Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)
Re!

 

As-tu passer SDFIx ???? :P

 

Si tu essaie de te désinfecter en autonomie, sans connaissance et sans m'en parler, on courre à la catastrophe (et à la perte de temps...). Te fais-t uaider en parallèle sur un autre forum?

 

 

Par ailleurs

 

  • il reste des répertoires de LimeWire :P ! Supprime-les !
     
    C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire
    C:\Documents and Settings\enfants\Application Data\LimeWire
  • ton infection de type LOP a été installé (par tes soins !) lors de l'installation de ce logiciel:
     
    C:\Program Files\Messenger Plus! Live
     
    En effet il propose, à la sauvette (le bougre), d'installer des "sponsors" qui sont en réalités des adwares qui t'abreuvent de pubs. Si on ne répond pas "NON" à l'install', c'est mort!
     
     
    On poursuit pour la désinfection:
     
     
     
     
     
    flechedroitets2.pngCCLEANER SLIM
    • Lance CCleaner
    • Clique sur l'onglet : "Registre"
    • Clique sur "Rechercher des erreurs" puis "Corriger les erreurs"
    • Répond "oui" à la demande de sauvegarde proposée et enregistre-la dans tes documents
    • Clique sur l'onglet "nettoyeur" puis "lancer le nettoyage"
    • Pas de rapport à fournir ce coup-ci !

     

     

     

     

    flechedroitets2.pngCREATION/EXECUTION D'UN CFSCRIPT

     

    Lis bien la procédure avant de te lancer. Tu peux même l'imprimer, éventuellement.

     

    • Ouvre un nouveau fichier du Bloc-notes
    • "Copie/Colle" tout le contenu de la boîte Code ci-dessous (mais n'inclus pas le mot "Code") dans le fichier texte du bloc-note :
       
      KillAll::
      
      Folder::
      C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\programidle 
      C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2
      C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom
      C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo
      C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\Zylom
      C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter
      
      File::
      C:\Program Files\Incomplete\downloads.dat


    • Sauvegarde ce fichier sur ton Bureau en l'appelant IMPERATIVEMENT CFScript.txt
       
      ATTENTION: ce script a été conçu spécifiquement pour ce cas précis de désinfection, ne pas l'utiliser pour votre propre machine!!

    • Désactive ton antivirus et ton antispyware
    • Te référant à l'image ci-dessous, déplace CFScript.txt sur ComboFix.exe
      ComboFix sera lancé.
       
      CFScript.gif
    • Une fenêtre bleue va apparaitre: patiente le temps du scan.Le bureau va disparaitre à plusieurs reprises: c'est normal!
      Ne touche à rien tant que le scan n'est pas terminé.
    • ComboFix peut exiger un redémarrage pour compléter son travail. Accepte.
    • Lorsque l'outil aura terminé, un rapport ComboFix.txt apparaîtra à l'écran.
    • Soumet le fichier en cliquant "OK"
    • Poste le rapport suivant dans ta prochaine réponse :
       
      - Combofix.txt (il est stocké ici: > C:\ComboFix.txt)
    • Réactive enfin ton antivirus et ton antispyware

     

     

     

    Puis:

     

     

    flechedroitets2.pngHIJACKTHIS

     

    • Relance HijackThis
    • Sélectionne "Do a system scan only"
    • Coche les lignes suivantes si elles existent:
    • Ferme tes navigateurs internet (ex: Firefox et Internet Explorer)
    • Clique en bas sur "Fix checked"
    • Redémarre
    • Poste un nouveau rapport HijackThis

 

salut oGu, juste en passant, tu es le seul à "travailler " sur mon cas, quand tu m'avais demandé de n'obtenir de l'aide que de toi, et ben je t'ai écouté ! :P le SDfix avait déjà était fait ... bon avant toutes choses, j'ai tout enlevé les répertoires de limewire , sauf un seul fichier (situé dans les dossiers Enfants... )que je suis incapable de supprimer...c'est pourtant un mp3 comme les autres... qui es situé dans shared ... je procède quand même ? ou bien comment je fais pour le supprimer ? et pour messengerplus live, je le supprime ?

 

merci , j'attends ta réponse avant de poursuivre ( promis :P )

té gentil d'être aussi patient !

Posté(e) (modifié)
salut oGu, juste en passant, tu es le seul à "travailler " sur mon cas, quand tu m'avais demandé de n'obtenir de l'aide que de toi, et ben je t'ai écouté ! :P

 

Bon, me voilà rassuré!

 

le SDfix avait déjà était fait ...

 

Tiens, étrange, car les rapports précédents ne l'indiquaient pas...Tu l'as passé de ton propre chef?

 

Tu devrais trouver un rapport SDFix dans le dossier C:\SDFix sous le nom Report.txt: peux-tu me le poster?

 

 

 

bon avant toutes choses, j'ai tout enlevé les répertoires de limewire , sauf un seul fichier (situé dans les dossiers Enfants... )que je suis incapable de supprimer...

 

 

Ok: j'ai en conséquence légèrement modifié le CFScript afin qu'il supprime ce dossier récalcitrant: tu peux donc continuer la procédure du post#20.

 

 

Pour Messenger Plus, tu peux maintenant le garder, car l'infection LOP qui lui était liée a été neutralisée: le logiciel Messenger Plus en lui-même ne pose pas de problème, ce sont les sponsors infectieux qu'il installe qui sont gênants.

Modifié par oGu
Posté(e) (modifié)
Bon, me voilà rassuré!

 

 

 

Tiens, étrange, car les rapports précédents ne l'indiquaient pas...Tu l'as passé de ton propre chef?

 

Tu devrais trouver un rapport SDFix dans le dossier C:\SDFix sous le nom Report.txt: peux-tu me le poster?

 

 

 

 

 

 

Ok: j'ai en conséquence légèrement modifié le CFScript afin qu'il supprime ce dossier récalcitrant: tu peux donc continuer la procédure du post#20.

 

 

Pour Messenger Plus, tu peux maintenant le garder, car l'infection LOP qui lui était liée a été neutralisée: le logiciel Messenger Plus en lui-même ne pose pas de problème, ce sont les sponsors infectieux qu'il installe qui sont gênants.

 

bon matin oGu, tu vas bien j'espère ; ;) , bon voilà, j'ai fais mes devoirs :

 

Rapport SDFix :

SDFix: Version 1.199 Run by guillaine on 2008-06-30 at 13:38Microsoft Windows XP [version 5.1.2600]Running From: C:\SDFixChecking Services :Restoring Default Security ValuesRestoring Default Hosts FileRebootingChecking Files : No Trojan Files FoundRemoving Temp FilesADS Check : Final Check :catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.netRootkit scan 2008-06-30 13:54:23Windows 5.1.2600 Service Pack 2 NTFSscanning hidden processes ...scanning hidden services & system hive ...scanning hidden registry entries ...scanning hidden files ...scan completed successfullyhidden processes: 0hidden services: 0hidden files: 0Remaining Services :Authorized Application Key Export:[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019""C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Disabled:Windows Live Messenger""C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"Remaining Files :Files with Hidden Attributes :Fri 20 Jun 2008 6,104,632 A..H. --- "C:\Program Files\Picasa2\setup.exe"Mon 28 Jan 2008 1,404,240 ..SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"Mon 28 Jan 2008 5,146,448 ..SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"Mon 28 Jan 2008 2,097,488 ..SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"Thu 1 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\02a4f2fd7d9c575c80786d5284ddaf44\BIT3.tmp"Finished!

ensuite mon combofix (ta modification pour détruire le dernier fichier limewire n'apparaissait pas ... :-? ..) :

 

ComboFix 08-07-03.5 - guillaine 2008-07-10 6:27:50.5 - NTFSx86

Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.172 [GMT -4:00]

Endroit: C:\Documents and Settings\guillaine.HOME-6620B39EBF\Bureau\ComboFix.exe

Command switches used :: C:\Documents and Settings\guillaine.HOME-6620B39EBF\Bureau\CFScript.txt

* Création d'un nouveau point de restauration

 

FILE ::

C:\Program Files\Incomplete\downloads.dat

.

 

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))

.

 

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\content_a.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\content_ie.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\content_m.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\content_y.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\Local.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\master.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\toolbarIE.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\toolbarIM_a.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\toolbarIM_m.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\toolbarIM_y.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Config\version.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\allow.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\block.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\bt_eglogo.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\bt_emoticonsc.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\bt_kiweelogoc.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\bt_searchbuttonc.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\bt_winksc.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\close.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\dontsend.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\icons_aboutthekiweetoolbar.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\icons_checkforupdates.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\icons_mykiwee.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\icons_viewmykiwee.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\ieskinr.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_eglogo.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_toolbardropdownmenu.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_toolbarsHelprolloverbase.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_toolbarsm1rolloverbase.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_toolbarsm2rolloverbase.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_toolbarsmegreetrollover.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\im_toolbarstextrollover.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\Install.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\Kiwee.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\kiwee_icon.ico

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\kiwee_iconX16.ico

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\kiwee_iconX48.ico

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\msnlogo.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\msntiny.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\nodeny.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\NotNow.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\ok.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\send.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\setup_banner.jpg

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\setup_splash.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_eg.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_emoticons.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_eyeglass.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_gear.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_kiwee.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_msnlogo.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_search.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_text.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\toolbar_winks.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\X.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Kiwee Toolbar2\Images\yesallow.bmp

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Delicious 2 Deluxe\_temp\gd.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Delicious 2 Deluxe\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Delicious 2 Deluxe\players\scores.xml.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Delicious 2 Web\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\_temp\gd.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\players\scores.xml.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\savegames\ametyss\GAMEMODE_ZOO.sav.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\savegames\charlie\GAMEMODE_ZOO.sav.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\savegames\dixie\GAMEMODE_ZOO.sav.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Safari Island Deluxe\savegames\loic\GAMEMODE_ZOO.sav.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Shangri La 2 - Deluxe\_temp\gd.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Shangri La 2 - Deluxe\players\Daisy.plr.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Shangri La 2 - Deluxe\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Shangri La 2 - Deluxe\players\scores.xml.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\_temp\gd.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\améaud.plr.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\Amétyss.plr.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\guillou.plr.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\guilou.plr.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\marie.plr.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Text Express 2 Deluxe\players\scores.xml.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Trivial Pursuit Édition Genus Deluxe (fr-FR)\_temp\gd.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Trivial Pursuit Édition Genus Deluxe (fr-FR)\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Trivial Pursuit Édition Genus Deluxe (fr-FR)\players\scores.xml.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\TrivialPursuitWeb\_temp\gd.xml

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\TrivialPursuitWeb\players\players.plrs.!

C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\Zylom\Games\Yahtzee Web\players\players.plrs.!

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\cache

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\ConfMedia.cyp

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoClock.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoClockVal.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoClockVal_2AAB2F6.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoComputer.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoNet.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\eophoto_default.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\eophoto_loading.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\background3_2.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\cadre_int.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\ecranpressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\eophoto_fond_default.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\pause.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\pausepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\play.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_big_bleu\playPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\pause.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\pausepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\play.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic\playPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\cadre_int.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\ecranpressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\eophoto_fond_default.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\pause.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\pausepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\play.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_bleu\playPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\background3.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\ecranPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\eophoto_fond_default.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\pause.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\pausepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\play.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoPhoto\images_classic_gris\playPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_01net_actualite.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_01net_actualite.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_1201.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_abcbourse_analyse.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_abcbourse_news.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_advisto.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_agenda_musical.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_aninmint.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_bbc.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_bd_livres_krinein.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_companynewsgroup.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_dvd_bonus.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_EoRezo_Horoscope.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_equipe_foot.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_equipe_foot.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_eurotop_foot.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_eurotop_foot.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_fcb_foot.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_football365_foot.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_football365_foot.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_fr_uefa_com.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_fr_uefa_com.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_france2_tv.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_france2_tv.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_france3_tv.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_france3_tv.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_ft.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_iht.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_info_football_foot.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_jeux_france.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_jeux_video.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_l_equipe_rugby.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_l_equipe_rugby.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_latribune_investissement.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_le_figaro_entreprise.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_le_monde_entreprise.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lefigaro_une.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lefigaro_une.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lelombrik.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lemonde_livres.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lesechos_conso.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lesechos_finance.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_lesechos_patrimoine.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_liberation_actualite.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_liberation_actualite.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_madame_figaro_cuisine.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_mangaanime.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_msn_insolites.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_narutochaos.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_nord_cinema_box_office.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_nord_cinema_critique.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_nosamieslesstars.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_om_live.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_parisetudiant.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_parisetudiant_job.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_actustar.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_france2.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_france2.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_madamefigaro.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_nouvelobs.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_tf1.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_people_tf1.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_planet_psg.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_planet_psg.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_politique_nouvelobs.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_politique_premier_ministre.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_politique_premier_ministre.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_politique_tv5.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_politique_tv5.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_ptdr.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_recette_dessert_cuisine.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_rtl_foot.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_rtl_foot.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_actualite.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_actualite.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_cinema.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_cinema.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_economie.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_insolites.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_tf1_insolites.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_umoor.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_yahoo_cuisine.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_yatahonga.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRss_yatahonga.gif

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoRss\EoRssServer.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\autoverifno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\autoverifyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\background3.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\blank21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\blank25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\correct21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\correct25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\ecranReflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\grey25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\iluminated21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\iluminated25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\iluminateno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\iluminateyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\incorrect25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\keypad.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\keypadreflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\masquer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\masquerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\new.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\newPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\print.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\save.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\savepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\verificationcell.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_mauve\verificationcellPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\autoverifno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\autoverifyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\background3.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\blank21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\blank25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\correct21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\correct25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\ecranReflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\grey25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\iluminated21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\iluminated25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\iluminateno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\iluminateyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\incorrect25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\keypad.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\keypadreflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\masquer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\masquerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\new.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\newPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\print.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\save.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\savepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\verificationcell.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_noir\verificationcellPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\autoverifno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\autoverifyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\background3.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\blank21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\blank25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\correct21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\correct25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\ecranReflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\grey25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\iluminated21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\iluminated25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\iluminateno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\iluminateyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\incorrect25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\keypad.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\keypadreflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\masquer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\masquerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\new.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\newPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\print.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\save.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\savepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\verificationcell.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_rouge\verificationcellPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\aide.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\aidePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\autoverifno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\autoverifyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\background3.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\backgroundreflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\blank21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\blank25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\correct21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\correct25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\ecranReflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\fermer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\fermerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\grey25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\iluminated21_19.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\iluminated25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\iluminateno.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\iluminateyes.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\incorrect25.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\keypad.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\keypadreflet.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\masquer.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\masquerPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\minimisepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\new.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\newPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\save.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\savepressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\verificationcell.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoSudoku\images_classic_vert\verificationcellPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\EoWeather.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\EoWeatherVal_02EC282.cfg

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\67_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\67_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\69_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\69_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\70_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\70_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\78_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\78_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\82_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\82_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\83_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\83_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\84_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\84_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\85_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\85_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\89_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\89_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\background.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\background_1.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\background_1days.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\background_2days.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\background_7days.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\band.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\band_small.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\close.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\closePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\dayPrevisionBackground.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\dayPrevisionClose.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\earth.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\fonds_écran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\help.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\helpPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\minimisePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\option.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\optionPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\reflet_ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_classic\small_background.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\67_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\67_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\69_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\69_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\70_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\70_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\78_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\78_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\82_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\82_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\83_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\83_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\84_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\84_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\85_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\85_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\89_day.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\89_night.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\about.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\back.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\background.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\background_1.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\background_1days.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\background_2days.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\background_7days.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\backPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\close.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\closePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\dayPrevisionBackground.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\dayPrevisionClose.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\earth.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\fonds_écran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\help.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\helpPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\minimise.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\minimisePressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\next.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\nextPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\option.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\optionPressed.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\reflet_ecran.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\EoWeather\images_station_meteo\txt_14x13.png

