Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e) (modifié)

salut à tous,

je ne peux pas installer IE8 sur mon pc XP pack3, j'ai deja posté un sujet sur un autre forum (Software)qui me dirige ici, voici le lien de la discussion et le rapport HijackThis

Lien CJoint.com AImvUcHURtC

 

http://forum.zebulon.fr/faut-il-mettre-jour-internet-explorer-t187804.html

 

merci de votre aide :super:

Modifié par sylvainj2

Posté(e)

Bonjour sylvainj2,

 


Très Important!

 

exclam.gif>>> A faire immédiatement:

- En haut de ce message cliquer sur le bouton "Suivre ce sujet", en choisissant "Notification immédiate" => "Soumettre" tu seras avisé en temps réel pour les réponses apportées à ton sujet et de ce fait, ta machine sera nettoyée dans les meilleurs délais.

Si à la place du bouton "Suivre ce sujet" tu as "Arrêter de suivre ce sujet", c'est que les réglages ont déjà été faits.

- Sauvegarder (en copiant) tous les documents personnels sur un support autre que la partition système: Clé USB, CD/DVD, Disque Dur externe etc.

 

exclam.gif>>> Que faire durant ce nettoyage: Merci de NE PAS utiliser, installer et/ou désinstaller aucun programme à part ceux qui sont proposés à chaque étape ce qui a pour but d'éviter tout problème d'incompatibilité entre les outils.

 

exclam.gif>>> Que faire à la réception de nouvelles instructions:

  • Lire la totalité du message.
  • Certains programmes peuvent créer des problèmes s'ils ne sont pas lancés depuis le Bureau. Aussi, il est demandé de les télécharger et enregistrer DIRECTEMENT sur le Bureau (ou les déplacer avant utilisation par un clic-droit dessus => "Couper" puis clic-droit sur le Bureau => "Coller").
  • Procéder toujours dans l'ordre donné et demander des clarifications si nécessaire AVANT de commencer.
  • NE PAS hésiter à commenter et signaler tout changement (en bien ou en mal) dans le comportement de la machine ou par rapport au problème initial.

exclam.gif>>> Comment répondre:

- Cliquer sur le bouton zeb_bouton.png (et non sur zeb-bouton2.png car je n'ai pas besoin de relire mes messages précédents).

- Coller le contenu des rapports SANS y ajouter AUCUN formatage de texte (en citation, code, couleur etc...).

 

exclam.gif>>> Ne pas abandonner son sujet avant d'être informé(e) que tout est OK.


 

Ton rapport montre que tu as IE8:

 

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 21:01:39, on 12/09/2011

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

Peux-tu faire une capture d'écran du message que tu reçoit et/ ou copier le texte affiché?

Explique aussi à quel moment exactement il apparait.

 

Imprimer ces instructions ou les enregistrer dans un fichier texte sur le Bureau pour les consulter facilement à tout moment et télécharger, sur le Bureau:

  • Malware Bytes Anti-Malware depuis ici.
  • Security Check (par screen317) depuis ici ou ici.

 

>>> Utiliser Malwarebytes' Anti-Malware (MBAM): Fermer toutes les applications et fenêtres ouvertes et double-cliquer sur mbam-setup.exe. Suivre les indications en laissant tout par défaut. Cliquer sur "Terminer" sans rien changer.

- Lancer le programme depuis son icône sur le bureau ou depuis "Démarrer" => "Tous les programmes" => "Malwarebytes' Anti-Malware".

- Faire les Mises à jour depuis l'onglet du même nom. Si problème avec les mises à jour automatiques, cliquer ICI pour les télécharger et les installer manuellement.

- Dans l'onglet "Recherche" laisser la case "Exécuter un examen rapide" cochée et cliquer sur "Rechercher". Patienter jusqu'à la fin (affichage de "L'examen s'est terminé normalement...") et cliquer sur "OK", pour fermer ce message.

- Cliquer sur "Afficher les résultats" puis s'assurer que tout est coché et cliquer sur "Supprimer la sélection".

Le programme procède alors au nettoyage. S'il vous demande de redémarrer le PC, ACCEPTER (c'est pour supprimer certains fichiers spécifiques).

A la fin un rapport s'affiche (accessible à tout moment depuis l'onglet "Rapport/Logs" de la fenêtre principale de "MBAM". Poster son contenu dans la prochaine réponse.

 

 

>>> Utiliser SecurityCheck: Fermer toutes les fenêtres et applications ouvertes et double-cliquer sur SecurityCheck.exe pour lancer le programme.

Appuyer sur une touche comme demandé et suivre les indications.

Si un des programmes de sécurité demande la permission d'accéder à Internet depuis "dig.exe", acceptez.

Le Rapport "checkup.txt" s'ouvre à la fin. Poster son contenu.

Ce rapport ne sera pas enregistré automatiquement. Si vous voulez en garder une copie, cliquez sur "Fichier" => "Enregistrer sous", choisissez un endroit (Bureau par exemple) et cliquez sur "Enregistrer" en bas à droite.

 

Rapports demandés:

  • Malwarebytes Anti-Malware log
  • checkup.txt
Posté(e)

salut Lance_Yien,

merci de ton aide, voici le lien de ma copie d'écran: Lien CJoint.com AInuTFVM1cQ et les logs demandés merci A+

pour infos Gmail me donne ce message: Lien CJoint.com AInvkBy9qKA

 

Results of screen317's Security Check version 0.99.18

Windows XP Service Pack 3

Internet Explorer 8

``````````````````````````````

Antivirus/Firewall Check:

AVG 2012

ESET Online Scanner v3

Antivirus up to date!

```````````````````````````````

Anti-malware/Other Utilities Check:

Malwarebytes' Anti-Malware

CCleaner

EasyCleaner

Java 6 Update 26

Adobe Flash Player

Adobe Reader X (10.1.0)

````````````````````````````````

Process Check:

objlist.exe by Laurent

AVG avgwdsvc.exe

AVG avgtray.exe

AVG avgrsx.exe

AVG avgnsx.exe

AVG avgemc.exe

``````````End of Log````````````

 

 

Malwarebytes' Anti-Malware 1.51.1.1800

www.malwarebytes.org

 

Version de la base de données: 7699

 

Windows 5.1.2600 Service Pack 3

Internet Explorer 8.0.6001.18702

 

12/09/2011 17:37:59

mbam-log-2011-09-12 (17-37-59).txt

 

Type d'examen: Examen complet (C:\|D:\|E:\|)

Elément(s) analysé(s): 242459

Temps écoulé: 31 minute(s), 12 seconde(s)

 

Processus mémoire infecté(s): 0

Module(s) mémoire infecté(s): 0

Clé(s) du Registre infectée(s): 0

Valeur(s) du Registre infectée(s): 0

Elément(s) de données du Registre infecté(s): 0

Dossier(s) infecté(s): 0

Fichier(s) infecté(s): 0

 

Processus mémoire infecté(s):

(Aucun élément nuisible détecté)

 

Module(s) mémoire infecté(s):

(Aucun élément nuisible détecté)

 

Clé(s) du Registre infectée(s):

(Aucun élément nuisible détecté)

 

Valeur(s) du Registre infectée(s):

(Aucun élément nuisible détecté)

 

Elément(s) de données du Registre infecté(s):

(Aucun élément nuisible détecté)

 

Dossier(s) infecté(s):

(Aucun élément nuisible détecté)

 

Fichier(s) infecté(s):

(Aucun élément nuisible détecté)

Posté(e)

Bonjour sylvainj2,

 

1- Tu n"as pas fait les mises à jour de Malwarebytes' Anti-Malware Comme demandé (en rouge :))

Relis attentivement les instructions et refais un autre analyse. Ce programme est suivi quotidiennement et il risque de te trouver quelque chose.

