Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Bonjour,

 

 

J'ai fait le pré nettoyage comme il est préconisé antivir m'a trouvé 31 détections j'ai fait ensuite le HijakThis merci de me dire si mon ordi est toujours infecté

 

Nath

 

 

AntiVir PersonalEdition Classic

Report file date: dimanche 30 juillet 2006 13:33

 

Scanning for 397237 virus strains and unwanted programs.

 

Licensed to: AntiVir PersonalEdition Classic

Serial number: 0000149996-WURGE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Username: Nathalie

Computer name: GAUTIER-TYNJKWH

 

Version informations:

AVSCAN.EXE : 7.0.0.42 557096 30/07/2006 11:26:02

AVSCAN.DLL : 7.0.0.42 53288 30/07/2006 11:26:02

LUKE.DLL : 7.0.0.42 118824 30/07/2006 11:26:05

LUKERES.DLL : 7.0.0.42 25640 30/07/2006 11:26:05

ANTIVIR0.VDF : 6.35.0.1 7371264 30/07/2006 11:26:02

ANTIVIR1.VDF : 6.35.0.4 2048 30/07/2006 11:26:02

ANTIVIR2.VDF : 6.35.0.5 2048 30/07/2006 11:26:02

ANTIVIR3.VDF : 6.35.0.6 2048 30/07/2006 11:26:02

AVEWIN32.DLL : 7.1.0.10 1511936 30/07/2006 11:26:02

AVPREF.DLL : 7.0.0.1 49192 30/07/2006 11:26:02

AVREP.DLL : 6.35.0.1 643112 30/07/2006 11:26:02

AVRPBASE.DLL : 7.0.0.0 2162728 30/07/2006 11:26:02

AVPACK32.DLL : 7.1.0.1 335912 30/07/2006 11:26:02

AVREG.DLL : 6.31.0.90 27688 30/07/2006 11:26:02

NETNT.DLL : 6.32.0.0 6696 30/07/2006 11:26:05

NETNW.DLL : 6.32.0.0 9768 30/07/2006 11:26:05

RCIMAGE.DLL : 7.0.0.71 1642536 30/07/2006 11:26:06

RCTEXT.DLL : 7.0.0.75 77864 30/07/2006 11:26:06

 

Configuration settings for the scan:

Jobname: '%s'.................: Manual Selection

Configuration file............: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\PROFILES\folder.avp

Boot sectors..................: C

Scan memory...................: 1

Process scan..................: 1

Scan all files................: 1

Scan archives.................: 1

Recursion depth...............: 20

Smart extensions..............: 1

Skipped archive types.........: 1000,1001,1002,1003,1004,

Macro heuristic...............: 1

File heuristic................: 3

Primary action................: 1

Secondary action..............: 0

 

Start of the scan: dimanche 30 juillet 2006 13:33

 

 

The scan over running processes will be started

14 Processes was scanned

 

Start scanning boot sectors:

 

Boot sector 'C:\'

[NOTE] No virus was found!

 

Starting to scan the registry.

The registry was scanned ( 43 files ).

 

 

Starting the file scan:

 

C:\pagefile.sys

[WARNING] The file could not be opened!

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9

[WARNING] The file could not be opened!

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9

[WARNING] The file could not be opened!

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9

[WARNING] The file could not be opened!

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9

[WARNING] The file could not be opened!

C:\Documents and Settings\NetworkService\NTUSER.DAT

[WARNING] The file could not be opened!

C:\Documents and Settings\NetworkService\ntuser.dat.LOG

[WARNING] The file could not be opened!

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat

[WARNING] The file could not be opened!

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG

[WARNING] The file could not be opened!

C:\Documents and Settings\Propriétaire\NTUSER.DAT

[WARNING] The file could not be opened!

C:\Documents and Settings\Propriétaire\ntuser.dat.LOG

[WARNING] The file could not be opened!

C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\i5y0841y.default\mail\local folders\inbox

[0] Archive type: Netscape/Mozilla Mailbox

--> Mailbox_[From: Lookatvideo.com <b-pop@radar.axicli.com>][subject: =?ISO-8859-1?B?W05vcnRvbiBBbnRpU3BhbV0gTGVzIG5v]10180.mim

[DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

[1] Archive type: MIME

--> file0.txt

[DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

--> file1.html

[DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

--> Mailbox_[subject: La newsletter de Look][From: Lookatvideo.com <b-pop@radar.axi.fr>]10890.mim

[DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

[1] Archive type: MIME

--> file1.html

[DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

--> Mailbox_[From: "VISA Service" <VisaCard@visa.com>][subject: Attention! Several VISA Credit Card bases have ]18050.mim

[DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

[1] Archive type: MIME

--> file0.html

[DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

[WARNING] The file was ignored!

C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\i5y0841y.default\mail\local folders\junk

[0] Archive type: Netscape/Mozilla Mailbox

--> Mailbox_[From: "VISA Service" <VisaCard@visa.com>][subject: Attention! Several VISA Credit Card bases have ]396.mim

[DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

[1] Archive type: MIME

--> file0.html

[DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B

[WARNING] The file was ignored!

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat

[WARNING] The file could not be opened!

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG

[WARNING] The file could not be opened!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\24exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\26exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\27exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\28exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\34exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\47exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\51exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\53exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\5DE44YD9.htm

[DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\61exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\62exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\67exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\70exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\98exmscfgl.exe

[DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\FRVLLII2.htm

[DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\ISX6ERT7.htm

[DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\KML4BUC6.htm

[DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\KSWTTRKS.htm

[DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\tmp1.tmp

[DETECTION] Contains signature of the worm WORM/Medbot.A

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\WTLFXNHX.htm

[DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\YZIDZ1NP.htm

[DETECTION] Contains signature of the HTML script virus HTML/Exploit.Mhtml

[iNFO] The file was deleted!

C:\Documents and Settings\Propriétaire\Local Settings\Temp\Z6JUCD70.htm

[DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j

[iNFO] The file was deleted!

C:\WINDOWS\system32\nvsvcd.exe

[DETECTION] Contains signature of the worm WORM/Medbot.A

[iNFO] The file was deleted!

C:\WINDOWS\system32\config\default

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\default.LOG

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\SAM

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\SAM.LOG

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\SECURITY

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\SECURITY.LOG

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\software

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\software.LOG

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\system

[WARNING] The file could not be opened!

