PROBLEME AVEC IE 7 ET MOZILLA
Résolu/Fermé
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
-
26 déc. 2008 à 00:11
anthony5151 Messages postés 10573 Date d'inscription vendredi 27 juin 2008 Statut Contributeur sécurité Dernière intervention 2 mars 2015 - 11 janv. 2009 à 04:20
anthony5151 Messages postés 10573 Date d'inscription vendredi 27 juin 2008 Statut Contributeur sécurité Dernière intervention 2 mars 2015 - 11 janv. 2009 à 04:20
A voir également:
- PROBLEME AVEC IE 7 ET MOZILLA
- Downloadhelper mozilla - Télécharger - Outils pour navigateurs
- Mozilla thunderbird - Télécharger - Mail
- Telecharger photofiltre 7 gratuit - Télécharger - Retouche d'image
- Télécharger mozilla firefox - Télécharger - Navigateurs
- Movie maker windows 7 - Télécharger - Montage & Édition
12 réponses
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
26 déc. 2008 à 06:43
26 déc. 2008 à 06:43
Bonjour,
Plusieurs remarques :
1) Merci de ne pas poster de doublon sur ce forum... SI tu n'avais pas eu de réponse, c'est parce que tu n'es pas dans la bonne partie (il y a une partie Virus/sécurité)
2) Ton ordinateur est encore infecté d'après le rapport hijackthis, je vais t'aider à le désinfecter
3) Puisque tu as commencé la désinfection seul, j'ai besoin que tu ailles rechercher le rapport de MalwareBytes et que tu le postes ici stp : tu le retrouveras dans "Rapports/logs"
Ensuite, télécharge Random's System Information Tool (RSIT) de random/random, et enregistre le sur ton Bureau.
• Double clique sur RSIT.exe pour lancer l'outil.
• Clique sur ' continue ' à l'écran Disclaimer.
• Si l'outil HijackThis n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
• Une fois le scan terminé, deux rapports vont apparaitre. Poste le contenu de log.txt
Plusieurs remarques :
1) Merci de ne pas poster de doublon sur ce forum... SI tu n'avais pas eu de réponse, c'est parce que tu n'es pas dans la bonne partie (il y a une partie Virus/sécurité)
2) Ton ordinateur est encore infecté d'après le rapport hijackthis, je vais t'aider à le désinfecter
3) Puisque tu as commencé la désinfection seul, j'ai besoin que tu ailles rechercher le rapport de MalwareBytes et que tu le postes ici stp : tu le retrouveras dans "Rapports/logs"
Ensuite, télécharge Random's System Information Tool (RSIT) de random/random, et enregistre le sur ton Bureau.
• Double clique sur RSIT.exe pour lancer l'outil.
• Clique sur ' continue ' à l'écran Disclaimer.
• Si l'outil HijackThis n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
• Une fois le scan terminé, deux rapports vont apparaitre. Poste le contenu de log.txt
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
28 déc. 2008 à 20:50
28 déc. 2008 à 20:50
Ton ordinateur n'est plus infecté, fais maintenant ce qui suit pour finir le nettoyage.
Pour tes autres problèmes, je te conseille d'ouvrir un autre sujet (ce n'est pas ma spécialité)
1) Sécurise ton ordinateur
• Anti-virus :
McAfee est lourd, cher, et malgré tout inefficace ! Je te conseille vivement de le supprimer et d’utiliser un antivirus plus efficace (Antivir, Kaspersky...). Il en existe des gratuits qui sont excellents aussi (Antivir ou AVG).
Pour supprimer McAfee, suis ce tuto :
Si tu choisis Antivir gratuit, télécharge le ici.
Pour Antivir payant, c'est ici
Pour Kaspersky, c'est ici
• Anti-spyware :
Tu n'as apparemment pas d'anti-spyware actif :
* Installe Spyware Blaster : il ne prend pas de mémoire, c'est juste un logiciel qui vaccine ton pc contre certaines infections. Il faut le mettre à jour manuellement, tous les 10 jours environ, et activer toutes les protections (« Enable all protection »)
* En complément, garde MalwareBytes pour son scan de nettoyage performant.
• Pour naviguer sur internet plus en sécurité et à l’abri des publicités, je te conseille d’installer et d'utiliser le navigateur Firefox 3 avec l’extension « AdBlockPlus ». Tu peux trouver des explications ici
• Adobe Reader n’est pas à jour, c’est une faille de sécurité. Désinstalle le en allant dans menu démarrer --> panneau de configuration --> ajout/suppression de programmes. Puis télécharge et installe la nouvelle version.
2) Télécharge ToolsCleaner sur ton Bureau pour nettoyer l'ordi de tous les outils qu'on a utilisé : ToolsCleaner
Lance le, clique sur Recherche et laisse le scan se finir, puis clique sur Suppression pour nettoyer.
Tu peux aussi supprimer les fichiers temporaires.
Ensuite, supprime manuellement ToolsCleaner (mets le à la corbeille).
S'il ne supprime pas tout, supprime manuellement ce qui reste.
3) Télécharge et installe CCleaner (si ce n’est déjà fait) : https://www.ccleaner.com/ccleaner/download
Lance CCleaner
Option --> avancé --> décoche « effacer uniquement les fichiers plus vieux que 48h »
Puis nettoyeur --> Analyse > Lancer le nettoyage, puis sur OK dans la fenêtre qui s' affiche.
Enfin, registre --> corrige toutes les erreurs, et recommence jusqu'à ce qu'il ne trouve plus d'erreurs.
(Tu peux garder ce logiciel et l'utiliser régulièrement).
4) Pour finir le nettoyage, il faut désactiver puis réactiver la restauration système (pour créer un nouveau point de restauration sain et éviter le retour de l'infection).
• Menu démarrer --> clic droit sur ordinateur --> propriétés --> protection du système
• Désactive la restauration du système sur tous les lecteurs
• Clique sur OK.
Puis refais la manipulation inverse pour réactiver la restauration système.
5) Je t'invite enfin à visiter cette page qui t'apportera des informations de prévention et de protection contre les infections (environ 15 minutes de lecture très instructive et utile):
Prévention et sécurité sur internet
Bon courage ;)
Pour tes autres problèmes, je te conseille d'ouvrir un autre sujet (ce n'est pas ma spécialité)
1) Sécurise ton ordinateur
• Anti-virus :
McAfee est lourd, cher, et malgré tout inefficace ! Je te conseille vivement de le supprimer et d’utiliser un antivirus plus efficace (Antivir, Kaspersky...). Il en existe des gratuits qui sont excellents aussi (Antivir ou AVG).
Pour supprimer McAfee, suis ce tuto :
Si tu choisis Antivir gratuit, télécharge le ici.
Pour Antivir payant, c'est ici
Pour Kaspersky, c'est ici
• Anti-spyware :
Tu n'as apparemment pas d'anti-spyware actif :
* Installe Spyware Blaster : il ne prend pas de mémoire, c'est juste un logiciel qui vaccine ton pc contre certaines infections. Il faut le mettre à jour manuellement, tous les 10 jours environ, et activer toutes les protections (« Enable all protection »)
* En complément, garde MalwareBytes pour son scan de nettoyage performant.
• Pour naviguer sur internet plus en sécurité et à l’abri des publicités, je te conseille d’installer et d'utiliser le navigateur Firefox 3 avec l’extension « AdBlockPlus ». Tu peux trouver des explications ici
• Adobe Reader n’est pas à jour, c’est une faille de sécurité. Désinstalle le en allant dans menu démarrer --> panneau de configuration --> ajout/suppression de programmes. Puis télécharge et installe la nouvelle version.
2) Télécharge ToolsCleaner sur ton Bureau pour nettoyer l'ordi de tous les outils qu'on a utilisé : ToolsCleaner
Lance le, clique sur Recherche et laisse le scan se finir, puis clique sur Suppression pour nettoyer.
