

Neverthink
Membres-
Compteur de contenus
10 -
Inscription
-
Dernière visite
Autres informations
-
Mes langues
Français
Neverthink's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
Re Je suis perdu,je sais pas si il reste des virus si ils sont en quarantaine ou autre .. J'ai fait le scan avec Kaspersky (3 virus, 1 cheval de troie et un adware ) voila les rapports je ne sais pas lequel est le bon : Date : Aujourd'hui (événements : 92) Protection (événements : 18/08/2009 13:29:56 Les bases sont fortement dépassées Kaspersky Anti-Virus 18/08/2009 13:31:43 Les bases sont fortement dépassées Kaspersky Anti-Virus 18/08/2009 14:03:03 Un programme malveillant a été découvert Kaspersky Anti-Virus 18/08/2009 18:47:00 La protection en temps réel ne fonctionne pas Kaspersky Anti-Virus 18/08/2009 18:56:47 Un programme malveillant a été découvert Kaspersky Anti-Virus 18/08/2009 19:06:09 Détection du programme potentiellement indésirables Kaspersky Anti-Virus 18/08/2009 19:33:14 Un programme malveillant a été découvert Kaspersky Anti-Virus 18/08/2009 19:35:13 Détection du programme potentiellement indésirables Kaspersky Anti-Virus Antivirus Fichiers (événements : 2) 18/08/2009 13:30:09 Lancement de la tâche Kaspersky Anti-Virus Antivirus Fichiers 18/08/2009 18:48:52 Lancement de la tâche Kaspersky Anti-Virus Antivirus Fichiers Antivirus Courrier (événements : 2) 18/08/2009 18:48:52 Lancement de la tâche Kaspersky Anti-Virus Antivirus Courrier 18/08/2009 13:29:57 Lancement de la tâche Kaspersky Anti-Virus Antivirus Courrier Antivirus Internet (événements : 2) 18/08/2009 18:48:53 Lancement de la tâche Kaspersky Anti-Virus Antivirus Internet 18/08/2009 13:30:09 Lancement de la tâche Kaspersky Anti-Virus Antivirus Internet Autodéfense (événements : 42) 18/08/2009 18:49:40 Interdit Explorateur Windows C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 18:24:39 Interdit Explorateur Windows C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:09:03 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:08:39 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:08:13 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:07:50 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:07:27 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:07:01 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:06:35 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:06:11 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:05:36 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:04:53 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:04:21 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:03:45 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:03:09 Interdit Explorateur Windows C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:03:08 Interdit CTF Loader C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:02:59 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:02:31 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:02:03 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:01:29 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:01:01 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 14:00:33 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:59:24 Interdit Module NTFS du défragmenteur de disque C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:38:06 Interdit Explorateur Windows C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:54 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:54 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:51 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:51 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:32 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:32 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:30 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:30 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:30 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:30 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:29 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:29 Interdit PV.CFEXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:28 Interdit PV.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:28 Interdit PV.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:28 Interdit PV.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:28 Interdit PV.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:28 Interdit PV.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe 18/08/2009 13:37:28 Interdit PV.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe Défense Proactive (événements : 2) 18/08/2009 18:48:53 Lancement de la tâche Kaspersky Anti-Virus Défense Proactive 18/08/2009 13:30:09 Lancement de la tâche Kaspersky Anti-Virus Défense Proactive Antivirus IM ("Chat") (événements : 2) 18/08/2009 18:48:52 Lancement de la tâche Kaspersky Anti-Virus Antivirus IM ("Chat") 18/08/2009 13:29:57 Lancement de la tâche Kaspersky Anti-Virus Antivirus IM ("Chat") Analyse des Objets (événements : 18/08/2009 19:48:45 Fin de la tâche Kaspersky Anti-Virus Analyse Complète 18/08/2009 19:29:13 Fin de la tâche Kaspersky Anti-Virus Recherche d'outils de dissimulation d'activité 18/08/2009 19:19:08 Lancement de la tâche Kaspersky Anti-Virus Recherche d'outils de dissimulation d'activité 18/08/2009 18:50:20 Lancement de la tâche Kaspersky Anti-Virus Analyse Complète 18/08/2009 18:33:36 Tâche arrêtée Kaspersky Anti-Virus Analyse Complète 18/08/2009 18:28:15 Lancement de la tâche Kaspersky Anti-Virus Analyse Complète 18/08/2009 14:06:11 Fin de la tâche Kaspersky Anti-Virus Recherche d'outils de dissimulation d'activité 18/08/2009 14:00:02 Lancement de la tâche Kaspersky Anti-Virus Recherche d'outils de dissimulation d'activité Mise à jour (événements : 24) 18/08/2009 13:30:26 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 13:31:43 Tâche arrêtée Kaspersky Anti-Virus Mise à jour Opération annulée par l'utilisateur 18/08/2009 13:31:51 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 13:39:41 Fin de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 13:39:52 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 13:41:18 Fin de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 13:41:25 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 13:42:15 Fin de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 15:45:05 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 15:46:05 Fin de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:05:05 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:08:00 Fin de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:21:46 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:23:04 Fin de la tâche Kaspersky Anti-Virus Mise à jour Aucune mise à jour disponible 18/08/2009 18:23:36 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:24:40 Fin de la tâche Kaspersky Anti-Virus Mise à jour Aucune mise à jour disponible 18/08/2009 18:24:53 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:25:40 Fin de la tâche Kaspersky Anti-Virus Mise à jour Aucune mise à jour disponible 18/08/2009 18:25:42 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:26:33 Fin de la tâche Kaspersky Anti-Virus Mise à jour Aucune mise à jour disponible 18/08/2009 18:26:40 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:26:45 Tâche arrêtée Kaspersky Anti-Virus Mise à jour Opération annulée par l'utilisateur 18/08/2009 18:26:50 Lancement de la tâche Kaspersky Anti-Virus Mise à jour 18/08/2009 18:28:03 Fin de la tâche Kaspersky Anti-Virus Mise à jour Aucune mise à jour disponible en voilà un autre : État : En quarantaine (événements : 2) 18/08/2009 18:50:03 En quarantaine virus HEUR:Trojan.Win32.Generic C:\windows\system32\fus.exe 18/08/2009 19:04:30 En quarantaine virus HEUR:Trojan.Win32.Generic C:\Documents and Settings\sid\piw.exe État : Détectés (événements : 1) 18/08/2009 19:06:09 Détectés logiciel publicitaire not-a-virus:AdWare.Win32.Craagle.b C:\Documents and Settings\sid\Bureau\Setup-s\Crack.rar/Craagle.exe//UPX État : Supprimés (événements : 2) 18/08/2009 19:35:13 Supprimés virus Rootkit.Win32.Agent.nfu C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\beep.sys.vir 18/08/2009 19:35:13 Supprimés cheval de Troie Trojan.Win32.TDSS.aoda C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\ESQULxnxdlsepkmlkypawujgvimktndpulhme.sys.vir et puis un autre : Recherche d'outils de dissimulation d'activité: terminée : il y a 5 heures (événements : 102, objets : 847, durée : 00:06:08) 18/08/2009 14:06:11 Fin de la tâche 18/08/2009 14:05:41 Compacté: UPX C:\program files\trend micro\hijackthis\hijackthis.exe/PE_Patch.UPX 18/08/2009 14:05:41 Compacté: PE_Patch.UPX C:\program files\trend micro\hijackthis\hijackthis.exe 18/08/2009 14:05:28 Compacté: UPX C:\documents and settings\sid\bureau\neverthink.exe/PE_Patch.UPX/32788R22FWJFW\setpath.cfexe/PE_Patch.UPX 18/08/2009 14:05:28 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\neverthink.exe/PE_Patch.UPX/32788R22FWJFW\setpath.cfexe 18/08/2009 14:05:27 Compacté: PECompact C:\documents and settings\sid\bureau\neverthink.exe/PE_Patch.UPX/32788R22FWJFW\pev.exe/PE_Patch.PECompact/PecBundle 18/08/2009 14:05:27 Compacté: PecBundle C:\documents and settings\sid\bureau\neverthink.exe/PE_Patch.UPX/32788R22FWJFW\pev.exe/PE_Patch.PECompact 18/08/2009 14:05:27 Compacté: PE_Patch.PECompact C:\documents and settings\sid\bureau\neverthink.exe/PE_Patch.UPX/32788R22FWJFW\pev.exe 18/08/2009 14:05:24 Compacté: UPX C:\documents and settings\sid\bureau\neverthink.exe/PE_Patch.UPX 18/08/2009 14:05:24 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\neverthink.exe 18/08/2009 14:05:01 Compacté: PECompact C:\windows\system32\divx.dll/PE_Patch.PECompact/PecBundle 18/08/2009 14:05:01 Compacté: PecBundle C:\windows\system32\divx.dll/PE_Patch.PECompact 18/08/2009 14:05:00 Compacté: PE_Patch.PECompact C:\windows\system32\divx.dll 18/08/2009 14:04:42 Compacté: PE_Patch C:\windows\system32\drivers\scsiport.sys 18/08/2009 14:04:41 Compacté: PE_Patch C:\windows\system32\drivers\pcouffin.sys 18/08/2009 14:04:40 Compacté: PE_Patch C:\windows\system32\drivers\kbdhid.sys 18/08/2009 14:04:38 Compacté: PE_Patch C:\windows\system32\drivers\hidusb.sys 18/08/2009 14:04:38 Compacté: PE_Patch C:\windows\system32\drivers\ezplay.sys 18/08/2009 14:04:37 Compacté: PE_Patch C:\windows\system32\drivers\cam1690.sys 18/08/2009 14:04:36 Compacté: PE_Patch C:\windows\system32\drivers\wpdusb.sys 18/08/2009 14:04:34 Compacté: PE_Patch C:\windows\system32\drivers\wudfrd.sys 18/08/2009 14:04:33 Compacté: PE_Patch C:\windows\system32\drivers\wstcodec.sys 18/08/2009 14:04:33 Compacté: PE_Patch C:\windows\system32\drivers\wanarp.sys 18/08/2009 14:04:32 Compacté: PE_Patch C:\windows\system32\drivers\volsnap.sys 18/08/2009 14:04:32 Compacté: PE_Patch C:\windows\system32\drivers\vga.sys 18/08/2009 14:04:32 Compacté: PE_Patch C:\windows\system32\drivers\usbstor.sys 18/08/2009 14:04:32 Compacté: PE_Patch C:\windows\system32\drivers\usbprint.sys 18/08/2009 14:04:32 Compacté: PE_Patch C:\windows\system32\drivers\usbohci.sys 18/08/2009 14:04:31 Compacté: PE_Patch C:\windows\system32\drivers\usbhub.sys 18/08/2009 14:04:31 Compacté: PE_Patch C:\windows\system32\drivers\usbehci.sys 18/08/2009 14:04:31 Compacté: PE_Patch C:\windows\system32\drivers\usbccgp.sys 18/08/2009 14:04:31 Compacté: PE_Patch C:\windows\system32\drivers\update.sys 18/08/2009 14:04:30 Compacté: PE_Patch C:\windows\system32\drivers\udfs.sys 18/08/2009 14:04:30 Compacté: PE_Patch C:\windows\system32\drivers\termdd.sys 18/08/2009 14:04:30 Compacté: PE_Patch C:\windows\system32\drivers\tdtcp.sys 18/08/2009 14:04:30 Compacté: PE_Patch C:\windows\system32\drivers\tdpipe.sys 18/08/2009 14:04:29 Compacté: PE_Patch C:\windows\system32\drivers\swmidi.sys 18/08/2009 14:04:29 Compacté: PE_Patch C:\windows\system32\drivers\swenum.sys 18/08/2009 14:04:28 Compacté: PE_Patch C:\windows\system32\drivers\streamip.sys 18/08/2009 14:04:26 Compacté: PE_Patch C:\windows\system32\drivers\splitter.sys 18/08/2009 14:04:26 Compacté: PE_Patch C:\windows\system32\drivers\slip.sys 18/08/2009 14:04:26 Compacté: PE_Patch C:\windows\system32\drivers\sfloppy.sys 18/08/2009 14:04:26 Compacté: PE_Patch C:\windows\system32\drivers\serenum.sys 18/08/2009 14:04:26 Compacté: PE_Patch C:\windows\system32\drivers\secdrv.sys 18/08/2009 14:04:25 Compacté: PE_Patch C:\windows\system32\drivers\redbook.sys 18/08/2009 14:04:25 Compacté: PE_Patch C:\windows\system32\drivers\rdpwd.sys 18/08/2009 14:04:24 Compacté: PE_Patch C:\windows\system32\drivers\rdpdr.sys 18/08/2009 14:04:24 Compacté: PE_Patch C:\windows\system32\drivers\raspppoe.sys 18/08/2009 14:04:23 Compacté: PE_Patch C:\windows\system32\drivers\psched.sys 18/08/2009 14:04:22 Compacté: PE_Patch C:\windows\system32\drivers\pcmcia.sys 18/08/2009 14:04:22 Compacté: PE_Patch C:\windows\system32\drivers\pci.sys 18/08/2009 14:04:21 Compacté: PE_Patch C:\windows\system32\drivers\parport.sys 18/08/2009 14:04:21 Compacté: PE_Patch C:\windows\system32\drivers\ohci1394.sys 18/08/2009 14:04:20 Compacté: PE_Patch C:\windows\system32\drivers\nic1394.sys 18/08/2009 14:04:20 Compacté: PE_Patch C:\windows\system32\drivers\ndproxy.sys 18/08/2009 14:04:19 Compacté: PE_Patch C:\windows\system32\drivers\ndisuio.sys 18/08/2009 14:04:19 Compacté: PE_Patch C:\windows\system32\drivers\ndistapi.sys 18/08/2009 14:04:18 Compacté: PE_Patch C:\windows\system32\drivers\ndisip.sys 18/08/2009 14:04:18 Compacté: PE_Patch C:\windows\system32\drivers\nabtsfec.sys 18/08/2009 14:04:18 Compacté: PE_Patch C:\windows\system32\drivers\mstee.sys 18/08/2009 14:04:18 Compacté: PE_Patch C:\windows\system32\drivers\mssmbios.sys 18/08/2009 14:04:17 Compacté: PE_Patch C:\windows\system32\drivers\mspqm.sys 18/08/2009 14:04:17 Compacté: PE_Patch C:\windows\system32\drivers\mspclock.sys 18/08/2009 14:04:17 Compacté: PE_Patch C:\windows\system32\drivers\mskssrv.sys 18/08/2009 14:04:16 Compacté: PE_Patch C:\windows\system32\drivers\mountmgr.sys 18/08/2009 14:04:16 Compacté: PE_Patch C:\windows\system32\drivers\mouclass.sys 18/08/2009 14:04:16 Compacté: PE_Patch C:\windows\system32\drivers\modem.sys 18/08/2009 14:04:15 Compacté: PE_Patch C:\windows\system32\drivers\mhndrv.sys 18/08/2009 14:04:15 Compacté: PE_Patch C:\windows\system32\drivers\ksecdd.sys 18/08/2009 14:04:14 Compacté: PE_Patch C:\windows\system32\drivers\kmixer.sys 18/08/2009 14:04:14 Compacté: PE_Patch C:\windows\system32\drivers\kbdclass.sys 18/08/2009 14:04:14 Compacté: PE_Patch C:\windows\system32\drivers\isapnp.sys 18/08/2009 14:04:14 Compacté: PE_Patch C:\windows\system32\drivers\irenum.sys 18/08/2009 14:04:14 Compacté: PE_Patch C:\windows\system32\drivers\ipnat.sys 18/08/2009 14:04:13 Compacté: PE_Patch C:\windows\system32\drivers\ipinip.sys 18/08/2009 14:04:13 Compacté: PE_Patch C:\windows\system32\drivers\ip6fw.sys 18/08/2009 14:04:13 Compacté: PE_Patch C:\windows\system32\drivers\intelppm.sys 18/08/2009 14:04:11 Compacté: PE_Patch C:\windows\system32\drivers\imapi.sys 18/08/2009 14:04:10 Compacté: PE_Patch C:\windows\system32\drivers\http.sys 18/08/2009 14:04:10 Compacté: PE_Patch C:\windows\system32\drivers\hdaudbus.sys 18/08/2009 14:04:10 Compacté: PE_Patch C:\windows\system32\drivers\msgpc.sys 18/08/2009 14:04:10 Compacté: PE_Patch C:\windows\system32\drivers\fltmgr.sys 18/08/2009 14:04:09 Compacté: PE_Patch C:\windows\system32\drivers\flpydisk.sys 18/08/2009 14:04:09 Compacté: PE_Patch C:\windows\system32\drivers\fips.sys 18/08/2009 14:04:09 Compacté: PE_Patch C:\windows\system32\drivers\fdc.sys 18/08/2009 14:04:08 Compacté: PE_Patch C:\windows\system32\drivers\drmkaud.sys 18/08/2009 14:04:07 Compacté: PE_Patch C:\windows\system32\drivers\dmusic.sys 18/08/2009 14:04:07 Compacté: PE_Patch C:\windows\system32\drivers\dmio.sys 18/08/2009 14:04:07 Compacté: PE_Patch C:\windows\system32\drivers\dmboot.sys 18/08/2009 14:04:05 Compacté: PE_Patch C:\windows\system32\drivers\cdrom.sys 18/08/2009 14:04:05 Compacté: PE_Patch C:\windows\system32\drivers\ccdecode.sys 18/08/2009 14:04:04 Compacté: PE_Patch C:\windows\system32\drivers\atmarpc.sys 18/08/2009 14:04:04 Compacté: PE_Patch C:\windows\system32\drivers\ati2mtag.sys 18/08/2009 14:04:03 Compacté: PE_Patch C:\windows\system32\drivers\atapi.sys 18/08/2009 14:04:03 Compacté: PE_Patch C:\windows\system32\drivers\asyncmac.sys 18/08/2009 14:04:02 Compacté: PE_Patch C:\windows\system32\drivers\arp1394.sys 18/08/2009 14:04:01 Compacté: PE_Patch C:\windows\system32\drivers\aec.sys 18/08/2009 14:04:01 Compacté: PE_Patch C:\windows\system32\drivers\acpi.sys 18/08/2009 14:03:42 Sera placé en quarantaine lors du redémarrage: HEUR:Trojan.Win32.Generic C:\windows\system32\fus.exe 18/08/2009 14:03:03 Détectés: HEUR:Trojan.Win32.Generic C:\windows\system32\fus.exe 18/08/2009 14:02:03 Compacté: UPX C:\program files\sld codec pack\mplayerc.exe 18/08/2009 14:00:02 Lancement de la tâche Analyse Complète: arrêtée : il y a 1 heure (événements : 99, objets : 3757, durée : 00:05:20) 18/08/2009 18:33:36 Tâche arrêtée 18/08/2009 18:33:24 Erreur de traitement C:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP9\Bases\ext079c.kdc Erreur de lecture 18/08/2009 18:33:24 Erreur de traitement C:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP9\Bases\ext078c.kdc Erreur de lecture 18/08/2009 18:33:24 Erreur de traitement C:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP9\Bases\ext077c.kdc Erreur de lecture 18/08/2009 18:33:21 Erreur de traitement C:\CMPNENTS\MEDIACTR\I386\PLUS.CAB/Party_Mode.wmz/background_1600.jpg Erreur de lecture 18/08/2009 18:32:12 Compacté: Edit C:\documents and settings\All Users\Application Data\CyberLink\EvoParser\PowerDVD\6.00\EVO.xml 18/08/2009 18:32:12 Compacté: Edit C:\documents and settings\All Users\Application Data\CyberLink\EvoParser\EVO0.xml 18/08/2009 18:29:51 Compacté: UPX C:\program files\trend micro\hijackthis\hijackthis.exe/PE_Patch.UPX 18/08/2009 18:29:50 Compacté: PE_Patch.UPX C:\program files\trend micro\hijackthis\hijackthis.exe 18/08/2009 18:29:32 Compacté: PECompact C:\windows\system32\divx.dll/PE_Patch.PECompact/PecBundle 18/08/2009 18:29:32 Compacté: PecBundle C:\windows\system32\divx.dll/PE_Patch.PECompact 18/08/2009 18:29:32 Compacté: PE_Patch.PECompact C:\windows\system32\divx.dll 18/08/2009 18:29:27 Compacté: PE_Patch C:\windows\system32\drivers\scsiport.sys 18/08/2009 18:29:27 Compacté: PE_Patch C:\windows\system32\drivers\pcouffin.sys 18/08/2009 18:29:26 Compacté: PE_Patch C:\windows\system32\drivers\kbdhid.sys 18/08/2009 18:29:25 Compacté: PE_Patch C:\windows\system32\drivers\hidusb.sys 18/08/2009 18:29:25 Compacté: PE_Patch C:\windows\system32\drivers\ezplay.sys 18/08/2009 18:29:25 Compacté: PE_Patch C:\windows\system32\drivers\cam1690.sys 18/08/2009 18:29:24 Compacté: PE_Patch C:\windows\system32\drivers\wpdusb.sys 18/08/2009 18:29:24 Compacté: PE_Patch C:\windows\system32\drivers\wudfrd.sys 18/08/2009 18:29:24 Compacté: PE_Patch C:\windows\system32\drivers\wstcodec.