C:\WINDOWS\system32\config\system.LOG

[WARNING] The file could not be opened!

 

 

End of the scan: dimanche 30 juillet 2006 14:44

Used time: 1:11:15 min

 

The scan has been done completely.

 

6346 Scanning directories

285081 Files were scanned

32 viruses and/or unwanted programs was found

23 files were deleted

0 files were repaired

0 files were moved to quarantine

0 files were renamed

20387 Archives were scanned

25 Warnings

3 Notes

 

Logfile of HijackThis v1.99.1

Scan saved at 15:01:06, on 30/07/2006

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\CAPRPCSK.EXE

C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\SOUNDMAN.EXE

C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe

C:\Program Files\Logitech\iTouch\iTouch.exe

C:\Program Files\QuickTime\qttask.exe

C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

C:\Program Files\Logitech\ImageStudio\LogiTray.exe

C:\Program Files\Winamp\winampa.exe

C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe

C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

C:\Program Files\WiFiConnector\NintendoWFCReg.exe

C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

C:\PROGRA~1\Wanadoo\ComComp.exe

C:\Program Files\Logitech\ImageStudio\LowLight.exe

C:\PROGRA~1\Wanadoo\Toaster.exe

C:\OLIFAXVX\TOOLBAR.EXE

C:\PROGRA~1\Wanadoo\Inactivity.exe

C:\PROGRA~1\Wanadoo\PollingModule.exe

C:\WINDOWS\system32\ntvdm.exe

C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE

C:\PROGRA~1\Wanadoo\Watch.exe

C:\WINDOWS\system32\wuauclt.exe

C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navcli...fr&ie=UTF-8

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"

O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe

O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background

O4 - HKLM\..\Run: [CAPON] C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAPONN.EXE

O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe

O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe

O4 - HKLM\..\Run: [ulead Memory Card Detector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe

O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE

O4 - Startup: Moniteur Fax-Voix.lnk = C:\OLIFAXVX\MONITEUR.EXE

O4 - Global Startup: Fenêtre d'état Canon LBP-800.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe

O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe

O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html

O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html

O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html

O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html

O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Media Bar) - http://sib1.od2.com/common/musicmanager/in...nagerPlugin.CAB

O17 - HKLM\System\CCS\Services\Tcpip\..\{A93E0375-4ADC-47BD-9E91-2909954CED87}: NameServer = 80.10.246.130 80.10.246.3

O18 - Protocol: bw+0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw+0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw-0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw-0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw00 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw00s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw10 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw10s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw20 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw20s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw30 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw30s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw40 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw40s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw50 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw50s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw60 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw60s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw70 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw70s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw80 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw80s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw90 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw90s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwa0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwa0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwb0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwb0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwc0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwc0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwd0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwd0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwe0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwe0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwf0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwf0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

O18 - Protocol: bwg0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwg0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwh0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwh0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwi0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwi0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwj0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwj0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwk0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwk0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwl0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwl0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwm0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwm0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwn0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwn0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwo0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwo0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwp0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwp0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwq0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwq0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwr0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwr0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bws0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bws0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwt0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwt0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwu0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwu0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwv0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwv0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bww0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bww0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwx0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwx0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwy0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwy0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwz0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwz0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O18 - Protocol: offline-8876480 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O21 - SSODL: System - {F8091F39-0B87-406E-A7DC-9665DB5A9FFA} - C:\WINDOWS\system32\system32.dll

O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe (file missing)

 

 

Merci

Posté(e)

Bonjour,

 

- Télécharge chercher.zip sur ton bureau

- Ne double-clic pas dessus !! Fais un clic droit sur le fichier et extraire tout

- Un nouveau dossier chercher va être créé

- Ouvre le et double-clic sur chercher.cmd

- Une fenêtre va s'ouvrir, laisse la ouverte et appuie sur une touche quand on te le demande

- Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :

-- Dans le bloc-note, cliquez sur le menu Edition / Selectionner tout

-- A nouveau menu Edition / copier

-- Dans un nouveau message ici, faire un clic droit / coller

Posté(e)

C:\WINDOWS\System32\wpa.dbl -->30/07/2006 14:58:53

C:\WINDOWS\System32\nvapps.xml -->30/07/2006 14:58:53

C:\WINDOWS\System32\perfh040.dat -->16/07/2006 19:59:25

C:\WINDOWS\System32\perfc040.dat -->16/07/2006 19:59:25

C:\WINDOWS\System32\PerfStringBackup.INI -->16/07/2006 19:55:10

C:\WINDOWS\System32\perfh00C.dat -->16/07/2006 19:55:10

C:\WINDOWS\System32\perfh009.dat -->16/07/2006 19:55:10

C:\WINDOWS\System32\perfc00C.dat -->16/07/2006 19:55:10

C:\WINDOWS\System32\perfc009.dat -->16/07/2006 19:55:10

C:\WINDOWS\System32\zllictbl.dat -->16/07/2006 18:53:56

C:\WINDOWS\System32\MRT.exe -->07/07/2006 03:21:46

C:\WINDOWS\System32\rasmans.dll -->22/06/2006 12:48:06

C:\WINDOWS\System32\WgaLogon.dll -->19/06/2006 16:20:42

C:\WINDOWS\System32\LegitCheckControl.dll -->19/06/2006 16:19:42

C:\WINDOWS\System32\WgaTray.exe -->19/06/2006 16:19:26

C:\WINDOWS\System32\CONFIG.NT -->06/06/2006 06:36:39

C:\WINDOWS\System32\jgpl400.dll -->01/06/2006 20:48:44

C:\WINDOWS\System32\jgdw400.dll -->01/06/2006 20:48:44

C:\WINDOWS\System32\aswBoot.exe -->31/05/2006 11:02:04

C:\WINDOWS\System32\AVASTSS.scr -->31/05/2006 10:54:35

C:\WINDOWS\System32\shdocvw.dll -->29/05/2006 17:29:14

C:\WINDOWS\System32\mshtml.dll -->19/05/2006 17:09:50

C:\WINDOWS\System32\iphlpapi.dll -->19/05/2006 15:23:35

C:\WINDOWS\System32\dnsapi.dll -->19/05/2006 15:23:35

C:\WINDOWS\System32\dhcpcsvc.dll -->19/05/2006 15:23:35

 

