

kingleroideskong
Membres-
Compteur de contenus
142 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par kingleroideskong
-
portable lent
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Optimisation, Trucs & Astuces
bonjour voici ce qui se passe des le demarage j'appuie sur le bouton d'alim un curseur clignotant apparait en haut à gauche je dois appuiyer sur entrée du texte defile on me propose de demarrer windows en mode normal ou sans echec:quoi que je choississe, le systeme fini par ce bloquer sur une fenetre fond bleu avec plusieurs lignes de texte et à la fin UNMOUNTABLE_BOOT_VOLUME STOP:0x000000 (0x82342900,0xC0000006,0x00000000,0x00000000) je ne peux que redemarrer et le meme processus reviend A+ -
portable lent
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Optimisation, Trucs & Astuces
Bonsoir Désolé mais cela ne fonctionne pas et j'ai le cd de windows et non ce n'est pas une copie. Quelqu'un pourrait il m'aider? A+ -
portable lent
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Optimisation, Trucs & Astuces
Bonjour, En fait il s'agissait d'une fenetre intitulée cmd.exe. De toute façon depuis hier le systeme ne s'allume plus puisqu'apres le logo windows,cela m'affiche une page bleu avec : UNMOUNTABLE_BOOT_VOLUME STOP:0x000000 (0x82342900,0xC0000006,0x00000000,0x00000000) Et je n'ai pas d'autre choix que de rallumer le pc A+ -
portable lent
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Optimisation, Trucs & Astuces
Bonsoir, J'ai fait ce que tu m'a dis mais au redemarrage, l'ecran affiche une fenetre cms.exe avec C\documents and settings\administrateur\ et le curseur clignote. Si je ferme la fenetre j'ai un ecran tout noir????? Help A+ -
portable lent
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Optimisation, Trucs & Astuces
Bonjour, J'ai fais un nettoyage avec ccleaner et kapersky n'a rien détecté.A la fin du scan , je ne sais pas extraire le rapport,rien ne s'affiche A+ -
redirection commerciale
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
Bonjour, J'ai tenté de vider le cache DNS, mais :"impossible de vider le cache de résolution DNS....." J'ai coché et fixé les lignes sur HJT Voici le rapport de diaghelp: DiagHelp version v1.3 - http://www.malekal.com excute le 05/11/2007 à 11:38:13,89 Liste des derniers fichies modifies/crees dans windir\system32 et prefetch C:\WINDOWS\prefetch\CMD.EXE-034B0549.pf -->05/11/2007 11:38:13 C:\WINDOWS\prefetch\CHCP.COM-17EDBDC9.pf -->05/11/2007 11:38:10 C:\WINDOWS\prefetch\WINRAR.EXE-0AA31BB9.pf -->05/11/2007 11:37:38 C:\WINDOWS\prefetch\AVNOTIFY.EXE-1AE4246B.pf -->05/11/2007 11:35:53 C:\WINDOWS\prefetch\UPDATE.EXE-3742C5C3.pf -->05/11/2007 11:35:40 C:\WINDOWS\prefetch\DWTRIG20.EXE-05D8A0C7.pf -->05/11/2007 11:35:39 C:\WINDOWS\prefetch\PREUPD.EXE-1D5D2007.pf -->05/11/2007 11:35:36 C:\WINDOWS\prefetch\IEXPLORE.EXE-2D97EBE6.pf -->05/11/2007 11:35:23 C:\WINDOWS\prefetch\EXPLORER.EXE-02121B1A.pf -->05/11/2007 11:33:46 C:\WINDOWS\prefetch\FD.EXE-25297F75.pf -->05/11/2007 11:33:44 C:\WINDOWS\System32\drivers\KProcCheck.sys -->02/09/2007 19:37:44 C:\WINDOWS\System32\drivers\pcouffin.sys -->15/07/2007 16:11:31 C:\WINDOWS\System32\drivers\oreans32.sys -->15/07/2007 16:01:11 C:\WINDOWS\System32\drivers\TVICHW32.SYS -->17/06/2007 14:19:24 C:\WINDOWS\System32\drivers\AvgAsCln.sys -->30/05/2007 13:10:42 C:\WINDOWS\System32\drivers\pxhelp20.sys -->23/02/2007 05:29:52 C:\WINDOWS\System32\drivers\cdralw2k.sys -->23/02/2007 05:29:52 C:\WINDOWS\System32\nvapps.xml -->05/11/2007 10:10:12 C:\WINDOWS\System32\wpa.dbl -->05/11/2007 10:09:49 C:\WINDOWS\System32\vsconfig.xml -->05/11/2007 10:03:08 C:\WINDOWS\System32\perfh00C.dat -->28/10/2007 09:13:37 C:\WINDOWS\System32\perfh009.dat -->28/10/2007 09:13:36 C:\WINDOWS\System32\perfc00C.dat -->28/10/2007 09:13:36 C:\WINDOWS\System32\perfc009.dat -->28/10/2007 09:13:36 C:\WINDOWS\System32\PerfStringBackup.INI -->28/10/2007 09:13:33 C:\WINDOWS\System32\FNTCACHE.DAT -->22/10/2007 18:14:18 C:\WINDOWS\System32\InstallUtil.InstallLog -->03/09/2007 11:55:50 C:\WINDOWS\System32\Uninstall.ico -->01/09/2007 18:51:57 C:\WINDOWS\System32\pavas.ico -->01/09/2007 18:51:56 C:\WINDOWS\System32\Help.ico -->01/09/2007 18:51:56 C:\WINDOWS\System32\zllictbl.dat -->01/09/2007 16:22:55 C:\WINDOWS\System32\ws344069.ocx -->20/08/2007 09:29:52 C:\WINDOWS\System32\gafilter.sti -->20/08/2007 09:29:06 C:\WINDOWS\System32\gaeffect.sti -->20/08/2007 09:29:05 C:\WINDOWS\System32\MRT.exe -->03/08/2007 05:34:10 C:\WINDOWS\System32\wuaucpl.cpl.mui -->30/07/2007 18:20:06 C:\WINDOWS\System32\wuapi.dll.mui -->30/07/2007 18:19:52 C:\WINDOWS\System32\wuaueng.dll -->30/07/2007 18:19:42 C:\WINDOWS\System32\wuapi.dll -->30/07/2007 18:19:36 C:\WINDOWS\System32\wucltui.dll -->30/07/2007 18:19:32 C:\WINDOWS\System32\wuweb.dll -->30/07/2007 18:19:28 C:\WINDOWS\System32\wuaucpl.cpl -->30/07/2007 18:19:28 C:\WINDOWS\WindowsUpdate.log -->05/11/2007 11:32:58 C:\WINDOWS\ModemLog_Aztech CNR2900 V.90 Modem.txt -->05/11/2007 10:02:50 C:\WINDOWS\wiaservc.log -->05/11/2007 10:02:47 C:\WINDOWS\wiadebug.log -->05/11/2007 10:02:47 C:\WINDOWS.log -->05/11/2007 10:02:30 C:\WINDOWS\bootstat.dat -->05/11/2007 10:02:27 C:\WINDOWS\SchedLgU.Txt -->04/11/2007 23:21:27 C:\WINDOWS\discwriter.log -->04/11/2007 22:26:53 C:\WINDOWS\OrangeBurn.log -->04/11/2007 22:22:43 C:\WINDOWS\setupapi.log -->04/11/2007 21:55:54 C:\WINDOWS\wmsetup.log -->28/10/2007 11:40:14 C:\WINDOWS\NeroDigital.ini -->26/10/2007 15:44:25 C:\WINDOWS\cdplayer.ini -->22/10/2007 10:57:22 C:\WINDOWS\lesFourmis.isu -->19/10/2007 20:13:56 C:\WINDOWS\Directx.log -->19/10/2007 20:13:39 MD5 des fichiers sensibles tcpip.sys 1dbf125862891817f374f407626967f4 ndis.sys 558635d3af1c7546d26067d5d9b6959e null.sys 73c1e1f395918bc2c6dd67af7591a3ad svchost.exe 2979b03d5382a602623c0535b16ab9c0 ListDLLs v2.25 - DLL lister for Win9x/NT Copyright © 1997-2004 Mark Russinovich Sysinternals - www.sysinternals.com ------------------------------------------------------------------------------ explorer.exe pid: 3304 Command line: C:\WINDOWS\Explorer.EXE Base Size Version Path 0x44080000 0xcf000 7.00.6000.16512 C:\WINDOWS\system32\WININET.dll 0x00400000 0x9000 6.00.5441.0000 C:\WINDOWS\system32\Normaliz.dll 0x43e00000 0x45000 7.00.6000.16512 C:\WINDOWS\system32\iertutil.dll 0x58b50000 0x9a000 5.82.2900.2982 C:\WINDOWS\system32\comctl32.dll 0x76f80000 0x7f000 2001.12.4414.0308 C:\WINDOWS\system32\CLBCATQ.DLL 0x77000000 0xd4000 2001.12.4414.0258 C:\WINDOWS\system32\COMRes.dll 0x76ac0000 0x11000 3.05.2284.0000 C:\WINDOWS\system32\ATL.DLL 0x44360000 0x5cb000 7.00.6000.16512 C:\WINDOWS\system32\ieframe.dll 0x442b0000 0x3c000 7.00.6000.16512 C:\WINDOWS\system32\webcheck.dll 0x164a0000 0x23000 5.02.5721.5145 C:\WINDOWS\system32\WPDShServiceObj.dll 0x109c0000 0x2c000 5.02.5721.5145 C:\WINDOWS\system32\PortableDeviceTypes.dll 0x10930000 0x49000 5.02.5721.5145 C:\WINDOWS\system32\PortableDeviceApi.dll 0x44160000 0x124000 7.00.6000.16512 C:\WINDOWS\system32\urlmon.dll 0x7d200000 0x2be000 3.01.4000.4039 C:\WINDOWS\system32\msi.dll 0x5f800000 0x16000 1.01.1593.0000 C:\PROGRA~1\WINDOW~4\MpShHook.dll 0x78130000 0x9b000 8.00.50727.0163 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\MSVCR80.dll 0x7c420000 0x87000 8.00.50727.0163 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\MSVCP80.dll 0x10000000 0x1b9000 2.00.0000.0007 C:\Program Files\Fichiers communs\Ahead\Lib\NeroDigitalExt.dll 0x7c140000 0x103000 7.10.3077.0000 C:\Program Files\Fichiers communs\Ahead\Lib\MFC71.DLL 0x7c340000 0x56000 7.10.3052.0004 C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll 0x7c3a0000 0x7b000 7.10.3077.0000 C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll 0x5d360000 0xf000 7.10.3077.0000 C:\WINDOWS\system32\MFC71FRA.DLL 0x02a20000 0x3000 1.00.0000.0000 C:\WINDOWS\system32\PDFShell.FRA 0x01440000 0x13000 7.05.0001.0036 C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll 0x02cb0000 0x19000 5.00.0000.0327 C:\WINDOWS\system32\PDFShell.dll 0x04d90000 0x102000 7.10.3077.0000 C:\WINDOWS\system32\MFC71U.DLL 0x04ec0000 0x11000 7.00.0000.0019 C:\PROGRA~1\ANTIVI~1\avconfig.dll 0x01a60000 0x1e000 2.00.0000.0000 C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll 0x52200000 0xb000 7.00.0337.0000 C:\Program Files\Zone Labs\ZoneAlarm\zlavscan.dll 0x01190000 0x4000 5.03.0017.0000 C:\Program Files\Zone Labs\ZoneAlarm\zlavscan_Loc040c.dll 0x01a80000 0x32000 2.05.0001.0000 C:\Program Files\WinAce\arcext.dll 0x02d70000 0xdc000 2.05.0000.0000 C:\Program Files\WinAce\acev2.dll 0x02300000 0x2c000 C:\Program Files\WinRAR\rarext.dll 0x02330000 0x2a000 7.05.0001.0036 C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll 0x02360000 0x11000 4.00.0001.3500 C:\WINDOWS\system32\btncopy.dll 0x74730000 0x3d000 3.525.1117.0000 C:\WINDOWS\system32\ODBC32.dll 0x042b0000 0x18000 3.525.1117.0000 C:\WINDOWS\system32\odbcint.dll 0x012b0000 0x4e000 7.00.0005.0172 C:\Program Files\Adobe\Acrobat 7.0\Acrobat Elements\ContextMenu.fra 0x03730000 0x8f000 7.00.0007.0142 C:\Program Files\Adobe\Acrobat 7.0\Acrobat Elements\ContextMenu.dll 0x00cc0000 0x10000 8.00.0000.0456 C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll 0x028c0000 0x7e000 3.05.0000.0000 C:\PROGRA~1\FRESHD~1\FRESHD~1\fdcatch.dll 0x038c0000 0xd5000 1.04.0000.0000 C:\PROGRA~1\SPYBOT~1\SDHelper.dll 0x41f00000 0x7000 1.01.0000.3917 C:\WINDOWS\system32\asfsipc.dll 0x60980000 0x7000 3.01.4000.1823 C:\WINDOWS\system32\MSISIP.DLL 0x74e10000 0x10000 5.06.0000.8820 C:\WINDOWS\System32\wshext.dll 0x73d20000 0xfe000 6.02.4131.0000 C:\WINDOWS\system32\MFC42.DLL 0x61d70000 0xe000 6.00.8665.0000 C:\WINDOWS\system32\MFC42LOC.DLL 0x59000000 0xe000 5.06.0000.6626 C:\WINDOWS\System32\wshFR.DLL 0x365a0000 0x16000 10.00.6313.0000 C:\PROGRA~1\MICROS~2\Office10\MCPS.DLL 0x76010000 0x65000 6.02.3104.0000 C:\WINDOWS\system32\MSVCP60.DLL ListDLLs v2.25 - DLL lister for Win9x/NT Copyright © 1997-2004 Mark Russinovich Sysinternals - www.sysinternals.com ------------------------------------------------------------------------------ winlogon.exe pid: 1100 Command line: winlogon.exe Base Size Version Path 0x01000000 0x81000 \??\C:\WINDOWS\system32\winlogon.exe 0x58b50000 0x9a000 5.82.2900.2982 C:\WINDOWS\system32\COMCTL32.dll 0x74730000 0x3d000 3.525.1117.0000 C:\WINDOWS\system32\ODBC32.dll 0x20000000 0x18000 3.525.1117.0000 C:\WINDOWS\system32\odbcint.dll 0x01270000 0x3b000 1.07.0018.0005 C:\WINDOWS\system32\WgaLogon.dll 0x76f80000 0x7f000 2001.12.4414.0308 C:\WINDOWS\system32\CLBCATQ.DLL 0x77000000 0xd4000 2001.12.4414.0258 C:\WINDOWS\system32\COMRes.dll Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\WINDOWS\system 10/09/1999 11:06 4 672 WOWPOST.EXE 1 fichier(s) 4 672 octets 0 Rép(s) 7 216 513 024 octets libres Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\WINDOWS\system32 20/08/2004 00:09 6 144 csrss.exe 1 fichier(s) 6 144 octets 0 Rép(s) 7 216 513 024 octets libres Contenu de Downloaded Program Files Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\WINDOWS\Downloaded Program Files 04/11/2007 23:00 <REP> . 04/11/2007 23:00 <REP> .. 24/08/2006 07:28 141 424 asinst.dll 22/08/2006 08:06 537 asinst.inf 17/05/2006 13:32 198 304 avsniffdlgs.dll 17/05/2006 13:26 537 704 AXXPEE.dll 11/05/2004 10:55 1 277 992 Banksht2.dll 07/12/2004 16:07 32 bdcore.dll 01/03/2005 14:08 118 784 bdupd.dll 17/05/2006 13:29 241 CabSA.inf 12/07/2006 00:00 2 504 catalog.dat 05/08/2004 12:41 288 296 Chess.ocx 13/06/2007 11:01 <REP> CONFLICT.1 11/10/2000 15:49 49 152 CPSurVid.dll 30/09/2002 12:03 65 desktop.ini 14/10/1997 17:52 697 DirectAnimation Java Classes.osd 16/05/2007 08:29 227 driveragent.inf 16/05/2007 08:28 449 024 driveragent.ocx 25/07/2002 16:13 24 576 dwusplay.dll 25/07/2002 16:13 196 608 dwusplay.exe 12/07/2006 00:00 6 899 ecbootil.vxd 17/05/2006 13:26 42 112 ecmldr32.dll 12/07/2006 00:00 288 424 ecmsvr32.dll 15/06/2006 18:33 1 132 192 EPUWALcontrol.dll 25/06/2006 12:50 1 793 erma.inf 11/07/2006 09:41 345 656 ewidoOnlineScan.dll 10/04/2000 16:12 1 765 fhg.inf 13/04/2007 01:14 382 344 GAME_UNO1.dll 17/01/2007 14:44 316 GAME_UNO1.INF 01/03/2005 14:08 53 248 ipsupd.dll 09/08/2004 04:02 327 680 isusweb.dll 09/11/2006 16:04 896 jinstall-1_5_0_10.inf 12/07/2007 03:22 1 055 jinstall-6u2.inf 16/03/2005 11:34 7 407 lang.ini 13/04/2007 14:27 367 LegitCheckControl.inf 07/12/2004 16:07 32 libfn.dll 14/03/2005 13:38 126 live.ini 29/05/2003 14:00 160 864 messengerstatsclient.dll 06/04/2004 18:03 172 072 MessengerStatsPAClient.dll 20/01/2000 14:25 1 162 Microsoft XML Parser for Java.osd 29/05/2003 14:00 84 064 minesweeper.dll 29/05/2003 14:00 77 408 msgrchkr.dll 30/06/2005 15:19 227 MsnMessengerSetupDownloader.inf 14/08/2005 00:26 113 664 MsnMessengerSetupDownloader.ocx 06/02/2001 10:30 302 MSSurVid.inf 11/10/2000 15:49 110 592 MSSurVid.ocx 17/05/2006 13:28 6 850 navapi.vxd 17/05/2006 13:28 201 896 navapi32.dll 12/07/2006 00:00 124 584 naveng32.dll 12/07/2006 00:00 837 288 navex32a.dll 01/06/2006 02:57 1 331 oscan8.inf 01/06/2006 02:54 471 040 oscan8.ocx 31/05/2006 04:15 10 oscan81.ocx_x 06/02/2001 10:30 189 Outside.inf 05/02/2001 15:50 86 016 Outside.ocx 24/10/2004 18:50 9 853 766 QuickTimeInstallCache.qdat 17/05/2006 13:32 161 480 rufsi.dll 14/03/2005 13:58 7 073 scanoptions.tsi 12/07/2006 00:00 97 504 scrauth.dat 14/02/2007 15:30 144 setup.inf 29/05/2003 14:00 86 112 solitaireshowdown.dll 27/03/2007 15:00 5 021 swflash.inf 12/07/2006 00:00 8 145 symaveng.cat 12/07/2006 00:00 901 symaveng.inf 12/07/2006 00:00 47 941 tcdefs.dat 12/07/2006 00:00 809 608 tcscan7.dat 12/07/2006 00:00 304 418 tcscan8.dat 12/07/2006 00:00 628 361 tcscan9.dat 12/07/2006 00:00 453 tinf.dat 12/07/2006 00:00 148 tinfidx.dat 12/07/2006 00:00 1 957 tinfl.dat 12/07/2006 00:00 56 829 tscan1.dat 12/07/2006 00:00 3 027 tscan1hd.dat 17/06/2007 14:19 23 600 tvichw32.sys 12/07/2006 00:00 5 516 v.grd 12/07/2006 00:00 2 249 v.sig 12/07/2006 00:00 106 244 virscan.inf 12/07/2006 00:00 961 112 virscan1.dat 12/07/2006 00:00 569 646 virscan2.dat 12/07/2006 00:00 146 360 virscan3.dat 12/07/2006 00:00 320 105 virscan4.dat 12/07/2006 00:00 2 523 933 virscan5.dat 12/07/2006 00:00 389 041 virscan6.dat 12/07/2006 00:00 3 881 038 virscan7.dat 12/07/2006 00:00 1 566 499 virscan8.dat 12/07/2006 00:00 3 420 941 virscan9.dat 12/07/2006 00:00 32 virscant.dat 13/07/2006 22:22 2 072 vscanmsx.dat 18/10/2006 19:28 461 136 wlscBase.dll 18/10/2006 19:32 320 wlscBase.inf 01/06/2004 14:41 853 yinst.inf 01/06/2004 14:36 141 312 yinsthelper.dll 12/07/2006 00:00 224 zdone.dat 18/07/2006 14:35 151 080 ZIntro.ocx 91 fichier(s) 35 074 239 octets Répertoire de C:\WINDOWS\Downloaded Program Files\CONFLICT.1 13/06/2007 11:01 <REP> . 13/06/2007 11:01 <REP> .. 22/02/2007 22:41 304 544 MessengerStatsPAClient.dll 28/02/2007 13:21 130 472 MineSweeper.dll 28/02/2007 13:21 131 472 msgrchkr.dll 3 fichier(s) 566 488 octets Total des fichiers listés : 94 fichier(s) 35 640 727 octets 5 Rép(s) 7 216 513 024 octets libres Recherche de rootkit! (Merci S!Ri) Recherche d'infections connues Export des clefs sensibles.. Liste des fichiers en exception sur le pare-feu XP SP2 "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\Program Files\\Microsoft Games\\Age of Mythology\\aomx.exe"="C:\\Program Files\\Microsoft Games\\Age of Mythology\\aomx.exe:*:Enabled:Age of Mythology - The Titans Expansion" "C:\\APPS\\Inventime\\my.exe"="C:\\APPS\\Inventime\\my.exe:*:Disabled:my.exe, built by Bravo Zulu Inc's, JToExe" "C:\\Program Files\\MSN\\MSNCoreFiles\\msn6.exe"="C:\\Program Files\\MSN\\MSNCoreFiles\\msn6.exe:*:Enabled:msn" "C:\\WINDOWS\\system32\\LEXPPS.EXE"="C:\\WINDOWS\\system32\\LEXPPS.EXE:*:Disabled:LEXPPS.EXE" "C:\\Program Files\\Microsoft Games\\Halo\\halo.exe"="C:\\Program Files\\Microsoft Games\\Halo\\halo.exe:*:Enabled:Halo" "C:\\Program Files\\Microsoft Games\\Age of Empires III\\age3.exe"="C:\\Program Files\\Microsoft Games\\Age of Empires III\\age3.exe:*:Enabled:Age of Empires 3" "C:\\APPS\\EPhoneTools\\phonTool.exe"="C:\\APPS\\EPhoneTools\\phonTool.exe:*:Disabled:Logiciel Multimédia" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus" "C:\\StubInstaller.exe"="C:\\StubInstaller.exe:*:Enabled:LimeWire swarmed installer" "C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire" "C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule" "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)" "C:\\Program Files\\Connexion Internet\\Gestionnaire\\gestionnaire.exe"="C:\\Program Files\\Connexion Internet\\Gestionnaire\\gestionnaire.exe:*:Disabled:Gestionnaire Internet" "C:\\Program Files\\Google\\Google Earth\\googleearth.exe"="C:\\Program Files\\Google\\Google Earth\\googleearth.exe:*:Enabled:Google Earth" "C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test" "C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application" "C:\\Program Files\\Microsoft Games\\Age of Empires\\EMPIRESX.EXE"="C:\\Program Files\\Microsoft Games\\Age of Empires\\EMPIRESX.EXE:*:Enabled:Age of Empires, the Rise of Rome" "C:\\Program Files\\Cossacks\\dmcr.exe"="C:\\Program Files\\Cossacks\\dmcr.exe:*:Enabled:dmcr" "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype" "C:\\Program Files\\Microsoft Games\\Halo Custom Edition\\haloce.exe"="C:\\Program Files\\Microsoft Games\\Halo Custom Edition\\haloce.exe:*:Enabled:Halo" "C:\\Program Files\\palmOne\\HOTSYNC.EXE"="C:\\Program Files\\palmOne\\HOTSYNC.EXE:*:Enabled:HotSync® Manager Application" "C:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe"="C:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe:*:Enabled:ET" "C:\\Program Files\\Microsoft Games\\Rise of Nations\\thrones.exe"="C:\\Program Files\\Microsoft Games\\Rise of Nations\\thrones.exe:*:Enabled:Rise of Nations" "C:\\RStrike\\romustrike.exe"="C:\\RStrike\\romustrike.exe:*:Disabled:romustrike" "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" "C:\\Program Files\\Nero\\Nero 7\\Nero MediaHome\\NeroMediaHome.exe"="C:\\Program Files\\Nero\\Nero 7\\Nero MediaHome\\NeroMediaHome.exe:*:Enabled:Nero MediaHome" "C:\\Program Files\\Internet Explorer\\iexplore.exe"="C:\\Program Files\\Internet Explorer\\iexplore.exe:*:Enabled:Internet Explorer" "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)" "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" Export de la clef SharedTaskScheduler [sharedTaskScheduler] "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui" "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant" exports des policies REGEDIT4 [system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 Export des clefs sensibles.. Rechercher adresses sensibles dans le fichier HOSTS... KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg) Error loading kernel support driver! Make sure you are running this as Administrator. KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg) Driver/Module list by traversal of PsLoadedModuleList 804D7000 - \WINDOWS\system32\ntoskrnl.exe 806EC000 - \WINDOWS\system32\hal.dll F899F000 - \WINDOWS\system32\KDCOM.DLL F88AF000 - \WINDOWS\system32\BOOTVID.dll F844F000 - ACPI.sys F89A1000 - \WINDOWS\System32\DRIVERS\WMILIB.SYS F843E000 - pci.sys F849F000 - isapnp.sys F8A67000 - pciide.sys F871F000 - \WINDOWS\System32\DRIVERS\PCIIDEX.SYS F89A3000 - aliide.sys F89A5000 - cmdide.sys F89A7000 - toside.sys F89A9000 - viaide.sys F89AB000 - intelide.sys F84AF000 - MountMgr.sys F841F000 - ftdisk.sys F8727000 - PartMgr.sys F84BF000 - VolSnap.sys F88B3000 - cpqarray.sys F8407000 - \WINDOWS\System32\DRIVERS\SCSIPORT.SYS F83EF000 - atapi.sys F88B7000 - aha154x.sys F872F000 - sparrow.sys F88BB000 - symc810.sys F84CF000 - aic78xx.sys F88BF000 - dac960nt.sys F84DF000 - ql10wnt.sys F88C3000 - amsint.sys F8737000 - asc.sys F88C7000 - asc3550.sys F873F000 - mraid35x.sys F8747000 - i2omp.sys F88CB000 - ini910u.sys F84EF000 - ql1240.sys F84FF000 - aic78u2.sys F874F000 - symc8xx.sys F8757000 - sym_hi.sys F875F000 - sym_u3.sys F8767000 - ABP480N5.SYS F876F000 - asc3350p.sys F89AD000 - cd20xrnt.sys F850F000 - ultra.sys F83D6000 - adpu160m.sys F8777000 - dpti2o.sys F851F000 - ql1080.sys F852F000 - ql1280.sys F853F000 - ql12160.sys F877F000 - perc2.sys F89AF000 - perc2hib.sys F8787000 - hpn.sys F88CF000 - cbidf2k.sys F83AA000 - dac2w2k.sys F854F000 - disk.sys F855F000 - \WINDOWS\System32\DRIVERS\CLASSPNP.SYS F838A000 - fltmgr.sys F8378000 - sr.sys F856F000 - PxHelp20.sys F857F000 - avgntmgr.sys F8361000 - KSecDD.sys F82D4000 - Ntfs.sys F82A7000 - NDIS.sys F858F000 - viaagp.sys F878F000 - viaagp1.sys F8293000 - srescan.sys F859F000 - sisagp.sys F85AF000 - ohci1394.sys F85BF000 - \WINDOWS\System32\DRIVERS\1394BUS.SYS F8278000 - Mup.sys F85CF000 - alim1541.sys F85DF000 - amdagp.sys F85EF000 - agp440.sys F85FF000 - agpCPQ.sys F862F000 - \SystemRoot\System32\DRIVERS\nic1394.sys F8248000 - \SystemRoot\System32\DRIVERS\amdk7.sys F76D6000 - \SystemRoot\System32\DRIVERS\nv4_mini.sys F76C2000 - \SystemRoot\System32\DRIVERS\VIDEOPRT.SYS F766C000 - \SystemRoot\System32\DRIVERS\Cap7134.sys F8238000 - \SystemRoot\System32\DRIVERS\STREAM.SYS F7649000 - \SystemRoot\System32\DRIVERS\ks.sys F87D7000 - \SystemRoot\System32\DRIVERS\usbuhci.sys F7626000 - \SystemRoot\System32\DRIVERS\USBPORT.SYS F87DF000 - \SystemRoot\System32\DRIVERS\usbehci.sys F8B69000 - \SystemRoot\System32\Drivers\ElbyDelay.sys F87E7000 - \SystemRoot\System32\Drivers\ASAPIW2k.sys F8228000 - \SystemRoot\System32\DRIVERS\cdrom.sys F8218000 - \SystemRoot\System32\DRIVERS\redbook.sys F8208000 - \SystemRoot\System32\DRIVERS\imapi.sys F7593000 - \SystemRoot\system32\drivers\ALCXWDM.SYS F756F000 - \SystemRoot\system32\drivers\portcls.sys F81F8000 - \SystemRoot\system32\drivers\drmk.sys F750D000 - \SystemRoot\system32\drivers\ALCXSENS.SYS F74BE000 - \SystemRoot\System32\DRIVERS\slntamr.sys F87EF000 - \SystemRoot\System32\DRIVERS\SlWdmSup.sys F74A2000 - \SystemRoot\System32\DRIVERS\Mtlmnt5.sys F87F7000 - \SystemRoot\System32\Drivers\Modem.SYS F81E8000 - \SystemRoot\System32\DRIVERS\fetnd5b.sys F87FF000 - \SystemRoot\System32\DRIVERS\fdc.sys F7491000 - \SystemRoot\System32\DRIVERS\serial.sys F8983000 - \SystemRoot\System32\DRIVERS\serenum.sys F747D000 - \SystemRoot\System32\DRIVERS\parport.sys F81D8000 - \SystemRoot\System32\DRIVERS\i8042prt.sys F8807000 - \SystemRoot\System32\DRIVERS\mouclass.sys F880F000 - \SystemRoot\System32\DRIVERS\kbdclass.sys F7338000 - \SystemRoot\system32\DRIVERS\btkrnl.sys F8B72000 - \SystemRoot\System32\DRIVERS\audstub.sys F8817000 - \SystemRoot\system32\DRIVERS\rasirda.sys F881F000 - \SystemRoot\system32\DRIVERS\TDI.SYS F7E9B000 - \SystemRoot\System32\DRIVERS\rasl2tp.sys F898B000 - \SystemRoot\System32\DRIVERS\ndistapi.sys F7321000 - \SystemRoot\System32\DRIVERS\ndiswan.sys F7E8B000 - \SystemRoot\System32\DRIVERS\raspppoe.sys F7E7B000 - \SystemRoot\System32\DRIVERS\raspptp.sys F7310000 - \SystemRoot\System32\DRIVERS\psched.sys F7E6B000 - \SystemRoot\System32\DRIVERS\msgpc.sys F8827000 - \SystemRoot\System32\DRIVERS\ptilink.sys F882F000 - \SystemRoot\System32\DRIVERS\raspti.sys F72F7000 - \SystemRoot\System32\DRIVERS\PPPoEWin.SYS F7E5B000 - \SystemRoot\System32\DRIVERS\termdd.sys F89E5000 - \SystemRoot\System32\DRIVERS\swenum.sys F72C3000 - \SystemRoot\System32\DRIVERS\update.sys F898F000 - \SystemRoot\System32\DRIVERS\mssmbios.sys F8993000 - \SystemRoot\system32\drivers\WmBEnum.sys F7E4B000 - \SystemRoot\system32\drivers\WmXlCore.sys F7E3B000 - \SystemRoot\System32\Drivers\NDProxy.SYS F8837000 - \SystemRoot\System32\DRIVERS\PhTVTune.sys F7E0B000 - \SystemRoot\System32\DRIVERS\usbhub.sys F89ED000 - \SystemRoot\System32\DRIVERS\USBD.SYS F89EF000 - \SystemRoot\System32\Drivers\i2omgmt.SYS F864F000 - \SystemRoot\SYSTEM32\DRIVERS\avgntdd.sys F89F1000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS F8A87000 - \SystemRoot\System32\Drivers\Null.SYS F89F3000 - \SystemRoot\System32\Drivers\Beep.SYS F8A88000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys F8847000 - \SystemRoot\System32\DRIVERS\HIDPARSE.SYS F884F000 - \SystemRoot\System32\drivers\vga.sys F89F5000 - \SystemRoot\System32\Drivers\mnmdd.SYS F89F7000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys F8857000 - \SystemRoot\System32\Drivers\Msfs.SYS F885F000 - \SystemRoot\System32\Drivers\Npfs.SYS F894F000 - \SystemRoot\System32\DRIVERS\rasacd.sys F5D0B000 - \SystemRoot\System32\DRIVERS\ipsec.sys F5CB3000 - \SystemRoot\System32\DRIVERS\tcpip.sys F5C8B000 - \SystemRoot\System32\DRIVERS\netbt.sys F5C2C000 - \SystemRoot\System32\vsdatant.sys F5C0A000 - \SystemRoot\System32\drivers\afd.sys F865F000 - \SystemRoot\System32\DRIVERS\netbios.sys F5BDF000 - \SystemRoot\System32\DRIVERS\rdbss.sys F5B70000 - \SystemRoot\System32\DRIVERS\mrxsmb.sys F868F000 - \SystemRoot\System32\Drivers\Fips.SYS F583A000 - \SystemRoot\System32\DRIVERS\ipnat.sys F869F000 - \SystemRoot\System32\DRIVERS\wanarp.sys F86AF000 - \SystemRoot\System32\DRIVERS\arp1394.sys F721B000 - \SystemRoot\system32\DRIVERS\usb8023.sys F8877000 - \SystemRoot\system32\DRIVERS\RNDISMP.SYS F8AC2000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys F7217000 - \SystemRoot\System32\Drivers\ASPI32.SYS F887F000 - \SystemRoot\System32\DRIVERS\USBSTOR.SYS F7213000 - \SystemRoot\System32\DRIVERS\hidusb.sys F8258000 - \SystemRoot\System32\DRIVERS\HIDCLASS.SYS F888F000 - \SystemRoot\System32\DRIVERS\usbccgp.sys F56E2000 - \SystemRoot\System32\DRIVERS\LV532AV.SYS F8198000 - \SystemRoot\System32\DRIVERS\kbdhid.sys F5D5E000 - \SystemRoot\System32\DRIVERS\usbscan.sys F87AF000 - \SystemRoot\System32\DRIVERS\usbprint.sys F554B000 - \SystemRoot\System32\Drivers\Fastfat.SYS F57E2000 - \SystemRoot\System32\Drivers\Cdfs.SYS F5533000 - \SystemRoot\System32\Drivers\dump_atapi.sys F8A43000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS BF800000 - \SystemRoot\System32\win32k.sys F56CA000 - \SystemRoot\System32\drivers\Dxapi.sys F5E16000 - \SystemRoot\System32\watchdog.sys BF9C3000 - \SystemRoot\System32\drivers\dxg.sys F8B6A000 - \SystemRoot\System32\drivers\dxgthk.sys BF9D5000 - \SystemRoot\System32\nv4_disp.dll F3C4A000 - \SystemRoot\system32\DRIVERS\irda.sys F3D78000 - \SystemRoot\System32\DRIVERS\ndisuio.sys F394D000 - \SystemRoot\System32\DRIVERS\mrxdav.sys F8A2D000 - \SystemRoot\System32\Drivers\ParVdm.SYS F87BF000 - \??