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\wanarp.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\volsnap.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\vga.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\usbstor.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\update.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\usbprint.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\usbohci.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\usbhub.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\usbehci.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\usbccgp.sys 18/08/2009 18:29:23 Compacté: PE_Patch C:\windows\system32\drivers\udfs.sys 18/08/2009 18:29:22 Compacté: PE_Patch C:\windows\system32\drivers\tdtcp.sys 18/08/2009 18:29:22 Compacté: PE_Patch C:\windows\system32\drivers\termdd.sys 18/08/2009 18:29:22 Compacté: PE_Patch C:\windows\system32\drivers\tdpipe.sys 18/08/2009 18:29:22 Compacté: PE_Patch C:\windows\system32\drivers\swmidi.sys 18/08/2009 18:29:22 Compacté: PE_Patch C:\windows\system32\drivers\streamip.sys 18/08/2009 18:29:22 Compacté: PE_Patch C:\windows\system32\drivers\swenum.sys 18/08/2009 18:29:21 Compacté: PE_Patch C:\windows\system32\drivers\splitter.sys 18/08/2009 18:29:21 Compacté: PE_Patch C:\windows\system32\drivers\slip.sys 18/08/2009 18:29:21 Compacté: PE_Patch C:\windows\system32\drivers\sfloppy.sys 18/08/2009 18:29:21 Compacté: PE_Patch C:\windows\system32\drivers\secdrv.sys 18/08/2009 18:29:21 Compacté: PE_Patch C:\windows\system32\drivers\serenum.sys 18/08/2009 18:29:20 Compacté: PE_Patch C:\windows\system32\drivers\redbook.sys 18/08/2009 18:29:20 Compacté: PE_Patch C:\windows\system32\drivers\rdpdr.sys 18/08/2009 18:29:20 Compacté: PE_Patch C:\windows\system32\drivers\rdpwd.sys 18/08/2009 18:29:20 Compacté: PE_Patch C:\windows\system32\drivers\raspppoe.sys 18/08/2009 18:29:20 Compacté: PE_Patch C:\windows\system32\drivers\psched.sys 18/08/2009 18:29:20 Compacté: PE_Patch C:\windows\system32\drivers\pcmcia.sys 18/08/2009 18:29:19 Compacté: PE_Patch C:\windows\system32\drivers\pci.sys 18/08/2009 18:29:19 Compacté: PE_Patch C:\windows\system32\drivers\parport.sys 18/08/2009 18:29:19 Compacté: PE_Patch C:\windows\system32\drivers\ohci1394.sys 18/08/2009 18:29:19 Compacté: PE_Patch C:\windows\system32\drivers\nic1394.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\ndproxy.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\ndisuio.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\ndistapi.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\ndisip.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\nabtsfec.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\mstee.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\mssmbios.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\mspqm.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\mspclock.sys 18/08/2009 18:29:18 Compacté: PE_Patch C:\windows\system32\drivers\mskssrv.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\mountmgr.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\mouclass.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\modem.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\mhndrv.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\kmixer.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\ksecdd.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\kbdclass.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\isapnp.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\ipnat.sys 18/08/2009 18:29:17 Compacté: PE_Patch C:\windows\system32\drivers\irenum.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\ipinip.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\ip6fw.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\intelppm.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\http.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\imapi.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\hdaudbus.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\msgpc.sys 18/08/2009 18:29:16 Compacté: PE_Patch C:\windows\system32\drivers\fltmgr.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\flpydisk.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\fips.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\fdc.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\drmkaud.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\dmboot.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\dmusic.sys 18/08/2009 18:29:15 Compacté: PE_Patch C:\windows\system32\drivers\dmio.sys 18/08/2009 18:29:14 Compacté: PE_Patch C:\windows\system32\drivers\cdrom.sys 18/08/2009 18:29:14 Compacté: PE_Patch C:\windows\system32\drivers\ati2mtag.sys 18/08/2009 18:29:14 Compacté: PE_Patch C:\windows\system32\drivers\ccdecode.sys 18/08/2009 18:29:13 Compacté: PE_Patch C:\windows\system32\drivers\atapi.sys 18/08/2009 18:29:13 Compacté: PE_Patch C:\windows\system32\drivers\atmarpc.sys 18/08/2009 18:29:13 Compacté: PE_Patch C:\windows\system32\drivers\asyncmac.sys 18/08/2009 18:29:13 Compacté: PE_Patch C:\windows\system32\drivers\arp1394.sys 18/08/2009 18:29:13 Compacté: PE_Patch C:\windows\system32\drivers\aec.sys 18/08/2009 18:29:13 Compacté: PE_Patch C:\windows\system32\drivers\acpi.sys 18/08/2009 18:28:52 Compacté: UPX C:\program files\sld codec pack\mplayerc.exe 18/08/2009 18:28:15 Lancement de la tâche Analyse Complète: terminée : il y a 7 minutes (événements : 1191, objets : 328649, durée : 00:58:23) 18/08/2009 19:48:45 Fin de la tâche 18/08/2009 19:48:24 Compacté: PE_Patch C:\windows\system32\ReinstallBackups\0004\DriverFiles\hdaudbus.sys 18/08/2009 19:48:24 Compacté: PE_Patch C:\windows\system32\ReinstallBackups\0000\DriverFiles\B_34839\ati2mtag.sys 18/08/2009 19:48:21 Compacté: PE_Patch C:\windows\system32\Macromed\Shockwave 10\Download.dll 18/08/2009 19:48:14 Compacté: PE_Patch C:\windows\system32\drivers\PCASp50.sys 18/08/2009 19:48:14 Compacté: PE_Patch C:\windows\system32\drivers\nwrdr.sys 18/08/2009 19:48:14 Compacté: PE_Patch C:\windows\system32\drivers\nwlnkipx.sys 18/08/2009 19:48:14 Compacté: PE_Patch C:\windows\system32\drivers\Hdaudio.sys 18/08/2009 19:48:03 Compacté: Swf2Exe C:\windows\system32\dllcache\tourW.exe 18/08/2009 19:47:58 Compacté: PE_Patch C:\windows\system32\dllcache\rmcast.sys 18/08/2009 19:47:56 Compacté: ExePack C:\windows\system32\dllcache\nlsfunc.exe 18/08/2009 19:47:50 Compacté: PE_Patch C:\windows\system32\dllcache\ksecdd.sys 18/08/2009 19:47:44 Compacté: Com2Exe C:\windows\system32\dllcache\fastopen.exe/ExePack 18/08/2009 19:47:44 Compacté: ExePack C:\windows\system32\dllcache\fastopen.exe 18/08/2009 19:47:37 Compacté: ExePack C:\windows\system32\dllcache\debug.exe 18/08/2009 19:47:36 Compacté: PE_Patch C:\windows\system32\dllcache\ati2mtag.sys 18/08/2009 19:47:13 Compacté: Com2Exe C:\windows\system32\share.exe/ExePack 18/08/2009 19:47:13 Compacté: ExePack C:\windows\system32\share.exe 18/08/2009 19:47:12 Compacté: UPX C:\windows\system32\RLMPCDec.ax 18/08/2009 19:47:04 Compacté: ExePack C:\windows\system32\nlsfunc.exe 18/08/2009 19:46:56 Compacté: ExePack C:\windows\system32\mem.exe 18/08/2009 19:46:44 Compacté: Com2Exe C:\windows\system32\fastopen.exe/ExePack 18/08/2009 19:46:44 Compacté: ExePack C:\windows\system32\fastopen.exe 18/08/2009 19:46:44 Compacté: ExePack C:\windows\system32\exe2bin.exe 18/08/2009 19:46:43 Compacté: ExePack C:\windows\system32\edlin.exe 18/08/2009 19:46:42 Compacté: ExePack C:\windows\system32\edit.com 18/08/2009 19:46:41 Compacté: ExePack C:\windows\system32\debug.exe 18/08/2009 19:46:34 Compacté: UPX C:\windows\system32\CoreAAC.ax 18/08/2009 19:46:02 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\1aab3734ef80ad9a9ea342c887c3ea76340961e8/PE_Patch/dotnetfx35\x86\netfx35_x86.exe 18/08/2009 19:46:00 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\1aab3734ef80ad9a9ea342c887c3ea76340961e8/PE_Patch/dotnetfx30\xpsepsc-x86-en-us.exe 18/08/2009 19:46:00 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\1aab3734ef80ad9a9ea342c887c3ea76340961e8/PE_Patch/dotnetfx30\wic_x86_enu.exe 18/08/2009 19:45:57 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\1aab3734ef80ad9a9ea342c887c3ea76340961e8/PE_Patch/dotnetfx35setup.exe 18/08/2009 19:45:54 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\1b69c6a34ee3176041425a4238c7e626\sp3gdr\ksecdd.sys 18/08/2009 19:45:54 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\93eb7b70538d605b8cbce661c647279fe8a21272 18/08/2009 19:45:53 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\8b5036b48590c52e3edba8e297cd3017b7a3043c 18/08/2009 19:45:53 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\4f169225578ee3dfd56a39704d7246b8743b2b03 18/08/2009 19:45:52 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\4d50cba4f1476d9e9320d5c0dc2be56259a98303 18/08/2009 19:45:51 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\2b03b54c0972c16ab6ce75f42ac4877af87ce844 18/08/2009 19:45:50 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\1aab3734ef80ad9a9ea342c887c3ea76340961e8 18/08/2009 19:45:50 Compacté: PE_Patch C:\windows\SoftwareDistribution\Download\04fcde4b28dd4f6db7548831d35d1c6bf38e1335 18/08/2009 19:45:41 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\watchdog.sys 18/08/2009 19:45:41 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\wanarp.sys 18/08/2009 19:45:40 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\volsnap.sys 18/08/2009 19:45:40 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\videoprt.sys 18/08/2009 19:45:40 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\vga.sys 18/08/2009 19:45:39 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\usb8023.sys 18/08/2009 19:45:39 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\update.sys 18/08/2009 19:45:38 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\udfs.sys 18/08/2009 19:45:38 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\tcpip6.sys 18/08/2009 19:45:38 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\tdtcp.sys 18/08/2009 19:45:38 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\tdpipe.sys 18/08/2009 19:45:38 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\tdi.sys 18/08/2009 19:45:38 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\tape.sys 18/08/2009 19:45:36 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\sr.sys 18/08/2009 19:45:33 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\rndismp.sys 18/08/2009 19:45:33 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\rmcast.sys 18/08/2009 19:45:32 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\rdpwd.sys 18/08/2009 19:45:32 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\raspppoe.sys 18/08/2009 19:45:32 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\ramdisk.sys 18/08/2009 19:45:32 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\psched.sys 18/08/2009 19:45:31 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\partmgr.sys 18/08/2009 19:45:30 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\nwrdr.sys 18/08/2009 19:45:30 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\nwlnkipx.sys 18/08/2009 19:45:29 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\npfs.sys 18/08/2009 19:45:29 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\nmnt.sys 18/08/2009 19:45:28 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\netbios.sys 18/08/2009 19:45:27 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\ndproxy.sys 18/08/2009 19:45:27 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\ndistapi.sys 18/08/2009 19:45:23 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\msgpc.sys 18/08/2009 19:45:23 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\msfs.sys 18/08/2009 19:45:22 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\mrxdav.sys 18/08/2009 19:45:22 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\mqac.sys 18/08/2009 19:45:21 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\mountmgr.sys 18/08/2009 19:45:17 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\irenum.sys 18/08/2009 19:45:17 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\ipinip.sys 18/08/2009 19:45:17 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\ipnat.sys 18/08/2009 19:45:17 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\ip6fw.sys 18/08/2009 19:45:11 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\fltmgr.sys 18/08/2009 19:45:11 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\fips.sys 18/08/2009 19:45:08 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\dmio.sys 18/08/2009 19:45:08 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\dmboot.sys 18/08/2009 19:45:08 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\diskdump.sys 18/08/2009 19:45:01 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\bridge.sys 18/08/2009 19:45:01 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\atmlane.sys 18/08/2009 19:45:01 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\atmarpc.sys 18/08/2009 19:44:56 Compacté: PE_Patch C:\windows\ServicePackFiles\i386\asyncmac.sys 18/08/2009 19:44:38 Compacté: PE_Patch C:\windows\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\wpdusb.sys 18/08/2009 19:44:37 Compacté: PE_Patch C:\windows\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\wpdusb.sys 18/08/2009 19:42:42 Compacté: UPX C:\windows\Installer\804e55.msi/ISSetup.dll 18/08/2009 19:41:24 Compacté: Swf2Exe C:\windows\Help\Tours\mmTour\tour.exe 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/wstcodec.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/wmiacpi.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/wceusbsh.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/wacompen.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/viaide.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/viaagp.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbvideo.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbuhci.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbstor.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbser.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbscan.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbprint.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbport.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbohci.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbintel.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbhub.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbehci.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbccgp.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbcamd2.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbcamd.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usbaudio.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/usb8023x.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/uagp35.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/tunmp.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/tffsport.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/termdd.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/swmidi.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/swenum.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/streamip.sys 18/08/2009 19:40:53 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/stream.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/splitter.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sonydcam.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sonyait.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/smbclass.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/smbbatt.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/smbali.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/slip.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sisagp.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sfloppy.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sffp_sd.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sffp_mmc.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sffdisk.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/serenum.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sdbus.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/scsiscan.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/scsiport.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/sbp2port.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/rocket.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/rndismpx.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/rfcomm.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/redbook.