-15 10:30 20,480 -c--a-w c:\windows\inf\WG111v3\RTWUPath.exe 2006-12-15 10:30 19,968 -c--a-w c:\windows\inf\WG111v3\RTWREFU.EXE . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}] 2008-11-24 20:25 333192 --a--c--- c:\program files\AskBarDis\bar\bin\askBar.dll [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A057A204-BACC-4D26-C39E-35F1D2A32EC8}] 2008-08-04 21:44 1947080 --a--c--- c:\progra~1\MEGAUP~1\MEGAUP~1.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-11-24 333192] "{A057A204-BACC-4D26-C39E-35F1D2A32EC8}"= "c:\progra~1\MEGAUP~1\MEGAUP~1.DLL" [2008-08-04 1947080] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser] "{A057A204-BACC-4D26-C39E-35F1D2A32EC8}"= "c:\progra~1\MEGAUP~1\MEGAUP~1.DLL" [2008-08-04 1947080] "{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-11-24 333192] [HKEY_CLASSES_ROOT\clsid\{a057a204-bacc-4d26-c39e-35f1d2a32ec8}] [HKEY_CLASSES_ROOT\megauploadtoolbar.MEGAUPLOADTOOLBAR] [HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}] [HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360] "MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352] "MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2007-02-18 1694208] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497] "ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-07-09 919016] "Autoconfigurateur WiFi Neuf"="c:\program files\Neuf\Kit\WiFi\9wifi.exe" [2008-01-15 287984] "BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-04 c:\windows\system32\bthprops.cpl] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360] c:\documents and settings\marion\Start Menu\Programs\Startup\ Lanceur Pointsoft.lnk - c:\pointsoft\lanceur.exe [2000-11-07 71952] c:\documents and settings\All Users.WINDOWS\Start Menu\Programs\Startup\ Microsoft Office.lnk - c:\program files\Microsoft Office\Office\OSA9.EXE [1999-02-17 65588] [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\MSN Messenger\\msnmsgr.exe"= "c:\\Program Files\\MSN Messenger\\livecall.exe"= "c:\\Program Files\\Messenger\\msmsgs.exe"= R2 ASKService;ASKService;c:\program files\AskBarDis\bar\bin\AskService.exe [2008-11-30 464264] S2 ASKUpgrade;ASKUpgrade;c:\program files\AskBarDis\bar\bin\ASKUpgrade.exe [2008-11-30 234888] S3 maconfservice;Ma-Config Service;"c:\program files\ma-config.com\maconfservice.exe" [2008-11-17 195752] S3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\system32\DRIVERS\wg111v3.sys [2007-04-23 224896] *Newly Created Service* - PROCEXP90 . - - - - ORPHELINS SUPPRIMES - - - - HKLM-Run-c:\windows\system32\kdwsh.exe - c:\windows\system32\kdwsh.exe . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.google.fr/ mWindow Title = O16 -: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_0_4_0.cab c:\windows\Downloaded Program Files\hardwaredetection.inf . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-12-21 20:48:22 Windows 5.1.2600 Service Pack 2 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** . Heure de fin: 2008-12-21 20:49:39 ComboFix-quarantined-files.txt 2008-12-21 19:49:37 Avant-CF: 45 868 257 280 bytes free Après-CF: 46,371,311,616 bytes free WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect multi(0)disk(0)rdisk(0)partition(1)\WINDOWS.0="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /safeboot:network 262 --- E O F --- 2008-12-21 19:29:22 A+
  14. Bonsoir, Voila le rapport HJT Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20:09:36, on 19/12/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AskBarDis\bar\bin\AskService.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Neuf\Kit\WiFi\9wifi.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\MSN Messenger\usnsvc.exe C:\WINDOWS\system32\cmd.exe C:\WINDOWS\notepad.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\HiJackThis.exe O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O3 - Toolbar: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [C:\WINDOWS\system32\kdwsh.exe] C:\WINDOWS\system32\kdwsh.exe O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] "C:\Program Files\Neuf\Kit\WiFi\9wifi.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichier...ion_3_0_4_0.cab O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 4458 bytes
  15. Bonjour,, SmitFraudFix v2.387 Scan done at 7:14:44,31, 19/12/2008 Run from C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\SmitfraudFix OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT The filesystem type is NTFS Fix run in normal mode »»»»»»»»»»»»»»»»»»»»»»»» DNS Before Fix Your computer may be victim of a DNS Hijack: 85.255.x.x detected ! Description: Intel® PRO/Wireless LAN 2100 3B Mini PCI Adapter - Packet Scheduler Miniport DNS Server Search Order: 85.255.112.121;85.255.112.76 HKLM\SYSTEM\CCS\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS1\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS1\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS3\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 »»»»»»»»»»»»»»»»»»»»»»»» DNS After Fix