\C:\WINDOWS\system32\drivers\btserial.sys F3853000 - \??\C:\WINDOWS\system32\drivers\btslbcsp.sys F3B32000 - \SystemRoot\System32\Drivers\ElbyCDIO.sys F37EA000 - \SystemRoot\System32\Drivers\HTTP.sys F36A8000 - \SystemRoot\System32\DRIVERS\srv.sys F37C6000 - \SystemRoot\System32\DRIVERS\secdrv.sys F2EDA000 - \SystemRoot\system32\drivers\wdmaud.sys F3177000 - \SystemRoot\system32\drivers\sysaudio.sys F1FF9000 - \SystemRoot\system32\drivers\kmixer.sys F8B15000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys Total number of drivers = 189 Liste des programmes installes Adobe Acrobat 5.0 Adobe Acrobat 7.0 Professional - English, Français, Deutsch Adobe Acrobat 7.0.9 Professional - English, Français, Deutsch Adobe Flash Player 9 ActiveX Adobe Reader 8 - Français Adobe Shockwave Player Age of Empires III Age of Empires III Age of Mythology Gold Alexandra Ledermann 5 AntiVir PersonalEdition Classic Windows Apple Software Update Archiveur WinRAR AutoCAD LT 2000 - Français AutoUpdate AVG Anti-Spyware 7.5 Azureus Barre d'outils Outlook de Windows Live (Windows Live Toolbar) Battlefield 2 Beneton Movie GIF 1.1.1 Bloqueur de fenêtres pop-up (Windows Live Toolbar) CCleaner (remove only) CDBurnerXP Pro 3 CloneDVD2 CM 03-04 Commandos 3 - Destination Berlin Corel Graphics Suite 11 Correctif pour Windows XP (KB914440) Correctif Windows XP - KB834707 Correctif Windows XP - KB867282 Correctif Windows XP - KB873333 Correctif Windows XP - KB873339 Correctif Windows XP - KB885250 Correctif Windows XP - KB885835 Correctif Windows XP - KB885836 Correctif Windows XP - KB885884 Correctif Windows XP - KB886185 Correctif Windows XP - KB887472 Correctif Windows XP - KB887742 Correctif Windows XP - KB888113 Correctif Windows XP - KB888302 Correctif Windows XP - KB890047 Correctif Windows XP - KB890175 Correctif Windows XP - KB890859 Correctif Windows XP - KB890923 Correctif Windows XP - KB891781 Correctif Windows XP - KB893066 Correctif Windows XP - KB893086 Cosmo Player 2.1 (38329) DiMAGE Messenger 2.0 DiMAGE Viewer DivX Codec DivX Content Uploader DivX Converter DivX Player DivX Web Player DJMixStation 2 feat. Virtual DJ Documents To Go Dofus 1.18.0 Dofus 1.19.0 Détecteur de flux Windows Live Toolbar (Windows Live Toolbar) DVD Shrink 3.2 EAX Unified Extension de Windows Live Toolbar (Windows Live Toolbar) Google Earth Google Toolbar for Internet Explorer Google Toolbar for Internet Explorer GTK+ Runtime Environment 2.2.4-3 HappyCollection HijackThis 2.0.2 Hotfix for Windows Media Format 11 SDK (KB929399) Hotfix for Windows XP (KB915865) Hotfix for Windows XP (KB926239) IE Privacy Keeper Java 6 Update 2 K-Lite Codec Pack 2.33 Full Kit d'installation L&H TTS3000 Français Labtec WebCam Lecteur Windows Media 11 lesFourmis Lexmark 2200 Series Logitech Gaming Software Menus intelligents (Windows Live Toolbar) Messenger Plus! Live Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 Microsoft .NET Framework 1.1 French Language Pack Microsoft .NET Framework 1.1 Hotfix (KB928366) Microsoft .NET Framework 2.0 Microsoft .NET Framework 2.0 Microsoft Compression Client Pack 1.0 for Windows XP Microsoft Internationalized Domain Names Mitigation APIs Microsoft National Language Support Downlevel APIs Microsoft Office 2000 SR-1 Professional Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Word 2002 Mise à jour de sécurité pour Lecteur Windows Media (KB911564) Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734) Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782) Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) Mise à jour de sécurité pour Lecteur Windows Media 9 (KB911565) Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734) Mise à jour de sécurité pour Step by Step Interactive Training (KB898458) Mise à jour de sécurité pour Step by Step Interactive Training (KB923723) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB933566) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB937143) Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127) Mise à jour de sécurité pour Windows XP (KB883939) Mise à jour de sécurité pour Windows XP (KB890046) Mise à jour de sécurité pour Windows XP (KB893756) Mise à jour de sécurité pour Windows XP (KB896358) Mise à jour de sécurité pour Windows XP (KB896422) Mise à jour de sécurité pour Windows XP (KB896423) Mise à jour de sécurité pour Windows XP (KB896424) Mise à jour de sécurité pour Windows XP (KB896428) Mise à jour de sécurité pour Windows XP (KB896688) Mise à jour de sécurité pour Windows XP (KB899587) Mise à jour de sécurité pour Windows XP (KB899588) Mise à jour de sécurité pour Windows XP (KB899591) Mise à jour de sécurité pour Windows XP (KB900725) Mise à jour de sécurité pour Windows XP (KB901017) Mise à jour de sécurité pour Windows XP (KB901214) Mise à jour de sécurité pour Windows XP (KB902400) Mise à jour de sécurité pour Windows XP (KB903235) Mise à jour de sécurité pour Windows XP (KB904706) Mise à jour de sécurité pour Windows XP (KB905414) Mise à jour de sécurité pour Windows XP (KB905749) Mise à jour de sécurité pour Windows XP (KB905915) Mise à jour de sécurité pour Windows XP (KB908519) Mise à jour de sécurité pour Windows XP (KB908531) Mise à jour de sécurité pour Windows XP (KB911280) Mise à jour de sécurité pour Windows XP (KB911562) Mise à jour de sécurité pour Windows XP (KB911567) Mise à jour de sécurité pour Windows XP (KB911927) Mise à jour de sécurité pour Windows XP (KB912812) Mise à jour de sécurité pour Windows XP (KB912919) Mise à jour de sécurité pour Windows XP (KB913446) Mise à jour de sécurité pour Windows XP (KB913580) Mise à jour de sécurité pour Windows XP (KB914388) Mise à jour de sécurité pour Windows XP (KB914389) Mise à jour de sécurité pour Windows XP (KB916281) Mise à jour de sécurité pour Windows XP (KB917159) Mise à jour de sécurité pour Windows XP (KB917344) Mise à jour de sécurité pour Windows XP (KB917422) Mise à jour de sécurité pour Windows XP (KB917953) Mise à jour de sécurité pour Windows XP (KB918118) Mise à jour de sécurité pour Windows XP (KB918439) Mise à jour de sécurité pour Windows XP (KB918899) Mise à jour de sécurité pour Windows XP (KB919007) Mise à jour de sécurité pour Windows XP (KB920213) Mise à jour de sécurité pour Windows XP (KB920214) Mise à jour de sécurité pour Windows XP (KB920670) Mise à jour de sécurité pour Windows XP (KB920683) Mise à jour de sécurité pour Windows XP (KB920685) Mise à jour de sécurité pour Windows XP (KB921398) Mise à jour de sécurité pour Windows XP (KB921503) Mise à jour de sécurité pour Windows XP (KB921883) Mise à jour de sécurité pour Windows XP (KB922616) Mise à jour de sécurité pour Windows XP (KB922760) Mise à jour de sécurité pour Windows XP (KB922819) Mise à jour de sécurité pour Windows XP (KB923191) Mise à jour de sécurité pour Windows XP (KB923414) Mise à jour de sécurité pour Windows XP (KB923689) Mise à jour de sécurité pour Windows XP (KB923694) Mise à jour de sécurité pour Windows XP (KB923980) Mise à jour de sécurité pour Windows XP (KB924191) Mise à jour de sécurité pour Windows XP (KB924270) Mise à jour de sécurité pour Windows XP (KB924496) Mise à jour de sécurité pour Windows XP (KB924667) Mise à jour de sécurité pour Windows XP (KB925486) Mise à jour de sécurité pour Windows XP (KB925902) Mise à jour de sécurité pour Windows XP (KB926255) Mise à jour de sécurité pour Windows XP (KB926436) Mise à jour de sécurité pour Windows XP (KB927779) Mise à jour de sécurité pour Windows XP (KB927802) Mise à jour de sécurité pour Windows XP (KB928255) Mise à jour de sécurité pour Windows XP (KB928843) Mise à jour de sécurité pour Windows XP (KB929123) Mise à jour de sécurité pour Windows XP (KB930178) Mise à jour de sécurité pour Windows XP (KB931261) Mise à jour de sécurité pour Windows XP (KB931784) Mise à jour de sécurité pour Windows XP (KB932168) Mise à jour de sécurité pour Windows XP (KB935839) Mise à jour de sécurité pour Windows XP (KB935840) Mise à jour de sécurité pour Windows XP (KB936021) Mise à jour de sécurité pour Windows XP (KB938829) Mise à jour pour Windows XP (KB894391) Mise à jour pour Windows XP (KB896727) Mise à jour pour Windows XP (KB898461) Mise à jour pour Windows XP (KB900485) Mise à jour pour Windows XP (KB904942) Mise à jour pour Windows XP (KB910437) Mise à jour pour Windows XP (KB916595) Mise à jour pour Windows XP (KB920872) Mise à jour pour Windows XP (KB922582) Mise à jour pour Windows XP (KB927891) Mise à jour pour Windows XP (KB929338) Mise à jour pour Windows XP (KB930916) Mise à jour pour Windows XP (KB931836) Mise à jour pour Windows XP (KB938828) Modem ADSL MSXML 4.0 SP2 (KB927978) MSXML4 Parser Navilog1 3.3.0 Nero 7 Premium OneCare Advisor (Windows Live Toolbar) Outil de mise à jour Google Packard Bell Companion Palm Desktop palmOne VersaMail Pilote Webcam pour DiMAGE KONICA_MINOLTA Play89 powerOne Personal v3.1.5 for Handhelds pro/floor pro/floor pro/space pro/space QuickTime RealPlayer Rise of Nations Security Update for CAPICOM (KB931906) Security Update for CAPICOM (KB931906) Security Update pour Microsoft .NET Framework 2.0 (KB928365) Shockwave SigmaTel MSCN Audio Player SLD Codec Pack Sonic RecordNow! Spybot - Search & Destroy 1.4 Suite graphique CorelDRAW 11 TapTarget.com iSpin for PalmOS Ulead GIF Animator 5 Evaluation USB MODEM Driver VBA (2627.5) VideoLAN VLC media player 0.8.4a VMN Toolbar WebFldrs XP WIDCOMM Bluetooth Software WinAce Archiver Windows Defender Windows Genuine Advantage Notifications (KB905474) Windows Installer 3.1 (KB893803) Windows Installer 3.1 (KB893803) Windows Internet Explorer 7 Windows Live Favorites pour Windows Live Toolbar Windows Live Messenger Windows Live OneCare safety scanner Windows Live Sign-in Assistant Windows Live Toolbar Windows Live Toolbar Windows Media Connect Windows Media Connect Windows Media Format 11 runtime Windows Media Format 11 runtime Windows Media Player 11 Windows XP Service Pack 2 WinISO 5.3 Wireless Tablet Series Wolfenstein - Enemy Territory XviD MPEG-4 Video Codec Yahoo! Anti-Spy Yahoo! Toolbar avec bloqueur de fenêtres pop-up ZoneAlarm Zoo Tycoon: Complete Collection Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\Program Files 05/11/2007 11:30 <REP> . 05/11/2007 11:30 <REP> .. 18/06/2005 19:31 <REP> Activision 22/10/2007 13:39 <REP> Adobe 27/02/2005 18:18 <REP> Ahead 15/08/2006 16:05 <REP> Alcohol Soft 09/09/2007 20:04 <REP> AntiVir PersonalEdition Classic 08/01/2007 18:08 <REP> Apple Software Update 26/02/2007 18:02 <REP> AutoCAD LT 2000 17/09/2007 15:48 <REP> Azureus 19/08/2007 23:01 <REP> Beneton Movie GIF 16/12/2006 09:02 <REP> CCleaner 20/08/2007 20:09 <REP> CDBurnerXP Pro 3 13/09/2004 22:05 <REP> CD-Encyclopedia 08/07/2007 20:37 <REP> Chevalmag 08/07/2007 20:38 <REP> ChevalStar 07/08/2006 09:35 <REP> Codemasters 10/12/2006 00:33 <REP> Common Files 30/09/2002 12:01 <REP> ComPlus Applications 04/05/2005 15:02 <REP> Computer Artworks 06/10/2006 12:31 <REP> Corel 07/09/2004 21:51 <REP> CosmoSoftware 23/11/2004 20:56 <REP> Creative 21/07/2004 10:19 <REP> CyberLink 14/12/2006 00:19 <REP> Defenza 08/06/2006 14:48 <REP> DiMAGE Messenger 2.0 08/06/2006 14:52 <REP> DiMAGE Viewer 07/09/2004 21:46 <REP> directx 07/03/2007 22:32 <REP> DivX 11/01/2005 21:14 <REP> DivX4Bitrate 08/11/2006 18:59 <REP> Documents To Go 19/06/2007 17:33 <REP> Dofus 30/07/2006 19:51 <REP> DVD Shrink 27/04/2006 17:46 <REP> EA GAMES 03/06/2005 17:28 <REP> Eidos 08/01/2005 19:52 <REP> Eidos Interactive 15/08/2006 17:48 <REP> Elaborate Bytes 19/01/2006 18:03 <REP> Empire Interactive 26/08/2007 16:05 <REP> Fichiers communs 15/09/2006 17:43 <REP> FireFly Studios 19/10/2007 20:13 <REP> Fourmis 21/10/2007 15:16 <REP> FreshDevices 08/09/2004 19:57 <REP> Friendly Technologies 14/04/2007 18:24 <REP> FullPlayer 16/12/2006 09:00 <REP> GameSpy Arcade 26/08/2007 18:08 <REP> Google 09/12/2006 17:43 <REP> Grisoft 17/06/2007 11:07 <REP> Handset Manager 08/11/2006 19:46 <REP> HappyCollection_2.2d 10/12/2006 19:14 <REP> hijackthis 14/12/2006 00:20 <REP> Hijackthis Version Française 23/10/2006 12:46 <REP> IDXV3 30/12/2006 20:16 <REP> InfinitySW 01/11/2005 22:09 <REP> Infogrames 03/12/2006 14:20 <REP> InterActual 13/09/2007 09:17 <REP> Internet Explorer 20/08/2007 09:56 <REP> Jasc Software Inc 16/07/2007 22:18 <REP> Java 10/09/2007 17:04 <REP> JDA 06/02/2007 23:24 <REP> JS World 07/12/2006 23:03 <REP> Kit ADSL 01/11/2004 13:43 <REP> K-Lite Codec Pack 23/10/2004 11:14 <REP> Labtec 20/04/2007 17:44 <REP> Lexmark 2200 Series 16/01/2007 17:09 <REP> LimeWire 21/11/2004 11:45 <REP> Logitech 01/11/2006 19:16 <REP> Maxis 05/10/2006 16:26 <REP> Messenger 27/03/2007 21:21 <REP> Messenger Plus! Live 09/05/2007 17:07 <REP> Microsoft CAPICOM 2.1.0.2 30/09/2002 12:05 <REP> microsoft frontpage 15/07/2007 10:16 <REP> Microsoft Games 14/09/2004 19:05 <REP> microsoft office 21/07/2004 10:22 <REP> Microsoft Visual Studio 07/12/2006 23:05 <REP> ModemAdsl 25/10/2004 11:06 <REP> Movie Maker 05/11/2007 11:32 <REP> Mozilla Firefox 06/12/2006 11:01 <REP> MSN Games 30/09/2002 12:00 <REP> MSN Gaming Zone 16/07/2007 15:59 <REP> MSN Messenger 07/09/2004 21:51 <REP> MSXML 4.0 21/10/2007 16:21 <REP> Navilog1 15/08/2006 17:40 <REP> Nero 25/10/2004 11:02 <REP> NetMeeting 12/06/2007 22:20 <REP> Outlook Express 09/09/2007 10:19 <REP> palmOne 15/07/2007 15:49 <REP> PestPatrol 22/10/2007 13:25 <REP> Play89 19/08/2007 23:24 <REP> Popims 15/01/2007 15:04 <REP> QuickTime 21/07/2004 10:14 <REP> Real 30/01/2007 15:14 <REP> RubyFortune 27/05/2007 12:48 <REP> Seagrand 30/09/2002 12:00 <REP> Services en ligne 15/01/2007 17:57 <REP> Siber Systems 23/08/2006 23:13 <REP> SigmaTel 02/05/2007 19:25 <REP> Skype 12/04/2007 09:19 <REP> SLD Codec Pack 15/08/2006 17:23 <REP> SlySoft 26/09/2004 16:02 <REP> Snapshot Viewer 21/07/2004 10:21 <REP> Sonic 14/04/2007 21:39 <REP> Sony 15/01/2007 15:04 <REP> Spybot - Search & Destroy 03/06/2007 17:27 <REP> TapTarget.com 12/03/2007 22:34 <REP> TerraGame 15/10/2007 13:28 <REP> Trend Micro 29/10/2005 18:26 <REP> Ubi Soft 17/08/2006 15:52 <REP> UbiSoft 13/12/2006 22:36 <REP> UnH Solutions 07/12/2006 19:22 <REP> USB Driver-Express 15/08/2006 16:18 <REP> VideoLAN 21/07/2004 10:14 <REP> Viewpoint 20/08/2007 10:15 <REP> Visicom Media 20/08/2007 10:14 <REP> vmntoolbar 15/03/2005 08:28 <REP> WAV to MP3 Encoder 10/06/2007 16:01 <REP> WIDCOMM 12/12/2006 22:24 <REP> WinAce 15/01/2007 15:07 <REP> Windows Defender 16/07/2007 16:02 <REP> Windows Live Favorites 10/12/2006 23:41 <REP> Windows Live Safety Center 16/07/2007 16:02 <REP> Windows Live Toolbar 03/09/2007 11:55 <REP> Windows Media Connect 18/12/2006 17:58 <REP> Windows Media Connect 2 18/12/2006 17:58 <REP> Windows Media Player 27/03/2007 22:37 <REP> Windows NT 15/08/2006 16:38 <REP> WinISO 15/01/2007 15:08 <REP> WinRAR 26/06/2007 11:12 <REP> Wolfenstein - Enemy Territory 30/09/2002 12:05 <REP> xerox 11/01/2005 20:42 <REP> XviD 10/12/2006 00:32 <REP> Yahoo! 26/08/2007 17:29 <REP> Zone Labs 0 fichier(s) 0 octets 132 Rép(s) 7 144 480 768 octets libres Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\Program Files\fichiers communs 26/08/2007 16:05 <REP> . 26/08/2007 16:05 <REP> .. 22/10/2007 13:39 <REP> Adobe 15/08/2006 17:30 <REP> Adobe Systems Shared 15/08/2006 17:40 <REP> Ahead 03/01/2005 23:47 <REP> AOL 13/12/2004 19:35 <REP> Autodesk Shared 06/11/2006 14:07 <REP> Borland Shared 10/10/2005 20:37 <REP> Corel 10/10/2005 20:40 <REP> Designer 18/06/2007 20:28 <REP> InstallShield 21/07/2004 10:04 <REP> Java 20/09/2004 19:52 <REP> JDA 23/08/2006 08:05 <REP> L&H 21/11/2004 11:46 <REP> Logitech 15/07/2007 10:17 <REP> Microsoft Shared 30/09/2002 12:02 <REP> MSSoap 21/07/2004 10:14 <REP> Nullsoft 30/09/2002 11:55 <REP> ODBC 16/01/2007 19:43 <REP> Real 30/09/2002 12:02 <REP> Services 14/07/2007 13:39 <REP> Softwin 15/04/2007 21:30 <REP> Sony Shared 30/09/2002 11:55 <REP> SpeechEngines 21/07/2004 10:21 <REP> SureThing Shared 26/08/2007 17:20 <REP> Symantec Shared 12/06/2007 22:20 <REP> System 21/07/2004 10:19 <REP> TVNavigTechnologies Shared 16/01/2007 19:43 <REP> xing shared 0 fichier(s) 0 octets 29 Rép(s) 7 144 415 232 octets libres Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders 10/12/2006 22:56 <REP> . 10/12/2006 22:56 <REP> .. 21/07/2004 10:22 <REP> 1033 10/12/2006 22:56 <REP> 1036 29/01/2004 15:08 1 277 952 MSONSEXT.DLL 13/02/2001 07:23 58 784 MSOSV.DLL 03/06/1999 13:09 122 937 MSOWS409.DLL 07/03/2001 08:00 127 033 MSOWS40c.DLL 06/08/2000 08:04 401 462 MSVCP60.DLL 29/01/2004 15:08 69 632 PKMAXCTL.DLL 29/01/2004 15:08 868 352 PKMCDO.DLL 29/01/2004 15:08 53 248 PKMCORE.DLL 29/01/2004 15:08 102 400 PKMFORMS.DLL 29/01/2004 15:38 634 880 PKMRES.DLL 29/01/2004 15:08 28 672 PKMSSTLB.DLL 22/01/2001 02:25 40 960 PKMTEMPL.DLL 29/01/2004 15:08 24 576 PKMTRACE.DLL 29/01/2004 15:08 86 016 PKMWS.DLL 29/01/2004 15:08 237 568 PROMDEMO.DLL 18/03/1999 04:37 593 977 RAGENT.DLL 29/01/2004 15:08 184 320 SECMGR.DLL 29/01/2004 15:08 315 392 VAIDDMGR.DLL 29/01/2004 15:08 32 768 VAIMEM.DLL 19 fichier(s) 5 260 929 octets 4 Rép(s) 7 144 415 232 octets libres Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\Program Files\common files 10/12/2006 00:33 <REP> . 10/12/2006 00:33 <REP> .. 15/01/2007 14:15 <REP> DataViz 10/12/2006 00:33 <REP> Scanner 13/09/2004 22:05 <REP> Softkey 21/07/2004 10:06 <REP> System 0 fichier(s) 0 octets 6 Rép(s) 7 144 415 232 octets libres Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\ 16/07/2006 10:05 3 490 456 a2freesetup.exe 13/07/2006 13:26 7 973 874 Azureus_2.4.0.2_Win32.setup.exe 12/05/2007 17:22 68 096 diff.exe 12/05/2007 17:22 103 424 grep.exe 28/01/2005 01:21 96 768 dx.dll 14/04/2007 17:45 983 568 SonicStageInstaller.exe 31/10/2005 16:56 700 416 StubInstaller.exe 10/01/2001 12:23 162 304 UNWISE.EXE 26/08/2007 18:17 41 653 912 zlsSetup_70_337_000_fr.exe 9 fichier(s) 55 232 818 octets 0 Rép(s) 7 144 415 232 octets libres Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\ c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avcenter.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avconfig.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avgnt.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avguard.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avnotify.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avscan.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\guardgui.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\licmgr.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\preupd.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\sched.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\setup.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\update.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\avcenter.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\avconfig.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\avgnt.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\avguard.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\avnotify.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\avscan.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\guardgui.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\licmgr.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\preupd.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\sched.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\setup.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472ef1f8\winwks\en\basic-nt\update.exe c:\Documents and Settings\All Users\Application Data\Google Updater\cache\installers_ci_ar_fr_8.1.0.137_setup_2007.06.04_14.04.24.exe c:\Documents and Settings\All Users\Application Data\Google Updater\cache\installers_ci_tb_fr_4.0.1601.4978_setup_2007.01.23_14.48.05.exe c:\Documents and Settings\All Users\Application Data\Google Updater\cache\promo=132933.exe c:\Documents and Settings\philippe\Application Data\inst.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{407B9B5C-DAC5-4F44-A756-B57CAB4E6A8B}\ARPPRODUCTICON.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{407B9B5C-DAC5-4F44-A756-B57CAB4E6A8B}\googleearth.exe_407B9B5CDAC54F44A756B57CAB4E6A8B.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{407B9B5C-DAC5-4F44-A756-B57CAB4E6A8B}\googleearth.exe1_407B9B5CDAC54F44A756B57CAB4E6A8B.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{407B9B5C-DAC5-4F44-A756-B57CAB4E6A8B}\UNINST_Uninstall_G_3DE5E7D47B88403CA3FD2017A8240C5B.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{8047B128-4F7D-4264-90F1-555A55E3F735}\ARPPRODUCTICON.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{8047B128-4F7D-4264-90F1-555A55E3F735}\VersaMailSetupF.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\ARPPRODUCTICON.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\BluetoothShortcut.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\BluetoothShortcut_DEU.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\BluetoothShortcut_ITA.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\NewShortcut5.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\NewShortcut5_2.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\NewShortcut8.exe c:\Documents and Settings\philippe\Application Data\Microsoft\Installer\{B1D78321-7AB1-45A7-A084-885AF75B8F3D}\PalmDesktopShortcut.exe c:\Documents and Settings\philippe\Bureau\antivir_workstation_win7u_en_h.exe c:\Documents and Settings\philippe\Bureau\BMG_Setup.exe c:\Documents and Settings\philippe\Bureau\Fixwareout.exe c:\Documents and Settings\philippe\Bureau\HJTInstall.exe c:\Documents and Settings\philippe\Bureau\Navilog1.exe c:\Documents and Settings\philippe\Bureau\Norton_Removal_Tool.exe c:\Documents and Settings\philippe\Bureau\PhotoFiltre.exe c:\Documents and Settings\philippe\Bureau\UnFREEz.exe c:\Documents and Settings\philippe\Bureau\zlsSetup_65_737_000_fr.exe c:\Documents and Settings\philippe\Bureau\zlsSetup_70_337_000_fr.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\catchme.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\diff.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\dumphive.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\FilesInfoCmd.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\find2.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\Fport.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\grep.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\gzip.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\KProcCheck.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\LFiles.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\LISTDLLS.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\md5sums.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\pslist.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\streams.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\swreg.exe c:\Documents and Settings\philippe\Bureau\DiagHelp\DiagHelp\tar.exe c:\Documents and Settings\philippe\Local Settings\Temp\~nsu.tmp\Au_.exe c:\Documents and Settings\philippe\Mes documents\Mes images\Divers\wolfenstein.exe c:\Documents and Settings\philippe\Mes documents\Mes images\Divers\Lonely Planet DX9\LostPlanetTrialDx9Setup.exe c:\Documents and Settings\philippe\Mes documents\Mes images\Divers\Lost_Planet_DX9_JeuxVideo.com_13255\Lonely Planet DX9\LostPlanetTrialDx9Setup.exe c:\Program Files\Documents To Go\DocsToGo.exe c:\Program Files\Documents To Go\HandheldInstall.exe c:\Program Files\Documents To Go\OfficeAddinInstaller.exe c:\Program Files\Documents To Go\OfficeAddinUninstaller.exe c:\Program Files\Documents To Go\ptgxlat.exe c:\Program Files\Documents To Go\ZipUtil.exe c:\WINDOWS\Installer\{194B2FE0-2B17-4DF2-A532-213FDFC87FB9}\DocumentsToGo.exe c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avarkt.