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\host.cyp

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\EoRezo\user.cyp

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\Zylom

C:\DOCUME~1\GUILLA~1.HOM\APPLIC~1\Zylom\suitcase.ico

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\programidle

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\programidle\0

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105a_plain111.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105angry_hair.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105b_wink.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105bravo_2_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105c_laugh.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105congratulations_2b.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105emot46_thanks.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105fantastic_new.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105full_of_it_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105glasses_hand2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105i_angry_steaming.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105k_crying.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105m_yes.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105mommy_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105nice_day.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105oc_sunglasses.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105oops_1e_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105s_thumbup.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105words_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\010105zd_bye_3_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\020105escribiendo_pared_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\060104puter_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\0601054_july_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\0601054_july_6.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\0601054_july_8_hat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\060105liberty_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\060105rap_36.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\070104a_01angel_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\080105b_09cheers_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\080105birthday_37.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\080105c_10cheers_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\080105g_party_eyes.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104congratulations.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104good_luck.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104hear_6.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104howareyou_5.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104ka_chewingum.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104kiss2_133_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104l_08hit_on_head10.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104lucky_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104r_champion.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104w_praying_closed_eyes.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\090104whatsup_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\10.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\100104best_regards.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\100104f_05blow_kiss.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\100104nice_day_text.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\100104night_candle_text.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\100104night_text.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\100104u_jumps_single.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\11.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104cane2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104emot19_thumbsup.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104emot27_baby.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104emot30_astonishe.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104mistletoe2_ribbon.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104presents2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104santa_07.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104santa_cookies4.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104santa_walks.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104shy2_3_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104smile_71.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110104takecare.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110105elf_walking.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110105letter.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110105milk_cookies.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110105mother_child.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110105poinsettia.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\110105tree.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\12.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104baa_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104eat_text.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104f_eyebrows.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104i_13sleepy_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104j_11sealed_3blue_b.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104laughter01.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104n_no.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104p_03bad_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104shy_5new.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104t_thumbdown.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104teasing_new.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104tongue_2_07.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120104u_thinking02y.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120105birthdaycake.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120105pipe_thinking.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\120105present.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\13.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\almost_cry_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\almost_cry_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\angel_bells.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\angels.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_angel.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_arms_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_arms_4.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_boy_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_girl_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_hat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_msn_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_msn_9.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_SPLASHING2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_star_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_two_teeth_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\baby_waving_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\balloons.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\bottle.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\boy-3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\cat_santa.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\cheerleader_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\chimney_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\chimney_legs_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\christmas_dog.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\clapW.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\congratulations_cut.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\cracker.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\crying_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\crying_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\decorating_tree.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\devil_angel.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\gold.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\hearts2W.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\holly_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\hot_dog.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\hug_new.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\kissW.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\loading.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\miss_santa_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\new.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\pasta.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\pippi_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\ribbon.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\rudolf.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\santa_and_kid2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\santa_bell.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\santa_drunk_new.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\santa_jumping.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\singing_carols_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\skating.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\sleigh_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\snow_ball_2.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\snowman_them.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\storch_1.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\tea_cup.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\teddy_3.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\thumb_upW.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\trnsprnt.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\viking.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\wave1W.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\IM\Runtime\EmoticonCenter\wave2W.gif

C:\Program Files\Incomplete\downloads.dat

 

.

((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-06-10 to 2008-07-10 ))))))))))))))))))))))))))))))))))))

.

 

2008-07-09 16:38 . 2008-07-09 16:38 54,156 --ah----- C:\WINDOWS\QTFont.qfn

2008-07-09 16:38 . 2008-07-09 16:38 1,409 --a------ C:\WINDOWS\QTFont.for

2008-07-06 09:09 . 2005-12-05 23:26 380,928 -ra------ C:\WINDOWS\system32\LVUI2RC.dll

2008-07-06 09:09 . 2005-12-05 23:25 217,088 -ra------ C:\WINDOWS\system32\LVUI2.dll

2008-07-06 09:09 . 2005-12-05 23:25 204,800 -ra------ C:\WINDOWS\system32\lvcodec2.dll

2008-07-06 09:09 . 2005-12-05 23:26 39,424 -ra------ C:\WINDOWS\system32\drivers\LVUSBSta.sys

2008-07-06 09:09 . 2005-12-05 22:28 13,126 -ra------ C:\WINDOWS\system32\lvcoinst.ini

2008-07-06 09:09 . 2005-12-05 22:27 2,112 -ra------ C:\WINDOWS\system32\Repository.reg

2008-07-06 09:04 . 2005-12-09 15:31 245,824 -ra------ C:\WINDOWS\system32\InstExec.exe

2008-07-06 09:04 . 2005-12-09 15:35 245,824 -ra------ C:\WINDOWS\Instexec.exe

2008-07-06 09:04 . 2005-12-09 15:31 719 -ra------ C:\WINDOWS\system32\InstExec.ini

2008-07-06 09:03 . 2005-12-07 10:25 350,720 --a------ C:\WINDOWS\system32\camcpl.cpl

2008-07-06 09:03 . 2005-12-07 10:22 323,584 --a------ C:\WINDOWS\system32\CamCplRes.dll

2008-07-06 09:03 . 2004-11-01 17:22 262,144 --a------ C:\WINDOWS\system32\ElkCtrl.exe

2008-07-06 09:03 . 2005-12-07 10:32 152,576 --a------ C:\WINDOWS\system32\VxLib.dll

2008-07-06 09:03 . 2005-12-07 10:30 135,680 --a------ C:\WINDOWS\system32\VLib.dll

2008-07-06 09:03 . 2004-11-01 17:22 57,344 --a------ C:\WINDOWS\system32\ElkCtlPS.dll

2008-07-06 09:03 . 2005-12-07 10:29 40,960 --a------ C:\WINDOWS\system32\VxLibRes.dll

2008-07-06 08:34 . 2005-12-07 14:17 86,016 -ra------ C:\WINDOWS\system32\vatee.ax

2008-07-06 08:33 . 2005-05-27 05:23 2,180,096 --a------ C:\WINDOWS\system32\drivers\LVSVF2.sys

2008-07-06 08:33 . 2005-12-05 23:30 916,096 -ra------ C:\WINDOWS\system32\drivers\LV302AV.SYS

2008-07-06 08:33 . 2005-12-05 23:22 110,592 -ra------ C:\WINDOWS\system32\lvcoinst.dll

2008-07-06 08:33 . 2005-07-19 17:31 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe

2008-07-06 08:33 . 2005-12-05 23:27 7,136 -ra------ C:\WINDOWS\system32\drivers\lv302af.sys

2008-07-06 08:33 . 2008-07-06 08:33 288 --a------ C:\WINDOWS\_delis32.ini

2008-07-05 08:34 . 2008-07-05 08:35 <REP> d-------- C:\Program Files\FinePixViewerS

2008-07-05 08:34 . 2008-07-05 08:34 <REP> d-------- C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\InstallShield

2008-07-05 08:34 . 2008-07-05 08:39 <REP> d-------- C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\FUJIFILM

2008-07-04 10:34 . 2008-07-04 10:37 <REP> d-------- C:\Lop SD

2008-07-04 08:50 . 2008-07-04 08:59 <REP> dr------- C:\Program Files\Alwil Software

2008-07-04 08:47 . 2008-07-04 08:49 24,354,672 --a------ C:\Program Files\setupfre.exe

2008-07-03 21:49 . 2008-07-03 21:49 857,664 --a------ C:\Program Files\ccsetup209_slim.exe

2008-07-01 09:37 . 2008-07-04 08:56 <REP> dr------- C:\Program Files\Lavasoft

2008-07-01 09:13 . 2008-07-01 09:35 19,153,264 --a------ C:\Program Files\Lavasoft_Adaware_multi.exe

2008-07-01 05:39 . 2008-07-04 10:29 <REP> d-------- C:\Program Files\Notepad++

2008-07-01 05:39 . 2008-07-01 05:49 <REP> d-------- C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Notepad++

2008-07-01 05:38 . 2008-07-01 05:38 2,077,269 --a------ C:\Program Files\npp.4.9.2.Installer.exe

2008-06-30 10:21 . 2008-06-30 10:21 <REP> d-------- C:\WINDOWS\ERUNT

2008-06-30 09:42 . 2008-06-30 14:20 <REP> d-------- C:\SDFix

2008-06-30 09:41 . 2008-06-30 09:42 1,443,354 --a------ C:\Program Files\SDFix.exe

2008-06-30 09:09 . 2008-07-04 08:58 <REP> dr------- C:\Program Files\Malwarebytes' Anti-Malware

2008-06-30 09:09 . 2008-06-28 14:16 34,296 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys

2008-06-30 09:09 . 2008-06-28 14:16 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys

2008-06-30 09:08 . 2008-06-30 09:08 1,705,000 --a------ C:\Program Files\mbam-setup.exe

2008-06-30 07:43 . 2008-06-30 07:43 7,599,856 --a------ C:\Program Files\Firefox Setup 3.0.exe

2008-06-30 06:18 . 2008-07-04 10:40 <REP> d-------- C:\hijackthis

2008-06-30 06:00 . 2008-07-06 07:49 <REP> dr------- C:\Program Files\Trend Micro

2008-06-29 09:38 . 2008-06-29 10:04 134,290,536 --a------ C:\Program Files\OOo_2.4.1_Win32Intel_install_wJRE_fr.exe

2008-06-22 10:38 . 2008-06-22 10:38 36,544 --ah----- C:\WINDOWS\system32\mlfcache.dat

2008-06-22 10:25 . 2006-10-04 22:42 2,560 --------- C:\WINDOWS\system32\drivers\cdralw2k.sys

2008-06-22 10:25 . 2006-10-04 22:42 2,432 --------- C:\WINDOWS\system32\drivers\cdr4_xp.sys

2008-06-20 07:19 . 2008-06-22 10:25 <REP> d-------- C:\Program Files\Picasa2

2008-06-20 07:17 . 2008-06-20 07:18 4,909,136 --a------ C:\Program Files\picasa2Setup.exe

2008-06-15 16:41 . 2008-06-15 16:42 <REP> d-------- C:\Documents and Settings\enfants\Application Data\OpenOffice.org2

2008-06-13 07:09 . 2008-06-13 07:09 <REP> d-------- C:\WINDOWS\system32\bits

2008-06-10 23:54 . 2008-06-14 13:59 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys

2008-06-10 23:54 . 2008-06-14 13:59 272,768 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys

 

.

(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-07-10 10:29 --------- d-----w C:\Program Files\Incomplete

2008-07-08 01:33 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\OpenOffice.org2

2008-07-07 20:30 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy

2008-07-06 13:04 --------- d-----w C:\Program Files\Fichiers communs\Logitech

2008-07-06 13:04 --------- d-----w C:\Program Files\Fichiers communs\Logishrd

2008-07-06 12:45 --------- d-----w C:\Program Files\Logitech

2008-07-06 12:21 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\LogiShrd

2008-07-06 11:50 --------- d-----r C:\Program Files\Windows Live Favorites

2008-07-06 11:49 --------- d-----r C:\Program Files\Windows Installer Clean Up

2008-07-05 12:34 --------- d--h--w C:\Program Files\InstallShield Installation Information

2008-07-04 13:02 --------- d-----r C:\Program Files\Messenger Plus! Live

2008-07-04 13:00 --------- d-----r C:\Program Files\BellCanada

2008-07-04 12:57 --------- d-----r C:\Program Files\Windows Live Safety Center

2008-07-04 12:52 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira

2008-07-04 12:45 --------- d-----r C:\Program Files\Spybot - Search & Destroy

2008-07-04 12:44 9,722,720 ----a-w C:\Program Files\spybotsd152.exe

2008-07-01 13:36 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard

2008-06-30 11:35 --------- d-----w C:\Program Files\Windows Live Toolbar

2008-06-30 11:35 --------- d-----r C:\Program Files\Canon

2008-06-29 14:19 --------- d-----w C:\Program Files\OpenOffice.org 2.4 (fr) Installation Files

2008-06-29 12:20 --------- d-----w C:\Program Files\OpenOffice.org 2.4

2008-06-29 12:10 --------- d-----w C:\Program Files\Java

2008-06-27 03:59 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire

2008-06-27 03:59 --------- d-----w C:\Documents and Settings\enfants\Application Data\LimeWire

2008-06-24 10:56 --------- d-----w C:\Program Files\MesPolices10

2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys

2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys

2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys

2008-06-15 21:51 --------- d-----w C:\Documents and Settings\enfants\Application Data\Arcsoft

2008-06-15 06:51 --------- d-----w C:\Program Files\Circle Developement

2008-06-14 23:40 2,402,832 ----a-w C:\Program Files\WLinstaller.exe

2008-06-14 23:40 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\WLInstaller

2008-06-04 14:06 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ESTsoft

2008-06-04 11:32 1,534,464 ----a-w C:\Program Files\siw.exe

2008-06-03 23:03 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Logitech

2008-06-01 18:17 1,491,365 ----a-w C:\Program Files\wlm.exe

2008-06-01 17:45 --------- d-----w C:\Documents and Settings\enfants\Application Data\GlarySoft

2008-05-28 11:08 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Lavasoft

2008-05-27 14:47 --------- d-----w C:\Program Files\ESTsoft

2008-05-24 01:22 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Apple Computer

2008-05-22 13:32 2,869,264 ----a-w C:\Program Files\dotNetFx35setup.exe

2008-05-21 12:12 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Malwarebytes

2008-05-21 12:12 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes

2008-05-19 16:53 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\DisplayTune

2008-05-15 23:35 --------- d-----w C:\Documents and Settings\enfants\Application Data\Logitech

2008-05-15 23:35 --------- d-----w C:\Documents and Settings\enfants\Application Data\Grisoft

2008-05-14 22:44 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ArcSoft

2008-05-13 13:24 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Logitech

2008-05-12 20:16 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller

2008-05-12 20:16 --------- d-----r C:\Program Files\Creative

2008-05-12 20:15 --------- d-----w C:\Program Files\Apple Software Update

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Windows Live Writer

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Sony Corporation

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\PlayFirst

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Motive

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ErrorSmart

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\Sony Corporation

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\PlayFirst

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\MailFrontier

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\Apple Computer

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Sandlot Games

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Creative

2008-05-12 19:34 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\GlarySoft

2008-04-29 13:20 27,100,264 -c--a-w C:\Program Files\PowerPointViewer.exe

2008-04-20 20:30 1,338,384 -c--a-w C:\Program Files\SympaticoSecurityAdvisor_setupSSM.exe

2008-04-20 19:51 2,517 -c--a-w C:\Program Files\INSTALL.LOG

2008-04-08 06:52 119,479,710 -c--a-w C:\Program Files\OOo_2.4.0_Win32Intel_install_fr.exe

2008-04-08 06:27 1,664,591 -c--a-w C:\Program Files\pf-setup.exe

2008-04-05 16:33 9,309,624 -c--a-w C:\Program Files\Shockwave_Installer_Full.exe

2008-04-04 14:15 46,391,264 -c--a-w C:\Program Files\8-3_xp32_dd_ccc_wdm_enu_59746.exe

2008-04-03 23:50 57,144,896 -c--a-w C:\Program Files\setpoint440.exe

2008-03-21 14:38 8,161,400 -c--a-w C:\Program Files\Windows-KB890830-V1.39.exe

2008-03-09 14:21 407,680 -c--a-w C:\Program Files\aswclnr.exe

2008-02-25 15:15 2,919,160 -c--a-w C:\Program Files\WindowsMedia-Q828026-x86-FRA.exe

2008-02-25 15:11 881,192 -c--a-w C:\Program Files\WGAPluginInstall.exe

2008-02-24 01:22 1,491,592 -c--a-w C:\Program Files\install_flash_player.exe

2008-02-17 17:42 1,729 -c--a-w C:\Program Files\Adobe Reader 8.lnk

2008-02-12 16:50 95 -csh--w C:\Program Files\desktop.ini

2008-02-12 16:50 15,086 -csh--w C:\Program Files\ShedkoFolderico3_0627.ico

2003-01-31 16:08 49,152 -c--a-w C:\WINDOWS\inf\enclss32.dll

2003-01-31 16:08 3,690,496 -c--a-w C:\WINDOWS\inf\setup.exe

2003-01-31 16:08 23,560 -c--a-w C:\WINDOWS\inf\enclss16.dll

2002-06-04 09:06 65,536 -c--a-w C:\WINDOWS\inf\copyinf.exe

.

 

((((((((((((((((((((((((((((( snapshot_2008-07-04_10.21.44.17 )))))))))))))))))))))))))))))))))))))))))

.