  16. Je poste tous les rapports, par contre le lien MBAM ne s'ouvre jamais , le systeme tourne sans s'arreter Smitfraudfix: SmitFraudFix v2.387 Scan done at 21:49:49,03, 18/12/2008 Run from C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\SmitfraudFix OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT The filesystem type is NTFS Fix run in normal mode »»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix !!!Attention, following keys are not inevitably infected!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Killing process »»»»»»»»»»»»»»»»»»»»»»»» hosts 127.0.0.1 localhost »»»»»»»»»»»»»»»»»»»»»»»» VACFix VACFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix S!Ri's WS2Fix: LSP not Found. »»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix GenericRenosFix by S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files C:\resycled\ Deleted »»»»»»»»»»»»»»»»»»»»»»»» IEDFix IEDFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix Agent.OMZ.Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» 404Fix 404Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» RK »»»»»»»»»»»»»»»»»»»»»»»» DNS »»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "System"="kdwsh.exe" »»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning »»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning »»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning Registry Cleaning done. »»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix !!!Attention, following keys are not inevitably infected!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Reboot C:\WINDOWS\system32\kdwsh.exe Deleted [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "System"="" »»»»»»»»»»»»»»»»»»»»»»»» End Clean avi: Clean Navipromo version 3.7.0 commencé le 18/12/2008 à 22:12:25,65 Outil exécuté depuis C:\Program Files\navilog1 Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2 X86-based PC ( Uniprocessor Free : Intel® Pentium® M processor 1600MHz ) BIOS : Rev 1.0 XXX USER : marion ( Administrator ) BOOT : Normal boot Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated) Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated) C:\ (Local Disk) - NTFS - Total:74 Go (Free:41 Go) D:\ (CD or DVD) Mode suppression automatique avec prise en charge résultats Catchme et GNS Nettoyage exécuté au redémarrage de l'ordinateur *** fsbl1.txt non trouvé *** (Assurez-vous que Catchme n'avait rien trouvé lors de la recherche) *** Suppression avec sauvegardes résultats GenericNaviSearch *** * Suppression dans "C:\WINDOWS\System32" * * Suppression dans "C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\applic~1" * * Suppression dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" * * Suppression dans "C:\DOCUME~1\ADMINI~1.POR\locals~1\applic~1" * *** Suppression dossiers dans "C:\WINDOWS" *** *** Suppression dossiers dans "C:\Program Files" *** *** Suppression dossiers dans "C:\Documents and Settings\All Users.WINDOWS\startm~1\programs" *** *** Suppression dossiers dans "C:\Documents and Settings\All Users.WINDOWS\startm~1" *** *** Suppression dossiers dans "c:\docume~1\alluse~1.win\applic~1" *** *** Suppression dossiers dans "C:\Documents and Settings\marion.CLAIRDELUNE\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1.POR\applic~1" *** *** Suppression dossiers dans "C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1.POR\locals~1\applic~1" *** *** Suppression dossiers dans "C:\Documents and Settings\marion.CLAIRDELUNE\startm~1\programs" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1\startm~1\programs" *** *** Suppression dossiers dans "C:\DOCUME~1\ADMINI~1.POR\startm~1\programs" *** *** Suppression fichiers *** *** Suppression fichiers temporaires *** Nettoyage contenu C:\WINDOWS\Temp effectué ! Nettoyage contenu C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\Temp effectué ! *** Traitement Recherche complémentaire *** (Recherche fichiers spécifiques) 1)Suppression avec sauvegardes nouveaux fichiers Instant Access : 2)Recherche, création sauvegardes et suppression Heuristique : * Dans "C:\WINDOWS\system32" * * Dans "C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\applic~1" * saqyqug.exe trouvé ! Copie saqyqug.exe réalisée avec succès ! saqyqug.exe supprimé ! saqyqug.dat trouvé ! Copie saqyqug.dat réalisée avec succès ! saqyqug.dat supprimé ! saqyqug_nav.dat trouvé ! Copie saqyqug_nav.dat réalisée avec succès ! saqyqug_nav.dat supprimé ! saqyqug_navps.dat trouvé ! Copie saqyqug_navps.dat réalisée avec succès ! saqyqug_navps.dat