Tu peux aussi supprimer les fichiers temporaires.
Ensuite, supprime manuellement ToolsCleaner (mets le à la corbeille).
S'il ne supprime pas tout, supprime manuellement ce qui reste.
3) Télécharge et installe CCleaner (si ce n’est déjà fait) : https://www.ccleaner.com/ccleaner/download
Lance CCleaner
Option --> avancé --> décoche « effacer uniquement les fichiers plus vieux que 48h »
Puis nettoyeur --> Analyse > Lancer le nettoyage, puis sur OK dans la fenêtre qui s' affiche.
Enfin, registre --> corrige toutes les erreurs, et recommence jusqu'à ce qu'il ne trouve plus d'erreurs.
(Tu peux garder ce logiciel et l'utiliser régulièrement).
4) Pour finir le nettoyage, il faut désactiver puis réactiver la restauration système (pour créer un nouveau point de restauration sain et éviter le retour de l'infection).
• Menu démarrer --> clic droit sur ordinateur --> propriétés --> protection du système
• Désactive la restauration du système sur tous les lecteurs
• Clique sur OK.
Puis refais la manipulation inverse pour réactiver la restauration système.
5) Je t'invite enfin à visiter cette page qui t'apportera des informations de prévention et de protection contre les infections (environ 15 minutes de lecture très instructive et utile):
Prévention et sécurité sur internet
Bon courage ;)
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
31 déc. 2008 à 03:39
31 déc. 2008 à 03:39
Merci beaucoup Anthony5151.Je viens de finir ta manip et mon ordi fonctionne correctement .Si j'ai un autre problème je te fais signe.
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
26 déc. 2008 à 15:01
26 déc. 2008 à 15:01
Merci de ta part c'est gentil.Et excuses moi j'étais pas connecté .Voila le rapport de MBAM enfin je pense car je l'ai trouvé dans Program Files .
C:\Program Files\WebMediaViewer\qttask.exe (Trojan.Zlob) -> No action taken.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{4509d3cc-b642-4745-b030-645b79522c6d} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{4897bba6-48d9-468c-8efa-846275d7701b} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{ca3eb689-8f09-4026-aa10-b9534c691ce0} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook.1 (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3b8fb116-d358-48a3-a5c7-db84f15cbb04} (Trojan.Zlob) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{3b8fb116-d358-48a3-a5c7-db84f15cbb04} (Trojan.Zlob) -> No action taken.
HKEY_CLASSES_ROOT\webmedia.chl (Trojan.Zlob) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Online Alert Manager (Trojan.Zlob) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Toolbar (Trojan.Zlob) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\quicktime task (Trojan.Zlob) -> No action taken.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
C:\Program Files\WebMediaViewer (Trojan.Zlob) -> No action taken.
Fichier(s) infecté(s):
C:\Program Files\SpeedBit Video Downloader\Toolbar\tbhelper.dll (Trojan.BHO) -> No action taken.
C:\Program Files\WebMediaViewer\browseu.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myc.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myd.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\mym.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myp.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myv.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\Online Spyware Test.lnk (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\ot.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\qttask.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\qttaskm.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\qttasku.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\Run Virus Scan.lnk (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\ts.ico (Trojan.Zlob) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Online Spyware Test.url (Trojan.Zlob) -> No action taken.
C:\Users\Public\Desktop\Online Spyware Test.url (Rogue.Link) -> No action taken.
Voici les deux rapports de Random's System Information Tool:
Le 1er:
Run by Afizidine at 2008-12-26 14:53:30
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 98 GB (66%) free of 148 GB
Total RAM: 3066 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:53:50, on 26/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PLFSetI.exe
C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Users\Afizidine\Program Files\DNA\btdna.exe
C:\Program Files\DAP\DAP.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Acer\Acer VCM\AcerVCM.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Acer\Acer VCM\acp2HID.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
c:\PROGRA~1\mcafee\VIRUSS~1\mcvsshld.exe
C:\Program Files\Acer\Empowering Technology\NotificationCenter\Framework.NotificationCenter.exe
C:\Users\Afizidine\Documents\My Completed Downloads\RSIT.exe
C:\Program Files\trend micro\Afizidine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: SBCONVERT - {A1056498-D09A-41E4-864B-505EDD640D9E} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O2 - BHO: GrabberObj Class - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: SpeedBit Video Downloader - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Afizidine\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKLM\..\Policies\Explorer\Run: [QuickTime Task] C:\Program Files\WebMediaViewer\qttask.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Acer VCM.lnk = ?
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {3B8FB116-D358-48A3-A5C7-DB84F15CBB04} - http://www.iexplorersecurity.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: Explorer Security - {3B8FB116-D358-48A3-A5C7-DB84F15CBB04} - http://www.iexplorersecurity.com/redirect.php (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1229944446019&h=f285a49685e4363bf869c6062760a914/&filename=jinstall-6u11-windows-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F8B2785F-DCDA-462E-B262-1E314AFAC753}: NameServer = 80.10.246.3,80.10.246.129
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Google Desktop Manager 5.7.808.7150 (GoogleDesktopManager-080708-050100) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\WebMediaViewer\qttask.exe (Trojan.Zlob) -> No action taken.
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{4509d3cc-b642-4745-b030-645b79522c6d} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{4897bba6-48d9-468c-8efa-846275d7701b} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{ca3eb689-8f09-4026-aa10-b9534c691ce0} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook.1 (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3b8fb116-d358-48a3-a5c7-db84f15cbb04} (Trojan.Zlob) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{3b8fb116-d358-48a3-a5c7-db84f15cbb04} (Trojan.Zlob) -> No action taken.
HKEY_CLASSES_ROOT\webmedia.chl (Trojan.Zlob) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Online Alert Manager (Trojan.Zlob) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Toolbar (Trojan.Zlob) -> No action taken.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\quicktime task (Trojan.Zlob) -> No action taken.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
C:\Program Files\WebMediaViewer (Trojan.Zlob) -> No action taken.
Fichier(s) infecté(s):
C:\Program Files\SpeedBit Video Downloader\Toolbar\tbhelper.dll (Trojan.BHO) -> No action taken.
C:\Program Files\WebMediaViewer\browseu.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myc.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myd.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\mym.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myp.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\myv.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\Online Spyware Test.lnk (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\ot.ico (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\qttask.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\qttaskm.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\qttasku.exe (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\Run Virus Scan.lnk (Trojan.Zlob) -> No action taken.
C:\Program Files\WebMediaViewer\ts.ico (Trojan.Zlob) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Online Spyware Test.url (Trojan.Zlob) -> No action taken.
C:\Users\Public\Desktop\Online Spyware Test.url (Rogue.Link) -> No action taken.
Voici les deux rapports de Random's System Information Tool:
Le 1er:
Run by Afizidine at 2008-12-26 14:53:30
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 98 GB (66%) free of 148 GB
Total RAM: 3066 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:53:50, on 26/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PLFSetI.exe
C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Users\Afizidine\Program Files\DNA\btdna.exe
C:\Program Files\DAP\DAP.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Acer\Acer VCM\AcerVCM.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Acer\Acer VCM\acp2HID.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
c:\PROGRA~1\mcafee\VIRUSS~1\mcvsshld.exe
C:\Program Files\Acer\Empowering Technology\NotificationCenter\Framework.NotificationCenter.exe
C:\Users\Afizidine\Documents\My Completed Downloads\RSIT.exe
C:\Program Files\trend micro\Afizidine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: SBCONVERT - {A1056498-D09A-41E4-864B-505EDD640D9E} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O2 - BHO: GrabberObj Class - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: SpeedBit Video Downloader - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Afizidine\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKLM\..\Policies\Explorer\Run: [QuickTime Task] C:\Program Files\WebMediaViewer\qttask.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Acer VCM.lnk = ?