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avconfig.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avevtlog.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avgio.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avinet.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avipc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avnotify.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avpref.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avreg.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avscan.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\avwinll.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccev.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccevrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccgen.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccgenrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccgrdrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccguard.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\cclib.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\cclic.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\cclicrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccmainrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccmsg.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccprofil.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccquamgr.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccquarc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccreporc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccreport.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccscanrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccsched.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccscherc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccupdate.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\ccupdrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\guardmsg.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\licmgr.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\luke.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\lukeres.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\mgrs.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\msgclient.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\netnt.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\scewxml.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\schedr.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\setup.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\shlext.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\smtplib.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\sqlite3.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\updgui.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\updguirc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\updlib.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\basic-nt\updlibrc.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\classic-nt\guardevt.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\classic-nt\rchelp.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\classic-nt\rcimage.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\classic-nt\rctext.dll c:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_472443df\winwks\en\classic-nt\wksstats.dll c:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\help.dll c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll c:\Documents and Settings\All Users\Application Data\Microsoft\USMT\iconlib.dll c:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll c:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\Default\MpEngine.dll c:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Definition Updates\{FD77B041-DB2E-4C41-B02E-61ADEE222D6A}\mpengine.dll c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll c:\Documents and Settings\philippe\Application Data\Microsoft\IdentityCRL\PROD\ppcrlconfig.dll c:\Documents and Settings\philippe\Application Data\Mozilla\Firefox\Profiles\596qoqba.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbar.dll c:\Documents and Settings\philippe\Application Data\Mozilla\Firefox\Profiles\596qoqba.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metrics.dll ****** Fin du rapport DiagHelp Veuillez svp envoyer le fichier C:\upload_moi_SN202258260001.tar.gz a l'adresse http://upload.malekal.com Je n'ai plus de redirection commerciale A+ -
Portable long a demarrer
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Sécurisation, prévention
Bonsoir, et merci pour ton aide. J'ai oublié de dire =, que le systeme est tres instable et quand je pointe sur poste de travail, c'est en fait le dernier dossier ouvert précédemment qui s'ouvre (si j'ai ouvert en premier mes documents et que je veux ouvrir ensuite poste de travail, c'esy mes documents qui s'ouvre). Voici le rapport: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:52:53, on 03/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Launch Manager\QtZgAcer.EXE C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\pctspk.exe C:\WINDOWS\system32\PV92Tray.exe C:\Program Files\Acer\Notebook Manager\almxptray.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\IcoSauve.exe E:\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/search?q=%s R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\QtZgAcer.EXE O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe O4 - HKLM\..\Run: [PV92TRAY] PV92Tray.exe O4 - HKLM\..\Run: [AcerNotebookManager] C:\Program Files\Acer\Notebook Manager\almxptray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\RunOnce: [nltide2] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,L,,4,N (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE RÉSEAU') O4 - Startup: IcoSauve.lnk = C:\WINDOWS\system32\IcoSauve.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe -- End of file - 4059 bytes A+ -
bonsoir Depuis peu mon portable est inhabituellement long à demarrer Après l'avoir allumé et attendu un bon bout de temps (plus que d'habitude),il se bloque sur une page noir avec le curseur clignotant en haut à gauche. Je dois faire enter pour qu'il continue à se lancer, ensuite une série de "bip bip ...."retentie assez fortement puis le poste de travail s'affiche enfin. Quelqu'un pourrait-il me dire ce qu'il se passe je vous envoie un rapport log de HJT Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:06:55, on 02/11/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Launch Manager\QtZgAcer.EXE C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\pctspk.exe C:\WINDOWS\system32\PV92Tray.exe C:\Program Files\Acer\Notebook Manager\almxptray.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\IcoSauve.exe C:\Program Files\Windows Media Player\wmplayer.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/search?q=%s R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\QtZgAcer.EXE O4 - HKLM\..\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe O4 - HKLM\..\Run: [PV92TRAY] PV92Tray.exe O4 - HKLM\..\Run: [AcerNotebookManager] C:\Program Files\Acer\Notebook Manager\almxptray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\RunOnce: [nltide2] cmd.exe /C rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,L,,4,N (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\RunOnce: [nltide1] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE RÉSEAU') O4 - Startup: IcoSauve.lnk = C:\WINDOWS\system32\IcoSauve.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe -- End of file - 4148 bytes A+ et merci d'avance
-
Bonjour, Depuis peu mon portable est inhabituellement long à demarrer Après l'avoir allumé et attendu un bon bout de temps (plus que d'habitude),il se bloque sur une page noir avec le curseur clignotant en haut à gauche. Je dois faire enter pour qu'il continue à se lancer, ensuite une série de "bip bip ...."retentie assez fortement puis le poste de travail s'affiche enfin. Quelqu'un pourrait-il me dire ce qu'il se passe A+ et merci d'avance
-
redirection commerciale
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
Bonsoir, Username "philippe" - 31/10/2007 23:16:50 [Fixwareout edited 9/01/2007] ~~~~~ Prerun check HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{D653B3EA-006D-4A30-B516-BBFE4F991442} "nameserver"="85.255.115.29" <Value cleared. Impossible de vider la cache de résolution DNS : La fonction a échoué lors de l'exécution. System was rebooted successfully. ~~~~~ Postrun check HKLM\SOFTWARE\~\Winlogon\ "system"="" .... .... ~~~~~ Misc files. .... ~~~~~ Checking for older varients. .... ~~~~~ Current runs (hklm hkcu "run" Keys Only) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvCpl.dll,NvStartup" "SoundMan"="SOUNDMAN.EXE" "PCMService"="\"c:\\Apps\\Powercinema\\PCMService.exe\"" "nwiz"="nwiz.exe /installquiet" "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvMcTray.dll,NvTaskbarInit" "LVCOMS"="C:\\Program Files\\Fichiers communs\\Logitech\\QCDriver2\\LVCOMS.EXE" "Lexmark 2200 Series"="\"C:\\Program Files\\Lexmark 2200 Series\\lxbvbmgr.exe\"" "DOWNLOAD MANAGER"="C:\\APPS\\OD2\\OD2DLEngine.exe" "Acrobat Assistant 7.0"="\"C:\\Program Files\\Adobe\\Acrobat 7.0\\Distillr\\Acrotray.exe\"" "NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe" "atwtusb"="atwtusb.exe beta" "Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide" "IE Privacy Keeper"="\"C:\\Program Files\\UnH Solutions\\IE Privacy Keeper\\IEPrivacyKeeper.exe\" -startup" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot" "ISUSScheduler"="\"C:\\Program Files\\Fichiers communs\\InstallShield\\UpdateService\\issch.exe\" -start" "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe" "ZoneAlarm Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\"" "avgnt"="\"C:\\Program Files\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Program Files\\Fichiers communs\\Ahead\\lib\\NMBgMonitor.exe\"" "swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe" "WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe" .... Hosts file was reset, If you use a custom hosts file please replace it... C:\WINDOWS\repair\autoexec.nt missing C:\WINDOWS\repair\Config.nt missing ~~~~~ End report ~~~~~ Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 23:35:59, on 31/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Windows Media Connect\mswmc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\notepad.exe C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\WINDOWS\system32\atwtusb.exe C:\APPS\OD2\OD2State.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\AntiVir PersonalEdition Classic\update.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {206E52E0-D52E-11D4-AD54-0000E86C26F6} - C:\PROGRA~1\FRESHD~1\FRESHD~1\fdcatch.dll O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: FreshDownload Bar - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} - C:\PROGRA~1\FRESHD~1\FRESHD~1\fdiebar.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: FreshDownload - {777014FB-6979-43B9-8603-DC3D8824C0DE} - C:\Program Files\FreshDevices\FreshDownload\fd.exe O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clien...1.0/Rawflow.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{D653B3EA-006D-4A30-B516-BBFE4F991442}: NameServer = 85.255.115.29 85.255.112.170 O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir Scheduler (AntiVirScheduler) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 15132 bytes A+ -
redirection commerciale
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
Bonsoir, Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 18:08:15, on 29/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Windows Media Connect\mswmc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\APPS\OD2\OD2State.exe C:\WINDOWS\system32\atwtusb.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\Program Files\MSN Messenger\usnsvc.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {206E52E0-D52E-11D4-AD54-0000E86C26F6} - C:\PROGRA~1\FRESHD~1\FRESHD~1\fdcatch.dll O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: FreshDownload Bar - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} - C:\PROGRA~1\FRESHD~1\FRESHD~1\fdiebar.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: FreshDownload - {777014FB-6979-43B9-8603-DC3D8824C0DE} - C:\Program Files\FreshDevices\FreshDownload\fd.exe O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clien...1.0/Rawflow.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{D653B3EA-006D-4A30-B516-BBFE4F991442}: NameServer = 85.255.115.29 85.255.112.170 O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir Scheduler (AntiVirScheduler) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 15348 bytes A+ -
redirection commerciale
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
Bonjour, Merci pour ton suivi La redirection commerciale dont je parle au début de ce post concerne en fait DES redirections commerciales apparemment aléatoires. Toutefois, aprés etre revenu 4 ou 5 fois en arriere sur la page de google contenant ma recherche, le clic sur le lien qui m'interesse m'amene sur la bonne page pour navilog je lance tout ca des dimanche quand je serai revenu chez moi et je posterai le log Encore merci -
redirection commerciale
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
re, voici le rapport HJT: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 16:23:35, on 15/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Windows Media Connect\mswmc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\WINDOWS\system32\atwtusb.exe C:\APPS\OD2\OD2State.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clien...1.0/Rawflow.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir Scheduler (AntiVirScheduler) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe -- End of file - 14767 bytes et fix: Username "philippe" - 15/10/2007 14:44:01 [Fixwareout edited 9/01/2007] ~~~~~ Prerun check HKLM\SOFTWARE\~\Winlogon\ "System"="kdhcf.exe" HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters "nameserver"="85.255.115.29 85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{1EE29CCF-D5B1-4B3A-99AF-627C48AD75D9} "nameserver"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{47849F83-7662-4DF5-BD62-7307660666F9} "nameserver"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{82D6642F-D3F7-493F-AD99-B5E6BBB1883A} "nameserver"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{D653B3EA-006D-4A30-B516-BBFE4F991442} "nameserver"="85.255.115.29" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{DF4574C0-D187-484F-9EAA-912BD0BE4CF1} "nameserver"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{DF45D8FE-83E1-47E5-9CE4-771E4B9A8431} "nameserver"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{1EE29CCF-D5B1-4B3A-99AF-627C48AD75D9} "DhcpNameServer"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{47849F83-7662-4DF5-BD62-7307660666F9} "DhcpNameServer"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{82D6642F-D3F7-493F-AD99-B5E6BBB1883A} "DhcpNameServer"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{DF4574C0-D187-484F-9EAA-912BD0BE4CF1} "DhcpNameServer"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{DF45D8FE-83E1-47E5-9CE4-771E4B9A8431} "DhcpNameServer"="85.255.115.29,85.255.112.170" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{F40F0325-E264-4190-8B25-6B2C7D0AFE01} "DhcpNameServer"="85.255.115.29,85.255.112.170" <Value cleared. Impossible de vider la cache de résolution DNS : La fonction a échoué lors de l'exécution. System was rebooted successfully. ~~~~~ Postrun check HKLM\SOFTWARE\~\Winlogon\ "system"="" .... HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion "asusc" Value deleted HKCR\CLSID\{B6E1609E-4D88-4448-8060-8E98D4E8B1F4}\_h\4 Deleted. .... ~~~~~ Misc files. .... ~~~~~ Checking for older varients. .... ~~~~~ Other C:\WINDOWS\Temp\kdhcf.ren 71201 13/06/2007 ~~~~~ Current runs (hklm hkcu "run" Keys Only) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvCpl.dll,NvStartup" "SoundMan"="SOUNDMAN.EXE" "PCMService"="\"c:\\Apps\\Powercinema\\PCMService.exe\"" "nwiz"="nwiz.exe /installquiet" "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvMcTray.dll,NvTaskbarInit" "LVCOMS"="C:\\Program Files\\Fichiers communs\\Logitech\\QCDriver2\\LVCOMS.EXE" "Lexmark 2200 Series"="\"C:\\Program Files\\Lexmark 2200 Series\\lxbvbmgr.exe\"" "DOWNLOAD MANAGER"="C:\\APPS\\OD2\\OD2DLEngine.exe" "Acrobat Assistant 7.0"="\"C:\\Program Files\\Adobe\\Acrobat 7.0\\Distillr\\Acrotray.exe\"" "NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe" "atwtusb"="atwtusb.exe beta" "Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide" "IE Privacy Keeper"="\"C:\\Program Files\\UnH Solutions\\IE Privacy Keeper\\IEPrivacyKeeper.exe\" -startup" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot" "ISUSScheduler"="\"C:\\Program Files\\Fichiers communs\\InstallShield\\UpdateService\\issch.exe\" -start" "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe" "ZoneAlarm Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\"" "avgnt"="\"C:\\Program Files\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Program Files\\Fichiers communs\\Ahead\\lib\\NMBgMonitor.exe\"" "swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe" "WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe" .... Hosts file was reset, If you use a custom hosts file please replace it... C:\WINDOWS\repair\autoexec.nt missing C:\WINDOWS\repair\Config.nt missing ~~~~~ End report ~~~~~ A+ -
redirection commerciale
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonjour wong, Je ne comprends pas le fait que HJT soit pal placé? A+ -
Bonjour à tous, Je suis victime de redirection commerciale d'une manière récurente. Bien qu'ayant installé Antivir et autre AVG, ceci continue et semble s'amplifier. Je me suis donc permis de poster ici même un log HJT: Logfile of HijackThis v1.99.1 Scan saved at 10:43:14, on 15/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Windows Media Player\WMPNetwk.exe C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\WINDOWS\system32\atwtusb.exe C:\APPS\OD2\OD2State.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\WINDOWS\System32\alg.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\MSN Messenger\usnsvc.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe C:\PROGRA~1\WIDCOMM\LOGICI~1\BTSTAC~1.EXE C:\WINDOWS\explorer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\AntiVir PersonalEdition Classic\avcenter.exe C:\Program Files\AntiVir PersonalEdition Classic\avscan.exe C:\Program Files\WinAce\WinAce.exe C:\DOCUME~1\philippe\LOCALS~1\Temp\~AceTemp\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ? O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clien...1.0/Rawflow.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{1EE29CCF-D5B1-4B3A-99AF-627C48AD75D9}: NameServer = 85.255.115.29,85.255.112.170 O17 - HKLM\System\CCS\Services\Tcpip\..\{47849F83-7662-4DF5-BD62-7307660666F9}: NameServer = 85.255.115.29,85.255.112.170 O17 - HKLM\System\CCS\Services\Tcpip\..\{82D6642F-D3F7-493F-AD99-B5E6BBB1883A}: NameServer = 85.255.115.29,85.255.112.170 O17 - HKLM\System\CCS\Services\Tcpip\..\{D653B3EA-006D-4A30-B516-BBFE4F991442}: NameServer = 85.255.115.29 85.255.112.170 O17 - HKLM\System\CCS\Services\Tcpip\..\{DF4574C0-D187-484F-9EAA-912BD0BE4CF1}: NameServer = 85.255.115.29,85.255.112.170 O17 - HKLM\System\CCS\Services\Tcpip\..\{DF45D8FE-83E1-47E5-9CE4-771E4B9A8431}: NameServer = 85.255.115.29,85.255.112.170 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.115.29 85.255.112.170 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir Scheduler (AntiVirScheduler) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe Merci d'avance à celui qui pourra m'aider (si charles était dans le coin!!!!) A+
-
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
Bonsoir, J'ai effectivement téléchargé pour la troisieme fois antivir depuis la page que tu indique en cochant ce qu'il y a à cocher suivant les tutos que tu m'a donné........mais toujours cette page au démarage et impossibilité de faire des mises à jour. Néanmoins, depuis tes conseils de désinfections et d'installation d'antivir et autre zone alarm, le pc tourne beaucoup mieux. Voila, à part ces mises à jour impossibles de ce qui semble être le meilleur des antivirus tout est revenu à la normale. J'espère que je trouerai un jour (proche??) le moyen de mettre à jour antivir. Mais comme tu me l'as dis beaucoup plus haut:"le meilleur des antivirus,c'est ma capacité à naviguer en sécurité sur des sites les plus surs possibles" Je ne te remercierai jamais assez et crois en ma gartitude éternelle. Et vive la petite maison dans la prairie!!!!!!!!! A+ -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
Bonsoir, J'ai réinstallé Antivir et coché cette fameuse case Malheureusement rien n'a changé et j'ai toujours une fenetre qui s 'affiche au lancement de windows:cela me dit en gros que la licence de mon produit a expire depuis le 31 mai 2006;et que sans licence valide il sera impossible de mettre a jour le produit. je clique sur OK et puis rien? Enfin quand je lance start antivir une fentre s'ouvre et 1/:antivir guard activated 2/:last update not performed 3/:license expired since 31/05/2006 Alors j'essaie de lancer start update et :An internal error has appeared. More information in the report file avec le rapport suivant: [09/09/2007 20:57:53] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44231\ [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 20:57:53] [ERROR] [PLG] The last update requires a restart of your computer, for the changes to take effect. Please restart your computer before you start an update again. [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirService is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avgnt.exe [09/09/2007 20:57:54] [iNFO] [PLG] Service AVEService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Service AntiVirMailService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirScheduler is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avconfig.cpl [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avcenter.exe [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirService [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirScheduler [09/09/2007 20:57:54] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:08] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:09] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:14:08] Command line for update application: "C:\Program Files\AntiVir PersonalEdition Classic\update.exe" --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic" [09/09/2007 21:14:08] User changed the logfile name to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-9-9-19-14-8.log [09/09/2007 21:14:08] Install Path: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:09] [iNFO] [GUI] Start the Update GUI... Displaymode: 1 [09/09/2007 21:14:09] [iNFO] [PLG] Keyfile: OK [FULL Mode] [09/09/2007 21:14:57] Connection failed while downloading the file http://dl6.avgate.net/upd/idx/master.idx. [09/09/2007 21:14:57] Switching to next update server [09/09/2007 21:15:41] Connection failed while downloading the file http://dl5.avgate.net/upd/idx/master.idx. [09/09/2007 21:15:41] Switching to next update server [09/09/2007 21:15:48] Master IDX file has changed [09/09/2007 21:15:49] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:15:49] Downloading the product.info file from http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:16:32] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:16:32] There was a problem updating from the specified server: Connection failed while downloading the file http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz. [09/09/2007 21:16:32] Switching to next update server [09/09/2007 21:16:32] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:53] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44231\ [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 20:57:53] [ERROR] [PLG] The last update requires a restart of your computer, for the changes to take effect. Please restart your computer before you start an update again. [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirService is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avgnt.exe [09/09/2007 20:57:54] [iNFO] [PLG] Service AVEService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Service AntiVirMailService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirScheduler is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avconfig.cpl [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avcenter.exe [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirService [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirScheduler [09/09/2007 20:57:54] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:08] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:09] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:14:08] Command line for update application: "C:\Program Files\AntiVir PersonalEdition Classic\update.exe" --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic" [09/09/2007 21:14:08] User changed the logfile name to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-9-9-19-14-8.log [09/09/2007 21:14:08] Install Path: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:09] [iNFO] [GUI] Start the Update GUI... Displaymode: 1 [09/09/2007 21:14:09] [iNFO] [PLG] Keyfile: OK [FULL Mode] [09/09/2007 21:14:57] Connection failed while downloading the file http://dl6.avgate.net/upd/idx/master.idx. [09/09/2007 21:14:57] Switching to next update server [09/09/2007 21:15:41] Connection failed while downloading the file http://dl5.avgate.net/upd/idx/master.idx. [09/09/2007 21:15:41] Switching to next update server [09/09/2007 21:15:48] Master IDX file has changed [09/09/2007 21:15:49] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:15:49] Downloading the product.info file from http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:16:32] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:16:32] There was a problem updating from the specified server: Connection failed while downloading the file http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz. [09/09/2007 21:16:32] Switching to next update server [09/09/2007 21:16:32] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:16:57] Master IDX file has changed [09/09/2007 21:16:58] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:16:58] Downloading the product.info file from http://dl2.