C:\WINDOWS\pfirewall.log -->30/07/2006 15:18:07

C:\WINDOWS\ModemLog_OLITEC Self Memory 2000 PnP.txt -->30/07/2006 14:59:03

C:\WINDOWS\QTFont.qfn -->30/07/2006 14:58:49

C:\WINDOWS\0.log -->30/07/2006 14:58:42

C:\WINDOWS\wiadebug.log -->30/07/2006 14:58:20

C:\WINDOWS\WindowsUpdate.log -->30/07/2006 14:58:19

C:\WINDOWS\wiaservc.log -->30/07/2006 14:58:17

C:\WINDOWS\bootstat.dat -->30/07/2006 14:58:13

C:\WINDOWS\ntbtlog.txt -->30/07/2006 14:57:03

C:\WINDOWS\setupact.log -->30/07/2006 13:01:19

C:\WINDOWS\SchedLgU.Txt -->30/07/2006 12:57:21

C:\WINDOWS\pfirewall.log.old -->29/07/2006 18:29:44

C:\WINDOWS\Ulead32.ini -->26/07/2006 18:40:50

C:\WINDOWS\setupapi.log -->26/07/2006 18:15:41

C:\WINDOWS\wmsetup.log -->17/07/2006 19:03:07

 

 

Le volume dans le lecteur C n'a pas de nom.

Le num‚ro de s‚rie du volume est A0F5-2C5F

 

R‚pertoire de C:\WINDOWS\system32

 

20/08/2004 01:09 6ÿ144 csrss.exe

1 fichier(s) 6ÿ144 octets

0 R‚p(s) 36ÿ138ÿ496ÿ000 octets libres

 

Le volume dans le lecteur C n'a pas de nom.

Le num‚ro de s‚rie du volume est A0F5-2C5F

 

R‚pertoire de C:\Program Files

 

30/07/2006 15:00 <REP> .

30/07/2006 15:00 <REP> ..

03/12/2004 19:19 <REP> Activision

12/11/2004 21:16 <REP> Adobe

20/03/2006 20:45 <REP> ADSL Autoconnect

25/07/2003 18:39 <REP> Agfa

14/11/2003 21:10 <REP> ahead

28/04/2005 19:10 <REP> AIDA32 - Personal System Information

07/05/2006 09:29 <REP> Alwil Software

26/07/2003 14:16 <REP> ArcSoft

07/05/2006 09:19 <REP> AviSynth 2.5

25/07/2003 17:53 <REP> AvRack

09/07/2006 14:30 <REP> BankPerfect

17/01/2005 21:43 <REP> Bayo

26/07/2003 14:20 <REP> Canon

02/10/2004 13:24 <REP> Click-N-Stick

27/04/2005 20:04 <REP> Common Files

25/07/2003 17:21 <REP> ComPlus Applications

18/08/2005 20:27 <REP> Dictionnaire

27/07/2003 11:52 <REP> directx

16/07/2006 19:52 <REP> DivX

02/02/2005 19:09 <REP> DivXPack.NG

27/04/2005 20:04 <REP> DivXthŠque

16/07/2006 19:53 <REP> EA Games

10/09/2003 11:30 <REP> EHMINSTALL

14/11/2003 21:23 <REP> Eidos Interactive

24/10/2003 18:15 <REP> Elaborate Bytes

19/10/2003 11:32 <REP> emme

16/07/2006 19:52 <REP> eMule

29/10/2005 09:14 <REP> eurobarre

19/06/2004 18:50 <REP> Europress

29/01/2005 17:19 <REP> ffdshow

07/05/2006 09:27 <REP> Fichiers communs

29/01/2005 14:28 <REP> FlasKMPEG_594h

29/01/2005 17:18 <REP> Gabest

27/04/2005 20:05 <REP> GameSpy Arcade

20/04/2006 19:02 <REP> Gestion Film

26/02/2006 13:22 <REP> Google

05/02/2006 16:31 <REP> Hasbro Interactive

30/07/2006 15:01 <REP> HijackThis

07/05/2006 08:47 <REP> IKEA Home Planner Kitchen

07/05/2006 08:44 <REP> IncrediMail

26/07/2003 14:12 <REP> InterActual

19/06/2006 13:00 <REP> Internet Explorer

07/05/2006 08:49 <REP> IrfanView

08/02/2006 19:25 <REP> Java

26/07/2003 10:28 <REP> JavaSoft

04/03/2006 11:20 <REP> kakuro master demo

24/12/2004 19:57 <REP> Kazaa

24/12/2004 19:58 <REP> Kazaa K++

03/06/2005 20:50 <REP> Lavasoft

07/05/2006 08:49 <REP> LearnChinese

20/12/2003 20:35 <REP> LEGO Interactive

28/12/2005 19:06 <REP> LGGSM

03/12/2004 19:28 <REP> Logitech

07/05/2006 08:51 <REP> Ludiclub

28/01/2006 18:04 <REP> Macrogaming

13/10/2005 18:07 <REP> Media Player Classic

17/10/2005 07:18 <REP> Mediabarre

29/05/2004 18:11 <REP> Messager Wanadoo

16/02/2005 10:38 <REP> Messenger

07/05/2006 09:16 <REP> Micro Application

25/07/2003 17:24 <REP> microsoft frontpage

27/04/2005 19:35 <REP> Microsoft Games

26/07/2006 18:43 <REP> Microsoft Money

25/06/2006 19:57 <REP> Microsoft Money 2005

26/07/2003 13:54 <REP> Microsoft Office

28/07/2003 21:38 <REP> Microsoft Plus!