- 2008-07-04 14:10:51 2,048 --s-a-w C:\WINDOWS\bootstat.dat

+ 2008-07-10 10:33:45 2,048 --s-a-w C:\WINDOWS\bootstat.dat

- 2005-05-25 06:40:00 89,088 ----a-w C:\WINDOWS\system32\atl71.dll

+ 2003-03-18 23:05:50 89,088 ----a-w C:\WINDOWS\system32\atl71.dll

- 2008-06-30 17:32:54 4,132 ----a-w C:\WINDOWS\system32\d3d9caps.dat

+ 2008-07-06 13:52:49 4,132 ----a-w C:\WINDOWS\system32\d3d9caps.dat

- 2004-08-05 12:00:00 138,496 -c--a-w C:\WINDOWS\system32\dllcache\afd.sys

+ 2008-06-20 10:44:38 138,368 -c--a-w C:\WINDOWS\system32\dllcache\afd.sys

- 2008-02-20 05:35:05 148,992 -c--a-w C:\WINDOWS\system32\dllcache\dnsapi.dll

+ 2008-06-20 17:41:06 148,992 -c--a-w C:\WINDOWS\system32\dllcache\dnsapi.dll

- 2004-08-05 12:00:00 247,808 -c--a-w C:\WINDOWS\system32\dllcache\mswsock.dll

+ 2008-06-20 17:41:06 247,808 -c--a-w C:\WINDOWS\system32\dllcache\mswsock.dll

- 2007-10-30 17:20:55 360,064 -c--a-w C:\WINDOWS\system32\dllcache\tcpip.sys

+ 2008-06-20 10:45:13 360,320 -c--a-w C:\WINDOWS\system32\dllcache\tcpip.sys

- 2006-08-16 09:37:30 225,664 -c--a-w C:\WINDOWS\system32\dllcache\tcpip6.sys

+ 2008-06-20 09:52:06 225,920 -c--a-w C:\WINDOWS\system32\dllcache\tcpip6.sys

- 2008-02-20 05:35:05 148,992 ----a-w C:\WINDOWS\system32\dnsapi.dll

+ 2008-06-20 17:41:06 148,992 ----a-w C:\WINDOWS\system32\dnsapi.dll

- 2007-10-19 17:16:30 2,109,976 ----a-w C:\WINDOWS\system32\drivers\Lvckap.sys

+ 2005-12-09 19:35:54 2,174,464 ----a-w C:\WINDOWS\system32\drivers\Lvckap.sys

- 2007-10-11 22:59:02 2,142,488 ----a-w C:\WINDOWS\system32\drivers\LVMVdrv.sys

+ 2005-12-09 19:37:42 2,400,256 ----a-w C:\WINDOWS\system32\drivers\LVMVdrv.sys

+ 2005-12-09 19:37:42 16,768 ----a-w C:\WINDOWS\system32\drivers\LVPrcMon.sys

+ 2005-12-09 19:32:18 77,824 ----a-w C:\WINDOWS\system32\LVCOMCX.dll

+ 2005-12-09 19:32:18 225,280 ----a-w C:\WINDOWS\system32\LVCOMSX.EXE

+ 2005-12-09 19:32:18 270,336 ----a-w C:\WINDOWS\system32\LVMAENUM.dll

- 2005-05-25 06:40:00 1,060,864 ----a-w C:\WINDOWS\system32\MFC71.dll

+ 2003-03-19 01:20:00 1,060,864 ----a-w C:\WINDOWS\system32\MFC71.dll

- 2005-05-25 06:40:00 1,047,552 ----a-w C:\WINDOWS\system32\MFC71u.dll

+ 2003-03-19 01:12:12 1,047,552 ----a-w C:\WINDOWS\system32\MFC71u.dll

- 2008-05-29 23:35:11 17,486,968 -c--a-w C:\WINDOWS\system32\MRT.exe

+ 2008-06-25 16:15:46 17,972,344 -c--a-w C:\WINDOWS\system32\MRT.exe

- 2005-05-25 06:40:00 499,712 ----a-w C:\WINDOWS\system32\msvcp71.dll

+ 2003-03-19 00:14:52 499,712 ----a-w C:\WINDOWS\system32\msvcp71.dll

- 2005-05-25 06:40:00 348,160 ----a-w C:\WINDOWS\system32\msvcr71.dll

+ 2003-02-21 08:42:22 348,160 ----a-w C:\WINDOWS\system32\msvcr71.dll

- 2004-08-05 12:00:00 247,808 ----a-w C:\WINDOWS\system32\mswsock.dll

+ 2008-06-20 17:41:06 247,808 ----a-w C:\WINDOWS\system32\mswsock.dll

- 2007-11-30 11:19:06 18,296 ------w C:\WINDOWS\system32\spmsg.dll

+ 2007-11-30 12:39:29 18,296 ------w C:\WINDOWS\system32\spmsg.dll

+ 2008-07-10 10:33:56 16,384 ----atw C:\WINDOWS\TEMP\Perflib_Perfdata_574.dat

+ 2005-12-09 19:34:08 315,392 ----a-w C:\WINDOWS\twain_32\LogiVid\HPortal2.dll

+ 2005-12-09 19:34:08 245,760 ----a-w C:\WINDOWS\twain_32\LogiVid\HVideoS2.exe

+ 2005-12-09 19:34:08 6,656 ----a-w C:\WINDOWS\twain_32\LogiVid\HVidSp2.dll

+ 2005-12-09 19:33:36 245,824 ----a-r C:\WINDOWS\twain_32\LogiVid\InstExec.exe

+ 2005-05-27 14:03:38 49,152 ----a-r C:\WINDOWS\twain_32\LogiVid\InstVid.exe

+ 2005-12-09 19:34:08 704,512 ----a-w C:\WINDOWS\twain_32\LogiVid\LHPorta2.dll

+ 2005-12-09 19:34:08 14,848 ----a-w C:\WINDOWS\twain_32\LogiVid\LQCT32_2.dll

+ 2003-03-19 01:14:52 499,712 ----a-w C:\WINDOWS\twain_32\LogiVid\msvcp71.dll

+ 2003-02-21 09:42:22 348,160 ----a-w C:\WINDOWS\twain_32\LogiVid\msvcr71.dll

+ 2005-12-09 19:34:08 221,184 ----a-w C:\WINDOWS\twain_32\LogiVid\PCSmart2.dll

- 2007-10-12 06:01:30 236,056 ----a-w C:\WINDOWS\twain_32\QuickCam\lvWIAext.dll

+ 2005-12-06 03:25:45 159,744 ----a-r C:\WINDOWS\twain_32\QuickCam\lvWIAext.dll

.

-- Snapshot reset to current date --

.

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

REGEDIT4

*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 08:00 15360]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

"NoStrCmpLogical"= 1 (0x1)

"NoResolveSearch"= 1 (0x1)

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]

"UIHost"="C:\\Documents and Settings\\All Users.WINDOWS\\Application Data\\TuneUp Software\\TuneUp Utilities\\WinStyler\\tu_logonui.exe"

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"VIDC.MJPG"= pvmjpg21.dll

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Menu Démarrer^Programmes^Démarrage^Exif Launcher S.lnk]

path=C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\Exif Launcher S.lnk

backup=C:\WINDOWS\pss\Exif Launcher S.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Menu Démarrer^Programmes^Démarrage^Logitech SetPoint.lnk]

path=C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\Logitech SetPoint.lnk

backup=C:\WINDOWS\pss\Logitech SetPoint.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Menu Démarrer^Programmes^Démarrage^LUMIX Simple Viewer.lnk]

backup=C:\WINDOWS\pss\LUMIX Simple Viewer.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^guillaine.HOME-6620B39EBF^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 2.4.lnk]

path=C:\Documents and Settings\guillaine.HOME-6620B39EBF\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 2.4.lnk

backup=C:\WINDOWS\pss\OpenOffice.org 2.4.lnkStartup

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mmtask

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMTray

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StandardInstall]

[X]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

--a--c--- 2008-01-11 23:16 39792 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ANIWZCS2Service]

--a------ 2008-05-28 11:05 49152 C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]

--a--c--- 2007-11-13 15:24 72192 C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]

--a--c--- 2004-02-24 22:10 335872 C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BellCanada_McciTrayApp]

--a--c--- 2007-11-19 10:33 1468928 C:\Program Files\BellCanada\McciTrayApp.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]

--a------ 2004-08-05 08:00 15360 C:\WINDOWS\system32\ctfmon.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\D-Link Wireless G WDA-1320]

--a------ 2005-12-14 15:56 2711552 C:\Program Files\D-Link\Wireless G WDA-1320\AirGCFG.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]

--a--c--- 2004-08-05 08:00 208952 C:\WINDOWS\ime\imjp8_1\imjpmig.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]

--a--c--- 2008-02-04 15:18 267048 C:\Program Files\iTunes\iTunesHelper.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCameraAssistant]

--a------ 2005-12-07 10:26 489472 C:\Program Files\Logitech\Video\CameraAssistant.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCameraService(E)]

--a------ 2004-11-01 17:22 262144 C:\WINDOWS\system32\ElkCtrl.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideo[inspector]]

--a------ 2005-12-07 10:33 73728 C:\Program Files\Logitech\Video\InstallHelper.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LVCOMSX]

--a------ 2005-12-09 15:32 225280 C:\WINDOWS\system32\LVCOMSX.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

--a--c--- 2001-07-09 10:50 155648 C:\WINDOWS\system32\NeroCheck.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]

--a--c--- 2004-08-05 08:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]

--a--c--- 2004-08-05 08:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

--a--c--- 2008-02-01 00:13 385024 C:\Program Files\QuickTime\QTTask.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]

--a--c--- 2008-02-22 04:25 144784 C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zBrowser Launcher]

--a--c--- 2003-12-01 12:38 892928 C:\Program Files\Logitech\iTouch\iTouch.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIModeChange]

--a--c--- 2001-09-04 04:24 28672 C:\WINDOWS\system32\Ati2mdxx.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Hardware Abstraction Layer]

--a--c--- 2007-11-29 02:17 55824 C:\WINDOWS\KHALMNPR.Exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]

"WMPNetworkSvc"=3 (0x3)

"WLSetupSvc"=3 (0x3)

"WinDefend"=2 (0x2)

"usnjsvc"=3 (0x3)

"SPTISRV"=3 (0x3)

"SoundMAX Agent Service (default)"=2 (0x2)

"PACSPTISVR"=3 (0x3)

"MSCSPTISRV"=3 (0x3)

"McciCMService"=2 (0x2)

"LVSrvLauncher"=2 (0x2)

"LVPrcSrv"=2 (0x2)

"LVCOMSer"=2 (0x2)

"iPod Service"=3 (0x3)

"idsvc"=3 (0x3)

"gusvc"=3 (0x3)

"DTSRVC"=2 (0x2)

"CTDevice_Srv"=2 (0x2)

"Creative Service for CDROM Access"=2 (0x2)

"AVG Anti-Spyware Guard"=2 (0x2)

"avast! Web Scanner"=3 (0x3)

"avast! Mail Scanner"=3 (0x3)

"avast! Antivirus"=2 (0x2)

"ATI Smart"=2 (0x2)

"Ati HotKey Poller"=2 (0x2)

"aswUpdSv"=2 (0x2)

"Apple Mobile Device"=2 (0x2)

"ANIWZCSdService"=2 (0x2)

"ACDaemon"=2 (0x2)

"aawservice"=2 (0x2)

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]

"D-Link Wireless G WDA-1320"=C:\Program Files\D-Link\Wireless G WDA-1320\AirGCFG.exe

"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" -atboottime

"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide

"LogitechCommunicationsManager"="C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

"C:\\WINDOWS\\system32\\sessmgr.exe"=

"C:\\Program Files\\iTunes\\iTunes.exe"=

 

R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-15 19:20]

R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-15 19:16]

R3 LVPrcMon;Logitech LVPrcMon Driver;C:\WINDOWS\system32\drivers\LVPrcMon.sys [2005-12-09 15:37]

S3 A3AB;D-Link AirPro 802.11a/b Wireless Adapter Service(A3AB);C:\WINDOWS\system32\DRIVERS\A3AB.sys [2005-08-25 15:00]

S3 LCcfltr;Logitech USB Filter Driver;C:\WINDOWS\system32\Drivers\LCcFltr.Sys [2003-11-07 05:50]

S3 MREMP50;MREMP50 NDIS Protocol Driver;C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS [2007-10-31 17:51]

S3 MRESP50;MRESP50 NDIS Protocol Driver;C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS [2007-10-31 17:51]

S4 ACDaemon;ArcSoft Connect Daemon;C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe [2007-11-14 13:04]

S4 McciCMService;McciCMService;"C:\Program Files\Common Files\Motive\McciCMService.exe" [2007-11-01 11:59]

 

.

Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'

"2008-07-07 19:01:13 C:\WINDOWS\Tasks\Spybot - Search & Destroy - Scheduled Task.job"

- C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe

.

- - - - ORPHANS REMOVED - - - -

 

MSConfigStartUp-LogitechCommunicationsManager - C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe

MSConfigStartUp-LogitechQuickCamRibbon - C:\Program Files\Logitech\QuickCam\Quickcam.exe

 

 

**************************************************************************

 

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-07-10 06:34:37

Windows 5.1.2600 Service Pack 2 NTFS

 

Balayage processus cach‚s ...

 

Balayage cach‚ autostart entries ...

 

Balayage des fichiers cach‚s ...

 

Scan termin‚ avec succŠs

Les fichiers cach‚s: 0

 

**************************************************************************

.

--------------------- DLLs a charg‚ sous des processus courants ---------------------

 

PROCESS: C:\WINDOWS\system32\winlogon.exe

-> C:\WINDOWS\system32\Ati2evxx.dll

.

------------------------ Other Running Processes ------------------------

.

C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Program Files\Fichiers communs\Logitech\LVMVFM\LVPrcSrv.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

.

**************************************************************************

.

Temps d'accomplissement: 2008-07-10 6:44:00 - machine was rebooted

ComboFix-quarantined-files.txt 2008-07-10 10:43:55

ComboFix2.txt 2008-07-04 14:22:09

ComboFix3.txt 2008-06-29 18:19:37

 

Pre-Run: 64,694,046,720 octets libres

Post-Run: 64,670,154,752 octets libres

 

1012 --- E O F --- 2008-07-09 10:52:55

 

(j'espère que le rapport sera lisible ;) )

et le Hijackthis :

 

oupsss...... j'ai oublié de le refaire lolll ça suivra dans 5 minutes ;)

 

guillou

 

 

bon j'y arrive...oufff...

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 07:44:24, on 2008-07-10

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16674)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')

O8 - Extra context menu item: Choisir comme avatar pour &Messenger - C:\Program Files\MSN Pictures Displayer\AddIEPicture.htm

O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html

O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html

O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)

O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/fichier...on_2_0_4_12.cab

O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

 

--

End of file - 5209 bytes

 

et voilà... du travail pour toi maintenant :)

 

p.s. en passant , ma boule d'Avast n'apparait plus !? c'est normal ?

 

guillou

 

 

 

 

 

 

Modifié par guillou
Posté(e)

Merci pour les rapports, bon travail!

 

Pourquoi avais-tu passé SDFix alors? Car visiblement, tu n'avais pas d'infection de type SD/SpamBot...

 

 

 

p.s. en passant , ma boule d'Avast n'apparait plus !? c'est normal ?

 

 

De toute façon on va remplacer Avast qui est un antivirus médiocre :P !

 

 

ensuite mon combofix (ta modification pour détruire le dernier fichier limewire n'apparaissait pas ... :P ..) :

 

Tiens, bizarre, j'avais pourtant rajouté son entrée dans le script...On va recommencer alors!

 

 

Et on va shoter au passage un faux logiciel que tu as installé: ErrorSmart, qui est une arnaque: voir le sujet de Malekal:

 

http://forum.malekal.com/viewtopic.php?f=56&t=10931

 

 

 

 

 

flechedroitets2.pngCREATION/EXECUTION D'UN CFSCRIPT

Lis bien la procédure avant de te lancer. Tu peux même l'imprimer, éventuellement.

