Log HiJachThis
L'Inconnu24
-
L'Inconnu24 -
L'Inconnu24 -
Bonjour,
He bien voilà j'ai à nouveau un problème, Antivir ne se met plus à jour, sa mise à jour est bloquée soit disant que la connexion internet est "failed" et j'ai de nouveau des fenêtres pop up qui s'affichent malgré mon filtre firefox. Aussi parfois dans mon casque des bruits d'ouvertures de fichiers sont audibles alors que je fais rien du tout. Je viens de faire un nettoyage avec SmitFraduFix, voilà le log HJT maintenant:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:23:31, on 05/01/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\System\sessmgr.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Cyberlink\Shared Files\brs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.custom.oleane.com:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F3 - REG:win.ini: load=C:\DOCUME~1\Jean-Luc\LOCALS~1\APPLIC~1\MICROS~1\ieudinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [SiSRaid] C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [InstantBurn] C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKLM\..\Policies\Explorer\Run: [SessMgr] C:\WINDOWS\System\sessmgr.exe /waitservice
O4 - HKCU\..\Policies\Explorer\Run: [rsvp] C:\DOCUME~1\Jean-Luc\LOCALS~1\Temp\rsvp.exe /waitservice
O4 - HKUS\S-1-5-18\..\Policies\Explorer\Run: [IEudinit] C:\DOCUME~1\Jean-Luc\APPLIC~1\MICROS~1\ieudinit.exe /waitservice (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Policies\Explorer\Run: [IEudinit] C:\DOCUME~1\Jean-Luc\APPLIC~1\MICROS~1\ieudinit.exe /waitservice (User 'Default user')
O4 - S-1-5-18 Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe (User 'Default user')
O4 - Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe (file missing)
He bien voilà j'ai à nouveau un problème, Antivir ne se met plus à jour, sa mise à jour est bloquée soit disant que la connexion internet est "failed" et j'ai de nouveau des fenêtres pop up qui s'affichent malgré mon filtre firefox. Aussi parfois dans mon casque des bruits d'ouvertures de fichiers sont audibles alors que je fais rien du tout. Je viens de faire un nettoyage avec SmitFraduFix, voilà le log HJT maintenant:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:23:31, on 05/01/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\System\sessmgr.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Cyberlink\Shared Files\brs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.custom.oleane.com:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F3 - REG:win.ini: load=C:\DOCUME~1\Jean-Luc\LOCALS~1\APPLIC~1\MICROS~1\ieudinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [SiSRaid] C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [InstantBurn] C:\PROGRA~1\CYBERL~1\INSTAN~1\Win2K\IBurn.exe
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKLM\..\Policies\Explorer\Run: [SessMgr] C:\WINDOWS\System\sessmgr.exe /waitservice
O4 - HKCU\..\Policies\Explorer\Run: [rsvp] C:\DOCUME~1\Jean-Luc\LOCALS~1\Temp\rsvp.exe /waitservice
O4 - HKUS\S-1-5-18\..\Policies\Explorer\Run: [IEudinit] C:\DOCUME~1\Jean-Luc\APPLIC~1\MICROS~1\ieudinit.exe /waitservice (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Policies\Explorer\Run: [IEudinit] C:\DOCUME~1\Jean-Luc\APPLIC~1\MICROS~1\ieudinit.exe /waitservice (User 'Default user')
O4 - S-1-5-18 Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe (User 'Default user')
O4 - Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe (file missing)
A voir également:
- Log HiJachThis
- Vpn no log - Guide
- View rescue log traduction - Guide
- Log crash windows - Guide
- 0.log miui - Forum Logiciels
- Ti college plus log ✓ - Forum Bureautique
47 réponses
J'ai supprimé les fichiers temporaires emule...
Avira AntiVir Personal
Report file date: mardi 6 janvier 2009 14:00
Scanning for 1150939 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: Jean-Luc
Computer name: PC-DE-JEAN-LUC
Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.1.33 1705984 Bytes 24/12/2008 10:54:47
ANTIVIR2.VDF : 7.1.1.60 318976 Bytes 02/01/2009 14:08:45
ANTIVIR3.VDF : 7.1.1.73 125952 Bytes 05/01/2009 11:26:38
Engineversion : 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 10:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 12/12/2008 10:22:31
AESCN.DLL : 8.1.1.5 123251 Bytes 07/11/2008 15:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 13:58:38
AEPACK.DLL : 8.1.3.4 393591 Bytes 11/11/2008 09:41:39
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 12/12/2008 10:22:23
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 12/12/2008 10:22:18
AEHELP.DLL : 8.1.2.0 119159 Bytes 04/12/2008 00:18:03
AEGEN.DLL : 8.1.1.8 323956 Bytes 12/12/2008 10:22:07
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 04/12/2008 00:18:01
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37
Configuration settings for the scan:
Jobname..........................: Rootkit search
Configuration file...............: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\rootkit.avp
Logging..........................: high
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: high
Expanded search settings.........: 0x00300922
Start of the scan: mardi 6 janvier 2009 14:00
Starting search for hidden objects.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\modules
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\start
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\type
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\imagepath
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\group
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\modules
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\start
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\type
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\imagepath
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\group
[INFO] The registry entry is invisible.
'425731' objects were checked, '10' hidden objects were found.
Starting the file scan:
Begin scan in 'C:'
C:\
AUTOEXEC.BAT
BcBtRmv.log
boot.ini
Bootfont.bin
config.sys
CtDrvIns.log
CtDrvStp.log
IO.SYS
ITB.iss
ITB.log
ITBUninst.log
MSDOS.SYS
NTDETECT.COM
ntldr
pagefile.sys
[WARNING] The file could not be opened!
rapport.txt
sti.log
TCleaner.txt
C:\DELL\
dellbutn.htm
DELLSUPPORT.ICO
Thumbs.db
C:\Documents and Settings\Administrateur\
NTUSER.DAT
NTUSER.DAT.LOG
ntuser.ini
C:\Documents and Settings\Administrateur\Application Data\
desktop.ini
C:\Documents and Settings\Administrateur\Application Data\Microsoft\Internet Explorer\
brndlog.bak
brndlog.txt
C:\Documents and Settings\Administrateur\Bureau\
catchme.log
C:\Documents and Settings\Administrateur\Cookies\
index.dat
C:\Documents and Settings\Administrateur\Local Settings\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Application Data\
IconCache.db
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Media Player\
CurrentDatabase_59R.wmdb
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\
UsrClass.dat
UsrClass.dat.LOG
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows Media\9.0\
WMSDKNS.DTD
WMSDKNS.XML
C:\Documents and Settings\Administrateur\Local Settings\Historique\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\40CDG3FL\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\K1UCWCQB\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\MHZOTZLV\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\SRWKIR5I\
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\
Assistance à distance.lnk
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\
Assistant Compatibilité des programmes.lnk
Bloc-notes.lnk
desktop.ini
Explorateur Windows.lnk
Invite de commandes.lnk
Synchroniser.lnk
Visite guidée de Windows XP.lnk
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Accessibilité\
Clavier visuel.lnk
desktop.ini
Gestionnaire d'utilitaires.lnk
Loupe.lnk
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Divertissement\
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\LabelPrint\
Aide de LabelPrint.lnk
Désinstaller LabelPrint.lnk
Enregistrement en ligne.lnk
LabelPrint.lnk
LisezMoi.lnk
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\
desktop.ini
C:\Documents and Settings\Administrateur\Modèles\
amipro.sam
excel.xls
excel4.xls
lotus.wk4
powerpnt.ppt
presenta.shw
quattro.wb2
sndrec.wav
winword.doc
winword2.doc
wordpfct.wpd
wordpfct.wpg
C:\Documents and Settings\Administrateur\SendTo\
Bureau (créer un raccourci).DeskLink
desktop.ini
Destinataire.MAPIMail
Dossier compressé.ZFSendToTarget
C:\Documents and Settings\All Users\Application Data\
.zreglib
desktop.ini
vlc-0.9.4-win32.exe
vlc-0.9.6-win32.exe
C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat\9.0\Replicate\Security\
directories.acrodata
C:\Documents and Settings\All Users\Application Data\Adobe\Updater\
AdobeESDGlobalApps.xml
C:\Documents and Settings\All Users\Application Data\Adobe\Updater\Certs\
audition.cer
C:\Documents and Settings\All Users\Application Data\Adobe\Updater6\
AdobeESDGlobalApps.xml
C:\Documents and Settings\All Users\Application Data\Adobe Systems\Product licenses\
B302D000.dat
C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Apple Software Update 2.1.1.116\
AppleSoftwareUpdate.msi
C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\QuickTime 7.55.90.70\
QuickTime.msi
C:\Documents and Settings\All Users\Application Data\avg8\Cfg\
emssrv.cfg
krnl.cfg
mail.cfg
scan.cfg
sched.cfg
update.cfg
user.cfg
C:\Documents and Settings\All Users\Application Data\avg8\dumps\
avgscanx.exe_128698366883750000.dmp
avgscanx.exe_128698373165625000.dmp
avgscanx.exe_128698375280312500.dmp
avgscanx.exe_128698377994375000.dmp
avgscanx.exe_128698934834531250.dmp
avgscanx.exe_128702437094843750.dmp
avgscanx.exe_128703302850937500.dmp
C:\Documents and Settings\All Users\Application Data\avg8\emc\Log\
emc.log
C:\Documents and Settings\All Users\Application Data\avg8\Log\
avgcfg.log.lock
avgcore.log
avgcore.log.1
avgcore.log.10
avgcore.log.2
avgcore.log.3
avgcore.log.4
avgcore.log.5
avgcore.log.6
avgcore.log.7
avgcore.log.8
avgcore.log.9
avgcore.log.lock
avglng.log
avglng.log.1
avglng.log.2
avglng.log.3
avglng.log.lock
avgrs.log
avgrs.log.1
avgrs.log.10
avgrs.log.2
avgrs.log.3
avgrs.log.4
avgrs.log.5
avgrs.log.6
avgrs.log.7
avgrs.log.8
avgrs.log.9
avgrs.log.lock
avgscan.log
avgscan.log.1
avgscan.log.2
avgscan.log.3
avgscan.log.lock
avgsched.log.1
avgsched.log.10
avgsched.log.2
avgsched.log.3
avgsched.log.4
avgsched.log.5
avgsched.log.6
avgsched.log.7
avgsched.log.8
avgsched.log.9
avgsched.log.lock
avgsrm.log
avgsrm.log.lock
avgui.log
avgui.log.lock
avgupd.log
avgupd.log.lock
avgwd.log.1
avgwd.log.2
avgwd.log.3
avgwd.log.4
avgwd.log.lock
avgwdsvc.log
avgwdsvc.log.lock
avildr.log
history.xml
C:\Documents and Settings\All Users\Application Data\avg8\scanlogs\
I_00000001.log
I_00000005.log
I_00000006.log
I_00000007.log
I_00000008.log
I_00000009.log
I_00000010.log
I_00000011.log
I_00000012.log
I_00000013.log
I_00000014.log
I_00000015.log
I_00000016.log
I_00000017.log
I_00000018.log
I_00000019.log
I_00000020.log
I_00000021.log
I_00000022.log
I_00000023.log
I_00000024.log
I_00000025.log
I_00000026.log
I_00000027.log
I_00000028.log
I_00000029.log
I_00000030.log
I_00000031.log
I_00000032.log
I_00000033.log
I_00000034.log
I_00000035.log
I_00000036.log
I_00000037.log
I_00000038.log
I_00000039.log
I_00000040.log
I_00000041.log
srm.idx
C:\Documents and Settings\All Users\Application Data\avg8\update\backup\
avg8us.lng
avgf8us.chm
[0] Archive type: CHM
--> /#SYSTEM
--> /introduction.htm
--> /avg_professional.htm
--> /support__contact.htm
--> /the_application.htm
--> /main_screen.htm
--> /main_menu.htm
--> /security_status.htm
--> /components.htm
--> /anti_virus.htm
--> /what_is_a_virus.htm
--> /anti_spyware.htm
--> /what_is_spyware.htm
--> /pup_exceptions.htm
--> /exception_definition.htm
--> /e_mail_scanner.htm
--> /settings_in_the_main_screen2.htm
--> /e_mail_scanner_detection.htm
--> /e_mail_scanner2.htm
--> /certification.htm
--> /mail_filtering.htm
--> /logs_and_results.htm
--> /servers.htm
--> /pop3.htm
--> /smtp.htm
--> /license2.htm
--> /settings_in_the_main_screen.htm
--> /link_scanner.htm
--> /safe_search.htm
--> /link_scanner2.htm
--> /what_are_exploits.htm
--> /resident_shield.htm
--> /settings_in_the_main_screen3.htm
--> /resident_shield_detection.htm
--> /resident_shield2.htm
--> /advanced_settings2.htm
--> /exceptions.htm
--> /exceptions_list.htm
--> /update_manager.htm
--> /settings_in_the_main_screen5.htm
--> /available_tests.htm
--> /complete_test.htm
--> /user_defined_test.htm
--> /selected_files_scan.htm
--> /command_line_scan.htm
--> /command_line_scan_parameters.htm
--> /complete_test2.htm
--> /scan_reports.htm
--> /additional_scan_settings.htm
--> /scanning_results.htm
--> /schedule_a_test.htm
--> /schedule_settings.htm
--> /how_to_scan.htm
--> /what_to_scan.htm
--> /update2.htm
--> /scheduled_updates.htm
--> /scheduled_update_settings.htm
--> /update_levels.htm