26/07/2003 13:57 <REP> Microsoft Visual Studio

03/12/2003 17:10 <REP> Milan

02/02/2005 22:49 <REP> Morgan

10/10/2004 09:51 <REP> Movie Maker

30/07/2006 15:01 <REP> Mozilla Firefox

30/07/2006 12:17 <REP> Mozilla Thunderbird

25/07/2003 17:21 <REP> MSN

26/12/2004 18:14 <REP> MSN Apps

25/07/2003 17:21 <REP> MSN Gaming Zone

11/02/2006 09:24 <REP> MSN Messenger

20/03/2006 21:58 <REP> MyWay

27/01/2005 21:28 <REP> Neodivx

16/07/2006 19:43 <REP> NET Traffic Meter

10/10/2004 09:46 <REP> NetMeeting

26/01/2005 19:03 <REP> nutri

09/07/2006 13:25 <REP> OriaSoft

12/04/2006 22:53 <REP> Outlook Express

20/09/2004 12:25 <REP> Pense-bete

07/05/2006 09:09 <REP> ppStream

15/10/2003 16:34 <REP> Puzzle Bobble 2x

10/09/2005 15:04 <REP> QO Labs

10/09/2005 20:24 <REP> QQLive

18/10/2003 15:22 <REP> QuickTime

16/07/2006 19:31 <REP> R19 Software

15/04/2004 17:06 <REP> Real

25/07/2003 17:53 <REP> Realtek Sound Manager

04/01/2005 18:15 <REP> ReflexiveArcade

07/05/2006 09:09 <REP> RegSupreme

27/04/2005 20:06 <REP> Ricochet Xtreme

07/05/2006 09:10 <REP> Ripp-it_AM

02/02/2005 22:48 <REP> Rippackv3

25/07/2003 18:15 <REP> Roxio

25/07/2003 17:23 <REP> Services en ligne

21/10/2003 20:21 <REP> Sierra On-Line

22/05/2005 17:57 <REP> Skype

08/01/2004 14:07 <REP> SodeaSoft

07/05/2006 09:10 <REP> Soulseek

07/05/2006 09:11 <REP> Spybot - Search & Destroy

04/03/2006 20:52 <REP> sudoku_quest

16/07/2006 20:02 <REP> Sunbelt Software

07/05/2006 08:59 <REP> Symantec

07/05/2006 10:03 <REP> SymNetDrv

28/01/2006 14:26 <REP> Taroteam

17/12/2003 14:24 <REP> THQ

07/05/2006 08:47 <REP> Ubi Soft

24/04/2005 13:37 <REP> UBISOFT

30/01/2005 18:12 <REP> Ulead Systems

25/07/2003 18:03 <REP> VIA Technologies, Inc

30/07/2006 14:58 <REP> Wanadoo

25/05/2004 08:39 <REP> Wanadoo Messager

19/07/2004 07:28 <REP> Weight Watchers

18/04/2006 19:21 <REP> WiFiConnector

05/09/2004 12:32 <REP> Winamp

15/04/2004 17:06 <REP> Windows Media Components

16/02/2006 08:27 <REP> Windows Media Player

10/10/2004 09:45 <REP> Windows NT

25/02/2005 19:12 <REP> WinRAR

12/10/2003 19:09 <REP> WinZip

25/07/2003 17:24 <REP> xerox

08/02/2006 19:23 <REP> ZTE Corporation

0 fichier(s) 0 octets

128 R‚p(s) 36ÿ138ÿ483ÿ712 octets libres

Le volume dans le lecteur C n'a pas de nom.

Le num‚ro de s‚rie du volume est A0F5-2C5F

 

R‚pertoire de C:\Program Files\fichiers communs

 

07/05/2006 09:27 <REP> .

07/05/2006 09:27 <REP> ..

25/07/2003 18:15 <REP> Adaptec Shared

12/11/2004 21:16 <REP> Adobe

14/11/2003 21:10 <REP> Ahead

26/07/2003 13:57 <REP> Designer

04/12/2004 12:18 <REP> DirectX

15/04/2004 17:06 <REP> FotoWire

20/12/2003 20:35 <REP> InstallShield

03/12/2004 19:29 <REP> Logitech

22/12/2005 18:57 <REP> Microsoft Shared

25/07/2003 17:22 <REP> MSSoap

25/07/2003 18:10 <REP> ODBC

18/08/2005 21:50 <REP> Real

25/07/2003 17:22 <REP> Services

30/01/2005 18:13 <REP> sndp202

25/07/2003 18:10 <REP> SpeechEngines

07/05/2006 09:27 <REP> Symantec Shared

12/04/2006 22:53 <REP> System

30/01/2005 18:12 <REP> Ulead Systems

23/05/2004 16:45 <REP> Vbox

18/08/2005 21:50 <REP> xing shared

0 fichier(s) 0 octets

22 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres

Le volume dans le lecteur C n'a pas de nom.

Le num‚ro de s‚rie du volume est A0F5-2C5F

 

R‚pertoire de C:\Program Files\common files

 

27/04/2005 20:04 <REP> .

27/04/2005 20:04 <REP> ..

02/08/2004 17:33 <REP> System

0 fichier(s) 0 octets

3 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres

Le volume dans le lecteur C n'a pas de nom.

Le num‚ro de s‚rie du volume est A0F5-2C5F

 

R‚pertoire de C:\

 

24/05/2001 13:59 162ÿ304 UNWISE.EXE

1 fichier(s) 162ÿ304 octets

0 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres

c:\Documents and Settings\Propri‚taire\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdatepl\fpupdatepl.exe

c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\Installer\{9BBE1474-DA14-4309-AD6E-75673873EB5D}\wwicon.exe

c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\Installer\{F86FFD86-1966-4C6C-99D9-44A6E7AB97E3}\ARPPRODUCTICON.exe

c:\Documents and Settings\Propri‚taire\Bureau\chercher\chercher\LFiles.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\_ISDEL.EXE

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\12exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\13exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\14exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\17exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\18exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\21exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\23exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\24exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\25exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\27exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\28exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\31exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\36exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\37exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\39exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\3exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\44exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\47exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\48exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\52exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\54exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\55exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\61exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\63exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\67exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\69exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\73exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\74exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\75exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\79exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\7exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\81exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\84exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\85exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\87exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\8exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\91exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\93exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\94exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\95exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\96exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\99exmodul32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\AutoRun.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\eauninstall.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU1C6.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU21.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU3FB.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBUC6.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBUE.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\First15.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\Harry Potter Quidditch World Cup_uninst.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\msnsearch.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\nsu9A.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\SETUP.EXE

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\setup_wm.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\uneb.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\VP6Install.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\xpinstall.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\0fced5b5-3b0d-43af-856a-d41e06255694\ADSL Autoconnect.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccApp.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccEvtMgr.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccLgView.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccPwdSvc.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccSetMgr.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\NMain.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ins1.tmp\LDMClient.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\IXP000.TMP\DX6SU100.EXE