 

  • Ouvre un nouveau fichier du Bloc-notes
  • "Copie/Colle" tout le contenu de la boîte Code ci-dessous (mais n'inclus pas le mot "Code") dans le fichier texte du bloc-note :
     
    KillAll::
    
    File::
    C:\WINDOWS\_delis32.ini
    
    Folder::
    C:\Program Files\Incomplete
    C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire
    C:\Documents and Settings\enfants\Application Data\LimeWire
    C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ErrorSmart


     
     

  • Sauvegarde ce fichier sur ton Bureau en l'appelant IMPERATIVEMENT CFScript.txt
     
    ATTENTION: ce script a été conçu spécifiquement pour ce cas précis de désinfection, ne pas l'utiliser pour votre propre machine!!

     
  • Désactive ton antivirus et ton antispyware
     
     
  • Te référant à l'image ci-dessous, déplace CFScript.txt sur ComboFix.exe
    ComboFix sera lancé.
     
    CFScript.gif
     
  • Une fenêtre bleue va apparaitre: patiente le temps du scan.Le bureau va disparaitre à plusieurs reprises: c'est normal!
    Ne touche à rien tant que le scan n'est pas terminé.
  • ComboFix peut exiger un redémarrage pour compléter son travail. Accepte.
  • Lorsque l'outil aura terminé, un rapport ComboFix.txt apparaîtra à l'écran.
  • Soumet le fichier en cliquant "OK"
  • Poste le rapport suivant dans ta prochaine réponse :
     
    - Combofix.txt (il est stocké ici: > C:\ComboFix.txt)
  • Réactive ton antivirus et ton antispyware

 

 

 

 

flechedroitets2.pngHIJACKTHIS "ADS SPY"

 

  • Relance HijackThis
  • Sélectionne "Open the Misc Tools section"
  • Clique sur "Open Ads Spy"
  • Décoche la case "Quick Scan" et coche la case "Ignore safe system info streams"
  • Lance l'outil en cliquant sur "Scan"
  • A la fin du scan, clique sur "Save log" et enregistre le rapport sur ton Bureau
  • Poste le contenu de ce rapport dans ta prochaine réponse, en complément du rapport ComboFix

Posté(e) (modifié)

salut toi.... bon, en allant revoir mes messages auj. ( dimanche..) je me rends compte que mmon dernier envoi ( mes rapports..) ne se sont apparemment pas rendus ici dans le forum..:P... donc , je te les renvoies

 

ComboFix

 

ComboFix 08-07-03.5 - guillaine 2008-07-11 19:07:35.6 - NTFSx86

Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.219 [GMT -4:00]

Endroit: C:\Documents and Settings\guillaine.HOME-6620B39EBF\Bureau\ComboFix.exe

Command switches used :: C:\Documents and Settings\guillaine.HOME-6620B39EBF\Bureau\CFScript.txt

* Création d'un nouveau point de restauration

 

FILE ::

C:\WINDOWS\_delis32.ini

.

 

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))

.

 

C:\Documents and Settings\enfants\Application Data\LimeWire

C:\Documents and Settings\enfants\Application Data\LimeWire\.NetworkShare\LimeWireWin4.16.6.exe

C:\Documents and Settings\enfants\Application Data\LimeWire\412splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\createtimes.cache

C:\Documents and Settings\enfants\Application Data\LimeWire\data.ser

C:\Documents and Settings\enfants\Application Data\LimeWire\fileurns.cache

C:\Documents and Settings\enfants\Application Data\LimeWire\filters.props

C:\Documents and Settings\enfants\Application Data\LimeWire\gnutella.net

C:\Documents and Settings\enfants\Application Data\LimeWire\installation.props

C:\Documents and Settings\enfants\Application Data\LimeWire\library.dat

C:\Documents and Settings\enfants\Application Data\LimeWire\limewire.props

C:\Documents and Settings\enfants\Application Data\LimeWire\pub1.key

C:\Documents and Settings\enfants\Application Data\LimeWire\public.key

C:\Documents and Settings\enfants\Application Data\LimeWire\questions.props

C:\Documents and Settings\enfants\Application Data\LimeWire\responses.cache

C:\Documents and Settings\enfants\Application Data\LimeWire\secureMessage.key

C:\Documents and Settings\enfants\Application Data\LimeWire\simpp.xml

C:\Documents and Settings\enfants\Application Data\LimeWire\spam.dat

C:\Documents and Settings\enfants\Application Data\LimeWire\tables.props

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme.lwtp

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\01_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\02_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\03_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\04_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\05_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\chat.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\dir_closed.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\dir_open.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\forward_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\forward_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\kill.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\kill_on.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\lime.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\logo.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\notsearching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\pause_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\pause_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\play_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\play_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\question.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\rewind_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\rewind_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\searching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\splash.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\stop_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\stop_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\theme.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\black_theme\warning.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme.lwtp

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\01_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\02_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\03_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\04_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\05_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\chat.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\dir_closed.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\dir_open.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\forward_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\forward_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\kill.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\logo.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\notsearching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\pause_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\pause_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\play_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\play_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\question.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\rewind_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\rewind_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\search.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\searching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\splash.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\stop_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\stop_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\theme.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\classic_theme\warning.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme.lwtp

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\01_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\02_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\03_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\04_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\05_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\chat.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\dir_closed.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\dir_open.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\forward_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\forward_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\kill.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\kill_on.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\lime.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\logo.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\notsearching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\pause_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\pause_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\play_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\play_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\question.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\rewind_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\rewind_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\searching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\splash.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\stop_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\stop_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\theme.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewire_theme\warning.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme.lwtp

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\01_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\02_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\03_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\04_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\05_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\chat.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\dir_closed.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\dir_open.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\forward_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\forward_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\kill.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\kill_on.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\lime.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\logo.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\notsearching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\pause_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\pause_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\play_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\play_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\question.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\rewind_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\rewind_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\searching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\splash.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\stop_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\stop_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\theme.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\limewirePro_theme\warning.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme.lwtp

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\01_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\02_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\03_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\04_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\05_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\chat.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\forward_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\forward_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\kill.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\kill_on.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\logo.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\name.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\notsearching.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\pause_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\pause_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\play_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\play_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\question.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\rewind_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\rewind_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\searching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\splash.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\stop_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\stop_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\theme.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\other_theme\warning.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme.lwtp

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\01_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\02_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\03_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\04_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\05_star.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\chat.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\forward_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\forward_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\kill.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\kill_on.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\logo.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\notsearching.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\pause_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\pause_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\play_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\play_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\question.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\rewind_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\rewind_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\searching.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\splash.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\splashpro.png

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\stop_dn.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\stop_up.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\theme.txt

C:\Documents and Settings\enfants\Application Data\LimeWire\themes\windows_theme\warning.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\update.xml

C:\Documents and Settings\enfants\Application Data\LimeWire\version.key

C:\Documents and Settings\enfants\Application Data\LimeWire\version.xml

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\data\delete_me

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\misc\application.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\misc\audio.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\misc\document.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\misc\image.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\misc\video.gif

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\schemas\application.xsd

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\schemas\audio.xsd

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\schemas\document.xsd

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\schemas\image.xsd

C:\Documents and Settings\enfants\Application Data\LimeWire\xml\schemas\video.xsd

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ErrorSmart

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ErrorSmart\Registry Backups\2008-01-06_20-14-16.reg

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\.NetworkShare\LimeWireWin4.16.6.exe

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\412splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\createtimes.cache

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\data.ser

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\fileurns.cache

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\filters.props

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\gnutella.net

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\installation.props

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\library.dat

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\limewire.props

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\pub1.key

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\public.key

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\questions.props

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\responses.cache

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\secureMessage.key

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\simpp.xml

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\spam.dat

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\tables.props

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme.lwtp

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\01_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\02_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\03_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\04_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\05_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\chat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\dir_closed.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\dir_open.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\forward_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\forward_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\kill.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\kill_on.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\lime.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\logo.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\notsearching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\pause_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\pause_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\play_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\play_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\question.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\rewind_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\rewind_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\searching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\splash.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\stop_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\stop_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\theme.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\black_theme\warning.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme.lwtp

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\01_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\02_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\03_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\04_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\05_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\chat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\dir_closed.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\dir_open.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\forward_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\forward_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\kill.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\logo.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\notsearching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\pause_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\pause_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\play_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\play_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\question.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\rewind_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\rewind_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\search.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\searching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\splash.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\stop_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\stop_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\theme.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\classic_theme\warning.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme.lwtp

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\01_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\02_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\03_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\04_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\05_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\chat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\dir_closed.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\dir_open.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\forward_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\forward_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\kill.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\kill_on.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\lime.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\logo.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\notsearching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\pause_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\pause_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\play_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\play_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\question.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\rewind_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\rewind_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\searching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\splash.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\stop_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\stop_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\theme.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewire_theme\warning.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme.lwtp

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\01_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\02_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\03_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\04_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\05_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\chat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\dir_closed.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\dir_open.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\forward_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\forward_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\kill.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\kill_on.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\lime.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\logo.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\notsearching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\pause_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\pause_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\play_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\play_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\question.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\rewind_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\rewind_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\searching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\splash.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\stop_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\stop_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\theme.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\limewirePro_theme\warning.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme.lwtp

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\01_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\02_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\03_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\04_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\05_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\chat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\forward_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\forward_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\kill.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\kill_on.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\logo.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\name.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\notsearching.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\pause_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\pause_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\play_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\play_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\question.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\rewind_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\rewind_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\searching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\splash.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\stop_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\stop_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\theme.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\other_theme\warning.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme.lwtp

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\01_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\02_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\03_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\04_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\05_star.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\chat.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\forward_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\forward_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\kill.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\kill_on.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\logo.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\notsearching.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\pause_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\pause_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\play_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\play_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\question.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\rewind_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\rewind_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\searching.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\splash.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\splashpro.png

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\stop_dn.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\stop_up.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\theme.txt

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\themes\windows_theme\warning.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\ttree.cache

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\update.xml

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\version.key

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\version.xml

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\data\delete_me

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\misc\application.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\misc\audio.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\misc\document.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\misc\image.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\misc\video.gif

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\schemas\application.xsd

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\schemas\audio.xsd

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\schemas\document.xsd

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\schemas\image.xsd

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\LimeWire\xml\schemas\video.xsd

C:\Program Files\Incomplete

C:\WINDOWS\_delis32.ini

 

.

((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-06-11 to 2008-07-11 ))))))))))))))))))))))))))))))))))))

.

 

2008-07-10 06:44 . 2008-07-10 06:44 <REP> d-------- C:\Documents and Settings\Invité

2008-07-10 06:44 . <REP> C:\Documents and Settings\InvitÚ\Local Settings

2008-07-10 06:44 . <REP> C:\Documents and Settings\InvitÚ\Local Settings

2008-07-09 16:38 . 2008-07-09 16:38 54,156 --ah----- C:\WINDOWS\QTFont.qfn

2008-07-09 16:38 . 2008-07-09 16:38 1,409 --a------ C:\WINDOWS\QTFont.for

2008-07-06 09:09 . 2005-12-05 23:26 380,928 -ra------ C:\WINDOWS\system32\LVUI2RC.dll

2008-07-06 09:09 . 2005-12-05 23:25 217,088 -ra------ C:\WINDOWS\system32\LVUI2.dll

2008-07-06 09:09 . 2005-12-05 23:25 204,800 -ra------ C:\WINDOWS\system32\lvcodec2.dll

2008-07-06 09:09 . 2005-12-05 23:26 39,424 -ra------ C:\WINDOWS\system32\drivers\LVUSBSta.sys

2008-07-06 09:09 . 2005-12-05 22:28 13,126 -ra------ C:\WINDOWS\system32\lvcoinst.ini

2008-07-06 09:09 . 2005-12-05 22:27 2,112 -ra------ C:\WINDOWS\system32\Repository.reg

2008-07-06 09:04 . 2005-12-09 15:31 245,824 -ra------ C:\WINDOWS\system32\InstExec.exe

2008-07-06 09:04 . 2005-12-09 15:35 245,824 -ra------ C:\WINDOWS\Instexec.exe

2008-07-06 09:04 . 2005-12-09 15:31 719 -ra------ C:\WINDOWS\system32\InstExec.ini

2008-07-06 09:03 . 2005-12-07 10:25 350,720 --a------ C:\WINDOWS\system32\camcpl.cpl

2008-07-06 09:03 . 2005-12-07 10:22 323,584 --a------ C:\WINDOWS\system32\CamCplRes.dll

2008-07-06 09:03 . 2004-11-01 17:22 262,144 --a------ C:\WINDOWS\system32\ElkCtrl.exe

2008-07-06 09:03 . 2005-12-07 10:32 152,576 --a------ C:\WINDOWS\system32\VxLib.dll

2008-07-06 09:03 . 2005-12-07 10:30 135,680 --a------ C:\WINDOWS\system32\VLib.dll

2008-07-06 09:03 . 2004-11-01 17:22 57,344 --a------ C:\WINDOWS\system32\ElkCtlPS.dll

2008-07-06 09:03 . 2005-12-07 10:29 40,960 --a------ C:\WINDOWS\system32\VxLibRes.dll

2008-07-06 08:34 . 2005-12-07 14:17 86,016 -ra------ C:\WINDOWS\system32\vatee.ax

2008-07-06 08:33 . 2005-05-27 05:23 2,180,096 --a------ C:\WINDOWS\system32\drivers\LVSVF2.sys

2008-07-06 08:33 . 2005-12-05 23:30 916,096 -ra------ C:\WINDOWS\system32\drivers\LV302AV.SYS

2008-07-06 08:33 . 2005-12-05 23:22 110,592 -ra------ C:\WINDOWS\system32\lvcoinst.dll

2008-07-06 08:33 . 2005-07-19 17:31 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe

2008-07-06 08:33 . 2005-12-05 23:27 7,136 -ra------ C:\WINDOWS\system32\drivers\lv302af.sys

2008-07-05 08:34 . 2008-07-05 08:35 <REP> d-------- C:\Program Files\FinePixViewerS

2008-07-05 08:34 . 2008-07-05 08:34 <REP> d-------- C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\InstallShield

2008-07-05 08:34 . 2008-07-05 08:39 <REP> d-------- C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\FUJIFILM

2008-07-04 10:34 . 2008-07-04 10:37 <REP> d-------- C:\Lop SD

2008-07-04 08:50 . 2008-07-04 08:59 <REP> dr------- C:\Program Files\Alwil Software

2008-07-04 08:47 . 2008-07-04 08:49 24,354,672 --a------ C:\Program Files\setupfre.exe

2008-07-03 21:49 . 2008-07-03 21:49 857,664 --a------ C:\Program Files\ccsetup209_slim.exe

2008-07-01 09:37 . 2008-07-04 08:56 <REP> dr------- C:\Program Files\Lavasoft

2008-07-01 09:13 . 2008-07-01 09:35 19,153,264 --a------ C:\Program Files\Lavasoft_Adaware_multi.exe

2008-07-01 05:39 . 2008-07-10 07:29 <REP> d-------- C:\Program Files\Notepad++

2008-07-01 05:39 . 2008-07-01 05:49 <REP> d-------- C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Notepad++

2008-07-01 05:38 . 2008-07-01 05:38 2,077,269 --a------ C:\Program Files\npp.4.9.2.Installer.exe

2008-06-30 10:21 . 2008-06-30 10:21 <REP> d-------- C:\WINDOWS\ERUNT

2008-06-30 09:42 . 2008-06-30 14:20 <REP> d-------- C:\SDFix

2008-06-30 09:41 . 2008-06-30 09:42 1,443,354 --a------ C:\Program Files\SDFix.exe

2008-06-30 09:09 . 2008-07-04 08:58 <REP> dr------- C:\Program Files\Malwarebytes' Anti-Malware

2008-06-30 09:09 . 2008-06-28 14:16 34,296 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys

2008-06-30 09:09 . 2008-06-28 14:16 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys

2008-06-30 09:08 . 2008-06-30 09:08 1,705,000 --a------ C:\Program Files\mbam-setup.exe

2008-06-30 07:43 . 2008-06-30 07:43 7,599,856 --a------ C:\Program Files\Firefox Setup 3.0.exe

2008-06-30 06:18 . 2008-07-04 10:40 <REP> d-------- C:\hijackthis

2008-06-30 06:00 . 2008-07-06 07:49 <REP> dr------- C:\Program Files\Trend Micro

2008-06-29 09:38 . 2008-06-29 10:04 134,290,536 --a------ C:\Program Files\OOo_2.4.1_Win32Intel_install_wJRE_fr.exe

2008-06-22 10:38 . 2008-06-22 10:38 36,544 --ah----- C:\WINDOWS\system32\mlfcache.dat

2008-06-22 10:25 . 2006-10-04 22:42 2,560 --------- C:\WINDOWS\system32\drivers\cdralw2k.sys

2008-06-22 10:25 . 2006-10-04 22:42 2,432 --------- C:\WINDOWS\system32\drivers\cdr4_xp.sys

2008-06-20 07:19 . 2008-06-22 10:25 <REP> d-------- C:\Program Files\Picasa2

2008-06-20 07:17 . 2008-06-20 07:18 4,909,136 --a------ C:\Program Files\picasa2Setup.exe

2008-06-15 16:41 . 2008-06-15 16:42 <REP> d-------- C:\Documents and Settings\enfants\Application Data\OpenOffice.org2

2008-06-13 07:09 . 2008-06-13 07:09 <REP> d-------- C:\WINDOWS\system32\bits

 

.