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/rdpdr.sys 18/08/2009 19:40:52 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/qic157.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/processr.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/ppa3.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/powerfil.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/portcls.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/perm3.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/perm2.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/pcmcia.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/pciidex.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/pci.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/parport.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/p3.sys 18/08/2009 19:40:51 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/ohci1394.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/nscirda.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/nic1394.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/ndisuio.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/ndisip.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/nabtsfec.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mutohpen.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mstee.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mstape.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mssmbios.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mspqm.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mspclock.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mskssrv.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/msircomm.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/msdv.sys 18/08/2009 19:40:50 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mpe.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mouclass.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/modem.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/mf.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/memstpci.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/ltotape.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/lbrtfdc.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/kmixer.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/kbdhid.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/kbdclass.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/isapnp.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/irda.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/irbus.sys 18/08/2009 19:40:49 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/intelppm.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/intelide.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/imapi.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/i2omp.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/i2omgmt.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/http.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hidusb.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hidparse.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hidir.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hidclass.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hidbth.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hidbatt.sys 18/08/2009 19:40:48 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/hdaudbus.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/grserial.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/gckernel.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/gameenum.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/gagp30kx.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/flpydisk.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/fdc.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/dxg.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/drmkaud.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/drmk.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/dot4.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/dmusic.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/dlttape.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/disk.sys 18/08/2009 19:40:47 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/crusoe.sys 18/08/2009 19:40:46 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/compbatt.sys 18/08/2009 19:40:46 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/cmbatt.sys 18/08/2009 19:40:46 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/changer.sys 18/08/2009 19:40:46 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/cdrom.sys 18/08/2009 19:40:46 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/ccdecode.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bthusb.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bthprint.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bthport.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bthpan.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bthmodem.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bthenum.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/bdasup.sys 18/08/2009 19:40:43 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/battc.sys 18/08/2009 19:40:42 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/avcstrm.sys 18/08/2009 19:40:42 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/avc.sys 18/08/2009 19:40:38 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/atapi.sys 18/08/2009 19:40:38 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/arp1394.sys 18/08/2009 19:40:37 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/amdk7.sys 18/08/2009 19:40:37 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/amdk6.sys 18/08/2009 19:40:37 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/amdagp.sys 18/08/2009 19:40:36 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/alim1541.sys 18/08/2009 19:40:36 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/agpcpq.sys 18/08/2009 19:40:36 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/agp440.sys 18/08/2009 19:40:35 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/aec.sys 18/08/2009 19:40:33 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/acpi.sys 18/08/2009 19:40:31 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/61883.sys 18/08/2009 19:40:31 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/4mmdat.sys 18/08/2009 19:40:31 Compacté: PE_Patch C:\windows\Driver Cache\i386\sp3.cab/1394bus.sys 18/08/2009 19:40:30 Compacté: PE_Patch C:\windows\ehome\XBOXMCE05LITE.EXE/PE_Patch/mcrdinstaller\WindowsXPMediaCenter2005-kb905589.exe 18/08/2009 19:40:28 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/encryption.exe 18/08/2009 19:40:24 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/decryption.exe 18/08/2009 19:40:21 Compacté: UPX C:\windows\erdnt\Hiv-backup\ERDNT.EXE 18/08/2009 19:40:20 Compacté: UPX C:\windows\erdnt\subs\ERDNT.EXE 18/08/2009 19:40:20 Compacté: PE_Patch C:\windows\ehome\XBOXMCE05LITE.EXE/PE_Patch/mcrdinstaller\wmcsetup.exe/PE_Patch/wmfdist95.exe/data0000.cab/wpdusb.sys 18/08/2009 19:40:19 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/eds_ccpsd.exe 18/08/2009 19:40:15 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/edsfsu.exe 18/08/2009 19:40:08 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/htca_selfextract.bin/data0000 18/08/2009 19:40:03 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/uivcl.dll 18/08/2009 19:39:46 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/keymanager.dll 18/08/2009 19:39:44 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/cryptoapi.dll 18/08/2009 19:39:38 Compacté: PE_Patch C:\windows\ehome\XBOXMCE05LITE.EXE/PE_Patch/mcrdinstaller\wmcsetup.exe 18/08/2009 19:39:23 Compacté: PE_Patch C:\windows\ehome\ehHelp\tenfoothelp.exe 18/08/2009 19:39:20 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/edsloader.exe 18/08/2009 19:39:17 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/edsrf.exe 18/08/2009 19:39:14 Compacté: PE_Patch C:\windows\ehome\XBOXMCE05LITE.EXE/PE_Patch/mcrdinstaller\ehd.cab/qwavedrv.sys 18/08/2009 19:39:03 Compacté: UPX C:\windows\Downloaded Installations\{D097E1D4-7C6A-433E-8E01-39733D6629F2}\Acer eDataSecurity Management.msi/Data1.cab/edscsp.exe 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_1544798FE86D410189A14BEDB1FD38E6 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_503EF1D4AB3B4C2593C6145B9DD8997F 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_506A2F6F30FE4149B1C5C2DC2213456D 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_F66EE68E9D074904902148C6B6ACACF3 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_03218A637D77420EB9B67F825E69DC5E 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_DDBC6CA0CFCB454DA2CE7426FC76D79E 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_A427882620884933ACCA5382BF05CDEC 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_E1478A6804AD43F697CCA81C9458FF13 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_A64048A37B3C4643B88DAABF8772C39F 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_534E4C0F6C9C4A52A2800EA1A9BF69C7 18/08/2009 19:38:15 Compacté: Swf2Swc C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/Data1.cab/_D396EF12DCF652295836B7CC125DE125 18/08/2009 19:38:15 Compacté: PE_Patch C:\windows\ehome\XBOXMCE05LITE.EXE 18/08/2009 19:38:13 Compacté: UPX C:\windows\Downloaded Installations\{A89CD583-E905-4217-877A-22F69B3C7CC4}\veoh.msi/ISSetup.dll 18/08/2009 19:38:13 Compacté: UPX C:\windows\Darluok Patch\uninstall.exe 18/08/2009 19:38:01 Compacté: UPX C:\windows\BricoPacks\Vista Inspirat 2\iCF.exe/# 18/08/2009 19:37:59 Compacté: UPX C:\windows\BricoPacks\Vista Inspirat 2\iCF.exe/data0011 18/08/2009 19:37:15 Compacté: PE_Patch C:\windows\$NtUninstallWMFDist11$\wpdusb.sys 18/08/2009 19:37:15 Compacté: PE_Patch C:\windows\$NtUninstallKB968389$\ksecdd.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\watchdog.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\wanarp.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\volsnap.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\videoprt.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\vga.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\usb8023.sys 18/08/2009 19:37:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\update.sys 18/08/2009 19:37:08 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\udfs.sys 18/08/2009 19:37:08 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\tdpipe.sys 18/08/2009 19:37:08 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\tdtcp.sys 18/08/2009 19:37:08 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\tdi.sys 18/08/2009 19:37:08 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\tcpip6.sys 18/08/2009 19:37:08 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\tape.sys 18/08/2009 19:37:06 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\sr.sys 18/08/2009 19:37:06 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\splitter.sys.000 18/08/2009 19:37:06 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\splitter.sys 18/08/2009 19:37:00 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\sbp2port.sys.000 18/08/2009 19:37:00 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\sbp2port.sys 18/08/2009 19:36:59 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\rndismp.sys 18/08/2009 19:36:59 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\rmcast.sys 18/08/2009 19:36:50 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\rdpwd.sys 18/08/2009 19:36:50 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\raspppoe.sys 18/08/2009 19:36:50 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\ramdisk.sys 18/08/2009 19:36:50 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\psched.sys 18/08/2009 19:36:50 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\powerfil.sys.000 18/08/2009 19:36:50 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\powerfil.sys 18/08/2009 19:36:44 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\nwrdr.sys 18/08/2009 19:36:44 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\nwlnkipx.sys 18/08/2009 19:36:40 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\npfs.sys 18/08/2009 19:36:40 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\nmnt.sys 18/08/2009 19:36:39 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\netbios.sys 18/08/2009 19:36:39 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\ndisuio.sys.000 18/08/2009 19:36:39 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\ndisuio.sys 18/08/2009 19:36:27 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\msgpc.sys 18/08/2009 19:36:27 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\msfs.sys 18/08/2009 19:36:26 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\mrxdav.sys 18/08/2009 19:36:25 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\mqac.sys 18/08/2009 19:36:25 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\mountmgr.sys 18/08/2009 19:36:23 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\kmixer.sys.000 18/08/2009 19:36:23 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\kmixer.sys 18/08/2009 19:36:18 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\irbus.sys.000 18/08/2009 19:36:18 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\irbus.sys 18/08/2009 19:36:18 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\irenum.sys 18/08/2009 19:36:18 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\ipnat.sys 18/08/2009 19:36:18 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\ipinip.sys 18/08/2009 19:36:17 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\ip6fw.sys 18/08/2009 19:36:16 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\http.sys.000 18/08/2009 19:36:16 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\http.sys 18/08/2009 19:36:16 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\hidir.sys.000 18/08/2009 19:36:16 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\hidir.sys 18/08/2009 19:36:16 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\hdaudbus.sys 18/08/2009 19:36:11 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\fltmgr.sys 18/08/2009 19:36:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\dmio.sys 18/08/2009 19:36:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\dmboot.sys 18/08/2009 19:36:09 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\diskdump.sys 18/08/2009 19:36:03 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\bthport.sys.000 18/08/2009 19:36:02 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\bthport.sys 18/08/2009 19:36:02 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\bridge.sys 18/08/2009 19:36:02 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\atmlane.sys 18/08/2009 19:36:02 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\atmarpc.sys 18/08/2009 19:36:02 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\asyncmac.sys 18/08/2009 19:36:01 Compacté: PE_Patch C:\windows\$NtServicePackUninstall$\aec.sys.000 18/08/2009 19:35:51 Compacté: PE_Patch C:\windows\$hf_mig$\KB968389\SP3QFE\ksecdd.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951376\SP3QFE\bthport.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951376\SP3GDR\bthport.sys 18/08/2009 19:35:28 Compacté: PE_Patch C:\windows\$hf_mig$\KB951376\SP2QFE\bthport.sys 18/08/2009 19:35:23 Compacté: PE_Patch C:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys 18/08/2009 19:35:23 Compacté: PE_Patch C:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys 18/08/2009 19:35:21 Compacté: PE_Patch C:\windows\$hf_mig$\KB946026\SP2QFE\mrxdav.sys 18/08/2009 19:35:17 Compacté: PE_Patch C:\windows\$hf_mig$\KB944653\SP2QFE\secdrv.sys 18/08/2009 19:35:13 Supprimés: Rootkit.Win32.Agent.nfu C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\beep.sys.vir 18/08/2009 19:35:12 Supprimés: Trojan.Win32.TDSS.aoda C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\ESQULxnxdlsepkmlkypawujgvimktndpulhme.sys.vir 18/08/2009 19:35:08 Compacté: PE_Patch C:\windows\$hf_mig$\KB937894\SP2QFE\mqac.sys 18/08/2009 19:35:05 Compacté: PE_Patch C:\windows\$hf_mig$\KB936357\SP2QFE\update.sys 18/08/2009 19:34:40 Compacté: PE_Patch C:\windows\$hf_mig$\KB923980\SP2QFE\nwrdr.sys 18/08/2009 19:34:39 Compacté: PE_Patch C:\windows\$hf_mig$\KB922819\SP2QFE\tcpip6.sys 18/08/2009 19:34:39 Compacté: PE_Patch C:\windows\$hf_mig$\KB922582\SP2QFE\fltmgr.sys 18/08/2009 19:34:39 Compacté: PE_Patch C:\windows\$hf_mig$\KB920872\SP2QFE\splitter.sys 18/08/2009 19:34:39 Compacté: PE_Patch C:\windows\$hf_mig$\KB920872\SP2QFE\kmixer.sys 18/08/2009 19:34:38 Compacté: PE_Patch C:\windows\$hf_mig$\KB919007\SP2QFE\rmcast.sys 18/08/2009 19:34:30 Compacté: PE_Patch C:\windows\$hf_mig$\KB916595\SP2QFE\http.sys 18/08/2009 19:34:16 Compacté: PE_Patch C:\windows\$hf_mig$\KB900485\SP2QFE\aec.sys 18/08/2009 19:34:16 Compacté: PE_Patch C:\windows\$hf_mig$\KB899591\SP2QFE\rdpwd.sys 18/08/2009 19:33:44 Compacté: PE_Patch C:\windows\$hf_mig$\KB886185\SP2QFE\ipnat.sys 18/08/2009 19:33:27 Compacté: Edit C:\windows\Zapotec.bmp 18/08/2009 19:33:26 Compacté: UPX C:\windows\SWSC.exe 18/08/2009 19:33:20 Compacté: UPX C:\windows\NIRCMD.exe/PE_Patch.UPX 18/08/2009 19:33:20 Compacté: PE_Patch.UPX C:\windows\NIRCMD.exe 18/08/2009 19:33:18 Compacté: UPX C:\windows\IFinst27.exe 18/08/2009 19:33:18 Compacté: ASPack C:\windows\comsummer.scr 18/08/2009 19:33:14 Détectés: Trojan.Win32.TDSS.aoda C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\ESQULxnxdlsepkmlkypawujgvimktndpulhme.sys.vir 18/08/2009 19:33:14 Détectés: Rootkit.Win32.Agent.nfu C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\beep.sys.vir 18/08/2009 19:33:12 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\WS2Fix.exe.vir/PE_Patch.UPX 18/08/2009 19:33:12 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\VACFix.exe.vir/PE_Patch.UPX 18/08/2009 19:33:12 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\WS2Fix.exe.vir 18/08/2009 19:33:12 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\VCCLSID.exe.vir 18/08/2009 19:33:12 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\VACFix.exe.vir 18/08/2009 19:33:11 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\SrchSTS.exe.vir 18/08/2009 19:33:11 Compacté: PE-Crypt.XorPE C:\Qoobox\Quarantine\C\WINDOWS\system32\secupdat.dat.vir 18/08/2009 19:33:11 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\IEDFix.exe.vir/PE_Patch.UPX 18/08/2009 19:33:11 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\o4Patch.exe.vir/PE_Patch.UPX 18/08/2009 19:33:11 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\o4Patch.exe.vir 18/08/2009 19:33:11 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\IEDFix.exe.vir 18/08/2009 19:33:11 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\IEDFix.C.exe.vir/PE_Patch.UPX 18/08/2009 19:33:11 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\IEDFix.C.exe.vir 18/08/2009 19:33:11 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\404Fix.exe.vir/PE_Patch.UPX 18/08/2009 19:33:10 Compacté: UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\Agent.OMZ.Fix.exe.vir/PE_Patch.UPX 18/08/2009 19:33:10 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\404Fix.exe.vir 18/08/2009 19:33:10 Compacté: PE_Patch.UPX C:\Qoobox\Quarantine\C\WINDOWS\system32\Agent.OMZ.Fix.exe.vir 18/08/2009 19:32:59 Compacté: WiseSFXDropper C:\program files\Yahoo!