Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Alors, j'ai bien fait toutes les manip' demandées juste une : "desinstalles via ajout suppression de programmes Boonty\BoontyBox" je ne l'ai pas trouvé dans ma liste de programme.

 

sinon, voici le rapport SDFix :

 

 

 

SDFix: Version 1.197

Run by Angeblanc on 26/06/2008 at 18:28

 

Microsoft Windows XP [version 5.1.2600]

Running From: C:\SDFix\SDFix

 

Checking Services :

 

 

Restoring Default Security Values

Restoring Default Hosts File

 

Rebooting

 

 

Checking Files :

 

Trojan Files Found:

 

C:\WINDOWS\system\smss.exe - Deleted

 

 

 

 

 

Removing Temp Files

 

ADS Check :

 

 

 

Final Check :

 

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-06-26 18:44:04

Windows 5.1.2600 Service Pack 2 NTFS

 

scanning hidden processes ...

 

scanning hidden services & system hive ...

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]

"s1"=dword:2df9c43f

"s2"=dword:110480d0

"h0"=dword:00000001

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]

"p0"="C:\Program Files\DAEMON Tools\"

"h0"=dword:00000000

"khjeh"=hex:26,29,5d,a0,2c,1f,ff,6a,4e,b4,7e,df,4d,dc,09,62,45,b8,c8,99,63,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]

"a0"=hex:20,01,00,00,62,3e,9d,d8,1b,af,0a,8d,76,7d,b5,5f,c2,02,b3,7e,d4,..

"khjeh"=hex:2e,c6,fa,9d,8e,2a,9d,9d,bf,66,49,b6,d4,15,c5,05,2c,07,57,2c,55,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]

"khjeh"=hex:c4,a1,ee,12,fb,25,a1,28,65,3a,61,3f,c5,30,33,75,60,7d,66,b3,86,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]

"p0"="C:\Program Files\DAEMON Tools\"

"h0"=dword:00000000

"khjeh"=hex:26,29,5d,a0,2c,1f,ff,6a,4e,b4,7e,df,4d,dc,09,62,45,b8,c8,99,63,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]

"a0"=hex:20,01,00,00,62,3e,9d,d8,1b,af,0a,8d,76,7d,b5,5f,c2,02,b3,7e,d4,..

"khjeh"=hex:2e,c6,fa,9d,8e,2a,9d,9d,bf,66,49,b6,d4,15,c5,05,2c,07,57,2c,55,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]

"khjeh"=hex:c4,a1,ee,12,fb,25,a1,28,65,3a,61,3f,c5,30,33,75,60,7d,66,b3,86,..

 

scanning hidden registry entries ...

 

scanning hidden files ...

 

scan completed successfully

hidden processes: 0

hidden services: 0

hidden files: 0

 

 

Remaining Services :

 

 

 

 

Authorized Application Key Export:

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL France"

"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"

"%windir%\\system32\\ccapp.exe"="%windir%\\system32\\ccapp.exe:*:Enabled:System Process"

"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox"

"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Disabled:Internet Explorer"

"C:\\Program Files\\MaxTV\\maxtv.exe"="C:\\Program Files\\MaxTV\\maxtv.exe:*:Disabled:MaxTV Online"

"C:\\WINDOWS\\system32\\rtcshare.exe"="C:\\WINDOWS\\system32\\rtcshare.exe:*:Enabled:Partage de l'application RTC"

"C:\\Program Files\\NetMeeting\\conf.exe"="C:\\Program Files\\NetMeeting\\conf.exe:*:Enabled:Windows© NetMeeting©"

"C:\\WINDOWS\\system32\\TNSClient.exe"="C:\\WINDOWS\\system32\\TNSClient.exe:*:Enabled:TNSClient"

"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"

"C:\\GBConcept\\Programme\\Alexandrie551g.EXE"="C:\\GBConcept\\Programme\\Alexandrie551g.EXE:*:Enabled:4e Dimension"

"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"

"C:\\Program Files\\Lemoncast\\lemoncast.exe"="C:\\Program Files\\Lemoncast\\lemoncast.exe:*:Enabled:OneClick"