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {3B8FB116-D358-48A3-A5C7-DB84F15CBB04} - http://www.iexplorersecurity.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: Explorer Security - {3B8FB116-D358-48A3-A5C7-DB84F15CBB04} - http://www.iexplorersecurity.com/redirect.php (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1229944446019&h=f285a49685e4363bf869c6062760a914/&filename=jinstall-6u11-windows-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F8B2785F-DCDA-462E-B262-1E314AFAC753}: NameServer = 80.10.246.3,80.10.246.129
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Google Desktop Manager 5.7.808.7150 (GoogleDesktopManager-080708-050100) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
26 déc. 2008 à 18:38
26 déc. 2008 à 18:38
Bonsoir Anthony5151,
Mom problème s'est résolu.En fait tu avais raison.Mon PC était toujours infecté .J'ai refait un scan avec MBAM et j'avais encore des virus.je les ai tous supprimé avec MBAM et tout est rentré dans l'ordre .Mais j'ai encore un autre problème je n'arrive pas à telecharger des fichiers Torrents .
Mom problème s'est résolu.En fait tu avais raison.Mon PC était toujours infecté .J'ai refait un scan avec MBAM et j'avais encore des virus.je les ai tous supprimé avec MBAM et tout est rentré dans l'ordre .Mais j'ai encore un autre problème je n'arrive pas à telecharger des fichiers Torrents .
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
26 déc. 2008 à 20:11
26 déc. 2008 à 20:11
MalwareBytes a beau être très efficace, il n'est pas parfait : il laisse souvent des traces d'infection après son passage... Surtout pour cette infection (Zlob) qui crée pas mal de fichier... Ce n'est pas parce que les symptomes disparaissent que l'ordinateur est sain.
Je renouvelle donc ma demande d'un rapport RSIT
Je renouvelle donc ma demande d'un rapport RSIT
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
26 déc. 2008 à 20:21
26 déc. 2008 à 20:21
D'accord je te l'envoie dans quelques instants
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
26 déc. 2008 à 20:25
26 déc. 2008 à 20:25
Le voila:
Run by Afizidine at 2008-12-26 20:22:33
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 93 GB (63%) free of 148 GB
Total RAM: 3066 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:22:43, on 26/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PLFSetI.exe
C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\Afizidine\Program Files\DNA\btdna.exe
C:\Program Files\DAP\DAP.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Acer\Acer VCM\AcerVCM.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Acer\Acer VCM\acp2HID.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\Acer\Empowering Technology\NotificationCenter\Framework.NotificationCenter.exe
C:\Program Files\BitTorrent\bittorrent.exe
C:\Program Files\Vuze\Azureus.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Afizidine\Documents\My Completed Downloads\RSIT.exe
C:\Program Files\trend micro\Afizidine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: SBCONVERT - {A1056498-D09A-41E4-864B-505EDD640D9E} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O2 - BHO: GrabberObj Class - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: SpeedBit Video Downloader - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Afizidine\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\RunOnce: [ypagerps] cmd.exe /C del "C:\Program Files\Yahoo!\Messenger\ypagerps.dll"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Acer VCM.lnk = ?
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1230313754431&h=6fdb029ae357ec53bc8ffbb80334c69c/&filename=jinstall-6u11-windows-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F8B2785F-DCDA-462E-B262-1E314AFAC753}: NameServer = 80.10.246.3,80.10.246.129
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Google Desktop Manager 5.7.808.7150 (GoogleDesktopManager-080708-050100) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
Run by Afizidine at 2008-12-26 20:22:33
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 93 GB (63%) free of 148 GB
Total RAM: 3066 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:22:43, on 26/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PLFSetI.exe
C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\Afizidine\Program Files\DNA\btdna.exe
C:\Program Files\DAP\DAP.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Acer\Acer VCM\AcerVCM.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Acer\Acer VCM\acp2HID.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\Acer\Empowering Technology\NotificationCenter\Framework.NotificationCenter.exe
C:\Program Files\BitTorrent\bittorrent.exe
C:\Program Files\Vuze\Azureus.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Afizidine\Documents\My Completed Downloads\RSIT.exe
C:\Program Files\trend micro\Afizidine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: SBCONVERT - {A1056498-D09A-41E4-864B-505EDD640D9E} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O2 - BHO: GrabberObj Class - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: SpeedBit Video Downloader - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SpeedBit Video Downloader\Toolbar\SpeedBitVideoDownloader.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Afizidine\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\RunOnce: [ypagerps] cmd.exe /C del "C:\Program Files\Yahoo!\Messenger\ypagerps.dll"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Acer VCM.lnk = ?
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1230313754431&h=6fdb029ae357ec53bc8ffbb80334c69c/&filename=jinstall-6u11-windows-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F8B2785F-DCDA-462E-B262-1E314AFAC753}: NameServer = 80.10.246.3,80.10.246.129
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Google Desktop Manager 5.7.808.7150 (GoogleDesktopManager-080708-050100) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
27 déc. 2008 à 04:03
27 déc. 2008 à 04:03
Re,
Il y a une barre d'outil infectée sur ton PC (AskBar) et une autre qui est suspecte (SpeedBit Video Downloader)...
Pour la première, on va utiliser un programme spécialisé, pour la seconde, je te conseille de la désinstaller manuellement, car ce genre de barre d'outil est une arnaque qui n'accélère pas du tout les téléchargements mais qui peut apporter des infections (menu démarrer --> panneau de configuration --> programmes et fonctionnalités --> désinstaller un programme)
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau : https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2
• Fais un clic-droit sur le raccourci de Toolbar-S&D sur le Bureau et choisis "Exécuter en tant qu' Administrateur"
• Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
• Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
• Poste le rapport généré. (C:\TB.txt)
Il y a une barre d'outil infectée sur ton PC (AskBar) et une autre qui est suspecte (SpeedBit Video Downloader)...
Pour la première, on va utiliser un programme spécialisé, pour la seconde, je te conseille de la désinstaller manuellement, car ce genre de barre d'outil est une arnaque qui n'accélère pas du tout les téléchargements mais qui peut apporter des infections (menu démarrer --> panneau de configuration --> programmes et fonctionnalités --> désinstaller un programme)
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau : https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2
• Fais un clic-droit sur le raccourci de Toolbar-S&D sur le Bureau et choisis "Exécuter en tant qu' Administrateur"
• Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
• Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
• Poste le rapport généré. (C:\TB.txt)
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
27 déc. 2008 à 04:28
27 déc. 2008 à 04:28
Voici le rapport dont tu as besoin:
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : ZK2 v0.3204 3B04
USER : Afizidine ( Not Administrator ! )
BOOT : Normal boot
Antivirus : Kaspersky Anti-Virus 7.0.1.325 (Activated)
Firewall : Kaspersky Anti-Virus 7.0.1.325 (Not Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:90 Go)
D:\ (Local Disk) - NTFS - Total:140 Go (Free:140 Go)
F:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 27/12/2008| 4:25 )
[ UAC => 1 ]
-----------\\ Recherche de Fichiers / Dossiers ...