\common\unyt.exe 18/08/2009 19:32:47 Compacté: UPX C:\program files\World of Warcraft\Scan.dll.new/PE_Patch.UPX 18/08/2009 19:32:47 Compacté: PE_Patch.UPX C:\program files\World of Warcraft\Scan.dll.new 18/08/2009 19:32:47 Compacté: UPX C:\program files\World of Warcraft\Scan.dll/PE_Patch.UPX 18/08/2009 19:32:47 Compacté: PE_Patch.UPX C:\program files\World of Warcraft\Scan.dll 18/08/2009 19:32:01 Compacté: Swf2Swc C:\program files\Winamp\Plugins\winampFLV.swf 18/08/2009 19:31:30 Compacté: UPX C:\program files\VDOWNLOADER\ffmpeg.exe/PE_Patch.UPX 18/08/2009 19:31:28 Compacté: PE_Patch.UPX C:\program files\VDOWNLOADER\ffmpeg.exe 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\Trio_BUSB.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\Trio_BETH.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\Trio_BDWIFI.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\Trio_BDSL.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\TRIO4_WAN.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\TRIO4_RESETWIFI.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\HT_CONNECT.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\TRIO4_BUSB.swf 18/08/2009 19:31:27 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\TRIO4_BETH.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\TRIO4_BDWIFI.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\TRIO4_BDSL.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\F3302_BUSB.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\F3302_BETH.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\F3302_BDWIFI.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\F3302_BDSL.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBNOIR_BUSB.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBNOIR_BETH.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBNOIR_BDWIFI.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBNOIR_BDSL.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBBLEU_BUSB.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBBLEU_BETH.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBBLEU_BDSL.swf 18/08/2009 19:31:26 Compacté: Swf2Swc C:\program files\SFR\Kit\flash\CLUBBLEU_BDWIFI.swf 18/08/2009 19:31:15 Compacté: PE_Patch C:\program files\SFR\Kit\Drivers\Fast3302\Usb8023w.sys 18/08/2009 19:31:15 Compacté: PE_Patch C:\program files\SFR\Kit\Drivers\Fast3302\Usb8023m.sys 18/08/2009 19:31:15 Compacté: PE_Patch C:\program files\SFR\Kit\Drivers\Fast3302\USB8023K.SYS 18/08/2009 19:31:14 Compacté: PE_Patch C:\program files\SFR\Kit\Drivers\Fast3302\Rndismpw.sys 18/08/2009 19:31:14 Compacté: PE_Patch C:\program files\SFR\Kit\Drivers\Fast3302\Rndismpm.sys 18/08/2009 19:31:14 Compacté: PE_Patch C:\program files\SFR\Kit\Drivers\Fast3302\RNDISMPK.SYS 18/08/2009 19:30:48 Compacté: PE_Patch C:\program files\Realtek\InstallShield\KB888111xpsp2.exe/PE_Patch/commonfiles\hdaudio.sys 18/08/2009 19:30:47 Compacté: PE_Patch C:\program files\Realtek\InstallShield\KB888111xpsp2.exe/PE_Patch/commonfiles\hdaudbus.sys 18/08/2009 19:30:45 Compacté: PE_Patch C:\program files\Realtek\InstallShield\KB888111xpsp2.exe 18/08/2009 19:30:41 Compacté: Edit C:\program files\Real\RealPlayer\Firstrun\context.htm 18/08/2009 19:30:34 Compacté: Edit C:\program files\Real\RealPlayer\DataCache\GetMedia\404.html 18/08/2009 19:27:45 Compacté: VBSComment C:\program files\OpenOffice.org 2.4\program\python-core-2.3.4\lib\test\test_errno.py 18/08/2009 19:25:47 Compacté: UPX C:\program files\Messenger Plus! Live\Scripts\SendTo\_sendfile.exe/PE_Patch 18/08/2009 19:25:46 Compacté: PE_Patch C:\program files\Messenger Plus! Live\Scripts\SendTo\_sendfile.exe 18/08/2009 19:21:53 Compacté: UPX C:\program files\IVCsoft\Internet Video Converter 1.53 fr\mplayer\codecs\raac.dll 18/08/2009 19:21:50 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.53 fr\ivc_flv_players\ivc_flvplayer_03_xml.swf 18/08/2009 19:21:50 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.53 fr\ivc_flv_players\ivc_flvplayer_03.swf 18/08/2009 19:21:50 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.53 fr\ivc_flv_players\ivc_flvplayer_01_xml.swf 18/08/2009 19:21:50 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.53 fr\ivc_flv_players\ivc_flvplayer_01.swf 18/08/2009 19:21:50 Compacté: Edit C:\program files\IVCsoft\Internet Video Converter 1.53 fr\LICENCE_Internet_Video_Converter.txt 18/08/2009 19:21:48 Compacté: UPX C:\program files\IVCsoft\Internet Video Converter 1.41 FR\mplayer\MPUI.exe/PE_Patch.UPX 18/08/2009 19:21:48 Compacté: PE_Patch.UPX C:\program files\IVCsoft\Internet Video Converter 1.41 FR\mplayer\MPUI.exe 18/08/2009 19:21:48 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.41 FR\ivc_flv_players\ivc_flvplayer_03_xml.swf 18/08/2009 19:21:48 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.41 FR\ivc_flv_players\ivc_flvplayer_03.swf 18/08/2009 19:21:47 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.41 FR\ivc_flv_players\ivc_flvplayer_01_xml.swf 18/08/2009 19:21:47 Compacté: Swf2Swc C:\program files\IVCsoft\Internet Video Converter 1.41 FR\ivc_flv_players\ivc_flvplayer_01.swf 18/08/2009 19:21:47 Compacté: Swc2Exe C:\program files\IVCsoft\Internet Video Converter 1.41 FR\ivc_flvplayer.exe 18/08/2009 19:21:31 Compacté: UPX C:\program files\IrfanView\iv_uninstall.exe/PE_Patch.UPX 18/08/2009 19:21:31 Compacté: PE_Patch.UPX C:\program files\IrfanView\iv_uninstall.exe 18/08/2009 19:21:30 Compacté: UPX C:\program files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\ISSetup.dll 18/08/2009 19:21:30 Compacté: UPX C:\program files\InstallShield Installation Information\{3BD633E0-4BF8-4499-9149-88F0767D449C}\ISSetup.dll 18/08/2009 19:21:11 Compacté: Swf2Swc C:\program files\Fichiers communs\WindowsLiveInstaller\MsiSources\Install_{BADF6744-3787-48F6-B8C9-4C4995401D65}.msi/MsgrCore.cab/msgslangdll/inner.mct/KoiPond.swf 18/08/2009 19:20:57 Compacté: Cexe C:\program files\Fichiers communs\Real\GToolbar\GoogleToolbarInstaller98.exe 18/08/2009 19:20:25 Compacté: ASPack C:\program files\EA GAMES\Battlefield 1942\fpupdate.exe 18/08/2009 19:20:23 Compacté: PECompact C:\program files\DivX\DivX Codec\DivX EKG.exe/PE_Patch.PECompact/PecBundle 18/08/2009 19:20:22 Compacté: PecBundle C:\program files\DivX\DivX Codec\DivX EKG.exe/PE_Patch.PECompact 18/08/2009 19:20:22 Compacté: PE_Patch.PECompact C:\program files\DivX\DivX Codec\DivX EKG.exe 18/08/2009 19:20:22 Compacté: UPX C:\program files\DebugMode\Filters\Devil.dll 18/08/2009 19:20:08 Compacté: Swc2Exe C:\program files\comsummer\comsummer_1024x768.exe 18/08/2009 19:20:03 Compacté: PE_Patch C:\program files\Brother\Brmfl06a\Para_USB\BrUsbSer.sys 18/08/2009 19:20:02 Compacté: PE_Patch C:\program files\Brother\Brmfl06a\Para_USB\BrSerWdm.sys 18/08/2009 19:20:02 Compacté: PE_Patch C:\program files\Brother\Brmfl06a\Para_USB\BrSti06a.dll 18/08/2009 19:20:02 Compacté: PE_Patch C:\program files\Brother\Brmfl06a\Para_USB\brserif.sys 18/08/2009 19:19:51 Compacté: Edit C:\program files\Adobe\Acrobat 7.0\Setup Files\RdrBig708\ENU\Data1.cab/brt0401.lex 18/08/2009 19:19:40 Compacté: UPX C:\program files\AviSynth 2.5\plugins\trickyloaders\MVTools.dll 18/08/2009 19:19:39 Compacté: Edit C:\program files\Adobe\Acrobat 7.0\Resource\Linguistics\Providers\Proximity\brt0401.lex 18/08/2009 19:19:25 Compacté: PECompact C:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe/PE_Patch.PECompact/PecBundle 18/08/2009 19:19:25 Compacté: PecBundle C:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe/PE_Patch.PECompact 18/08/2009 19:19:25 Compacté: PE_Patch.PECompact C:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe 18/08/2009 19:19:24 Compacté: UPX C:\Neverthink\swsc.cfexe 18/08/2009 19:19:24 Compacté: UPX C:\Neverthink\swreg.exe 18/08/2009 19:19:23 Compacté: PECompact C:\Neverthink\pev.exe/PE_Patch.PECompact/PecBundle 18/08/2009 19:19:23 Compacté: PECompact C:\Neverthink\pev.cfexe/PE_Patch.PECompact/PecBundle 18/08/2009 19:19:23 Compacté: UPX C:\Neverthink\setpath.cfexe/PE_Patch.UPX 18/08/2009 19:19:23 Compacté: PE_Patch.UPX C:\Neverthink\setpath.cfexe 18/08/2009 19:19:22 Compacté: PecBundle C:\Neverthink\pev.cfexe/PE_Patch.PECompact 18/08/2009 19:19:22 Compacté: PecBundle C:\Neverthink\pev.exe/PE_Patch.PECompact 18/08/2009 19:19:22 Compacté: PE_Patch.PECompact C:\Neverthink\pev.exe 18/08/2009 19:19:22 Compacté: UPX C:\Neverthink\NirCmdC.cfexe/PE_Patch.UPX 18/08/2009 19:19:22 Compacté: PE_Patch.PECompact C:\Neverthink\pev.cfexe 18/08/2009 19:19:22 Compacté: PE_Patch.UPX C:\Neverthink\NirCmdC.cfexe 18/08/2009 19:19:22 Compacté: UPX C:\Neverthink\NircmdB.exe/PE_Patch.UPX 18/08/2009 19:19:22 Compacté: PE_Patch.UPX C:\Neverthink\NircmdB.exe 18/08/2009 19:19:22 Compacté: UPX C:\Neverthink\lsm.exe/PE_Patch.UPX 18/08/2009 19:19:22 Compacté: UPX C:\Neverthink\NirCmd.cfexe/PE_Patch.UPX 18/08/2009 19:19:22 Compacté: UPX C:\Neverthink\n.pif/PE_Patch.UPX 18/08/2009 19:19:22 Compacté: PE_Patch.UPX C:\Neverthink\NirCmd.cfexe 18/08/2009 19:19:21 Compacté: PE_Patch.UPX C:\Neverthink\n.pif 18/08/2009 19:19:21 Compacté: PE_Patch.UPX C:\Neverthink\lsm.exe 18/08/2009 19:19:21 Compacté: UPX C:\Neverthink\ERDNT.e_e 18/08/2009 19:19:20 Compacté: UPX C:\Neverthink\ERUNT.cfexe 18/08/2009 19:19:20 Compacté: UPX C:\Neverthink\ComboFix-Download.cfexe 18/08/2009 19:19:20 Compacté: UPX C:\Neverthink\catchme.cfexe/PE_Patch.UPX 18/08/2009 19:19:19 Compacté: PE_Patch.UPX C:\Neverthink\catchme.cfexe 18/08/2009 19:19:19 Compacté: PE_Patch C:\i386\DRIVER.CAB/umaxud32.dll 18/08/2009 19:19:19 Compacté: PE_Patch C:\i386\DRIVER.CAB/umaxu12.dll 18/08/2009 19:19:19 Compacté: PE_Patch C:\i386\DRIVER.CAB/umaxscan.dll 18/08/2009 19:19:19 Compacté: PE_Patch C:\i386\DRIVER.CAB/umaxp60.dll 18/08/2009 19:18:29 Compacté: PE_Patch C:\i386\DRIVER.CAB/sparrow.sys 18/08/2009 19:18:25 Compacté: Edit C:\i386\ZAPOTEC.BM_/zapotec.bmp 18/08/2009 19:18:20 Compacté: PE_Patch C:\i386\WPDUSB.SY_/wpdusb.sys 18/08/2009 19:18:07 Compacté: PE_Patch C:\i386\WANARP.SY_/wanarp.sys 18/08/2009 19:18:07 Compacté: PE_Patch C:\i386\WATCHDOG.SY_/watchdog.sys 18/08/2009 19:18:06 Compacté: PE_Patch C:\i386\WACOMPEN.SY_/wacompen.sys 18/08/2009 19:18:05 Compacté: PE_Patch C:\i386\VOLSNAP.SY_/volsnap.sys 18/08/2009 19:18:05 Compacté: PE_Patch C:\i386\VIDEOPRT.SY_/videoprt.sys 18/08/2009 19:18:05 Compacté: PE_Patch C:\i386\VIAIDE.SY_/viaide.sys 18/08/2009 19:18:05 Compacté: PE_Patch C:\i386\VGA.SY_/vga.sys 18/08/2009 19:18:03 Compacté: PE_Patch C:\i386\USBUHCI.SY_/usbuhci.sys 18/08/2009 19:18:03 Compacté: PE_Patch C:\i386\USBSTOR.SY_/usbstor.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USBPORT.SY_/usbport.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USBHUB.SY_/usbhub.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USBOHCI.SY_/usbohci.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USBEHCI.SY_/usbehci.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USBCCGP.SY_/usbccgp.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USB8023X.SY_/usb8023x.sys 18/08/2009 19:18:02 Compacté: PE_Patch C:\i386\USB8023.SY_/usb8023.sys 18/08/2009 19:18:01 Compacté: PE_Patch C:\i386\UPDATE.SY_/update.sys 18/08/2009 19:17:59 Compacté: PE_Patch C:\i386\UDFS.SY_/udfs.sys 18/08/2009 19:17:57 Compacté: PE_Patch C:\i386\SP2.CAB/wstcodec.sys 18/08/2009 19:17:57 Compacté: PE_Patch C:\i386\SP2.CAB/wmiacpi.sys 18/08/2009 19:17:57 Compacté: PE_Patch C:\i386\SP2.CAB/wceusbsh.sys 18/08/2009 19:17:56 Compacté: PE_Patch C:\i386\SP2.CAB/wacompen.sys 18/08/2009 19:17:56 Compacté: PE_Patch C:\i386\SP2.CAB/viaide.sys 18/08/2009 19:17:56 Compacté: PE_Patch C:\i386\SP2.CAB/viaagp.sys 18/08/2009 19:17:56 Compacté: PE_Patch C:\i386\SP2.CAB/usbvideo.sys 18/08/2009 19:17:56 Compacté: PE_Patch C:\i386\SP2.CAB/usbuhci.sys 18/08/2009 19:17:56 Compacté: Swf2Exe C:\i386\TOURW.EX_/tourw.exe 18/08/2009 19:17:56 Compacté: PE_Patch C:\i386\SP2.CAB/usbstor.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbser.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbscan.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbprint.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbport.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbohci.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbintel.sys 18/08/2009 19:17:55 Compacté: PE_Patch C:\i386\SP2.CAB/usbhub.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/usbehci.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/usbccgp.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/usbaudio.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/usb8023x.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/uagp35.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/tunmp.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/tffsport.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/termdd.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/swenum.sys 18/08/2009 19:17:54 Compacté: PE_Patch C:\i386\SP2.CAB/streamip.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/stream.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/splitter.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/sonydcam.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/sonyait.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/smbclass.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/smbbatt.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/smbali.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\TFFSPORT.SY_/tffsport.sys 18/08/2009 19:17:53 Compacté: PE_Patch C:\i386\SP2.CAB/slip.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/sisagp.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/sfloppy.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\TDTCP.SY_/tdtcp.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/sffp_sd.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\TDPIPE.SY_/tdpipe.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/sffdisk.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\TDI.SY_/tdi.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/serenum.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/sdbus.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/scsiport.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\TCPIP6.SY_/tcpip6.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/sbp2port.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/rocket.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/rndismpx.sys 18/08/2009 19:17:52 Compacté: PE_Patch C:\i386\SP2.CAB/rfcomm.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/redbook.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/rdpdr.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/qic157.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\TAPE.SY_/tape.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/processr.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/ppa3.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/portcls.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/perm3.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/perm2.sys 18/08/2009 19:17:51 Compacté: PE_Patch C:\i386\SP2.CAB/pcmcia.sys 18/08/2009 19:17:50 Compacté: PE_Patch C:\i386\SP2.CAB/pciidex.sys 18/08/2009 19:17:50 Compacté: PE_Patch C:\i386\SP2.CAB/pci.sys 18/08/2009 19:17:50 Compacté: PE_Patch C:\i386\SP2.CAB/parport.sys 18/08/2009 19:17:50 Compacté: PE_Patch C:\i386\SP2.CAB/p3.sys 18/08/2009 19:17:50 Compacté: PE_Patch C:\i386\SP2.CAB/ohci1394.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/nscirda.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/nic1394.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/ndisuio.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/ndisip.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/nabtsfec.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/mutohpen.sys 18/08/2009 19:17:49 Compacté: PE_Patch C:\i386\SP2.CAB/mstee.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mstape.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mssmbios.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mspqm.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mspclock.