"C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\85exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\85exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\24exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\24exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\52exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\52exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\90exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\90exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\96exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\96exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\13exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\13exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\45exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\45exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\36exml32.9.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\36exml32.9.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\60exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\60exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\27exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\27exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\29exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\29exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\32exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\32exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\42exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\42exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\30exml32.9.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\30exml32.9.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\79exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\79exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82exml32.9.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82exml32.9.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exml32.9.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exml32.9.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\59exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\59exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\1exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\1exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\7exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\7exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\48exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\48exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\35exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\35exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\36exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\36exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\89exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\89exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\20exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\20exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\86exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\86exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\1exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\1exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\12exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\12exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\30exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\30exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\25exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\25exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\23exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\23exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\32exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\32exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\76exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\76exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\22exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\22exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\88exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\88exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\43exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\43exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\53exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\53exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\74exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\74exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\6exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\6exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\93exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\93exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\80exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\80exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\6exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\6exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\72exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\72exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\29exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\29exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\52exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\52exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\17exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\17exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\49exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\49exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\69exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\69exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\92exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\92exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\45exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\45exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\21exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\21exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\61exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\61exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\62exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\62exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\97exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\97exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\4exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\4exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\54exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\54exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\18exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\18exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\26exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\26exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\49exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\49exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\53exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\53exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\59exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\59exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\33exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\33exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\56exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\56exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\25exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\25exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\54exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\54exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\98exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\98exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\31exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\31exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\57exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\57exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\43exinjs.aa.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\43exinjs.aa.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\74exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\74exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\80exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\80exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3exed32_2.d.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3exed32_2.d.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\61exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\61exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\97exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\97exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\49exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\49exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\85exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\85exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\64exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\35exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\35exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\68exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\68exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\30exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\30exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\83exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\83exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\79exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\79exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\72exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\72exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\54exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\54exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\90exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\90exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\7exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\7exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\24exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\24exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\43exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\43exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\53exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\53exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\4exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\4exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\62exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\62exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\74exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\74exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\69exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\69exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\56exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\56exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\26exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\26exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\27exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\27exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\60exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\60exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\92exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\92exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\88exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\88exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\36exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\36exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\93exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\93exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\20exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\20exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\18exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\18exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\22exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\22exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\23exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\23exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\17exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\17exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\25exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\25exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\42exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\42exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\89exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\89exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\96exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\96exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\21exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\21exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\12exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\12exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\80exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\80exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\13exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\13exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\6exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\6exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\32exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\32exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\12exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\12exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\85exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\85exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\8exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\61exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\61exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\46exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\29exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\29exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\65exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\65exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\60exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\60exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\0exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\48exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\48exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\98exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\98exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\65exed32_2.e.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\65exed32_2.e.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\45exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\45exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\76exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\76exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\57exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\57exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\31exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\31exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\52exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\52exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"="C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe:*:Enabled:Veoh Client"

"C:\\Documents and Settings\\Angeblanc\\Bureau\\openarena-0.7.0\\openarena.exe"="C:\\Documents and Settings\\Angeblanc\\Bureau\\openarena-0.7.0\\openarena.exe:*:Enabled:openarena"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\19ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\63ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\94ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\15ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\35ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\35ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\81ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\57ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\57ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\86ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\86ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\38ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\21ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\21ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\78ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\1ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\1ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\18ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\18ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\68ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\68ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\11ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\40ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\13ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\13ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\99ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\34ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\73ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\62ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\62ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\71ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\14ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\47ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\70ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\87ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\56ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\56ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\58ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\89ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\89ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\93ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\93ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\66ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\42ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\42ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\31ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\31ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\24ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\24ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\5ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\28ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\55ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\3ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\79ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\79ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\23ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\23ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\48ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\48ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\76ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\76ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\84ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\39ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\67ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\75ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\91ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\77ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\2ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\69ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\69ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\33ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\33ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\50ex:*:Enabled:Microsoft Update"