Copier/coller son rapport directement dans ta prochaine réponse.

 

2- As-tu essayé d'aller sur ton Gmail en utilisant Firefox ou Google Chrome. Sinon fais-le maintenant et vois ce que ça donne.

 

Imprimer ces instructions ou les enregistrer dans un fichier texte sur le Bureau pour les consulter facilement à tout moment et télécharger, sur le Bureau OTL (par OldTimer) depuis ici ou ici.

Brancher et allumer tous les médias amovibles disponibles et susceptibles d'être infectés (DD externe, clés USB etc) et fermer toutes les applications et fenêtres ouvertes.

Double-cliquer/Cliquer-droit sur OTL.exe => "Exécuter en tant qu'administrateur" et copier/ coller ces lignes (commençant par netsvcs) dans l'espace sous "Personnalisation":

 

netsvcs

drivers32

%SYSTEMDRIVE%\*.* /90

%systemroot%\*. /mp /s

%systemroot%\system32\*.dll /90

%systemroot%\Tasks\*.job

%systemroot%\system32\drivers\*.sys /90

CREATERESTOREPOINT

HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs

SAVEMBR:0

Sans rien changer, cliquer sur le bouton bleu Analyse et laisser faire.

A la fin du scan, 2 rapports seront créés: "OTL.txt" (qui s'ouvre dans le bloc-note) et "Extras.txt" (qui sera minimisé dans la Barre des tâches).

Ne pas les poster directement ici car souvent trop lourd pour les limites du forum.

Aller sur le site :Ci-Jointicne2cjoint.png

Cliquer sur Parcourir, chercher le fichier "OTL.txt" et cliquer dessus. Cliquer sur Créer le lien CJoint.

Dans la page suivante --> , une adresse (http//...) sera créée. Ouvre le Bloc-note et copier /coller cette adresse dedans.

Faire de même pour le fichier "Extras.txt".

Copier/ Coller les 2 adresses dans la prochaine réponse.

 

 

>>> CKScanner: Télécharger sur le Bureau CKScanner (par askey127) depuis ici.

S'assurer que CKScanner.exe ckscan1.png est sur le Bureau et double-cliquer dessus. Cliquer sur Search For Files.

Patienter jusqu'à ce que le curseur de la souris reprenne sa forme habituelle et cliquer sur Save List To File.

Cliquer sur OK dans le message "Saved to flename ckfiles.txt" ckscan3.png.

Maintenant, ouvrir le fichier CKFiles.txt qui s'est créé sur le Bureau et copier/ coller son contenu dans la prochaine réponse.

Cliquer sur Exit pour fermer CKScanner.

 

 

Rapports demandés:

  • Malwarebytes' Anti-Malware
  • Liens vers OTL.txt et Extras.txt
  • CKFiles.txt
Posté(e) (modifié)

salut Lance_Yien,

merci de ta réponse, je suis désolé pour Malwarebytes, voici son log:

Malwarebytes' Anti-Malware 1.51.2.1300

www.malwarebytes.org

 

Version de la base de données: 7712

 

Windows 5.1.2600 Service Pack 3

Internet Explorer 8.0.6001.18702

 

14/09/2011 12:23:48

mbam-log-2011-09-14 (12-23-48).txt

 

Type d'examen: Examen complet (C:\|D:\|E:\|F:\|G:\|I:\|)

Elément(s) analysé(s): 246253

Temps écoulé: 32 minute(s), 47 seconde(s)

 

Processus mémoire infecté(s): 0

Module(s) mémoire infecté(s): 0

Clé(s) du Registre infectée(s): 0

Valeur(s) du Registre infectée(s): 0

Elément(s) de données du Registre infecté(s): 0

Dossier(s) infecté(s): 0

Fichier(s) infecté(s): 0

 

Processus mémoire infecté(s):

(Aucun élément nuisible détecté)

 

Module(s) mémoire infecté(s):

(Aucun élément nuisible détecté)

 

Clé(s) du Registre infectée(s):

(Aucun élément nuisible détecté)

 

Valeur(s) du Registre infectée(s):

(Aucun élément nuisible détecté)

 

Elément(s) de données du Registre infecté(s):

(Aucun élément nuisible détecté)

 

Dossier(s) infecté(s):

(Aucun élément nuisible détecté)

 

Fichier(s) infecté(s):

(Aucun élément nuisible détecté)

 

losque j'utilise Google Chrome, Gmail fonctionne bien, je n'ai aucun message de mise à jour.

voici le lien OTL, mais je n'ai pas trouvé le log Extras .txtLien CJoint.com AIoncHah2Le

 

et CKFFiles.txt

CKScanner - Additional Security Risks - These are not necessarily bad

scanner sequence 3.MN.11.COAPPA

----- EOF -----

merci d'avance pour la suite A+

Modifié par sylvainj2
Posté(e)

Pas de souci pour Malwarebytes, c'est pour éviter de passer à côté d'une éventuelle solution.

Tu n'as pas trouvé le log Extras.txt parce que tu as lancé OTL trois fois et Extras.txt n'est généré que la 1ère fois. Donc si tu sais d'où tu as lancé OTL la première fois c'est là où tu trouveras le fichier. Je te le demanderai plus tard si nécessaire.

 

Ton rapport CKScanner est propre et il n' y a pas de signes d'infection dans OTL.

 

>>> Correction OTL: Fermer toutes les applications et fenêtres en cours et désactiver les programmes de protection (antivirus etc...).

Lancer OTL et copier/ coller la liste suivante (commençant par :OTL) dans l'espace sous "Personnalisation" (les : au début et le ] à la fin sont très importants, merci de vérifier).

 

:OTL

DRV - [2009/12/15 15:29:52 | 000,055,304 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfetdik.sys -- (mfetdik)

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN : Hotmail, Messenger, Bing, Actualité et Sport

O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.

O3: - HKCU\..\Toolbar\WebBrowser - No CLSID value found.

O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.

O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1

O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\control panel present

[2011/09/13 15:19:38 | 000,004,566 | ---- | M] () -- C:\WINDOWS\imsins.BAK

 

:Services

 

:Reg

 

:Files

ipconfig /flushdns /c

C:\WINDOWS\tasks\*.job

C:\*.sqm

C:\WINDOWS\System32\*.tmp

C:\WINDOWS\*.tmp

C:\WINDOWS\system32\drivers\mfetdik.sys

 

:Commands

[EMPTYTEMP]

[EMPTYFLASH]

Cliquer sur le bouton rouge Correction et laisser faire.

Si un ou plusieurs fichiers ne peuvent pas être supprimés normalement, le programme demandera de redémarrer la machine pour finir le processus, cliquer sur "Oui".

A la fin un rapport s'ouvre dans le bloc-note. Copier et le coller son contenu directement dans une nouvelle réponse. Fermer le rapport et OTL.