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:17:41] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:17:41] There was a problem updating from the specified server: Connection failed while downloading the file http://dl2.avgate.net/upd/idx/classic-nt-en.info.gz. [09/09/2007 21:17:41] Switching to next update server [09/09/2007 21:17:41] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:53] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44231\ [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 20:57:53] [ERROR] [PLG] The last update requires a restart of your computer, for the changes to take effect. Please restart your computer before you start an update again. [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirService is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avgnt.exe [09/09/2007 20:57:54] [iNFO] [PLG] Service AVEService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Service AntiVirMailService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirScheduler is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avconfig.cpl [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avcenter.exe [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirService [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirScheduler [09/09/2007 20:57:54] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:08] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:09] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:14:08] Command line for update application: "C:\Program Files\AntiVir PersonalEdition Classic\update.exe" --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic" [09/09/2007 21:14:08] User changed the logfile name to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-9-9-19-14-8.log [09/09/2007 21:14:08] Install Path: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:09] [iNFO] [GUI] Start the Update GUI... Displaymode: 1 [09/09/2007 21:14:09] [iNFO] [PLG] Keyfile: OK [FULL Mode] [09/09/2007 21:14:57] Connection failed while downloading the file http://dl6.avgate.net/upd/idx/master.idx. [09/09/2007 21:14:57] Switching to next update server [09/09/2007 21:15:41] Connection failed while downloading the file http://dl5.avgate.net/upd/idx/master.idx. [09/09/2007 21:15:41] Switching to next update server [09/09/2007 21:15:48] Master IDX file has changed [09/09/2007 21:15:49] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:15:49] Downloading the product.info file from http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:16:32] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:16:32] There was a problem updating from the specified server: Connection failed while downloading the file http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz. [09/09/2007 21:16:32] Switching to next update server [09/09/2007 21:16:32] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:53] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44231\ [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 20:57:53] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 20:57:53] [ERROR] [PLG] The last update requires a restart of your computer, for the changes to take effect. Please restart your computer before you start an update again. [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirService is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avgnt.exe [09/09/2007 20:57:54] [iNFO] [PLG] Service AVEService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Service AntiVirMailService is not installed [09/09/2007 20:57:54] [iNFO] [PLG] Status of service AntiVirScheduler is running [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avconfig.cpl [09/09/2007 20:57:54] [iNFO] [PLG] Initialize avcenter.exe [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirService [09/09/2007 20:57:54] [ERROR] [PLG] Can not start the service AntiVirScheduler [09/09/2007 20:57:54] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:08] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [09/09/2007 21:14:08] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:14:09] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:14:08] Command line for update application: "C:\Program Files\AntiVir PersonalEdition Classic\update.exe" --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic" [09/09/2007 21:14:08] User changed the logfile name to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-9-9-19-14-8.log [09/09/2007 21:14:08] Install Path: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\Update\AVUPDATE_46e44600\ [09/09/2007 21:14:09] [iNFO] [GUI] Start the Update GUI... Displaymode: 1 [09/09/2007 21:14:09] [iNFO] [PLG] Keyfile: OK [FULL Mode] [09/09/2007 21:14:57] Connection failed while downloading the file http://dl6.avgate.net/upd/idx/master.idx. [09/09/2007 21:14:57] Switching to next update server [09/09/2007 21:15:41] Connection failed while downloading the file http://dl5.avgate.net/upd/idx/master.idx. [09/09/2007 21:15:41] Switching to next update server [09/09/2007 21:15:48] Master IDX file has changed [09/09/2007 21:15:49] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:15:49] Downloading the product.info file from http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:16:32] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:16:32] There was a problem updating from the specified server: Connection failed while downloading the file http://dl7.avgate.net/upd/idx/classic-nt-en.info.gz. [09/09/2007 21:16:32] Switching to next update server [09/09/2007 21:16:32] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:16:57] Master IDX file has changed [09/09/2007 21:16:58] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:16:58] Downloading the product.info file from http://dl2.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:17:41] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:17:41] There was a problem updating from the specified server: Connection failed while downloading the file http://dl2.avgate.net/upd/idx/classic-nt-en.info.gz. [09/09/2007 21:17:41] Switching to next update server [09/09/2007 21:17:41] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:17:54] Master IDX file has changed [09/09/2007 21:17:54] [iNFO] [PLG] Initialize avnotify.exe [09/09/2007 21:17:55] Downloading the product.info file from http://dl3.avgate.net/upd/idx/classic-nt-en.info.gz [09/09/2007 21:18:21] File basic-nt/2k/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/avadmin.exe's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/avgio64.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/imp64b.exe's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/psapi.dll's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/shlext64.dll's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/vista64/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/wsctool.exe's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/xp64/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/2k/avgntdd.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/2k/avgntmgr.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/nt/avgntdd.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/nt/avgntmgr.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] File basic-nt/vista64/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [09/09/2007 21:18:21] Downloading the product.info file from http://dl3.avgate.net/upd/idx/vdf_preload.info.gz [09/09/2007 21:18:22] Downloading the product.info file from http://dl3.avgate.net/upd/idx/vdf.info.gz [09/09/2007 21:18:22] Downloading the product.info file from http://dl3.avgate.net/upd/idx/specvir-nt.info.gz [09/09/2007 21:18:22] Downloading the product.info file from http://dl3.avgate.net/upd/idx/engine.info.gz [09/09/2007 21:18:22] Downloading the product.info file from http://dl3.avgate.net/upd/idx/engine-nt-en.info.gz [09/09/2007 21:18:22] Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 15 [09/09/2007 21:18:22] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avinet.dll v7.0.0.7 MD5:9fe21455850ff5a01e6e0bcb02a667ea [09/09/2007 21:18:22] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avinet.dll v7.0.0.0 MD5:580b29756d625b3e2f6bba66086501f5 [09/09/2007 21:18:22] File needs update [09/09/2007 21:18:22] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/common_msg.avr MD5:a40ecc64d95d171f5a6f50717e26cbe7 [09/09/2007 21:18:22] Local file: C:\Program Files\AntiVir PersonalEdition Classic\common_msg.avr MD5:d4f3cf0ab5e5d5c64c3c12f6ef00390f [09/09/2007 21:18:22] File needs update [09/09/2007 21:18:22] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/mfc71u.dll v7.10.3077.0 MD5:7bfd56e40bb435c5337dba130a9d4c5f [09/09/2007 21:18:22] Local file: C:\Program Files\AntiVir PersonalEdition Classic\mfc71u.dll v7.10.3077.0 MD5:7bfd56e40bb435c5337dba130a9d4c5f [09/09/2007 21:18:22] File doesn't need update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/msvcp71.dll v7.10.3077.0 MD5:72cac42b1cabf6e708e90783133a86d3 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\msvcp71.dll v7.10.3077.0 MD5:72cac42b1cabf6e708e90783133a86d3 [09/09/2007 21:18:23] File doesn't need update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/msvcr71.dll v7.10.3052.4 MD5:56ac3aeb00c35936487417494c26830c [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\msvcr71.dll v7.10.3052.4 MD5:56ac3aeb00c35936487417494c26830c [09/09/2007 21:18:23] File doesn't need update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/scewxml.dll MD5:24700b40c9f3fa5c434b151a26190884 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\scewxml.dll MD5:9c83f3e1f1d52dbec4ca33e6fb74d4e7 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/update.exe v1.2.10.13 MD5:0ffd00d0010d0591cc3ff8d7c677b005 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\update.exe v1.2.6.15 MD5:83be17ee5826972bce59d02d1c601aa3 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/update_msg.avr MD5:10bf7ef86ea79d7b13529c83781b8de5 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\update_msg.avr MD5:2b0ff1d07efb11480b98838ffcf2da0a [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/updgui.dll v1.2.10.5 MD5:5b2996ea672d04635885e8a57ac9a16b [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updgui.dll v1.2.6.10 MD5:0fc4e19279abd043718e1faf9a6a49fa [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/updguirc.dll v1.2.14.0 MD5:12f0bc60cd62abf871d215fecd8b7b44 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updguirc.dll v1.2.6.8 MD5:46541902fc8999909aaf542689a09cb7 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/updlib.dll v1.2.10.20 MD5:94d8f636bb99e443b3e5ab6356ae4678 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updlib.dll v1.2.6.18 MD5:6996a8f7b018b81159c066bbfe3b8137 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/updlibrc.dll v1.2.23.0 MD5:2a9f23213e71bda078e70207a6f276cd [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updlibrc.dll v1.2.6.12 MD5:8560652cec218faa1b24c41bfb82ec5f [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/antivir.oem MD5:e41664e2db62ae80fd0c56f0eda7844e [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir.oem MD5:d4a8a0792b098535d6f059c16d096d84 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/rcimage.dll v7.0.1.30 MD5:4e80f89ad317986a0a6dc9d7c01c59fa [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rcimage.dll v7.0.0.45 MD5:e953b00ace3a96d7f0dc14979954add9 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/rctext.dll v7.0.62.0 MD5:ba98a10283e8b78cd7fd0f4386fca926 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rctext.dll v7.0.0.48 MD5:ad5276c52d1449edfe5e9f35854a024a [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] Module: MAIN Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 75 [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avarkt.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avcenter.exe v7.2.0.12 MD5:4ff94897ed97c8f357b9fd5b1f61671a [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avcenter.exe v7.0.0.20 MD5:3e7e922982954659176191d7b4fca214 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avconfig.cpl v7.0.1.7 MD5:2ae52b4a937c535e549e00be3f3dfc7f [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.cpl v7.0.0.26 MD5:401b1d42f225812f4b4285637d7c6e95 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avconfig.dll v7.2.1.0 MD5:77020fae392b7d28c1c451ab9a719a28 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.dll v7.0.0.19 MD5:8fa97d3419a129c5b36761000d6c540e [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avconfig.exe does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avevtlog.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avgio.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avgio.sys v1.0.0.30 MD5:5f4caef01ef19f88e092f2c5fbd1f68f [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgio.sys v1.0.0.10 MD5:7db745b57cf5da4a414846cd8c309a40 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avgnt.exe v7.2.0.13 MD5:82973fc3f0d2faf6d858770b366e0e2a [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe v7.0.0.6 MD5:6e31a77005eab1f4e5b120d33640e42f [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avguard.exe v7.0.0.79 MD5:b537abf1b1408ca2bd3853a3f1fb8ff9 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe v7.0.0.20 MD5:13f5bd4ddc8495932d7e098fafd2ee8c [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avipbb.inf does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avipc.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avnotify.dll v7.0.6.0 MD5:293df85305a669faff02206a0fe92cde [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avnotify.dll v7.0.0.6 MD5:8834e0f82f043ea14151bcb417884f13 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avnotify.exe v7.0.7.0 MD5:32c4096826cf057cf96238d4cc6b3fbb [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avnotify.exe v7.0.0.6 MD5:4bc816b4c79995cb9d0e7d08ed36f6da [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avpref.dll v7.0.2.2 MD5:a0127bedb801dc2f1e5c63d2f04d58b4 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avpref.dll v6.34.0.0 MD5:402b03e643889df5617270a2c4aeb85e [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avreg.dll v7.0.1.6 MD5:c5fe7afa5be84fa74fb4516ce3d2e0ed [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avreg.dll v6.31.0.90 MD5:2c6a9ebc315289e8457e35dee3f3ff80 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avscan.dll v7.0.6.0 MD5:5fcb46960ba2ea799fd6450bdcec5073 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avscan.dll v7.0.0.19 MD5:86c9539d4cab27d72cea4a4453eee848 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/avscan.exe v7.0.6.1 MD5:d1a472f3f737d7d86c560e5f80980995 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avscan.exe v7.0.0.19 MD5:91cd13e75949c2043da0df3d0dd75ff6 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\avwinll.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\ccev.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\ccevrc.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\ccgen.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File C:\Program Files\AntiVir PersonalEdition Classic\ccgenrc.dll does not exist. It will be retrieved [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccgrdrc.dll v7.0.6.0 MD5:f52ad8fc83bceb7e6985e7eb3c664fa7 [09/09/2007 21:18:23] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccgrdrc.dll v7.0.0.7 MD5:b9f1344bd4918e41871ed87d60782104 [09/09/2007 21:18:23] File needs update [09/09/2007 21:18:23] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccguard.dll v7.0.1.34 MD5:365724b3ef83e8eb80972a237cc09850 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccguard.dll v7.0.0.8 MD5:81added87911638ddd9280efc4703caf [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\cclib.dll does not exist. It will be retrieved [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/cclic.dll v7.2.0.4 MD5:6369485cbf37d9269f878ec1cfa864c0 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\cclic.dll v7.0.0.7 MD5:defd6b25766ac7b72507362a64a28b06 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/cclicrc.dll v7.2.1.0 MD5:bce2fccb51a0a89e1cf0b3428909735a [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\cclicrc.dll v7.0.0.2 MD5:287821e4256981236d1d931b7051c1e3 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccmainrc.dll v7.2.2.0 MD5:e85c2d23fc6d8a77a3a93fe8a4db20b6 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccmainrc.dll v7.0.0.6 MD5:ab25b90a3d266e968686af934d3c7873 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\ccmsg.dll does not exist. It will be retrieved [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccprofil.dll v7.2.0.5 MD5:e08eb3e76fa8487524410e0dd03b9642 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccprofil.dll v7.0.0.14 MD5:1fe375f873815d956e5db8d6f04f6f8b [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccquamgr.dll v7.2.0.4 MD5:dee4f9853d02fc76aa89355ec2ada090 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccquamgr.dll v7.0.0.14 MD5:8429e1024537caae7b50a59d7ff80e40 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccquarc.dll v7.2.2.0 MD5:7be0a918cd6888a24a15a9849f2fbce9 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccquarc.dll v7.0.0.7 MD5:0f27c8b85eb49ba09ab4343a3fc23662 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccreporc.dll v7.2.1.0 MD5:b02b0097900bae3bc926e2c5c9705458 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccreporc.dll v7.0.0.3 MD5:92fbb2e8e5f0a597c6bbe81ed4004285 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccreport.dll v7.2.0.2 MD5:0a951f1c0cadd0717d2a8b1f76a77ebe [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccreport.dll v7.0.0.7 MD5:d622fd864a8a8c2b5437482310607293 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccscanrc.dll v7.2.3.0 MD5:17c99ad618bd6599558a0f1588d4b69a [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccscanrc.dll v7.0.0.1 MD5:91abc9d96f5fe4f915932975aff97aa7 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccsched.dll v7.2.0.3 MD5:5d54b9f1452a3312e94ee166e723fa2f [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccsched.dll v7.0.0.11 MD5:9e74feef9faa40801ee2c7c2af47ac9e [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccscherc.dll v7.2.2.0 MD5:6fccdf8fe65e2a84ca6098169af364e4 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccscherc.dll v7.0.0.5 MD5:6241824c28f7ccc26605e1dd03de9c6d [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccupdate.dll v7.2.0.4 MD5:c06541f37cd719ac0cb1b7adafac023c [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccupdate.dll v7.0.0.9 MD5:c2fcc34dc4f178ba512e938f173f985f [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/ccupdrc.dll v7.2.1.0 MD5:861cb20b8001e754d2fc248b18649ad8 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccupdrc.dll v7.0.0.2 MD5:21aef9b5c3883548cb81009f77bb200d [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/guardgui.exe v7.0.6.0 MD5:6ab6ef527fb8d67e4b419bfde8cfde6e [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardgui.exe v7.0.0.10 MD5:ded693abafabfdf4962e4bf3d9e9d239 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/guardmsg.dll v7.0.11.0 MD5:457832b76823a8b5524d488c4df491ec [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardmsg.dll v7.0.0.4 MD5:4a2eb8ec6a27b846401efb2d0d99efae [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/licmgr.dll v7.0.4.0 MD5:f6e0f9db8f69e494ddb0791f75112d15 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\licmgr.dll v7.0.0.3 MD5:e935b61f2b1f0dd475b8fcd3fdd81adb [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/licmgr.exe v7.0.4.0 MD5:b14bee8ee292a844963a4e7ca8793179 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\licmgr.exe v7.0.0.3 MD5:c346c1cce3ec082140e48ba518008e9e [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/luke.dll v7.0.5.3 MD5:fd23f9bfacd818c08bba162e420b6029 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\luke.dll v7.0.0.19 MD5:c8fbf685ffe8794060a55e5a1297de7d [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/lukeres.dll v7.0.6.1 MD5:28d7caad781b4668ad5429b595be8b68 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\lukeres.dll v7.0.0.19 MD5:1750d5c1958ba26d050cb622fbacc6ad [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\mgrs.dll does not exist. It will be retrieved [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\msgclient.dll does not exist. It will be retrieved [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/netnt.dll v7.0.0.0 MD5:f934c95c34d92f6b7927bf578203ffa9 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\netnt.dll v6.32.0.0 MD5:eca20bd0c0d722596e8404a125218860 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/preupd.exe v7.0.0.34 MD5:14ced2eb374d8b88ec8b067b26096244 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\preupd.exe v7.0.0.9 MD5:6a733f01accb413d72b090046b84fa89 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/sched.exe v7.0.0.62 MD5:2b15f119ef30bae8d4cd51da4c0cfc25 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sched.exe v7.0.0.4 MD5:1705b730b41fecd1ca5c120ba94dda4a [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/schedr.dll v7.0.24.0 MD5:fa28aef86a3f131b3b6a877b68cfe645 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\schedr.dll v7.0.0.0 MD5:fb8a7e803682d3eb9b830668f0d1710f [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/setup.dll v7.0.30.1 MD5:cef3f60af028e38bd7b2b68be80a1fb6 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setup.dll v7.0.0.58 MD5:4b08f139006ef99821d1df65d5b17325 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/setup.exe v7.0.2.35 MD5:983f40d3cd2c9f1a1e91ac8515c99707 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setup.exe v7.0.0.58 MD5:d1dfacee6f7e295a11d6773e46dfd969 [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\shlext.dll does not exist. It will be retrieved [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/smtplib.dll v1.2.0.17 MD5:3a51a554d0f22036b5729ed0bb61ada3 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\smtplib.dll v1.1.0.5 MD5:8571c0cb2619817fb3bdb296a63094cb [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\sqlite3.dll does not exist. It will be retrieved [09/09/2007 21:18:24] File C:\Program Files\AntiVir PersonalEdition Classic\ssmdrv.inf does not exist. It will be retrieved [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/basic-nt/xp/avgntflt.sys v7.0.0.2 MD5:5dbef8b1831d2cabee7ca9dd39c755e2 [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgntflt.sys v6.33.0.3 MD5:8892a9b4166a0e5c359ea9080884bb2e [09/09/2007 21:18:24] File needs update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/alldiscs.avp MD5:746ea386adb9a24c99ec33da3870718f [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\alldiscs.avp MD5:746ea386adb9a24c99ec33da3870718f [09/09/2007 21:18:24] File doesn't need update [09/09/2007 21:18:24] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/alldrives.avp MD5:292a72626aeea6b7f02618b4af2c57ee [09/09/2007 21:18:24] Local