"C:\\Program Files\\Google\\Google Talk\\googletalk.exe"="C:\\Program Files\\Google\\Google Talk\\googletalk.exe:*:Enabled:Google Talk"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\26ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\26ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\10ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\59ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\59ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\51ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\51ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\41ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\16ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\37ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\82ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\95ex:*:Enabled:Microsoft Update"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9ex"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\9ex:*:Enabled:Microsoft Update"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\23exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\23exmdnk23.exe:*:Disabled:23exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\84exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\84exmdnk23.exe:*:Enabled:84exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\58exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\58exmdnk23.exe:*:Disabled:58exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\31exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\31exmdnk23.exe:*:Disabled:31exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\39exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\39exmdnk23.exe:*:Disabled:39exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\5exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\5exmdnk23.exe:*:Disabled:5exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\24exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\24exmdnk23.exe:*:Disabled:24exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\61exmdnk23.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\61exmdnk23.exe:*:Disabled:61exmdnk23"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\15exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\15exmdnk24.exe:*:Disabled:15exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\42exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\42exmdnk24.exe:*:Disabled:42exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\47exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\47exmdnk24.exe:*:Disabled:47exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\81exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\81exmdnk24.exe:*:Disabled:81exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\93exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\93exmdnk24.exe:*:Disabled:93exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\21exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\21exmdnk24.exe:*:Disabled:21exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\97exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\97exmdnk24.exe:*:Disabled:97exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\55exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\55exmdnk24.exe:*:Disabled:55exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\96exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\96exmdnk24.exe:*:Disabled:96exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\1exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\1exmdnk24.exe:*:Disabled:1exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\79exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\79exmdnk24.exe:*:Disabled:79exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\44exmdnk24.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\44exmdnk24.exe:*:Disabled:44exmdnk24"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\45exmdnk25.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\45exmdnk25.exe:*:Disabled:45exmdnk25"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\29exmdnk25.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\29exmdnk25.exe:*:Disabled:29exmdnk25"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\24exmdnk25.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\24exmdnk25.exe:*:Disabled:24exmdnk25"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\61exmdnk25.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\61exmdnk25.exe:*:Disabled:61exmdnk25"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\15exmdnk25.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\15exmdnk25.exe:*:Disabled:15exmdnk25"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\82exmdnk26.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\82exmdnk26.exe:*:Disabled:82exmdnk26"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\20exmdnk26.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\20exmdnk26.exe:*:Disabled:20exmdnk26"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\47exmdnk26.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\47exmdnk26.exe:*:Disabled:47exmdnk26"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\99exmdnk26.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\99exmdnk26.exe:*:Disabled:99exmdnk26"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\54exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\54exmdnk28.exe:*:Disabled:54exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\62exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\62exmdnk28.exe:*:Disabled:62exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\36exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\36exmdnk28.exe:*:Disabled:36exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\39exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\39exmdnk28.exe:*:Disabled:39exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\46exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\46exmdnk28.exe:*:Disabled:46exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\70exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\70exmdnk28.exe:*:Disabled:70exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\98exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\98exmdnk28.exe:*:Disabled:98exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\42exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\42exmdnk28.exe:*:Disabled:42exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\38exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\38exmdnk28.exe:*:Disabled:38exmdnk28"

"C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44exinjs.ab.exe"="C:\\DOCUME~1\\ANGEBL~1\\LOCALS~1\\Temp\\44exinjs.ab.exe:*:Enabled:Microsoft Update"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\94exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\94exmdnk28.exe:*:Disabled:94exmdnk28"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\79exmdnk28.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\79exmdnk28.exe:*:Disabled:79exmdnk28"

"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"

"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\40exmdnk30.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\40exmdnk30.exe:*:Disabled:40exmdnk30"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\83exmdnk31.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\83exmdnk31.exe:*:Disabled:83exmdnk31"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\37exmdnk31.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\37exmdnk31.exe:*:Disabled:37exmdnk31"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\73exmdnk31.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\73exmdnk31.exe:*:Disabled:73exmdnk31"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\82exmdnk32.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\82exmdnk32.exe:*:Disabled:82exmdnk32"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\36exmdnk33.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\36exmdnk33.exe:*:Disabled:36exmdnk33"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\71exmdnk33.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\71exmdnk33.exe:*:Disabled:71exmdnk33"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\3exmdnk33.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\3exmdnk33.exe:*:Disabled:3exmdnk33"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\75exmdnk34.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\75exmdnk34.exe:*:Enabled:75exmdnk34"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\12exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\12exmdnk35.exe:*:Disabled:12exmdnk35"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\24exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\24exmdnk35.exe:*:Disabled:24exmdnk35"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\82exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\82exmdnk35.exe:*:Disabled:82exmdnk35"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\38exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\38exmdnk35.exe:*:Disabled:38exmdnk35"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\40exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\40exmdnk35.exe:*:Enabled:40exmdnk35"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\86exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\86exmdnk35.exe:*:Disabled:86exmdnk35"

"C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\6exmdnk35.exe"="C:\\Documents and Settings\\Angeblanc\\Local Settings\\Temp\\6exmdnk35.exe:*:Disabled:6exmdnk35"

"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype. Take a deep breath "

"C:\\Program Files\\CyberLink\\PCM4Everio\\PCM4Everio.exe"="C:\\Program Files\\CyberLink\\PCM4Everio\\PCM4Everio.exe:*:Enabled:CyberLink PowerCinema NE for Everio"