 

Si le problème avec Gmail n'est pas résolu, cliquer sur le Poste de travail => c:\ => "Program Files" => "Internet Explorer"

Cliquer-droit sur "iexplore.exe" => "Propriété et relever la Version ensuite cliquer dessus et essayer Gmail. Toujours la même chose?

Il te sera peut être nécessaire de cocher "Afficher les extension" dans "Options des dossiers" => "Affichage" pour bien choisir le bon "iexplore.exe".

 

Rapports demandés:

  • OTL

Un changement quelconque?

Posté(e)

re salut,

encore merci j'ai tout fais dans l'ordre mais gmail bug toujours, on continu ?A+

All processes killed

========== OTL ==========

Error: Unable to stop service mfetdik!

Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mfetdik deleted successfully.

C:\WINDOWS\system32\drivers\mfetdik.sys moved successfully.

HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache| /E : value set successfully!

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.

Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.

Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Infodelivery\ deleted successfully.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveSearch deleted successfully.

Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\control panel\ deleted successfully.

C:\WINDOWS\imsins.BAK moved successfully.

========== SERVICES/DRIVERS ==========

========== REGISTRY ==========

========== FILES ==========

< ipconfig /flushdns /c >

Configuration IP de Windows

Cache de résolution DNS vidé.

C:\Documents and Settings\Administrateur\Bureau\cmd.bat deleted successfully.

C:\Documents and Settings\Administrateur\Bureau\cmd.txt deleted successfully.

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.

C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.

C:\WINDOWS\tasks\HP Usg Daily.job moved successfully.

C:\WINDOWS\tasks\User_Feed_Synchronization-{AF3021E6-1EE4-4E7C-A948-C7ECE1F86EF6}.job moved successfully.

File\Folder C:\*.sqm not found.

C:\WINDOWS\System32\SET10.tmp moved successfully.

C:\WINDOWS\System32\SET100.tmp moved successfully.

C:\WINDOWS\System32\SET101.tmp moved successfully.

C:\WINDOWS\System32\SET102.tmp moved successfully.

C:\WINDOWS\System32\SET103.tmp moved successfully.

C:\WINDOWS\System32\SET104.tmp moved successfully.

C:\WINDOWS\System32\SET105.tmp moved successfully.

C:\WINDOWS\System32\SET106.tmp moved successfully.

C:\WINDOWS\System32\SET107.tmp moved successfully.

C:\WINDOWS\System32\SET108.tmp moved successfully.

C:\WINDOWS\System32\SET109.tmp moved successfully.

C:\WINDOWS\System32\SET10A.tmp moved successfully.

C:\WINDOWS\System32\SET10B.tmp moved successfully.

C:\WINDOWS\System32\SET10C.tmp moved successfully.

C:\WINDOWS\System32\SET10D.tmp moved successfully.

C:\WINDOWS\System32\SET10E.tmp moved successfully.

C:\WINDOWS\System32\SET10F.tmp moved successfully.

C:\WINDOWS\System32\SET11.tmp moved successfully.

C:\WINDOWS\System32\SET110.tmp moved successfully.

C:\WINDOWS\System32\SET111.tmp moved successfully.

C:\WINDOWS\System32\SET112.tmp moved successfully.

C:\WINDOWS\System32\SET113.tmp moved successfully.

C:\WINDOWS\System32\SET114.tmp moved successfully.

C:\WINDOWS\System32\SET115.tmp moved successfully.

C:\WINDOWS\System32\SET116.tmp moved successfully.

C:\WINDOWS\System32\SET117.tmp moved successfully.

C:\WINDOWS\System32\SET118.tmp moved successfully.

C:\WINDOWS\System32\SET119.tmp moved successfully.

C:\WINDOWS\System32\SET11A.tmp moved successfully.

C:\WINDOWS\System32\SET11B.tmp moved successfully.

C:\WINDOWS\System32\SET11C.tmp moved successfully.

C:\WINDOWS\System32\SET11D.tmp moved successfully.

C:\WINDOWS\System32\SET11E.tmp moved successfully.

C:\WINDOWS\System32\SET11F.tmp moved successfully.

C:\WINDOWS\System32\SET12.tmp moved successfully.

C:\WINDOWS\System32\SET120.tmp moved successfully.

C:\WINDOWS\System32\SET121.tmp moved successfully.

C:\WINDOWS\System32\SET122.tmp moved successfully.

C:\WINDOWS\System32\SET123.tmp moved successfully.

C:\WINDOWS\System32\SET124.tmp moved successfully.

C:\WINDOWS\System32\SET125.tmp moved successfully.

C:\WINDOWS\System32\SET126.tmp moved successfully.

C:\WINDOWS\System32\SET127.tmp moved successfully.

C:\WINDOWS\System32\SET128.tmp moved successfully.

C:\WINDOWS\System32\SET129.tmp moved successfully.

C:\WINDOWS\System32\SET12A.tmp moved successfully.

C:\WINDOWS\System32\SET12B.tmp moved successfully.

C:\WINDOWS\System32\SET12C.tmp moved successfully.

C:\WINDOWS\System32\SET12D.tmp moved successfully.

C:\WINDOWS\System32\SET12E.tmp moved successfully.

C:\WINDOWS\System32\SET12F.tmp moved successfully.

C:\WINDOWS\System32\SET13.tmp moved successfully.

C:\WINDOWS\System32\SET130.tmp moved successfully.

C:\WINDOWS\System32\SET131.tmp moved successfully.

C:\WINDOWS\System32\SET132.tmp moved successfully.

C:\WINDOWS\System32\SET133.tmp moved successfully.

C:\WINDOWS\System32\SET134.tmp moved successfully.

C:\WINDOWS\System32\SET135.tmp moved successfully.

C:\WINDOWS\System32\SET136.tmp moved successfully.

C:\WINDOWS\System32\SET137.tmp moved successfully.

C:\WINDOWS\System32\SET138.tmp moved successfully.

C:\WINDOWS\System32\SET139.tmp moved successfully.

C:\WINDOWS\System32\SET13A.tmp moved successfully.

C:\WINDOWS\System32\SET13B.tmp moved successfully.

C:\WINDOWS\System32\SET13C.tmp moved successfully.

C:\WINDOWS\System32\SET13D.tmp moved successfully.

C:\WINDOWS\System32\SET13E.tmp moved successfully.

C:\WINDOWS\System32\SET13F.tmp moved successfully.

C:\WINDOWS\System32\SET14.tmp moved successfully.

C:\WINDOWS\System32\SET140.tmp moved successfully.

C:\WINDOWS\System32\SET141.tmp moved successfully.

C:\WINDOWS\System32\SET142.tmp moved successfully.

C:\WINDOWS\System32\SET143.tmp moved successfully.

C:\WINDOWS\System32\SET144.tmp moved successfully.

C:\WINDOWS\System32\SET145.tmp moved successfully.

C:\WINDOWS\System32\SET146.tmp moved successfully.

C:\WINDOWS\System32\SET147.tmp moved successfully.

C:\WINDOWS\System32\SET148.tmp moved successfully.

C:\WINDOWS\System32\SET149.tmp moved successfully.

C:\WINDOWS\System32\SET14A.tmp moved successfully.

C:\WINDOWS\System32\SET14B.tmp moved successfully.

C:\WINDOWS\System32\SET14C.tmp moved successfully.

C:\WINDOWS\System32\SET14D.tmp moved successfully.