--> /manual_update.htm
--> /update.htm
--> /proxy2.htm
--> /dial_up.htm
--> /url.htm
--> /virus_vault.htm
--> /virus_vault2.htm
--> /expert_settings.htm
--> /event_history.htm
--> /appearance.htm
--> /ignore_faulty_conditions.htm
--> /new_schedule.htm
--> /rs_detection.htm
--> /multiple_rs_detection.htm
--> /first_run_wizard.htm
--> /frw_scans.htm
--> /frw_report.htm
--> /cmdline_scan_composer.htm
--> /tablebg.gif
--> /table_leftup.gif
--> /table_rightup.gif
--> /icon_warning.gif
--> /table_leftdown.gif
--> /table_rightdown.gif
--> /header-end.png
--> /header.png
--> /icon_tip.gif
--> /hmtoggle_plus0.gif
--> /icon_seealso.gif
--> /print.css
--> /avg8us_popup_text.js
--> /avgf8us.hhc
--> /avgf8us.hhk
--> /big_status_ok.gif
--> /systray1.gif
--> /big_status_warn.gif
--> /systray2.gif
--> /big_status_err.gif
--> /hmtoggle_plus1.gif
--> /systray3.gif
--> /systray4.gif
--> /ls_ok.gif
--> /ls_danger.gif
--> /event_info.gif
--> /event_scan.gif
--> /event_update.gif
--> /helpman_topicinit.js
--> /default.css
--> /#WINDOWS
--> /#IVB
--> /$WWKeywordLinks/BTree
--> /$WWKeywordLinks/Data
--> /$WWKeywordLinks/Map
--> /$WWKeywordLinks/Property
--> /$WWAssociativeLinks/BTree
--> /$WWAssociativeLinks/Data
--> /$WWAssociativeLinks/Map
--> /$WWAssociativeLinks/Property
--> /$OBJINST
--> /$FIftiMain
--> /#IDXHDR
--> /#TOPICS
--> /#URLTBL
--> /#URLSTR
--> /#STRINGS
avgui.exe
incavi.avm
microavi.avg
miniavi.avg
sb.dat
sb2.dat
sc.dat
setup.exe
setupus.lns
C:\Documents and Settings\All Users\Application Data\avg8\update\prepare\
sb.dat.prepare
sc.dat.prepare
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\
addr_file.html
AVWIN.INI
update.conf
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\EVENTDB\
avevtdb.dbe
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\IDX\
classic-nt-en.info
master.idx
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\INFECTED\
499282d6.qua
49929c44.qua
49d1c3d3.qua
49d1d0ea.qua
49d1ec8e.qua
4c002deb.qua
4dc729b7.qua
4dd7f714.qua
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\JOBS\
produpd.avj
scanjob.avj
startupd.avj
updjob.avj
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\LOGFILES\
avguard.log
AVSCAN-20081207-153548-E792E86A.LOG
AVSCAN-20081217-120341-571998EA.LOG
AVSCAN-20081221-200425-2FA20E8C.LOG
AVSCAN-20090104-144623-56B3668A.LOG
AVSCAN-20090104-155957-04746173.LOG
AVSCAN-20090104-170600-5203FF30.LOG
AVSCAN-20090106-140049-2F6FDC6D.LOG
sched.log
setup.log
Upd-2008-12-08-11-20-19.log
Upd-2008-12-09-11-20-24.log
Upd-2008-12-10-11-20-26.log
Upd-2008-12-11-11-20-34.log
Upd-2008-12-12-11-20-37.log
Upd-2008-12-13-11-20-38.log
Upd-2008-12-15-11-54-12.log
Upd-2008-12-16-11-54-10.log
Upd-2008-12-17-11-54-26.log
Upd-2008-12-18-11-54-32.log
Upd-2008-12-19-11-54-20.log
Upd-2008-12-20-11-54-25.log
Upd-2008-12-22-11-54-49.log
Upd-2008-12-23-01-50-50.log
Upd-2008-12-23-11-54-39.log
Upd-2008-12-24-11-54-18.log
Upd-2008-12-25-11-54-18.log
Upd-2008-12-26-11-54-18.log
Upd-2008-12-27-11-54-19.log
Upd-2008-12-28-11-54-20.log
Upd-2008-12-29-12-24-55.log
Upd-2008-12-30-12-25-00.log
Upd-2008-12-31-12-24-59.log
Upd-2009-01-02-12-24-48.log
Upd-2009-01-03-12-24-49.log
Upd-2009-01-04-02-26-25.log
Upd-2009-01-04-11-40-55.log
Upd-2009-01-04-12-24-49.log
Upd-2009-01-04-12-26-55.log
Upd-2009-01-04-14-46-09.log
Upd-2009-01-04-15-57-11.log
Upd-2009-01-04-16-49-27.log
Upd-2009-01-04-18-43-42.log
Upd-2009-01-05-12-24-50.log
Upd-2009-01-05-15-08-20.log
Upd-2009-01-06-12-24-56.log
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\
folder.avp
rootkit.avp
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\REPORTS\
00bc61ce.avl
0195677d.avl
050a900e.avl
1c0880b4.avl
28e7e380.avl
2a16665d.avl
34b148ed.avl
350cc786.avl
3cd62b22.avl
3e850aec.avl
4153a612.avl
45724ade.avl
4b3a9067.avl
5cc1da04.avl
6b57b2b0.avl
707d8b39.avl
731d1268.avl
7323b4a0.avl
732d97d0.avl
7a22e730.avl
8071d77b.avl
86ca752c.avl
8da47954.avl
915976ca.avl
91d60917.avl
979cbc5d.avl
99058319.avl
9bce4856.avl
a823e1b4.avl
aae39ba9.avl
b658a2eb.avl
b89a78e7.avl
c1d3d75c.avl
c9100459.avl
cd57d7d5.avl
d5abe651.avl
d68c262c.avl
d8cd8aa2.avl
d92641bb.avl
e2ba1879.avl
e8977ebd.avl
C:\Documents and Settings\All Users\Application Data\CyberLink\BDNAV\
BRF.dat
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\InstantBurn\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\LabelPrint\2.10\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\LabelPrint\2.20\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\Power2Go\5.50\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerBackup\2.50\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerDVD\7.03\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerProducer\4.00\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerStarter\5.00\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{397A21FB-EADF-4116-9027-32B8FA04C3E2}\Version\5.50\
olreg.ini
C:\Documents and Settings\All Users\Application Data\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{748DB920-B5DD-4cdb-9EC4-5A3B61A21936}\Version\5.00\
olreg.ini
C:\Documents and Settings\All Users\Application Data\CyberLink\Power2Go\
MP3Cache.log
C:\Documents and Settings\All Users\Application Data\Downloaded Installations\{49C0DA05-1C69-45CA-9951-74B075932855}\
VirginMega.Fr Premium.msi
C:\Documents and Settings\All Users\Application Data\EmailNotifier\
EmailNotifier.exe
EmailNotifierAPI.dll
EmailNotifierEN.lng
EmailNotifierFR.lng
C:\Documents and Settings\All Users\Application Data\LightScribe\log\
logLabelPrint.exe_2000.xml
logLabelPrint.exe_3604.xml
C:\Documents and Settings\All Users\Application Data\ma-config.com\
mcbase.db
C:\Documents and Settings\All Users\Application Data\ma-config.com\Logs\
crashmcservice.dmp
maconfservice.txt
npapi.txt
C:\Documents and Settings\All Users\Application Data\ma-config.com\Temp\
mc_38.tmp
C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\
ignore.dat
mbam-setup.exe
news.txt
rules.ref
C:\Documents and Settings\All Users\Application Data\Megaupload\
Megauper.exe
C:\Documents and Settings\All Users\Application Data\Messenger Plus!\Custom Sounds\
#34EC4E882062.dat
#78E0BD2CAC8C.dat
#8F3012E266FA.dat
#9F201550501A.dat
#A7F0392D5342.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\
0001c19d097bfd5cd435603279a326ae_17e44b17-0960-4a23-8d03-bdf6be44512a
20e4cc13462053dd5c33eb178de2557a_17e44b17-0960-4a23-8d03-bdf6be44512a
3b0f24c4b9f1f7aa3825c8148c788eda_17e44b17-0960-4a23-8d03-bdf6be44512a
797023a8ba74d039284e0bfb27e61d14_17e44b17-0960-4a23-8d03-bdf6be44512a
cf6dc39a67cf674d0f352887b4ed689a_17e44b17-0960-4a23-8d03-bdf6be44512a
fc6c99c17e62775c6ddc4e19a09ca150_17e44b17-0960-4a23-8d03-bdf6be44512a
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\
6d14e4b1d8ca773bab785d1be032546e_17e44b17-0960-4a23-8d03-bdf6be44512a
d42cc0c3858a58db2db37658219e6400_17e44b17-0960-4a23-8d03-bdf6be44512a
C:\Documents and Settings\All Users\Application Data\Microsoft\HTML Help\
hhcolreg.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\
ppcrlconfig.dll
C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\
DefaultStore_59R.bin
UserMigratedStore_59R.bin
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\
rasphone.pbk
sharedaccess.ini
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\
qmgr0.dat
qmgr1.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\
DocumentRepository.ico
MySharePoints.ico
MySite.ico
SharePointPortalSite.ico
SharePointTeamSite.ico
C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA\
OPA12.BAK
opa12.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\
Administrateur.bmp
guest.bmp
Jean-Luc.bmp
C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\Default Pictures\
airplane.bmp
astronaut.bmp
ball.bmp
beach.bmp
butterfly.bmp
car.bmp
cat.bmp
chess.bmp
dirt bike.bmp
dog.bmp
drip.bmp
duck.bmp
fish.bmp
frog.bmp
guitar.bmp
horses.bmp
kick.bmp
lift-off.bmp
palm tree.bmp
pink flower.bmp
red flower.bmp
skater.bmp
snowflake.bmp
C:\Documents and Settings\All Users\Application Data\Microsoft\WLSetup\
wlt264.tmp
[0] Archive type: CAB (Microsoft)
--> catalog.xml
C:\Documents and Settings\All Users\Application Data\Microsoft\WLSetup\Logs\
2008-11-03_16-16_4d0-mmki8h8t.log
2008-11-03_17-16_9d0-3t7vba5a.log
2008-12-16_16-57_504-y6r84b9s.log
2008-12-17_00-24_c94-c6kjfsb9.log
2008-12-17_00-36_71c-bau7h8wm.log
2008-12-22_17-41_164-tn6iel0b.log
2008-12-23_17-54_c0-v5mcvnii.log
2008-12-23_17-59_b34-f796lswj.log
C:\Documents and Settings\All Users\Application Data\Microsoft Help\
Hx.hxn
Hx_1036_MKWD_K.HxW
Hx_1036_MKWD_NamedURL.HxW
Hx_1036_MTOC_Hx.HxH
Hx_1036_MValidator.HxD
Hx_1036_MValidator.Lck
MS.EXCEL.12.1036.hxn
MS.EXCEL.DEV.12.1036.hxn
MS.GRAPH.12.1036.hxn
MS.MSTORE.12.1036.hxn
MS.POWERPNT.12.1036.hxn
MS.POWERPNT.DEV.12.1036.hxn
MS.RIBBON.12.1036.hxn
MS.SETLANG.12.1036.hxn
MS.VBE.DEV.12.1036.hxn
MS.WINWORD.12.1036.hxn
MS.WINWORD.12.1036_1036_MKWD_F.HxW
MS.WINWORD.12.1036_1036_MKWD_K.HxW
MS.WINWORD.12.1036_1036_MTOC_WINWORD_COL.HxH
MS.WINWORD.12.1036_1036_MValidator.HxD
MS.WINWORD.12.1036_1036_MValidator.Lck
MS.WINWORD.DEV.12.1036.hxn
nslist.hxl
C:\Documents and Settings\All Users\Application Data\SlySoft\AnyDVD\
AnyDVD.chk
AnyDVD.lic
vidcache.bin
C:\Documents and Settings\All Users\Application Data\SlySoft\AnyDVD\AIScanner\
8aad09f05f2504fd00de4c5b49bca7f6
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\
ProcCache.sbc
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\
CommonDialogs.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer6.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectD.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectD1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectD2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectDraw.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectInput.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectInput1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSManagementConsole.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSOffice.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSOfficePowerPoint.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSOfficeWord.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSPaint.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSSearchAssistant.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSWordpad.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
Windows.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK10.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK11.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK6.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK7.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK8.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK9.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
C:\Documents and Settings\All Users\Application Data\TEMP
TEMP:D1B5B4F1
C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage\data\
data.dat
C:\Documents and Settings\All Users\Application Data\WLInstaller\
WLI_BS_2008-10-29_21-45-27.log
WLI_BS_2008-10-29_21-57-24.log
WLI_BS_2008-10-29_22-01-59.log
WLI_BS_2008-11-03_16-17-25.log
C:\Documents and Settings\All Users\Bureau\
Adobe Audition 3.0.lnk
AntiVir PE Classic.lnk
AnyDVD.lnk
CyberLink Advisor.lnk
CyberLink Hi-Def Suite.lnk
DVD Decrypter Fr.lnk
IziSpot.lnk
Livebox.url
Malwarebytes' Anti-Malware.lnk
SUPER ©.lnk
VLC media player.lnk
C:\Documents and Settings\All Users\Documents\
desktop.ini
C:\Documents and Settings\All Users\Documents\Ma musique\
Desktop.ini
C:\Documents and Settings\All Users\Documents\Ma musique\Sync Playlists\50ECEB\
01_Music_auto_rated_at_5_stars.wpl
02_Music_added_in_the_last_month.wpl
03_Music_rated_at_4_or_5_stars.wpl
04_Music_played_in_the_last_month.wpl
05_Pictures_taken_in_the_last_month.wpl
06_Pictures_rated_4_or_5_stars.wpl
07_TV_recorded_in_the_last_week.wpl
08_Video_rated_at_4_or_5_stars.wpl
09_Music_played_the_most.wpl
10_All_Music.wpl
11_All_Pictures.wpl
12_All_Video.wpl
C:\Documents and Settings\All Users\Documents\Ma musique\Échantillons de musique\
AlbumArtSmall.jpg
AlbumArt_{E201F44C-B9E2-490F-9ED7-0976E9DA2EA5}_Large.jpg
AlbumArt_{E201F44C-B9E2-490F-9ED7-0976E9DA2EA5}_Small.jpg
AlbumArt_{EFFDEB51-C913-4EE1-8B2A-C80112057955}_Large.jpg
AlbumArt_{EFFDEB51-C913-4EE1-8B2A-C80112057955}_Small.jpg
desktop.ini
Folder.jpg
Nouvelles histoires (le blues de l'autoroute).wma
Symphonie n° 9 de Beethoven (scherzo).wma
Thumbs.db
C:\Documents and Settings\All Users\Documents\Mes images\
Desktop.ini
C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\
Collines.jpg
Coucher de soleil.jpg
desktop.ini
Hiver.jpg
Nénuphars.jpg
Thumbs.db
C:\Documents and Settings\All Users\Documents\Mes vidéos\
Desktop.ini
C:\Documents and Settings\All Users\DRM\
drmstore.hds
DRMv1.bak
DRMv1.key
drmv2.lic
drmv2.sst
IndivBox.key
migration.log
v2ks.bla
v2ks.sec
v2ksndv.bla
v3ks.bla
v3ks.sec
C:\Documents and Settings\All Users\DRM\Cache\
Indiv02.bla
Indiv02.key
Indiv02.tmp
[WARNING] The file could not be opened!