[Service] ASKService
[Service] ASKUpgrade
C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\unins000.dat
C:\Program Files\AskBarDis\unins000.exe
C:\Program Files\AskBarDis\bar\bin
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\bin\askBar.dll
C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\AskBarDis\bar\bin\AskSplash.exe
C:\Program Files\AskBarDis\bar\bin\AskTBApp.exe
C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
C:\Program Files\AskBarDis\bar\bin\psvince.dll
C:\Program Files\AskBarDis\bar\Settings\AskLogo.ico
C:\Program Files\AskBarDis\bar\Settings\config.dat
C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
C:\Users\AFIZID~1\AppData\Local\Temp\nsaF6FE.tmp
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Default_Page_URL"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://fr.yahoo.com/"
"Default_Page_URL"="https://fr.yahoo.com/"
"Default_Search_URL"="http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/"
"Search Page"="http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar
[ UAC => 1 ]
1 - "C:\ToolBar SD\TB_1.txt" - 27/12/2008| 4:25 - Option : [1]
-----------\\ Fin du rapport a 4:25:41,23
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : ZK2 v0.3204 3B04
USER : Afizidine ( Not Administrator ! )
BOOT : Normal boot
Antivirus : Kaspersky Anti-Virus 7.0.1.325 (Activated)
Firewall : Kaspersky Anti-Virus 7.0.1.325 (Not Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:90 Go)
D:\ (Local Disk) - NTFS - Total:140 Go (Free:140 Go)
F:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 27/12/2008| 4:25 )
[ UAC => 1 ]
-----------\\ Recherche de Fichiers / Dossiers ...
[Service] ASKService
[Service] ASKUpgrade
C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\unins000.dat
C:\Program Files\AskBarDis\unins000.exe
C:\Program Files\AskBarDis\bar\bin
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\bin\askBar.dll
C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\AskBarDis\bar\bin\AskSplash.exe
C:\Program Files\AskBarDis\bar\bin\AskTBApp.exe
C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
C:\Program Files\AskBarDis\bar\bin\psvince.dll
C:\Program Files\AskBarDis\bar\Settings\AskLogo.ico
C:\Program Files\AskBarDis\bar\Settings\config.dat
C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
C:\Users\AFIZID~1\AppData\Local\Temp\nsaF6FE.tmp
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Default_Page_URL"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://fr.yahoo.com/"
"Default_Page_URL"="https://fr.yahoo.com/"
"Default_Search_URL"="http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/"
"Search Page"="http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar
[ UAC => 1 ]
1 - "C:\ToolBar SD\TB_1.txt" - 27/12/2008| 4:25 - Option : [1]
-----------\\ Fin du rapport a 4:25:41,23
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
27 déc. 2008 à 09:16
27 déc. 2008 à 09:16
Avec autant de cracks et keygens, pas étonnant que ton ordinateur soit infecté ! Les cracks installent très souvent des infections : https://forum.malekal.com/viewtopic.php?f=33&t=893
Il faut les bannir complément... Si tu ne les supprimes pas, inutile de continuer la désinfection, les cracks et keygens réinfecteront ton ordinateur sans arrêt !
• Télécharge OTMoveIt3 (de OldTimer) sur ton Bureau : http://oldtimer.geekstogo.com/OTMoveIt3.exe
• Double-clique sur OTMoveIt3.exe afin de le lancer.
• Copie/colle le texte suivant dans le cadre « Paste Instructions for Items to be Moved » et clique sur Moveit :
• Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES.
• Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles
Le nom du rapport correspond au moment de sa création : date_heure.log
Il faut les bannir complément... Si tu ne les supprimes pas, inutile de continuer la désinfection, les cracks et keygens réinfecteront ton ordinateur sans arrêt !
• Télécharge OTMoveIt3 (de OldTimer) sur ton Bureau : http://oldtimer.geekstogo.com/OTMoveIt3.exe
• Double-clique sur OTMoveIt3.exe afin de le lancer.
• Copie/colle le texte suivant dans le cadre « Paste Instructions for Items to be Moved » et clique sur Moveit :
:processes explorer.exe :files C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009 C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar :commands [purity] [emptytemp] [start explorer] [reboot]
• Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES.
• Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles
Le nom du rapport correspond au moment de sa création : date_heure.log
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
27 déc. 2008 à 15:32
27 déc. 2008 à 15:32
Le voici le rapport de OTMovelt3:
========== FILES ==========
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent moved successfully.
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent moved successfully.
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk moved successfully.
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk moved successfully.
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent moved successfully.
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent moved successfully.
Folder move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009 scheduled to be moved on reboot.
File move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html scheduled to be moved on reboot.
File move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt scheduled to be moved on reboot.
File move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar scheduled to be moved on reboot.
========== COMMANDS ==========
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\Low\~DFFA88.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\hsperfdata_Afizidine\4212 scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\e4j34B6.tmp_dir4766\exe4jlib.jar scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\swt-gdip-win32-3448.dll scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\swt-win32-3448.dll scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\~DF3234.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\~DF35B9.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\~DF51AE.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\Windows\temp\cch~85ddd211.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~85de022a.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~d8c6c2c8.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~d8c7056b.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dc705542.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dc70b2ed.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dcd57905.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dcd5b418.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~de85bfea.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~de8602df.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e56a417f.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e56a7363.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e6a3f973.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e6a42ee0.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMI5540.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIA6B9.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIA794.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIA7B.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIE82C.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob1.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob2.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob3.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob4.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob5.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob6.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob7.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob8.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob9.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_0juKvG4odDsN4E6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_dkt0h8s0AMTtMJi scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_fmboslaNGkoq9Se scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_NRBExK9kDLMhCVw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_xi4TacAjfyUdIRa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_xo12vwJRBeqJEkL scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_1ffZwoXEPW1Pwqa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_7MSeEtZ6a6unNOM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_8dd9BpY3ThceVTk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_9gbsrh3gEl5Lhzj scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_AAdwwguPDWlvbry scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_aXayxebAk7dURdd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_buN6RFgL52PmNo4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_BXkNMhqpXPFlNgf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_FsWwKvI4sEN0Jff scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_FZU50xckcRe37Ms scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_hHsHcKC4PKqClGb scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_HueO160o6RXFdbI scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_KtjoV2Pd5jxzeRJ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_MMVhX45h5KC6rQp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_mOzIpwm2kFet25Q scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_nMcn0lcKN9OZm9d scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_QNdafDXUgIdJRUf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_RLl3hvCJpit8Ag9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_rZ381Q1ehQf7Men scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_s1ALmMNUqoxtI0r scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_UcpMzM6uFCW2wNu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_wrihNeyQH1LOdgh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_x18e8E9srKUYLqx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_XQ7uJqguBlMm4aP scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_0A5UHilDen4Aph9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_10AY26jrCEdiMnS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_1P8nQEMozacjZEE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_1r9Tpedh9dD5Dh1 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_1Y4LEYh2VIXBbqh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2aYLpHdjuo1rbnG scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2AZhuwr4qRGL7sx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2DAgISIA8Gg5m9b scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2dedJLv4dYNMfer scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2IQ95IKgXiaSlR6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2K0qgytRW9VWbON scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_36gZ4YnRcbMgcwZ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_3cXVvVnTjobdlTX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_3kKAdE8S3pd2kS8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_42D2wVpcOjyQ0zW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4kTaRks4jjLGjid scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4MhxfKtxebaw2yV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4PQ2OuhuvXMRmJ6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4qQWWFKgrqXaPy2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4w8Jhx2VsNPJyKN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_51SR9xhhQ2gg8jc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5AJ4Kf6ynDehSfk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5d6fGFllBFcQkqa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5EHfLiO1csHeuL3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5PS85GgekIxKZgc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6b6iZWJb548PgfN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6fKoFEivoxODLFp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6kcxoOz7lKCEJk8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6xOsZuavV9ElnhQ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_7SrSHAgyq55nLa4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_7VuGuCbkQvXHISg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_8BebcxWOXpfJKv9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_8WWrH3EaBz339IX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_9aZASjopJUal332 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_9H1hmORhce5f3CM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_9xke1tEBGaCoSPS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aaba59c9UiwB7PM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aahvp5obAAldN8t scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aaIrQNV5hyLZOKX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ABob4Q4yNS8Tfd3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_af7IJEkZYz9nKxs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_AFFdV1xSNfGMNBT scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_AoRPyvDRBATGfxA scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aQrSFHTC7BRnmC5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_AZTgi0FFkriHZ9C scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_b1M2XothxH9kyJS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_b3BzMvgeiB3hdDu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_B67cuTDR9YXxNBu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_b7KccCnxO61BK51 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_B8hKdYaCiKYgTDi scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BazGNpJvyXZX8hR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_bbz1bjx59tkNVdN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_bcbKW2ir2yLlWe2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BcmefAP1qEAaHO4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BKZQzE5JVdmFunO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BMwHB3QXjiOP5f0 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BnY6IaYsv7CDiJe scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_bYeEcpwzvaeKMNN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Byoikq2ltSLL8C9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_c6cgpDRFZIf1FQ4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CALIC5LiGsThoOt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cdiMWRYobYDMP9H scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cdLX5bvulMcbyY5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CFIMiFgpb1l7Qgs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CGmI7dVhN9WAOHp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cgqMq9XvVAR0uB9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CHMMYAvLw9sBTE5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ciOG196iPzmYhLS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cJsnQAQZXKyKX6F scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CpIz9OmJqCZ52i8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ctQT3DjpYpbt3ie scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CvIl54qTaAAjg4r scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cyLnNfHZyVzGvjP scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_D2JS8jyT0zBq5an scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_D8gjcRf3dxW9eCv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Db3oHArHUAxaTcM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ddmsTr0hYRxRJxM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_dfgxZhl9ZgPsNsf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DKCyWiw1b0sMu85 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DMBhqtTH1WDPkxu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_dnY6S5gggvZs4fa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DR0KlgEnTQSOP7x scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DReUVuBrGPDXiqQ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_duO64eKZ0fIGDa1 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_dVYFpwLwMgCXQjf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_E36sZrnRMXYBjDZ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_E52XZPTPUF41U6v scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_eAjP8MnxLt9aPeC scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_EALxkvY9Yu21Y0m scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_EdnRxmThzpeY68C scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_F3gFa0hi9TNvpvH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_f8FzXJHIpFEQuwA scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_FAmlx0eSRJo2d51 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fAypXcLubU0rFtm scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fbZ6drdUZgoj1ui scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fEskRVmUJdctDya scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fjqboujpWHqLN4b scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_gaOSgKVwHvwEfzS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GbWxC1lTfaeDq8o scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_gfxS8m0ISiUdrIw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GpFsGzl6Thb52sI scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GTd46k4FOgHVuFJ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_gxIAKfmjSzutScW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GyBSHIUjWtLn9iL scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_H7dlWD12QVNjPLb scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_h9zjHsOveyIuUS2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Hd7MIhmzpfBBOTr scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hePovOUk4D4Tnhq scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_heUFMu6Gdk7uiVw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_HfSBt0LPLjINdHg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hGnpxvdNP2FvRNo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hh8VloxpXxLP65q scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hs6MprUkqxiY54n scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hvVFtR7HTBcTE1P scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_HZlHKi8IKu6VS8w scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_HZVxZGVAZeXbR7N scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_i7NRHZqnnKQRnqM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_iFDHK1QXggmCrLe scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_igVFPGIbnaN3d9G scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ihX0r5bzf2Xu6xY scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ijNTnUtVuHX9dwd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_IK3iScmacPeLPog scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ileRZUB4wjFpyxz scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ira0CzUnQ0CEZUp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_j0x4LA0riF6DLxd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_jKFOI1bNy69XhIY scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_jtcrleYuDzCAyDf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_JtNUBFPBHFyBOFP scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_JVJYeGjRsLxst3I scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_jXdZDVdBHve6xam scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_k12MFlNn5kO1ql4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_K5ilo00luHuJSEd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kdwu6qx8uZn9Vn5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_khp8d0ufPBVHlpk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kjb1rnj4gmHnZjT scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kleLynqxh865LJb scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KlxgbYtqE4SrGdk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KpkcMnHC5AdIFIR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KqtznWd82ib5XSN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kTCb3lSesR3wD7e scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KZg5zehfb7l4VeO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_l34bkxaafah9EB2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LFq87ZFRxh3Sgqx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ls9xNVXQr5KClXO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LssfuHhARBCYaSv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LwaxVfmq9XmKRnV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_lWD25CaxLmRASbG scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LWzf3OhbOtWWzE5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_lyYc7Bj8Tc0USmX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_lZfjLnO22umP2VH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_m1jUyF0lDoUUHyv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_m1KEwn8ytupqVn3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_MgMJjWmgssFoOw5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_mKaT4sXn5k9TKQE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_mky77DLeVaGZ6tv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_mOvoSx7C0zgFadc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_MsKz29hWKE6E64l scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_MxoygFhTn5ovUOu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Nb34yPKDvXoY1zm scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_nDconRXx4yBStSB scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_NeN7gpbOQ9pKUQR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_NFLxcdUXQbGQOkW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_nR2Tgqquy2sL59e scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_nRTBTxQftUaGJyp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_NulMej6JXsYqHmR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_oFyW4DOqrb6xR2s scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_okUyHDJMQr4NTzX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_oP0hfV6f8LNspPM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_OthjQAZvt5ZDI4e scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_P3V3wVZRh1bWwWc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_pg7z1iWeuRq9PH2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_PhkbB3JZO2tfuRc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_piEKdzb8Q8PCcI5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_PxAEbj5LA8MYBvS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Qbh6AEXsxxH2B0o scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Qh4vPBVAFbKemM3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_qNZmHhBh1sIH8Zw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_qpxNBuvchJC2kgg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_qsH1Pc48BDyXuaV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Qu8UUBX4HDEq45K scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_R0fb82pO3o4UP5k scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rBZKQX3uTidtDow scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rEbmANqL8C9eEXN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rgHFybxxRLn8Oza scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_riktqsa4fWCMlXt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rjGXT3NNjQqjr0A scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rvGydG5J6ew2mnh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_RxvJaEc2Xnw2qAt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_s8eLr4mF6AYGMd8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sAn27o5tOOGzLa6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_SctKEAQ8Z1fX28X scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sJ9UkUF57uSZN7c scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sl0vqh4M8SRqdYo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_SLjdie6trSPrHCI scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sMbfEHj8LgWjx4f scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sn8ck5KZgSabDft scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_srHTdj49f8XqbAo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_SxG9iC0QkifaTRu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Sy1wbUGK6rCVW5H scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_t5VNRrrc1EpOVUx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_TByAZA1gGuawrel scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_TFcmjb66VXKWZbs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_tFRlc1pvcoUsSQs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_tiDYTA4IUXQDHwW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_tTELN9K1LlBYase scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_U1Tw7pW2ra1KSge scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_udF9PSBRuz0tAUf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uEnWOKEzPoF8S3C scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uExYnNhjCGfOjCW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uPzc6jXBTqV6Cvi scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uq2xZsnacUClJjl scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Utgcx6IjmUpIIuN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_UUJInWKemmWORsE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uZiDWtNMwg3tUpO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_V0CTb5tPHUgM4Pw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_V2jGDf9fYsfoYIU scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_V6uiigc5Ftgh251 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_vKD2UVIMPfhki30 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_vKJQcue1aYKQ1uO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_vPEnUBHslu7ywnw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_W4HKPAn3Hr3fChu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_wA2CfDOl3PNayn9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_wAs3WlVKHji4hjE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_WDOgltvy70xkaKU scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_WewisD2gvvuhn0j scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_WjGB5eod2hy2Ppf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_wmeG4nrZz4zMOar scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_X8sP3uosRxObcbh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xbBetq9mgDgnkQW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XBvJDQdO9fp6cgq scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xEOh4ZCQPIp4CzY scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xHTpLO2r9ZgB0dt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XIpY0fSs1baVvLd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XKHDkSyfuBlpEaM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xLKLSMYyXcrnJxZ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Xp5XSjoY6rUL8Jo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XP6POXzx1bFReZV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xpg9ZkUKxYFHSXW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_y3l3ba6MLgbWGyW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Y8qREy0CRZEu1oy scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YAAEXbmGXVufhil scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YC2dE2C4dIFTTnc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YgIrNpraOqIiTIS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_yJ2F2FlcIeA8GOj scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ykLzvFKkHQwxcDH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YnKCku6gExroI8p scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YRPjdKNwxWg4eEp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YuJ1O7T2K1nCRv6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_yyRFYoeGpknncjq scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YZEbDWtjoLMmgcg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_yzstwGSh1ITha2a scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Z2PxBGRkDCnQc1o scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZiVSPHVQD9u5p6B scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zJgoGpW16kBi6ue scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZJLXPpZd6aNyhno scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zN61HJOGPoIY8du scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zn7FE9PtjpLnnVH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zowHpbhySAdsu94 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZqjFb74KgjfpgsN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zSB8Se8bSgE8IW0 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZsmoeeRGaQ7rRjc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZZLP1pkdptyQvdg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\tmpBFF4.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER119D.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER12C4.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER12D5.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER170A.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER1758.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER2BD0.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER2C0F.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER2E23.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER74A2.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER7510.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER7C42.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER9E60.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER9E71.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WERA535.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WERFC8.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WFV2DD.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WinSAT_DX.etl scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WinSAT_KernelLog.etl scheduled to be deleted on reboot.