(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-07-11 10:34 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy

2008-07-10 11:17 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\OpenOffice.org2

2008-07-06 13:04 --------- d-----w C:\Program Files\Fichiers communs\Logitech

2008-07-06 13:04 --------- d-----w C:\Program Files\Fichiers communs\Logishrd

2008-07-06 12:45 --------- d-----w C:\Program Files\Logitech

2008-07-06 12:21 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\LogiShrd

2008-07-06 11:50 --------- d-----r C:\Program Files\Windows Live Favorites

2008-07-06 11:49 --------- d-----r C:\Program Files\Windows Installer Clean Up

2008-07-05 12:34 --------- d--h--w C:\Program Files\InstallShield Installation Information

2008-07-04 13:02 --------- d-----r C:\Program Files\Messenger Plus! Live

2008-07-04 13:00 --------- d-----r C:\Program Files\BellCanada

2008-07-04 12:57 --------- d-----r C:\Program Files\Windows Live Safety Center

2008-07-04 12:52 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Avira

2008-07-04 12:45 --------- d-----r C:\Program Files\Spybot - Search & Destroy

2008-07-04 12:44 9,722,720 ----a-w C:\Program Files\spybotsd152.exe

2008-07-01 13:36 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard

2008-06-30 11:35 --------- d-----w C:\Program Files\Windows Live Toolbar

2008-06-30 11:35 --------- d-----r C:\Program Files\Canon

2008-06-29 14:19 --------- d-----w C:\Program Files\OpenOffice.org 2.4 (fr) Installation Files

2008-06-29 12:20 --------- d-----w C:\Program Files\OpenOffice.org 2.4

2008-06-29 12:10 --------- d-----w C:\Program Files\Java

2008-06-24 10:56 --------- d-----w C:\Program Files\MesPolices10

2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys

2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys

2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys

2008-06-15 21:51 --------- d-----w C:\Documents and Settings\enfants\Application Data\Arcsoft

2008-06-15 06:51 --------- d-----w C:\Program Files\Circle Developement

2008-06-14 23:40 2,402,832 ----a-w C:\Program Files\WLinstaller.exe

2008-06-14 23:40 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\WLInstaller

2008-06-14 17:59 272,768 ------w C:\WINDOWS\system32\drivers\bthport.sys

2008-06-04 14:06 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ESTsoft

2008-06-04 11:32 1,534,464 ----a-w C:\Program Files\siw.exe

2008-06-03 23:03 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Logitech

2008-06-01 18:17 1,491,365 ----a-w C:\Program Files\wlm.exe

2008-06-01 17:45 --------- d-----w C:\Documents and Settings\enfants\Application Data\GlarySoft

2008-05-28 11:08 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Lavasoft

2008-05-27 14:47 --------- d-----w C:\Program Files\ESTsoft

2008-05-24 01:22 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Apple Computer

2008-05-22 13:32 2,869,264 ----a-w C:\Program Files\dotNetFx35setup.exe

2008-05-21 12:12 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Malwarebytes

2008-05-21 12:12 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes

2008-05-19 16:53 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\DisplayTune

2008-05-15 23:35 --------- d-----w C:\Documents and Settings\enfants\Application Data\Logitech

2008-05-15 23:35 --------- d-----w C:\Documents and Settings\enfants\Application Data\Grisoft

2008-05-14 22:44 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\ArcSoft

2008-05-13 13:24 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Logitech

2008-05-12 20:16 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller

2008-05-12 20:16 --------- d-----r C:\Program Files\Creative

2008-05-12 20:15 --------- d-----w C:\Program Files\Apple Software Update

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Windows Live Writer

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Sony Corporation

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\PlayFirst

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\Motive

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\Sony Corporation

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\PlayFirst

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\MailFrontier

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\enfants\Application Data\Apple Computer

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Sandlot Games

2008-05-12 20:15 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Creative

2008-05-12 19:34 --------- d-----w C:\Documents and Settings\guillaine.HOME-6620B39EBF\Application Data\GlarySoft

2008-04-29 13:20 27,100,264 -c--a-w C:\Program Files\PowerPointViewer.exe

2008-04-20 20:30 1,338,384 -c--a-w C:\Program Files\SympaticoSecurityAdvisor_setupSSM.exe

2008-04-20 19:51 2,517 -c--a-w C:\Program Files\INSTALL.LOG

2008-04-08 06:52 119,479,710 -c--a-w C:\Program Files\OOo_2.4.0_Win32Intel_install_fr.exe

2008-04-08 06:27 1,664,591 -c--a-w C:\Program Files\pf-setup.exe

2008-04-05 16:33 9,309,624 -c--a-w C:\Program Files\Shockwave_Installer_Full.exe

2008-04-04 14:15 46,391,264 -c--a-w C:\Program Files\8-3_xp32_dd_ccc_wdm_enu_59746.exe

2008-04-03 23:50 57,144,896 -c--a-w C:\Program Files\setpoint440.exe

2008-03-21 14:38 8,161,400 -c--a-w C:\Program Files\Windows-KB890830-V1.39.exe

2008-03-09 14:21 407,680 -c--a-w C:\Program Files\aswclnr.exe

2008-02-25 15:15 2,919,160 -c--a-w C:\Program Files\WindowsMedia-Q828026-x86-FRA.exe

2008-02-25 15:11 881,192 -c--a-w C:\Program Files\WGAPluginInstall.exe

2008-02-24 01:22 1,491,592 -c--a-w C:\Program Files\install_flash_player.exe

2008-02-17 17:42 1,729 -c--a-w C:\Program Files\Adobe Reader 8.lnk

2008-02-12 16:50 95 -csh--w C:\Program Files\desktop.ini

2008-02-12 16:50 15,086 -csh--w C:\Program Files\ShedkoFolderico3_0627.ico

.

 

((((((((((((((((((((((((((((( snapshot_2008-07-10_ 6.43.26.18 )))))))))))))))))))))))))))))))))))))))))

.

- 2008-07-10 10:33:45 2,048 --s-a-w C:\WINDOWS\bootstat.dat

+ 2008-07-11 23:12:02 2,048 --s-a-w C:\WINDOWS\bootstat.dat

+ 2008-07-11 23:12:11 16,384 ----atw C:\WINDOWS\TEMP\Perflib_Perfdata_57c.dat

.

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

REGEDIT4

*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 08:00 15360]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]

"NoStrCmpLogical"= 1 (0x1)

"NoResolveSearch"= 1 (0x1)

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]

"UIHost"="C:\\Documents and Settings\\All Users.WINDOWS\\Application Data\\TuneUp Software\\TuneUp Utilities\\WinStyler\\tu_logonui.exe"

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"VIDC.MJPG"= pvmjpg21.dll

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Menu Démarrer^Programmes^Démarrage^Exif Launcher S.lnk]

path=C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\Exif Launcher S.lnk

backup=C:\WINDOWS\pss\Exif Launcher S.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Menu Démarrer^Programmes^Démarrage^Logitech SetPoint.lnk]

path=C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\Logitech SetPoint.lnk

backup=C:\WINDOWS\pss\Logitech SetPoint.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users.WINDOWS^Menu Démarrer^Programmes^Démarrage^LUMIX Simple Viewer.lnk]

backup=C:\WINDOWS\pss\LUMIX Simple Viewer.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^guillaine.HOME-6620B39EBF^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 2.4.lnk]

path=C:\Documents and Settings\guillaine.HOME-6620B39EBF\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 2.4.lnk

backup=C:\WINDOWS\pss\OpenOffice.org 2.4.lnkStartup

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mmtask

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMTray

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StandardInstall]

[X]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

--a--c--- 2008-01-11 23:16 39792 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ANIWZCS2Service]

--a------ 2008-05-28 11:05 49152 C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]

--a--c--- 2007-11-13 15:24 72192 C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]

--a--c--- 2004-02-24 22:10 335872 C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BellCanada_McciTrayApp]

--a--c--- 2007-11-19 10:33 1468928 C:\Program Files\BellCanada\McciTrayApp.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]

--a------ 2004-08-05 08:00 15360 C:\WINDOWS\system32\ctfmon.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\D-Link Wireless G WDA-1320]

--a------ 2005-12-14 15:56 2711552 C:\Program Files\D-Link\Wireless G WDA-1320\AirGCFG.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]

--a--c--- 2004-08-05 08:00 208952 C:\WINDOWS\ime\imjp8_1\imjpmig.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]

--a--c--- 2008-02-04 15:18 267048 C:\Program Files\iTunes\iTunesHelper.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCameraAssistant]

--a------ 2005-12-07 10:26 489472 C:\Program Files\Logitech\Video\CameraAssistant.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechCameraService(E)]

--a------ 2004-11-01 17:22 262144 C:\WINDOWS\system32\ElkCtrl.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideo[inspector]]

--a------ 2005-12-07 10:33 73728 C:\Program Files\Logitech\Video\InstallHelper.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LVCOMSX]

--a------ 2005-12-09 15:32 225280 C:\WINDOWS\system32\LVCOMSX.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

--a--c--- 2001-07-09 10:50 155648 C:\WINDOWS\system32\NeroCheck.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]

--a--c--- 2004-08-05 08:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]

--a--c--- 2004-08-05 08:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

--a--c--- 2008-02-01 00:13 385024 C:\Program Files\QuickTime\QTTask.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]

--a--c--- 2008-02-22 04:25 144784 C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\zBrowser Launcher]

--a--c--- 2003-12-01 12:38 892928 C:\Program Files\Logitech\iTouch\iTouch.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIModeChange]

--a--c--- 2001-09-04 04:24 28672 C:\WINDOWS\system32\Ati2mdxx.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Hardware Abstraction Layer]

--a--c--- 2007-11-29 02:17 55824 C:\WINDOWS\KHALMNPR.Exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]

"WMPNetworkSvc"=3 (0x3)

"WLSetupSvc"=3 (0x3)

"WinDefend"=2 (0x2)

"usnjsvc"=3 (0x3)

"SPTISRV"=3 (0x3)

"SoundMAX Agent Service (default)"=2 (0x2)

"PACSPTISVR"=3 (0x3)

"MSCSPTISRV"=3 (0x3)

"McciCMService"=2 (0x2)

"LVSrvLauncher"=2 (0x2)

"LVPrcSrv"=2 (0x2)

"LVCOMSer"=2 (0x2)

"iPod Service"=3 (0x3)

"idsvc"=3 (0x3)

"gusvc"=3 (0x3)

"DTSRVC"=2 (0x2)

"CTDevice_Srv"=2 (0x2)

"Creative Service for CDROM Access"=2 (0x2)

"AVG Anti-Spyware Guard"=2 (0x2)

"avast! Web Scanner"=3 (0x3)

"avast! Mail Scanner"=3 (0x3)

"avast! Antivirus"=2 (0x2)

"ATI Smart"=2 (0x2)

"Ati HotKey Poller"=2 (0x2)

"aswUpdSv"=2 (0x2)

"Apple Mobile Device"=2 (0x2)

"ANIWZCSdService"=2 (0x2)

"ACDaemon"=2 (0x2)

"aawservice"=2 (0x2)

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]

"D-Link Wireless G WDA-1320"=C:\Program Files\D-Link\Wireless G WDA-1320\AirGCFG.exe

"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" -atboottime

"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide

"LogitechCommunicationsManager"="C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

"C:\\WINDOWS\\system32\\sessmgr.exe"=

"C:\\Program Files\\iTunes\\iTunes.exe"=

 

R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-15 19:20]

R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-15 19:16]

R3 LVPrcMon;Logitech LVPrcMon Driver;C:\WINDOWS\system32\drivers\LVPrcMon.sys [2005-12-09 15:37]

S3 A3AB;D-Link AirPro 802.11a/b Wireless Adapter Service(A3AB);C:\WINDOWS\system32\DRIVERS\A3AB.sys [2005-08-25 15:00]

S3 LCcfltr;Logitech USB Filter Driver;C:\WINDOWS\system32\Drivers\LCcFltr.Sys [2003-11-07 05:50]

S3 MREMP50;MREMP50 NDIS Protocol Driver;C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS [2007-10-31 17:51]

S3 MRESP50;MRESP50 NDIS Protocol Driver;C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS [2007-10-31 17:51]

S4 ACDaemon;ArcSoft Connect Daemon;C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe [2007-11-14 13:04]

S4 McciCMService;McciCMService;"C:\Program Files\Common Files\Motive\McciCMService.exe" [2007-11-01 11:59]

 

.

Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'

"2008-07-07 19:01:13 C:\WINDOWS\Tasks\Spybot - Search & Destroy - Scheduled Task.job"

- C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe

.

**************************************************************************

 

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-07-11 19:14:01

Windows 5.1.2600 Service Pack 2 NTFS

 

Balayage processus cach‚s ...

 

Balayage cach‚ autostart entries ...

 

Balayage des fichiers cach‚s ...

 

Scan termin‚ avec succŠs

Les fichiers cach‚s: 0

 

**************************************************************************

.

--------------------- DLLs a charg‚ sous des processus courants ---------------------

 

PROCESS: C:\WINDOWS\system32\winlogon.exe

-> C:\WINDOWS\system32\Ati2evxx.dll

.

------------------------ Other Running Processes ------------------------

.

C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Program Files\Fichiers communs\Logitech\LVMVFM\LVPrcSrv.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

.

**************************************************************************

.