C:\WINDOWS\System32\SET14E.tmp moved successfully.

C:\WINDOWS\System32\SET14F.tmp moved successfully.

C:\WINDOWS\System32\SET15.tmp moved successfully.

C:\WINDOWS\System32\SET150.tmp moved successfully.

C:\WINDOWS\System32\SET151.tmp moved successfully.

C:\WINDOWS\System32\SET152.tmp moved successfully.

C:\WINDOWS\System32\SET153.tmp moved successfully.

C:\WINDOWS\System32\SET154.tmp moved successfully.

C:\WINDOWS\System32\SET155.tmp moved successfully.

C:\WINDOWS\System32\SET156.tmp moved successfully.

C:\WINDOWS\System32\SET157.tmp moved successfully.

C:\WINDOWS\System32\SET158.tmp moved successfully.

C:\WINDOWS\System32\SET159.tmp moved successfully.

C:\WINDOWS\System32\SET15A.tmp moved successfully.

C:\WINDOWS\System32\SET15B.tmp moved successfully.

C:\WINDOWS\System32\SET15C.tmp moved successfully.

C:\WINDOWS\System32\SET15D.tmp moved successfully.

C:\WINDOWS\System32\SET15E.tmp moved successfully.

C:\WINDOWS\System32\SET15F.tmp moved successfully.

C:\WINDOWS\System32\SET16.tmp moved successfully.

C:\WINDOWS\System32\SET160.tmp moved successfully.

C:\WINDOWS\System32\SET161.tmp moved successfully.

C:\WINDOWS\System32\SET162.tmp moved successfully.

C:\WINDOWS\System32\SET163.tmp moved successfully.

C:\WINDOWS\System32\SET164.tmp moved successfully.

C:\WINDOWS\System32\SET165.tmp moved successfully.

C:\WINDOWS\System32\SET166.tmp moved successfully.

C:\WINDOWS\System32\SET167.tmp moved successfully.

C:\WINDOWS\System32\SET168.tmp moved successfully.

C:\WINDOWS\System32\SET169.tmp moved successfully.

C:\WINDOWS\System32\SET16A.tmp moved successfully.

C:\WINDOWS\System32\SET16B.tmp moved successfully.

C:\WINDOWS\System32\SET16C.tmp moved successfully.

C:\WINDOWS\System32\SET16D.tmp moved successfully.

C:\WINDOWS\System32\SET16E.tmp moved successfully.

C:\WINDOWS\System32\SET16F.tmp moved successfully.

C:\WINDOWS\System32\SET17.tmp moved successfully.

C:\WINDOWS\System32\SET170.tmp moved successfully.

C:\WINDOWS\System32\SET171.tmp moved successfully.

C:\WINDOWS\System32\SET172.tmp moved successfully.

C:\WINDOWS\System32\SET173.tmp moved successfully.

C:\WINDOWS\System32\SET174.tmp moved successfully.

C:\WINDOWS\System32\SET175.tmp moved successfully.

C:\WINDOWS\System32\SET176.tmp moved successfully.

C:\WINDOWS\System32\SET177.tmp moved successfully.

C:\WINDOWS\System32\SET178.tmp moved successfully.

C:\WINDOWS\System32\SET179.tmp moved successfully.

C:\WINDOWS\System32\SET17A.tmp moved successfully.

C:\WINDOWS\System32\SET17B.tmp moved successfully.

C:\WINDOWS\System32\SET17C.tmp moved successfully.

C:\WINDOWS\System32\SET17D.tmp moved successfully.

C:\WINDOWS\System32\SET17E.tmp moved successfully.

C:\WINDOWS\System32\SET17F.tmp moved successfully.

C:\WINDOWS\System32\SET18.tmp moved successfully.

C:\WINDOWS\System32\SET180.tmp moved successfully.

C:\WINDOWS\System32\SET181.tmp moved successfully.

C:\WINDOWS\System32\SET182.tmp moved successfully.

C:\WINDOWS\System32\SET183.tmp moved successfully.

C:\WINDOWS\System32\SET184.tmp moved successfully.

C:\WINDOWS\System32\SET185.tmp moved successfully.

C:\WINDOWS\System32\SET186.tmp moved successfully.

C:\WINDOWS\System32\SET187.tmp moved successfully.

C:\WINDOWS\System32\SET188.tmp moved successfully.

C:\WINDOWS\System32\SET189.tmp moved successfully.

C:\WINDOWS\System32\SET18A.tmp moved successfully.

C:\WINDOWS\System32\SET18B.tmp moved successfully.

C:\WINDOWS\System32\SET18C.tmp moved successfully.

C:\WINDOWS\System32\SET18D.tmp moved successfully.

C:\WINDOWS\System32\SET18E.tmp moved successfully.

C:\WINDOWS\System32\SET18F.tmp moved successfully.

C:\WINDOWS\System32\SET19.tmp moved successfully.

C:\WINDOWS\System32\SET190.tmp moved successfully.

C:\WINDOWS\System32\SET191.tmp moved successfully.

C:\WINDOWS\System32\SET192.tmp moved successfully.

C:\WINDOWS\System32\SET193.tmp moved successfully.

C:\WINDOWS\System32\SET194.tmp moved successfully.

C:\WINDOWS\System32\SET195.tmp moved successfully.

C:\WINDOWS\System32\SET196.tmp moved successfully.

C:\WINDOWS\System32\SET197.tmp moved successfully.

C:\WINDOWS\System32\SET198.tmp moved successfully.

C:\WINDOWS\System32\SET199.tmp moved successfully.

C:\WINDOWS\System32\SET19A.tmp moved successfully.

C:\WINDOWS\System32\SET19B.tmp moved successfully.

C:\WINDOWS\System32\SET19C.tmp moved successfully.

C:\WINDOWS\System32\SET19D.tmp moved successfully.

C:\WINDOWS\System32\SET19E.tmp moved successfully.

C:\WINDOWS\System32\SET19F.tmp moved successfully.

C:\WINDOWS\System32\SET1A.tmp moved successfully.

C:\WINDOWS\System32\SET1A0.tmp moved successfully.

C:\WINDOWS\System32\SET1A1.tmp moved successfully.

C:\WINDOWS\System32\SET1A2.tmp moved successfully.

C:\WINDOWS\System32\SET1A3.tmp moved successfully.

C:\WINDOWS\System32\SET1A4.tmp moved successfully.

C:\WINDOWS\System32\SET1A5.tmp moved successfully.

C:\WINDOWS\System32\SET1A6.tmp moved successfully.

C:\WINDOWS\System32\SET1A7.tmp moved successfully.

C:\WINDOWS\System32\SET1A8.tmp moved successfully.

C:\WINDOWS\System32\SET1A9.tmp moved successfully.

C:\WINDOWS\System32\SET1AA.tmp moved successfully.

C:\WINDOWS\System32\SET1AB.tmp moved successfully.

C:\WINDOWS\System32\SET1AC.tmp moved successfully.

C:\WINDOWS\System32\SET1AD.tmp moved successfully.

C:\WINDOWS\System32\SET1AE.tmp moved successfully.

C:\WINDOWS\System32\SET1AF.tmp moved successfully.

C:\WINDOWS\System32\SET1B.tmp moved successfully.

C:\WINDOWS\System32\SET1B0.tmp moved successfully.