Windows Temp folder emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.7.2 log created on 12272008_151849
i
========== FILES ==========
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent moved successfully.
C:\Users\AFIZID~1\AppData\Roaming\Azureus\torrents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent moved successfully.
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk moved successfully.
C:\Users\AFIZID~1\AppData\Roaming\Microsoft\Windows\Recent\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.lnk moved successfully.
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009(1).torrent moved successfully.
C:\Users\AFIZID~1\Documents\[isoHunt] Pro Evolution Soccer 2009 FIXED Crack PC PES 2009.torrent moved successfully.
Folder move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009 scheduled to be moved on reboot.
File move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html scheduled to be moved on reboot.
File move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt scheduled to be moved on reboot.
File move failed. C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar scheduled to be moved on reboot.
========== COMMANDS ==========
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\Low\~DFFA88.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\hsperfdata_Afizidine\4212 scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\e4j34B6.tmp_dir4766\exe4jlib.jar scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\swt-gdip-win32-3448.dll scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\swt-win32-3448.dll scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\~DF3234.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\~DF35B9.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\AFIZID~1\AppData\Local\Temp\~DF51AE.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\Windows\temp\cch~85ddd211.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~85de022a.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~d8c6c2c8.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~d8c7056b.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dc705542.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dc70b2ed.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dcd57905.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~dcd5b418.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~de85bfea.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~de8602df.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e56a417f.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e56a7363.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e6a3f973.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\cch~e6a42ee0.htp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMI5540.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIA6B9.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIA794.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIA7B.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\DMIE82C.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob1.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob2.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob3.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob4.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob5.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob6.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob7.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob8.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\ehprivjob9.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_0juKvG4odDsN4E6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_dkt0h8s0AMTtMJi scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_fmboslaNGkoq9Se scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_NRBExK9kDLMhCVw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_xi4TacAjfyUdIRa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcafee_xo12vwJRBeqJEkL scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_1ffZwoXEPW1Pwqa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_7MSeEtZ6a6unNOM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_8dd9BpY3ThceVTk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_9gbsrh3gEl5Lhzj scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_AAdwwguPDWlvbry scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_aXayxebAk7dURdd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_buN6RFgL52PmNo4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_BXkNMhqpXPFlNgf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_FsWwKvI4sEN0Jff scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_FZU50xckcRe37Ms scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_hHsHcKC4PKqClGb scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_HueO160o6RXFdbI scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_KtjoV2Pd5jxzeRJ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_MMVhX45h5KC6rQp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_mOzIpwm2kFet25Q scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_nMcn0lcKN9OZm9d scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_QNdafDXUgIdJRUf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_RLl3hvCJpit8Ag9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_rZ381Q1ehQf7Men scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_s1ALmMNUqoxtI0r scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_UcpMzM6uFCW2wNu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_wrihNeyQH1LOdgh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_x18e8E9srKUYLqx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\mcmsc_XQ7uJqguBlMm4aP scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_0A5UHilDen4Aph9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_10AY26jrCEdiMnS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_1P8nQEMozacjZEE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_1r9Tpedh9dD5Dh1 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_1Y4LEYh2VIXBbqh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2aYLpHdjuo1rbnG scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2AZhuwr4qRGL7sx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2DAgISIA8Gg5m9b scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2dedJLv4dYNMfer scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2IQ95IKgXiaSlR6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_2K0qgytRW9VWbON scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_36gZ4YnRcbMgcwZ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_3cXVvVnTjobdlTX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_3kKAdE8S3pd2kS8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_42D2wVpcOjyQ0zW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4kTaRks4jjLGjid scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4MhxfKtxebaw2yV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4PQ2OuhuvXMRmJ6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4qQWWFKgrqXaPy2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_4w8Jhx2VsNPJyKN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_51SR9xhhQ2gg8jc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5AJ4Kf6ynDehSfk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5d6fGFllBFcQkqa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5EHfLiO1csHeuL3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_5PS85GgekIxKZgc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6b6iZWJb548PgfN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6fKoFEivoxODLFp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6kcxoOz7lKCEJk8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_6xOsZuavV9ElnhQ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_7SrSHAgyq55nLa4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_7VuGuCbkQvXHISg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_8BebcxWOXpfJKv9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_8WWrH3EaBz339IX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_9aZASjopJUal332 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_9H1hmORhce5f3CM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_9xke1tEBGaCoSPS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aaba59c9UiwB7PM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aahvp5obAAldN8t scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aaIrQNV5hyLZOKX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ABob4Q4yNS8Tfd3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_af7IJEkZYz9nKxs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_AFFdV1xSNfGMNBT scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_AoRPyvDRBATGfxA scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_aQrSFHTC7BRnmC5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_AZTgi0FFkriHZ9C scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_b1M2XothxH9kyJS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_b3BzMvgeiB3hdDu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_B67cuTDR9YXxNBu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_b7KccCnxO61BK51 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_B8hKdYaCiKYgTDi scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BazGNpJvyXZX8hR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_bbz1bjx59tkNVdN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_bcbKW2ir2yLlWe2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BcmefAP1qEAaHO4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BKZQzE5JVdmFunO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BMwHB3QXjiOP5f0 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_BnY6IaYsv7CDiJe scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_bYeEcpwzvaeKMNN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Byoikq2ltSLL8C9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_c6cgpDRFZIf1FQ4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CALIC5LiGsThoOt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cdiMWRYobYDMP9H scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cdLX5bvulMcbyY5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CFIMiFgpb1l7Qgs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CGmI7dVhN9WAOHp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cgqMq9XvVAR0uB9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CHMMYAvLw9sBTE5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ciOG196iPzmYhLS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cJsnQAQZXKyKX6F scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CpIz9OmJqCZ52i8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ctQT3DjpYpbt3ie scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_CvIl54qTaAAjg4r scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_cyLnNfHZyVzGvjP scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_D2JS8jyT0zBq5an scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_D8gjcRf3dxW9eCv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Db3oHArHUAxaTcM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ddmsTr0hYRxRJxM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_dfgxZhl9ZgPsNsf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DKCyWiw1b0sMu85 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DMBhqtTH1WDPkxu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_dnY6S5gggvZs4fa scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DR0KlgEnTQSOP7x scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_DReUVuBrGPDXiqQ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_duO64eKZ0fIGDa1 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_dVYFpwLwMgCXQjf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_E36sZrnRMXYBjDZ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_E52XZPTPUF41U6v scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_eAjP8MnxLt9aPeC scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_EALxkvY9Yu21Y0m scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_EdnRxmThzpeY68C scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_F3gFa0hi9TNvpvH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_f8FzXJHIpFEQuwA scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_FAmlx0eSRJo2d51 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fAypXcLubU0rFtm scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fbZ6drdUZgoj1ui scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fEskRVmUJdctDya scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_fjqboujpWHqLN4b scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_gaOSgKVwHvwEfzS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GbWxC1lTfaeDq8o scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_gfxS8m0ISiUdrIw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GpFsGzl6Thb52sI scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GTd46k4FOgHVuFJ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_gxIAKfmjSzutScW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_GyBSHIUjWtLn9iL scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_H7dlWD12QVNjPLb scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_h9zjHsOveyIuUS2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Hd7MIhmzpfBBOTr scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hePovOUk4D4Tnhq scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_heUFMu6Gdk7uiVw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_HfSBt0LPLjINdHg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hGnpxvdNP2FvRNo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hh8VloxpXxLP65q scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hs6MprUkqxiY54n scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_hvVFtR7HTBcTE1P scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_HZlHKi8IKu6VS8w scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_HZVxZGVAZeXbR7N scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_i7NRHZqnnKQRnqM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_iFDHK1QXggmCrLe scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_igVFPGIbnaN3d9G scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ihX0r5bzf2Xu6xY scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ijNTnUtVuHX9dwd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_IK3iScmacPeLPog scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ileRZUB4wjFpyxz scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ira0CzUnQ0CEZUp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_j0x4LA0riF6DLxd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_jKFOI1bNy69XhIY scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_jtcrleYuDzCAyDf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_JtNUBFPBHFyBOFP scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_JVJYeGjRsLxst3I scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_jXdZDVdBHve6xam scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_k12MFlNn5kO1ql4 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_K5ilo00luHuJSEd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kdwu6qx8uZn9Vn5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_khp8d0ufPBVHlpk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kjb1rnj4gmHnZjT scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kleLynqxh865LJb scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KlxgbYtqE4SrGdk scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KpkcMnHC5AdIFIR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KqtznWd82ib5XSN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_kTCb3lSesR3wD7e scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_KZg5zehfb7l4VeO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_l34bkxaafah9EB2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LFq87ZFRxh3Sgqx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ls9xNVXQr5KClXO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LssfuHhARBCYaSv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LwaxVfmq9XmKRnV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_lWD25CaxLmRASbG scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_LWzf3OhbOtWWzE5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_lyYc7Bj8Tc0USmX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_lZfjLnO22umP2VH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_m1jUyF0lDoUUHyv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_m1KEwn8ytupqVn3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_MgMJjWmgssFoOw5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_mKaT4sXn5k9TKQE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_mky77DLeVaGZ6tv scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_mOvoSx7C0zgFadc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_MsKz29hWKE6E64l scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_MxoygFhTn5ovUOu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Nb34yPKDvXoY1zm scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_nDconRXx4yBStSB scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_NeN7gpbOQ9pKUQR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_NFLxcdUXQbGQOkW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_nR2Tgqquy2sL59e scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_nRTBTxQftUaGJyp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_NulMej6JXsYqHmR scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_oFyW4DOqrb6xR2s scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_okUyHDJMQr4NTzX scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_oP0hfV6f8LNspPM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_OthjQAZvt5ZDI4e scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_P3V3wVZRh1bWwWc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_pg7z1iWeuRq9PH2 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_PhkbB3JZO2tfuRc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_piEKdzb8Q8PCcI5 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_PxAEbj5LA8MYBvS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Qbh6AEXsxxH2B0o scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Qh4vPBVAFbKemM3 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_qNZmHhBh1sIH8Zw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_qpxNBuvchJC2kgg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_qsH1Pc48BDyXuaV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Qu8UUBX4HDEq45K scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_R0fb82pO3o4UP5k scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rBZKQX3uTidtDow scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rEbmANqL8C9eEXN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rgHFybxxRLn8Oza scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_riktqsa4fWCMlXt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rjGXT3NNjQqjr0A scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_rvGydG5J6ew2mnh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_RxvJaEc2Xnw2qAt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_s8eLr4mF6AYGMd8 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sAn27o5tOOGzLa6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_SctKEAQ8Z1fX28X scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sJ9UkUF57uSZN7c scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sl0vqh4M8SRqdYo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_SLjdie6trSPrHCI scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sMbfEHj8LgWjx4f scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_sn8ck5KZgSabDft scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_srHTdj49f8XqbAo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_SxG9iC0QkifaTRu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Sy1wbUGK6rCVW5H scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_t5VNRrrc1EpOVUx scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_TByAZA1gGuawrel scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_TFcmjb66VXKWZbs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_tFRlc1pvcoUsSQs scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_tiDYTA4IUXQDHwW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_tTELN9K1LlBYase scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_U1Tw7pW2ra1KSge scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_udF9PSBRuz0tAUf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uEnWOKEzPoF8S3C scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uExYnNhjCGfOjCW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uPzc6jXBTqV6Cvi scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uq2xZsnacUClJjl scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Utgcx6IjmUpIIuN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_UUJInWKemmWORsE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_uZiDWtNMwg3tUpO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_V0CTb5tPHUgM4Pw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_V2jGDf9fYsfoYIU scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_V6uiigc5Ftgh251 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_vKD2UVIMPfhki30 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_vKJQcue1aYKQ1uO scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_vPEnUBHslu7ywnw scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_W4HKPAn3Hr3fChu scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_wA2CfDOl3PNayn9 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_wAs3WlVKHji4hjE scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_WDOgltvy70xkaKU scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_WewisD2gvvuhn0j scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_WjGB5eod2hy2Ppf scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_wmeG4nrZz4zMOar scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_X8sP3uosRxObcbh scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xbBetq9mgDgnkQW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XBvJDQdO9fp6cgq scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xEOh4ZCQPIp4CzY scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xHTpLO2r9ZgB0dt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XIpY0fSs1baVvLd scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XKHDkSyfuBlpEaM scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xLKLSMYyXcrnJxZ scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Xp5XSjoY6rUL8Jo scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_XP6POXzx1bFReZV scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_xpg9ZkUKxYFHSXW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_y3l3ba6MLgbWGyW scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Y8qREy0CRZEu1oy scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YAAEXbmGXVufhil scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YC2dE2C4dIFTTnc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YgIrNpraOqIiTIS scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_yJ2F2FlcIeA8GOj scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ykLzvFKkHQwxcDH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YnKCku6gExroI8p scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YRPjdKNwxWg4eEp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YuJ1O7T2K1nCRv6 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_yyRFYoeGpknncjq scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_YZEbDWtjoLMmgcg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_yzstwGSh1ITha2a scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_Z2PxBGRkDCnQc1o scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZiVSPHVQD9u5p6B scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zJgoGpW16kBi6ue scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZJLXPpZd6aNyhno scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zN61HJOGPoIY8du scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zn7FE9PtjpLnnVH scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zowHpbhySAdsu94 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZqjFb74KgjfpgsN scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_zSB8Se8bSgE8IW0 scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZsmoeeRGaQ7rRjc scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\sqlite_ZZLP1pkdptyQvdg scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\tmpBFF4.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER119D.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER12C4.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER12D5.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER170A.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER1758.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER2BD0.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER2C0F.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER2E23.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER74A2.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER7510.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER7C42.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER9E60.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WER9E71.tmp.appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WERA535.tmp.hdmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WERFC8.tmp.version.txt scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WFV2DD.tmp scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WinSAT_DX.etl scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\WinSAT_KernelLog.etl scheduled to be deleted on reboot.