Temps d'accomplissement: 2008-07-11 19:23:00 - machine was rebooted

ComboFix-quarantined-files.txt 2008-07-11 23:22:53

ComboFix2.txt 2008-07-10 10:44:02

ComboFix3.txt 2008-07-04 14:22:09

ComboFix4.txt 2008-06-29 18:19:37

 

Pre-Run: 64,554,000,384 octets libres

Post-Run: 64,536,608,768 octets libres

 

732 --- E O F --- 2008-07-09 10:52:55

 

et...Hijackthis

 

C:\Documents and Settings\enfants : zylomtest (0 bytes)

C:\Documents and Settings\enfants : zylomtr{000HQ7FF-AD7A-3FG1-0C15-24GTSFND4VVA} (17 bytes)

C:\Documents and Settings\enfants : zylomtest (0 bytes)

C:\Documents and Settings\enfants : zylomtr{000HQ7FF-AD7A-3FG1-0C15-24GTSFND4VVA} (17 bytes)

C:\Documents and Settings\enfants\Favoris\Bush Shoot Out FLASH - Play Free Games Online at Y8.com.url : favicon (2238 bytes)

C:\Documents and Settings\enfants\Favoris\Do You Look Good.url : favicon (3638 bytes)

C:\Documents and Settings\enfants\Favoris\http--www6.jeux.com-jeux-categorie.phpo=0&VIDCat=5&VMots=&qsearch=&cpp=&id=&num=15.url : favicon (1406 bytes)

C:\Documents and Settings\enfants\Favoris\Maisons à vendre Montréal - Immobilier - Petites Annonces Montréal Gratuites.url : favicon (318 bytes)

C:\Documents and Settings\enfants\Favoris\Miniclip Games - Play Free Games.url : favicon (15086 bytes)

C:\Documents and Settings\enfants\Favoris\YouTube - Broadcast Yourself..url : favicon (1150 bytes)

C:\Documents and Settings\enfants\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail\.!!OIM\5F2B4E36-00000002.eml : OEStandardProperty (1242 bytes)

C:\Documents and Settings\enfants\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail\Boîte de ré cbe\58CA3A29-00000004.eml : OEStandardProperty (1842 bytes)

C:\Documents and Settings\enfants\Local Settings\Application Data\Microsoft\Windows Live Mail\Storage Folders\Boîte d'envoi\3F2A26BA-00000001.eml : OEStandardProperty (1410 bytes)

C:\Documents and Settings\enfants\Local Settings\Application Data\Microsoft\Windows Live Mail\Storage Folders\Drafts\4C395264-00000001.eml : OEStandardProperty (1266 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtest (0 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{0000278T-TT9K-T8DU-1KFV-23O5NTEJMVRF} (18 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{0000278T-TT9K-T8DU-1KUM-U48IGLUAR1P0} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00009BV5-V6E6-N99D-O8SF-9VRP3OLUMVGP} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00009BV5-V6E6-N99D-O8SF-9VRP3OLUMVKH} (16 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00009BV5-V6E6-N99D-O8SF-9VRP3OLUMVKO} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-4NRJ-I49OQGJLR922} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-4NRJ-I49P1FRES9P3} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-4NRJ-I49PM17B0T9D} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-6KK2-254E2EDG6VV2} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-6KK2-254E2EDG6VVH} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-6KK2-254E2EDG6VVP} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-949H-O49AH093V1ET} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-B5J0-Q4AD12I1ROVU} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-OT7U-252VEQ1T6VVJ} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-QFBF-248SFSDFS6TL} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-QFBF-24E13NBLU7QO} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-R62G-24MTE5RF46SR} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-R62G-24N5V626M7C0} (21 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-RHLL-2580FLMT0SO4} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-0C15-24GTSFND4VVA} (14 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-79JF-254CM94A2VVP} (18 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-7LLS-22TDACKJ0VU0} (16 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-8A7A-24DNP0NM2JPA} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-97R9-24PV6P1ROVVC} (16 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-FP6A-248DTTL0QVVP} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24R26AT86SD2} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24S1L09POJQ6} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24S1L09POO2K} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24THOUBRMT9K} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-T8BJ-22LI948QUVVG} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG2-117O-24P094HPUVVL} (15 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtest (0 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{0000278T-TT9K-T8DU-1KFV-23O5NTEJMVRF} (18 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{0000278T-TT9K-T8DU-1KUM-U48IGLUAR1P0} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00009BV5-V6E6-N99D-O8SF-9VRP3OLUMVGP} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00009BV5-V6E6-N99D-O8SF-9VRP3OLUMVKH} (16 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00009BV5-V6E6-N99D-O8SF-9VRP3OLUMVKO} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-4NRJ-I49OQGJLR922} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-4NRJ-I49P1FRES9P3} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-4NRJ-I49PM17B0T9D} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-6KK2-254E2EDG6VV2} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-6KK2-254E2EDG6VVH} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-6KK2-254E2EDG6VVP} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-949H-O49AH093V1ET} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-B5J0-Q4AD12I1ROVU} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-OT7U-252VEQ1T6VVJ} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-QFBF-248SFSDFS6TL} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-QFBF-24E13NBLU7QO} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-R62G-24MTE5RF46SR} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-R62G-24N5V626M7C0} (21 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{00013KEU-UKQE-K6V0-RHLL-2580FLMT0SO4} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-0C15-24GTSFND4VVA} (14 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-79JF-254CM94A2VVP} (18 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-7LLS-22TDACKJ0VU0} (16 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-8A7A-24DNP0NM2JPA} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-97R9-24PV6P1ROVVC} (16 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-FP6A-248DTTL0QVVP} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24R26AT86SD2} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24S1L09POJQ6} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24S1L09POO2K} (23 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-QCPB-24THOUBRMT9K} (22 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG1-T8BJ-22LI948QUVVG} (17 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF : zylomtr{000HQ7FF-AD7A-3FG2-117O-24P094HPUVVL} (15 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Artmature - Accueil.url : favicon (1150 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Bell Internet - Soutien.url : favicon (6006 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Chez Maya.url : favicon (318 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Clubic Informatique et Multimédia.url : favicon (318 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Comment Ça Marche - Communauté informatique.url : favicon (318 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\CrystalXP.net - Graphisme & Personnalisation de Windows.url : favicon (15086 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Description de l'utilitaire Windows Installer CleanUp.url : favicon (3638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\DLL-files.com - Download all your missing dll-files..url : favicon (318 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Experts en déclarations de revenus en ligne.url : favicon (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\L'espion qui venait de Microsoft... - Zebulon.fr.url : favicon (796 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\LesPAC.com.url : favicon (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Microsoft Canada.url : favicon (3638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Miniclip Games - Play Free Games.url : favicon (15086 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Mon album Caméléo Photo.url : favicon (894 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\PC Astuces Logithèque et Téléchargements.url : favicon (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Recettes du Québec - Des recettes simples de tous les jours.url : favicon (894 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Sun Microsystems of Canada, Inc..url : favicon (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\TOP Mon Coin de Jardin.url : favicon (3638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Toutes les techniques de faux-finis en peinture - Vidéos - Yona Couture et Astuces.url : favicon (766 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Toxquebec - EN BREF.url : favicon (824 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\Zebulon.fr Le site de l'optimisation PC et Windows.url : favicon (796 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Favoris\©Animabelle - Page Menu.url : favicon (2998 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\006A309E-00000015.eml : OEStandardProperty (1860 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\02124336-00000001.eml : OEStandardProperty (1374 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\0A9451E8-00000016.eml : OEStandardProperty (2780 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\125B6540-0000000E.eml : OEStandardProperty (1564 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\142572E9-0000000D.eml : OEStandardProperty (1422 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\18870FBE-00000002.eml : OEStandardProperty (2468 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\1B955360-0000000F.eml : OEStandardProperty (1554 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\35954635-00000004.eml : OEStandardProperty (1420 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\37B84F35-00000007.eml : OEStandardProperty (1338 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\3814243D-00000003.eml : OEStandardProperty (1440 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\3E0A7A94-00000011.eml : OEStandardProperty (1400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\42A41F32-0000000B.eml : OEStandardProperty (1504 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\4A1F11D7-0000000C.eml : OEStandardProperty (1598 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\540A3E1A-00000010.eml : OEStandardProperty (1554 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\5B812A10-00000013.eml : OEStandardProperty (1888 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\692640BB-00000012.eml : OEStandardProperty (1400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\7CF1133F-00000008.eml : OEStandardProperty (1600 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\7DD9710A-00000014.eml : OEStandardProperty (1650 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis\7F477AC1-00000006.eml : OEStandardProperty (1396 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\02521E8B-00000001.eml : OEStandardProperty (1400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\055E7895-00000008.eml : OEStandardProperty (1342 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\0AB80A9F-00000010.eml : OEStandardProperty (2044 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\0DD07F93-00000005.eml : OEStandardProperty (2202 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\11815288-0000001D.eml : OEStandardProperty (4146 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\14E111D4-00000018.eml : OEStandardProperty (4042 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\17340D89-00000015.eml : OEStandardProperty (3428 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\28C87722-00000011.eml : OEStandardProperty (1924 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\299E424D-0000000D.eml : OEStandardProperty (1438 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\2A9E4E18-0000000F.eml : OEStandardProperty (1920 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\2CF25B13-00000017.eml : OEStandardProperty (4180 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\321316BE-0000001E.eml : OEStandardProperty (3530 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\369214EC-0000001C.eml : OEStandardProperty (1854 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\385C081C-00000002.eml : OEStandardProperty (2024 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\3D247C88-00000006.eml : OEStandardProperty (2284 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\4A412C4D-00000012.eml : OEStandardProperty (3984 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\56F40CD8-0000000A.eml : OEStandardProperty (2426 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\5861254A-00000004.eml : OEStandardProperty (1430 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\588A297D-00000016.eml : OEStandardProperty (3370 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\5D4770C0-0000001F.eml : OEStandardProperty (3732 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\5EE3466E-00000007.eml : OEStandardProperty (1480 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\65EF149A-0000000C.eml : OEStandardProperty (2882 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\66F53B0D-00000003.eml : OEStandardProperty (1456 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\6C3C080E-0000000E.eml : OEStandardProperty (1438 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\721C2247-00000013.eml : OEStandardProperty (3774 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\7309203F-00000020.eml : OEStandardProperty (3228 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\7714617B-00000019.eml : OEStandardProperty (3172 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\77AE7C0B-0000001A.eml : OEStandardProperty (3444 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\7A0114F2-0000000B.eml : OEStandardProperty (2376 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\7A8F7E8F-00000009.eml : OEStandardProperty (2420 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\amis alco\7CAF1DAF-00000014.eml : OEStandardProperty (3302 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\0670450A-0000001B.eml : OEStandardProperty (1642 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\1C6A494D-00000023.eml : OEStandardProperty (1638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\1EB5145D-0000002D.eml : OEStandardProperty (1424 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\28094676-00000025.eml : OEStandardProperty (1660 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\2C636B9F-00000028.eml : OEStandardProperty (1384 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\2CC7391B-0000002E.eml : OEStandardProperty (1454 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\2D13439F-00000015.eml : OEStandardProperty (1578 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\305E440D-00000009.eml : OEStandardProperty (1666 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\34022141-0000001E.eml : OEStandardProperty (1470 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\3D1E6738-00000021.eml : OEStandardProperty (1660 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\413D4210-00000026.eml : OEStandardProperty (1638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\41BB26E9-00000003.eml : OEStandardProperty (1714 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\4AA060DF-00000020.eml : OEStandardProperty (1656 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\59FC1F1E-00000032.eml : OEStandardProperty (1534 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\646767C5-00000022.eml : OEStandardProperty (1638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\66BD07A2-00000034.eml : OEStandardProperty (1548 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\67271B0E-0000001A.eml : OEStandardProperty (1974 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\68512155-00000031.eml : OEStandardProperty (1656 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\69966AEE-00000017.eml : OEStandardProperty (1524 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\6A6832DD-0000002A.eml : OEStandardProperty (1650 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\6F204C61-00000024.eml : OEStandardProperty (1638 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\70653682-0000002B.eml : OEStandardProperty (1684 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\76BF3BEC-00000027.eml : OEStandardProperty (1512 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\archives divers\78D42DBE-0000002C.eml : OEStandardProperty (1914 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Boîte de ré 29\03C05D10-00000563.eml : OEStandardProperty (1620 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Boîte de ré 29\10937BC8-0000055A.eml : OEStandardProperty (1402 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\026C45D5-0000001F.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\041826F7-00000016.eml : OEStandardProperty (1504 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\07815943-0000000C.eml : OEStandardProperty (1518 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\08860294-0000002A.eml : OEStandardProperty (1480 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\0ACD15B0-0000001C.eml : OEStandardProperty (1400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\0DCB581D-00000025.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\0F2259D9-00000022.eml : OEStandardProperty (1598 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\1462760A-0000001B.eml : OEStandardProperty (1570 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\166C230F-00000006.eml : OEStandardProperty (1612 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\173869E2-00000030.eml : OEStandardProperty (1460 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\19A938D2-00000004.eml : OEStandardProperty (3810 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\1A6120C0-00000024.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\1F940F70-00000012.eml : OEStandardProperty (1490 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\21085144-0000002B.eml : OEStandardProperty (1484 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\23915F0C-00000003.eml : OEStandardProperty (1684 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\36421339-00000014.eml : OEStandardProperty (1516 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\37062302-00000015.eml : OEStandardProperty (1418 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\387D09C0-00000028.eml : OEStandardProperty (1478 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\428E082C-00000029.eml : OEStandardProperty (2092 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\429E6D62-00000017.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\44A67B6D-0000000F.eml : OEStandardProperty (3800 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\45982337-0000002E.eml : OEStandardProperty (1526 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\48901614-0000001A.eml : OEStandardProperty (1486 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\497B0307-0000002C.eml : OEStandardProperty (1448 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\4A0C0B9A-00000001.eml : OEStandardProperty (3864 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\4A5E66D5-00000013.eml : OEStandardProperty (1578 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\4A766DD0-00000018.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\4E39353E-00000020.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\5025544D-00000010.eml : OEStandardProperty (4096 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\57354714-00000009.eml : OEStandardProperty (1352 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\5D6E7B64-00000027.eml : OEStandardProperty (3516 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\5F4B5273-0000001D.eml : OEStandardProperty (1400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\63B27A0C-0000000A.eml : OEStandardProperty (1736 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\68B9204D-00000021.eml : OEStandardProperty (1400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\699B1072-00000008.eml : OEStandardProperty (2694 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\6B576CA1-00000002.eml : OEStandardProperty (2436 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\6BC56952-00000005.eml : OEStandardProperty (2664 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\6C8A7F51-0000000B.eml : OEStandardProperty (1346 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\6D16510D-00000026.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\6DBE197D-00000019.eml : OEStandardProperty (1576 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\71C25684-00000007.eml : OEStandardProperty (2632 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\75E636FD-00000011.eml : OEStandardProperty (1436 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\7684668C-0000002D.eml : OEStandardProperty (3562 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\797A752B-0000002F.eml : OEStandardProperty (1486 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\7BE514A7-0000001E.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\7E814D0C-0000000E.eml : OEStandardProperty (3324 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\famille\7EE908EB-00000023.eml : OEStandardProperty (1466 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\0040001C-00000011.eml : OEStandardProperty (1780 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\0BB52767-00000010.eml : OEStandardProperty (1780 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\14C8400C-00000008.eml : OEStandardProperty (1512 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\1C3B4D3D-0000000F.eml : OEStandardProperty (1780 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\1FF74382-0000000D.eml : OEStandardProperty (1782 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\22A81108-0000000E.eml : OEStandardProperty (1782 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\24812C6A-00000012.eml : OEStandardProperty (1782 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\266D743A-00000002.eml : OEStandardProperty (1782 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\2BD46D7A-00000007.eml : OEStandardProperty (1730 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\47C3335B-00000003.eml : OEStandardProperty (1732 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\59BE01B6-0000000C.eml : OEStandardProperty (1848 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\68E703D2-00000009.eml : OEStandardProperty (1690 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\71432918-00000006.eml : OEStandardProperty (1578 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\724C2A1C-0000000A.eml : OEStandardProperty (1690 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\7623001A-0000000B.eml : OEStandardProperty (1756 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\7D5D64CA-00000001.eml : OEStandardProperty (1848 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\7E0162FD-00000005.eml : OEStandardProperty (1782 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\soutien inf 6d0\7E777C91-00000004.eml : OEStandardProperty (1848 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-00000079.eml : OEStandardProperty (3752 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-00000082.eml : OEStandardProperty (3744 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-00000083.eml : OEStandardProperty (1490 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-00000085.eml : OEStandardProperty (3600 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-00000087.eml : OEStandardProperty (2708 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-0000008D.eml : OEStandardProperty (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-00000095.eml : OEStandardProperty (1432 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-000000A0.eml : OEStandardProperty (4204 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-000000A4.eml : OEStandardProperty (1512 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-000000AA.eml : OEStandardProperty (3160 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-000000B3.eml : OEStandardProperty (1390 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-000000C4.eml : OEStandardProperty (1440 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\00294823-000000C5.eml : OEStandardProperty (2978 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\0124305E-000000B7.eml : OEStandardProperty (4068 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\0124305E-000000C1.eml : OEStandardProperty (3516 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\01EF075B-00000088.eml : OEStandardProperty (1354 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\02BB1D57-000000A5.eml : OEStandardProperty (1636 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\04465D74-000000C3.eml : OEStandardProperty (3134 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\04E91D78-000000A7.eml : OEStandardProperty (3072 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\05CE7079-00000066.eml : OEStandardProperty (1378 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\07721C20-00000068.eml : OEStandardProperty (3192 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\0A0C55AA-000000AD.eml : OEStandardProperty (1586 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\0D667983-0000001D.eml : OEStandardProperty (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\0FEA50BF-00000099.eml : OEStandardProperty (3198 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\140060AF-000000D0.eml : OEStandardProperty (2912 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\154754DE-000000B8.eml : OEStandardProperty (3530 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\154A61DB-000000B2.eml : OEStandardProperty (1574 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\16496DF1-00000080.eml : OEStandardProperty (1470 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\16496DF1-00000093.eml : OEStandardProperty (4844 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\16496DF1-00000096.eml : OEStandardProperty (2570 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\16496DF1-000000A6.eml : OEStandardProperty (2986 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\16496DF1-000000B6.eml : OEStandardProperty (1286 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\164B5382-000000B0.eml : OEStandardProperty (1358 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\18BE6784-00000091.eml : OEStandardProperty (1602 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\18BE6784-000000AB.eml : OEStandardProperty (3992 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\18BE6784-000000B4.eml : OEStandardProperty (1372 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\18BE6784-000000CA.eml : OEStandardProperty (1444 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\1A3B751F-0000006C.eml : OEStandardProperty (3504 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\1B927943-0000009B.eml : OEStandardProperty (1370 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\26E901EB-00000094.eml : OEStandardProperty (1566 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\26E901EB-000000C0.eml : OEStandardProperty (1558 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\2BFC3BDC-00000081.eml : OEStandardProperty (1344 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\2CB7596E-000000CF.eml : OEStandardProperty (2322 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\2CD672AE-0000007E.eml : OEStandardProperty (1468 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\2CD672AE-000000C9.eml : OEStandardProperty (1570 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\2E5B03D1-00000084.eml : OEStandardProperty (3348 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\301C0BDB-000000BC.eml : OEStandardProperty (1378 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\30C24FC6-00000078.eml : OEStandardProperty (1360 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\36813539-00000040.eml : OEStandardProperty (2164 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\371409EC-00000097.eml : OEStandardProperty (4684 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\3B577004-000000A8.eml : OEStandardProperty (2394 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\3BB304AD-000000AF.eml : OEStandardProperty (4024 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\3C7D5870-0000009F.eml : OEStandardProperty (1420 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\3F2972AF-000000CD.eml : OEStandardProperty (2332 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\41AE0277-00000067.eml : OEStandardProperty (2670 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\428B26A6-000000BA.eml : OEStandardProperty (4124 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\440D491C-000000C2.eml : OEStandardProperty (2706 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\45091238-000000A3.eml : OEStandardProperty (1410 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\48F12976-0000008A.eml : OEStandardProperty (2056 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-0000007D.eml : OEStandardProperty (1388 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-00000092.eml : OEStandardProperty (2158 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-000000A1.eml : OEStandardProperty (3016 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-000000B5.eml : OEStandardProperty (1438 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-000000BE.eml : OEStandardProperty (1448 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-000000C6.eml : OEStandardProperty (1548 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AE13D6C-000000CB.eml : OEStandardProperty (1478 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4AF57604-0000009E.eml : OEStandardProperty (1406 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4C6A5839-0000007A.eml : OEStandardProperty (1392 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\4D100FBF-0000006A.eml : OEStandardProperty (2778 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\50F20C19-000000CE.eml : OEStandardProperty (2632 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\55116FFD-0000008C.eml : OEStandardProperty (2134 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\55CF3AAF-0000009C.eml : OEStandardProperty (1502 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\56AE0732-000000BD.eml : OEStandardProperty (5230 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5972618B-0000008B.eml : OEStandardProperty (3660 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5B5D434E-000000CC.eml : OEStandardProperty (1394 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5B6F2829-0000009D.eml : OEStandardProperty (3522 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5E144DF2-00000031.eml : OEStandardProperty (3942 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5E976A56-000000B1.eml : OEStandardProperty (2306 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5ED3136F-000000D1.eml : OEStandardProperty (2152 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\5EDD0A20-0000009A.eml : OEStandardProperty (1604 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\62CC7BC2-00000077.eml : OEStandardProperty (2050 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\644366BB-000000B9.eml : OEStandardProperty (1632 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\64B6188E-000000AC.eml : OEStandardProperty (1554 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\651C7616-00000075.eml : OEStandardProperty (3554 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\69525F90-0000007F.eml : OEStandardProperty (2774 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\69525F90-000000BF.eml : OEStandardProperty (1510 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\69E2033A-000000C7.eml : OEStandardProperty (1514 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\701F5D03-000000A2.eml : OEStandardProperty (1322 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\7067652A-00000098.eml : OEStandardProperty (1352 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\72371E64-00000086.eml : OEStandardProperty (1534 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\72EF5A09-00000090.eml : OEStandardProperty (3114 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\734261B7-00000076.eml : OEStandardProperty (1320 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\74517768-0000003E.eml : OEStandardProperty (2512 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\746C7D37-00000059.eml : OEStandardProperty (3420 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\79131012-000000A9.eml : OEStandardProperty (2830 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\791C3B47-00000041.eml : OEStandardProperty (2508 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\7C7A3C63-0000008E.eml : OEStandardProperty (3656 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\7CF96942-000000AE.eml : OEStandardProperty (1550 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\7E8D3888-00000089.eml : OEStandardProperty (1354 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (di fa8\Éléments en ae1\7F967FF5-000000BB.eml : OEStandardProperty (3400 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Storage Folders\Messages ré b6d\06-16-2008 27e\Hotmail (di fa8\Boîte de ré 29\24177BD4-13D5BD34.eml : OEStandardProperty (2110 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Storage Folders\Messages ré b6d\06-24-2008 3e0\Hotmail (di fa8\Boîte de ré 29\52FC7F21-EBB27267.eml : OEStandardProperty (1794 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Storage Folders\Messages ré b6d\06-30-2008 b1b\Hotmail (di fa8\Brouillons\256C0385-24C9547B.eml : OEStandardProperty (1950 bytes)