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mskssrv.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/msircomm.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/msdv.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mpe.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mouclass.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/modem.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\STREAMIP.SY_/streamip.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/mf.sys 18/08/2009 19:17:48 Compacté: PE_Patch C:\i386\SP2.CAB/memstpci.sys 18/08/2009 19:17:47 Compacté: PE_Patch C:\i386\SP2.CAB/ltotape.sys 18/08/2009 19:17:47 Compacté: PE_Patch C:\i386\SP2.CAB/lbrtfdc.sys 18/08/2009 19:17:47 Compacté: PE_Patch C:\i386\SP2.CAB/kmixer.sys 18/08/2009 19:17:47 Compacté: PE_Patch C:\i386\SP2.CAB/kbdhid.sys 18/08/2009 19:17:47 Compacté: PE_Patch C:\i386\SP2.CAB/kbdclass.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/irda.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/irbus.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/intelppm.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/intelide.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/imapi.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/i2omp.sys 18/08/2009 19:17:46 Compacté: PE_Patch C:\i386\SP2.CAB/i2omgmt.sys 18/08/2009 19:17:45 Compacté: PE_Patch C:\i386\SP2.CAB/http.sys 18/08/2009 19:17:45 Compacté: PE_Patch C:\i386\SR.SY_/sr.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/hidparse.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/hidir.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/hidclass.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/hidbth.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/grserial.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/gckernel.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/gameenum.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/gagp30kx.sys 18/08/2009 19:17:44 Compacté: PE_Patch C:\i386\SP2.CAB/flpydisk.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/fdc.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/dxg.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/drmkaud.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/drmk.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/dot4.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/dmusic.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/dlttape.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/disk.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/cwrwdm.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/crusoe.sys 18/08/2009 19:17:43 Compacté: PE_Patch C:\i386\SP2.CAB/cmbatt.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/changer.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SPCMDCON.SYS 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SPARROW.SY_/sparrow.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/cdrom.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/ccdecode.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bthusb.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bthprint.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bthport.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bthpan.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bthmodem.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bthenum.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/bdasup.sys 18/08/2009 19:17:42 Compacté: PE_Patch C:\i386\SP2.CAB/avcstrm.sys 18/08/2009 19:17:41 Compacté: PE_Patch C:\i386\SP2.CAB/avc.sys 18/08/2009 19:17:39 Compacté: PE_Patch C:\i386\SP2.CAB/atapi.sys 18/08/2009 19:17:39 Compacté: PE_Patch C:\i386\SP2.CAB/arp1394.sys 18/08/2009 19:17:39 Compacté: PE_Patch C:\i386\SP2.CAB/amdk7.sys 18/08/2009 19:17:39 Compacté: PE_Patch C:\i386\SP2.CAB/amdk6.sys 18/08/2009 19:17:39 Compacté: PE_Patch C:\i386\SP2.CAB/amdagp.sys 18/08/2009 19:17:38 Compacté: PE_Patch C:\i386\SP2.CAB/alim1541.sys 18/08/2009 19:17:38 Compacté: PE_Patch C:\i386\SP2.CAB/agpcpq.sys 18/08/2009 19:17:38 Compacté: PE_Patch C:\i386\SP2.CAB/agp440.sys 18/08/2009 19:17:38 Compacté: PE_Patch C:\i386\SP2.CAB/acpi.sys 18/08/2009 19:17:37 Compacté: PE_Patch C:\i386\SP2.CAB/61883.sys 18/08/2009 19:17:37 Compacté: PE_Patch C:\i386\SP2.CAB/4mmdat.sys 18/08/2009 19:17:37 Compacté: PE_Patch C:\i386\SLIP.SY_/slip.sys 18/08/2009 19:17:37 Compacté: PE_Patch C:\i386\SP2.CAB/1394bus.sys 18/08/2009 19:17:32 Compacté: Com2Exe C:\i386\SHARE.EX_/share.exe/ExePack 18/08/2009 19:17:32 Compacté: ExePack C:\i386\SHARE.EX_/share.exe 18/08/2009 19:17:32 Compacté: PE_Patch C:\i386\SFLOPPY.SY_/sfloppy.sys 18/08/2009 19:17:32 Compacté: PE_Patch C:\i386\SFFP_SD.SY_/sffp_sd.sys 18/08/2009 19:17:32 Compacté: PE_Patch C:\i386\SFFDISK.SY_/sffdisk.sys 18/08/2009 19:17:31 Compacté: PE_Patch C:\i386\SETUPDD.SY_/setupdd.sys 18/08/2009 19:17:29 Compacté: PE_Patch C:\i386\SERENUM.SY_/serenum.sys 18/08/2009 19:17:28 Compacté: PE_Patch C:\i386\SDBUS.SY_/sdbus.sys 18/08/2009 19:17:28 Compacté: PE_Patch C:\i386\SCSIPORT.SY_/scsiport.sys 18/08/2009 19:17:27 Compacté: PE_Patch C:\i386\SBP2PORT.SY_/sbp2port.sys 18/08/2009 19:17:22 Compacté: PE_Patch C:\i386\RNDISMPX.SY_/rndismpx.sys 18/08/2009 19:17:22 Compacté: PE_Patch C:\i386\RNDISMP.SY_/rndismp.sys 18/08/2009 19:17:22 Compacté: PE_Patch C:\i386\RFCOMM.SY_/rfcomm.sys 18/08/2009 19:17:21 Compacté: PE_Patch C:\i386\RDPWD.SY_/rdpwd.sys 18/08/2009 19:17:20 Compacté: PE_Patch C:\i386\RASPPPOE.SY_/raspppoe.sys 18/08/2009 19:17:19 Compacté: PE_Patch C:\i386\RAMDISK.SY_/ramdisk.sys 18/08/2009 19:17:17 Compacté: PE_Patch C:\i386\PSCHED.SY_/psched.sys 18/08/2009 19:17:06 Compacté: PE_Patch C:\i386\PCMCIA.SY_/pcmcia.sys 18/08/2009 19:17:05 Compacté: PE_Patch C:\i386\PCI.SY_/pci.sys 18/08/2009 19:17:05 Compacté: PE_Patch C:\i386\PCIIDEX.SY_/pciidex.sys 18/08/2009 19:17:03 Compacté: PE_Patch C:\i386\OHCI1394.SY_/ohci1394.sys 18/08/2009 19:17:01 Compacté: PE_Patch C:\i386\NWRDR.SY_/nwrdr.sys 18/08/2009 19:17:01 Compacté: PE_Patch C:\i386\NWLNKIPX.SY_/nwlnkipx.sys 18/08/2009 19:16:58 Compacté: PE_Patch C:\i386\NPFS.SY_/npfs.sys 18/08/2009 19:16:57 Compacté: PE_Patch C:\i386\NMNT.SY_/nmnt.sys 18/08/2009 19:16:56 Compacté: ExePack C:\i386\NLSFUNC.EX_/nlsfunc.exe 18/08/2009 19:16:52 Compacté: PE_Patch C:\i386\NETBIOS.SY_/netbios.sys 18/08/2009 19:16:50 Compacté: PE_Patch C:\i386\MUTOHPEN.SY_/mutohpen.sys 18/08/2009 19:16:34 Compacté: PE_Patch C:\i386\DRIVER.CAB/fxusbase.sys 18/08/2009 19:16:30 Compacté: PE_Patch C:\i386\DRIVER.CAB/fusbbase.sys 18/08/2009 19:16:29 Compacté: PE_Patch C:\i386\DRIVER.CAB/fus2base.sys 18/08/2009 19:16:28 Compacté: PE_Patch C:\i386\MSGPC.SY_/msgpc.sys 18/08/2009 19:16:28 Compacté: PE_Patch C:\i386\MSFS.SY_/msfs.sys 18/08/2009 19:16:27 Compacté: PE_Patch C:\i386\DRIVER.CAB/fpnpbase.sys 18/08/2009 19:16:27 Compacté: PE_Patch C:\i386\DRIVER.CAB/fpcmbase.sys 18/08/2009 19:16:27 Compacté: PE_Patch C:\i386\DRIVER.CAB/fpcibase.sys 18/08/2009 19:16:22 Compacté: PE_Patch C:\i386\MRXDAV.SY_/mrxdav.sys 18/08/2009 19:16:21 Compacté: PE_Patch C:\i386\MQAC.SY_/mqac.sys 18/08/2009 19:16:19 Compacté: PE_Patch C:\i386\MOUNTMGR.SY_/mountmgr.sys 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_SimpleTransaction_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_SimpleTransaction_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_FundTransfer_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Variables_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Variables_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Looping_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Looping_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Includes_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Includes_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Conditional_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Arrays_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Arrays_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_ServerVariables_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_ServerVariables_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Redirect_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_QueryString_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_QueryString_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_PopulateForm_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_PopulateForm_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Pics_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Pics_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Logon_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Logon_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Expire_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Cookie_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_toolbar.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_sampfram.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Update_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_StoredProcedures_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_SimpleQuery_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_SimpleQuery_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_MultiScrolling_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_MultiScrolling_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_LimitRows_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_LimitRows_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_AddDelete_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_AddDelete_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_BrowserCap_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_AdRotator_VBScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_AdRotator_JScript.asp 18/08/2009 19:16:15 Compacté: Edit C:\i386\IIS6.CAB/IIS_Session_VBScript.asp 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_Application_VBScript.asp 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_Application_JScript.asp 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_mkwebsrv.js 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_metabackrest.vbs 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_metabackrest.js 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_metaback.vbs 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_metaback.js 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_logenum.vbs 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_logenum.js 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_inflat.htm1 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_index.htm1 18/08/2009 19:16:14 Compacté: Edit C:\i386\IIS6.CAB/IIS_contents.asp1 18/08/2009 19:16:13 Compacté: Edit C:\i386\IIS6.CAB/IIS_coflat.htm1 18/08/2009 19:16:12 Compacté: Edit C:\i386\IIS6.CAB/IIS_inflat.htm2 18/08/2009 19:16:12 Compacté: Edit C:\i386\IIS6.CAB/IIS_index.htm2 18/08/2009 19:16:12 Compacté: ExePack C:\i386\MEM.EX_/mem.exe 18/08/2009 19:16:12 Compacté: Edit C:\i386\IIS6.CAB/IIS_contents.asp2 18/08/2009 19:16:12 Compacté: Edit C:\i386\IIS6.CAB/IIS_coflat.htm2 18/08/2009 19:16:10 Compacté: Edit C:\i386\IIS6.CAB/IIS_wcservr.htm 18/08/2009 19:16:10 Compacté: Edit C:\i386\IIS6.CAB/IIS_viewdb.asp 18/08/2009 19:16:10 Compacté: Edit C:\i386\IIS6.CAB/IIS_sampform.asp 18/08/2009 19:16:10 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwltop.htm 18/08/2009 19:16:09 Compacté: Edit C:\i386\IIS6.CAB/IIS_iipz_5.htm 18/08/2009 19:16:09 Compacté: Edit C:\i386\IIS6.CAB/IIS_iipz_3.htm 18/08/2009 19:16:07 Compacté: Edit C:\i386\IIS6.CAB/IIS_iicarsc.htm 18/08/2009 19:16:07 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiaudsc.htm 18/08/2009 19:16:01 Compacté: PE_Patch C:\i386\LBRTFDC.SY_/lbrtfdc.sys 18/08/2009 19:16:00 Compacté: PE_Patch C:\i386\KSECDD.SYS 18/08/2009 19:15:58 Compacté: PE_Patch C:\i386\KBDHID.SY_/kbdhid.sys 18/08/2009 19:15:57 Compacté: PE_Patch C:\i386\KBDCLASS.SY_/kbdclass.sys 18/08/2009 19:15:55 Compacté: PE_Patch C:\i386\IRENUM.SY_/irenum.sys 18/08/2009 19:15:55 Compacté: PE_Patch C:\i386\IRBUS.SY_/irbus.sys 18/08/2009 19:15:53 Compacté: Edit C:\i386\IIS6.CAB/IIS_coUA.css 18/08/2009 19:15:53 Compacté: PE_Patch C:\i386\IPNAT.SY_/ipnat.sys 18/08/2009 19:15:53 Compacté: PE_Patch C:\i386\IPINIP.SY_/ipinip.sys 18/08/2009 19:15:53 Compacté: PE_Patch C:\i386\IP6FW.SY_/ip6fw.sys 18/08/2009 19:15:53 Compacté: PE_Patch C:\i386\INTELPPM.SY_/intelppm.sys 18/08/2009 19:15:53 Compacté: PE_Patch C:\i386\INTELIDE.SY_/intelide.sys 18/08/2009 19:15:51 Compacté: PE_Patch C:\i386\IMAPI.SY_/imapi.sys 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwawelc.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwavar.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwascln.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwaref.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwaform.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwadbug.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwadata.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwacont.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwabasi.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiwaabt.htm 18/08/2009 19:15:51 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiaptran.htm 18/08/2009 19:15:50 Compacté: Edit C:\i386\IIS6.CAB/IIS_iiapsess.htm 18/08/2009 19:15:48 Compacté: Edit C:\i386\IIS6.CAB/IIS_AspTut03.htm 18/08/2009 19:15:47 Compacté: Edit C:\i386\IIS6.CAB/IIS_aspguide.htm 18/08/2009 19:15:47 Compacté: PE_Patch C:\i386\I2OMP.SY_/i2omp.sys 18/08/2009 19:15:47 Compacté: PE_Patch C:\i386\I2OMGMT.SY_/i2omgmt.sys 18/08/2009 19:15:46 Compacté: PE_Patch C:\i386\HTTP.SY_/http.sys 18/08/2009 19:15:44 Compacté: PE_Patch C:\i386\HIDPARSE.SY_/hidparse.sys 18/08/2009 19:15:44 Compacté: PE_Patch C:\i386\HIDCLASS.SY_/hidclass.sys 18/08/2009 19:15:44 Compacté: PE_Patch C:\i386\HIDIR.SY_/hidir.sys 18/08/2009 19:15:44 Compacté: PE_Patch C:\i386\HIDBTH.SY_/hidbth.sys 18/08/2009 19:15:37 Compacté: PE_Patch C:\i386\FLTMGR.SY_/fltmgr.sys 18/08/2009 19:15:37 Compacté: PE_Patch C:\i386\FLPYDISK.SY_/flpydisk.sys 18/08/2009 19:15:36 Compacté: PE_Patch C:\i386\FDC.SY_/fdc.sys 18/08/2009 19:15:36 Compacté: Com2Exe C:\i386\FASTOPEN.EX_/fastopen.exe/ExePack 18/08/2009 19:15:36 Compacté: ExePack C:\i386\FASTOPEN.EX_/fastopen.exe 18/08/2009 19:15:35 Compacté: ExePack C:\i386\EXE2BIN.EX_/exe2bin.exe 18/08/2009 19:15:34 Compacté: ExePack C:\i386\EDLIN.EX_/edlin.exe 18/08/2009 19:15:33 Compacté: ExePack C:\i386\EDIT.CO_/edit.com 18/08/2009 19:15:33 Compacté: PE_Patch C:\i386\DXG.SY_/dxg.sys 18/08/2009 19:15:29 Compacté: PE_Patch C:\i386\DMIO.SY_/dmio.sys 18/08/2009 19:15:28 Compacté: PE_Patch C:\i386\DMBOOT.SY_/dmboot.sys 18/08/2009 19:15:28 Compacté: PE_Patch C:\i386\DISKDUMP.SY_/diskdump.sys 18/08/2009 19:15:28 Compacté: PE_Patch C:\i386\DISK.SY_/disk.sys 18/08/2009 19:15:27 Compacté: PE_Patch C:\i386\DRIVER.CAB/b1cbase.sys 18/08/2009 19:15:25 Compacté: ExePack C:\i386\DEBUG.EX_/debug.exe 18/08/2009 19:15:16 Compacté: PE_Patch C:\i386\CDROM.SY_/cdrom.sys 18/08/2009 19:15:15 Compacté: PE_Patch C:\i386\BTHUSB.SY_/bthusb.sys 18/08/2009 19:15:15 Compacté: PE_Patch C:\i386\BTHPRINT.SY_/bthprint.sys 18/08/2009 19:15:15 Compacté: PE_Patch C:\i386\BTHPAN.SY_/bthpan.sys 18/08/2009 19:15:15 Compacté: PE_Patch C:\i386\BTHPORT.SY_/bthport.sys 18/08/2009 19:15:15 Compacté: PE_Patch C:\i386\BTHMODEM.SY_/bthmodem.sys 18/08/2009 19:15:15 Compacté: PE_Patch C:\i386\BTHENUM.SY_/bthenum.sys 18/08/2009 19:15:14 Compacté: PE_Patch C:\i386\BRIDGE.SY_/bridge.sys 18/08/2009 19:15:13 Compacté: PE_Patch C:\i386\ATMLANE.SY_/atmlane.sys 18/08/2009 19:15:13 Compacté: PE_Patch C:\i386\ATMARPC.SY_/atmarpc.sys 18/08/2009 19:15:13 Compacté: PE_Patch C:\i386\ATAPI.SY_/atapi.sys 18/08/2009 19:15:12 Compacté: PE_Patch C:\i386\ASYNCMAC.SY_/asyncmac.sys 18/08/2009 19:15:09 Compacté: PE_Patch C:\i386\ACPI.SY_/acpi.sys 18/08/2009 19:15:09 Compacté: PE_Patch C:\i386\1394BUS.SY_/1394bus.sys 18/08/2009 19:15:07 Compacté: PE_Patch C:\drv\vga4\LVHybrid.sys 18/08/2009 19:15:07 Compacté: PE_Patch C:\drv\VGA3\Driver67\HVR1110.sys 18/08/2009 19:15:03 Compacté: PE_Patch C:\drv\vga0\B_34839\ati2mtag.sy_/ati2mtag.sys 18/08/2009 19:14:45 Compacté: PE_Patch C:\documents and settings\sid\Mes documents\WOW\WoW-2.0.0-frFR-Installer\DirectX\dxnt.cab/stream.sys 18/08/2009 19:13:32 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache(2)\7581313Cd01 18/08/2009 19:13:31 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache(2)\423B3495d01 18/08/2009 19:13:30 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache(2)\08D01F3Bd01 18/08/2009 19:13:29 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\FEC557C5d01 18/08/2009 19:13:28 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\FB3D7956d01 18/08/2009 19:13:28 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\F9D39870d01 18/08/2009 19:13:27 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\F133BDF1d01 18/08/2009 19:13:27 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\EE8777C7d01 18/08/2009 19:13:26 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\EC8813BDd01 18/08/2009 19:13:26 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\E52CDF5Cd01 18/08/2009 19:13:26 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\E212008Dd01 18/08/2009 19:09:00 Compacté: PECompact C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\D8E23C8Dd01/plugins/npietab.dll/PE_Patch.PECompact/PecBundle 18/08/2009 19:08:59 Compacté: PecBundle C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\D8E23C8Dd01/plugins/npietab.dll/PE_Patch.PECompact 18/08/2009 19:08:59 Compacté: PE_Patch.PECompact C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\D8E23C8Dd01/plugins/npietab.dll 