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\_ISDel.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\Setup.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\Reader\AcroRd32.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\R‚pertoire temporaire 1 pour neodivx.zip\setup.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\R‚pertoire temporaire 1 pour PRINCE.OF.PERSIA SANDS OF TIME-NOCD-Crack !.zip\PRINCE.OF.PERSIA SANDS OF TIME-NOCD-Crack !\pop.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\{86DE85AD-1CB2-4E11-ACF8-1C394CD10F4A}\{41188D27-E354-40A2-9C38-E361E830A9C1}\SendStats.exe

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\{C9476F59-74AB-4E4B-A336-3A7D0FECB615}\SweetIESetup.exe

c:\Documents and Settings\Propri‚taire\Menu D‚marrer\Programmes\COKTEL\Configuration 3D.exe

c:\Documents and Settings\Propri‚taire\Menu D‚marrer\Programmes\COKTEL\D‚sinstalleur Coktel.exe

c:\Documents and Settings\Propri‚taire\Mes documents\QQLive1.0Beta01.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Ecole\ec_co_pt.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Ecole\ec_cp.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Inventaire\Ecole\ec_co_pt.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Inventaire\Ecole\ec_cp.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\dava.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\DisneylandParis_AH0506_F.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\install.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\Learn_Chinese_2006_v40_lechinois.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\poker.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\DOS4GW.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\INSTALL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\LOADPATS.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\OBELIX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\OBELIXW.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\71.89_win2kxp_international.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\aawsepersonal.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ac3filter_1_01a_rc1.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\AIDA_32_3.93_Personnal_Edition.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\dic_vietnamien.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\dictionnaire_setup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\FoxTarot400.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\GoogleEarthSetup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\gspot221.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ihp_kitchen1_6_2.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\INFO.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\INSTALL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\jecreemacuisineavecleroymerlin-1_0_0.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\mpc_install_6.4.8.4_fr.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\MW_ATIUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\PixelFusionWMP130.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\pllangs.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\pplivefoot1_2full.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\PPLiveSetup.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ppstreamsetup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\RegSupreme_setup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ri4m_setup_indispensables_rv10.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\RIAM_v402c_setup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SC2000.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SetupRiamCodecPack_4.0.1.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\setupwingrosmaig.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SkypeSetup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\VDETECT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\videoinspector.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\VRF_DLL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\ebsetupfr.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\KiddiesBarreIntall.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\mb152.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Photo\picasa2-current.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\INFO.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\INSTALL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\MW_ATIUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\SC2000.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VDETECT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VRF_DLL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\AHEAD\VESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\APPIAN\APVESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\ATI\MW_ATIUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\COMPAQ\CPQVESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\DIAMOND\24XVESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\DIAMOND\VESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\GENBOX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\VESABOX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\VESAMODE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\HEADLAND\HT-VESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\IBM\VESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\IBM\XGAVESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\PARADISE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1A1B.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1C.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1D.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESAX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\SPIDER\SETMODE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\SPIDER\SPBIOS.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\TECMAR\VESATEST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\TRIDENT\VESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\UNIVESA\UNIVESA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1A1B.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1C.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1D.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESAX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Money\autorun.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\install.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\IE\encpack.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\IE\ie6setup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\copymar.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\dw.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\fontinst.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnybb.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnybbsvc.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnyimprt.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnyinst.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\msmoney.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\salv.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\signin.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\uninst.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\update.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\PSS\mdac_typ.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Money\PSS\msizap.exe

c:\Documents and Settings\Propri‚taire\Mes documents\Office\INSTALL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\DCOM95.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5COMP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5OEM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5SETUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IEAK5.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IEAK5CD.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\OAINST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\VRML2C.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\MSI\INSTMSI.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\MSI\INSTMSIW.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\OEM\TOOLS\CIW\CUSTWIZ.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ARTGALRY\ARTGALRY.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ARTGALRY\CAG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DATAMAP\DATAINST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DATAMAP\MSMAP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DBREP\WZCNFLCT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\EQUATION\EQNEDT32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\MSINFO\MSINFO32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\MSINFO\OFFPROV.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ORGCHART\ORGCHART.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\PHOTOED\PHOTOED.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ADMCGI\SCRIPTS\FPADMCGI.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\CFGWIZ.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPREMADM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSERVER.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSRVADM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\HTIMAGE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\IMAGEMAP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\TCPTEST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ISAPI\FPCOUNT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\FPCOUNT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\SHTML.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_ADM\ADMIN.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_AUT\AUTHOR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\FPWEBS\SERVER\VHTTPD32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\OUT40.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CCMDLIST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CNFNOT32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CWIMPORT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\MAPISP32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\ML3XEC16.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\NEWPROF.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\SCANPST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\MAPISP32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\ML3XEC16.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\NEWPROF.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\SCANPST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FP98SADM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FP98SWIN.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FPSRVADM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FPSRVWIN.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\BINDER.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\CONVTEXT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\DATCRT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\DLGCANCL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\EXCEL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FINDER.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FINDFAST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FRONTPG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\GRAPH9.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MAKECERT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSACCESS.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSACNV30.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSIMPORT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTPA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTPS.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSOHTMED.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSQRY32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\NSREX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OFFCLN9.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\ORG11SVR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\ORG21SVR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OSA9.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OTUNEUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OUTLOOK.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\POWERPNT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\REXPROXY.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\RXCBPRXY.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\SELFCERT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\SETLANG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIDISC.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIFORM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIPRES.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WAVTOASF.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WEBPUB.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WINWORD.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\MSOFFICE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\MSOHELP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\NFCLEAN.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFMOD32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFSETUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFSNT40.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\PROJWIZ.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\SCHDPL32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\WFXMSRVR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\WRKGADM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FORMS\1036\REGCFG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\XLATORS\PPVIEW32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\SNAPVIEW\SNAPVIEW.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\VSTUDIO\COMMON\IDE\IDE98\MSE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\DCOM\DCOM95.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\OAINST\OAINST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\OAINST\OFFOLE.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\BCP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\CMDWRAP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\CNFGSVR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DCOMSCM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DISTRIB.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DTSRUN.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DTSWIZ.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\LOGREAD.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\ODBCCMPT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\OSQL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REBUILDM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REGREBLD.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REPLMERG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SCM.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SNAPSHOT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLAGENT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLMANGR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLSERVR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SVRNETCN.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\VSWITCH.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\OTHER\DTCSETUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\_ISDEL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\MSETUP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\SETUPSQL.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\SQLSTP.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SYSTEM\CLICONFG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SYSTEM\REGSVR32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\OA4514.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\GIMEFIX.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\HHUPD.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OAINST.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OUT128.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OUT40.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\Q248120.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\RICHEDIT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\1\W2K_ARA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\12\W2K_FRA.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\9\W2K_ENG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\CLICONFG.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\EXTRACT.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\IMMC.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\ODBCAD32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\AWSNTO32.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\FIXMAPI.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\VIEWERS\QUIKVIEW.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEMNT\FIXMAPI.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEMNT\VIEWERS\QUIKVIEW.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\WINDOWS\HH.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\Office\WINDOWS\MSAGENT\AGENTSVR.EXE