supprimé ! * Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" * * Dans "C:\DOCUME~1\ADMINI~1.POR\locals~1\applic~1" * *** Sauvegarde du Registre vers dossier Safebackup *** sauvegarde du Registre réalisée avec succès ! *** Nettoyage Registre *** Nettoyage Registre Ok *** Certificats *** Certificat Egroup absent ! Certificat Electronic-Group supprimé ! Certificat Montorgueil absent ! Certificat OOO-Favorit supprimé ! Certificat Sunny-Day-Design-Ltdt absent ! *** Recherche autres dossiers et fichiers connus *** *** Nettoyage terminé le 18/12/2008 à 22:15:57,89 *** Hijackthis: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:18:40, on 18/12/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\AskBarDis\bar\bin\AskService.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Neuf\Kit\WiFi\9wifi.exe C:\Program Files\Search Settings\SearchSettings.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\MSN Messenger\usnsvc.exe C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\HiJackThis.exe R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O3 - Toolbar: Megaupload Toolbar - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [C:\WINDOWS\system32\kdwsh.exe] C:\WINDOWS\system32\kdwsh.exe O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] "C:\Program Files\Neuf\Kit\WiFi\9wifi.exe" O4 - HKLM\..\Run: [searchSettings] C:\Program Files\Search Settings\SearchSettings.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com/fichier...ion_3_0_4_0.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer = 85.255.112.121;85.255.112.76 O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 4929 bytes Et enfin Toolbar: -----------\\ ToolBar S&D 1.1.6 XP/Vista Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2 X86-based PC ( Uniprocessor Free : Intel® Pentium® M processor 1600MHz ) BIOS : Rev 1.0 XXX USER : marion ( Administrator ) BOOT : Normal boot Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated) Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated) "C:\ToolBar SD" ( MAJ : 30-08-2008|00:19 ) Option : [2] ( 18/12/2008|22:19 ) -----------\\ SUPPRESSION Supprime! - C:\Program Files\AskSBar\bar Supprime! - C:\WINDOWS\Prefetch\SEARCHSETTINGS.EXE-253CB611.pf Supprime! - C:\DOCUME~1\MARION~1.CLA\APPLIC~1\Search Settings\kb127 Supprime! - C:\Program Files\Search Settings\kb127 Supprime! - C:\Program Files\Search Settings\SearchSettings.exe Supprime! - C:\Program Files\AskSBar Supprime! - C:\DOCUME~1\MARION~1.CLA\APPLIC~1\Search Settings Supprime! - C:\Program Files\Search Settings -----------\\ Recherche de Fichiers / Dossiers ... -----------\\ Extensions (marion.CLAIRDELUNE) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Local Page"="C:\\windows\\system32\\blank.htm" "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"'>http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome" "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "Url"="http://go.microsoft.com/fwlink/?LinkId=68929" "Url"="http://go.microsoft.com/fwlink/?LinkId=68928" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome" "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "Local Page"="C:\\windows\\system32\\blank.htm" "Start Page"="http://www.msn.com/" --------------------\\ Recherche d'autres infections [HKLM\SYSTEM\CurrentControlSet\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet001\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet003\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 ==> WAREOUT <== 1 - "C:\ToolBar SD\TB_1.txt" - Wed 09/03/2008|21:51 - Option : [1] 2 - "C:\ToolBar SD\TB_2.txt" - Thu 09/04/2008|22:29 - Option : [2] 3 - "C:\ToolBar SD\TB_3.txt" - 18/12/2008|21:29 - Option : [1] 4 - "C:\ToolBar SD\TB_4.txt" - 18/12/2008|22:22 - Option : [2] -----------\\ Fin du rapport a 22:22:31,16 Pour MBAM, le lien ne donne rien A+
  17. Bonsoir, Je poste les 3 rapports l'un derriere l'autre SmitFraudFix v2.387 Scan done at 21:16:05,96, 18/12/2008 Run from C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\SmitfraudFix OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT The filesystem type is NTFS Fix run in normal mode »»»»»»»»»»»»»»»»»»»»»»»» Process C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\AskBarDis\bar\bin\AskService.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\Neuf\Kit\WiFi\9wifi.exe C:\Program Files\Search Settings\SearchSettings.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\documents and settings\marion.clairdelune\local settings\application data\saqyqug.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\marion.CLAIRDELUNE\Desktop\HiJackThis.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Azureus\Azureus.exe C:\WINDOWS\system32\cmd.exe C:\WINDOWS\system32\wbem\wmiprvse.exe »»»»»»»»»»»»»»»»»»»»»»»» hosts hosts file corrupted ! 