"C:\\Program Files\\CyberLink\\PCM4Everio\\EverioService.exe"="C:\\Program Files\\CyberLink\\PCM4Everio\\EverioService.exe:*:Enabled:CyberLink PowerCinema NE for Everio Resident Program"

"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe:*:Enabled:Render Manager"

"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe:*:Enabled:Studio"

"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe:*:Enabled:PMSRegisterFile"

"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe:*:Enabled:umi"

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"

"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"

"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

 

Remaining Files :

 

 

File Backups: - C:\SDFix\SDFix\backups\backups.zip

 

Files with Hidden Attributes :

 

Fri 23 Sep 2005 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"

Tue 2 Jan 2007 242,688 A..H. --- "C:\Documents and Settings\Angeblanc\Bureau\~WRL0005.tmp"

Tue 2 Jan 2007 159,744 A..H. --- "C:\Documents and Settings\Angeblanc\Bureau\~WRL1555.tmp"

Tue 2 Jan 2007 157,184 A..H. --- "C:\Documents and Settings\Angeblanc\Bureau\~WRL2063.tmp"

Tue 2 Jan 2007 206,848 A..H. --- "C:\Documents and Settings\Angeblanc\Bureau\~WRL3129.tmp"

Tue 6 Mar 2007 214,528 A..H. --- "C:\Documents and Settings\Angeblanc\Mes documents\~WRL0796.tmp"

Wed 4 Jun 2008 106,496 ...H. --- "C:\Documents and Settings\Angeblanc\Mes documents\CV\~WRL0004.tmp"

Sun 8 Jun 2008 107,520 ...H. --- "C:\Documents and Settings\Angeblanc\Mes documents\CV\~WRL2862.tmp"

Wed 7 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\24af2a69c06a4de03e35dc89d706475f\BIT4.tmp"

Tue 2 Jan 2007 157,696 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL0253.tmp"

Tue 2 Jan 2007 160,256 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL0316.tmp"

Mon 8 Jan 2007 294,912 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL1399.tmp"

Wed 3 Jan 2007 143,872 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL1410.tmp"

Tue 2 Jan 2007 159,744 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL3317.tmp"

Tue 2 Jan 2007 156,160 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL3449.tmp"

Wed 3 Jan 2007 161,792 A..H. --- "C:\Documents and Settings\Angeblanc\Application Data\Microsoft\Word\~WRL3995.tmp"

Fri 23 Sep 2005 4,348 ...H. --- "C:\Documents and Settings\Angeblanc\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"

Wed 22 Aug 2007 20 A..H. --- "C:\Documents and Settings\Angeblanc\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"

Fri 23 Sep 2005 400 A.SH. --- "C:\Documents and Settings\Angeblanc\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"

 

Finished!

 

et le rapport HijackThis :

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 18:52:41, on 26/06/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\drivers\CDAC11BA.EXE

C:\WINDOWS\System32\FTRTSVC.exe

C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe

C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe

C:\WINDOWS\system32\LVCOMSX.EXE

C:\Program Files\Logitech\Video\LogiTray.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe

C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\HPQ\SHARED\HPQWMI.exe

C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

C:\Program Files\DAEMON Tools\daemon.exe

C:\Program Files\Hp\Digital Imaging\bin\hpqtra08.exe

C:\Program Files\Logitech\Video\FxSvr2.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...n&pf=laptop

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll

O3 - Toolbar: Vue HP - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe

O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start

O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe

O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE

O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe

O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe

O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Le Petit Robert Hyperappel] D:\prhyper.exe

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot

O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe

O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKCU\..\Run: [LaunchList] C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - S-1-5-18 Startup: AutoTBar.exe (User 'SYSTEM')

O4 - .DEFAULT Startup: AutoTBar.exe (User 'Default user')

O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hp\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe

O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)

O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=Q305&bd=pavilion&pf=laptop

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab

O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab

O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll

O18 - Protocol: msell - {E90F00EC-3694-11D2-99FE-00104B2D62CC} - C:\PROGRA~1\FICHIE~1\MICROS~1\REFERE~1\MSELL.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Unknown owner - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

O23 - Service: PCLEPCI - Pinnacle Systems GmbH - C:\WINDOWS\system32\drivers\pclepci.sys

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

 

--

End of file - 8705 bytes

 

Posté(e)

• supprime c:\SDFix

 

• Télécharger OTMoveIt2 par OldTimer.

 

http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe

 

* Enregistrer ce fichier sur le Bureau.