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\ADSLAutoconnect206F7.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\antivir_workstation_win7u_en_h.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\bp.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\clientinstall.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\eMule0.47a-Installer.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\Firefox Setup 1.5.0.4.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\mon_budget_familial.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\setupfre.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\SkypeSetup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\SoccerTrainer2_0_Fr_DemoSetup.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\spybotsd14.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\Thunderbird Setup 1.5.0.4.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\zlsSetup_65_725_000_fr.exe

c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\memodivx\MemoDivx.exe

c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll

c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll

c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll

c:\Documents and Settings\Propri‚taire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\npietab.dll

 

Vérifications de quelques clefs

Recherche de clefs EGDACCESS

 

HKLM\SOFTWARE\Microsoft\Windows\explorer\SharedTaskScheduler

Posté(e)

Voici la manipulation à effectuer en entier

Si certains éléments ne sont pas trouvés, merci de le signaler mais de poursuivre les manipulations jusqu'au bout.

 

Dans ajout/suppression de programmes, désinstalle si présent :

MyWay

 

- Demarrer / executer / tape services.msc

- Cherche Windows Log dans la liste

- Double clic dessus, positionne le type de démarrage sur désactiver

 

Sur HijackThis, refais un scan et coches les lignes suivantes :

 

O21 - SSODL: System - {F8091F39-0B87-406E-A7DC-9665DB5A9FFA} - C:\WINDOWS\system32\system32.dll

 

---> puis clic sur le bouton "Fix Checked"

n'hésite pas à consulter l'aide HijackThis

 

- Télécharge et installe ewido

- Mets le à jour à partir du menu update en haut, n'hésite pas à consulter l'Aide ewido pour tout problème.

- Télécharge clean.zip, décompresse-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.

 

-- Redémarre en mode en mode sans échec, si tu sais pas comment on fait lis ceci

-- Ouvre le dossier clean qui se trouve sur ton bureau, et double-clic sur clean.cmd, une fenêtre noire va apparaître pendant un instant, laisse la ouverte.

 

Ouvre le poste de travail et navigue dans tes dossiers pour supprimer :

C:\WINDOWS\system32\system32.dll

C:\Program Files\MyWay

c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ <-- vide le contenu

 

 

- Ouvre ewido et clic sur l'onglet Scanner en haut

- Démarre ewido et clique "Complete System Scan"

** Si un fichier est infecté, choisis l'option " Apply All Actions " en fin d'analyse **

Clique sur " Save Report " puis sur " Save Report As "

Enregistre ce fichier texte sur ton bureau.

N'hésite pas à consulter l'Aide ewido pour tout problème.

 

 

-- Redémarre en mode normal : Menu Démarrer / Arreter / Redémarre l'ordinateur

Attention : dans le cas où l'ordinateur redémarre en boucle en mode sans échec, faire la manipulation inverse en décochant l'option /SAFEBOOT à l'aide de msconfig : voir à nouveau cette page : cliquez-ici

 

-- Fais un scan en ligne avec Internet Explorer : Scan Kaspersky et colle le rapport ici. Si tu es perdu, tu peux suivre cette aide pour les scans en ligne

-- Copie/Colle ici les rapports :

- ewido

- le rapport clean : Poste de travail / double clic sur disque C / double-clic sur rapport_clean.txt et copier/coller le contenu ici C:\rapport_clean.txt

- ainsi qu'un nouveau log HijackThis

Posté(e)

Sunday, July 30, 2006 5:54:50 PM

Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

Kaspersky Online Scanner version: 5.0.83.0

Kaspersky Anti-Virus database last update: 30/07/2006

Kaspersky Anti-Virus database records: 198286

Scan Settings

Scan using the following antivirus database standard

Scan Archives true

Scan Mail Bases true

Scan Target My Computer

A:\

C:\

D:\

E:\

Scan Statistics

Total number of scanned objects 76711

Number of viruses found 3

Number of infected objects 1607 / 0

Number of suspicious objects 0

Duration of the scan process 01:00:20

 

Infected Object Name Virus Name Last Action

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cert8.db Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\history.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\key3.db Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\parent.lock Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\call256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\callmember256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\chat512.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\contactgroup256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\index2.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\message256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\profile16384.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer512.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user1024.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user16384.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user4096.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\voicemail256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_001_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_002_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_003_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_MAP_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Propriétaire\ntuser.dat.LOG Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWDocMap.pht Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWInfopakMap.pht Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\D0000000.FCS Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\inuse.txt Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\L0000002.FCS Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\main.log Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.idx Object is locked skipped