C:\Documents and Settings\guillaine.HOME-6620B39EBF\Local Settings\Application Data\Microsoft\Windows Live Mail\Storage Folders\Messages ré b6d\07-07-2008 cc6\Hotmail (di fa8\Brouillons\056A223D-4DEB7CD6.eml : OEStandardProperty (1970 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\enfants\Favoris\Bush Shoot Out FLASH - Play Free Games Online at Y8.com.url : favicon (2238 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\enfants\Favoris\Do You Look Good.url : favicon (3638 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\enfants\Favoris\http--www6.jeux.com-jeux-categorie.phpo=0&VIDCat=5&VMots=&qsearch=&cpp=&id=&num=15.url : favicon (1406 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\enfants\Favoris\Maisons à vendre Montréal - Immobilier - Petites Annonces Montréal Gratuites.url : favicon (318 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\enfants\Favoris\Miniclip Games - Play Free Games.url : favicon (15086 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\enfants\Favoris\YouTube - Broadcast Yourself..url : favicon (1150 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Artmature - Accueil.url : favicon (1150 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\BMO Banque de Montréal - Services bancaires en ligne.url : favicon (1150 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\CHOM FM.url : favicon (3638 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Comment Ça Marche - Communauté informatique.url : favicon (318 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\CrystalXP.net - Graphisme & Personnalisation de Windows.url : favicon (15086 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\DLL-files.com - Download all your missing dll-files..url : favicon (318 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Experts en déclarations de revenus en ligne.url : favicon (1406 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Facebook Home.url : favicon (1150 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Jeux y8.com.url : favicon (1150 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Merci d'avoir choisi ImpôtExpert.ca..url : favicon (1406 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Microsoft Canada.url : favicon (3638 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Miniclip Games - Play Free Games.url : favicon (15086 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Mon album Caméléo Photo.url : favicon (894 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\PC Astuces Logithèque et Téléchargements.url : favicon (1406 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\TOP Mon Coin de Jardin.url : favicon (3638 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\Toutes les techniques de faux-finis en peinture - Vidéos - Yona Couture et Astuces.url : favicon (766 bytes)

C:\Program Files\Fichiers communs\Motive\Profiles\BackupIEFavorites\guillaine.HOME-6620B39EBF\Favoris\©Animabelle - Page Menu.url : favicon (2998 bytes)

 

et voilà cher oGu......

 

bonne journée ( ou soirée :P )

Modifié par guillou
Posté(e)

ben oui je me réponds...lolll je veux juste être certaine que tu verras mon message vu que je l'ai édité ! je suis pas encore très à l'aise avec les procédures du forum... donc voilà ! bye bye

 

guillou :P

  • 2 semaines après...
Posté(e) (modifié)

Salut Guillou!

 

Désolé pour l'attente, mais je coupe complètement avec l'informatique pendant mes congés :P !

 

Ta machine semble propre maintenant, au vu des rapports. On va maintenant la nettoyer en profondeur avec des scans, puis la régler, et enfin la sécuriser (mais pas tout à la fois!!!).

 

flechedroitets2.pngREMPLACER AVAST!

 

Avast!, ton antivirus est dépassé en ce moment (la preuve: il a attendu que le virus se soit installé sur ton PC avant de te prévenir, et il est incapable de le supprimer...), et nous avons l'habitude ici de le faire supprimer pour le remplacer par deux freewares d'excellente facture: Antivir (en anglais) ou AVG (en anglais). Pour t'en convaincre:

 

http://forum.malekal.com/viewtopic.php?f=45&t=11659

 

DESINSTALLER AVAST!

  • Télécharge systemsr4.pngaswClear.exe sur ton bureau en cliquant sur cette image:
    avastoo1.jpg
  • Dans les réglages d'Avast! (à partir de la boule bleue en bas à droite), coche l'option "Désactiver le module self-defense d'avast!"
     
    avastselfprotectionfu7.png
     
     
  • Lance ensuite aswClear avec un double-clic
  • Clique sur Uninstall
  • Fais redémarrer l' ordinateur
  • Efface aswClear.exe

 

 

INSTALLER ANTIVIR

  • Télécharge systemsr4.pngAntivir en cliquant sur l'image:
     
    antivirft1.jpg
     
  • Installe-le
  • Configure-le en suivant le tuto de Falkra, notre cher admin' sécurité!

 

 

 

flechedroitets2.pngRAPPORT ANTIVIR

 

Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :

  • Fais redémarrer ton ordinateur
  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte habituel
  • Connecte tes clés USB et disques externes.
  • Puis lance un scan Antivir et supprime tout ce qu'il te trouve.
  • Poste le rapport qu'Antivir va générer

 

Paramètre Antivir comme suit:

  • Clique droit sur le parapluie->Configure
  • Clique sur Expert mode->Scan:
  • Là, coche:
    • All files
    • Additionnal Settings:tout cocher
      Clic sur scan +
      Action for concerning files:
      Cocher
      copie file to quarantine before action
      Primary action...................: repair => au cas ou ce serait un fichier système corrompu
      Secondary action.................: delete => s'il y a détection, autant supprimer. une sauvegarde sera dans la quarantaine

 

 

 

Puis:

 

 

 

flechedroitets2.pngEWIDO

Télécharge systemsr4.pngEwido Micro-Scanner sur ton bureau en cliquant sur cette image:

 

picture.png

 

  • Double-clique sur le fichier ewido_micro.exe pour l'exécuter.
  • Le programme va demander dès son lancement un accès internet pour se mettre à jour, accepte.
  • Puis, un nouvel écran apparaît, assure toi que toutes les cases soient cochées.
  • Connecte tes clés USB et disques externes.
  • Clique sur Start Scan et laisse l'outil travailler.
  • Quand l'outil à fini, clique sur save report et sauvegarde le rapport sur ton bureau.
  • Poste le dans ta prochaine réponse.

  • Nb, ne clique pas tout de suite sur Remove infections; nous devons nous assurer que toutes les détections soient infectieuses car certains utilitaires légitimes pourraient apparaître dans le rapport.

 

 

 

On poursuit!

 

flechedroitets2.pngMALWAREBYTES ' ANTI-MALWARE (MBAM)

 

  • Lance Malwarebytes'Anti-malware
  • Connecte tes clés USB et disques externes.
  • Dans l'onglet "mise à jour", cliquer sur le bouton "Recherche de mise à jour": si le pare-feu demande l'autorisation à MBAM de se connecter, accepte.
  • Une fois la mise à jour terminée, rend-toi dans l'onglet "Recherche"
  • Sélectionne "Exécuter un examen complet"
  • Clique sur "Rechercher"
  • Le scan se lance
  • A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur "OK" pour poursuivre:
    mbam1kb9.jpg

  • Ferme tes navigateurs et clique en bas sur "Afficher les résultats"
  • Si des malwares ont été détectés, leur liste s'affiche.
    En cliquant sur "Supprimer la sélection" , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine:
    mbam2fp7.jpg

  • MBAM va ouvrir le bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport et poste-le

 

 

 

Enfin:

 

flechedroitets2.pngHIJACKTHIS

  • Lance HijackThis
  • Choisis l'option "Do a system scan and save a log file"
  • Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note
  • Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport
  • Colle le rapport que tu viens de copier sur ce forum
  • Ne fixe encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement

Modifié par oGu
Posté(e)
Salut Guillou!

 

Désolé pour l'attente, mais je coupe complètement avec l'informatique pendant mes congés :P !

 

Ta machine semble propre maintenant, au vu des rapports. On va maintenant la nettoyer en profondeur avec des scans, puis la régler, et enfin la sécuriser (mais pas tout à la fois!!!).

 

flechedroitets2.pngREMPLACER AVAST!

 

Avast!, ton antivirus est dépassé en ce moment (la preuve: il a attendu que le virus se soit installé sur ton PC avant de te prévenir, et il est incapable de le supprimer...), et nous avons l'habitude ici de le faire supprimer pour le remplacer par deux freewares d'excellente facture: Antivir (en anglais) ou AVG (en anglais). Pour t'en convaincre:

 

http://forum.malekal.com/viewtopic.php?f=45&t=11659

 

DESINSTALLER AVAST!

  • Télécharge systemsr4.pngaswClear.exe sur ton bureau en cliquant sur cette image:
    avastoo1.jpg
  • Dans les réglages d'Avast! (à partir de la boule bleue en bas à droite), coche l'option "Désactiver le module self-defense d'avast!"
     
    avastselfprotectionfu7.png
  • Lance ensuite aswClear avec un double-clic
  • Clique sur Uninstall
  • Fais redémarrer l' ordinateur
  • Efface aswClear.exe

 

 

INSTALLER ANTIVIR

  • Télécharge systemsr4.pngAntivir en cliquant sur l'image:
     
    antivirft1.jpg
  • Installe-le
  • Configure-le en suivant le tuto de Falkra, notre cher admin' sécurité!

 

 

 

flechedroitets2.pngRAPPORT ANTIVIR

 

Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :

  • Fais redémarrer ton ordinateur
  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte habituel
  • Connecte tes clés USB et disques externes.
  • Puis lance un scan Antivir et supprime tout ce qu'il te trouve.
  • Poste le rapport qu'Antivir va générer

 

Paramètre Antivir comme suit:

  • Clique droit sur le parapluie->Configure
  • Clique sur Expert mode->Scan:
  • Là, coche:
    • All files
    • Additionnal Settings:tout cocher
      Clic sur scan +
      Action for concerning files:
      Cocher
      copie file to quarantine before action
      Primary action...................: repair => au cas ou ce serait un fichier système corrompu
      Secondary action.................: delete => s'il y a détection, autant supprimer. une sauvegarde sera dans la quarantaine

 

 

 

Puis:

 

 

 

flechedroitets2.pngEWIDO

Télécharge systemsr4.pngEwido Micro-Scanner sur ton bureau en cliquant sur cette image:

 

picture.png

 

  • Double-clique sur le fichier ewido_micro.exe pour l'exécuter.
  • Le programme va demander dès son lancement un accès internet pour se mettre à jour, accepte.
  • Puis, un nouvel écran apparaît, assure toi que toutes les cases soient cochées.
  • Connecte tes clés USB et disques externes.
  • Clique sur Start Scan et laisse l'outil travailler.
  • Quand l'outil à fini, clique sur save report et sauvegarde le rapport sur ton bureau.
  • Poste le dans ta prochaine réponse.

  • Nb, ne clique pas tout de suite sur Remove infections; nous devons nous assurer que toutes les détections soient infectieuses car certains utilitaires légitimes pourraient apparaître dans le rapport.

 

 

 

On poursuit!