* Faire un double clic sur OTMoveIt2.exe pour lancer l'exécution de l'outil. (Note: Si vous utilisez Vista, faire un clic droit sur le fichier puis choisir Exécuter en tant qu'administrateur).

* Copier les lignes de la zone "Code" ci-dessous dans le Presse-papiers en les sélectionnant TOUTES puis en appuyant simultanément sur les touches CTRL et C (ou, après les avoir sélectionnées, en faisant un clic droit puis en choisissant Copier):

C:\Program Files\Boonty
C:\Program Files\Fichiers communs\BOONTY Shared
EmptyTemp

* Retourner dans la fenêtre de OTMoveIt2, faire un clic droit dans la zone "Paste List of Files/Folders to Move" ) puis choisir Coller.

* Cliquer sur le bouton rouge Moveit!.

* Copier tout ce qui se trouve dans la zone Results (sous la barre verte) dans le Presse-papiers en sélectionnant TOUTES LES LIGNES puis en appuyant simultanément sur les touches CTRL et C (ou, après les avoir sélectionnées, en faisant un clic droit puis en choisissant Copier), et coller ces résulats en réponse sur le forum.

* Fermer OTMoveIt2

 

Note: Si un fichier ou un dossier ne peut pas être déplacé immédiatement, un redémarrage sera peut-être nécessaire afin de terminer le processus de déplacement. Si le redémarrage de la machine vous est demandé, choisir Oui/Yes. Dans ce cas, après le redémarrage, ouvrir le Bloc-notes (Démarrer->Tous les programmes->Accessoires->Bloc-notes), cliquer sur Fichier->Ouvrir, dans la zone "Nom du fichier" taper *.log et appuyer sur la touche Entrée, naviguer jusqu'au dossier C:\_OTMoveIt\MovedFiles, puis ouvrir le fichier .log le plus récent; ensuite faire un copier/coller du contenu de ce document en réponse sur le forum.

 

• desinstalle avast via ajout\suppression de programmes et installe un antivirus performant , antivir

 

Lien de telechargement:: http://dl1.avgate.net/down/windows/antivir...n_winu_en_h.exe

 

l'update est un peu penible en ce moment , les servers sont un peu saturés , telecharge le fichier de mise à jour:

http://dl.antivir.de/down/vdf/ivdf_fusebundle_nt_en.zip

 

tuto :: http://www.malekal.com/tutorial_antivir.php

 

pour le mettre à jour manuellement , onglet update, manual update et specifie le chemin ou se trouve ivdf_fusebundle_nt_en.zip precedemment telechargé.

 

Poste le rapport antivir.

Posté(e)

Voici le rapport OTmoveIT2

 

 

File/Folder C:\Program Files\Boonty not found.

C:\Program Files\Fichiers communs\BOONTY Shared\Service moved successfully.

C:\Program Files\Fichiers communs\BOONTY Shared moved successfully.

< EmptyTemp >

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\hpodvd09.log scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5474.tmp scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5488.tmp scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60AC.tmp scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60C2.tmp scheduled to be deleted on reboot.

File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_650.dat scheduled to be deleted on reboot.

File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.

Temp folders emptied.

IE temp folders emptied.

 

OTMoveIt2 by OldTimer - Version 1.0.4.2 log created on 06262008_193739

 

Files moved on Reboot...

C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\hpodvd09.log moved successfully.

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5474.tmp not found!

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5488.tmp not found!

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60AC.tmp not found!

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60C2.tmp not found!

C:\WINDOWS\temp\Perflib_Perfdata_650.dat moved successfully.

File C:\WINDOWS\temp\_avast4_\Webshlock.txt not found!

 

A suivre, celui d'antivir.

Posté(e)

Voici le rapport OTmoveIT2

Mais j'ai un doute... ceci est apparu lorsque mon ordinateur s'est rallumé... (parce que j'ai effectivement dû le redémarrer).

(le fichier est aussi un".log" ):

 

File/Folder C:\Program Files\Boonty not found.

C:\Program Files\Fichiers communs\BOONTY Shared\Service moved successfully.

C:\Program Files\Fichiers communs\BOONTY Shared moved successfully.

< EmptyTemp >

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\hpodvd09.log scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5474.tmp scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5488.tmp scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60AC.tmp scheduled to be deleted on reboot.

File delete failed. C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60C2.tmp scheduled to be deleted on reboot.

File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_650.dat scheduled to be deleted on reboot.

File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.

Temp folders emptied.

IE temp folders emptied.

 

OTMoveIt2 by OldTimer - Version 1.0.4.2 log created on 06262008_193739

 

Files moved on Reboot...

C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\hpodvd09.log moved successfully.

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5474.tmp not found!