C:\WINDOWS\System32\SET1B1.tmp moved successfully.

C:\WINDOWS\System32\SET1B2.tmp moved successfully.

C:\WINDOWS\System32\SET1B3.tmp moved successfully.

C:\WINDOWS\System32\SET1B4.tmp moved successfully.

C:\WINDOWS\System32\SET1B5.tmp moved successfully.

C:\WINDOWS\System32\SET1B6.tmp moved successfully.

C:\WINDOWS\System32\SET1B7.tmp moved successfully.

C:\WINDOWS\System32\SET1B8.tmp moved successfully.

C:\WINDOWS\System32\SET1B9.tmp moved successfully.

C:\WINDOWS\System32\SET1BA.tmp moved successfully.

C:\WINDOWS\System32\SET1BB.tmp moved successfully.

C:\WINDOWS\System32\SET1BC.tmp moved successfully.

C:\WINDOWS\System32\SET1BD.tmp moved successfully.

C:\WINDOWS\System32\SET1BE.tmp moved successfully.

C:\WINDOWS\System32\SET1BF.tmp moved successfully.

C:\WINDOWS\System32\SET1C.tmp moved successfully.

C:\WINDOWS\System32\SET1C0.tmp moved successfully.

C:\WINDOWS\System32\SET1C1.tmp moved successfully.

C:\WINDOWS\System32\SET1C2.tmp moved successfully.

C:\WINDOWS\System32\SET1C3.tmp moved successfully.

C:\WINDOWS\System32\SET1C4.tmp moved successfully.

C:\WINDOWS\System32\SET1C5.tmp moved successfully.

C:\WINDOWS\System32\SET1C6.tmp moved successfully.

C:\WINDOWS\System32\SET1C7.tmp moved successfully.

C:\WINDOWS\System32\SET1C8.tmp moved successfully.

C:\WINDOWS\System32\SET1C9.tmp moved successfully.

C:\WINDOWS\System32\SET1CA.tmp moved successfully.

C:\WINDOWS\System32\SET1CB.tmp moved successfully.

C:\WINDOWS\System32\SET1CC.tmp moved successfully.

C:\WINDOWS\System32\SET1CD.tmp moved successfully.

C:\WINDOWS\System32\SET1CE.tmp moved successfully.

C:\WINDOWS\System32\SET1CF.tmp moved successfully.

C:\WINDOWS\System32\SET1D.tmp moved successfully.

C:\WINDOWS\System32\SET1D0.tmp moved successfully.

C:\WINDOWS\System32\SET1D1.tmp moved successfully.

C:\WINDOWS\System32\SET1D2.tmp moved successfully.

C:\WINDOWS\System32\SET1D3.tmp moved successfully.

C:\WINDOWS\System32\SET1D4.tmp moved successfully.

C:\WINDOWS\System32\SET1D5.tmp moved successfully.

C:\WINDOWS\System32\SET1D6.tmp moved successfully.

C:\WINDOWS\System32\SET1D7.tmp moved successfully.

C:\WINDOWS\System32\SET1D8.tmp moved successfully.

C:\WINDOWS\System32\SET1D9.tmp moved successfully.

C:\WINDOWS\System32\SET1DA.tmp moved successfully.

C:\WINDOWS\System32\SET1DB.tmp moved successfully.

C:\WINDOWS\System32\SET1DC.tmp moved successfully.

C:\WINDOWS\System32\SET1DD.tmp moved successfully.

C:\WINDOWS\System32\SET1DE.tmp moved successfully.

C:\WINDOWS\System32\SET1DF.tmp moved successfully.

C:\WINDOWS\System32\SET1E.tmp moved successfully.

C:\WINDOWS\System32\SET1E0.tmp moved successfully.

C:\WINDOWS\System32\SET1E1.tmp moved successfully.

C:\WINDOWS\System32\SET1E2.tmp moved successfully.

C:\WINDOWS\System32\SET1E3.tmp moved successfully.

C:\WINDOWS\System32\SET1E4.tmp moved successfully.

C:\WINDOWS\System32\SET1E5.tmp moved successfully.

C:\WINDOWS\System32\SET1E6.tmp moved successfully.

C:\WINDOWS\System32\SET1E7.tmp moved successfully.

C:\WINDOWS\System32\SET1E8.tmp moved successfully.

C:\WINDOWS\System32\SET1E9.tmp moved successfully.

C:\WINDOWS\System32\SET1EA.tmp moved successfully.

C:\WINDOWS\System32\SET1EB.tmp moved successfully.

C:\WINDOWS\System32\SET1EC.tmp moved successfully.

C:\WINDOWS\System32\SET1ED.tmp moved successfully.

C:\WINDOWS\System32\SET1EE.tmp moved successfully.

C:\WINDOWS\System32\SET1EF.tmp moved successfully.

C:\WINDOWS\System32\SET1F.tmp moved successfully.

C:\WINDOWS\System32\SET1F0.tmp moved successfully.

C:\WINDOWS\System32\SET1F1.tmp moved successfully.

C:\WINDOWS\System32\SET1F2.tmp moved successfully.

C:\WINDOWS\System32\SET1F3.tmp moved successfully.

C:\WINDOWS\System32\SET1F4.tmp moved successfully.

C:\WINDOWS\System32\SET1F5.tmp moved successfully.

C:\WINDOWS\System32\SET1F6.tmp moved successfully.

C:\WINDOWS\System32\SET1F7.tmp moved successfully.

C:\WINDOWS\System32\SET1F8.tmp moved successfully.

C:\WINDOWS\System32\SET1F9.tmp moved successfully.

C:\WINDOWS\System32\SET1FA.tmp moved successfully.

C:\WINDOWS\System32\SET1FB.tmp moved successfully.

C:\WINDOWS\System32\SET1FC.tmp moved successfully.

C:\WINDOWS\System32\SET1FD.tmp moved successfully.

C:\WINDOWS\System32\SET1FE.tmp moved successfully.

C:\WINDOWS\System32\SET1FF.tmp moved successfully.

C:\WINDOWS\System32\SET20.tmp moved successfully.

C:\WINDOWS\System32\SET200.tmp moved successfully.

C:\WINDOWS\System32\SET201.tmp moved successfully.

C:\WINDOWS\System32\SET202.tmp moved successfully.

C:\WINDOWS\System32\SET203.tmp moved successfully.

C:\WINDOWS\System32\SET205.tmp moved successfully.

C:\WINDOWS\System32\SET206.tmp moved successfully.

C:\WINDOWS\System32\SET207.tmp moved successfully.

C:\WINDOWS\System32\SET208.tmp moved successfully.

C:\WINDOWS\System32\SET209.tmp moved successfully.

C:\WINDOWS\System32\SET20A.tmp moved successfully.

C:\WINDOWS\System32\SET20B.tmp moved successfully.

C:\WINDOWS\System32\SET20C.tmp moved successfully.

C:\WINDOWS\System32\SET20D.tmp moved successfully.

C:\WINDOWS\System32\SET20E.tmp moved successfully.

C:\WINDOWS\System32\SET20F.tmp moved successfully.

C:\WINDOWS\System32\SET21.tmp moved successfully.

C:\WINDOWS\System32\SET210.tmp moved successfully.

C:\WINDOWS\System32\SET211.tmp moved successfully.

C:\WINDOWS\System32\SET212.tmp moved successfully.