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\DB57157Fd01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\D6ABDDB0d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\D1AF5341d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\CAB7A412d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\C926F90Dd01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\C84260E0d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\C76A2A30d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\C66A2A50d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\C3EEEF0Fd01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\BD4E1C93d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\BB3635B3d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\B883B062d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\B7446EC8d01 18/08/2009 19:08:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\B3166CA8d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\B29DC84Ed01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\AA598D62d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\A4B07FB5d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\A3E698F1d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\A3DBC549d01 18/08/2009 19:08:58 Compacté: JSPack C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\A3C898A0d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\A292AFB4d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\A222A001d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\9DD3F4E2d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\9C67364Ad01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\9AE6B974d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\9806E958d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\955B0FCAd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\9284AA28d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\8FC1984Fd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\8BFA332Bd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\8A757BF6d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\850C57BFd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\874EF3C2d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\824B243Fd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\79B618C0d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\78E4A814d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\7312C17Dd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\72EBCAFBd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\6D7B0C81d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\6D56E0ABd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\6AF7910Ad01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\6799B003d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\647499E8d01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\5E7E59AEd01 18/08/2009 19:08:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\5DDBFA85d01 18/08/2009 19:08:57 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\536BCB1Bd01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\4A7B618Fd01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\45842131d01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\40AEF6B6d01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\3EC4E7D3d01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\38B09633d01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\2534FD7Ad01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\26CE5362d01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\213235D2d01 18/08/2009 19:08:56 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\1E4075E1d01 18/08/2009 19:08:55 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\1A9F62F8d01 18/08/2009 19:08:55 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\174BD72Fd01 18/08/2009 19:08:55 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\0B739183d01 18/08/2009 19:08:55 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\Cache\0A4323A0d01 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\smh2009@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:08:35 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn90@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\seanjohn09@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:08:34 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:08:06 Compacté: PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/divx.dll/PE_Patch.PECompact/PecBundle 18/08/2009 19:08:06 Compacté: PecBundle C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/divx.dll/PE_Patch.PECompact 18/08/2009 19:08:06 Compacté: PE_Patch.PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/divx.dll 18/08/2009 19:08:06 Compacté: UPX C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/aac.dll/PE_Patch.UPX 18/08/2009 19:08:06 Compacté: PE_Patch.UPX C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/aac.dll 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf6 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf6 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf6 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf6 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf1 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf1 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf1 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf1 18/08/2009 19:08:05 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf5 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf5 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf5 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf5 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf4 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf4 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf4 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf4 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf2 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf2 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf2 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf2 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf7 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf7 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf7 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf7 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf 18/08/2009 19:08:04 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf 18/08/2009 19:08:03 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf 18/08/2009 19:08:03 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_on.swf3 18/08/2009 19:08:03 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial_off.swf3 18/08/2009 19:08:03 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/tutorial.swf3 18/08/2009 19:08:03 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/local_ad.swf3 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\kalifou66@hotmail.fr\ObjectStore\DeluxeDisplayPictures\uaBMVBrmNas12kluBXmBw4yXKt4=.dt2/0000056236_000000000000000615564.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:08:01 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\hells_angel92@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\de-del66@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:08:00 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\chadia_31@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\byakkou666@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\rXcZb6ekO9S3jB29KleJkBOXYmY=.dt2/knock.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\tn+dOhziBZ+E4zoUS7frcglxoz0=.dt2/love_letter.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\Sgj64GS+QyVyVxkslxY2FFsRARkg=.dt2/heart.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\SrJJm7YJAcA15VowAhBWXri5yLc=.dt2/stars.swf 18/08/2009 19:07:59 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\AzBXDxf+Tcdvcans2TCRnoXh2Fjg=.dt2/guitar_smash.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\Nt2FqWL50Iag4EvPJjVS0IoDBFQ4=.dt2/bow.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\lnHW2s0zHIsgKVjOiirk1ZBZ54g=.dt2/silly_face.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\enMqwlYLN4AvpmaOrIfYLWsVAdA=.dt2/eyeball.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\+8UdQGeB2FwWIYG+mC+vuvUy9zEw=.dt2/notes.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\alxGH2FFbmTzeLEdtRHmv6GBUzdw=.dt2/kiss.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\Winks3\72FjqK0b2FzFkbJWZ+BlMs1OxQprI=.dt2/bouncy_ball.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\DynamicBackgrounds\hyiJu8sDcRCbJhl+Ccy2CjQR8lA=.dt2/mad_scientist.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\DynamicBackgrounds\jdI6F7DFhC2OSW2FJWOBKjulvAds=.dt2/Pixies.swf 18/08/2009 19:07:58 Compacté: Swf2Swc C:\documents and settings\sid\Local Settings\Application Data\Microsoft\Messenger\abdel_du66@hotmail.fr\ObjectStore\DynamicBackgrounds\B3VEl5u5DvNzgIua1+Zd4Uxt2FLs=.dt2/KoiPond.swf 18/08/2009 19:07:56 Compacté: UPX C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/Data1.cab/lame_enc.dll 18/08/2009 19:07:39 Compacté: PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll/PE_Patch.PECompact/PecBundle 18/08/2009 19:07:39 Compacté: PecBundle C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll/PE_Patch.PECompact 18/08/2009 19:07:39 Compacté: PE_Patch.PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll 18/08/2009 19:07:38 Compacté: PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll.0DB8CCE3_10FE_4DA6_A9D0_8FA28447175A/PE_Patch.PECompact/PecBundle 18/08/2009 19:07:38 Compacté: PecBundle C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll.0DB8CCE3_10FE_4DA6_A9D0_8FA28447175A/PE_Patch.PECompact 18/08/2009 19:07:38 Compacté: PE_Patch.PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll.0DB8CCE3_10FE_4DA6_A9D0_8FA28447175A 18/08/2009 19:07:38 Compacté: PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll.03EF3A42_B510_46F6_942D_181CFE7DEE6B/PE_Patch.PECompact/PecBundle 18/08/2009 19:07:38 Compacté: PecBundle C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll.03EF3A42_B510_46F6_942D_181CFE7DEE6B/PE_Patch.PECompact 18/08/2009 19:07:38 Compacté: PE_Patch.PECompact C:\documents and settings\sid\Local Settings\Application Data\Downloaded Installations\{DEE21864-4059-47C5-B476-BC86742D4A4D}\Pinnacle VideoSpin.msi/ISSetup.dll.03EF3A42_B510_46F6_942D_181CFE7DEE6B 18/08/2009 19:06:52 Compacté: PE_Patch C:\documents and settings\sid\bureau\Setup-s\UVS_11_Plus_TBYB_F_main.exe/ISSetupPrerequisites/{B0237259-E5E2-4381-BD14-9D0C62BDB4B1}/WindowsInstaller-KB893803-x86.exe 18/08/2009 19:06:51 Compacté: UPX C:\documents and settings\sid\bureau\Setup-s\UVS_11_Plus_TBYB_F_main.exe/ISSetup.dll 18/08/2009 19:06:45 Compacté: Swf2Swc C:\documents and settings\sid\bureau\Setup-s\UVS_11_Plus_TBYB_F_main.exe/Data1.cab/_1C5C9F53850048519FEB5A008CD6B686 18/08/2009 19:06:09 Non réparés: not-a-virus:AdWare.Win32.Craagle.b C:\documents and settings\sid\bureau\Setup-s\Crack.rar/Craagle.exe/UPX Ignoré par l'utilisateur 18/08/2009 19:06:09 Détectés: not-a-virus:AdWare.Win32.Craagle.b C:\documents and settings\sid\bureau\Setup-s\Crack.rar/Craagle.exe/UPX 18/08/2009 19:06:07 Compacté: UPX C:\documents and settings\sid\bureau\Setup-s\Crack.rar/Craagle.exe 18/08/2009 19:04:59 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:59 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:59 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:59 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:59 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:59 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:59 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:58 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:58 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:58 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:58 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:58 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:58 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:58 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:58 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:58 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:58 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:57 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/#/PE_Patch.UPX 18/08/2009 19:04:57 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/# 18/08/2009 19:04:57 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\WS2Fix.exe/PE_Patch.UPX 18/08/2009 19:04:57 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\WS2Fix.exe 18/08/2009 19:04:57 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\VCCLSID.exe 18/08/2009 19:04:57 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\VACFix.exe/PE_Patch.UPX 18/08/2009 19:04:57 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\VACFix.exe 18/08/2009 19:04:56 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\UIFix.exe 18/08/2009 19:04:56 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\swxcacls.exe 18/08/2009 19:04:56 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\swsc.exe 18/08/2009 19:04:56 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\swreg.exe 18/08/2009 19:04:56 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\SrchSTS.exe 18/08/2009 19:04:53 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\ProxyDisable.exe/PE_Patch.UPX 18/08/2009 19:04:53 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\ProxyDisable.exe 18/08/2009 19:04:53 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\o4Patch.exe/PE_Patch.UPX 18/08/2009 19:04:53 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\o4Patch.exe 18/08/2009 19:04:52 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\IEDFix.exe/PE_Patch.UPX 18/08/2009 19:04:52 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\IEDFix.exe 18/08/2009 19:04:52 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\IEDFix.C.exe/PE_Patch.UPX 18/08/2009 19:04:52 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\IEDFix.C.exe 18/08/2009 19:04:52 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\HostsChk.exe/PE_Patch.UPX 18/08/2009 19:04:52 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\HostsChk.exe 18/08/2009 19:04:51 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\GenericRenosFix.exe/PE_Patch.UPX 18/08/2009 19:04:51 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\GenericRenosFix.exe 18/08/2009 19:04:50 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\Agent.OMZ.Fix.exe/PE_Patch.UPX 18/08/2009 19:04:50 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\Agent.OMZ.Fix.exe 18/08/2009 19:04:49 Compacté: UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\404Fix.exe/PE_Patch.UPX 18/08/2009 19:04:49 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\SmitfraudFix.exe/SmitfraudFix\404Fix.exe 18/08/2009 19:04:30 Mis en quarantaine: HEUR:Trojan.Win32.Generic C:\documents and settings\sid\piw.exe 18/08/2009 19:04:14 Compacté: UPX C:\documents and settings\sid\bureau\HJTInstall.exe/PE_Patch.UPX 18/08/2009 19:04:14 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\HJTInstall.exe 18/08/2009 19:04:07 Compacté: UPX C:\documents and settings\sid\bureau\ATF-Cleaner.exe/PE_Patch.UPX 18/08/2009 19:04:07 Compacté: PE_Patch.UPX C:\documents and settings\sid\bureau\ATF-Cleaner.exe 18/08/2009 19:02:09 Compacté: PECompact C:\documents and settings\sid\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\npietab.dll/PE_Patch.PECompact/PecBundle 18/08/2009 19:02:08 Compacté: PecBundle C:\documents and settings\sid\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\npietab.dll/PE_Patch.PECompact 18/08/2009 19:02:08 Compacté: PE_Patch.PECompact C:\documents and settings\sid\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\npietab.dll 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR61.dat/guitar_smash.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR65.dat/stars.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR63.dat/eyeball.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR5F.dat/kiss.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR5D.dat/bow.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR5B.dat/silly_face.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR57.dat/love_letter.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR59.dat/heart.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR53.dat/notes.swf 18/08/2009 19:01:25 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR51.dat/knock.swf 18/08/2009 19:01:24 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\Winks3\TFR4B.dat/bouncy_ball.swf 18/08/2009 19:01:23 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\DynamicBackgrounds\TFR3E.dat/Pixies.swf 18/08/2009 19:01:22 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\DynamicBackgrounds\TFR33.dat/mad_scientist.swf 18/08/2009 19:01:22 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2810458351\DynamicBackgrounds\TFR1D.dat/KoiPond.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR5F.dat/stars.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR5B.dat/guitar_smash.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR5D.dat/eyeball.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR59.dat/kiss.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR57.dat/bow.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR55.dat/silly_face.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR53.dat/heart.swf 18/08/2009 19:01:21 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR51.dat/love_letter.swf 18/08/2009 19:01:20 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR4D.dat/notes.swf 18/08/2009 19:01:20 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR4B.dat/knock.swf 18/08/2009 19:01:20 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\Winks3\TFR45.dat/bouncy_ball.swf 18/08/2009 19:01:20 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\DynamicBackgrounds\TFR2D.dat/mad_scientist.swf 18/08/2009 19:01:20 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\DynamicBackgrounds\TFR38.dat/Pixies.swf 18/08/2009 19:01:19 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\24649884\DynamicBackgrounds\TFR17.dat/KoiPond.swf 18/08/2009 19:01:19 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR5D.dat/stars.swf 18/08/2009 19:01:19 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR59.dat/guitar_smash.swf 18/08/2009 19:01:19 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR5B.dat/eyeball.swf 18/08/2009 19:01:19 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR57.dat/kiss.swf 18/08/2009 19:01:19 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR51.dat/heart.swf 18/08/2009 19:01:18 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR55.dat/bow.swf 18/08/2009 19:01:18 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR53.dat/silly_face.swf 18/08/2009 19:01:18 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR4F.dat/love_letter.swf 18/08/2009 19:01:18 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR4B.dat/notes.swf 18/08/2009 19:01:18 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR49.dat/knock.swf 18/08/2009 19:01:17 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\Winks3\TFR43.dat/bouncy_ball.swf 18/08/2009 19:01:16 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\DynamicBackgrounds\TFR36.dat/Pixies.swf 18/08/2009 19:01:16 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\DynamicBackgrounds\TFR2B.dat/mad_scientist.swf 18/08/2009 19:01:15 Compacté: Swf2Swc C:\documents and settings\sid\Application Data\Microsoft\MSN Messenger\2409708231\DynamicBackgrounds\TFR15.dat/KoiPond.swf 18/08/2009 18:58:45 Compacté: PE_Patch C:\documents and settings\sid\Application Data\pcouffin.sys 18/08/2009 18:58:44 Compacté: PE_Patch C:\documents and settings\sid\Application Data\ezplay.sys 18/08/2009 18:56:45 Détectés: HEUR:Trojan.Win32.Generic C:\documents and settings\sid\piw.exe 18/08/2009 18:56:06 Compacté: PE_Patch C:\CMPNENTS\MEDIACTR\I386\MEDIACTR.CAB/mhndrv.sys 18/08/2009 18:50:20 Lancement de la tâche Recherche d'outils de dissimulation d'activité: terminée : il y a 27 minutes (événements : 2, objets : 534, durée : 00:10:01) 18/08/2009 19:29:13 Fin de la tâche 18/08/2009 19:19:08 Lancement de la tâche Au faite je n'ai pas supprimer combofix et quoobox, dois-je le faire ? Merci encore. -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