file: C:\Program Files\AntiVir PersonalEdition Classic\alldrives.avp MD5:c4d078a8690a80d10ed4978467d1b36b [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/build.dat MD5:b726570a341411e8918ad7c0f2bf701f [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\build.dat MD5:8a0ea802382569dfb107b0c211121896 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File C:\Program Files\AntiVir PersonalEdition Classic\ccplg.xml does not exist. It will be retrieved [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/guardevt.dll v7.0.1.0 MD5:d4205d3c46fb09abe553cb006fd76045 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardevt.dll v1.0.1.7 MD5:a53efd1f32769d61d3cc5a50ed490be2 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/hbedv.key MD5:7766436c351490e043a9d67e645576d2 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\hbedv.key MD5:87dcd92256090bc70cb729889de263b6 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/mydocs.avp MD5:1acc2478dca81f804ec102a99b90a1f1 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\mydocs.avp MD5:1acc2478dca81f804ec102a99b90a1f1 [09/09/2007 21:18:25] File doesn't need update [09/09/2007 21:18:25] File C:\Program Files\AntiVir PersonalEdition Classic\process.avp does not exist. It will be retrieved [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/rchelp.dll v7.0.0.20 MD5:ea5403859a37e7d52f22db723eb77f03 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rchelp.dll v7.0.0.5 MD5:dd3c878483d0fdad7257ebf5f550a6b9 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/rmdiscs.avp MD5:0a1b76737648c63a263c27f33b4bb831 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rmdiscs.avp MD5:de94fae91f5db1046b3e3cd3c9f98028 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/setupprf.dat MD5:b7b12f4f6a2089ba8d994f33a34b1bf0 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setupprf.dat MD5:b7b12f4f6a2089ba8d994f33a34b1bf0 [09/09/2007 21:18:25] File doesn't need update [09/09/2007 21:18:25] File C:\Program Files\AntiVir PersonalEdition Classic\sweb.zip does not exist. It will be retrieved [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/sysdir.avp MD5:3a58425393ee51f714ff60668291ffde [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sysdir.avp MD5:3a58425393ee51f714ff60668291ffde [09/09/2007 21:18:25] File doesn't need update [09/09/2007 21:18:25] File C:\Program Files\AntiVir PersonalEdition Classic\sysscan.avp does not exist. It will be retrieved [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/weblink.url MD5:e9bbf34aa3d0391b6815c0efcda1dd77 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\weblink.url MD5:83830bf045216389f0783f25664dcfaa [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File C:\Program Files\AntiVir PersonalEdition Classic\wksstats.dll does not exist. It will be retrieved [09/09/2007 21:18:25] Module: COMMAPPDATA Source: winwks\en\ Destination: C:\Documents and Settings\All Users\Application Data\ Files: 1 [09/09/2007 21:18:25] File C:\Documents and Settings\All Users\Application Data\addr_file.html does not exist. It will be retrieved [09/09/2007 21:18:25] Module: TEXT Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 3 [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/avwin.chm MD5:9cbaf7ae1ce19101097aecc44bad6c0e [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avwin.chm MD5:b3bf7efac7b301da3068b09abd7ab0c7 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/eula.txt MD5:71846e4c38ba03472530d4751fbc7fe6 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\eula.txt MD5:923c9a99db531c8eabdc2dd263312ea3 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] File in the internet: http://dl3.avgate.net/upd/winwks/en/classic-nt/readme.txt MD5:1cfbccb3c414117ab2c7f464e98df4c7 [09/09/2007 21:18:25] Local file: C:\Program Files\AntiVir PersonalEdition Classic\readme.txt MD5:9dc15d5b7255d6bbc71bae2b75b75692 [09/09/2007 21:18:25] File needs update [09/09/2007 21:18:25] Replacement for Variable COMMAPP_DIR_AV not found. [09/09/2007 21:18:25] [iNFO] [PLG] Status of service AntiVirService is running [09/09/2007 21:18:25] [iNFO] [PLG] Initialize avgnt.exe [09/09/2007 21:18:25] [iNFO] [PLG] Service AVEService is not installed [09/09/2007 21:18:25] [iNFO] [PLG] Service AntiVirMailService is not installed [09/09/2007 21:18:25] [iNFO] [PLG] Status of service AntiVirScheduler is running [09/09/2007 21:18:25] [iNFO] [PLG] Initialize avscan.exe [09/09/2007 21:18:25] [iNFO] [PLG] Initialize avconfig.cpl [09/09/2007 21:18:25] [iNFO] [PLG] Initialize avcenter.exe [09/09/2007 21:18:25] [ERROR] [PLG] Can not start the service AntiVirService [09/09/2007 21:18:25] [ERROR] [PLG] Can not start the service AntiVirScheduler [09/09/2007 21:18:25] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [09/09/2007 21:18:25] Critical error: Variable commapp_dir_av not found Maintenant voici le rapport de scan d'Antivir: Report file date: jeudi 09 septembre 2007 11:40 Jobname: 'Manual Selection' Scanning for 284303 virus strains and unwanted programs. Licensed to: AntiVir PersonalEdition Classic Serialnumber: 0000149996-WURGE-0001 Platform: Windows XP Windowsversion: (Service Pack 2) [5.1.2600] Username: philippe Computername: SN202258260001 Versioninformations: AVSCAN.EXE : 7.0.0.19 524328 23/01/2006 14:35:48 AVSCAN.DLL : 7.0.0.19 42536 23/01/2006 14:35:48 LUKE.DLL : 7.0.0.19 114728 23/01/2006 14:35:48 LUKERES.DLL : 7.0.0.19 27688 23/01/2006 14:35:48 ANTIVIR0.VDF : 6.32.0.60 4323840 06/12/2005 09:47:34 ANTIVIR1.VDF : 6.33.0.97 675328 18/01/2006 13:31:52 ANTIVIR2.VDF : 6.33.0.131 122880 18/01/2006 13:31:52 ANTIVIR3.VDF : 6.33.0.139 28160 18/01/2006 13:31:52 AVEWIN32.DLL : 6.33.0.30 1016320 20/01/2006 10:42:50 AVPREF.DLL : 6.34.0.0 38440 18/01/2006 11:06:02 AVREP.DLL : 6.33.0.106 2301992 10/01/2006 09:10:46 AVPACK32.DLL : 6.33.0.6 331816 09/01/2006 08:03:38 AVREG.DLL : 6.31.0.90 27688 28/07/2005 09:06:36 NETNT.DLL : 6.32.0.0 6696 27/09/2005 06:56:50 NETNW.DLL : 6.32.0.0 9768 27/09/2005 06:56:50 Start of the scan: jeudi 09 septembre 2007 11:40 Start scanning boot sectors: Boot sector 'C:' [NOTE] No virus was found! Boot sector 'F:' [NOTE] No virus was found! Boot sector 'G:' [NOTE] In the drive 'G:' no data medium is inserted! Boot sector 'H:' [NOTE] In the drive 'H:' no data medium is inserted! Boot sector 'I:' [NOTE] In the drive 'I:' no data medium is inserted! Boot sector 'J:' [NOTE] In the drive 'J:' no data medium is inserted! Boot sector 'K:' [NOTE] No virus was found! Starting to scan the registry. The registry was scanned ( 46 files ). Starting the file scan: C:\pagefile.sys [WARNING] The file could not be opened! C:\Anuman Interactive\Impression CD-DVD\images\Thumbs.dble [WARNING] The file could not be opened! C:\APPS\CLICKME\IMAGES\Thumbs.dble [WARNING] The file could not be opened! C:\APPS\RecordNow\Explain\Images\Thumbs.dble [WARNING] The file could not be opened! C:\COKTEL\Thumbs.dble [WARNING] The file could not be opened! C:\COKTEL\ADI4OEMP\Thumbs.dble [WARNING] The file could not be opened! C:\COKTEL\ADIBOUPB\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\OD2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Documents\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Documents\Mes vidéos\Films de famille\2004\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Documents\Mes vidéos\Recorded TV Shows\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\i pod\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\jeux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\jeux\sims\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\nintendo ds\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\ps3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\ps3\ps2 noir$\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\psp\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\consoles\xbox\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\fleur\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image film\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image film\veronice mars\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image marrante\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\image marrante\chat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\chat gri\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\chat gri o dessu et blan en dessou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\chat roux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\cookie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\maincoon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\persan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chats\plusieure chat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\andalou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\appaloosa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\camarguai\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\lilou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\manitou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevau de gen ke j aime bien\oshine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\bulitt\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\cartone\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\chevaux de trait\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\dridri\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\elton\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\far\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\fax\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\gandhi\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\gandhi\clair de lune\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\hongo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\igor\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\jaliskah\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\le club\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les pur sang\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\mouchou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\tango\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\les shetlands\too much\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\mascotte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\plusieurs chevaux ensemble\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\selim\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\tartine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\tic tac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\chevaux du club\twist\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\cross\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\CSO\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\falabella\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\fjord\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frison ki se cabre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons a l aret\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons ki done un cou de cul\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons o galo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons o pa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\frisons o tro\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\plusieurs frisons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\frison\tete frisons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\haflinger\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\montages\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\paint horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\pur sang anglais\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\pur sang arabe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\quarter horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\shetland\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\sorraia\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chevaux\tinker\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\beauceron\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\beauceron\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\beauceron\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger allemands\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger allemands\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger allemands\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\berger d'anatolie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\chien blanc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\chien blanc\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\lucky\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\plusieurs chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\rotweiler\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\terre neuve\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images chien\terre neuve\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images famille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images famille\isabelle\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\guepard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\leopard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\leopard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\lion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\lion\lionco\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\lion\plusieurs lion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\loup\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\loup\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\loup\plusieur loup\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\panthere\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\panthere\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\panthere\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\puma\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\renard\plusieur renard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\tigre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\tigre\tigre blan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images felin\tigre\tigre du bengale\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images imaginaires\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images lapin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images lapin\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images maleurese\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images maleurese\hippophagie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images ours\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images ours\ours blanc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\avril lavigne\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\beyonce\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\britney spears\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\charmed\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\lindsay lohan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\paris hilton\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\pussycat dolls\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\rihanna\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\sarah michel gellar\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\shakira\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star fille\veronice mars(kristen bell)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\bill et tom kaulitz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\bill kaulitz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\logo tokio hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\images star garcon\tokio hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\comms\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\image fashion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\logos\logo chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\metier du cheval\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\paysage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\paysage\cascade\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\vetement chaussure\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Bureau\Mes images\vetement chaussure\chaussures\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Pink - I'm Not Dead [2006][CD+Vid+Covers]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Ma musique\Pink - Missundaztood\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\brush\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\i pod\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\jeux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\jeux\sims\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\nintendo ds\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\ps3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\ps3\ps2 noir$\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\psp\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\consoles\xbox\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\fleur\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\glitter\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\image film\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\image film\veronice mars\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\image marrante\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\image marrante\chat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\image marrante\chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\chat gri\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\chat gri o dessu et blan en dessou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\chat noir\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\chat roux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\cookie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\maincoon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\montages\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\persan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\persan\montage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\plusieure chat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chats\siamois\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\10070624\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\alter real\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\andalou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\anglo arabe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\appaloosa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\barbe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\camarguai\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\apache\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\aube\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\calin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\duc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\eliot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\feria\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\gady\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\honey moon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\iliana\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\indy\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\insoumis\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\irokwa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\joyeux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\karina\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\lilou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\lilou quarter horse\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\manitou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\menestrel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\montages\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\mowgli\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\nina\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\ora\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\oshine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\quebec\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\sultan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\vitamine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\vitamine\louna\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevau de gen ke j aime bien\vitamine\vitamine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux de trait\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux de trait\percheron\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux de trait\shire\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\bulitt\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\cartone\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\clair de lune\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\dridri\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\eliz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\elton\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\far\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\fax\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\gandhi\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\griote\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\hongo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\igor\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\jaliskah\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\le club\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les pur sang\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les pur sang\baika\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les pur sang\laziza\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les pur sang\les pur sang\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les pur sang\takine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\mouchou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\new look\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\nini\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\odie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\panache\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\pepito\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\plume\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\plusieur shet ensemble\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\poete\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\regina\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\rumba\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\sumo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\surprise\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\sweets\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\tango\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\tibou\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\too much\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\les shetlands\ubu\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\mascotte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\orée\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\plusieurs chevaux ensemble\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\selim\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\tartine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\tic tac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\toulouse\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\chevaux du club\twist\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\connemara\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\courses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\cross\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\CSO\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\dartmoor\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\falabella\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\fjord\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\fox trotter\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\frison ki se cabre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\frisons a l aret\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\frisons ki done un cou de cul\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\frisons o galo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\frisons o pa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\frisons o tro\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\montage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\plusieurs frisons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\frison\tete