C:\Documents and Settings\All Users\Menu Démarrer\
Catalogue Windows.lnk
Configurer les programmes par défaut.lnk
desktop.ini
SUPER © Uninstall.lnk
SUPER ©.lnk
Windows Update.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\
Adobe Audition 3.0.lnk
Adobe Reader 9.lnk
Apple Software Update.lnk
desktop.ini
Windows Movie Maker.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\
Connexion Bureau à distance.lnk
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\
Assistant Configuration du réseau.lnk
Assistant Nouvelle connexion.lnk
Assistant Réseau sans fil.lnk
Connexions réseau.lnk
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Outils système\
Assistant Transfert de fichiers et de paramètres.lnk
desktop.ini
Défragmenteur de disque.lnk
Informations système.lnk
Nettoyage de disque.lnk
Restauration du système.lnk
Tâches planifiées.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AntiVir PersonalEdition Classic\
AntiVir Help.lnk
Avira AntiVir Personal on the Internet.lnk
Start Avira AntiVir Personal.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CopyToDVD\
vmp.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Advisor\
Advisor.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\
CyberLink Hi-Def Suite.lnk
Enregistrement en ligne.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\InstantBurn\
Aide de InstantBurn.lnk
InstantBurn Config Tool.lnk
InstantBurn Erase Tool.lnk
InstantBurn.lnk
LisezMoi.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\Power2Go\
Aide de Power2Go.lnk
Diagnostique système.lnk
Désinstaller Power2Go.lnk
Enregistrement en ligne.lnk
LisezMoi.lnk
Power2Go Express.lnk
Power2Go.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\PowerBackup\
Aide de PowerBackup.lnk
Désinstaller PowerBackup.lnk
Enregistrement en ligne.lnk
LisezMoi.lnk
PowerBackup.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\PowerProducer\
Aide de PowerProducer.lnk
Désinstaller PowerProducer.lnk
Enregistrement en ligne.lnk
LisezMoi.lnk
PowerProducer.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DVD Decrypter Fr\
DVD Decrypter.lnk
Forum DVDDecrypter Fr.url
Site & Tutoriaux DVD Decrypter Fr.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DVICO\
TViX NetShare.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\
desktop.ini
Utility Tray.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\GigaTribe\
Désinstaller GigaTribe.lnk
GigaTribe.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\
HijackThis.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\IDEUtil\
SISIDE.exe
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\IziSpot 4\
Désinstaller.lnk
IziShopping.lnk
IziSpot.lnk
Mes Sites IziSpot.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\JPEG Compression\
JPEG Compression.lnk
Supprimer JPEG Compression.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LG ODD Auto Firmware Update\
LG ODD Auto Firmware Update.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LightScribeODK\
DRF Tuner.lnk
File Visualizer.lnk
ImageBurner.lnk
LsDiagnosticUtility.lnk
MediaIdentifier.lnk
StormTracker.lnk
Version.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com\
Desinstaller.lnk
Ma-Config.html.lnk
Preferences.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\
Désinstaller Malwarebytes' Anti-Malware.lnk
Malwarebytes' Anti-Malware Help.lnk
Malwarebytes' Anti-Malware.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office\
Microsoft Office Excel 2007.lnk
Microsoft Office PowerPoint 2007.lnk
Microsoft Office Word 2007.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office\Outils Microsoft Office\
Bibliothèque multimédia Microsoft.lnk
Certificat numérique pour les projets VBA.lnk
Microsoft Office 2007 Paramètres de langue.lnk
Microsoft Office Diagnostics.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office Live Add-in\
Aide d'Office Live Add-in.lnk
Office Live Workspace.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Monkey's Audio\
Help.lnk
Monkey's Audio Website.lnk
Monkey's Audio.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox\
Mozilla Firefox (Mode sans échec).lnk
Mozilla Firefox.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\
Analyseur de performances.lnk
desktop.ini
Gestion de l'ordinateur.lnk
Observateur d'événements.lnk
Services de composants.lnk
Services.lnk
Sources de données (ODBC).lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\QuickTime\
Désinstaller QuickTime.lnk
PictureViewer.lnk
QuickTime Player.lnk
À propos de QuickTime.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Realtek Sound Manager\
AvRack.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Rico Software\RS Somnífero\
RS Somnífero.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Samsung\Digimax Master\
Aide de Digimax Master.lnk
Digimax Master.lnk
Désinstallation de Digimax Master.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SiS RAID Utility\
SiSRaid.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SiS VGA Utilities\
Uninstall.lnk
Utility Tray.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SlySoft\AnyDVD\
AnyDVD Help.lnk
AnyDVD History.lnk
AnyDVD Image Ripper.lnk
AnyDVD Ripper.lnk
AnyDVD.lnk
Register AnyDVD.lnk
Uninstall.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SUPER © Version 2008.bld.33 (Sep 2, 2008)\
SUPER © Uninstall.lnk
SUPER ©.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\
Documentation.lnk
Release Notes.lnk
VideoLAN Website.lnk
VLC media player.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\
Reset VLC media player preferences and cache files.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\Audio\
Set Audio mode to DirectX (default).lnk
Set Audio mode to Waveout.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\Interface\
Set Main Interface to Qt (default).lnk
Set Main Interface to Skinnable.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\Video\
Set Video mode to Direct3D (no hardware acceleration).lnk
Set Video mode to Direct3D.lnk
Set Video mode to DirectX (no hardware acceleration).lnk
Set Video mode to DirectX (no video overlay).lnk
Set Video mode to DirectX.lnk
Set Video mode to OpenGL.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live\
Galerie de photos Windows Live.lnk
Windows Live Call.lnk
Windows Live Mail.lnk
Windows Live Messenger .lnk
Windows Live Writer.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR\
Aide de WinRAR.lnk
Manuel de la console RAR.lnk
WinRAR.lnk
C:\Documents and Settings\Default User\
NTUSER.DAT
NTUSER.DAT.LOG
C:\Documents and Settings\Default User\Application Data\
desktop.ini
C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\
brndlog.bak
brndlog.txt
C:\Documents and Settings\Default User\Cookies\
index.dat
C:\Documents and Settings\Default User\Local Settings\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Media Player\
CurrentDatabase_59R.wmdb
C:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Windows Media\9.0\
WMSDKNS.DTD
WMSDKNS.XML
C:\Documents and Settings\Default User\Local Settings\Historique\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Historique\History.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\40CDG3FL\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\K1UCWCQB\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\MHZOTZLV\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\SRWKIR5I\
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\
Assistance à distance.lnk
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\
Assistant Compatibilité des programmes.lnk
Bloc-notes.lnk
desktop.ini
Explorateur Windows.lnk
Invite de commandes.lnk
Synchroniser.lnk
Visite guidée de Windows XP.lnk
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\
Clavier visuel.lnk
desktop.ini
Gestionnaire d'utilitaires.lnk
Loupe.lnk
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\LabelPrint\
Aide de LabelPrint.lnk
Désinstaller LabelPrint.lnk
Enregistrement en ligne.lnk
LabelPrint.lnk
LisezMoi.lnk
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\
desktop.ini
C:\Documents and Settings\Default User\Modèles\
amipro.sam
excel.xls
excel4.xls
lotus.wk4
powerpnt.ppt
presenta.shw
quattro.wb2
sndrec.wav
winword.doc
winword2.doc
wordpfct.wpd
wordpfct.wpg
C:\Documents and Settings\Default User\SendTo\
Bureau (créer un raccourci).DeskLink
desktop.ini
Destinataire.MAPIMail
Dossier compressé.ZFSendToTarget
C:\Documents and Settings\Jean-Luc\
custom.log
ntuser.dat
[WARNING] The file could not be opened!
ntuser.dat.LOG
[WARNING] The file could not be opened!
ntuser.ini
C:\Documents and Settings\Jean-Luc\Application Data\
desktop.ini
C:\Documents and Settings\Jean-Luc\Application Data\4D\
4D Preferences v11.RSR
4D Preferences v11.XML
C:\Documents and Settings\Jean-Luc\Application Data\AccurateRip\
AccurateRip-Offset-log.txt
MyOffsets.bin
MyOffsetsConfig.bin
C:\Documents and Settings\Jean-Luc\Application Data\AccurateRip\AccurateRipCache\
dBAR-016-001c6173-0152f4b9-d10d2610.bin
dBAR-020-002bb7a6-02839996-070e9c14.bin
DriveOffsets.bin
C:\Documents and Settings\Jean-Luc\Application Data\AD ON Multimedia\eBay Shortcuts\
config.ini
eBayShortcuts.exe
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Acrobat\9.0\
AdobeCMapFnt09.lst
AdobeSysFnt09.lst
SharedDataEvents
UserCache.bin
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Acrobat\9.0\JavaScripts\
glob.js
glob.settings.js
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Audition\3.0\
AudCust.ini
AUDITION.INI
audition_settings.xml
BackendPrefs
flt.dat
Plugin Loading.log
Thème par défaut.xml
vstpluginmgr_settings.xml
xfm.dat
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Audition\3.0\DefaultWorkspaces\MT\
Vue Multipiste par défaut.xml
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Flash Player\AssetCache\TK68CBQR\
1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu
1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.swz
cacheSize.txt
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\Power2Go\5.0\
AudioPrj.p2g
DataPrj.p2g
VideoPrj.p2g
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\PowerDVD\
DVDTitles.bmk
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\PowerProducer\4.0\Custom\
Default.fl
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\PowerStarter\5.0\
favorite.cfg
Profile.ini
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\
CACHEDIR.TAG
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\DVD5-2008082208130000-0000000000\
0000000171
0000014241
0000228a99
0000228ad1
0000228b01
0000228b39
0000228b50
0000228b88
0000228b9f
0000228bd7
0000228bee
0000228c26
0000228c3d
0000228c75
0000228c8c
0000228cc4
0000228cdb
0000228d13
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\HORTON_STF1-2008072115095900-0000000000\
0000000142
0000000180
0000002323
00001db872
00001ebfcc
00001fb15a
00002089bd
000020b650
000020d332
000020d37b
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\HORTON_STF1-2008072115095900-21e02b9702\
0000000142
0000000180
0000002323
00001db872
00001ebfcc
00001fb15a
00002089bd
000020b650
000020d332
000020d37b
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\H_SAISON_1_VOLUME_1-2002071913123900-0000000000\
000000013b
00000001b1
0000020d6e
0000023456
00000234ad
0000024ec2
0000024f19
00000d373c
00000d3793
00001832d0
0000183327
000022ca0b
000022ca62
00002cff81
00002cffd8
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\LE_LION-2004040821522100-0000000000\
0000000127
000000355c
0000072366
00000911f6
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\LE_ROI_LION-2007103115532600-4a9f2f2d80\
000000011d
0000000161
0000000179
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\NEW-2008012111550000-0000000000\
00000001aa
000004365b
0000043663
00000437f7
000004380f
0000043ef4
0000043efc
0000043f16
0000043f1e
0000044550
0000044558
00000455c6
00000455ce
0000045d9e
0000045da6
0000046708
0000046710
0000049108
0000049110
000004f9c9
000004f9d1
000005ab93
000005ab9b
0000063cd6
0000063cde
0000063cf8
0000063d00
0000063d1a
0000063d22
0000063d45
000006415b
0000069d08
000006ab26
0000087ad7
0000087d66
000008c1e4
000008c708
000009531e
0000095ad9
000009fffe
00000eb31a
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\OKAVANGO-2000121118232900-0000000005\
0000000143
00000001b0
0000015389
000001a493
000001a4ea
00001891e3
000019bede
000019bf35
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\VIRGINIE_HOCQ-2008101421461100-0000000000\
0000000129
0000001b10
00000591c6
0000219932
0000219947
000021995a
C:\Documents and Settings\Jean-Luc\Application Data\EmailNotifier\
EmailNotifier.xml
EmailNotifier.xml.bak
C:\Documents and Settings\Jean-Luc\Application Data\FileZilla\
filezilla.xml
filters.xml
layout.xml
queue.xml
recentservers.xml
sitemanager.xml
C:\Documents and Settings\Jean-Luc\Application Data\GigaTribe\
ChatHistory Linconnu24.bin
server.log
session.log
upnp.log
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\
profiles.ini
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\
all.js
compatibility.ini
components.ini
compreg.dat
defaults.ini
editor.js
localstore.rdf
panels.rdf
prefs.js
xpti.dat
XUL.mfl
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\extensions\
Extensions.rdf
installed-extensions.txt
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\
install.rdf
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\US\
all.js
editor.js
localstore.rdf
panels.rdf
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\affiliatevista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\aka.fotovista.com\
pixLogOp_2128_fr.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\pan.fotovista.com\pixmania\grafx\fr\fr\home_univers\player\player5.swf\
LaMemoireDuVolume.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\pan3.fotovista.com\pixmania\grafx\multipays\flashAS\Bann_580_100.swf\
TestMovie_Config_Info.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\pan9.fotovista.com\pixmania\grafx\multipays\flashAS\Bann_580_100.swf\
TestMovie_Config_Info.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\s.ytimg.com\
soundData.sol
videostats.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#affiliatevista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aka.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan3.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan9.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.ytimg.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\
mbam-log-2008-12-02 (21-17-25).txt
mbam-log-2008-12-03 (01-41-51).txt
mbam-log-2008-12-03 (11-37-40).txt
mbam-log-2008-12-03 (19-26-23).txt
mbam-log-2008-12-03 (19-28-19).txt
mbam-log-2008-12-05 (12-58-52).txt
mbam-log-2008-12-05 (13-18-17).txt
mbam-log-2008-12-05 (14-31-30).txt
mbam-log-2008-12-05 (16-29-51).txt
mbam-log-2008-12-18 (02-14-25).txt
mbam-log-2008-12-18 (13-37-23).txt
mbam-log-2009-01-02 (16-21-26).txt
mbam-log-2009-01-03 (21-39-51).txt
mbam-log-2009-01-05 (14-36-10).txt
C:\Documents and Settings\Jean-Luc\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\
BACKUP1.14089
BACKUP1.17173
BACKUP1.17773
BACKUP1.27663
BACKUP1.39936
BACKUP1.55569
BACKUP1.59480
BACKUP1.67649
BACKUP1.71260
BACKUP1.95190
BACKUP2.12729
BACKUP2.14056
BACKUP2.70462
BACKUP3.11331
BACKUP3.54209
BACKUP3.55382
BACKUP3.64098
BACKUP4.36340
QUAR1.14089
QUAR1.17173
QUAR1.17773
QUAR1.27663
QUAR1.39936
QUAR1.55569
QUAR1.59480
QUAR1.67649
QUAR1.71260
QUAR1.95190
QUAR3.11331
QUAR3.54209
QUAR3.55382
QUAR3.64098
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\
ieudinit.exe
LastFlashConfig.WFC
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\Address Book\
Jean-Luc.wab
Jean-Luc.wab~
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\Credentials\S-1-5-21-725345543-1677128483-2147133589-1004\
Credentials
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\CryptnetUrlCache\Content\
0897206B35294097C3660E62BCDB227C
090F20467957B5DB76D35949C905F503
0EBB3788D77094423275558212CCE7B1
2BF68F4714092295550497DD56F57004
303572DF538EDD8B1D606185F1D559B8
3130B1871A126520A8C47861EFE3ED4D
3C19F8F5C2A69BEC912EF5B953293907
Avira AntiVir Personal
Report file date: mardi 6 janvier 2009 14:00
Scanning for 1150939 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: Jean-Luc
Computer name: PC-DE-JEAN-LUC
Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.1.33 1705984 Bytes 24/12/2008 10:54:47
ANTIVIR2.VDF : 7.1.1.60 318976 Bytes 02/01/2009 14:08:45
ANTIVIR3.VDF : 7.1.1.73 125952 Bytes 05/01/2009 11:26:38
Engineversion : 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 10:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 12/12/2008 10:22:31
AESCN.DLL : 8.1.1.5 123251 Bytes 07/11/2008 15:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 13:58:38
AEPACK.DLL : 8.1.3.4 393591 Bytes 11/11/2008 09:41:39
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 12/12/2008 10:22:23
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 12/12/2008 10:22:18
AEHELP.DLL : 8.1.2.0 119159 Bytes 04/12/2008 00:18:03
AEGEN.DLL : 8.1.1.8 323956 Bytes 12/12/2008 10:22:07
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 04/12/2008 00:18:01
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37
Configuration settings for the scan:
Jobname..........................: Rootkit search
Configuration file...............: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\rootkit.avp
Logging..........................: high
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: high
Expanded search settings.........: 0x00300922
Start of the scan: mardi 6 janvier 2009 14:00
Starting search for hidden objects.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\modules
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\start
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\type
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\imagepath
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msqpdxserv.sys\group
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\modules
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\start
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\type
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\imagepath
[INFO] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet003\Services\msqpdxserv.sys\group
[INFO] The registry entry is invisible.
'425731' objects were checked, '10' hidden objects were found.
Starting the file scan:
Begin scan in 'C:'
C:\
AUTOEXEC.BAT
BcBtRmv.log
boot.ini
Bootfont.bin
config.sys
CtDrvIns.log
CtDrvStp.log
IO.SYS
ITB.iss
ITB.log
ITBUninst.log
MSDOS.SYS
NTDETECT.COM
ntldr
pagefile.sys
[WARNING] The file could not be opened!