C:\WINDOWS\System32\SET213.tmp moved successfully.

C:\WINDOWS\System32\SET214.tmp moved successfully.

C:\WINDOWS\System32\SET215.tmp moved successfully.

C:\WINDOWS\System32\SET216.tmp moved successfully.

C:\WINDOWS\System32\SET217.tmp moved successfully.

C:\WINDOWS\System32\SET218.tmp moved successfully.

C:\WINDOWS\System32\SET219.tmp moved successfully.

C:\WINDOWS\System32\SET21A.tmp moved successfully.

C:\WINDOWS\System32\SET21B.tmp moved successfully.

C:\WINDOWS\System32\SET21C.tmp moved successfully.

C:\WINDOWS\System32\SET21D.tmp moved successfully.

C:\WINDOWS\System32\SET21E.tmp moved successfully.

C:\WINDOWS\System32\SET21F.tmp moved successfully.

C:\WINDOWS\System32\SET22.tmp moved successfully.

C:\WINDOWS\System32\SET220.tmp moved successfully.

C:\WINDOWS\System32\SET221.tmp moved successfully.

C:\WINDOWS\System32\SET222.tmp moved successfully.

C:\WINDOWS\System32\SET223.tmp moved successfully.

C:\WINDOWS\System32\SET224.tmp moved successfully.

C:\WINDOWS\System32\SET225.tmp moved successfully.

C:\WINDOWS\System32\SET23.tmp moved successfully.

C:\WINDOWS\System32\SET24.tmp moved successfully.

C:\WINDOWS\System32\SET25.tmp moved successfully.

C:\WINDOWS\System32\SET26.tmp moved successfully.

C:\WINDOWS\System32\SET27.tmp moved successfully.

C:\WINDOWS\System32\SET28.tmp moved successfully.

C:\WINDOWS\System32\SET29.tmp moved successfully.

C:\WINDOWS\System32\SET2A.tmp moved successfully.

C:\WINDOWS\System32\SET2B.tmp moved successfully.

C:\WINDOWS\System32\SET2C.tmp moved successfully.

C:\WINDOWS\System32\SET2D.tmp moved successfully.

C:\WINDOWS\System32\SET2E.tmp moved successfully.

C:\WINDOWS\System32\SET2F.tmp moved successfully.

C:\WINDOWS\System32\SET30.tmp moved successfully.

C:\WINDOWS\System32\SET31.tmp moved successfully.

C:\WINDOWS\System32\SET32.tmp moved successfully.

C:\WINDOWS\System32\SET33.tmp moved successfully.

C:\WINDOWS\System32\SET34.tmp moved successfully.

C:\WINDOWS\System32\SET35.tmp moved successfully.

C:\WINDOWS\System32\SET36.tmp moved successfully.

C:\WINDOWS\System32\SET37.tmp moved successfully.

C:\WINDOWS\System32\SET38.tmp moved successfully.

C:\WINDOWS\System32\SET39.tmp moved successfully.

C:\WINDOWS\System32\SET3A.tmp moved successfully.

C:\WINDOWS\System32\SET3B.tmp moved successfully.

C:\WINDOWS\System32\SET3C.tmp moved successfully.

C:\WINDOWS\System32\SET3D.tmp moved successfully.

C:\WINDOWS\System32\SET3E.tmp moved successfully.

C:\WINDOWS\System32\SET3F.tmp moved successfully.

C:\WINDOWS\System32\SET40.tmp moved successfully.

C:\WINDOWS\System32\SET41.tmp moved successfully.

C:\WINDOWS\System32\SET42.tmp moved successfully.

C:\WINDOWS\System32\SET43.tmp moved successfully.

C:\WINDOWS\System32\SET44.tmp moved successfully.

C:\WINDOWS\System32\SET45.tmp moved successfully.

C:\WINDOWS\System32\SET46.tmp moved successfully.

C:\WINDOWS\System32\SET47.tmp moved successfully.

C:\WINDOWS\System32\SET48.tmp moved successfully.

C:\WINDOWS\System32\SET49.tmp moved successfully.

C:\WINDOWS\System32\SET4A.tmp moved successfully.

C:\WINDOWS\System32\SET4B.tmp moved successfully.

C:\WINDOWS\System32\SET4C.tmp moved successfully.

C:\WINDOWS\System32\SET4D.tmp moved successfully.

C:\WINDOWS\System32\SET4E.tmp moved successfully.

C:\WINDOWS\System32\SET4F.tmp moved successfully.

C:\WINDOWS\System32\SET50.tmp moved successfully.

C:\WINDOWS\System32\SET51.tmp moved successfully.

C:\WINDOWS\System32\SET52.tmp moved successfully.

C:\WINDOWS\System32\SET53.tmp moved successfully.

C:\WINDOWS\System32\SET54.tmp moved successfully.

C:\WINDOWS\System32\SET55.tmp moved successfully.

C:\WINDOWS\System32\SET56.tmp moved successfully.

C:\WINDOWS\System32\SET57.tmp moved successfully.

C:\WINDOWS\System32\SET58.tmp moved successfully.

C:\WINDOWS\System32\SET59.tmp moved successfully.

C:\WINDOWS\System32\SET5A.tmp moved successfully.

C:\WINDOWS\System32\SET5B.tmp moved successfully.

C:\WINDOWS\System32\SET5C.tmp moved successfully.

C:\WINDOWS\System32\SET5D.tmp moved successfully.

C:\WINDOWS\System32\SET5E.tmp moved successfully.

C:\WINDOWS\System32\SET5F.tmp moved successfully.

C:\WINDOWS\System32\SET60.tmp moved successfully.

C:\WINDOWS\System32\SET61.tmp moved successfully.

C:\WINDOWS\System32\SET62.tmp moved successfully.

C:\WINDOWS\System32\SET63.tmp moved successfully.

C:\WINDOWS\System32\SET64.tmp moved successfully.

C:\WINDOWS\System32\SET65.tmp moved successfully.

C:\WINDOWS\System32\SET66.tmp moved successfully.

C:\WINDOWS\System32\SET67.tmp moved successfully.

C:\WINDOWS\System32\SET68.tmp moved successfully.

C:\WINDOWS\System32\SET69.tmp moved successfully.

C:\WINDOWS\System32\SET6A.tmp moved successfully.

C:\WINDOWS\System32\SET6B.tmp moved successfully.

C:\WINDOWS\System32\SET6C.tmp moved successfully.

C:\WINDOWS\System32\SET6D.tmp moved successfully.

C:\WINDOWS\System32\SET6E.tmp moved successfully.

C:\WINDOWS\System32\SET6F.tmp moved successfully.

C:\WINDOWS\System32\SET70.tmp moved successfully.

C:\WINDOWS\System32\SET71.tmp moved successfully.

C:\WINDOWS\System32\SET72.tmp moved successfully.

C:\WINDOWS\System32\SET73.tmp moved successfully.

C:\WINDOWS\System32\SET74.tmp moved successfully.

C:\WINDOWS\System32\SET75.tmp moved successfully.

C:\WINDOWS\System32\SET76.tmp moved successfully.

C:\WINDOWS\System32\SET77.tmp moved successfully.

C:\WINDOWS\System32\SET78.tmp moved successfully.

C:\WINDOWS\System32\SET79.tmp moved successfully.