127.0.0.1 mpa.one.microsoft.com »»»»»»»»»»»»»»»»»»»»»»»» C:\ C:\resycled\ FOUND ! »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32 »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\marion.CLAIRDELUNE »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\MARION~1.CLA\LOCALS~1\Temp »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\marion.CLAIRDELUNE\Application Data »»»»»»»»»»»»»»»»»»»»»»»» Start Menu »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\MARION~1.CLA\FAVORI~1 »»»»»»»»»»»»»»»»»»»»»»»» Desktop »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files »»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys »»»»»»»»»»»»»»»»»»»»»»»» Desktop Components [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" »»»»»»»»»»»»»»»»»»»»»»»» o4Patch !!!Attention, following keys are not inevitably infected!!! o4Patch Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» IEDFix !!!Attention, following keys are not inevitably infected!!! IEDFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix !!!Attention, following keys are not inevitably infected!!! Agent.OMZ.Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» VACFix !!!Attention, following keys are not inevitably infected!!! VACFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» 404Fix !!!Attention, following keys are not inevitably infected!!! 404Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler !!!Attention, following keys are not inevitably infected!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="" »»»»»»»»»»»»»»»»»»»»»»»» Winlogon !!!Attention, following keys are not inevitably infected!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "Userinit"="C:\\WINDOWS\\system32\\userinit.exe," "System"="kdwsh.exe" kdwsh.exe detected ! »»»»»»»»»»»»»»»»»»»»»»»» RK »»»»»»»»»»»»»»»»»»»»»»»» DNS Your computer may be victim of a DNS Hijack: 85.255.x.x detected ! Description: Intel® PRO/Wireless LAN 2100 3B Mini PCI Adapter - Packet Scheduler Miniport DNS Server Search Order: 85.255.112.121;85.255.112.76 HKLM\SYSTEM\CCS\Services\Tcpip\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CCS\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CCS\Services\Tcpip\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS1\Services\Tcpip\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS1\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS1\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS1\Services\Tcpip\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS2\Services\Tcpip\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS2\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS2\Services\Tcpip\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS3\Services\Tcpip\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS3\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: DhcpNameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS3\Services\Tcpip\..\{B195154D-2B35-4954-86CA-B1739341ED3A}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CS3\Services\Tcpip\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}: NameServer=85.255.112.121;85.255.112.76 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 »»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection »»»»»»»»»»»»»»»»»»»»»»»» End Search Navipromo version 3.7.0 commencé le 18/12/2008 à 21:20:45,94 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!! !!! Postez ce rapport sur le forum pour le faire analyser !!! !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!! Outil exécuté depuis C:\Program Files\navilog1 Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2 X86-based PC ( Uniprocessor Free : Intel® Pentium® M processor 1600MHz ) BIOS : Rev 1.0 XXX USER : marion ( Administrator ) BOOT : Normal boot Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated) Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated) C:\ (Local Disk) - NTFS - Total:74 Go (Free:46 Go) D:\ (CD or DVD) Recherche executé en mode normal *** Recherche Programmes installés *** Favorit *** Recherche dossiers dans "C:\WINDOWS" *** *** Recherche dossiers dans "C:\Program Files" *** *** Recherche dossiers dans "C:\Documents and Settings\All Users.WINDOWS\startm~1\programs" *** *** Recherche dossiers dans "C:\Documents and Settings\All Users.WINDOWS\startm~1" *** *** Recherche dossiers dans "c:\docume~1\alluse~1.win\applic~1" *** *** Recherche dossiers dans "C:\Documents and Settings\marion.CLAIRDELUNE\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1.POR\applic~1" *** *** Recherche dossiers dans "C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1.POR\locals~1\applic~1" *** *** Recherche dossiers dans "C:\Documents and