rapport.txt
sti.log
TCleaner.txt
C:\DELL\
dellbutn.htm
DELLSUPPORT.ICO
Thumbs.db
C:\Documents and Settings\Administrateur\
NTUSER.DAT
NTUSER.DAT.LOG
ntuser.ini
C:\Documents and Settings\Administrateur\Application Data\
desktop.ini
C:\Documents and Settings\Administrateur\Application Data\Microsoft\Internet Explorer\
brndlog.bak
brndlog.txt
C:\Documents and Settings\Administrateur\Bureau\
catchme.log
C:\Documents and Settings\Administrateur\Cookies\
index.dat
C:\Documents and Settings\Administrateur\Local Settings\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Application Data\
IconCache.db
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Media Player\
CurrentDatabase_59R.wmdb
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\
UsrClass.dat
UsrClass.dat.LOG
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows Media\9.0\
WMSDKNS.DTD
WMSDKNS.XML
C:\Documents and Settings\Administrateur\Local Settings\Historique\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\40CDG3FL\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\K1UCWCQB\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\MHZOTZLV\
desktop.ini
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\SRWKIR5I\
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\
Assistance à distance.lnk
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\
Assistant Compatibilité des programmes.lnk
Bloc-notes.lnk
desktop.ini
Explorateur Windows.lnk
Invite de commandes.lnk
Synchroniser.lnk
Visite guidée de Windows XP.lnk
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Accessibilité\
Clavier visuel.lnk
desktop.ini
Gestionnaire d'utilitaires.lnk
Loupe.lnk
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Divertissement\
desktop.ini
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\LabelPrint\
Aide de LabelPrint.lnk
Désinstaller LabelPrint.lnk
Enregistrement en ligne.lnk
LabelPrint.lnk
LisezMoi.lnk
C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\
desktop.ini
C:\Documents and Settings\Administrateur\Modèles\
amipro.sam
excel.xls
excel4.xls
lotus.wk4
powerpnt.ppt
presenta.shw
quattro.wb2
sndrec.wav
winword.doc
winword2.doc
wordpfct.wpd
wordpfct.wpg
C:\Documents and Settings\Administrateur\SendTo\
Bureau (créer un raccourci).DeskLink
desktop.ini
Destinataire.MAPIMail
Dossier compressé.ZFSendToTarget
C:\Documents and Settings\All Users\Application Data\
.zreglib
desktop.ini
vlc-0.9.4-win32.exe
vlc-0.9.6-win32.exe
C:\Documents and Settings\All Users\Application Data\Adobe\Acrobat\9.0\Replicate\Security\
directories.acrodata
C:\Documents and Settings\All Users\Application Data\Adobe\Updater\
AdobeESDGlobalApps.xml
C:\Documents and Settings\All Users\Application Data\Adobe\Updater\Certs\
audition.cer
C:\Documents and Settings\All Users\Application Data\Adobe\Updater6\
AdobeESDGlobalApps.xml
C:\Documents and Settings\All Users\Application Data\Adobe Systems\Product licenses\
B302D000.dat
C:\Documents and Settings\All Users\Application Data\Apple\Installer Cache\Apple Software Update 2.1.1.116\
AppleSoftwareUpdate.msi
C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\QuickTime 7.55.90.70\
QuickTime.msi
C:\Documents and Settings\All Users\Application Data\avg8\Cfg\
emssrv.cfg
krnl.cfg
mail.cfg
scan.cfg
sched.cfg
update.cfg
user.cfg
C:\Documents and Settings\All Users\Application Data\avg8\dumps\
avgscanx.exe_128698366883750000.dmp
avgscanx.exe_128698373165625000.dmp
avgscanx.exe_128698375280312500.dmp
avgscanx.exe_128698377994375000.dmp
avgscanx.exe_128698934834531250.dmp
avgscanx.exe_128702437094843750.dmp
avgscanx.exe_128703302850937500.dmp
C:\Documents and Settings\All Users\Application Data\avg8\emc\Log\
emc.log
C:\Documents and Settings\All Users\Application Data\avg8\Log\
avgcfg.log.lock
avgcore.log
avgcore.log.1
avgcore.log.10
avgcore.log.2
avgcore.log.3
avgcore.log.4
avgcore.log.5
avgcore.log.6
avgcore.log.7
avgcore.log.8
avgcore.log.9
avgcore.log.lock
avglng.log
avglng.log.1
avglng.log.2
avglng.log.3
avglng.log.lock
avgrs.log
avgrs.log.1
avgrs.log.10
avgrs.log.2
avgrs.log.3
avgrs.log.4
avgrs.log.5
avgrs.log.6
avgrs.log.7
avgrs.log.8
avgrs.log.9
avgrs.log.lock
avgscan.log
avgscan.log.1
avgscan.log.2
avgscan.log.3
avgscan.log.lock
avgsched.log.1
avgsched.log.10
avgsched.log.2
avgsched.log.3
avgsched.log.4
avgsched.log.5
avgsched.log.6
avgsched.log.7
avgsched.log.8
avgsched.log.9
avgsched.log.lock
avgsrm.log
avgsrm.log.lock
avgui.log
avgui.log.lock
avgupd.log
avgupd.log.lock
avgwd.log.1
avgwd.log.2
avgwd.log.3
avgwd.log.4
avgwd.log.lock
avgwdsvc.log
avgwdsvc.log.lock
avildr.log
history.xml
C:\Documents and Settings\All Users\Application Data\avg8\scanlogs\
I_00000001.log
I_00000005.log
I_00000006.log
I_00000007.log
I_00000008.log
I_00000009.log
I_00000010.log
I_00000011.log
I_00000012.log
I_00000013.log
I_00000014.log
I_00000015.log
I_00000016.log
I_00000017.log
I_00000018.log
I_00000019.log
I_00000020.log
I_00000021.log
I_00000022.log
I_00000023.log
I_00000024.log
I_00000025.log
I_00000026.log
I_00000027.log
I_00000028.log
I_00000029.log
I_00000030.log
I_00000031.log
I_00000032.log
I_00000033.log
I_00000034.log
I_00000035.log
I_00000036.log
I_00000037.log
I_00000038.log
I_00000039.log
I_00000040.log
I_00000041.log
srm.idx
C:\Documents and Settings\All Users\Application Data\avg8\update\backup\
avg8us.lng
avgf8us.chm
[0] Archive type: CHM
--> /#SYSTEM
--> /introduction.htm
--> /avg_professional.htm
--> /support__contact.htm
--> /the_application.htm
--> /main_screen.htm
--> /main_menu.htm
--> /security_status.htm
--> /components.htm
--> /anti_virus.htm
--> /what_is_a_virus.htm
--> /anti_spyware.htm
--> /what_is_spyware.htm
--> /pup_exceptions.htm
--> /exception_definition.htm
--> /e_mail_scanner.htm
--> /settings_in_the_main_screen2.htm
--> /e_mail_scanner_detection.htm
--> /e_mail_scanner2.htm
--> /certification.htm
--> /mail_filtering.htm
--> /logs_and_results.htm
--> /servers.htm
--> /pop3.htm
--> /smtp.htm
--> /license2.htm
--> /settings_in_the_main_screen.htm
--> /link_scanner.htm
--> /safe_search.htm
--> /link_scanner2.htm
--> /what_are_exploits.htm
--> /resident_shield.htm
--> /settings_in_the_main_screen3.htm
--> /resident_shield_detection.htm
--> /resident_shield2.htm
--> /advanced_settings2.htm
--> /exceptions.htm
--> /exceptions_list.htm
--> /update_manager.htm
--> /settings_in_the_main_screen5.htm
--> /available_tests.htm
--> /complete_test.htm
--> /user_defined_test.htm
--> /selected_files_scan.htm
--> /command_line_scan.htm
--> /command_line_scan_parameters.htm
--> /complete_test2.htm
--> /scan_reports.htm
--> /additional_scan_settings.htm
--> /scanning_results.htm
--> /schedule_a_test.htm
--> /schedule_settings.htm
--> /how_to_scan.htm
--> /what_to_scan.htm
--> /update2.htm
--> /scheduled_updates.htm
--> /scheduled_update_settings.htm
--> /update_levels.htm
--> /manual_update.htm
--> /update.htm
--> /proxy2.htm
--> /dial_up.htm
--> /url.htm
--> /virus_vault.htm
--> /virus_vault2.htm
--> /expert_settings.htm
--> /event_history.htm
--> /appearance.htm
--> /ignore_faulty_conditions.htm
--> /new_schedule.htm
--> /rs_detection.htm
--> /multiple_rs_detection.htm
--> /first_run_wizard.htm
--> /frw_scans.htm
--> /frw_report.htm
--> /cmdline_scan_composer.htm
--> /tablebg.gif
--> /table_leftup.gif
--> /table_rightup.gif
--> /icon_warning.gif
--> /table_leftdown.gif
--> /table_rightdown.gif
--> /header-end.png
--> /header.png
--> /icon_tip.gif
--> /hmtoggle_plus0.gif
--> /icon_seealso.gif
--> /print.css
--> /avg8us_popup_text.js
--> /avgf8us.hhc
--> /avgf8us.hhk
--> /big_status_ok.gif
--> /systray1.gif
--> /big_status_warn.gif
--> /systray2.gif
--> /big_status_err.gif
--> /hmtoggle_plus1.gif
--> /systray3.gif
--> /systray4.gif
--> /ls_ok.gif
--> /ls_danger.gif
--> /event_info.gif
--> /event_scan.gif
--> /event_update.gif
--> /helpman_topicinit.js
--> /default.css
--> /#WINDOWS
--> /#IVB
--> /$WWKeywordLinks/BTree
--> /$WWKeywordLinks/Data
--> /$WWKeywordLinks/Map
--> /$WWKeywordLinks/Property
--> /$WWAssociativeLinks/BTree
--> /$WWAssociativeLinks/Data
--> /$WWAssociativeLinks/Map
--> /$WWAssociativeLinks/Property
--> /$OBJINST
--> /$FIftiMain
--> /#IDXHDR
--> /#TOPICS
--> /#URLTBL
--> /#URLSTR
--> /#STRINGS
avgui.exe
incavi.avm
microavi.avg
miniavi.avg
sb.dat
sb2.dat
sc.dat
setup.exe
setupus.lns
C:\Documents and Settings\All Users\Application Data\avg8\update\prepare\
sb.dat.prepare
sc.dat.prepare
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\
addr_file.html
AVWIN.INI
update.conf
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\EVENTDB\
avevtdb.dbe
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\IDX\
classic-nt-en.info
master.idx
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\INFECTED\
499282d6.qua
49929c44.qua
49d1c3d3.qua
49d1d0ea.qua
49d1ec8e.qua
4c002deb.qua
4dc729b7.qua
4dd7f714.qua
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\JOBS\
produpd.avj
scanjob.avj
startupd.avj
updjob.avj
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\LOGFILES\
avguard.log
AVSCAN-20081207-153548-E792E86A.LOG
AVSCAN-20081217-120341-571998EA.LOG
AVSCAN-20081221-200425-2FA20E8C.LOG
AVSCAN-20090104-144623-56B3668A.LOG
AVSCAN-20090104-155957-04746173.LOG
AVSCAN-20090104-170600-5203FF30.LOG
AVSCAN-20090106-140049-2F6FDC6D.LOG
sched.log
setup.log
Upd-2008-12-08-11-20-19.log
Upd-2008-12-09-11-20-24.log
Upd-2008-12-10-11-20-26.log
Upd-2008-12-11-11-20-34.log
Upd-2008-12-12-11-20-37.log
Upd-2008-12-13-11-20-38.log
Upd-2008-12-15-11-54-12.log
Upd-2008-12-16-11-54-10.log
Upd-2008-12-17-11-54-26.log
Upd-2008-12-18-11-54-32.log
Upd-2008-12-19-11-54-20.log
Upd-2008-12-20-11-54-25.log
Upd-2008-12-22-11-54-49.log
Upd-2008-12-23-01-50-50.log
Upd-2008-12-23-11-54-39.log
Upd-2008-12-24-11-54-18.log
Upd-2008-12-25-11-54-18.log
Upd-2008-12-26-11-54-18.log
Upd-2008-12-27-11-54-19.log
Upd-2008-12-28-11-54-20.log
Upd-2008-12-29-12-24-55.log
Upd-2008-12-30-12-25-00.log
Upd-2008-12-31-12-24-59.log
Upd-2009-01-02-12-24-48.log
Upd-2009-01-03-12-24-49.log
Upd-2009-01-04-02-26-25.log
Upd-2009-01-04-11-40-55.log
Upd-2009-01-04-12-24-49.log
Upd-2009-01-04-12-26-55.log
Upd-2009-01-04-14-46-09.log
Upd-2009-01-04-15-57-11.log
Upd-2009-01-04-16-49-27.log
Upd-2009-01-04-18-43-42.log
Upd-2009-01-05-12-24-50.log
Upd-2009-01-05-15-08-20.log
Upd-2009-01-06-12-24-56.log
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\
folder.avp
rootkit.avp
C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\REPORTS\
00bc61ce.avl
0195677d.avl
050a900e.avl
1c0880b4.avl
28e7e380.avl
2a16665d.avl
34b148ed.avl
350cc786.avl
3cd62b22.avl
3e850aec.avl
4153a612.avl
45724ade.avl
4b3a9067.avl
5cc1da04.avl
6b57b2b0.avl
707d8b39.avl
731d1268.avl
7323b4a0.avl
732d97d0.avl
7a22e730.avl
8071d77b.avl
86ca752c.avl
8da47954.avl
915976ca.avl
91d60917.avl
979cbc5d.avl
99058319.avl
9bce4856.avl
a823e1b4.avl
aae39ba9.avl
b658a2eb.avl
b89a78e7.avl
c1d3d75c.avl
c9100459.avl
cd57d7d5.avl
d5abe651.avl
d68c262c.avl
d8cd8aa2.avl
d92641bb.avl
e2ba1879.avl
e8977ebd.avl
C:\Documents and Settings\All Users\Application Data\CyberLink\BDNAV\
BRF.dat
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\InstantBurn\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\LabelPrint\2.10\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\LabelPrint\2.20\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\Power2Go\5.50\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerBackup\2.50\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerDVD\7.03\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerProducer\4.00\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\EvoParser\PowerStarter\5.00\
EVO.xml
C:\Documents and Settings\All Users\Application Data\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{397A21FB-EADF-4116-9027-32B8FA04C3E2}\Version\5.50\
olreg.ini
C:\Documents and Settings\All Users\Application Data\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{748DB920-B5DD-4cdb-9EC4-5A3B61A21936}\Version\5.00\
olreg.ini
C:\Documents and Settings\All Users\Application Data\CyberLink\Power2Go\
MP3Cache.log
C:\Documents and Settings\All Users\Application Data\Downloaded Installations\{49C0DA05-1C69-45CA-9951-74B075932855}\
VirginMega.Fr Premium.msi
C:\Documents and Settings\All Users\Application Data\EmailNotifier\
EmailNotifier.exe
EmailNotifierAPI.dll
EmailNotifierEN.lng
EmailNotifierFR.lng
C:\Documents and Settings\All Users\Application Data\LightScribe\log\
logLabelPrint.exe_2000.xml
logLabelPrint.exe_3604.xml
C:\Documents and Settings\All Users\Application Data\ma-config.com\
mcbase.db
C:\Documents and Settings\All Users\Application Data\ma-config.com\Logs\
crashmcservice.dmp
maconfservice.txt
npapi.txt
C:\Documents and Settings\All Users\Application Data\ma-config.com\Temp\
mc_38.tmp
C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\
ignore.dat
mbam-setup.exe
news.txt
rules.ref
C:\Documents and Settings\All Users\Application Data\Megaupload\
Megauper.exe
C:\Documents and Settings\All Users\Application Data\Messenger Plus!\Custom Sounds\
#34EC4E882062.dat
#78E0BD2CAC8C.dat
#8F3012E266FA.dat
#9F201550501A.dat
#A7F0392D5342.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\
0001c19d097bfd5cd435603279a326ae_17e44b17-0960-4a23-8d03-bdf6be44512a
20e4cc13462053dd5c33eb178de2557a_17e44b17-0960-4a23-8d03-bdf6be44512a
3b0f24c4b9f1f7aa3825c8148c788eda_17e44b17-0960-4a23-8d03-bdf6be44512a
797023a8ba74d039284e0bfb27e61d14_17e44b17-0960-4a23-8d03-bdf6be44512a
cf6dc39a67cf674d0f352887b4ed689a_17e44b17-0960-4a23-8d03-bdf6be44512a
fc6c99c17e62775c6ddc4e19a09ca150_17e44b17-0960-4a23-8d03-bdf6be44512a
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\
6d14e4b1d8ca773bab785d1be032546e_17e44b17-0960-4a23-8d03-bdf6be44512a
d42cc0c3858a58db2db37658219e6400_17e44b17-0960-4a23-8d03-bdf6be44512a
C:\Documents and Settings\All Users\Application Data\Microsoft\HTML Help\
hhcolreg.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\
ppcrlconfig.dll
C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\
DefaultStore_59R.bin
UserMigratedStore_59R.bin
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Connections\Pbk\
rasphone.pbk
sharedaccess.ini
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\
qmgr0.dat
qmgr1.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\
DocumentRepository.ico
MySharePoints.ico
MySite.ico
SharePointPortalSite.ico
SharePointTeamSite.ico
C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\DATA\
OPA12.BAK
opa12.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\
Administrateur.bmp
guest.bmp
Jean-Luc.bmp
C:\Documents and Settings\All Users\Application Data\Microsoft\User Account Pictures\Default Pictures\
airplane.bmp
astronaut.bmp
ball.bmp
beach.bmp