C:\WINDOWS\System32\SET7A.tmp moved successfully.

C:\WINDOWS\System32\SET7B.tmp moved successfully.

C:\WINDOWS\System32\SET7C.tmp moved successfully.

C:\WINDOWS\System32\SET7D.tmp moved successfully.

C:\WINDOWS\System32\SET7E.tmp moved successfully.

C:\WINDOWS\System32\SET7F.tmp moved successfully.

C:\WINDOWS\System32\SET80.tmp moved successfully.

C:\WINDOWS\System32\SET81.tmp moved successfully.

C:\WINDOWS\System32\SET82.tmp moved successfully.

C:\WINDOWS\System32\SET83.tmp moved successfully.

C:\WINDOWS\System32\SET84.tmp moved successfully.

C:\WINDOWS\System32\SET85.tmp moved successfully.

C:\WINDOWS\System32\SET86.tmp moved successfully.

C:\WINDOWS\System32\SET87.tmp moved successfully.

C:\WINDOWS\System32\SET88.tmp moved successfully.

C:\WINDOWS\System32\SET89.tmp moved successfully.

C:\WINDOWS\System32\SET8A.tmp moved successfully.

C:\WINDOWS\System32\SET8B.tmp moved successfully.

C:\WINDOWS\System32\SET8C.tmp moved successfully.

C:\WINDOWS\System32\SET8D.tmp moved successfully.

C:\WINDOWS\System32\SET8E.tmp moved successfully.

C:\WINDOWS\System32\SET8F.tmp moved successfully.

C:\WINDOWS\System32\SET9.tmp moved successfully.

C:\WINDOWS\System32\SET90.tmp moved successfully.

C:\WINDOWS\System32\SET91.tmp moved successfully.

C:\WINDOWS\System32\SET92.tmp moved successfully.

C:\WINDOWS\System32\SET93.tmp moved successfully.

C:\WINDOWS\System32\SET94.tmp moved successfully.

C:\WINDOWS\System32\SET95.tmp moved successfully.

C:\WINDOWS\System32\SET96.tmp moved successfully.

C:\WINDOWS\System32\SET97.tmp moved successfully.

C:\WINDOWS\System32\SET98.tmp moved successfully.

C:\WINDOWS\System32\SET99.tmp moved successfully.

C:\WINDOWS\System32\SET9A.tmp moved successfully.

C:\WINDOWS\System32\SET9B.tmp moved successfully.

C:\WINDOWS\System32\SET9C.tmp moved successfully.

C:\WINDOWS\System32\SET9D.tmp moved successfully.

C:\WINDOWS\System32\SET9E.tmp moved successfully.

C:\WINDOWS\System32\SET9F.tmp moved successfully.

C:\WINDOWS\System32\SETA.tmp moved successfully.

C:\WINDOWS\System32\SETA0.tmp moved successfully.

C:\WINDOWS\System32\SETA1.tmp moved successfully.

C:\WINDOWS\System32\SETA2.tmp moved successfully.

C:\WINDOWS\System32\SETA3.tmp moved successfully.

C:\WINDOWS\System32\SETA4.tmp moved successfully.

C:\WINDOWS\System32\SETA5.tmp moved successfully.

C:\WINDOWS\System32\SETA6.tmp moved successfully.

C:\WINDOWS\System32\SETA7.tmp moved successfully.

C:\WINDOWS\System32\SETA8.tmp moved successfully.

C:\WINDOWS\System32\SETA9.tmp moved successfully.

C:\WINDOWS\System32\SETAA.tmp moved successfully.

C:\WINDOWS\System32\SETAB.tmp moved successfully.

C:\WINDOWS\System32\SETAC.tmp moved successfully.

C:\WINDOWS\System32\SETAD.tmp moved successfully.

C:\WINDOWS\System32\SETAE.tmp moved successfully.

C:\WINDOWS\System32\SETAF.tmp moved successfully.

C:\WINDOWS\System32\SETB.tmp moved successfully.

C:\WINDOWS\System32\SETB0.tmp moved successfully.

C:\WINDOWS\System32\SETB1.tmp moved successfully.

C:\WINDOWS\System32\SETB2.tmp moved successfully.

C:\WINDOWS\System32\SETB3.tmp moved successfully.

C:\WINDOWS\System32\SETB4.tmp moved successfully.

C:\WINDOWS\System32\SETB5.tmp moved successfully.

C:\WINDOWS\System32\SETB6.tmp moved successfully.

C:\WINDOWS\System32\SETB7.tmp moved successfully.

C:\WINDOWS\System32\SETB8.tmp moved successfully.

C:\WINDOWS\System32\SETB9.tmp moved successfully.

C:\WINDOWS\System32\SETBA.tmp moved successfully.

C:\WINDOWS\System32\SETBB.tmp moved successfully.

C:\WINDOWS\System32\SETBC.tmp moved successfully.

C:\WINDOWS\System32\SETBD.tmp moved successfully.

C:\WINDOWS\System32\SETBE.tmp moved successfully.

C:\WINDOWS\System32\SETBF.tmp moved successfully.

C:\WINDOWS\System32\SETC.tmp moved successfully.

C:\WINDOWS\System32\SETC0.tmp moved successfully.

C:\WINDOWS\System32\SETC1.tmp moved successfully.

C:\WINDOWS\System32\SETC2.tmp moved successfully.

C:\WINDOWS\System32\SETC3.tmp moved successfully.

C:\WINDOWS\System32\SETC4.tmp moved successfully.

C:\WINDOWS\System32\SETC5.tmp moved successfully.

C:\WINDOWS\System32\SETC6.tmp moved successfully.

C:\WINDOWS\System32\SETC7.tmp moved successfully.

C:\WINDOWS\System32\SETC8.tmp moved successfully.

C:\WINDOWS\System32\SETC9.tmp moved successfully.

C:\WINDOWS\System32\SETCA.tmp moved successfully.

C:\WINDOWS\System32\SETCB.tmp moved successfully.

C:\WINDOWS\System32\SETCC.tmp moved successfully.

C:\WINDOWS\System32\SETCD.tmp moved successfully.

C:\WINDOWS\System32\SETCE.tmp moved successfully.

C:\WINDOWS\System32\SETCF.tmp moved successfully.

C:\WINDOWS\System32\SETD.tmp moved successfully.

C:\WINDOWS\System32\SETD0.tmp moved successfully.

C:\WINDOWS\System32\SETD1.tmp moved successfully.

C:\WINDOWS\System32\SETD2.tmp moved successfully.

C:\WINDOWS\System32\SETD3.tmp moved successfully.

C:\WINDOWS\System32\SETD4.tmp moved successfully.

C:\WINDOWS\System32\SETD5.tmp moved successfully.

C:\WINDOWS\System32\SETD6.tmp moved successfully.

C:\WINDOWS\System32\SETD7.tmp moved successfully.

C:\WINDOWS\System32\SETD8.tmp moved successfully.

C:\WINDOWS\System32\SETD9.tmp moved successfully.

C:\WINDOWS\System32\SETDA.tmp moved successfully.

C:\WINDOWS\System32\SETDB.tmp moved successfully.

C:\WINDOWS\System32\SETDC.tmp moved successfully.

C:\WINDOWS\System32\SETDD.tmp moved successfully.

C:\WINDOWS\System32\SETDE.tmp moved successfully.