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191421.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191422.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191423.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191424.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191425.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191426.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191427.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191428.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191429.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191430.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191431.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191432.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191433.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191434.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191435.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191436.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191437.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191438.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191439.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191440.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191441.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191442.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191443.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191444.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191445.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191446.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191447.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191448.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191449.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191450.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191451.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191452.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191453.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191454.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191455.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191456.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191457.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191458.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191459.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191460.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191461.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191462.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191463.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191464.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191465.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191466.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191467.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191468.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191469.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191470.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191471.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191472.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191473.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191474.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191475.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191476.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191477.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191478.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191479.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191480.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191481.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191482.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191483.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191484.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191485.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191486.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191487.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191488.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191489.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191490.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191491.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191492.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191493.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191494.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191495.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191496.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191497.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191498.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191499.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191500.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191501.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191502.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191503.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191504.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191505.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191506.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191507.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191508.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191509.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191510.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191511.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191512.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191513.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191514.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191515.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191516.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191517.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191518.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191519.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191520.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191521.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191522.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191523.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191524.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191525.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191526.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191527.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191528.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191529.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191530.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191531.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191532.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191533.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191534.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191535.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191536.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191537.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191538.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191539.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191540.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191541.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191542.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191543.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191544.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191545.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191546.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191547.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191548.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191549.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191550.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191551.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191552.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191553.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191554.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191555.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191556.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191557.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191558.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191559.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191560.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191561.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191562.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191563.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191564.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191565.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191566.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191567.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191568.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191569.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191570.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191571.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191572.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191573.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191574.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191575.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191576.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191577.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191578.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191579.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191580.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191581.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191582.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191583.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191584.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191585.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191586.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191587.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191588.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191589.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191590.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191591.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191592.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191593.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191594.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191595.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191596.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191597.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191598.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191599.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191600.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191601.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191602.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191603.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191604.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191605.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191606.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191607.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191608.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191609.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191610.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191611.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191612.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191613.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191614.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191615.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191616.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191617.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191618.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191619.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191620.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191621.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191622.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191623.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191624.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191625.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191626.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191627.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191628.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191629.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191630.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191631.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191632.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191633.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191634.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191635.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191636.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191637.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191638.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191639.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191640.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191641.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191642.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191643.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191644.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191645.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191646.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191647.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191648.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191649.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191650.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191651.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191652.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191653.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191654.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191655.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191656.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191657.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191658.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191659.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191660.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191661.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191662.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191663.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191664.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191665.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191666.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191667.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191668.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191669.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191670.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191671.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191672.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191673.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191674.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191675.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191676.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191677.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191678.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191679.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191680.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191681.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191682.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191683.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191684.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191685.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191686.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191687.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191688.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191689.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191690.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191691.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191692.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191693.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191694.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191695.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191696.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191697.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191698.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191699.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191700.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191701.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191702.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191703.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191704.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191705.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191706.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191707.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191708.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191709.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191710.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191711.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191712.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191713.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191714.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191715.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191716.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191717.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191718.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191719.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191720.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191721.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191722.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191723.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191724.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191725.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191726.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191727.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191728.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191729.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191730.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191731.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191732.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191733.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191734.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191735.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191736.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191737.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191738.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191739.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191740.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191741.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191742.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191743.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191744.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191745.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191746.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191747.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191748.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191749.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191750.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191751.exe Infected: P2P-Worm.Win32.VB.dz skipped

C:\S

Posté(e)

Merci de coller tous les rapports demandés, à savoir :

- ewido

- le rapport clean : Poste de travail / double clic sur disque C / double-clic sur rapport_clean.txt et copier/coller le contenu ici C:\rapport_clean.txt

- ainsi qu'un nouveau log HijackThis

Posté(e)

ewido anti-spyware - Scan Report

---------------------------------------------------------

 

+ Created at: 16:35:08 30/07/2006

 

+ Scan result:

 

 

 

C:\Program Files\IncrediMail\bin\Incredimail Premium + CRACK + KEYGEN.exe -> Downloader.Zlob.nr : Cleaned with backup (quarantined).

C:\Program Files\eMule\Incoming\Incredimail Premium + CRACK + KEYGEN.exe -> Downloader.Zlob.nr : Cleaned with backup (quarantined).

:mozilla.247:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

:mozilla.248:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

:mozilla.249:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

:mozilla.250:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

:mozilla.251:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

:mozilla.267:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.324:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.327:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.333:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.334:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.335:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.339:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.340:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.585:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.791:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.797:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

:mozilla.876:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

:mozilla.877:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

:mozilla.233:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.

:mozilla.234:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.

C:\Documents and Settings\Propriétaire\Cookies\nathalie@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.

:mozilla.378:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

:mozilla.379:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

:mozilla.380:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

:mozilla.381:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

:mozilla.382:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

:mozilla.162:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned.

:mozilla.275:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.

:mozilla.145:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

:mozilla.328:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

:mozilla.59:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

C:\Documents and Settings\Propriétaire\Cookies\nathalie@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.

C:\RECYCLER\S-1-5-21-436374069-1788223648-839522115-1003\Dc49\propriétaire@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.

:mozilla.691:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

:mozilla.692:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

:mozilla.693:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

:mozilla.11:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.12:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.13:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.14:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.817:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.818:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.819:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.

:mozilla.894:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.

:mozilla.457:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Counted : Cleaned.

:mozilla.134:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.

:mozilla.131:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Estat : Cleaned.

:mozilla.9:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Estat : Cleaned.

C:\Documents and Settings\Propriétaire\Cookies\nathalie@estat[1].txt -> TrackingCookie.Estat : Cleaned.

C:\RECYCLER\S-1-5-21-436374069-1788223648-839522115-1003\Dc49\propriétaire@estat[1].txt -> TrackingCookie.Estat : Cleaned.

:mozilla.193:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.194:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.195:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.569:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.570:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.571:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.572:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.573:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.889:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

:mozilla.891:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

:mozilla.122:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.144:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.178:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.196:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.215:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.216:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.217:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.239:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.23:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.242:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.259:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.260:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.268:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.509:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.513:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.564:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.597:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.602:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.603:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.636:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.667:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.706:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.712:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.730:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.775:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

:mozilla.164:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.165:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.166:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.167:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.168:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.465:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.466:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.664:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.880:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.881:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.882:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.883:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.884:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.903:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.940:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.941:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.942:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

:mozilla.56:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

:mozilla.57:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

:mozilla.58:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

:mozilla.59:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

:mozilla.292:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

:mozilla.57:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

:mozilla.58:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

:mozilla.61:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Overture : Cleaned.

:mozilla.62:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Overture : Cleaned.

:mozilla.848:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

:mozilla.849:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

:mozilla.850:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

:mozilla.851:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

:mozilla.707:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.

:mozilla.708:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.

:mozilla.91:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

:mozilla.95:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

:mozilla.96:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

:mozilla.97:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

:mozilla.98:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.

:mozilla.925:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.

:mozilla.724:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

:mozilla.725:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

:mozilla.726:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

:mozilla.727:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

:mozilla.728:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

:mozilla.236:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.237:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.439:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.440:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.504:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.505:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.507:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.508:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.511:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.682:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.683:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.711:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.854:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.855:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.