butterfly.bmp
car.bmp
cat.bmp
chess.bmp
dirt bike.bmp
dog.bmp
drip.bmp
duck.bmp
fish.bmp
frog.bmp
guitar.bmp
horses.bmp
kick.bmp
lift-off.bmp
palm tree.bmp
pink flower.bmp
red flower.bmp
skater.bmp
snowflake.bmp
C:\Documents and Settings\All Users\Application Data\Microsoft\WLSetup\
wlt264.tmp
[0] Archive type: CAB (Microsoft)
--> catalog.xml
C:\Documents and Settings\All Users\Application Data\Microsoft\WLSetup\Logs\
2008-11-03_16-16_4d0-mmki8h8t.log
2008-11-03_17-16_9d0-3t7vba5a.log
2008-12-16_16-57_504-y6r84b9s.log
2008-12-17_00-24_c94-c6kjfsb9.log
2008-12-17_00-36_71c-bau7h8wm.log
2008-12-22_17-41_164-tn6iel0b.log
2008-12-23_17-54_c0-v5mcvnii.log
2008-12-23_17-59_b34-f796lswj.log
C:\Documents and Settings\All Users\Application Data\Microsoft Help\
Hx.hxn
Hx_1036_MKWD_K.HxW
Hx_1036_MKWD_NamedURL.HxW
Hx_1036_MTOC_Hx.HxH
Hx_1036_MValidator.HxD
Hx_1036_MValidator.Lck
MS.EXCEL.12.1036.hxn
MS.EXCEL.DEV.12.1036.hxn
MS.GRAPH.12.1036.hxn
MS.MSTORE.12.1036.hxn
MS.POWERPNT.12.1036.hxn
MS.POWERPNT.DEV.12.1036.hxn
MS.RIBBON.12.1036.hxn
MS.SETLANG.12.1036.hxn
MS.VBE.DEV.12.1036.hxn
MS.WINWORD.12.1036.hxn
MS.WINWORD.12.1036_1036_MKWD_F.HxW
MS.WINWORD.12.1036_1036_MKWD_K.HxW
MS.WINWORD.12.1036_1036_MTOC_WINWORD_COL.HxH
MS.WINWORD.12.1036_1036_MValidator.HxD
MS.WINWORD.12.1036_1036_MValidator.Lck
MS.WINWORD.DEV.12.1036.hxn
nslist.hxl
C:\Documents and Settings\All Users\Application Data\SlySoft\AnyDVD\
AnyDVD.chk
AnyDVD.lic
vidcache.bin
C:\Documents and Settings\All Users\Application Data\SlySoft\AnyDVD\AIScanner\
8aad09f05f2504fd00de4c5b49bca7f6
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\
ProcCache.sbc
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\
CommonDialogs.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
InternetExplorer6.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectD.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectD1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectD2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectDraw.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectInput.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSDirectInput1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSManagementConsole.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSMediaPlayer5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSOffice.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSOfficePowerPoint.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSOfficeWord.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSPaint.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSSearchAssistant.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
MSWordpad.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
Windows.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsExplorer5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK10.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK11.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK4.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK5.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK6.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK7.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK8.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsMediaSDK9.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WindowsOpenWith3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR1.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR2.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
WinRAR3.zip
[0] Archive type: ZIP
--> sbRecovery.reg
[WARNING] The archive is encrypted
C:\Documents and Settings\All Users\Application Data\TEMP
TEMP:D1B5B4F1
C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage\data\
data.dat
C:\Documents and Settings\All Users\Application Data\WLInstaller\
WLI_BS_2008-10-29_21-45-27.log
WLI_BS_2008-10-29_21-57-24.log
WLI_BS_2008-10-29_22-01-59.log
WLI_BS_2008-11-03_16-17-25.log
C:\Documents and Settings\All Users\Bureau\
Adobe Audition 3.0.lnk
AntiVir PE Classic.lnk
AnyDVD.lnk
CyberLink Advisor.lnk
CyberLink Hi-Def Suite.lnk
DVD Decrypter Fr.lnk
IziSpot.lnk
Livebox.url
Malwarebytes' Anti-Malware.lnk
SUPER ©.lnk
VLC media player.lnk
C:\Documents and Settings\All Users\Documents\
desktop.ini
C:\Documents and Settings\All Users\Documents\Ma musique\
Desktop.ini
C:\Documents and Settings\All Users\Documents\Ma musique\Sync Playlists\50ECEB\
01_Music_auto_rated_at_5_stars.wpl
02_Music_added_in_the_last_month.wpl
03_Music_rated_at_4_or_5_stars.wpl
04_Music_played_in_the_last_month.wpl
05_Pictures_taken_in_the_last_month.wpl
06_Pictures_rated_4_or_5_stars.wpl
07_TV_recorded_in_the_last_week.wpl
08_Video_rated_at_4_or_5_stars.wpl
09_Music_played_the_most.wpl
10_All_Music.wpl
11_All_Pictures.wpl
12_All_Video.wpl
C:\Documents and Settings\All Users\Documents\Ma musique\Échantillons de musique\
AlbumArtSmall.jpg
AlbumArt_{E201F44C-B9E2-490F-9ED7-0976E9DA2EA5}_Large.jpg
AlbumArt_{E201F44C-B9E2-490F-9ED7-0976E9DA2EA5}_Small.jpg
AlbumArt_{EFFDEB51-C913-4EE1-8B2A-C80112057955}_Large.jpg
AlbumArt_{EFFDEB51-C913-4EE1-8B2A-C80112057955}_Small.jpg
desktop.ini
Folder.jpg
Nouvelles histoires (le blues de l'autoroute).wma
Symphonie n° 9 de Beethoven (scherzo).wma
Thumbs.db
C:\Documents and Settings\All Users\Documents\Mes images\
Desktop.ini
C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\
Collines.jpg
Coucher de soleil.jpg
desktop.ini
Hiver.jpg
Nénuphars.jpg
Thumbs.db
C:\Documents and Settings\All Users\Documents\Mes vidéos\
Desktop.ini
C:\Documents and Settings\All Users\DRM\
drmstore.hds
DRMv1.bak
DRMv1.key
drmv2.lic
drmv2.sst
IndivBox.key
migration.log
v2ks.bla
v2ks.sec
v2ksndv.bla
v3ks.bla
v3ks.sec
C:\Documents and Settings\All Users\DRM\Cache\
Indiv02.bla
Indiv02.key
Indiv02.tmp
[WARNING] The file could not be opened!
C:\Documents and Settings\All Users\Menu Démarrer\
Catalogue Windows.lnk
Configurer les programmes par défaut.lnk
desktop.ini
SUPER © Uninstall.lnk
SUPER ©.lnk
Windows Update.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\
Adobe Audition 3.0.lnk
Adobe Reader 9.lnk
Apple Software Update.lnk
desktop.ini
Windows Movie Maker.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\
Connexion Bureau à distance.lnk
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\
Assistant Configuration du réseau.lnk
Assistant Nouvelle connexion.lnk
Assistant Réseau sans fil.lnk
Connexions réseau.lnk
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Outils système\
Assistant Transfert de fichiers et de paramètres.lnk
desktop.ini
Défragmenteur de disque.lnk
Informations système.lnk
Nettoyage de disque.lnk
Restauration du système.lnk
Tâches planifiées.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AntiVir PersonalEdition Classic\
AntiVir Help.lnk
Avira AntiVir Personal on the Internet.lnk
Start Avira AntiVir Personal.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CopyToDVD\
vmp.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Advisor\
Advisor.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\
CyberLink Hi-Def Suite.lnk
Enregistrement en ligne.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\InstantBurn\
Aide de InstantBurn.lnk
InstantBurn Config Tool.lnk
InstantBurn Erase Tool.lnk
InstantBurn.lnk
LisezMoi.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\Power2Go\
Aide de Power2Go.lnk
Diagnostique système.lnk
Désinstaller Power2Go.lnk
Enregistrement en ligne.lnk
LisezMoi.lnk
Power2Go Express.lnk
Power2Go.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\PowerBackup\
Aide de PowerBackup.lnk
Désinstaller PowerBackup.lnk
Enregistrement en ligne.lnk
LisezMoi.lnk
PowerBackup.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\PowerProducer\
Aide de PowerProducer.lnk
Désinstaller PowerProducer.lnk
Enregistrement en ligne.lnk
LisezMoi.lnk
PowerProducer.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DVD Decrypter Fr\
DVD Decrypter.lnk
Forum DVDDecrypter Fr.url
Site & Tutoriaux DVD Decrypter Fr.url
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DVICO\
TViX NetShare.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\
desktop.ini
Utility Tray.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\GigaTribe\
Désinstaller GigaTribe.lnk
GigaTribe.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\
HijackThis.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\IDEUtil\
SISIDE.exe
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\IziSpot 4\
Désinstaller.lnk
IziShopping.lnk
IziSpot.lnk
Mes Sites IziSpot.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\
desktop.ini
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\JPEG Compression\
JPEG Compression.lnk
Supprimer JPEG Compression.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LG ODD Auto Firmware Update\
LG ODD Auto Firmware Update.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\LightScribeODK\
DRF Tuner.lnk
File Visualizer.lnk
ImageBurner.lnk
LsDiagnosticUtility.lnk
MediaIdentifier.lnk
StormTracker.lnk
Version.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ma-config.com\
Desinstaller.lnk
Ma-Config.html.lnk
Preferences.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\
Désinstaller Malwarebytes' Anti-Malware.lnk
Malwarebytes' Anti-Malware Help.lnk
Malwarebytes' Anti-Malware.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office\
Microsoft Office Excel 2007.lnk
Microsoft Office PowerPoint 2007.lnk
Microsoft Office Word 2007.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office\Outils Microsoft Office\
Bibliothèque multimédia Microsoft.lnk
Certificat numérique pour les projets VBA.lnk
Microsoft Office 2007 Paramètres de langue.lnk
Microsoft Office Diagnostics.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office Live Add-in\
Aide d'Office Live Add-in.lnk
Office Live Workspace.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Monkey's Audio\
Help.lnk
Monkey's Audio Website.lnk
Monkey's Audio.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox\
Mozilla Firefox (Mode sans échec).lnk
Mozilla Firefox.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\
Analyseur de performances.lnk
desktop.ini
Gestion de l'ordinateur.lnk
Observateur d'événements.lnk
Services de composants.lnk
Services.lnk
Sources de données (ODBC).lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\QuickTime\
Désinstaller QuickTime.lnk
PictureViewer.lnk
QuickTime Player.lnk
À propos de QuickTime.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Realtek Sound Manager\
AvRack.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Rico Software\RS Somnífero\
RS Somnífero.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Samsung\Digimax Master\
Aide de Digimax Master.lnk
Digimax Master.lnk
Désinstallation de Digimax Master.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SiS RAID Utility\
SiSRaid.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SiS VGA Utilities\
Uninstall.lnk
Utility Tray.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SlySoft\AnyDVD\
AnyDVD Help.lnk
AnyDVD History.lnk
AnyDVD Image Ripper.lnk
AnyDVD Ripper.lnk
AnyDVD.lnk
Register AnyDVD.lnk
Uninstall.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SUPER © Version 2008.bld.33 (Sep 2, 2008)\
SUPER © Uninstall.lnk
SUPER ©.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\
Documentation.lnk
Release Notes.lnk
VideoLAN Website.lnk
VLC media player.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\
Reset VLC media player preferences and cache files.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\Audio\
Set Audio mode to DirectX (default).lnk
Set Audio mode to Waveout.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\Interface\
Set Main Interface to Qt (default).lnk
Set Main Interface to Skinnable.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN\Quick Settings\Video\
Set Video mode to Direct3D (no hardware acceleration).lnk
Set Video mode to Direct3D.lnk
Set Video mode to DirectX (no hardware acceleration).lnk
Set Video mode to DirectX (no video overlay).lnk
Set Video mode to DirectX.lnk
Set Video mode to OpenGL.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Windows Live\
Galerie de photos Windows Live.lnk
Windows Live Call.lnk
Windows Live Mail.lnk
Windows Live Messenger .lnk
Windows Live Writer.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR\
Aide de WinRAR.lnk
Manuel de la console RAR.lnk
WinRAR.lnk
C:\Documents and Settings\Default User\
NTUSER.DAT
NTUSER.DAT.LOG
C:\Documents and Settings\Default User\Application Data\
desktop.ini
C:\Documents and Settings\Default User\Application Data\Microsoft\Internet Explorer\
brndlog.bak
brndlog.txt
C:\Documents and Settings\Default User\Cookies\
index.dat
C:\Documents and Settings\Default User\Local Settings\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Media Player\
CurrentDatabase_59R.wmdb
C:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Windows Media\9.0\
WMSDKNS.DTD
WMSDKNS.XML
C:\Documents and Settings\Default User\Local Settings\Historique\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Historique\History.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\
desktop.ini
index.dat
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\40CDG3FL\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\K1UCWCQB\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\MHZOTZLV\
desktop.ini
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\SRWKIR5I\
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\
Assistance à distance.lnk
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\
Assistant Compatibilité des programmes.lnk
Bloc-notes.lnk
desktop.ini
Explorateur Windows.lnk
Invite de commandes.lnk
Synchroniser.lnk
Visite guidée de Windows XP.lnk
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\
Clavier visuel.lnk
desktop.ini
Gestionnaire d'utilitaires.lnk
Loupe.lnk
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\
desktop.ini
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\CyberLink Hi-Def Suite\LabelPrint\
Aide de LabelPrint.lnk
Désinstaller LabelPrint.lnk
Enregistrement en ligne.lnk
LabelPrint.lnk
LisezMoi.lnk
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\
desktop.ini
C:\Documents and Settings\Default User\Modèles\
amipro.sam
excel.xls
excel4.xls
lotus.wk4
powerpnt.ppt
presenta.shw
quattro.wb2
sndrec.wav
winword.doc
winword2.doc
wordpfct.wpd
wordpfct.wpg
C:\Documents and Settings\Default User\SendTo\
Bureau (créer un raccourci).DeskLink
desktop.ini
Destinataire.MAPIMail
Dossier compressé.ZFSendToTarget
C:\Documents and Settings\Jean-Luc\
custom.log
ntuser.dat
[WARNING] The file could not be opened!
ntuser.dat.LOG
[WARNING] The file could not be opened!