ah désolé, tiens celui là est complet. Je sais pas si le problème est totalement réglé mais en tout cas mon PC à l'air d'aller mieux Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:40:54, on 18/08/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16876) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\ehome\ehtray.exe C:\WINDOWS\RTHDCPL.EXE C:\Acer\Empowering Technology\eRecovery\eRAgent.exe c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Fichiers communs\Talkway\vmtalk.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\WINDOWS\system32\fus.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\eHome\ehmsas.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [skyTel] SkyTel.EXE O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [iMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe O4 - HKLM\..\Run: [vmtalk] C:\Program Files\Fichiers communs\Talkway\vmtalk.exe O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [fus] C:\WINDOWS\system32\fus.exe \u O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\sid\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by124w.bay124.mail.live.com/mail/re...es/MsnPUpld.cab O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/fr/fr/importer/ImageUploader4.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AST Service (astcc) - Unknown owner - C:\WINDOWS\system32\AstSrv.exe (file missing) O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Cacheman Service (CachemanService) - Unknown owner - C:\Program Files\Cacheman\CachemanServ.exe (file missing) O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe -- End of file - 9568 bytes -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
J'ai du nouveau J'ai réussi à installer MBAM et j'ai suivi la procédure que tu m'a donné voila le résultat : Malwarebytes' Anti-Malware 1.40 Version de la base de données: 2646 Windows 5.1.2600 Service Pack 3 18/08/2009 11:46:51 mbam-log-2009-08-18 (11-46-51).txt Type de recherche: Examen complet (C:\|D:\|) Eléments examinés: 180081 Temps écoulé: 35 minute(s), 34 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 7 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\System Volume Information\_restore{54887473-E0E8-4E40-8CB4-34743021C726}\RP745\A0519752.dll (Trojan.Alureon) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{54887473-E0E8-4E40-8CB4-34743021C726}\RP745\A0519781.exe (Backdoor.Tofsee) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{54887473-E0E8-4E40-8CB4-34743021C726}\RP745\A0519789.dll (Hijack.LSP) -> Quarantined and deleted successfully. C:\Qoobox\Quarantine\C\Documents and Settings\sid\xncn.exe.vir (Backdoor.Tofsee) -> Quarantined and deleted successfully. C:\Qoobox\Quarantine\C\WINDOWS\system32\6304484.dll.vir (Hijack.LSP) -> Quarantined and deleted successfully. C:\Qoobox\Quarantine\C\WINDOWS\system32\ESQULvprtenxjmphgayrjbpvwpvrinusdyvot.dll.vir (Trojan.Alureon) -> Quarantined and deleted successfully. C:\WINDOWS\Tasks\{7B02EF0B-A410-4938-8480-9BA26420A627}.job (Trojan.Downloader) -> Quarantined and deleted successfully. J'ai ensuite fait un nouveau log Hijack, le voilà : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 11:57:00, on 18/08/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16876) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\ehome\ehtray.exe C:\WINDOWS\RTHDCPL.EXE C:\Acer\Empowering Technology\eRecovery\eRAgent.exe c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Fichiers communs\Talkway\vmtalk.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\WINDOWS\system32\svchost.exe Alors qu'est-ce que tu en dis ?? -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
Bonjour , J'ai le log combofix, le voilà : ComboFix 09-08-10.06 - sid 18/08/2009 10:41.3.2 - NTFSx86 Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.383.124 [GMT 2:00] Running from: c:\documents and settings\sid\Bureau\Neverthink.exe WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !! . ADS - WINDOWS: deleted 0 bytes in 1 streams. ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\documents and settings\sid\Application Data\BITS c:\documents and settings\sid\Application Data\BITS\BITS.ini c:\documents and settings\sid\Application Data\BITS\UPnP.ini c:\documents and settings\sid\Application Data\inst.exe c:\documents and settings\sid\xncn.exe c:\program files\FlashGet Network c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose.log c:\program files\FlashGet Network\FlashGet universal\fgoption.ini c:\program files\FlashGet Network\FlashGet universal\P2PCfg.ini c:\program files\FlashGet Network\FlashGet universal\p2spmgr.ini c:\program files\FlashGet Network\FlashGet universal\p4spmgr.ini c:\program files\FlashGet Network\FlashGet universal\Profiles\config.dat c:\program files\FlashGet Network\FlashGet universal\Profiles\tasks.dat c:\program files\FlashGet Network\FlashGet universal\transaction.log c:\windows\2afbd66b-251d-4389-8ddb-6f8a3f253f1f.ocx c:\windows\dat.txt c:\windows\kb913800.exe c:\windows\system32\404Fix.exe c:\windows\system32\6304484.dll c:\windows\system32\6ffdbcaf-f6c1-42d3-a4a9-c7957224a70b.dll c:\windows\system32\Agent.OMZ.Fix.exe c:\windows\system32\drivers\ESQULxnxdlsepkmlkypawujgvimktndpulhme.sys c:\windows\system32\dumphive.exe c:\windows\system32\ESQULgfnlskbgoarndxythtabosdebdprfaqe.dll c:\windows\system32\ESQULvprtenxjmphgayrjbpvwpvrinusdyvot.dll c:\windows\system32\IEDFix.C.exe c:\windows\system32\IEDFix.exe c:\windows\system32\kr_done1 c:\windows\system32\o4Patch.exe c:\windows\system32\Process.exe c:\windows\system32\secupdat.dat c:\windows\system32\SrchSTS.exe c:\windows\system32\tmp.reg c:\windows\system32\VACFix.exe c:\windows\system32\VCCLSID.exe c:\windows\system32\WS2Fix.exe Infected copy of c:\windows\system32\drivers\beep.sys was found and disinfected Restored copy from - c:\windows\system32\dllcache\beep.sys . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Service_ESQULserv.sys -------\Legacy_ESQULserv.sys -------\Service_ESQULserv.sys ((((((((((((((((((((((((( Files Created from 2009-07-18 to 2009-08-18 ))))))))))))))))))))))))))))))) . 2009-08-17 08:56 . 2009-08-17 08:56 -------- d-----w- C:\96f0a358d212a26979432aad28b1da 2009-08-17 08:31 . 2009-08-17 08:32 -------- d-----w- c:\documents and settings\sid\Local Settings\Application Data\Temp 2009-08-16 10:26 . 2009-08-16 10:25 27648 ---h--w- c:\documents and settings\sid\piw.exe 2009-08-16 10:26 . 2009-08-16 10:25 27648 ----a-w- c:\windows\system32\fus.exe 2009-08-15 13:27 . 2009-08-15 13:27 -------- d-----w- c:\documents and settings\sid\Application Data\Megaupload 2009-08-14 19:18 . 2009-08-14 19:18 152576 ----a-w- c:\documents and settings\sid\Application Data\Sun\Java\jre1.6.0_15\lzma.dll 2009-08-13 06:53 . 2009-07-10 13:27 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll 2009-08-08 20:18 . 2009-08-08 20:36 -------- d-----w- c:\windows\SxsCaPendDel 2009-08-08 19:03 . 2009-08-09 17:40 -------- d-----w- c:\documents and settings\sid\Application Data\Ulead Systems 2009-08-08 18:24 . 2009-08-08 18:24 -------- d-----w- c:\program files\Fichiers communs\InterVideo 2009-08-08 18:22 . 2009-08-08 18:22 -------- d-----w- c:\program files\Windows Media Components 2009-08-08 18:21 . 2009-08-16 12:49 -------- d-----w- c:\docume~1\ALLUSE~1\APPLIC~1\Ulead Systems 2009-08-08 17:32 . 2009-08-08 17:32 -------- d-----w- c:\program files\AIST 2009-08-08 17:20 . 2009-08-08 17:22 86016 ----a-w- c:\windows\system32\OpenAL32.dll 2009-08-08 17:20 . 2009-08-08 17:22 262144 ----a-w- c:\windows\system32\wrap_oal.dll 2009-08-04 07:35 . 2009-08-04 07:35 -------- d-sh--w- C:\found.000 2009-08-03 17:46 . 2009-08-08 17:29 -------- d-----w- c:\program files\Pinnacle 2009-08-03 17:32 . 2009-08-03 17:33 -------- d-----w- c:\documents and settings\sid\Application Data\Download Manager 2009-08-03 17:03 . 2009-08-03 17:03 -------- d-----w- c:\docume~1\ALLUSE~1\APPLIC~1\Pinnacle 2009-08-02 08:35 . 2009-08-02 13:56 -------- d-----w- c:\documents and settings\sid\Application Data\Winamp 2009-08-02 08:35 . 2009-08-02 08:36 -------- d-----w- c:\program files\Winamp . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-08-18 08:27 . 2007-05-10 18:49 -------- d-----w- c:\program files\Alwil Software 2009-08-17 09:11 . 2006-09-08 11:31 -------- d--h--w- c:\program files\InstallShield Installation Information 2009-08-17 09:09 . 2007-08-27 18:01 -------- d-----w- c:\program files\CachemanXP 2009-08-16 12:46 . 2007-08-28 08:36 -------- d-----w- c:\program files\Cacheman 2009-08-16 08:44 . 2007-01-16 20:58 95520 -c--a-w- c:\windows\system32\GDIPFONTCACHEV1.DAT 2009-08-15 09:54 . 2009-03-18 14:02 -------- d-----w- c:\program files\VDOWNLOADER 2009-08-14 19:19 . 2007-01-16 17:10 -------- d-----w- c:\program files\Java 2009-08-08 20:49 . 2007-02-16 14:03 -------- d-----w- c:\documents and settings\sid\Application Data\BitTorrent 2009-08-08 20:25 . 2006-09-08 11:17 85396 ----a-w- c:\windows\system32\perfc00C.dat 2009-08-08 20:25 . 2006-09-08 11:17 511874 ----a-w- c:\windows\system32\perfh00C.dat 2009-08-05 09:00 . 2004-08-10 20:00 205312 ----a-w- c:\windows\system32\mswebdvd.dll 2009-08-03 09:57 . 2007-08-22 09:27 -------- d-----w- c:\program files\DivX 2009-08-02 08:11 . 2009-06-15 18:56 -------- d-----w- c:\program files\Bodom-Child - RaBBi 2009-07-25 03:23 . 2009-02-19 09:36 411368 ----a-w- c:\windows\system32\deploytk.dll 2009-07-21 11:00 . 2009-08-15 10:07 130920 ----a-w- c:\windows\Fonts\AngelicWar.otf 2009-07-21 10:48 . 2009-08-15 10:08 130252 ----a-w- c:\windows\Fonts\AngelicWar.ttf 2009-07-17 19:03 . 2004-08-10 20:00 58880 ----a-w- c:\windows\system32\atl.dll 2009-07-13 21:43 . 2004-08-10 20:00 286208 ----a-w- c:\windows\system32\wmpdxm.dll 2009-07-02 17:17 . 2009-07-02 17:17 -------- d-----w- c:\program files\LETMIN 2009-06-29 15:57 . 2006-03-04 04:00 827392 ----a-w- c:\windows\system32\wininet.dll 2009-06-29 15:57 . 2004-08-10 20:00 78336 ----a-w- c:\windows\system32\ieencode.dll 2009-06-29 15:57 . 2004-08-10 20:00 17408 ------w- c:\windows\system32\corpol.dll 2009-06-28 17:01 . 2009-03-10 19:18 -------- d-----w- c:\program files\IVCsoft 2009-06-25 08:26 . 2004-10-28 01:24 736768 ----a-w- c:\windows\system32\lsasrv.dll 2009-06-25 08:26 . 2004-08-10 20:00 56832 ----a-w- c:\windows\system32\secur32.dll 2009-06-25 08:26 . 2004-08-10 20:00 54272 ----a-w- c:\windows\system32\wdigest.dll 2009-06-25 08:26 . 2004-08-10 20:00 147456 ----a-w- c:\windows\system32\schannel.dll 2009-06-25 08:26 . 2004-08-10 20:00 136192 ----a-w- c:\windows\system32\msv1_0.dll 2009-06-25 08:26 . 2005-06-15 17:50 301568 ----a-w- c:\windows\system32\kerberos.dll 2009-06-24 11:18 . 2004-08-10 20:00 92928 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2009-06-16 14:40 . 2005-10-17 21:21 81920 ----a-w- c:\windows\system32\fontsub.dll 2009-06-16 14:40 . 2005-10-17 21:21 119808 ----a-w- c:\windows\system32\t2embed.dll 2009-06-15 10:44 . 2005-05-11 02:30 78848 ----a-w- c:\windows\system32\telnet.exe 2009-06-15 10:44 . 2004-08-10 20:00 82944 ----a-w- c:\windows\system32\tlntsess.exe 2009-06-10 14:14 . 2004-08-10 20:00 85504 ----a-w- c:\windows\system32\avifil32.dll 2009-06-10 07:21 . 2004-08-10 20:00 2066432 ----a-w- c:\windows\system32\mstscax.dll 2009-06-10 06:15 . 2004-08-10 20:00 132096 ----a-w- c:\windows\system32\wkssvc.dll 2009-06-03 19:10 . 2005-08-30 04:16 1297408 ----a-w- c:\windows\system32\quartz.dll 2009-05-29 19:05 . 2008-06-04 18:41 1 ----a-w- c:\documents and settings\sid\Application Data\OpenOffice.org2\user\uno_packages\cache\stamp.sys . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-06 68856] "Google Update"="c:\documents and settings\sid\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2008-09-02 133104] "MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "LaunchApp"="Alaunch" [X] "ehTray"="c:\windows\ehome\ehtray.exe" [2005-09-29 67584] "ntiMUI"="c:\program files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe" [2005-05-11 45056] "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-10 208952] "IMEKRMIG6.1"="c:\windows\ime\imkr6_1\IMEKRMIG.EXE" [2004-08-10 44032] "MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-10 59392] "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-10 455168] "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-10 455168] "eRecoveryService"="c:\acer\Empowering Technology\eRecovery\eRAgent.exe" [2006-06-01 413696] "vmtalk"="c:\program files\Fichiers communs\Talkway\vmtalk.exe" [2003-07-24 61440] "SSBkgdUpdate"="c:\program files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648] "PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393] "IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960] "BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592] "SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152] "ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440] "BJCFD"="c:\program files\BroadJump\Client Foundation\CFD.exe" [2003-01-27 376912] "TkBellExe"="c:\program files\Fichiers communs\Real\Update_OB\realsched.exe" [2007-09-30 185632] "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-09-06 413696] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-10-01 289576] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-07-25 149280] "fus"="c:\windows\system32\fus.exe" [2009-08-16 27648] "RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2006-06-01 16208384] "SkyTel"="SkyTel.EXE" - c:\windows\SkyTel.exe [2006-05-16 2879488] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] c:\docume~1\ALLUSE~1\MENUDM~1\PROGRA~1\DMARRA~1\ Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-9-23 29696] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\beep.sys] @="beep" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "SharedAccess"=2 (0x2) "UleadBurningHelper"=2 (0x2) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "c:\\Program Files\\LimeWire\\LimeWire.exe"= "c:\\WINDOWS\\system32\\PnkBstrA.exe"= "c:\\WINDOWS\\system32\\PnkBstrB.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Bonjour\\mDNSResponder.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "c:\\Program Files\\EA GAMES\\Battlefield 1942\\BF1942.exe"= "c:\\Documents and Settings\\sid\\piw.exe"= "c:\\WINDOWS\\system32\\fus.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "16324:TCP"= 16324:TCP:BitComet 16324 TCP "16324:UDP"= 16324:UDP:BitComet 16324 UDP R3 tenCapture;tenCapture;c:\windows\system32\drivers\tenCapture.sys [21/04/2007 16:15 9344] R3 wsvad_driver;WS Audio Device;c:\windows\system32\drivers\VirtualAudio.sys [29/06/2009 19:27 16896] S2 CachemanService;Cacheman Service;c:\program files\Cacheman\CachemanServ.exe --> c:\program files\Cacheman\CachemanServ.exe [?] S3 CAM1690;USB 2.0 Compliance JPEG Video Camera;c:\windows\system32\drivers\cam1690.sys [05/01/2007 13:45 123264] S3 PentaxUsb;Pentax Digital Camera on USB;c:\windows\system32\drivers\CoachUsb.sys [16/02/2007 12:18 46944] S3 PentaxVc;Pentax Video Capture;c:\windows\system32\drivers\CoachVc.sys [16/02/2007 12:18 44256] S3 PsSdk31;PsSdk31;c:\windows\system32\drivers\pssdk31.drv [12/02/2009 20:07 30272] S3 PsSdkLBF;PsSdkLBF;c:\windows\system32\drivers\pssdklbf.drv [12/02/2009 20:07 37440] . . ------- Supplementary Scan ------- . uInternet Connection Wizard,ShellNext = iexplore uInternet Settings,ProxyOverride = 127.0.0.1;*.local IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab FF - ProfilePath - c:\docume~1\sid\APPLIC~1\Mozilla\Firefox\Profiles\rjfb4qyv.default\ FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q= FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://fr.start2.