C:\WINDOWS\System32\SETDF.tmp moved successfully.

C:\WINDOWS\System32\SETE.tmp moved successfully.

C:\WINDOWS\System32\SETE0.tmp moved successfully.

C:\WINDOWS\System32\SETE1.tmp moved successfully.

C:\WINDOWS\System32\SETE2.tmp moved successfully.

C:\WINDOWS\System32\SETE3.tmp moved successfully.

C:\WINDOWS\System32\SETE4.tmp moved successfully.

C:\WINDOWS\System32\SETE5.tmp moved successfully.

C:\WINDOWS\System32\SETE6.tmp moved successfully.

C:\WINDOWS\System32\SETE7.tmp moved successfully.

C:\WINDOWS\System32\SETE8.tmp moved successfully.

C:\WINDOWS\System32\SETE9.tmp moved successfully.

C:\WINDOWS\System32\SETEA.tmp moved successfully.

C:\WINDOWS\System32\SETEB.tmp moved successfully.

C:\WINDOWS\System32\SETEC.tmp moved successfully.

C:\WINDOWS\System32\SETED.tmp moved successfully.

C:\WINDOWS\System32\SETEE.tmp moved successfully.

C:\WINDOWS\System32\SETEF.tmp moved successfully.

C:\WINDOWS\System32\SETF.tmp moved successfully.

C:\WINDOWS\System32\SETF0.tmp moved successfully.

C:\WINDOWS\System32\SETF1.tmp moved successfully.

C:\WINDOWS\System32\SETF2.tmp moved successfully.

C:\WINDOWS\System32\SETF3.tmp moved successfully.

C:\WINDOWS\System32\SETF4.tmp moved successfully.

C:\WINDOWS\System32\SETF5.tmp moved successfully.

C:\WINDOWS\System32\SETF6.tmp moved successfully.

C:\WINDOWS\System32\SETF7.tmp moved successfully.

C:\WINDOWS\System32\SETF8.tmp moved successfully.

C:\WINDOWS\System32\SETF9.tmp moved successfully.

C:\WINDOWS\System32\SETFA.tmp moved successfully.

C:\WINDOWS\System32\SETFB.tmp moved successfully.

C:\WINDOWS\System32\SETFC.tmp moved successfully.

C:\WINDOWS\System32\SETFD.tmp moved successfully.

C:\WINDOWS\System32\SETFE.tmp moved successfully.

C:\WINDOWS\System32\SETFF.tmp moved successfully.

File\Folder C:\WINDOWS\*.tmp not found.

File\Folder C:\WINDOWS\system32\drivers\mfetdik.sys not found.

========== COMMANDS ==========

 

[EMPTYTEMP]

 

User: Administrateur

->Temp folder emptied: 316071 bytes

->Temporary Internet Files folder emptied: 55099112 bytes

->Java cache emptied: 0 bytes

->Google Chrome cache emptied: 12609413 bytes

->Flash cache emptied: 611 bytes

 

User: All Users

 

User: Default User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 67 bytes

 

User: LocalService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 32902 bytes

 

User: NetworkService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 32902 bytes

 

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 0 bytes

%systemroot%\System32 .tmp files removed: 0 bytes

%systemroot%\System32\dllcache .tmp files removed: 269769528 bytes

%systemroot%\System32\drivers .tmp files removed: 37768 bytes

Windows Temp folder emptied: 699 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 120583879 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes

RecycleBin emptied: 0 bytes

 

Total Files Cleaned = 437,00 mb

 

 

[EMPTYFLASH]

 

User: Administrateur

->Flash cache emptied: 0 bytes

 

User: All Users

 

User: Default User

 

User: LocalService

 

User: NetworkService

 

Total Flash Files Cleaned = 0,00 mb

 

 

OTL by OldTimer - Version 3.2.28.0 log created on 09142011_151156

 

Files\Folders moved on Reboot...

 

Registry entries deleted on Reboot...

Posté(e) (modifié)

Re,

 

Bien sûr qu'on continue!

 

- Tu as trouvé quoi comme version de "iexplore.exe" dans ces "Propriété"?

- Est-ce que tu utilise leur "Google Buzz" et le gadget "Google Agenda Lab"?

- Tu connais ces adresses? Pose la question à ton FAI (Fournisseur d'Accès Internet) si nécessaire.

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{47BE88C4-77FF-4DB2-9ACB-3FA00DBF15F4}: DhcpNameServer = 194.2.0.20 194.2.0.50

 

On recherche des traces éventuelles d'infection,

 

>>> Télécharger, sur le Bureau, ZHPDiag (par Nicolas Coolman) depuis ici.

Fermer toutes les applications et fenêtres ouvertes et double-cliquer sur ZHPDiag.exe. Cliquer sur Lancer le diagnostic (loupe) et patienter jusqu'à la fin (En cas de blocage sur O80, cliquez sur le tournevis pour le décocher).

Un rapport ZHPDiag.txt sera généré et sauvegardé automatiquement sur le Bureau. Ne pas le poster directement ici car souvent trop lourd pour les limites du forum.

Aller sur le site :Ci-Jointicne2cjoint.png

Cliquer sur Parcourir, chercher le fichier et cliquer dessus. Cliquer sur Créer le lien CJoint.

Dans la page suivante --> , une adresse (http//...) sera créée. La copier /coller dans la prochaine réponse.

Modifié par lance_yien
Posté(e)

Bonjour sylvainj2,

 

Pour demander à ton FAI, il suffit de leur téléphoner simplement (vois tes docs ou leur site pour le numéro à appeler).

Sur Google, j'ai trouvé ça:

Pour 192.168.1.1 => c'est chez SFR si ça correspond à ton cas.

Pour 194.2.0.20 => OLEANE Backbone

 

Est-ce que ça peut t'aider à y voir plus clair (en plus de ce qu'ils te disent).

--

 

>>> Programmes P2P: Ton rapport montre la présence d'un programme P2P (uTorrent):

C:\Program Files\uTorrent

C:\Documents and Settings\Administrateur\Application Data\uTorrent

 

Tout ce qui est lié aux applications type P2P/ Torrent est devenu de plus en plus dangereux pour les machines et les documents personnels et/ ou confidentiels qui y sont stockés.

Fini le partage entre des gens honnêtes. Les pirates, aussi, veulent partager avec le maximum d'internautes et mettent à disposition leurs applications partout où ils peuvent sous de faux noms aussi attractifs que possibles.

En plus le principe même de ce type de réseau n'est en rien bénéfique. Bien au contraire, vous autoriser tout le monde à utiliser votre bande passante et communiquer avec votre machine ce qui peut ralentir considérablement votre système et/ou peut faciliter la tâche aux intrus.

En adhérant à ce type de réseau, non seulement, vous ouvrez délibérément des portes à tout et n'importe quoi mais aussi, vous forcez votre pare-feu et antivirus à les tolérer (c'est compris dans la procédure d'installation). On s'étonne après de ce qui arrive ou on accuse son antivirus.

Prendre la sage décision de désinstaller tout programme de ce type en commençant par celui cité ci-dessus et supprimer le(s) dossier(s) qui y réfère(nt) si toujours présent.

--

 

Lancer IE => "Outils" => "Options Internet" et cliquer sur "Réinitialiser..." dans l'onglet "Avancé". Fermer IE.

Aller sur Gmail pour vérifier.

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...