ntuser.ini
C:\Documents and Settings\Jean-Luc\Application Data\
desktop.ini
C:\Documents and Settings\Jean-Luc\Application Data\4D\
4D Preferences v11.RSR
4D Preferences v11.XML
C:\Documents and Settings\Jean-Luc\Application Data\AccurateRip\
AccurateRip-Offset-log.txt
MyOffsets.bin
MyOffsetsConfig.bin
C:\Documents and Settings\Jean-Luc\Application Data\AccurateRip\AccurateRipCache\
dBAR-016-001c6173-0152f4b9-d10d2610.bin
dBAR-020-002bb7a6-02839996-070e9c14.bin
DriveOffsets.bin
C:\Documents and Settings\Jean-Luc\Application Data\AD ON Multimedia\eBay Shortcuts\
config.ini
eBayShortcuts.exe
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Acrobat\9.0\
AdobeCMapFnt09.lst
AdobeSysFnt09.lst
SharedDataEvents
UserCache.bin
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Acrobat\9.0\JavaScripts\
glob.js
glob.settings.js
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Audition\3.0\
AudCust.ini
AUDITION.INI
audition_settings.xml
BackendPrefs
flt.dat
Plugin Loading.log
Thème par défaut.xml
vstpluginmgr_settings.xml
xfm.dat
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Audition\3.0\DefaultWorkspaces\MT\
Vue Multipiste par défaut.xml
C:\Documents and Settings\Jean-Luc\Application Data\Adobe\Flash Player\AssetCache\TK68CBQR\
1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu
1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.swz
cacheSize.txt
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\Power2Go\5.0\
AudioPrj.p2g
DataPrj.p2g
VideoPrj.p2g
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\PowerDVD\
DVDTitles.bmk
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\PowerProducer\4.0\Custom\
Default.fl
C:\Documents and Settings\Jean-Luc\Application Data\CyberLink\PowerStarter\5.0\
favorite.cfg
Profile.ini
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\
CACHEDIR.TAG
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\DVD5-2008082208130000-0000000000\
0000000171
0000014241
0000228a99
0000228ad1
0000228b01
0000228b39
0000228b50
0000228b88
0000228b9f
0000228bd7
0000228bee
0000228c26
0000228c3d
0000228c75
0000228c8c
0000228cc4
0000228cdb
0000228d13
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\HORTON_STF1-2008072115095900-0000000000\
0000000142
0000000180
0000002323
00001db872
00001ebfcc
00001fb15a
00002089bd
000020b650
000020d332
000020d37b
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\HORTON_STF1-2008072115095900-21e02b9702\
0000000142
0000000180
0000002323
00001db872
00001ebfcc
00001fb15a
00002089bd
000020b650
000020d332
000020d37b
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\H_SAISON_1_VOLUME_1-2002071913123900-0000000000\
000000013b
00000001b1
0000020d6e
0000023456
00000234ad
0000024ec2
0000024f19
00000d373c
00000d3793
00001832d0
0000183327
000022ca0b
000022ca62
00002cff81
00002cffd8
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\LE_LION-2004040821522100-0000000000\
0000000127
000000355c
0000072366
00000911f6
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\LE_ROI_LION-2007103115532600-4a9f2f2d80\
000000011d
0000000161
0000000179
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\NEW-2008012111550000-0000000000\
00000001aa
000004365b
0000043663
00000437f7
000004380f
0000043ef4
0000043efc
0000043f16
0000043f1e
0000044550
0000044558
00000455c6
00000455ce
0000045d9e
0000045da6
0000046708
0000046710
0000049108
0000049110
000004f9c9
000004f9d1
000005ab93
000005ab9b
0000063cd6
0000063cde
0000063cf8
0000063d00
0000063d1a
0000063d22
0000063d45
000006415b
0000069d08
000006ab26
0000087ad7
0000087d66
000008c1e4
000008c708
000009531e
0000095ad9
000009fffe
00000eb31a
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\OKAVANGO-2000121118232900-0000000005\
0000000143
00000001b0
0000015389
000001a493
000001a4ea
00001891e3
000019bede
000019bf35
C:\Documents and Settings\Jean-Luc\Application Data\dvdcss\VIRGINIE_HOCQ-2008101421461100-0000000000\
0000000129
0000001b10
00000591c6
0000219932
0000219947
000021995a
C:\Documents and Settings\Jean-Luc\Application Data\EmailNotifier\
EmailNotifier.xml
EmailNotifier.xml.bak
C:\Documents and Settings\Jean-Luc\Application Data\FileZilla\
filezilla.xml
filters.xml
layout.xml
queue.xml
recentservers.xml
sitemanager.xml
C:\Documents and Settings\Jean-Luc\Application Data\GigaTribe\
ChatHistory Linconnu24.bin
server.log
session.log
upnp.log
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\
profiles.ini
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\
all.js
compatibility.ini
components.ini
compreg.dat
defaults.ini
editor.js
localstore.rdf
panels.rdf
prefs.js
xpti.dat
XUL.mfl
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\extensions\
Extensions.rdf
installed-extensions.txt
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\
install.rdf
C:\Documents and Settings\Jean-Luc\Application Data\KompoZer\Profiles\szddziny.default\US\
all.js
editor.js
localstore.rdf
panels.rdf
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\affiliatevista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\aka.fotovista.com\
pixLogOp_2128_fr.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\pan.fotovista.com\pixmania\grafx\fr\fr\home_univers\player\player5.swf\
LaMemoireDuVolume.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\pan3.fotovista.com\pixmania\grafx\multipays\flashAS\Bann_580_100.swf\
TestMovie_Config_Info.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\pan9.fotovista.com\pixmania\grafx\multipays\flashAS\Bann_580_100.swf\
TestMovie_Config_Info.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\#SharedObjects\YG3WL5PZ\s.ytimg.com\
soundData.sol
videostats.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#affiliatevista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aka.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan3.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan9.fotovista.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.ytimg.com\
settings.sol
C:\Documents and Settings\Jean-Luc\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\
mbam-log-2008-12-02 (21-17-25).txt
mbam-log-2008-12-03 (01-41-51).txt
mbam-log-2008-12-03 (11-37-40).txt
mbam-log-2008-12-03 (19-26-23).txt
mbam-log-2008-12-03 (19-28-19).txt
mbam-log-2008-12-05 (12-58-52).txt
mbam-log-2008-12-05 (13-18-17).txt
mbam-log-2008-12-05 (14-31-30).txt
mbam-log-2008-12-05 (16-29-51).txt
mbam-log-2008-12-18 (02-14-25).txt
mbam-log-2008-12-18 (13-37-23).txt
mbam-log-2009-01-02 (16-21-26).txt
mbam-log-2009-01-03 (21-39-51).txt
mbam-log-2009-01-05 (14-36-10).txt
C:\Documents and Settings\Jean-Luc\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\
BACKUP1.14089
BACKUP1.17173
BACKUP1.17773
BACKUP1.27663
BACKUP1.39936
BACKUP1.55569
BACKUP1.59480
BACKUP1.67649
BACKUP1.71260
BACKUP1.95190
BACKUP2.12729
BACKUP2.14056
BACKUP2.70462
BACKUP3.11331
BACKUP3.54209
BACKUP3.55382
BACKUP3.64098
BACKUP4.36340
QUAR1.14089
QUAR1.17173
QUAR1.17773
QUAR1.27663
QUAR1.39936
QUAR1.55569
QUAR1.59480
QUAR1.67649
QUAR1.71260
QUAR1.95190
QUAR3.11331
QUAR3.54209
QUAR3.55382
QUAR3.64098
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\
ieudinit.exe
LastFlashConfig.WFC
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\Address Book\
Jean-Luc.wab
Jean-Luc.wab~
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\Credentials\S-1-5-21-725345543-1677128483-2147133589-1004\
Credentials
C:\Documents and Settings\Jean-Luc\Application Data\Microsoft\CryptnetUrlCache\Content\
0897206B35294097C3660E62BCDB227C
090F20467957B5DB76D35949C905F503
0EBB3788D77094423275558212CCE7B1
2BF68F4714092295550497DD56F57004
303572DF538EDD8B1D606185F1D559B8
3130B1871A126520A8C47861EFE3ED4D
3C19F8F5C2A69BEC912EF5B953293907
Salut,
Télécharge Lop S&D
▶ Double-clique dessus pour lancer l'installation
▶ Puis double-clique sur le raccourci Lop S&D présent sur ton bureau
▶ Séléctionne la langue souhaitée
▶ Puis choisis l'Option 1 ( Recherche )
▶ Patiente jusqu'à la fin du scan
▶ Poste le rapport généré ( C:lopR.txt )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Télécharge Lop S&D
▶ Double-clique dessus pour lancer l'installation
▶ Puis double-clique sur le raccourci Lop S&D présent sur ton bureau
▶ Séléctionne la langue souhaitée
▶ Puis choisis l'Option 1 ( Recherche )
▶ Patiente jusqu'à la fin du scan
▶ Poste le rapport généré ( C:lopR.txt )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : BIOS Date: 09/07/05 09:39:51 Ver: 08.00.10
USER : Jean-Luc ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:48 Go (Free:20 Go)
D:\ (Local Disk) - NTFS - Total:137 Go (Free:34 Go)
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total:372 Go (Free:357 Go)
G:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 05/01/2009|12:35 )
--------------------\\ Listing des dossiers dans APPLIC~1
[05/01/2009|12:07] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[02/01/2009|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[02/01/2009|19:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[28/10/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/10/2008|23:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[03/12/2008|01:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8
[03/12/2008|02:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[18/10/2008|10:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[07/10/2008|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[16/11/2008|18:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EmailNotifier
[07/10/2008|20:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[22/12/2008|01:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[07/11/2008|13:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[02/12/2008|19:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[16/11/2008|18:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Megaupload
[04/11/2008|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[17/12/2008|00:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[11/12/2008|12:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[08/10/2008|13:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[18/12/2008|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Proxy Long Chin Ping
[07/10/2008|14:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SlySoft
[03/12/2008|01:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[10/10/2008|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Syncrosoft
[18/12/2008|09:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/10/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[29/10/2008|22:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[16/09/2020|16:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|15:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\4D
[24/10/2008|13:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\AccurateRip
[07/10/2008|15:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\AD ON Multimedia
[02/01/2009|19:22] C:\DOCUME~1\Jean-Luc\APPLIC~1\Adobe
[28/10/2008|23:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\Apple Computer
[15/10/2008|12:33] C:\DOCUME~1\Jean-Luc\APPLIC~1\CyberLink
[30/12/2008|20:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\dvdcss
[16/11/2008|18:03] C:\DOCUME~1\Jean-Luc\APPLIC~1\EmailNotifier
[23/12/2008|19:44] C:\DOCUME~1\Jean-Luc\APPLIC~1\FileZilla
[25/12/2008|21:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\GigaTribe
[19/12/2008|11:20] C:\DOCUME~1\Jean-Luc\APPLIC~1\GRID MESS
[09/10/2008|00:39] C:\DOCUME~1\Jean-Luc\APPLIC~1\Help
[16/09/2020|17:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\Identities
[16/12/2008|14:27] C:\DOCUME~1\Jean-Luc\APPLIC~1\KompoZer
[01/10/2008|08:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\Macromedia
[02/12/2008|19:45] C:\DOCUME~1\Jean-Luc\APPLIC~1\Malwarebytes
[03/01/2009|14:51] C:\DOCUME~1\Jean-Luc\APPLIC~1\Microsoft
[01/10/2008|08:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\Mozilla
[12/10/2008|23:18] C:\DOCUME~1\Jean-Luc\APPLIC~1\Uniblue
[14/12/2008|14:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\uTorrent
[03/11/2008|13:09] C:\DOCUME~1\Jean-Luc\APPLIC~1\vlc
[21/12/2008|00:56] C:\DOCUME~1\Jean-Luc\APPLIC~1\Windows Live Writer
[07/10/2008|15:23] C:\DOCUME~1\Jean-Luc\APPLIC~1\WinRAR
[03/12/2008|01:18] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[03/12/2008|01:18] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/01/2009 12:15][--ah-----] C:\WINDOWS\tasks\SA.DAT
[19/08/2004 21:01][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[23/12/2008 08:07][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
--------------------\\ Listing des dossiers dans C:\Program Files
[02/01/2009|19:20] C:\Program Files\Adobe
[28/10/2008|23:21] C:\Program Files\Apple Software Update
[03/12/2008|02:16] C:\Program Files\Avira
[15/10/2008|17:41] C:\Program Files\AviSynth 2.5
[01/10/2008|08:37] C:\Program Files\AvRack
[16/09/2020|16:48] C:\Program Files\ComPlus Applications
[28/10/2008|01:18] C:\Program Files\Conduit
[12/10/2008|20:50] C:\Program Files\Creative
[01/01/2009|16:02] C:\Program Files\CyberLink
[06/12/2008|12:23] C:\Program Files\Dictionnaire
[21/12/2008|15:19] C:\Program Files\Disk Cleaner
[24/12/2008|18:19] C:\Program Files\Donkey Control
[11/11/2008|18:40] C:\Program Files\DVD Decrypter
[08/10/2008|00:45] C:\Program Files\DVICO
[22/12/2008|17:19] C:\Program Files\EasyPHP 2.0b1
[15/10/2008|17:41] C:\Program Files\eRightSoft
[08/10/2008|13:52] C:\Program Files\Exact Audio Copy
[02/01/2009|19:21] C:\Program Files\Fichiers communs
[20/12/2008|22:58] C:\Program Files\GigaTribe
[24/12/2008|17:58] C:\Program Files\Home Series
[24/12/2008|18:22] C:\Program Files\Http explorer
[03/01/2009|17:22] C:\Program Files\InstallShield Installation Information
[16/12/2008|17:21] C:\Program Files\Internet Explorer
[09/10/2008|01:01] C:\Program Files\Inventel
[10/12/2008|22:03] C:\Program Files\JPEG Compression
[16/12/2008|14:27] C:\Program Files\KompoZer
[05/01/2009|12:15] C:\Program Files\lg_fwupdate
[18/10/2008|10:47] C:\Program Files\LightScribeODK
[22/12/2008|01:28] C:\Program Files\ma-config.com
[16/12/2008|13:43] C:\Program Files\Ma‹do Production
[02/12/2008|19:45] C:\Program Files\Malwarebytes' Anti-Malware
[30/12/2008|23:46] C:\Program Files\MediaInfo
[10/10/2008|22:05] C:\Program Files\Messenger
[16/12/2008|17:32] C:\Program Files\Microsoft
[16/09/2020|16:51] C:\Program Files\microsoft frontpage
[10/10/2008|21:15] C:\Program Files\Microsoft Office
[18/12/2008|20:19] C:\Program Files\Microsoft Silverlight
[10/10/2008|21:16] C:\Program Files\Microsoft Works
[07/10/2008|16:15] C:\Program Files\Monkey's Audio
[10/10/2008|22:01] C:\Program Files\Movie Maker
[05/01/2009|12:30] C:\Program Files\Mozilla Firefox
[16/09/2020|16:46] C:\Program Files\MSN
[16/09/2020|16:47] C:\Program Files\MSN Gaming Zone
[03/11/2008|17:18] C:\Program Files\MSN Messenger(2)
[10/10/2008|21:53] C:\Program Files\NetMeeting
[08/10/2008|13:42] C:\Program Files\NOS
[10/10/2008|21:53] C:\Program Files\Outlook Express
[28/10/2008|23:24] C:\Program Files\QuickTime
[03/01/2009|16:59] C:\Program Files\Realtek AC97
[01/10/2008|08:37] C:\Program Files\Realtek Sound Manager
[23/12/2008|12:28] C:\Program Files\Rico Software
[17/10/2008|01:41] C:\Program Files\Samsung
[09/10/2008|01:01] C:\Program Files\Securitoo
[16/09/2020|16:49] C:\Program Files\Services en ligne
[01/10/2008|09:15] C:\Program Files\Silicon Integrated Systems
[03/01/2009|17:23] C:\Program Files\SiS VGA Utilities V3.84
[03/01/2009|17:22] C:\Program Files\sisagp
[07/10/2008|12:39] C:\Program Files\SlySoft
[03/12/2008|01:47] C:\Program Files\Spybot - Search & Destroy
[10/10/2008|18:35] C:\Program Files\Steinberg
[07/11/2008|14:34] C:\Program Files\Trend Micro
[21/10/2008|23:06] C:\Program Files\TVersity
[21/12/2008|13:35] C:\Program Files\UnH Solutions
[16/09/2020|17:59] C:\Program Files\Uninstall Information
[03/01/2009|16:32] C:\Program Files\UsbFix
[01/10/2008|09:17] C:\Program Files\VideoLAN
[11/12/2008|21:53] C:\Program Files\vso
[01/11/2008|23:30] C:\Program Files\Wanadoo
[07/10/2008|16:15] C:\Program Files\Winamp
[17/12/2008|00:46] C:\Program Files\Windows Live
[03/01/2009|13:53] C:\Program Files\Windows Live Safety Center
[17/12/2008|00:43] C:\Program Files\Windows Live SkyDrive
[07/10/2008|16:25] C:\Program Files\Windows Media Connect 2
[09/12/2008|17:26] C:\Program Files\Windows Media Player
[04/12/2008|01:37] C:\Program Files\Windows NT
[16/09/2020|16:49] C:\Program Files\WindowsUpdate
[07/10/2008|12:49] C:\Program Files\WinRAR
[16/09/2020|16:51] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[02/01/2009|19:20] C:\Program Files\Fichiers communs\Adobe
[02/01/2009|19:21] C:\Program Files\Fichiers communs\Adobe Systems Shared