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:fr:official FF - prefs.js: keyword.URL - FF - plugin: c:\documents and settings\sid\Application Data\Mozilla\Firefox\Profiles\rjfb4qyv.default\extensions\OberonGameHost@OberonGames.com\platform\WINNT_x86-msvc\plugins\npOberonGameHost.dll FF - plugin: c:\documents and settings\sid\Local Settings\Application Data\Google\Update\1.2.183.7\npGoogleOneClick8.dll FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll ---- FIREFOX POLICIES ---- FF - user.js: yahoo.homepage.dontask - true. ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-08-18 10:50 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************** [HKEY_LOCAL_MACHINE\System\ControlSet003\Services\PsSdk31] "ImagePath"="\??\c:\windows\system32\Drivers\pssdk31.drv" [HKEY_LOCAL_MACHINE\System\ControlSet003\Services\PsSdkLBF] "ImagePath"="\??\c:\windows\system32\Drivers\pssdklbf.drv" . --------------------- LOCKED REGISTRY KEYS --------------------- [HKEY_USERS\S-1-5-21-1008256419-442331097-375387029-1007\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*] "??"=hex:6d,1c,07,96,98,4e,40,7e,cf,c7,a2,ff,94,37,09,ea,f6,17,05,c8,b1,72,ce, 58,d6,0e,c0,dc,92,6e,e1,8d,9e,ed,aa,a6,25,6e,ee,a8,f8,f1,1d,af,73,ee,d4,e1,\ "??"=hex:ec,7f,62,96,57,2c,d6,08,cc,a5,1f,55,b4,c4,7c,48 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "cd042efbbd7f7af1647644e76e06692b"=hex:e2,63,26,f1,3f,c8,ff,68,78,f2,86,b7,32, 19,b8,87,e2,63,26,f1,3f,c8,ff,68,a2,91,24,0b,e5,e5,0e,f5,e2,63,26,f1,3f,c8,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "bca643cdc5c2726b20d2ecedcc62c59b"=hex:6a,9c,d6,61,af,45,84,18,00,c1,31,c6,92, 2f,17,bc,6a,9c,d6,61,af,45,84,18,89,90,65,51,3e,de,6e,83,6a,9c,d6,61,af,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2c81e34222e8052573023a60d06dd016"=hex:7a,45,05,fd,91,e8,6f,31,f4,f6,88,91,6d, 29,08,e3,ff,7c,85,e0,43,d4,0e,fe,78,39,e0,e3,5a,a1,6d,56,ff,7c,85,e0,43,d4,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "2582ae41fb52324423be06337561aa48"=hex:3e,1e,9e,e0,57,5a,93,61,9f,15,5f,1d,98, 20,e2,90,86,8c,21,01,be,91,eb,e7,1d,69,37,4d,53,26,81,00,86,8c,21,01,be,91,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "caaeda5fd7a9ed7697d9686d4b818472"=hex:cd,44,cd,b9,a6,33,6c,cd,7a,a9,84,c2,21, af,e7,65,f5,1d,4d,73,a8,13,5c,05,93,55,79,da,4a,4d,80,22,f5,1d,4d,73,a8,13,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "a4a1bcf2cc2b8bc3716b74b2b4522f5d"=hex:df,20,58,62,78,6b,cf,c8,09,c0,96,f2,66, ce,d2,0a,df,20,58,62,78,6b,cf,c8,9d,08,49,22,66,24,a6,eb,df,20,58,62,78,6b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "4d370831d2c43cd13623e232fed27b7b"=hex:fb,a7,78,e6,12,2f,9a,ea,2e,3a,8f,90,e6, 08,00,85,fb,a7,78,e6,12,2f,9a,ea,08,b0,30,d4,2a,d6,71,c8,fb,a7,78,e6,12,2f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1d68fe701cdea33e477eb204b76f993d"=hex:83,6c,56,8b,a0,85,96,ab,3e,c9,9b,f4,1c, 4b,67,2d,01,3a,48,fc,e8,04,4a,f1,9a,81,61,d2,e3,de,0e,16,01,3a,48,fc,e8,04,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "1fac81b91d8e3c5aa4b0a51804d844a3"=hex:51,fa,6e,91,28,9e,14,cc,6c,e6,7e,95,8f, 00,b1,19,f6,0f,4e,58,98,5b,89,c9,5d,70,19,78,e1,ad,77,b0,f6,0f,4e,58,98,5b,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "f5f62a6129303efb32fbe080bb27835b"=hex:b1,cd,45,5a,a8,c4,f8,b9,ba,29,63,2d,db, ca,e3,af,3d,ce,ea,26,2d,45,aa,78,f0,fd,07,ae,9b,e5,09,91,3d,ce,ea,26,2d,45,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "fd4e2e1a3940b94dceb5a6a021f2e3c6"=hex:f8,31,0f,a9,5f,a0,ec,fb,b9,4a,cf,18,4b, 1d,a9,77,2a,b7,cc,b5,b9,7f,41,e7,12,d4,2b,2e,f1,e5,6a,f2,2a,b7,cc,b5,b9,7f,\ [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32*] "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" "8a8aec57dd6508a385616fbc86791ec2"=hex:6c,43,2d,1e,aa,22,2f,9c,e3,b7,f0,e7,a1, 18,0a,72,6c,43,2d,1e,aa,22,2f,9c,a7,04,ec,b1,27,bd,02,c0,6c,43,2d,1e,aa,22,\ . --------------------- DLLs Loaded Under Running Processes --------------------- - - - - - - - > 'winlogon.exe'(936) c:\windows\system32\Ati2evxx.dll - - - - - - - > 'explorer.exe'(2212) c:\windows\system32\TWVMHK.DLL c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll c:\windows\system32\eappprxy.dll . ------------------------ Other Running Processes ------------------------ . c:\windows\system32\ati2evxx.exe c:\windows\system32\ati2evxx.exe c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\program files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe c:\windows\ehome\ehrecvr.exe c:\windows\ehome\ehSched.exe c:\program files\Java\jre6\bin\jqs.exe c:\program files\Fichiers communs\LightScribe\LSSrvc.exe c:\windows\system32\PnkBstrA.exe c:\windows\ehome\mcrdsvc.exe c:\windows\ehome\ehmsas.exe c:\windows\system32\wscntfy.exe c:\program files\iPod\bin\iPodService.exe c:\windows\system32\dllhost.exe . ************************************************************************** . Completion time: 2009-08-18 10:57 - machine was rebooted ComboFix-quarantined-files.txt 2009-08-18 08:57 Pre-Run: 17 227 677 696 octets libres Post-Run: 17 121 697 792 octets libres Current=3 Default=3 Failed=1 LastKnownGood=4 Sets=1,2,3,4 321 --- E O F --- 2009-08-18 06:32 -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
Merci pour le mal que tu donnes . J'ai essayer de lancer l'option 5 en mode sans échec comme tu me l'a suggéré mais le logiciel me dit qu'elle ne fonctionne qu'en mode normal et c'est ce que j'ai fait, voilà le rapport : SmitFraudFix v2.423 Rapport fait à 21:56:27,28, 17/08/2009 Executé à partir de C:\Documents and Settings\sid\Bureau\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Le type du système de fichiers est NTFS Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» DNS Avant Fix Description: Marvell Yukon 88E8056 PCI-E Gigabit Ethernet Controller - Miniport d'ordonnancement de paquets DNS Server Search Order: 192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS1\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 »»»»»»»»»»»»»»»»»»»»»»»» DNS Après Fix Description: Marvell Yukon 88E8056 PCI-E Gigabit Ethernet Controller - Miniport d'ordonnancement de paquets DNS Server Search Order: 192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS1\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 Le problème persiste t-il ?? -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
Arf! MalwareBytes refuse toujours de s'ouvrir -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
Et voilà, je pense que j'ai fait tout ça correctement Rapport de l'étape 1 : SmitFraudFix v2.423 Rapport fait à 20:03:03,85, 17/08/2009 Executé à partir de C:\Documents and Settings\sid\Bureau\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Le type du système de fichiers est NTFS Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» Process C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\Documents and Settings\sid\piw.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\mspaint.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\WINDOWS\ehome\ehtray.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\eHome\ehRecvr.exe C:\Program Files\Fichiers communs\Talkway\vmtalk.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\iTunes\iTunesHelper.exe c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\eHome\ehmsas.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Windows NT\Accessoires\wordpad.exe C:\Program Files\ScanSoft\PaperPort\PaprPort.exe C:\Program Files\ScanSoft\PaperPort\pplinks.exe C:\Program Files\ScanSoft\PaperPort\ppscanmg.exe C:\Program Files\ScanSoft\PaperPort\ppprint.exe C:\WINDOWS\system32\cmd.exe »»»»»»»»»»»»»»»»»»»»»»»» hosts »»»»»»»»»»»»»»»»»»»»»»»» C:\ »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32 »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\sid »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\sid\LOCALS~1\Temp »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\sid\Application Data »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\sid\Favoris »»»»»»»»»»»»»»»»»»»»»»»» Bureau »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="Ma page d'accueil" »»»»»»»»»»»»»»»»»»»»»»»» o4Patch !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! o4Patch Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» IEDFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! IEDFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! Agent.OMZ.Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» VACFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! VACFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» 404Fix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! 404Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] »»»»»»»»»»»»»»»»»»»»»»»» Winlogon !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] »»»»»»»»»»»»»»»»»»»»»»»» RK [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] »»»»»»»»»»»»»»»»»»»»»»»» DNS Votre ordinateur est certainement victime d'un détournement de DNS: 85.255.x.x détecté ! Description: Marvell Yukon 88E8056 PCI-E Gigabit Ethernet Controller - Miniport d'ordonnancement de paquets DNS Server Search Order: 85.255.112.10 DNS Server Search Order: 85.255.112.133 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll »»»»»»»»»»»»»»»»»»»»»»»» Fin Rapport de l'étape 2 : SmitFraudFix v2.423 Rapport fait à 20:10:13,84, 17/08/2009 Executé à partir de C:\Documents and Settings\sid\Bureau\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Le type du système de fichiers est NTFS Fix executé en mode sans echec »»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Arret des processus »»»»»»»»»»»»»»»»»»»»»»»» hosts 127.0.0.1 localhost 204.16.252.108 L2authd.lineage2.com 204.16.252.108 L2testauthd.lineage2.com 88.191.54.5 nprotect.lineage2.com 88.191.54.5 l2authd.lineage2.com »»»»»»»»»»»»»»»»»»»»»»»» VACFix VACFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix S!Ri's WS2Fix: LSP not Found. »»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix GenericRenosFix by S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés »»»»»»»»»»»»»»»»»»»»»»»» IEDFix IEDFix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix Agent.OMZ.Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» 404Fix 404Fix Credits: Malware Analysis & Diagnostic Code: S!Ri »»»»»»»»»»»»»»»»»»»»»»»» RK »»»»»»»»»»»»»»»»»»»»»»»» DNS HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 »»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! »»»»»»»»»»»»»»»»»»»»»»»» RK.2 »»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre Nettoyage terminé. »»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix !!!Attention, les clés qui suivent ne sont pas forcément infectées!!! SrchSTS.exe by S!Ri Search SharedTaskScheduler's .dll »»»»»»»»»»»»»»»»»»»»»»»» Fin Rapport de l'étape 3 : SmitFraudFix v2.423 Rapport fait à 20:26:16,82, 17/08/2009 Executé à partir de C:\Documents and Settings\sid\Bureau\SmitfraudFix OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT Le type du système de fichiers est NTFS Fix executé en mode normal »»»»»»»»»»»»»»»»»»»»»»»» DNS Avant Fix Votre ordinateur est certainement victime d'un détournement de DNS: 85.255.x.x détecté ! Description: Marvell Yukon 88E8056 PCI-E Gigabit Ethernet Controller - Miniport d'ordonnancement de paquets DNS Server Search Order: 85.255.112.10 DNS Server Search Order: 85.255.112.133 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=10.0.0.138 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=85.255.112.10,85.255.112.133 »»»»»»»»»»»»»»»»»»»»»»»» DNS Après Fix Log Hijackthis : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20:30:59, on 17/08/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16876) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\Documents and Settings\sid\piw.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe C:\WINDOWS\eHome\ehRecvr.exe C:\Program Files\Java\jre6\bin\jqs.exe c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\ehome\ehtray.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\eHome\ehmsas.exe C:\Program Files\Fichiers communs\Talkway\vmtalk.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Documents and Settings\sid\piw.exe \s,C:\Documents and Settings\sid\xncn.exe \s O1 - Hosts: 204.16.252.108 L2authd.lineage2.com O1 - Hosts: 204.16.252.108 L2testauthd.lineage2.com O1 - Hosts: 88.191.54.5 nprotect.lineage2.com O1 - Hosts: 88.191.54.5 l2authd.lineage2.com O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [skyTel] SkyTel.EXE O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [iMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1 O4 - HKLM\..\Run: [vmtalk] C:\Program Files\Fichiers communs\Talkway\vmtalk.exe O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [fus] C:\WINDOWS\system32\fus.exe \u O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\sid\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\6304484.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\6304484.dll O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by124w.bay124.mail.live.com/mail/re...es/MsnPUpld.cab O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/fr/fr/importer/ImageUploader4.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O17 - HKLM\System\CS3\Services\Tcpip\Parameters: NameServer = 85.255.112.10,85.255.112.133 O17 - HKLM\System\CS4\Services\Tcpip\Parameters: NameServer = 85.255.112.10,85.255.112.133 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.10,85.255.112.133 O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AST Service (astcc) - Unknown owner - C:\WINDOWS\system32\AstSrv.exe (file missing) O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Cacheman Service (CachemanService) - Unknown owner - C:\Program Files\Cacheman\CachemanServ.exe (file missing) O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe -- End of file - 10516 bytes Voilà, merci d'avance ! -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
J'ai téléchargé et installé Malwarebytes' Anti-Malware (MBAM) [D'ailleurs tes liens sont morts ^^]mais il ne veut pas s'ouvrir. Que faire -
Problème Malware --> "Main exoclick"
Neverthink a répondu à un(e) sujet de Neverthink dans Analyses et éradication malwares
Voilà c'est fait et merci pour avoir répondu si vite! Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:05:59, on 17/08/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16876) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\Documents and Settings\sid\piw.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\mspaint.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\WINDOWS\ehome\ehtray.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\eHome\ehRecvr.exe C:\Program Files\Fichiers communs\Talkway\vmtalk.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\iTunes\iTunesHelper.exe c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\eHome\ehmsas.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.ask.com?o=14978&l=dis R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Documents and Settings\sid\piw.exe \s,C:\Documents and Settings\sid\xncn.exe \s O1 - Hosts: 204.16.252.108 L2authd.lineage2.com O1 - Hosts: 204.16.252.108 L2testauthd.lineage2.com O1 - Hosts: 88.191.54.5 nprotect.lineage2.com O1 - Hosts: 88.191.54.5 l2authd.lineage2.com O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [skyTel] SkyTel.EXE O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [iMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\eRAgent.exe O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1 O4 - HKLM\..\Run: [vmtalk] C:\Program Files\Fichiers communs\Talkway\vmtalk.exe O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [fus] C:\WINDOWS\system32\fus.exe \u O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\sid\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\6304484.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\6304484.dll O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/Facebo...toUploader5.cab O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by124w.bay124.mail.live.com/mail/re...es/MsnPUpld.cab O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/fr/fr/importer/ImageUploader4.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{75C4A496-D5EE-459E-B911-D43BBC04AE45}: NameServer = 85.255.112.10,85.255.112.133 O17 - HKLM\System\CS3\Services\Tcpip\Parameters: NameServer = 85.255.112.10,85.255.112.133 O17 - HKLM\System\CS4\Services\Tcpip\Parameters: NameServer = 85.255.112.10,85.255.112.133 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.10,85.255.112.133 O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O21 - SSODL: xcvwer - {0DF172AC-D0BC-4185-B0F8-B3A15A9E2AE3} - (no file) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AST Service (astcc) - Unknown owner - C:\WINDOWS\system32\AstSrv.exe (file missing) O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Cacheman Service (CachemanService) - Unknown owner - C:\Program Files\Cacheman\CachemanServ.exe (file missing) O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe -- End of file - 11316 bytes -
Problème Malware --> "Main exoclick"
Neverthink a posté un sujet dans Analyses et éradication malwares
Bonjour à tous, Depuis quelques jours, lorsque je suis sur internet, avec Mozilla (donc Google ^^), j'ai une redirection de mes recherches tantôt sur "yahoo", tantôt sur "main.exoclic.com". J'ai lancé un scan Avast et cela n'a rien donné, je me suis alors renseigné et apparemment ce serai un malware. J'ai donc besoin d'aide pour l'éradiquer au plus vite Merci d'avance