Windows Temp folder emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.7.2 log created on 12272008_151849
i
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
27 déc. 2008 à 19:35
27 déc. 2008 à 19:35
• Fais un clic-droit sur le raccourci Toolbar-S&D sur le Bureau et choisis "Exécuter en tant qu'administrateur"
• Tape sur "2" puis valide en appuyant sur "Entrée".
• Ne ferme pas la fenêtre lors de la suppression !
• Un rapport sera généré, poste son contenu ici.
• Tape sur "2" puis valide en appuyant sur "Entrée".
• Ne ferme pas la fenêtre lors de la suppression !
• Un rapport sera généré, poste son contenu ici.
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
27 déc. 2008 à 20:34
27 déc. 2008 à 20:34
Le voici le rapport demandé:
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : ZK2 v0.3204 3B04
USER : Afizidine ( Not Administrator ! )
BOOT : Normal boot
Antivirus : Kaspersky Anti-Virus 7.0.1.325 (Activated)
Firewall : Kaspersky Anti-Virus 7.0.1.325 (Not Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:82 Go)
D:\ (Local Disk) - NTFS - Total:140 Go (Free:140 Go)
F:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 27/12/2008|20:29 )
[ UAC => 1 ]
-----------\\ SUPPRESSION
Supprime! - [Service] ASKService
Supprime! - [Service] ASKUpgrade
Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis\unins000.dat
Supprime! - C:\Program Files\AskBarDis\unins000.exe
Supprime! - C:\Program Files\AskBarDis
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Default_Page_URL"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
"Default_Page_URL"="https://fr.yahoo.com/"
"Default_Search_URL"="http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/"
"Search Page"="http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar
[ UAC => 1 ]
1 - "C:\ToolBar SD\TB_1.txt" - 27/12/2008| 4:25 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 27/12/2008|20:30 - Option : [2]
-----------\\ Fin du rapport a 20:30:52,95
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : ZK2 v0.3204 3B04
USER : Afizidine ( Not Administrator ! )
BOOT : Normal boot
Antivirus : Kaspersky Anti-Virus 7.0.1.325 (Activated)
Firewall : Kaspersky Anti-Virus 7.0.1.325 (Not Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:82 Go)
D:\ (Local Disk) - NTFS - Total:140 Go (Free:140 Go)
F:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 27/12/2008|20:29 )
[ UAC => 1 ]
-----------\\ SUPPRESSION
Supprime! - [Service] ASKService
Supprime! - [Service] ASKUpgrade
Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis\unins000.dat
Supprime! - C:\Program Files\AskBarDis\unins000.exe
Supprime! - C:\Program Files\AskBarDis
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Default_Page_URL"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
"Default_Page_URL"="https://fr.yahoo.com/"
"Default_Search_URL"="http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/"
"Search Page"="http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.html
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\Password instructions.txt
C:\Users\AFIZID~1\Documents\Azureus Downloads\Pro Evolution Soccer 2009 FIXED Crack PC PES 2009\PES2009Fixed.rar
[ UAC => 1 ]
1 - "C:\ToolBar SD\TB_1.txt" - 27/12/2008| 4:25 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 27/12/2008|20:30 - Option : [2]
-----------\\ Fin du rapport a 20:30:52,95
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
28 déc. 2008 à 09:12
28 déc. 2008 à 09:12
Menu démarrer --> Ordinateur --> Disque C --> Utilisateurs --> AFIZID~1 --> Documents --> Azureus Downloads
==> Supprime les cracks de Pro Evolution Soccer qui restent...
Ensuite, tu peux refaire un scan avec MalwareBytes (un scan rapide, après l'avoir mis à jour)
Puis redémarre ton ordinateur, poste un nouveau rapport RSIT, et dis moi si tu as encore des problèmes.
==> Supprime les cracks de Pro Evolution Soccer qui restent...
Ensuite, tu peux refaire un scan avec MalwareBytes (un scan rapide, après l'avoir mis à jour)
Puis redémarre ton ordinateur, poste un nouveau rapport RSIT, et dis moi si tu as encore des problèmes.
Afizidine
Messages postés
16
Date d'inscription
jeudi 25 décembre 2008
Statut
Membre
Dernière intervention
18 décembre 2009
1
28 déc. 2008 à 19:06
28 déc. 2008 à 19:06
J'ai fait tout ce que tu m'a dit et voila le rapport de RSIT:
Run by Afizidine at 2008-12-28 18:13:41
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 84 GB (57%) free of 148 GB
Total RAM: 3066 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:13:52, on 28/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\Afizidine\Program Files\DNA\btdna.exe
C:\Program Files\DAP\DAP.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\RayV\RayV\RayV.exe
C:\Program Files\Acer\Acer VCM\AcerVCM.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Acer\Acer VCM\acp2HID.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe
C:\Users\Afizidine\Documents\My Completed Downloads\RSIT.exe
C:\Program Files\trend micro\Afizidine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Afizidine\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [RayV] C:\Program Files\RayV\RayV\RayV.exe /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Acer VCM.lnk = ?
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1230313754431&h=6fdb029ae357ec53bc8ffbb80334c69c/&filename=jinstall-6u11-windows-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F8B2785F-DCDA-462E-B262-1E314AFAC753}: NameServer = 80.10.246.3,80.10.246.129
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Google Desktop Manager 5.7.808.7150 (GoogleDesktopManager-080708-050100) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
Run by Afizidine at 2008-12-28 18:13:41
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 84 GB (57%) free of 148 GB
Total RAM: 3066 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:13:52, on 28/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe
C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Launch Manager\QtZgAcer.EXE
C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Users\AFIZID~1\AppData\Local\Temp\RtkBtMnt.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\Afizidine\Program Files\DNA\btdna.exe
C:\Program Files\DAP\DAP.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\RayV\RayV\RayV.exe
C:\Program Files\Acer\Acer VCM\AcerVCM.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Acer\Acer VCM\acp2HID.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe
C:\Users\Afizidine\Documents\My Completed Downloads\RSIT.exe
C:\Program Files\trend micro\Afizidine.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=1008&m=aspire_6930g
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr9/*https://fr.search.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*https://fr.search.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [BkupTray] "C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE
O4 - HKLM\..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe
O4 - HKLM\..\Run: [ZPdtWzdVitaKey MC3000] "C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe" show
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Afizidine\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [RayV] C:\Program Files\RayV\RayV\RayV.exe /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Acer VCM.lnk = ?
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?e=1230313754431&h=6fdb029ae357ec53bc8ffbb80334c69c/&filename=jinstall-6u11-windows-i586-jc.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F8B2785F-DCDA-462E-B262-1E314AFAC753}: NameServer = 80.10.246.3,80.10.246.129
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O20 - Winlogon Notify: spba - C:\Program Files\Common Files\SPBA\homefus2.dll
O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) - NewTech Infosystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
O23 - Service: Google Desktop Manager 5.7.808.7150 (GoogleDesktopManager-080708-050100) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: iGroupTec Service (IGBASVC) - Unknown owner - C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - Unknown owner - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Incorporated - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
anthony5151
Messages postés
10573
Date d'inscription
vendredi 27 juin 2008
Statut
Contributeur sécurité
Dernière intervention
2 mars 2015
790
11 janv. 2009 à 04:20
11 janv. 2009 à 04:20
De rien, heureux d'avoir pu t'aider ;)
Bonne continuation !
Bonne continuation !