frisons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\gifs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\haflinger\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\hanovrien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\hunter\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\islandais\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\knapsurp\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\lipizzan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\lusitanien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\montages\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\oeil de cheval\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\paint horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\palomino\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\premarin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\pur sang anglais\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\pur sang arabe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\quarter horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\shetland\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\sorraia\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\tennesse walking horses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\tinker\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\trakehner\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chevaux\welsh\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\beauceron\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\beauceron\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\beauceron\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\berger allemands\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\berger allemands\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\berger allemands\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\berger d'anatolie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\chien blanc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\chien blanc\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\lucky\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\plusieurs chien\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\prisky\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\rotweiler\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\terre neuve\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\terre neuve\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\terre neuve\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images chien\terre neuve\montage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images famille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images famille\isabelle\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images famille\josy\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images famille\ma cousine et moi\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images famille\moi\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\guepard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\guepard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\guepard\plusieur guepard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\leopard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\leopard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\lion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\lion\lionco\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\lion\plusieurs lion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\loup\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\loup\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\loup\plusieur loup\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\panthere\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\panthere\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\panthere\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\puma\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\renard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\renard\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\renard\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\renard\plusieur renard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\tigre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\tigre\tigre blan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images felin\tigre\tigre du bengale\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images imaginaires\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images imaginaires\licornes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images lapin\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images lapin\adulte\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images lapin\bebe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images lapin\plusieur\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images maleurese\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images maleurese\hippophagie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images ours\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images ours\ours blanc\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\avril lavigne\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\beyonce\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\britney spears\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\cassie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\charmed\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\christina aguilera\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\ciara\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\hilary duff\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\lindsay lohan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\paris hilton\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\pussycat dolls\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\rihanna\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\sarah michel gellar\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\shakira\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star fille\veronice mars(kristen bell)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star garcon\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star garcon\bill et tom kaulitz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star garcon\bill kaulitz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star garcon\logo tokio hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\images star garcon\tokio hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\elodie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\moi\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\montage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\soa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\soie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\les amies\sophie\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\logos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\logos\comms\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\logos\image fashion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\logos\logo chevaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\metier du cheval\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\montages\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\montages\Popims\Images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\paysage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\paysage\cascade\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\paysage\montagne\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\paysage\plage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\vetement chaussure\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\vetement chaussure\accessoire\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\vetement chaussure\chaussures\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\marion.SN202258260001\Mes documents\Mes images\vetement chaussure\maillot de bain\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Ma musique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Mes fichiers MSN reçus\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\nathalie\Mes documents\Mes images\Snapshot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\philippe\ntuser.dat [WARNING] The file could not be opened! C:\Documents and Settings\philippe\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\philippe\.limewire\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\gif\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\photo playmobil\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Bureau\Video\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Google\GoogleEarth\icons\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Messenger\nathalieleclercq2@msn.com\SharingMetadata\jennyfer_663@msn.com\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\9 télécom\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\9 télécom\conexion ADSL 512 K st frajou 10 2005_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\9 télécom\Modification de l'offre neuf telecom le 22 12 2004_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Dossier Bluetooth Exchange\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\dimensions pochettes.cdr-6c1e-11d1-8e41-00c04fb9386d}:$DATA [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Bloodline\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Hydrology plus 1 + 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Liquid\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Alan Wilder\Unsound Methods\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Beatles\The_Beatles_-_Love-CD-2006-SQ\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Beatles\VA - Beatles Regrooved (2005)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\Exciter Remixes 2003\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\Just In Time\Volume 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\People Are People\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\Playing The Angel\(Remixes)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\Playing The Angel\Mixing The Angel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\Playing The Angel\Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\Playing The Angel\Remixes (Vol 2)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode1 ALBUM A TELECHARGER\The Complete\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version Bargu\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version Bargu\Disc a\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version Bargu\Disc b\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version classique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version classique\Disc a\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\101\Version classique\Disc b\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\18 th Strike The Ultra Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A Broken Frame\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\11\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\14\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\15\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\17\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\18\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\19\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\20\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\21\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\22\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\23\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\24\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\25\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\26\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\29\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\31\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\32\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\32\UK CD\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\32\UK LCD\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\33\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\cdbong36\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\depeche mode - dvdbong36\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\36\depeche mode - lcdbong36 (flac)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\39\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\39\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\4\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\5\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\6\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Beat Box Mix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\pochettes_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Recherche Google DMBX_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_mutelibtech_com-depechemode-images-dmbx1_100_jpg_fichiers\CAE70DOX_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_mutelibtech_com-depechemode-images-dmbx1_100_jpg_fichiers\singlesboxset_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_shout_ru-releases-CDBong15_jpg_fichiers\dm_releases2004_e_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\A GRAVER CD BONG\Résultats de la recherche d’image Google à partir de http--www_shout_ru-releases-CDBong15_jpg_fichiers\imgres_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Almost Acoustic Xmas - Los Angeles 98\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Another Black Day\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Apollo 82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Athens 2001\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\BBC London 1986\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Celebration\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Celebration - Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Black Violation The Special 15th Strike Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Boys Are Boys - Hannover 82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Catching Up With\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Classics Beats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Classics Beats\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Classics Beats\CD 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Construction Time Again\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Cosmic Blues\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Deliriously Surrendered In Helsinki\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Depeche_Mode_-_Enjoy_the_Silence__Incl_16_B_Remixes-Vinyl-2004-QMI\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Rumours\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Silence 04 by Richard X and Ewan Pearson and Cicada and The Brat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Silence 04 by Timo Maas and Ewan Pearson\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Enjoy The Silence 04 by Timo Maas and Ewan Pearson and Black Strobe\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Exciter\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Exciting Ice Palace\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\First Stand In Vienna 88\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\For the masses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Gothenburg.1998\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Halo Promotional\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Hysterika - Milan 84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Les Bains Douches - Paris - 81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Live For BBC 1983\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Music For The Masses\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Never Let Me Down Again Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\New Life Amsterdam 83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Paris Bercy 1998\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Performance - Basel 84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Personal Funky Beats\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 04 by Black Strobe and Cicada and Rex The Dog\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 04 by Goldfrapp and Ulrich Schnauss\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Depeche Mode 2004 - The Remixes 81 - 04 Limited Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Depeche Mode 2004 - The Remixes 81 - 04 Limited Edition\CD3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Remixes 81 04\Depeche Mode 2004 - The Remixes 81 - 04 Limited Edition\RARE TRACKS BUNDLE CD4 bonus secret site\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Singles Remix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Singles Remix\Covers originaux\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\+++ Donny's Depeche Mode Page +++ Donny's Depeche Mode Page +++ Donny's Depeche Mode Page +++_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Depeche Mode - Le site belge - (index)_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\DevoteeM Archiv - Devotee Downloads_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Kaiser's DM Remixes Download Center_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Résultats de la recherche d’image Google à partir de http--www_tuug_utu_fi-~jaakko-kuvat-andrew_gif_fichiers\articles2_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\SITES INTERNET\Résultats de la recherche d’image Google à partir de http--www_tuug_utu_fi-~jaakko-kuvat-andrew_gif_fichiers\CAEVIZUX_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Some Great Reward\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Songs Of Faith And Devotion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Songs Of Faith And Devotion Live\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Speak And Spell\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Special Duo Remix\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Best Of\Depeche Mode - The Best of Volume 1 (Remixes) [2006] - House [www.torrentazos.com]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\-Depeche Mode-_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1980\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1981\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1982\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1983\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1984\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1985\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\1986\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\Version traduite de la page http--www_devoteem_de-archiv-modules-archiv-index_phpid_art=1_fichiers\displayimage_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE COVERS\Version traduite de la page http--www_devoteem_de-archiv-modules-archiv-index_phpid_art=1_fichiers\translate_n_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Secret Remixes\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Secret Remixes\CD 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\A PAIN That I'm Used To\(CDBong36)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\A PAIN That I'm Used To\(LCDBONG 36)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\A PAIN That I'm Used To\(Promo CDM)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Depeche Mode - Precious US Promo [DJSounds PROMO Pack]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Depeche Mode - suffer_well_club_promo-mixs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Depeche_Mode-Martyr-Promo-CDM-2006-WRE_www.trancezone.pun.pl\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Enjoy The Silence 04\(CDBONG 34)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Martyr [Club Promo CDM] (2006)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(CDM)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(PCDBong35)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(Pro-CDR-101658) (US Promo)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(Promo)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Precious\(RCDBong35)\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Shake The Disease [20 Years Aniversary] [Covers] [2005]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\THE SINGLES\Suffer Well\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Singles 81-85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Singles 86-98\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Symphonic Music Of Depeche Mode\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\The Very Best Of\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Toys Glasgow Tiffany's 82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultimate Remixes 81 04\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 4\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 5\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 6 Millennium Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 7 Emotion 2000 Remixes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\# 8\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Ultra Rare Trax\Downloads_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Violator\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Violator Limited Remix Edition\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Walking In My Boots - San Francisco 94\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Westwood In Concert 85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\Wonderworld 81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violation Backing Tapes\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violation Backing Tapes\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violator Tour - Stockholm Sweden (Globen)-Une Nuit A La Mode-[1990-10-06]\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Depeche Mode\World Violator Tour - Stockholm Sweden (Globen)-Une Nuit A La Mode-[1990-10-06]\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\1-Dreaming of me 20-02-81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\2-New life 13-06-81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\3-Just can't get enough 07-09-81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\4-See you 29-01-82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\5-The meaning of love 26-04-82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX1\6-Leave in silence 16-08-82\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX27-Get the balance right! 