:mozilla.123:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.124:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.125:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.126:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.75:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.76:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.77:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.

:mozilla.558:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

:mozilla.559:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

:mozilla.116:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.117:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.118:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.119:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.120:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.45:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.50:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.

C:\Documents and Settings\Propriétaire\Cookies\nathalie@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.

:mozilla.656:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.

:mozilla.243:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.

:mozilla.244:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.

:mozilla.130:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.

:mozilla.132:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.

:mozilla.135:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.

:mozilla.51:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned.

:mozilla.52:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned.

:mozilla.53:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned.

C:\Documents and Settings\Propriétaire\Cookies\nathalie@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.

:mozilla.140:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

:mozilla.141:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

:mozilla.254:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

:mozilla.255:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

:mozilla.755:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

:mozilla.100:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

:mozilla.101:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

:mozilla.102:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

:mozilla.104:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

::Report end

 

Script clean par Malekal_morte - http://www.malekal.com

 

*** SUPPRESSION DES FICHIERS

 

 

 

*** Suppressions de trojans/vers sur...

C:\WINDOWS\smdat32m.sys FOUND

C:\WINDOWS\unvise32qt.exe FOUND

 

 

 

*** Suppressions des adware connus...

 

 

Logfile of HijackThis v1.99.1

Scan saved at 18:01:47, on 30/07/2006

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Program Files\ewido anti-spyware 4.0\guard.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\CAPRPCSK.EXE

C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\SOUNDMAN.EXE

C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe

C:\Program Files\Logitech\iTouch\iTouch.exe

C:\Program Files\QuickTime\qttask.exe

C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe

C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

C:\Program Files\Logitech\ImageStudio\LogiTray.exe

C:\Program Files\Winamp\winampa.exe

C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe

C:\Program Files\Logitech\ImageStudio\LowLight.exe

C:\Program Files\WiFiConnector\NintendoWFCReg.exe

C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

C:\OLIFAXVX\TOOLBAR.EXE

C:\PROGRA~1\Wanadoo\ComComp.exe

C:\WINDOWS\system32\ntvdm.exe

C:\PROGRA~1\Wanadoo\Toaster.exe

C:\PROGRA~1\Wanadoo\Inactivity.exe

C:\PROGRA~1\Wanadoo\PollingModule.exe

C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE

C:\PROGRA~1\Wanadoo\Watch.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navcli...fr&ie=UTF-8

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll

O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"

O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe

O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background

O4 - HKLM\..\Run: [CAPON] C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAPONN.EXE

O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE

O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe

O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe

O4 - HKLM\..\Run: [ulead Memory Card Detector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"

O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe

O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe

O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE

O4 - Startup: Moniteur Fax-Voix.lnk = C:\OLIFAXVX\MONITEUR.EXE

O4 - Global Startup: Fenêtre d'état Canon LBP-800.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE

O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe

O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe

O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html

O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html

O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html

O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html

O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)

O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab

O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Media Bar) - http://sib1.od2.com/common/musicmanager/in...nagerPlugin.CAB

O17 - HKLM\System\CCS\Services\Tcpip\..\{A93E0375-4ADC-47BD-9E91-2909954CED87}: NameServer = 80.10.246.130 80.10.246.3

O18 - Protocol: bw+0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw+0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw-0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw-0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw00 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw00s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw10 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw10s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw20 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw20s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw30 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw30s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw40 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw40s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw50 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw50s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw60 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw60s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw70 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw70s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw80 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw80s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw90 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bw90s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwa0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwa0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwb0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwb0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwc0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwc0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwd0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwd0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwe0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwe0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwf0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwf0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

O18 - Protocol: bwg0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwg0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwh0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwh0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwi0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwi0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwj0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwj0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwk0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwk0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwl0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwl0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwm0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwm0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwn0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwn0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwo0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwo0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwp0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwp0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwq0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwq0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwr0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwr0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bws0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bws0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwt0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwt0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwu0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwu0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwv0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwv0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bww0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bww0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwx0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwx0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwy0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwy0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwz0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: bwz0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O18 - Protocol: offline-8876480 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing)

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Posté(e)

KASPERSKY ONLINE SCANNER REPORT

Sunday, July 30, 2006 7:41:51 PM

Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)

Kaspersky Online Scanner version: 5.0.83.0

Kaspersky Anti-Virus database last update: 30/07/2006

Kaspersky Anti-Virus database records: 198299

Scan Settings

Scan using the following antivirus database standard

Scan Archives true

Scan Mail Bases true

Scan Target My Computer

A:\

C:\

D:\

E:\

Scan Statistics

Total number of scanned objects 65056

Number of viruses found 0

Number of infected objects 0 / 0

Number of suspicious objects 0

Duration of the scan process 00:52:30

 

Infected Object Name Virus Name Last Action

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cert8.db Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\formhistory.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\history.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\key3.db Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\parent.lock Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\call256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\callmember256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\chat512.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\contactgroup256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\index2.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\message256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\profile16384.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer512.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user1024.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user16384.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user4096.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\voicemail256.dbb Object is locked skipped

C:\Documents and Settings\Propriétaire\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_001_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_002_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_003_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_MAP_ Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\MSHist012006073020060731\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Propriétaire\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Propriétaire\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\Propriétaire\UserData\index.dat Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWDocMap.pht Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWInfopakMap.pht Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\D0000000.FCS Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\inuse.txt Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\L0000002.FCS Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\main.log Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.idx Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.dat Object is locked skipped

C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.idx Object is locked skipped

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP637\change.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\pfirewall.log Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\EventCache\{4884BA1D-D3D5-449B-A484-8E58FB2D67AD}.bin Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\default Object is locked skipped

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

C:\WINDOWS\system32\config\SAM Object is locked skipped

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\system32\config\software Object is locked skipped

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\system Object is locked skipped

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

C:\WINDOWS\system32\h323log.txt Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\Temp\Perflib_Perfdata_54c.dat Object is locked skipped

C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped

C:\WINDOWS\wiadebug.log Object is locked skipped

C:\WINDOWS\wiaservc.log Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.

Posté(e)

Number of viruses found 0

Number of infected objects 0 / 0

Number of suspicious objects 0

 

Cela me semble OK.

Comment va l'ordinateur ?

Encore des alertes ?

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...