[28/10/2008|23:23] C:\Program Files\Fichiers communs\Apple
[10/10/2008|21:15] C:\Program Files\Fichiers communs\DESIGNER
[01/10/2008|09:13] C:\Program Files\Fichiers communs\InstallShield
[18/10/2008|10:47] C:\Program Files\Fichiers communs\LightScribe
[17/12/2008|00:43] C:\Program Files\Fichiers communs\Microsoft Shared
[16/09/2020|16:49] C:\Program Files\Fichiers communs\MSSoap
[16/09/2020|18:43] C:\Program Files\Fichiers communs\ODBC
[16/09/2020|16:49] C:\Program Files\Fichiers communs\Services
[16/09/2020|18:43] C:\Program Files\Fichiers communs\SpeechEngines
[10/10/2008|21:53] C:\Program Files\Fichiers communs\System
[16/12/2008|16:57] C:\Program Files\Fichiers communs\Windows Live
[03/11/2008|17:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 34 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Proxy Long Chin Ping
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-05 12:37:40
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
disk error: C:\WINDOWS\System32\
please note that you need administrator rights to perform deep scan
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Jean-Luc\Recent\Cubase Studio 4.0.1.2074 Update & SyncroSoft Crack.lnk
[F:225][D:39]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\Temp
[F:12][D:0]-> C:\DOCUME~1\Jean-Luc\Cookies
[F:11964][D:22]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/01/2009|12:38 - Option : [1]
--------------------\\ Fin du rapport a 12:38:56
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : BIOS Date: 09/07/05 09:39:51 Ver: 08.00.10
USER : Jean-Luc ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:48 Go (Free:20 Go)
D:\ (Local Disk) - NTFS - Total:137 Go (Free:34 Go)
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total:372 Go (Free:357 Go)
G:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 05/01/2009|12:35 )
--------------------\\ Listing des dossiers dans APPLIC~1
[05/01/2009|12:07] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[02/01/2009|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[02/01/2009|19:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[28/10/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/10/2008|23:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[03/12/2008|01:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8
[03/12/2008|02:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[18/10/2008|10:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[07/10/2008|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[16/11/2008|18:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EmailNotifier
[07/10/2008|20:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[22/12/2008|01:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[07/11/2008|13:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[02/12/2008|19:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[16/11/2008|18:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Megaupload
[04/11/2008|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[17/12/2008|00:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[11/12/2008|12:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[08/10/2008|13:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[18/12/2008|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Proxy Long Chin Ping
[07/10/2008|14:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SlySoft
[03/12/2008|01:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[10/10/2008|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Syncrosoft
[18/12/2008|09:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/10/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[29/10/2008|22:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[16/09/2020|16:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|15:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\4D
[24/10/2008|13:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\AccurateRip
[07/10/2008|15:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\AD ON Multimedia
[02/01/2009|19:22] C:\DOCUME~1\Jean-Luc\APPLIC~1\Adobe
[28/10/2008|23:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\Apple Computer
[15/10/2008|12:33] C:\DOCUME~1\Jean-Luc\APPLIC~1\CyberLink
[30/12/2008|20:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\dvdcss
[16/11/2008|18:03] C:\DOCUME~1\Jean-Luc\APPLIC~1\EmailNotifier
[23/12/2008|19:44] C:\DOCUME~1\Jean-Luc\APPLIC~1\FileZilla
[25/12/2008|21:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\GigaTribe
[19/12/2008|11:20] C:\DOCUME~1\Jean-Luc\APPLIC~1\GRID MESS
[09/10/2008|00:39] C:\DOCUME~1\Jean-Luc\APPLIC~1\Help
[16/09/2020|17:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\Identities
[16/12/2008|14:27] C:\DOCUME~1\Jean-Luc\APPLIC~1\KompoZer
[01/10/2008|08:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\Macromedia
[02/12/2008|19:45] C:\DOCUME~1\Jean-Luc\APPLIC~1\Malwarebytes
[03/01/2009|14:51] C:\DOCUME~1\Jean-Luc\APPLIC~1\Microsoft
[01/10/2008|08:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\Mozilla
[12/10/2008|23:18] C:\DOCUME~1\Jean-Luc\APPLIC~1\Uniblue
[14/12/2008|14:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\uTorrent
[03/11/2008|13:09] C:\DOCUME~1\Jean-Luc\APPLIC~1\vlc
[21/12/2008|00:56] C:\DOCUME~1\Jean-Luc\APPLIC~1\Windows Live Writer
[07/10/2008|15:23] C:\DOCUME~1\Jean-Luc\APPLIC~1\WinRAR
[03/12/2008|01:18] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[03/12/2008|01:18] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/01/2009 12:15][--ah-----] C:\WINDOWS\tasks\SA.DAT
[19/08/2004 21:01][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[23/12/2008 08:07][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
--------------------\\ Listing des dossiers dans C:\Program Files
[02/01/2009|19:20] C:\Program Files\Adobe
[28/10/2008|23:21] C:\Program Files\Apple Software Update
[03/12/2008|02:16] C:\Program Files\Avira
[15/10/2008|17:41] C:\Program Files\AviSynth 2.5
[01/10/2008|08:37] C:\Program Files\AvRack
[16/09/2020|16:48] C:\Program Files\ComPlus Applications
[28/10/2008|01:18] C:\Program Files\Conduit
[12/10/2008|20:50] C:\Program Files\Creative
[01/01/2009|16:02] C:\Program Files\CyberLink
[06/12/2008|12:23] C:\Program Files\Dictionnaire
[21/12/2008|15:19] C:\Program Files\Disk Cleaner
[24/12/2008|18:19] C:\Program Files\Donkey Control
[11/11/2008|18:40] C:\Program Files\DVD Decrypter
[08/10/2008|00:45] C:\Program Files\DVICO
[22/12/2008|17:19] C:\Program Files\EasyPHP 2.0b1
[15/10/2008|17:41] C:\Program Files\eRightSoft
[08/10/2008|13:52] C:\Program Files\Exact Audio Copy
[02/01/2009|19:21] C:\Program Files\Fichiers communs
[20/12/2008|22:58] C:\Program Files\GigaTribe
[24/12/2008|17:58] C:\Program Files\Home Series
[24/12/2008|18:22] C:\Program Files\Http explorer
[03/01/2009|17:22] C:\Program Files\InstallShield Installation Information
[16/12/2008|17:21] C:\Program Files\Internet Explorer
[09/10/2008|01:01] C:\Program Files\Inventel
[10/12/2008|22:03] C:\Program Files\JPEG Compression
[16/12/2008|14:27] C:\Program Files\KompoZer
[05/01/2009|12:15] C:\Program Files\lg_fwupdate
[18/10/2008|10:47] C:\Program Files\LightScribeODK
[22/12/2008|01:28] C:\Program Files\ma-config.com
[16/12/2008|13:43] C:\Program Files\Ma‹do Production
[02/12/2008|19:45] C:\Program Files\Malwarebytes' Anti-Malware
[30/12/2008|23:46] C:\Program Files\MediaInfo
[10/10/2008|22:05] C:\Program Files\Messenger
[16/12/2008|17:32] C:\Program Files\Microsoft
[16/09/2020|16:51] C:\Program Files\microsoft frontpage
[10/10/2008|21:15] C:\Program Files\Microsoft Office
[18/12/2008|20:19] C:\Program Files\Microsoft Silverlight
[10/10/2008|21:16] C:\Program Files\Microsoft Works
[07/10/2008|16:15] C:\Program Files\Monkey's Audio
[10/10/2008|22:01] C:\Program Files\Movie Maker
[05/01/2009|12:30] C:\Program Files\Mozilla Firefox
[16/09/2020|16:46] C:\Program Files\MSN
[16/09/2020|16:47] C:\Program Files\MSN Gaming Zone
[03/11/2008|17:18] C:\Program Files\MSN Messenger(2)
[10/10/2008|21:53] C:\Program Files\NetMeeting
[08/10/2008|13:42] C:\Program Files\NOS
[10/10/2008|21:53] C:\Program Files\Outlook Express
[28/10/2008|23:24] C:\Program Files\QuickTime
[03/01/2009|16:59] C:\Program Files\Realtek AC97
[01/10/2008|08:37] C:\Program Files\Realtek Sound Manager
[23/12/2008|12:28] C:\Program Files\Rico Software
[17/10/2008|01:41] C:\Program Files\Samsung
[09/10/2008|01:01] C:\Program Files\Securitoo
[16/09/2020|16:49] C:\Program Files\Services en ligne
[01/10/2008|09:15] C:\Program Files\Silicon Integrated Systems
[03/01/2009|17:23] C:\Program Files\SiS VGA Utilities V3.84
[03/01/2009|17:22] C:\Program Files\sisagp
[07/10/2008|12:39] C:\Program Files\SlySoft
[03/12/2008|01:47] C:\Program Files\Spybot - Search & Destroy
[10/10/2008|18:35] C:\Program Files\Steinberg
[07/11/2008|14:34] C:\Program Files\Trend Micro
[21/10/2008|23:06] C:\Program Files\TVersity
[21/12/2008|13:35] C:\Program Files\UnH Solutions
[16/09/2020|17:59] C:\Program Files\Uninstall Information
[03/01/2009|16:32] C:\Program Files\UsbFix
[01/10/2008|09:17] C:\Program Files\VideoLAN
[11/12/2008|21:53] C:\Program Files\vso
[01/11/2008|23:30] C:\Program Files\Wanadoo
[07/10/2008|16:15] C:\Program Files\Winamp
[17/12/2008|00:46] C:\Program Files\Windows Live
[03/01/2009|13:53] C:\Program Files\Windows Live Safety Center
[17/12/2008|00:43] C:\Program Files\Windows Live SkyDrive
[07/10/2008|16:25] C:\Program Files\Windows Media Connect 2
[09/12/2008|17:26] C:\Program Files\Windows Media Player
[04/12/2008|01:37] C:\Program Files\Windows NT
[16/09/2020|16:49] C:\Program Files\WindowsUpdate
[07/10/2008|12:49] C:\Program Files\WinRAR
[16/09/2020|16:51] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[02/01/2009|19:20] C:\Program Files\Fichiers communs\Adobe
[02/01/2009|19:21] C:\Program Files\Fichiers communs\Adobe Systems Shared
[28/10/2008|23:23] C:\Program Files\Fichiers communs\Apple
[10/10/2008|21:15] C:\Program Files\Fichiers communs\DESIGNER
[01/10/2008|09:13] C:\Program Files\Fichiers communs\InstallShield
[18/10/2008|10:47] C:\Program Files\Fichiers communs\LightScribe
[17/12/2008|00:43] C:\Program Files\Fichiers communs\Microsoft Shared
[16/09/2020|16:49] C:\Program Files\Fichiers communs\MSSoap
[16/09/2020|18:43] C:\Program Files\Fichiers communs\ODBC
[16/09/2020|16:49] C:\Program Files\Fichiers communs\Services
[16/09/2020|18:43] C:\Program Files\Fichiers communs\SpeechEngines
[10/10/2008|21:53] C:\Program Files\Fichiers communs\System
[16/12/2008|16:57] C:\Program Files\Fichiers communs\Windows Live
[03/11/2008|17:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 34 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Proxy Long Chin Ping
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-05 12:37:40
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
disk error: C:\WINDOWS\System32\
please note that you need administrator rights to perform deep scan
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Jean-Luc\Recent\Cubase Studio 4.0.1.2074 Update & SyncroSoft Crack.lnk
[F:225][D:39]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\Temp
[F:12][D:0]-> C:\DOCUME~1\Jean-Luc\Cookies
[F:11964][D:22]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/01/2009|12:38 - Option : [1]
--------------------\\ Fin du rapport a 12:38:56
Re,
Vire sa:C:\DOCUME~1\Jean-Luc\Recent\Cubase Studio 4.0.1.2074 Update & SyncroSoft Crack.lnk
▶ Relance Lop S&D
▶ Choisis cette fois ci l'Option 2 ( Suppression )
▶ Ne ferme pas la fenêtre lors de la suppression !
▶ Poste le rapport généré ( C:\lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,
Nouvelle tâche, tape explorer.exe et valide )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Vire sa:C:\DOCUME~1\Jean-Luc\Recent\Cubase Studio 4.0.1.2074 Update & SyncroSoft Crack.lnk
▶ Relance Lop S&D
▶ Choisis cette fois ci l'Option 2 ( Suppression )
▶ Ne ferme pas la fenêtre lors de la suppression !
▶ Poste le rapport généré ( C:\lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,
Nouvelle tâche, tape explorer.exe et valide )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : BIOS Date: 09/07/05 09:39:51 Ver: 08.00.10
USER : Jean-Luc ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:48 Go (Free:20 Go)
D:\ (Local Disk) - NTFS - Total:137 Go (Free:34 Go)
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total:372 Go (Free:357 Go)
G:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 05/01/2009|13:00 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Proxy Long Chin Ping
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[05/01/2009|12:07] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[02/01/2009|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[02/01/2009|19:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[28/10/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/10/2008|23:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[03/12/2008|01:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8
[03/12/2008|02:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[18/10/2008|10:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[07/10/2008|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[16/11/2008|18:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EmailNotifier
[07/10/2008|20:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[22/12/2008|01:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[07/11/2008|13:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[02/12/2008|19:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[16/11/2008|18:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Megaupload
[04/11/2008|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[17/12/2008|00:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[11/12/2008|12:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[08/10/2008|13:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[07/10/2008|14:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SlySoft
[03/12/2008|01:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[10/10/2008|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Syncrosoft
[18/12/2008|09:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/10/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[29/10/2008|22:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[16/09/2020|16:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|15:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\4D
[24/10/2008|13:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\AccurateRip
[07/10/2008|15:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\AD ON Multimedia
[02/01/2009|19:22] C:\DOCUME~1\Jean-Luc\APPLIC~1\Adobe
[28/10/2008|23:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\Apple Computer
[15/10/2008|12:33] C:\DOCUME~1\Jean-Luc\APPLIC~1\CyberLink
[30/12/2008|20:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\dvdcss
[16/11/2008|18:03] C:\DOCUME~1\Jean-Luc\APPLIC~1\EmailNotifier
[23/12/2008|19:44] C:\DOCUME~1\Jean-Luc\APPLIC~1\FileZilla
[25/12/2008|21:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\GigaTribe
[19/12/2008|11:20] C:\DOCUME~1\Jean-Luc\APPLIC~1\GRID MESS
[09/10/2008|00:39] C:\DOCUME~1\Jean-Luc\APPLIC~1\Help
[16/09/2020|17:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\Identities
[16/12/2008|14:27] C:\DOCUME~1\Jean-Luc\APPLIC~1\KompoZer
[01/10/2008|08:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\Macromedia
[02/12/2008|19:45] C:\DOCUME~1\Jean-Luc\APPLIC~1\Malwarebytes
[03/01/2009|14:51] C:\DOCUME~1\Jean-Luc\APPLIC~1\Microsoft
[01/10/2008|08:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\Mozilla
[12/10/2008|23:18] C:\DOCUME~1\Jean-Luc\APPLIC~1\Uniblue
[14/12/2008|14:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\uTorrent
[03/11/2008|13:09] C:\DOCUME~1\Jean-Luc\APPLIC~1\vlc
[21/12/2008|00:56] C:\DOCUME~1\Jean-Luc\APPLIC~1\Windows Live Writer
[07/10/2008|15:23] C:\DOCUME~1\Jean-Luc\APPLIC~1\WinRAR
[03/12/2008|01:18] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[03/12/2008|01:18] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/01/2009 12:15][--ah-----] C:\WINDOWS\tasks\SA.DAT
[19/08/2004 21:01][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[23/12/2008 08:07][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
--------------------\\ Listing des dossiers dans C:\Program Files
[02/01/2009|19:20] C:\Program Files\Adobe
[28/10/2008|23:21] C:\Program Files\Apple Software Update
[03/12/2008|02:16] C:\Program Files\Avira
[15/10/2008|17:41] C:\Program Files\AviSynth 2.5
[01/10/2008|08:37] C:\Program Files\AvRack
[16/09/2020|16:48] C:\Program Files\ComPlus Applications
[28/10/2008|01:18] C:\Program Files\Conduit
[12/10/2008|20:50] C:\Program Files\Creative