31-01-83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX28-Everything counts 11-08-83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX29-Love in itself 19-09-83\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\10-People are people 21-03-84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\11-Master and servant 20-08-84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX2\12-Blasphemous rumours 29-10-84\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\13-Shake the disease 28-04-85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\14-It's called a heart 16-09-85\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\15-Stripped 10-02-86\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\16-A question of lust 14-04-86\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\17-A question of time 11-08-86\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\18-Little 15 16-05-88\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX3\Covers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\19-Strangelove 13-04-87\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\20-Never let me down again 24-08-87\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\21-Behind the wheel 28-12-87\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\22-Everything counts-live 13-02-89\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\23-Personal Jesus 29-08-89\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX4\24-Enjot the silence 05-02-90\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\25-Policy of truth 07-05-90\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\26-World in my eyes 17-09-90\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\27-I feel you 15-02-93\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\28-Walking in my shoes 29-04-93\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\29-Condemnation 13-09-93\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX5\30-In you room 10-01-94\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\31-Barrel of a gun 03-02-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\32-It's no good 31-03-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\33-Home 16-06-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\34-Useless 20-10-97\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\35-Only when I lose myself 07-09-98\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\DM BX6\36-Dream on 23-04-01\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Better Living Through Chemistry\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Greates Remixs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\Halfway Between The Gutter And The Stars\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\On The Floor At The Boutique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Fatboy Slim\Fatboy Slim\You've Come A Long Way Baby\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Gorillaz\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Gorillaz\2004 Gorillaz - Greatest Hits\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Martin Gore\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Martin Gore\An Italian Night With Martin Gore\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Moby - Hotel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Musique radioblog\musik marion\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Musique radioblog\musik marion\Musique mp3\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Back To Mine\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Brotherhood\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Get Ready\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Low Life\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Movement\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Power Corruption & Lies\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Retro\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Sustance\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Sustance\CD 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Sustance\CD 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\The Best Of\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\The Rest Of\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\New Order\Waiting For The Siren's Call\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Always Outnumbered Never Outgunned\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Experience Expanded\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Music For The Jilted Generation\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\Rare & Remixed\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\The Dirtchamber Sessions Vol. 1\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Prodigy\The Fat Of The Land\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Sean Paul\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Sean Paul\The Trinity\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\Tears For Fears\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\The Servant\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Ma musique\The Servant\The Servant\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Budget\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Factures pour déménageurs\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Itinéraire Lille Oliat_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Photos au premier jour le 12 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Photos pendant travaux cuisines\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Achat\Photos pendant visite\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Plans\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Plans\Photos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Vente\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Vente\Compromis de vente Faches thumesnil\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\maisons\Vente\Photos au dernier jour le 09 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes fichiers MSN reçus\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes Google Gadgets\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes Historiques de Conversation\août 2007\Images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Anni. maryvonne 14 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Elne avril 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Amis\Elne été 2004\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Concert Depeche Mode Toulouse 03 02 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\desg\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\pack_david_guetta\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Divers\police halo\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille4 02 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille4 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille6 08 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille7 08 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\21 10 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\25 05 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv Mathilde 01 01 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniv Nath 37 ans\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10070805\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\100_FUJI\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10170803\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10170804\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10170805\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10270708\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10270804\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10270805\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10470723\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10770729\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10870731\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire mariage Annick & Lucien\10970802\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Anniversaire thomas 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme Benji 20069 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme Benji 2006\10 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme Benji 2006\11 06 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Bapteme théo 04 03 2007\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\fete de fin année marion 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Fete fin annee marion 24 06 05\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Famille\Premier CSO Marion 15 10 2006\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\feuille\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Images Barcelone\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Images Barcelone\Images a mettre sur CD\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\palmOne Photos\philip\Expansion card 6eb\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\palmOne Photos\philip\Expansion card 7c05\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\palmOne Photos\philip\Handheld\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Snapshot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes images\Snapshot\Movie Snapshot\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Anni. maryvonne 14 05 2005\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\A CHARGER SUR SITE INTERNET\Музыкальные и видео файлы Depeche Mode для свободного скачивания_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Behind The Wheel\Depeche_Mode_-_Behind_The_Wheel_(Audiorobbers_Mix)-(Whitelabel-Vinyl)-2005-DRUM\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Exciter Tour Barcelona 2001\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Some Great Reward Tour\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Strange Too 1990 VHSrip\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Suffer Well\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Television Set In Amsterdam 81\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Touring The Angel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Depeche Mode\Touring The Angel\Rock Am Ring\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Films\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Malcom\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Mariés deux enfants\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\The Muppet Show\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Vidéos papa\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Vidéos papa\SUR K7 CAMERA\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Mes vidéos\Vidéos papa\SUR K7 VIDEO\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Assurance auto\Proposition auchan\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Assurance auto\Proposition groupama\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Autoradio\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Banque\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Bateau Bombard\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\perso\Mutation pour Blagnac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Idee implantation\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Nouvel emploi\ANPE\Mes télécandidatures_fichiers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Nouvel emploi\ASSEDIC\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Nouvel emploi\Big Mat\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Nouvel emploi\Kronembourg\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Nouvel emploi\La plateforme du batiment\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Nouvel emploi\Mr Bricolage\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Photo Blagnac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Photo Casto Beziers\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Vidéos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Professionnel\Vidéos\Blagnac\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\sur carte memoire 256 mb\10160813\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\sur carte memoire 256 mb\10260814\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\sur carte memoire 256 mb\10360816\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\sur carte memoire 256 mb\10560820\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\sur carte memoire 256 mb\10960923\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\philippe\Mes documents\Voiture\Amende\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Affiche axe mrf\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\fille mrf 2\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\50 Cents\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Ma musique\50 Cents\The Massacre\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\Mes vidéos\Thumbs.dble [WARNING] The file could not be opened! C:\Documents and Settings\thomas\Mes documents\UNSC_Edition.bootskin\Thumbs.dble [WARNING] The file could not be opened! C:\eJay\Thumbs.dble [WARNING] The file could not be opened! C:\pmw\Thumbs.dble [WARNING] The file could not be opened! C:\pointsoft\images\Thumbs.dble [WARNING] The file could not be opened! C:\ppwork\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Activision\Dark Reign\dark\graphics\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Activision\Dark Reign\dark\graphics\INTFACE\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\DVD Shrink\Still Images\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\HappyCollection_2.2d\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Labtec\WebCam\Labtec\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Messenger\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Messenger Plus! Live\Scripts\Screenshot Sender 4\Images\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Microsoft Games\Halo\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\cagcat10\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\office10\autoshap\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\office10\bullets\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\microsoft office\media\office10\lines\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Components\Resources\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Components\Resources\HSW\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Components\Resources\Samples\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\palmOne\Themes\Resources\Thumbs.dble [WARNING] The file could not be opened! C:\Program Files\Windows Media Player\Thumbs.dble [WARNING] The file could not be opened! C:\Sierra\Empereur\DATA\Thumbs.dble [WARNING] The file could not be opened! C:\Sierra\Empereur\Res\Icons\Thumbs.dble [WARNING] The file could not be opened! C:\Sierra\Empereur\Res\Images\Thumbs.dble [WARNING] The file could not be opened! C:\WINDOWS\SmitfraudFix.zip [0] Archivetype: ZIP --> SmitfraudFix/Process.exe [DETECTION] Contains signature of the SPR/Processor.20 program C:\WINDOWS\Thumbs.dble [WARNING] The file could not be opened! C:\WINDOWS\system32\Process.exe [DETECTION] Contains signature of the SPR/Processor.20 program C:\WINDOWS\system32\config\DEFAULT [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SOFTWARE [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SYSTEM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! The path D:\ could ot be found! Le périphérique n'est pas prêt. The path E:\ could ot be found! Le périphérique n'est pas prêt. The path G:\ could ot be found! Le périphérique n'est pas prêt. The path H:\ could ot be found! Le périphérique n'est pas prêt. The path I:\ could ot be found! Le périphérique n'est pas prêt. The path J:\ could ot be found! Le périphérique n'est pas prêt. K:\autorun.inf [WARNING] The file could not be readed! End of the scan: jeudi 09 septembre 2007 16:17 Used time: 4:37:28 min The scan has been done completely. 11770 Scanning directories 743774 Files were scanned 2 viruses and/or unwanted programs was found 0 files were deleted 0 files were repaired 1 files were moved to quarantine 0 files were renamed 8142 Archives were scanned 1694 Warnings 0 Notes Et enfin le rapport d'HJT: Logfile of HijackThis v1.99.1 Scan saved at 11:54:21, on 09/09/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16512) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Windows Media Connect\mswmc.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\APPS\OD2\OD2State.exe C:\WINDOWS\system32\atwtusb.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Adobe\Acrobat 7.0\Acrobat\Acrobat.exe C:\DOCUME~1\philippe\LOCALS~1\Temp\Adobelm_Cleanup.0001 C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe C:\DOCUME~1\philippe\LOCALS~1\Temp\Adobelm_Cleanup.0001 E:\Francais\Essential_Software\VersaMail\INSTALL_FR.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\Program Files\AntiVir PersonalEdition Classic\sched.exe C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe C:\Program Files\AntiVir PersonalEdition Classic\update.exe C:\WINDOWS\system32\drwtsn32.exe C:\WINDOWS\system32\drwtsn32.exe C:\Program Files\WinAce\WinAce.exe C:\DOCUME~1\philippe\LOCALS~1\Temp\~AceTemp\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ? O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clien...1.0/Rawflow.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{D653B3EA-006D-4A30-B516-BBFE4F991442}: NameServer = 84.103.237.141 86.64.145.141 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir Scheduler (AntiVirScheduler) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe Voila pas mal de lecture,je te laisse faire A+ -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonjour, me revoila apres qques semaines d'absences j'ai installe antivir et zone alarm pour ZA tout se passe bien et il bloque pas mal de chose suite a la config conseillée par contre pour antivir une fenetre s 'affiche au lancement de windows:cela me dit en gros que la licence de mon produit a expire depuis le 31 mai 2006;et que sans licence valide il sera impossible de mettre a jour le produit. je clique sur OK et puis rien? Enfin quand je lance start antivir une fentre s'ouvre et 1/:antivir guard activated 2/:last update not performed 3/:license expired since 31/05/2006 Alors j'essaie de lancer start update et :An internal error has appeared. More information in the report file avec le rapport suivant: [03/09/2007 12:36:59] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_46dbe3cb\ [03/09/2007 12:36:59] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateStarted [03/09/2007 12:36:59] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [03/09/2007 12:37:00] [iNFO] [PLG] Initialize avscan.exe [03/09/2007 12:36:59] Command line for update application: "C:\Program Files\AntiVir PersonalEdition Classic\update.exe" --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic" [03/09/2007 12:36:59] User changed the logfile name to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-9-3-10-36-59.log [03/09/2007 12:36:59] Install Path: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_46dbe3cb\ [03/09/2007 12:37:00] [iNFO] [GUI] Start the Update GUI... Displaymode: 0 [03/09/2007 12:37:00] [iNFO] [PLG] Keyfile: OK [FULL Mode] [03/09/2007 12:37:04] Master IDX file has changed [03/09/2007 12:37:11] [iNFO] [PLG] Initialize avnotify.exe [03/09/2007 12:37:14] File basic-nt/2k/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/avadmin.exe's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/avgio64.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/psapi.dll's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/shlext64.dll's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/vista64/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/wsctool.exe's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/xp64/avgntflt.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/2k/avgntdd.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/2k/avgntmgr.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/nt/avgntdd.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] File basic-nt/nt/avgntmgr.sys's destination operating system doesn't match the current one. File ignored. [03/09/2007 12:37:14] Downloading the product.info file from http://dl6.avgate.net/upd/idx/vdf_preload.info.gz [03/09/2007 12:37:15] Downloading the product.info file from http://dl6.avgate.net/upd/idx/vdf.info.gz [03/09/2007 12:37:15] Downloading the product.info file from http://dl6.avgate.net/upd/idx/specvir-nt.info.gz [03/09/2007 12:37:15] Downloading the product.info file from http://dl6.avgate.net/upd/idx/engine.info.gz [03/09/2007 12:37:16] Downloading the product.info file from http://dl6.avgate.net/upd/idx/engine-nt-en.info.gz [03/09/2007 12:37:16] Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 15 [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avinet.dll v7.0.0.3 MD5:a915e8fc7e771a2db5e0ace86310ccf1 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avinet.dll v7.0.0.0 MD5:580b29756d625b3e2f6bba66086501f5 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/common_msg.avr MD5:a40ecc64d95d171f5a6f50717e26cbe7 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\common_msg.avr MD5:d4f3cf0ab5e5d5c64c3c12f6ef00390f [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/mfc71u.dll v7.10.3077.0 MD5:7bfd56e40bb435c5337dba130a9d4c5f [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\mfc71u.dll v7.10.3077.0 MD5:7bfd56e40bb435c5337dba130a9d4c5f [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/msvcp71.dll v7.10.3077.0 MD5:72cac42b1cabf6e708e90783133a86d3 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\msvcp71.dll v7.10.3077.0 MD5:72cac42b1cabf6e708e90783133a86d3 [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/msvcr71.dll v7.10.3052.4 MD5:56ac3aeb00c35936487417494c26830c [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\msvcr71.dll v7.10.3052.4 MD5:56ac3aeb00c35936487417494c26830c [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/scewxml.dll MD5:c15fdee7a613fe7ede46c621b91f6d36 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\scewxml.dll MD5:9c83f3e1f1d52dbec4ca33e6fb74d4e7 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/update.exe v1.2.10.6 MD5:df0895f856e2877ec219df0bd75ede27 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\update.exe v1.2.6.15 MD5:83be17ee5826972bce59d02d1c601aa3 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/update_msg.avr MD5:20106404e0c5a943a9c4fe38c0838410 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\update_msg.avr MD5:2b0ff1d07efb11480b98838ffcf2da0a [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/updgui.dll v1.2.10.1 MD5:10783d8be45318f1d12ef8fcd18cb1f3 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updgui.dll v1.2.6.10 MD5:0fc4e19279abd043718e1faf9a6a49fa [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/updguirc.dll v1.2.13.0 MD5:5466b76bdd58ac02028b9f6b3aa8779c [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updguirc.dll v1.2.6.8 MD5:46541902fc8999909aaf542689a09cb7 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/updlib.dll v1.2.10.11 MD5:8eb69b201078d43f24b308bf1e34dd4b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updlib.dll v1.2.6.18 MD5:6996a8f7b018b81159c066bbfe3b8137 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/updlibrc.dll v1.2.19.0 MD5:df23d69a0b7a21960c9b0cc84311ec36 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updlibrc.dll v1.2.6.12 MD5:8560652cec218faa1b24c41bfb82ec5f [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/antivir.oem MD5:5daa91ae9f3cc0cfe424d3053895cbee [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir.oem MD5:d4a8a0792b098535d6f059c16d096d84 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/rcimage.dll v7.0.1.15 MD5:8545d065d3fa36d341e273dcf1cb0f92 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rcimage.dll v7.0.0.45 MD5:e953b00ace3a96d7f0dc14979954add9 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/rctext.dll v7.0.45.0 MD5:52b88bb4618ccd23518d163c6df49dcf [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rctext.dll v7.0.0.48 MD5:ad5276c52d1449edfe5e9f35854a024a [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] Module: MAIN Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 68 [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\avarkt.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avcenter.exe v7.1.0.5 MD5:dc027382ba17ea72a26fe0635064821b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avcenter.exe v7.0.0.20 MD5:3e7e922982954659176191d7b4fca214 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avconfig.cpl v7.0.1.4 MD5:9c245cb152de6c2aa14e9c85772b281e [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.cpl v7.0.0.26 MD5:401b1d42f225812f4b4285637d7c6e95 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avconfig.dll v7.1.0.0 MD5:f2465a8c2a14d138324e7ca0894be84e [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.dll v7.0.0.19 MD5:8fa97d3419a129c5b36761000d6c540e [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\avconfig.exe does not exist. It will be retrieved [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\avevtlog.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avgcmxp.dll v7.0.4.0 MD5:736aa63d5794a7c020b1c4da376b48cd [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgcmxp.dll v7.0.0.3 MD5:4f99bf75b0efc7c975133417661d34d1 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avgio.sys v1.0.0.30 MD5:5f4caef01ef19f88e092f2c5fbd1f68f [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgio.sys v1.0.0.10 MD5:7db745b57cf5da4a414846cd8c309a40 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avgnt.exe v7.0.4.5 MD5:05e3795206c803a6ca017e957dac1909 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe v7.0.0.6 MD5:6e31a77005eab1f4e5b120d33640e42f [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avguard.exe v7.0.0.52 MD5:cf3d200674b553356ed9839852ee716f [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe v7.0.0.20 MD5:13f5bd4ddc8495932d7e098fafd2ee8c [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\avipbb.inf does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avnotify.dll v7.0.3.0 MD5:96a0d1376f300b9d6e0397eb69d69106 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avnotify.dll v7.0.0.6 MD5:8834e0f82f043ea14151bcb417884f13 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avnotify.exe v7.0.1.3 MD5:b11eff9e00772028bf8541422492666c [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avnotify.exe v7.0.0.6 MD5:4bc816b4c79995cb9d0e7d08ed36f6da [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avpref.dll v7.0.2.1 MD5:825446cccb7cbb3416d8ae92e5f7bccd [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avpref.dll v6.34.0.0 MD5:402b03e643889df5617270a2c4aeb85e [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avreg.dll v7.0.1.2 MD5:9bbe91dd78036b44e2c4d9c07e5890c5 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avreg.dll v6.31.0.90 MD5:2c6a9ebc315289e8457e35dee3f3ff80 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avscan.dll v7.0.4.4 MD5:8dc7285b2bd52f7e4978e73e2ad71eda [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avscan.dll v7.0.0.19 MD5:86c9539d4cab27d72cea4a4453eee848 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/avscan.exe v7.0.4.15 MD5:b4cdc88b3b93f18bb3e6b0b128ec207b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avscan.exe v7.0.0.19 MD5:91cd13e75949c2043da0df3d0dd75ff6 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\avwinll.