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF5488.tmp not found!

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60AC.tmp not found!

File C:\DOCUME~1\ANGEBL~1\LOCALS~1\Temp\~DF60C2.tmp not found!

C:\WINDOWS\temp\Perflib_Perfdata_650.dat moved successfully.

File C:\WINDOWS\temp\_avast4_\Webshlock.txt not found!

 

 

 

et quand je cherche comme indiqué un document ".log" dans les dossiers de C:\_OTMoveIt\MovedFiles je trouve ceci :

 

06/26/08 18:51:37 Entering StartDeviceDiscovery.

06/26/08 18:51:37 Exiting StartDeviceDiscovery and returning 1.

06/26/08 18:51:37 Entering DDWorkerThreadProc

Doing initial wait.

06/26/08 18:51:37 Finished initial wait.

06/26/08 18:51:37 Wait for plug-and-play to finish.

06/26/08 18:51:38 Creating list of supported devices in main loop.

06/26/08 18:51:38 Entering CreateListOfSupportedDevices.

06/26/08 18:51:38 Searching C:\Program Files\HP\Digital Imaging\data\DeviceDiscovery ...

06/26/08 18:51:38 Trying C:\Program Files\HP\Digital Imaging\data\DeviceDiscovery\hpodd09.ini ...

06/26/08 18:51:38 Insert product class "hp psc 1000 series".

06/26/08 18:51:38 Insert product class "hp psc 1100 series".

06/26/08 18:51:39 Insert product class "hp psc 1200 series".

06/26/08 18:51:39 Insert product class "hp psc 1300 series".

06/26/08 18:51:39 Insert product class "hp psc 1310 series".

06/26/08 18:51:39 Insert product class "hp psc 2100 series".

06/26/08 18:51:39 Insert product class "hp psc 2150 series".

06/26/08 18:51:39 Insert product class "hp psc 2170 series".

06/26/08 18:51:39 Insert product class "hp psc 2200 series".

06/26/08 18:51:39 Insert product class "hp psc 2300 series".

06/26/08 18:51:40 Insert product class "hp psc 2400 series".

06/26/08 18:51:40 Insert product class "hp psc 2500 series".

06/26/08 18:51:40 Insert product class "hp officejet 4100 series".

06/26/08 18:51:40 Insert product class "hp officejet 4105 series".

06/26/08 18:51:40 Insert product class "hp officejet 4200 series".

06/26/08 18:51:40 Insert product class "hp officejet 5500 series".

06/26/08 18:51:40 Insert product class "hp officejet 6100 series".

06/26/08 18:51:40 Insert product class "HP Officejet 6200 series".

06/26/08 18:51:41 Insert product class "HP Officejet 7300 series".

06/26/08 18:51:41 Insert product class "HP Officejet 7400 series".

06/26/08 18:51:41 Insert product class "HP PSC 2350 series".

06/26/08 18:51:41 Insert product class "HP Photosmart 2600 series".

06/26/08 18:51:41 Insert product class "HP Photosmart 2700 series".

06/26/08 18:51:41 Insert product class "HP Officejet 7200 series".

06/26/08 18:51:41 Insert product class "HP PSC 1600 series".

06/26/08 18:51:42 Insert product class "HP PSC 1500 series".

06/26/08 18:51:42 Insert product class "HP PSC 1400 series".

06/26/08 18:51:42 Exiting CreateListOfSupportedDevices and returning 1.

06/26/08 18:51:42 Entering BuildQueues.

06/26/08 18:51:42 Entering CreateListFromContext.

06/26/08 18:51:42 Exiting CreateListFromContext and returning 1.

06/26/08 18:51:43 Found and using context id: #Hewlett-Packard#HP PSC 1600 series#1125225809

06/26/08 18:51:43 Exiting BuildQueues and returning 1.

06/26/08 18:51:43 Entering AddDevices.

06/26/08 18:51:43 Exiting AddDevices and returning 1.

06/26/08 18:51:43 Entering ModifyDevices.

06/26/08 18:51:43 Exiting ModifyDevices and returning 1.

06/26/08 18:51:43 Entering RemoveDevices.

06/26/08 18:51:43 Exiting RemoveDevices and returning 1.

 

 

 

A suivre, celui d'antivir.

Posté(e)
A suivre, celui d'antivir.

 

ok , je serais peut etre plus là ce soir pour le lire ;o) , demain Taf , je le lirais vers 06:30AM si posté.

 

et quand je cherche comme indiqué un document ".log" dans les dossiers de C:\_OTMoveIt\MovedFiles je trouve ceci :

 

Nop c'est bon , supprime C:\_OTMoveIt , j'ai vu ce qu'il fallait voir avec ce que tu as posté en 1er

Posté(e)
ok , je serais peut etre plus là ce soir pour le lire ;o) , demain Taf , je le lirais vers 06:30AM si posté.