 

flechedroitets2.pngMALWAREBYTES ' ANTI-MALWARE (MBAM)

 

  • Lance Malwarebytes'Anti-malware
  • Connecte tes clés USB et disques externes.
  • Dans l'onglet "mise à jour", cliquer sur le bouton "Recherche de mise à jour": si le pare-feu demande l'autorisation à MBAM de se connecter, accepte.
  • Une fois la mise à jour terminée, rend-toi dans l'onglet "Recherche"
  • Sélectionne "Exécuter un examen complet"
  • Clique sur "Rechercher"
  • Le scan se lance
  • A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur "OK" pour poursuivre:
    mbam1kb9.jpg

  • Ferme tes navigateurs et clique en bas sur "Afficher les résultats"
  • Si des malwares ont été détectés, leur liste s'affiche.
    En cliquant sur "Supprimer la sélection" , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine:
    mbam2fp7.jpg

  • MBAM va ouvrir le bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport et poste-le

 

 

 

Enfin:

 

flechedroitets2.pngHIJACKTHIS

  • Lance HijackThis
  • Choisis l'option "Do a system scan and save a log file"
  • Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note
  • Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport
  • Colle le rapport que tu viens de copier sur ce forum
  • Ne fixe encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement

 

salut à toi, contente d'avoir de tes nouvelles.... j'ai fait mes devoirs mais avant de t'envoyer mes rapports, j'ai pris quelques notes pendant ton absence sur certains problèmes qui sont survenus...je t'envoies ces notes et les rapports que tu m'as demandés... alors voilà

 

Problèmes existants au courant de la dernière semaine:

 

avast n'est plus au démarrage de windows

mon bureau s'affiche avec ' active desktop ' au démarrage, donc j'ai perdu ma console de récup windows

ordi encore très lente ( pour le démarrage aussi...)

la session des enfants ne s'ouvre pas tjrs

bcp de page web, ne s'affichent pas ( reste vide et marque terminé dans la barre des tâches )

souvent incapable d'aller directement dans poste de travail ou panneau de config

 

 

- Aujourd'hui, en désactivant avast, j'ai eu le message suivant en bas à droite.... antivir ( et non avast...) a été désactivé, votre ordinateur coure p-être un risque !!!! je n'y comprends plus rien

 

 

ensuite mon rapport antivir:

 

 

 

Avira AntiVir Personal

Report file date: 30 juillet 2008 09:12

 

Scanning for 1518993 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Boot mode: Save mode

Username: guillaine

Computer name: SIMARD

 

Version information:

BUILD.DAT : 8.1.0.326 16933 Bytes 2008-07-11 12:57:00

AVSCAN.EXE : 8.1.4.7 315649 Bytes 2008-06-26 14:57:53

AVSCAN.DLL : 8.1.4.0 40705 Bytes 2008-05-26 13:56:40

LUKE.DLL : 8.1.4.5 164097 Bytes 2008-06-12 18:44:19

LUKERES.DLL : 8.1.4.0 12033 Bytes 2008-05-26 13:58:52

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 16:33:34

ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 2008-06-24 19:54:15

ANTIVIR2.VDF : 7.0.5.174 2027008 Bytes 2008-07-25 14:31:12

ANTIVIR3.VDF : 7.0.5.187 133632 Bytes 2008-07-29 14:31:14

Engineversion : 8.1.1.12

AEVDF.DLL : 8.1.0.5 102772 Bytes 2008-07-09 14:46:50

AESCRIPT.DLL : 8.1.0.59 307579 Bytes 2008-07-29 14:31:29

AESCN.DLL : 8.1.0.23 119156 Bytes 2008-07-29 14:31:27

AERDL.DLL : 8.1.0.20 418165 Bytes 2008-07-09 14:46:50

AEPACK.DLL : 8.1.2.1 364917 Bytes 2008-07-29 14:31:26

AEOFFICE.DLL : 8.1.0.21 192891 Bytes 2008-07-29 14:31:24

AEHEUR.DLL : 8.1.0.44 1343863 Bytes 2008-07-29 14:31:23

AEHELP.DLL : 8.1.0.15 115063 Bytes 2008-07-09 14:46:50

AEGEN.DLL : 8.1.0.31 311669 Bytes 2008-07-29 14:31:17

AEEMU.DLL : 8.1.0.6 430451 Bytes 2008-07-09 14:46:50

AECORE.DLL : 8.1.1.7 172406 Bytes 2008-07-29 14:31:15

AEBB.DLL : 8.1.0.1 53617 Bytes 2008-04-24 14:50:42

AVWINLL.DLL : 1.0.0.12 15105 Bytes 2008-07-09 14:40:05

AVPREF.DLL : 8.0.2.0 38657 Bytes 2008-05-16 15:28:01

AVREP.DLL : 8.0.0.2 98561 Bytes 2008-07-29 14:31:14

AVREG.DLL : 8.0.0.1 33537 Bytes 2008-05-09 17:26:40

AVARKT.DLL : 1.0.0.23 307457 Bytes 2008-02-12 14:29:23

AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 2008-06-12 18:27:49

SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008-01-22 23:28:02

SMTPLIB.DLL : 1.2.0.23 28929 Bytes 2008-06-12 18:49:40

NETNT.DLL : 8.0.0.1 7937 Bytes 2008-01-25 18:05:10

RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 2008-06-12 19:48:07

RCTEXT.DLL : 8.0.52.0 86273 Bytes 2008-06-27 19:34:37

 

Configuration settings for the scan:

Jobname..........................: Complete system scan

Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp

Logging..........................: low

Primary action...................: repair

Secondary action.................: delete

Scan master boot sector..........: on

Scan boot sector.................: on

Boot sectors.....................: C:,

Process scan.....................: on

Scan registry....................: on

Search for rootkits..............: on

Scan all files...................: All files

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

 

Start of the scan: 30 juillet 2008 09:12

 

Starting search for hidden objects.

The driver could not be initialized.

 

The scan of running processes will be started

Scan process 'avscan.exe' - '1' Module(s) have been scanned

Scan process 'avcenter.exe' - '1' Module(s) have been scanned

Scan process 'explorer.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'lsass.exe' - '1' Module(s) have been scanned

Scan process 'services.exe' - '1' Module(s) have been scanned

Scan process 'winlogon.exe' - '1' Module(s) have been scanned

Scan process 'csrss.exe' - '1' Module(s) have been scanned

Scan process 'smss.exe' - '1' Module(s) have been scanned

11 processes with 11 modules were scanned

 

Starting master boot sector scan:

Master boot sector HD0

[iNFO] No virus was found!

 

Start scanning boot sectors:

Boot sector 'C:\'

[iNFO] No virus was found!

 

Starting to scan the registry.

The registry was scanned ( '48' files ).

 

 

Starting the file scan:

 

Begin scan in 'C:\'

C:\pagefile.sys

[WARNING] The file could not be opened!

 

 

End of the scan: 30 juillet 2008 10:37

Used time: 1:25:30 Hour(s)

 

The scan has been done completely.

 

9722 Scanning directories

301012 Files were scanned

0 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

0 files were deleted

0 files were repaired

0 files were moved to quarantine

0 files were renamed

1 Files cannot be scanned

301011 Files not concerned

3756 Archives were scanned

1 Warnings

0 Notes

 

pour ewedo. rien à signaler

 

suit mon rapport malwarebytes

 

Malwarebytes' Anti-Malware 1.23

Version de la base de données: 1008

Windows 5.1.2600 Service Pack 2

 

14:17:25 2008-07-30

mbam-log-7-30-2008 (14-17-25).txt

 

Type de recherche: Examen complet (C:\|)

Eléments examinés: 112450

Temps écoulé: 59 minute(s), 21 second(s)

 

Processus mémoire infecté(s): 0

Module(s) mémoire infecté(s): 0

Clé(s) du Registre infectée(s): 0

Valeur(s) du Registre infectée(s): 0

Elément(s) de données du Registre infecté(s): 0

Dossier(s) infecté(s): 0

Fichier(s) infecté(s): 0

 

Processus mémoire infecté(s):

(Aucun élément nuisible détecté)

 

Module(s) mémoire infecté(s):

(Aucun élément nuisible détecté)

 

Clé(s) du Registre infectée(s):

(Aucun élément nuisible détecté)

 

Valeur(s) du Registre infectée(s):

(Aucun élément nuisible détecté)

 

Elément(s) de données du Registre infecté(s):

(Aucun élément nuisible détecté)

 

Dossier(s) infecté(s):

(Aucun élément nuisible détecté)

 

Fichier(s) infecté(s):

(Aucun élément nuisible détecté)

 

et pour terminer hijackthis

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 14:24:03, on 2008-07-30

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16674)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe

C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')

O8 - Extra context menu item: Choisir comme avatar pour &Messenger - C:\Program Files\MSN Pictures Displayer\AddIEPicture.htm

O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html

O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html

O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html

O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)

O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/fichier...on_2_0_4_12.cab

O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe

 

--

End of file - 4774 bytes

 

 

ouff! :P suis-je une bonne élève ??? :P lolll

 

j'attends de tes nouvelles et bon casse-tête :P

 

guillou

Posté(e)

Salut à toi!

 

avast n'est plus au démarrage de windows

 

Normal, Avast a été désinstallé! :P

 

 

- Aujourd'hui, en désactivant avast, j'ai eu le message suivant en bas à droite.... antivir ( et non avast...) a été désactivé, votre ordinateur coure p-être un risque !!!! je n'y comprends plus rien

 

Pas grave ça: en fait le "centre de sécurité XP" (nom pompeux donné à un module censé vérifier que l'antivirus est actif) ne doit pas reconnaître Antivir, ou bien il ne voit pas qu'Antivir est en marche. De toute façon ce module ne sert à rien, perso je le désactive, fais-en de même:

désactiver le centre de sécurité

 

 

 

mon bureau s'affiche avec ' active desktop ' au démarrage, donc j'ai perdu ma console de récup windows

 

Je ne comprend pas ce que tu veux dire! Peux-tu préciser?

 

 

 

En tout cas les rapports sont propres, plus de traces de virus: félicitations, tu as fait du bon boulot :P !!

 

 

ordi encore très lente ( pour le démarrage aussi...)

 

Pourtant le démarrage n'est pas surchargé, d'après le rapport: combien as-tu de mémoire vive?

 

Pour gagner en fluidité, il faut défragmenter tes disques: nettoie ton poste avec CCleaner, puis télécharge le freeware JKdefrag:

 

http://www.trad-fr.com/telecharger/details.php?file=58

 

Installe-le et lance-le, il se débrouillera tout seul, sans ton intervention.

 

la session des enfants ne s'ouvre pas tjrs

 

Peux-tu m'en dire davantage? Eventuellement, supprime la session si elle est corrompu, et crées-en une nouvelle.

 

bcp de page web, ne s'affichent pas ( reste vide et marque terminé dans la barre des tâches )

 

Avec quel navigateur?

 

souvent incapable d'aller directement dans poste de travail ou panneau de config

 

Que veux-tu dire par "directement"? Tu veux dire par un double-clic? Comment fais-tu pour y accéder alors?

 

A suivre!!

Posté(e)

salut toi.... dsl pour ce long délai, alors voilà, mon centre de sécurité XP est désactivé :P

 

-pour la mémoire vive de mon ordi, elle a 448 MB de RAM, et est à 600 Mo dans la mémoire virtuelle...suis pas sure que c'est ce que tu veux :P loll mais bon..

 

-ensuite pour mon bureau, tout est revenu à la normale, c'est juste qu'à l'ouverture d'une session antérieure, il y avait un message de restaurer mon active desktop, et du même coup, plus d'icône présente sur mon bureau ( dont ma console de récup que tu m'avait fait installer...tout est réaparru sauf la console de récup., voilà ! je ne sais pas si c'est important ou non..

 

- J"ai télécharger et lancer Jkdefrag, comme tu me l'as demandé, mon ordi roule un peu plus , mais pas mon démarrage qui est encore lent...

 

- le reste est pas revenu à la normale ( session enfants et ouverture poste de travail etc... :P )

 

il ne reste qu'un petit problème avec Antivir, le scan s'arrête toujours au milieu de son travail et toujours au même endroit... je vais te posté le rapport...au cas ou ! :P

 

 

 

Avira AntiVir Personal

Report file date: 4 août 2008 01:24

 

Scanning for 1528705 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Boot mode: Normally booted

Username: guillaine

Computer name: SIMARD

 

Version information:

BUILD.DAT : 8.1.0.326 16933 Bytes 2008-07-11 12:57:00

AVSCAN.EXE : 8.1.4.7 315649 Bytes 2008-06-26 14:57:53

AVSCAN.DLL : 8.1.4.0 40705 Bytes 2008-05-26 13:56:40

LUKE.DLL : 8.1.4.5 164097 Bytes 2008-06-12 18:44:19

LUKERES.DLL : 8.1.4.0 12033 Bytes 2008-05-26 13:58:52

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 16:33:34

ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 2008-06-24 19:54:15

ANTIVIR2.VDF : 7.0.5.174 2027008 Bytes 2008-07-25 14:31:12

ANTIVIR3.VDF : 7.0.5.205 285696 Bytes 2008-08-01 16:03:24

Engineversion : 8.1.1.15

AEVDF.DLL : 8.1.0.5 102772 Bytes 2008-07-09 14:46:50

AESCRIPT.DLL : 8.1.0.61 311675 Bytes 2008-07-31 16:03:26

AESCN.DLL : 8.1.0.23 119156 Bytes 2008-07-29 14:31:27

AERDL.DLL : 8.1.0.20 418165 Bytes 2008-07-09 14:46:50

AEPACK.DLL : 8.1.2.1 364917 Bytes 2008-07-29 14:31:26

AEOFFICE.DLL : 8.1.0.21 192891 Bytes 2008-07-29 14:31:24

AEHEUR.DLL : 8.1.0.44 1343863 Bytes 2008-07-29 14:31:23

AEHELP.DLL : 8.1.0.15 115063 Bytes 2008-07-09 14:46:50

AEGEN.DLL : 8.1.0.32 315765 Bytes 2008-07-31 16:03:24

AEEMU.DLL : 8.1.0.7 430452 Bytes 2008-07-31 16:03:22

AECORE.DLL : 8.1.1.8 172406 Bytes 2008-07-31 16:03:20

AEBB.DLL : 8.1.0.1 53617 Bytes 2008-04-24 14:50:42

AVWINLL.DLL : 1.0.0.12 15105 Bytes 2008-07-09 14:40:05

AVPREF.DLL : 8.0.2.0 38657 Bytes 2008-05-16 15:28:01

AVREP.DLL : 8.0.0.2 98344 Bytes 2008-07-31 16:03:19

AVREG.DLL : 8.0.0.1 33537 Bytes 2008-05-09 17:26:40

AVARKT.DLL : 1.0.0.23 307457 Bytes 2008-02-12 14:29:23

AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 2008-06-12 18:27:49

SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008-01-22 23:28:02

SMTPLIB.DLL : 1.2.0.23 28929 Bytes 2008-06-12 18:49:40

NETNT.DLL : 8.0.0.1 7937 Bytes 2008-01-25 18:05:10

RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 2008-06-12 19:48:07

RCTEXT.DLL : 8.0.52.0 86273 Bytes 2008-06-27 19:34:37

 

Configuration settings for the scan:

Jobname..........................: ShlExt

Configuration file...............: C:\DOCUME~1\GUILLA~1.HOM\LOCALS~1\Temp\a5aa4824.avp

Logging..........................: high

Primary action...................: repair

Secondary action.................: delete

Scan master boot sector..........: on

Scan boot sector.................: on

Boot sectors.....................: C:,

Process scan.....................: off

Scan registry....................: off

Search for rootkits..............: off

Scan all files...................: All files

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

Expanded search settings.........: 0x00300432

 

Start of the scan: 4 août 2008 01:24

 

Starting the file scan:

 

Begin scan in 'C:\Documents and Settings\InvitÚ'

 

 

End of the scan: 4 août 2008 01:24

Used time: 00:03 Minute(s)

 

The scan has been done completely.

 

3 Scanning directories

0 Files were scanned

0 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

0 files were deleted

0 files were repaired

0 files were moved to quarantine

0 files were renamed

0 Files cannot be scanned

0 Files not concerned

0 Archives were scanned

0 Warnings

0 Notes

 

j'attends de tes nouvelles.....

passe une belle soirée et MERCI pour tout ce que tu fais pour moi... j'apprécie beaucoup :P

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...