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\ccev.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\ccevrc.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\ccgen.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\ccgenrc.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccgrdrc.dll v7.0.2.0 MD5:0aa26aebf79230faed46431d799d7ef8 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccgrdrc.dll v7.0.0.7 MD5:b9f1344bd4918e41871ed87d60782104 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccguard.dll v7.0.1.21 MD5:5f5b3aa72bd103e2e970eee0566679eb [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccguard.dll v7.0.0.8 MD5:81added87911638ddd9280efc4703caf [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/cclic.dll v7.1.0.1 MD5:6350b141af257df434da7e3162141f98 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\cclic.dll v7.0.0.7 MD5:defd6b25766ac7b72507362a64a28b06 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/cclicrc.dll v7.1.0.0 MD5:71a78a059054cb9c22d47ae1f3b37340 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\cclicrc.dll v7.0.0.2 MD5:287821e4256981236d1d931b7051c1e3 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccmainrc.dll v7.1.1.0 MD5:24fe1f25261d01f7802e2c552ccfb4f4 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccmainrc.dll v7.0.0.6 MD5:ab25b90a3d266e968686af934d3c7873 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccprofil.dll v7.1.0.6 MD5:32ce1b8d1d618146890c8943f588f0ae [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccprofil.dll v7.0.0.14 MD5:1fe375f873815d956e5db8d6f04f6f8b [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccquamgr.dll v7.1.0.5 MD5:e029912fb31c29bb9c9edbccd9d6cf93 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccquamgr.dll v7.0.0.14 MD5:8429e1024537caae7b50a59d7ff80e40 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccquarc.dll v7.1.0.0 MD5:7c5730ab5d7765bc4997d17827c324d4 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccquarc.dll v7.0.0.7 MD5:0f27c8b85eb49ba09ab4343a3fc23662 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccreporc.dll v7.1.1.0 MD5:d6f59d5318c6fe4ae647d06b91571266 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccreporc.dll v7.0.0.3 MD5:92fbb2e8e5f0a597c6bbe81ed4004285 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccreport.dll v7.1.0.2 MD5:f7d5f2f60e68c0110395b8fc2ff0680b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccreport.dll v7.0.0.7 MD5:d622fd864a8a8c2b5437482310607293 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccscanrc.dll v7.1.2.0 MD5:0158ed8553ff520f3259b73ef13c3df1 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccscanrc.dll v7.0.0.1 MD5:91abc9d96f5fe4f915932975aff97aa7 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccsched.dll v7.1.0.4 MD5:1845ea7ede78ff66937a67a821e826f4 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccsched.dll v7.0.0.11 MD5:9e74feef9faa40801ee2c7c2af47ac9e [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccscherc.dll v7.1.1.0 MD5:954574835b3b2d474cdf774296f3ca0c [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccscherc.dll v7.0.0.5 MD5:6241824c28f7ccc26605e1dd03de9c6d [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccupdate.dll v7.1.0.1 MD5:b0e5e5aca2f7835b0d5188d994dce323 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccupdate.dll v7.0.0.9 MD5:c2fcc34dc4f178ba512e938f173f985f [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/ccupdrc.dll v7.1.0.2 MD5:bbee6fb26865510c9af7032277339038 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccupdrc.dll v7.0.0.2 MD5:21aef9b5c3883548cb81009f77bb200d [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/guardgui.exe v7.0.4.2 MD5:cbd2a05216b14c53faf5da3ebf868c30 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardgui.exe v7.0.0.10 MD5:ded693abafabfdf4962e4bf3d9e9d239 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/guardmsg.dll v7.0.10.1 MD5:42b80187bba0d7b1e70891323250d387 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardmsg.dll v7.0.0.4 MD5:4a2eb8ec6a27b846401efb2d0d99efae [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/licmgr.dll v7.0.2.0 MD5:e141e7240f29f07709c099a115780d7b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\licmgr.dll v7.0.0.3 MD5:e935b61f2b1f0dd475b8fcd3fdd81adb [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/licmgr.exe v7.0.2.0 MD5:00ab215d3b3beebe6b8bebff76563d50 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\licmgr.exe v7.0.0.3 MD5:c346c1cce3ec082140e48ba518008e9e [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/luke.dll v7.0.4.11 MD5:f364e4caff4ca02633c99d0fa507054f [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\luke.dll v7.0.0.19 MD5:c8fbf685ffe8794060a55e5a1297de7d [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/lukeres.dll v7.0.4.0 MD5:fe0cbf73b066a4e0c36567a7332dae84 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\lukeres.dll v7.0.0.19 MD5:1750d5c1958ba26d050cb622fbacc6ad [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/netnt.dll v7.0.0.0 MD5:f934c95c34d92f6b7927bf578203ffa9 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\netnt.dll v6.32.0.0 MD5:eca20bd0c0d722596e8404a125218860 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/preupd.exe v7.0.0.25 MD5:94efe617d450a6390f32287cd6f303bc [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\preupd.exe v7.0.0.9 MD5:6a733f01accb413d72b090046b84fa89 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/sched.exe v7.0.0.46 MD5:9591f262ddfbbce50bef440ae1bac919 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sched.exe v7.0.0.4 MD5:1705b730b41fecd1ca5c120ba94dda4a [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/schedr.dll v7.0.22.0 MD5:1a102b4b393f2c338db7fa4979d30c3d [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\schedr.dll v7.0.0.0 MD5:fb8a7e803682d3eb9b830668f0d1710f [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/setup.dll v7.0.23.0 MD5:51e7ac1f1d5731b273ad27a0db326d4b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setup.dll v7.0.0.58 MD5:4b08f139006ef99821d1df65d5b17325 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/setup.exe v7.0.2.9 MD5:783d62a21b556f69f60b83dfcf03b5fd [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setup.exe v7.0.0.58 MD5:d1dfacee6f7e295a11d6773e46dfd969 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/shlext.dll v7.0.0.10 MD5:7575bee4a2402b4aa736d2453e358b0b [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\shlext.dll v7.0.0.4 MD5:60372c284007e4918a1ceecbc2ea4bb6 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/smtplib.dll v1.2.0.13 MD5:786b7b53fa8ce8c8e809356f870ab1bc [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\smtplib.dll v1.1.0.5 MD5:8571c0cb2619817fb3bdb296a63094cb [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\sqlite3.dll does not exist. It will be retrieved [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\ssmdrv.inf does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/basic-nt/xp/avgntflt.sys v6.39.0.5 MD5:cd6d64eaaefe7517ee978e3dd864ec08 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgntflt.sys v6.33.0.3 MD5:8892a9b4166a0e5c359ea9080884bb2e [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/alldiscs.avp MD5:746ea386adb9a24c99ec33da3870718f [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\alldiscs.avp MD5:746ea386adb9a24c99ec33da3870718f [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/alldrives.avp MD5:292a72626aeea6b7f02618b4af2c57ee [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\alldrives.avp MD5:c4d078a8690a80d10ed4978467d1b36b [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/build.dat MD5:79c06b736b7de5cc2ab896c054b14b46 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\build.dat MD5:8a0ea802382569dfb107b0c211121896 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/guardevt.dll v7.0.1.0 MD5:d4205d3c46fb09abe553cb006fd76045 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardevt.dll v1.0.1.7 MD5:a53efd1f32769d61d3cc5a50ed490be2 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/hbedv.key MD5:78136059fa067f93380d74db38b4bed9 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\hbedv.key MD5:87dcd92256090bc70cb729889de263b6 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/mydocs.avp MD5:1acc2478dca81f804ec102a99b90a1f1 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\mydocs.avp MD5:1acc2478dca81f804ec102a99b90a1f1 [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\process.avp does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/rchelp.dll v7.0.0.19 MD5:3a28d52fa92d829323308fba6a122492 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rchelp.dll v7.0.0.5 MD5:dd3c878483d0fdad7257ebf5f550a6b9 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/rmdiscs.avp MD5:0a1b76737648c63a263c27f33b4bb831 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rmdiscs.avp MD5:de94fae91f5db1046b3e3cd3c9f98028 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\rootkit.avp does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/setupprf.dat MD5:b7b12f4f6a2089ba8d994f33a34b1bf0 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setupprf.dat MD5:b7b12f4f6a2089ba8d994f33a34b1bf0 [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File C:\Program Files\AntiVir PersonalEdition Classic\sweb.zip does not exist. It will be retrieved [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/sysdir.avp MD5:3a58425393ee51f714ff60668291ffde [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sysdir.avp MD5:3a58425393ee51f714ff60668291ffde [03/09/2007 12:37:16] File doesn't need update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/weblink.url MD5:e9bbf34aa3d0391b6815c0efcda1dd77 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\weblink.url MD5:83830bf045216389f0783f25664dcfaa [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] Module: COMMAPPDATA Source: winwks\en\ Destination: C:\Documents and Settings\All Users\Application Data\ Files: 1 [03/09/2007 12:37:16] File C:\Documents and Settings\All Users\Application Data\addr_file.html does not exist. It will be retrieved [03/09/2007 12:37:16] Module: TEXT Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 3 [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/avwin.chm MD5:b821d6991f2beed535155a39f936c043 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avwin.chm MD5:b3bf7efac7b301da3068b09abd7ab0c7 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/eula.txt MD5:71846e4c38ba03472530d4751fbc7fe6 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\eula.txt MD5:923c9a99db531c8eabdc2dd263312ea3 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] File in the internet: http://dl6.avgate.net/upd/winwks/en/classic-nt/readme.txt MD5:1cfbccb3c414117ab2c7f464e98df4c7 [03/09/2007 12:37:16] Local file: C:\Program Files\AntiVir PersonalEdition Classic\readme.txt MD5:9dc15d5b7255d6bbc71bae2b75b75692 [03/09/2007 12:37:16] File needs update [03/09/2007 12:37:16] Replacement for Variable COMMAPP_DIR_AV not found. [03/09/2007 12:37:16] [iNFO] [PLG] Status of service AntiVirService is running [03/09/2007 12:37:16] [iNFO] [PLG] Initialize avgnt.exe [03/09/2007 12:37:16] [iNFO] [PLG] Service AVEService is not installed [03/09/2007 12:37:16] [iNFO] [PLG] Service AntiVirMailService is not installed [03/09/2007 12:37:16] [iNFO] [PLG] Status of service AntiVirScheduler is running [03/09/2007 12:37:16] [iNFO] [PLG] Initialize avscan.exe [03/09/2007 12:37:16] [iNFO] [PLG] Initialize avconfig.cpl [03/09/2007 12:37:16] [iNFO] [PLG] Initialize avcenter.exe [03/09/2007 12:37:16] [ERROR] [PLG] Can not start the service AntiVirService [03/09/2007 12:37:16] [ERROR] [PLG] Can not start the service AntiVirScheduler [03/09/2007 12:37:16] [iNFO] [PLG] Registry entry created successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7\UpdateInProgress [03/09/2007 12:37:17] Critical error: Variable commapp_dir_av not found voila j espere que tu pourra m aider merci -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
RE oui ce matin quand j ai allume el pc ???? -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonjour, me voici de retour et je tepost le fichier boot.ini: [boot loader] timeout=3 default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS [operating systems] multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn C:\CMDCONS\BOOTSECT.DAT="Console de r‚cup‚ration Microsoft Windows XP" /cmdcons je ne suis pas encore aller voir sur les liens que tu m as donné pour les antivir mais cela ne saurai tarder.Des que c'est fait je t'enverrai un nouveau rapport hjt et diaghelp j attends ta reponse en ce qui concerne le boot.ini encore merci pour tout A+ -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonjour, pour le fichier boot.ini et les rapports que tu me demande a la fin , je le ferai des mon retour chez moi dimanche Par contre je vais deja me faire une idee sur les antivir et autres parefeu que tu me conseille d allez voir sur les liens. j ai une autre question:quid de l antispyware? Est il inclus dans un des antivirus sus nommés ou dans le firewall ou faut il en charger un et dans ce cas quel est le plus efficace (dans la mesure d une navigation securisee)? A + -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonsoir, je n ai pas dossier rapport dans:C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\ De plus en ouvrant AVG AS et cliquant sur onglet rapport:aucun rapport disponible Au demarrage je n ai pas de cd et encore moins de disquette (car pas de lecteur de disquette) De plus cela ne me le fait pas a chaque fois("retirez les disques pressez une touche" "disk boot failure,insert system disk and press enter"") J ai charge seek.bat et voici le rapport: Effectué le 16/07/2007 à 23:24:04,50. Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\WINDOWS\system32 30/08/2002 13:00 1 896 AUTOEXEC.NT 1 fichier(s) 1 896 octets Le volume dans le lecteur C s'appelle HDD Le numéro de série du volume est 2C9F-E9D0 Répertoire de C:\WINDOWS\system32 30/09/2002 13:04 3 072 CONFIG.NT 1 fichier(s) 3 072 octets J ai installe Java Runtime Environment Version 6 Update 2 et viré J2SE Runtime Environment 5.0 Update 11 J2SE Runtime Environment 5.0 Update 8 Java 2 Runtime Environment, SE v1.4.2_04 voila bon ben je ne sias plus quoi dire et demain je me leve tot pour carcassonne toute la semaine mais je reste en contact depuis un autre poste dis moi la suite (si suite il ya et ma question concernant antivirus,firewall et anti spyware tiens tojours) bonne nuit a+ -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonjour, Alors j ai tous fait c etait long mais cela a presque marche comme t me l avais dit: voici le rapport smit fraudfix option 2: SmitFraudFix v2.204 Rapport fait à 23:59:42,23, 15/07/2007 Executé à partir de C:\Documents and Settings\philippe\Bureau\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Le type du système de fichiers est NTFS Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Arret des processus »»»»»»»»»»»»»»»»»»»»»»»» hosts 127.0.0.1 localhost »»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix GenericRenosFix by S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés C:\WINDOWS\avp.exe supprimé C:\WINDOWS\main_uninstaller.exe supprimé C:\WINDOWS\mgrs.exe supprimé C:\WINDOWS\msddx.dll supprimé C:\WINDOWS\msqnx.dll supprimé C:\WINDOWS\privacy_danger\ supprimé Problème suppression C:\WINDOWS\qnxplugin.dll »»»»»»»»»»»»»»»»»»»»»»»» DNS »»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "LegalNoticeText"="LE SYSTEME VOUS SURVEILLE" "system"="" »»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre Nettoyage terminé. »»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Reboot C:\WINDOWS\qnxplugin.dll supprimé »»»»»»»»»»»»»»»»»»»»»»»» Fin Et maintenant pour AVG, à la fin du scan complet en mode sans échec et après mise à jour réussie, la case "enregistrer le rapport" n'était pas grisée;J'ai attendu un bon bout de temps mais impossible de cliquer dessus.Pourtant je suis certain d'avoir paramétrer AVG comme tu me l a dit:MYSTERE????? (en tout cas pour moi) enfin voici le rapport de HJT fait en dernier: Logfile of HijackThis v1.99.1 Scan saved at 15:07:55, on 16/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\WINDOWS\System32\nvsvc32.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Windows Media Connect\mswmc.exe C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\APPS\OD2\OD2State.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\WINDOWS\system32\atwtusb.exe C:\Program Files\Windows Defender\MSASCui.exe C:\WINDOWS\system32\TBLMOUSE.EXE C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\WinAce\WinAce.exe C:\DOCUME~1\philippe\LOCALS~1\Temp\~AceTemp\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe" O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ? O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{D653B3EA-006D-4A30-B516-BBFE4F991442}: NameServer = 84.103.237.142 86.64.145.142 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe Il semble que le démarrage , maintenant soit plus rapide.En tout cas je n'ai plus de redirection publicitaire à l ouverture de IE, ni de fond d ecran "qui fait peur!!!!!!!!!!!!!" Néanmoins au démarage de l'ordi on me demande "retirez les disques pressez une touche" ce que je fais et ensuite "disk boot failure,insert system disk and press enter"" ce que je fais et windows demarre. A+ -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
voila , j'ai fait le reste et voici le rapport fixwareout: Username "philippe" - 2007-07-15 17:21:56 [Fixwareout edited 2007/07/05] »»»»»Prerun check HKLM\SOFTWARE\~\Winlogon\ "System"="csusa.exe" HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{47849F83-7662-4DF5-BD62-7307660666F9} "DhcpNameServer"="85.255.116.167,85.255.112.168" <Value cleared. HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{DF45D8FE-83E1-47E5-9CE4-771E4B9A8431} "DhcpNameServer"="85.255.116.167,85.255.112.168" <Value cleared. Cache de résolution DNS vidé. System was rebooted successfully. »»»»» Postrun check HKLM\SOFTWARE\~\Winlogon\ "system"="" .... .... »»»»» Misc files. .... »»»»» Checking for older varients. .... »»»»» Current runs (hklm hkcu "run" Keys Only) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvCpl.dll,NvStartup" "URLLSTCK.exe"="C:\\Program Files\\Norton Internet Security\\UrlLstCk.exe" "Symantec NetDriver Monitor"="C:\\PROGRA~1\\SYMNET~1\\SNDMon.exe /Consumer" "SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_11\\bin\\jusched.exe\"" "SoundMan"="SOUNDMAN.EXE" "PCMService"="\"c:\\Apps\\Powercinema\\PCMService.exe\"" "nwiz"="nwiz.exe /installquiet" "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\System32\\NvMcTray.dll,NvTaskbarInit" "LVCOMS"="C:\\Program Files\\Fichiers communs\\Logitech\\QCDriver2\\LVCOMS.EXE" "Lexmark 2200 Series"="\"C:\\Program Files\\Lexmark 2200 Series\\lxbvbmgr.exe\"" "DOWNLOAD MANAGER"="C:\\APPS\\OD2\\OD2DLEngine.exe" "ccApp"="\"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe\"" "Acrobat Assistant 7.0"="\"C:\\Program Files\\Adobe\\Acrobat 7.0\\Distillr\\Acrotray.exe\"" "NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe" "atwtusb"="atwtusb.exe beta" "Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide" "IE Privacy Keeper"="\"C:\\Program Files\\UnH Solutions\\IE Privacy Keeper\\IEPrivacyKeeper.exe\" -startup" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot" "ISUSPM Startup"="C:\\PROGRA~1\\FICHIE~1\\INSTAL~1\\UPDATE~1\\ISUSPM.exe -startup" "ISUSScheduler"="\"C:\\Program Files\\Fichiers communs\\InstallShield\\UpdateService\\issch.exe\" -start" "avp"="C:\\WINDOWS\\avp.exe" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe" "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="\"C:\\Program Files\\Fichiers communs\\Ahead\\lib\\NMBgMonitor.exe\"" "swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe" "WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe" .... Hosts file was reset, If you use a custom hosts file please replace it C:\WINDOWS\repair\autoexec.nt missing C:\WINDOWS\repair\Config.nt missing »»»»» End report »»»»» et le rapport hjt Logfile of HijackThis v1.99.1 Scan saved at 17:37:34, on 15/07/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16473) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\LEXBCES.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\LEXPPS.EXE C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\WINDOWS\System32\nvsvc32.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Windows Media Connect\mswmcls.exe C:\WINDOWS\system32\MsPMSPSv.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Windows Media Connect\mswmc.exe C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe C:\WINDOWS\SOUNDMAN.EXE C:\Apps\Powercinema\PCMService.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe C:\APPS\OD2\OD2DLEngine.exe C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\WINDOWS\system32\atwtusb.exe C:\APPS\OD2\OD2State.exe C:\Program Files\Windows Defender\MSASCui.exe C:\WINDOWS\system32\TBLMOUSE.EXE C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Program Files\palmOne\HOTSYNC.EXE C:\PROGRA~1\WIDCOMM\LOGICI~1\BTSTAC~1.EXE C:\Program Files\WinAce\WinAce.exe C:\DOCUME~1\philippe\LOCALS~1\Temp\~AceTemp\hijackthis\HijackThis.exe C:\Program Files\Symantec\LiveUpdate\AUpdate.exe C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=...6Ojg5&lid=2 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: MSVPS System - {4118A625-1B64-4ED1-A2E9-76DEC529D2D2} - C:\WINDOWS\qnxplugin.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe" O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe" O4 - HKLM\..\Run: [DOWNLOAD MANAGER] C:\APPS\OD2\OD2DLEngine.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [atwtusb] atwtusb.exe beta O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iE Privacy Keeper] "C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPrivacyKeeper.exe" -startup O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [avp] C:\WINDOWS\avp.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - Startup: HotSync Manager.LNK = C:\Program Files\palmOne\HOTSYNC.EXE O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O4 - Global Startup: BTTray.lnk = ? O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ? O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...lscbase8460.cab O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/components/ocx/survid/MSSurVid.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/components/ocx/exterior/Outside.cab O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{D653B3EA-006D-4A30-B516-BBFE4F991442}: NameServer = 86.64.145.145 84.103.237.145 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O21 - SSODL: msddx - {3DE1C8A9-F782-46EC-960E-8F1C489CF33C} - C:\WINDOWS\msddx.dll O21 - SSODL: msqnx - {79047E87-574E-44FC-8864-111B50E777C2} - C:\WINDOWS\msqnx.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe merci pour la suite des manios a effectuer A+ -
trojan adware w32 expdwnldr
kingleroideskong a répondu à un(e) sujet de kingleroideskong dans Analyses et éradication malwares
bonjour, voici le rapport smit v2.202 SmitFraudFix v2.204 Rapport fait à 17:16:12,23, 15/07/2007 Executé à partir de C:\Documents and Settings\philippe\Bureau\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Le type du système de fichiers est NTFS Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» Process »»»»»»»»»»»»»»»»»»»»»»»» hosts »»»»»»»»»»»»»»»»»»»»»»»» C:\ »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS C:\WINDOWS\avp.exe PRESENT ! C:\WINDOWS\main_uninstaller.exe PRESENT ! C:\WINDOWS\mgrs.exe PRESENT ! C:\WINDOWS\msddx.dll PRESENT ! C:\WINDOWS\msqnx.dll PRESENT ! C:\WINDOWS\privacy_danger PRESENT ! C:\WINDOWS\qnxplugin.dll PRESENT ! »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32 »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\philippe »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\philippe\Application Data »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer »»»»»»»»»»»»»»»»»»»»»»»» »»»»»»»»»»»»»»»»»»»»»»»» Bureau »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="" "LoadAppInit_DLLs"=dword:00000001 »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] "LegalNoticeText"="LE SYSTEME VOUS SURVEILLE" "System"="csusa.exe" »»»»»»»»»»»»»»»»»»»»»»»» Rustock »»»»»»»»»»»»»»»»»»»»»»»» DNS »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll »»»»»»»»»»»»»»»»»»»»»»»» Fin Ensuite je vais faire le reste de la manip et t'envoyer les deux autres rapports a+