Settings\marion.CLAIRDELUNE\startm~1\programs" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\startm~1\programs" *** *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1.POR\startm~1\programs" *** *** Recherche avec Catchme-rootkit/stealth malware detector par gmer *** pour + d'infos : http://www.gmer.net *** Recherche avec GenericNaviSearch *** !!! Tous ces résultats peuvent révéler des fichiers légitimes !!! !!! A vérifier impérativement avant toute suppression manuelle !!! * Recherche dans "C:\WINDOWS\system32" * * Recherche dans "C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\applic~1" * * Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" * * Recherche dans "C:\DOCUME~1\ADMINI~1.POR\locals~1\applic~1" * *** Recherche fichiers *** *** Recherche clés spécifiques dans le Registre *** !! Les clés trouvées ne sont pas forcément infectées !! HKEY_CURRENT_USER\Software\Lanconfig trouvé ! [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "saqyqug"="\"c:\\documents and settings\\marion.clairdelune\\local settings\\application data\\saqyqug.exe\" saqyqug" *** Module de Recherche complémentaire *** (Recherche fichiers spécifiques) 1)Recherche nouveaux fichiers Instant Access : 2)Recherche Heuristique : * Dans "C:\WINDOWS\system32" : * Dans "C:\Documents and Settings\marion.CLAIRDELUNE\locals~1\applic~1" : saqyqug.exe trouvé ! saqyqug.dat trouvé ! saqyqug_nav.dat trouvé ! saqyqug_navps.dat trouvé ! * Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" : * Dans "C:\DOCUME~1\ADMINI~1.POR\locals~1\applic~1" : 3)Recherche Certificats : Certificat Egroup absent ! Certificat Electronic-Group trouvé ! Certificat Montorgueil absent ! Certificat OOO-Favorit trouvé ! Certificat Sunny-Day-Design-Ltd absent ! 4)Recherche autres dossiers et fichiers connus : *** Analyse terminée le 18/12/2008 à 21:23:40,45 *** -----------\\ ToolBar S&D 1.1.6 XP/Vista Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 2 X86-based PC ( Uniprocessor Free : Intel® Pentium® M processor 1600MHz ) BIOS : Rev 1.0 XXX USER : marion ( Administrator ) BOOT : Normal boot Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated) Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated) "C:\ToolBar SD" ( MAJ : 30-08-2008|00:19 ) Option : [1] ( 18/12/2008|21:25 ) -----------\\ Recherche de Fichiers / Dossiers ... C:\Program Files\AskSBar C:\Program Files\AskSBar\bar C:\WINDOWS\Prefetch\SEARCHSETTINGS.EXE-253CB611.pf C:\DOCUME~1\MARION~1.CLA\APPLIC~1\Search Settings C:\DOCUME~1\MARION~1.CLA\APPLIC~1\Search Settings\kb127 C:\Program Files\Search Settings C:\Program Files\Search Settings\kb127 C:\Program Files\Search Settings\SearchSettings.exe C:\DOCUME~1\MARION~1.CLA\LOCALS~1\Temp\nsy11.tmp -----------\\ Extensions (marion.CLAIRDELUNE) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Local Page"="C:\\WINDOWS\\system32\\blank.htm" "Start Page"="http://www.google.fr/" "Search Page"="http://recherche.neuf.fr/" "Search Bar"="http://recherche.neuf.fr/ie/default.html" "Url"="http://go.microsoft.com/fwlink/?LinkId=68929" "Url"="http://go.microsoft.com/fwlink/?LinkId=68928" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome" "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home" --------------------\\ Recherche d'autres infections C:\DOCUME~1\MARION~1.CLA\LOCALS~1\APPLIC~1\saqyqug.dat C:\DOCUME~1\MARION~1.CLA\LOCALS~1\APPLIC~1\saqyqug.exe C:\DOCUME~1\MARION~1.CLA\LOCALS~1\APPLIC~1\saqyqug_nav.dat C:\DOCUME~1\MARION~1.CLA\LOCALS~1\APPLIC~1\saqyqug_navps.dat ==> EGDACCESS <== [HKLM\SYSTEM\CurrentControlSet\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\CurrentControlSet\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\CurrentControlSet\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet001\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet001\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet001\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet002\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet002\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet002\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet003\..\{6CE2D873-CC35-4ADB-AF3E-763099E83405}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet003\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] NameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet003\..\{B195154D-2B35-4954-86CA-B1739341ED3A}] DhcpNameServer REG_SZ 85.255.112.121;85.255.112.76 [HKLM\SYSTEM\ControlSet003\..\{B38B313A-71CD-42FD-B668-5EF8C510A312}] NameServer REG_SZ 85.255.112.121;85.255.112.76 ==> WAREOUT <== 1 - "C:\ToolBar SD\TB_1.txt" - Wed 09/03/2008|21:51 - Option : [1] 2 - "C:\ToolBar SD\TB_2.txt" - Thu 09/04/2008|22:29 - Option : [2] 3 - "C:\ToolBar SD\TB_3.txt" - 18/12/2008|21:29 - Option : [1] -----------\\ Fin du rapport a 21:29:43,86 A+
×
×
  • Créer...