 

 

 

Nop c'est bon , supprime C:\_OTMoveIt , j'ai vu ce qu'il fallait voir avec ce que tu as posté en 1er

 

 

Ok pas de soucis, je suis pas pressée pour faire tout ça ! Merci en tout cas du temps que tu as consacré à mes problèmes je poste dès que c'est fait le rapport AntiVir.

Posté(e)

en attendant un bon defragmenteur ::

 

http://www.kessels.com/JkDefrag/JkDefrag-3.34.zip

 

• telecharge le à la racine de ton disk en c:\ , clic droit dessus extraire ici , tu dois obtenir un dossier C:\JkDefrag-3.34 sans le fichier jk.bat

 

67046.jpeg

http://imagik.fr/view-rl/67046

 

• telecharge sur ton bureau jk.bat » http://www.sendspace.com/file/awlvnb

 

• double clic sur jk.bat , appuie sur une touche et laisse la defrag se faire ;o), faut que ce soit positionné comme ça sinon ça ne fonctionnera pas !!

Posté(e)

Et voici le rapport d'Antivir. A chaque fois qu'il me demandait quelque chose, j'ai répondu "mettre en quarantaine".

 

Avira AntiVir Personal

Report file date: jeudi 26 juin 2008 22:02

 

Scanning for 1363032 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Boot mode: Normally booted

Username: SYSTEM

Computer name: PTIANGEBLANC

 

Version information:

BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00

AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 09:02:56

AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 08:43:37

LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 08:41:23

LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 08:28:40

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34

ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 19:12:26

ANTIVIR2.VDF : 7.0.5.2 2048 Bytes 24/06/2008 19:12:26

ANTIVIR3.VDF : 7.0.5.12 71168 Bytes 26/06/2008 19:12:28

Engineversion : 8.1.0.59

AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21

AESCRIPT.DLL : 8.1.0.44 278907 Bytes 26/06/2008 19:13:19

AESCN.DLL : 8.1.0.22 119157 Bytes 26/06/2008 19:13:17

AERDL.DLL : 8.1.0.20 418165 Bytes 26/06/2008 19:13:15

AEPACK.DLL : 8.1.1.6 364918 Bytes 26/06/2008 19:13:06

AEOFFICE.DLL : 8.1.0.20 192891 Bytes 26/06/2008 19:13:00

AEHEUR.DLL : 8.1.0.32 1274231 Bytes 26/06/2008 19:12:58

AEHELP.DLL : 8.1.0.15 115063 Bytes 26/06/2008 19:12:43

AEGEN.DLL : 8.1.0.29 307573 Bytes 26/06/2008 19:12:42

AEEMU.DLL : 8.1.0.6 430451 Bytes 26/06/2008 19:12:38

AECORE.DLL : 8.1.0.31 168310 Bytes 26/06/2008 19:12:33

AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 17:07:53

AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 10:37:50

AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:26:47

AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 17:07:49

AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23

AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 08:31:31

SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02

SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 17:08:39

NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10

RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 14:37:25

RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 12:02:11

 

Configuration settings for the scan:

Jobname..........................: Complete system scan

Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp

Logging..........................: low

Primary action...................: interactive

Secondary action.................: ignore

Scan master boot sector..........: on

Scan boot sector.................: on

Boot sectors.....................: C:,

Scan memory......................: on

Process scan.....................: on

Scan registry....................: on

Search for rootkits..............: off

Scan all files...................: Intelligent file selection

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

 

Start of the scan: jeudi 26 juin 2008 22:02

 

The scan of running processes will be started

Scan process 'avscan.exe' - '1' Module(s) have been scanned

Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned

Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned

Scan process 'Watch.exe' - '1' Module(s) have been scanned

Scan process 'wuauclt.exe' - '1' Module(s) have been scanned

Scan process 'alg.exe' - '1' Module(s) have been scanned

Scan process 'hpqwmi.exe' - '1' Module(s) have been scanned

Scan process 'ALERTM~1.EXE' - '1' Module(s) have been scanned

Scan process 'PollingModule.exe' - '1' Module(s) have been scanned

Scan process 'Inactivity.exe' - '1' Module(s) have been scanned

Scan process 'Toaster.exe' - '1' Module(s) have been scanned

Scan process 'FxSvr2.exe' - '1' Module(s) have been scanned

Scan process 'ComComp.exe' - '1' Module(s) have been scanned

Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned

Scan process 'LogitechDesktopMessenger.exe' - '1' Module(s) have been scanned

Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned

Scan process 'GestionnaireInternet.exe' - '1' Module(s) have been scanned

Scan process 'daemon.exe' - '1' Module(s) have been scanned

Scan process 'ctfmon.exe' - '1' Module(s) have been scanned

Scan process 'avgnt.exe' - '1' Module(s) have been scanned

Scan process 'jusched.exe' - '1' Module(s) have been scanned

Scan process 'reader_sl.exe' - '1' Module(s) have been scanned

Scan process 'LogiTray.exe' - '1' Module(s) have been scanned

Scan process 'LVCOMSX.EXE' - '1' Module(s) have been scanned

Scan process 'eabservr.exe' - '1' Module(s) have been scanned

Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned

Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned

Scan process 'SynTPLpr.exe' - '1' Module(s) have been scanned

Scan process 'HP Wireless Assistant.exe' - '1' Module(s) have been scanned

Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned

Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned

Scan process 'CDAC11BA.EXE' - '1' Module(s) have been scanned

Scan process 'avguard.exe' - '1' Module(s) have been scanned

Scan process 'explorer.exe' - '1' Module(s) have been scanned

Scan process 'sched.exe' - '1' Module(s) have been scanned

Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned

Scan process 'spoolsv.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned

Scan process 'lsass.exe' - '1' Module(s) have been scanned

Scan process 'services.exe' - '1' Module(s) have been scanned

Scan process 'winlogon.exe' - '1' Module(s) have been scanned

Scan process 'csrss.exe' - '1' Module(s) have been scanned

Scan process 'smss.exe' - '1' Module(s) have been scanned

50 processes with 50 modules were scanned

 

Starting master boot sector scan:

Master boot sector HD0

[iNFO] No virus was found!

 

Start scanning boot sectors:

Boot sector 'C:\'

[iNFO] No virus was found!

 

Starting to scan the registry.

The registry was scanned ( '42' files ).

 

 

Starting the file scan:

 

Begin scan in 'C:\'

C:\hiberfil.sys

[WARNING] The file could not be opened!

C:\pagefile.sys

[WARNING] The file could not be opened!

C:\RECYCLER\S-1-5-21-480706914-2015954215-928104048-1006\Dc14\SDFix\backups\backups.zip

[0] Archive type: ZIP

--> backups/smss.exe

[DETECTION] Is the Trojan horse TR/Proxy.Horst.Gen

[NOTE] The file was moved to '48c7047f.qua'!

C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP657\A0156952.exe

[DETECTION] Is the Trojan horse TR/Proxy.Horst.Gen

[NOTE] The file was moved to '48950c40.qua'!

C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP657\A0156960.exe

[DETECTION] Is the Trojan horse TR/Proxy.Horst.Gen

[NOTE] The file was moved to '48950c45.qua'!

C:\WINDOWS\system32\drivers\sptd.sys

[WARNING] The file could not be opened!

 

 

End of the scan: vendredi 27 juin 2008 00:07

Used time: 2:05:07 min

 

The scan has been done completely.

 

8044 Scanning directories

356192 Files were scanned

3 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

0 files were deleted

0 files were repaired

3 files were moved to quarantine

0 files were renamed

3 Files cannot be scanned

356189 Files not concerned

8288 Archives were scanned

3 Warnings

3 Notes

Posté(e)
Et voici le rapport d'Antivir. A chaque fois qu'il me demandait quelque chose, j'ai répondu "mettre en quarantaine".

 

:P c'est ce qu'il fallait faire , ce n'est en definitive pas grand chose , point de restauration systeme infecté et supprimé ainsi que SDFix dans ta corbeille .

 

» vide alors la quarantaine d'antivir

 

» telecharge sur ton bureau:

 

- AtfCleaner --> http://www.atribune.org/ccount/click.php?id=1

 

ATF Cleaner

Double-clique ATF-Cleaner.exe afin de lancer le programme.

Sous l'onglet Main, choisis : Select All

Clique sur le bouton Empty Selected, patiente le temp du nettoyage, ok

Si tu utilises le navigateur Firefox :

Clique Firefox au haut et choisis : Select All

Clique le bouton Empty Selected

Patiente le temp du nettoyage

NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.

Si tu utilises le navigateur Opera :

Clique Opera au haut et choisis : Select All

Clique le bouton Empty Selected

NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.

Clique Exit, du menu prinicipal, afin de fermer le programme.

Le prochain démarrage du PC sera un peu plus long , le prefetch ayant été vidé.

 

» et effectue une defrag avec JK comme expliqué plus haut.

 

Ton probleme doit etre résolu.

  • 2 mois après...

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...