[01/01/2009|16:02] C:\Program Files\CyberLink
[06/12/2008|12:23] C:\Program Files\Dictionnaire
[21/12/2008|15:19] C:\Program Files\Disk Cleaner
[24/12/2008|18:19] C:\Program Files\Donkey Control
[11/11/2008|18:40] C:\Program Files\DVD Decrypter
[08/10/2008|00:45] C:\Program Files\DVICO
[22/12/2008|17:19] C:\Program Files\EasyPHP 2.0b1
[15/10/2008|17:41] C:\Program Files\eRightSoft
[08/10/2008|13:52] C:\Program Files\Exact Audio Copy
[02/01/2009|19:21] C:\Program Files\Fichiers communs
[20/12/2008|22:58] C:\Program Files\GigaTribe
[24/12/2008|17:58] C:\Program Files\Home Series
[24/12/2008|18:22] C:\Program Files\Http explorer
[03/01/2009|17:22] C:\Program Files\InstallShield Installation Information
[16/12/2008|17:21] C:\Program Files\Internet Explorer
[09/10/2008|01:01] C:\Program Files\Inventel
[10/12/2008|22:03] C:\Program Files\JPEG Compression
[16/12/2008|14:27] C:\Program Files\KompoZer
[05/01/2009|12:15] C:\Program Files\lg_fwupdate
[18/10/2008|10:47] C:\Program Files\LightScribeODK
[22/12/2008|01:28] C:\Program Files\ma-config.com
[16/12/2008|13:43] C:\Program Files\Ma‹do Production
[02/12/2008|19:45] C:\Program Files\Malwarebytes' Anti-Malware
[30/12/2008|23:46] C:\Program Files\MediaInfo
[10/10/2008|22:05] C:\Program Files\Messenger
[16/12/2008|17:32] C:\Program Files\Microsoft
[16/09/2020|16:51] C:\Program Files\microsoft frontpage
[10/10/2008|21:15] C:\Program Files\Microsoft Office
[18/12/2008|20:19] C:\Program Files\Microsoft Silverlight
[10/10/2008|21:16] C:\Program Files\Microsoft Works
[07/10/2008|16:15] C:\Program Files\Monkey's Audio
[10/10/2008|22:01] C:\Program Files\Movie Maker
[05/01/2009|12:30] C:\Program Files\Mozilla Firefox
[16/09/2020|16:46] C:\Program Files\MSN
[16/09/2020|16:47] C:\Program Files\MSN Gaming Zone
[03/11/2008|17:18] C:\Program Files\MSN Messenger(2)
[10/10/2008|21:53] C:\Program Files\NetMeeting
[08/10/2008|13:42] C:\Program Files\NOS
[10/10/2008|21:53] C:\Program Files\Outlook Express
[28/10/2008|23:24] C:\Program Files\QuickTime
[03/01/2009|16:59] C:\Program Files\Realtek AC97
[01/10/2008|08:37] C:\Program Files\Realtek Sound Manager
[23/12/2008|12:28] C:\Program Files\Rico Software
[17/10/2008|01:41] C:\Program Files\Samsung
[09/10/2008|01:01] C:\Program Files\Securitoo
[16/09/2020|16:49] C:\Program Files\Services en ligne
[01/10/2008|09:15] C:\Program Files\Silicon Integrated Systems
[03/01/2009|17:23] C:\Program Files\SiS VGA Utilities V3.84
[03/01/2009|17:22] C:\Program Files\sisagp
[07/10/2008|12:39] C:\Program Files\SlySoft
[03/12/2008|01:47] C:\Program Files\Spybot - Search & Destroy
[10/10/2008|18:35] C:\Program Files\Steinberg
[07/11/2008|14:34] C:\Program Files\Trend Micro
[21/10/2008|23:06] C:\Program Files\TVersity
[21/12/2008|13:35] C:\Program Files\UnH Solutions
[16/09/2020|17:59] C:\Program Files\Uninstall Information
[03/01/2009|16:32] C:\Program Files\UsbFix
[01/10/2008|09:17] C:\Program Files\VideoLAN
[11/12/2008|21:53] C:\Program Files\vso
[01/11/2008|23:30] C:\Program Files\Wanadoo
[07/10/2008|16:15] C:\Program Files\Winamp
[17/12/2008|00:46] C:\Program Files\Windows Live
[03/01/2009|13:53] C:\Program Files\Windows Live Safety Center
[17/12/2008|00:43] C:\Program Files\Windows Live SkyDrive
[07/10/2008|16:25] C:\Program Files\Windows Media Connect 2
[09/12/2008|17:26] C:\Program Files\Windows Media Player
[04/12/2008|01:37] C:\Program Files\Windows NT
[16/09/2020|16:49] C:\Program Files\WindowsUpdate
[07/10/2008|12:49] C:\Program Files\WinRAR
[16/09/2020|16:51] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[02/01/2009|19:20] C:\Program Files\Fichiers communs\Adobe
[02/01/2009|19:21] C:\Program Files\Fichiers communs\Adobe Systems Shared
[28/10/2008|23:23] C:\Program Files\Fichiers communs\Apple
[10/10/2008|21:15] C:\Program Files\Fichiers communs\DESIGNER
[01/10/2008|09:13] C:\Program Files\Fichiers communs\InstallShield
[18/10/2008|10:47] C:\Program Files\Fichiers communs\LightScribe
[17/12/2008|00:43] C:\Program Files\Fichiers communs\Microsoft Shared
[16/09/2020|16:49] C:\Program Files\Fichiers communs\MSSoap
[16/09/2020|18:43] C:\Program Files\Fichiers communs\ODBC
[16/09/2020|16:49] C:\Program Files\Fichiers communs\Services
[16/09/2020|18:43] C:\Program Files\Fichiers communs\SpeechEngines
[10/10/2008|21:53] C:\Program Files\Fichiers communs\System
[16/12/2008|16:57] C:\Program Files\Fichiers communs\Windows Live
[03/11/2008|17:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 34 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-05 13:02:54
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
disk error: C:\WINDOWS\System32\
please note that you need administrator rights to perform deep scan
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Jean-Luc\Recent\Cubase Studio 4.0.1.2074 Update & SyncroSoft Crack.lnk
[F:225][D:39]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\Temp
[F:12][D:0]-> C:\DOCUME~1\Jean-Luc\Cookies
[F:11964][D:22]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/01/2009|12:38 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 05/01/2009|13:03 - Option : [2]
--------------------\\ Fin du rapport a 13:03:43
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : BIOS Date: 09/07/05 09:39:51 Ver: 08.00.10
USER : Jean-Luc ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:48 Go (Free:20 Go)
D:\ (Local Disk) - NTFS - Total:137 Go (Free:34 Go)
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total:372 Go (Free:357 Go)
G:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 05/01/2009|13:00 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Proxy Long Chin Ping
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[05/01/2009|12:07] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[02/01/2009|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[02/01/2009|19:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[28/10/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/10/2008|23:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[03/12/2008|01:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg8
[03/12/2008|02:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[18/10/2008|10:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[07/10/2008|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[16/11/2008|18:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EmailNotifier
[07/10/2008|20:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[22/12/2008|01:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[07/11/2008|13:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[02/12/2008|19:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[16/11/2008|18:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Megaupload
[04/11/2008|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[17/12/2008|00:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[11/12/2008|12:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[08/10/2008|13:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[07/10/2008|14:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SlySoft
[03/12/2008|01:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[10/10/2008|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Syncrosoft
[18/12/2008|09:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/10/2008|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[29/10/2008|22:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[16/09/2020|16:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2008|15:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\4D
[24/10/2008|13:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\AccurateRip
[07/10/2008|15:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\AD ON Multimedia
[02/01/2009|19:22] C:\DOCUME~1\Jean-Luc\APPLIC~1\Adobe
[28/10/2008|23:26] C:\DOCUME~1\Jean-Luc\APPLIC~1\Apple Computer
[15/10/2008|12:33] C:\DOCUME~1\Jean-Luc\APPLIC~1\CyberLink
[30/12/2008|20:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\dvdcss
[16/11/2008|18:03] C:\DOCUME~1\Jean-Luc\APPLIC~1\EmailNotifier
[23/12/2008|19:44] C:\DOCUME~1\Jean-Luc\APPLIC~1\FileZilla
[25/12/2008|21:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\GigaTribe
[19/12/2008|11:20] C:\DOCUME~1\Jean-Luc\APPLIC~1\GRID MESS
[09/10/2008|00:39] C:\DOCUME~1\Jean-Luc\APPLIC~1\Help
[16/09/2020|17:59] C:\DOCUME~1\Jean-Luc\APPLIC~1\Identities
[16/12/2008|14:27] C:\DOCUME~1\Jean-Luc\APPLIC~1\KompoZer
[01/10/2008|08:21] C:\DOCUME~1\Jean-Luc\APPLIC~1\Macromedia
[02/12/2008|19:45] C:\DOCUME~1\Jean-Luc\APPLIC~1\Malwarebytes
[03/01/2009|14:51] C:\DOCUME~1\Jean-Luc\APPLIC~1\Microsoft
[01/10/2008|08:16] C:\DOCUME~1\Jean-Luc\APPLIC~1\Mozilla
[12/10/2008|23:18] C:\DOCUME~1\Jean-Luc\APPLIC~1\Uniblue
[14/12/2008|14:34] C:\DOCUME~1\Jean-Luc\APPLIC~1\uTorrent
[03/11/2008|13:09] C:\DOCUME~1\Jean-Luc\APPLIC~1\vlc
[21/12/2008|00:56] C:\DOCUME~1\Jean-Luc\APPLIC~1\Windows Live Writer
[07/10/2008|15:23] C:\DOCUME~1\Jean-Luc\APPLIC~1\WinRAR
[03/12/2008|01:18] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[03/12/2008|01:18] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[05/01/2009 12:15][--ah-----] C:\WINDOWS\tasks\SA.DAT
[19/08/2004 21:01][-r-h-----] C:\WINDOWS\tasks\desktop.ini
[23/12/2008 08:07][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
--------------------\\ Listing des dossiers dans C:\Program Files
[02/01/2009|19:20] C:\Program Files\Adobe
[28/10/2008|23:21] C:\Program Files\Apple Software Update
[03/12/2008|02:16] C:\Program Files\Avira
[15/10/2008|17:41] C:\Program Files\AviSynth 2.5
[01/10/2008|08:37] C:\Program Files\AvRack
[16/09/2020|16:48] C:\Program Files\ComPlus Applications
[28/10/2008|01:18] C:\Program Files\Conduit
[12/10/2008|20:50] C:\Program Files\Creative
[01/01/2009|16:02] C:\Program Files\CyberLink
[06/12/2008|12:23] C:\Program Files\Dictionnaire
[21/12/2008|15:19] C:\Program Files\Disk Cleaner
[24/12/2008|18:19] C:\Program Files\Donkey Control
[11/11/2008|18:40] C:\Program Files\DVD Decrypter
[08/10/2008|00:45] C:\Program Files\DVICO
[22/12/2008|17:19] C:\Program Files\EasyPHP 2.0b1
[15/10/2008|17:41] C:\Program Files\eRightSoft
[08/10/2008|13:52] C:\Program Files\Exact Audio Copy
[02/01/2009|19:21] C:\Program Files\Fichiers communs
[20/12/2008|22:58] C:\Program Files\GigaTribe
[24/12/2008|17:58] C:\Program Files\Home Series
[24/12/2008|18:22] C:\Program Files\Http explorer
[03/01/2009|17:22] C:\Program Files\InstallShield Installation Information
[16/12/2008|17:21] C:\Program Files\Internet Explorer
[09/10/2008|01:01] C:\Program Files\Inventel
[10/12/2008|22:03] C:\Program Files\JPEG Compression
[16/12/2008|14:27] C:\Program Files\KompoZer
[05/01/2009|12:15] C:\Program Files\lg_fwupdate
[18/10/2008|10:47] C:\Program Files\LightScribeODK
[22/12/2008|01:28] C:\Program Files\ma-config.com
[16/12/2008|13:43] C:\Program Files\Ma‹do Production
[02/12/2008|19:45] C:\Program Files\Malwarebytes' Anti-Malware
[30/12/2008|23:46] C:\Program Files\MediaInfo
[10/10/2008|22:05] C:\Program Files\Messenger
[16/12/2008|17:32] C:\Program Files\Microsoft
[16/09/2020|16:51] C:\Program Files\microsoft frontpage
[10/10/2008|21:15] C:\Program Files\Microsoft Office
[18/12/2008|20:19] C:\Program Files\Microsoft Silverlight
[10/10/2008|21:16] C:\Program Files\Microsoft Works
[07/10/2008|16:15] C:\Program Files\Monkey's Audio
[10/10/2008|22:01] C:\Program Files\Movie Maker
[05/01/2009|12:30] C:\Program Files\Mozilla Firefox
[16/09/2020|16:46] C:\Program Files\MSN
[16/09/2020|16:47] C:\Program Files\MSN Gaming Zone
[03/11/2008|17:18] C:\Program Files\MSN Messenger(2)
[10/10/2008|21:53] C:\Program Files\NetMeeting
[08/10/2008|13:42] C:\Program Files\NOS
[10/10/2008|21:53] C:\Program Files\Outlook Express
[28/10/2008|23:24] C:\Program Files\QuickTime
[03/01/2009|16:59] C:\Program Files\Realtek AC97
[01/10/2008|08:37] C:\Program Files\Realtek Sound Manager
[23/12/2008|12:28] C:\Program Files\Rico Software
[17/10/2008|01:41] C:\Program Files\Samsung
[09/10/2008|01:01] C:\Program Files\Securitoo
[16/09/2020|16:49] C:\Program Files\Services en ligne
[01/10/2008|09:15] C:\Program Files\Silicon Integrated Systems
[03/01/2009|17:23] C:\Program Files\SiS VGA Utilities V3.84
[03/01/2009|17:22] C:\Program Files\sisagp
[07/10/2008|12:39] C:\Program Files\SlySoft
[03/12/2008|01:47] C:\Program Files\Spybot - Search & Destroy
[10/10/2008|18:35] C:\Program Files\Steinberg
[07/11/2008|14:34] C:\Program Files\Trend Micro
[21/10/2008|23:06] C:\Program Files\TVersity
[21/12/2008|13:35] C:\Program Files\UnH Solutions
[16/09/2020|17:59] C:\Program Files\Uninstall Information
[03/01/2009|16:32] C:\Program Files\UsbFix
[01/10/2008|09:17] C:\Program Files\VideoLAN
[11/12/2008|21:53] C:\Program Files\vso
[01/11/2008|23:30] C:\Program Files\Wanadoo
[07/10/2008|16:15] C:\Program Files\Winamp
[17/12/2008|00:46] C:\Program Files\Windows Live
[03/01/2009|13:53] C:\Program Files\Windows Live Safety Center
[17/12/2008|00:43] C:\Program Files\Windows Live SkyDrive
[07/10/2008|16:25] C:\Program Files\Windows Media Connect 2
[09/12/2008|17:26] C:\Program Files\Windows Media Player
[04/12/2008|01:37] C:\Program Files\Windows NT
[16/09/2020|16:49] C:\Program Files\WindowsUpdate
[07/10/2008|12:49] C:\Program Files\WinRAR
[16/09/2020|16:51] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[02/01/2009|19:20] C:\Program Files\Fichiers communs\Adobe
[02/01/2009|19:21] C:\Program Files\Fichiers communs\Adobe Systems Shared
[28/10/2008|23:23] C:\Program Files\Fichiers communs\Apple
[10/10/2008|21:15] C:\Program Files\Fichiers communs\DESIGNER
[01/10/2008|09:13] C:\Program Files\Fichiers communs\InstallShield
[18/10/2008|10:47] C:\Program Files\Fichiers communs\LightScribe
[17/12/2008|00:43] C:\Program Files\Fichiers communs\Microsoft Shared
[16/09/2020|16:49] C:\Program Files\Fichiers communs\MSSoap
[16/09/2020|18:43] C:\Program Files\Fichiers communs\ODBC
[16/09/2020|16:49] C:\Program Files\Fichiers communs\Services
[16/09/2020|18:43] C:\Program Files\Fichiers communs\SpeechEngines
[10/10/2008|21:53] C:\Program Files\Fichiers communs\System
[16/12/2008|16:57] C:\Program Files\Fichiers communs\Windows Live
[03/11/2008|17:19] C:\Program Files\Fichiers communs\WindowsLiveInstaller
--------------------\\ Process
( 34 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-05 13:02:54
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
disk error: C:\WINDOWS\System32\
please note that you need administrator rights to perform deep scan
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Jean-Luc\Recent\Cubase Studio 4.0.1.2074 Update & SyncroSoft Crack.lnk
[F:225][D:39]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\Temp
[F:12][D:0]-> C:\DOCUME~1\Jean-Luc\Cookies
[F:11964][D:22]-> C:\DOCUME~1\Jean-Luc\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 05/01/2009|12:38 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 05/01/2009|13:03 - Option : [2]
--------------------\\ Fin du rapport a 13:03:43
Re,
▶ Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
CCLEANER
▶ Lance-le. Va dans "Options" puis "Avancé",
▶ Tu décoches la case "Effacer uniquement les fichiers etc...".
▶ Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage.
▶ Tu vas dans "Registre", tu fais "Chercher des erreurs".
Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.
▶ Un tuto ( aide )
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
▶ Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.
▶ Double clique sur RSIT.exe pour lancer l'outil.
▶ Clique sur ' continue ' à l'écran Disclaimer.
▶ Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
▶ Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports
( log.txt & info.txt )
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
▶ Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
CCLEANER
▶ Lance-le. Va dans "Options" puis "Avancé",
▶ Tu décoches la case "Effacer uniquement les fichiers etc...".
▶ Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage.
▶ Tu vas dans "Registre", tu fais "Chercher des erreurs".
Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.
▶ Un tuto ( aide )
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
▶ Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.
▶ Double clique sur RSIT.exe pour lancer l'outil.
▶ Clique sur ' continue ' à l'écran Disclaimer.
▶ Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
▶ Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports
( log.txt & info.txt )
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Lors de l'analyse il me dit de stopper firefox pour nettoyer le cache. Comme j'utilise beaucoup les fonctionnalités firefox est-ce qu'il ne va pas m'effacer genre mes mot de passe enregistrés, mes onglet enregistrés etc?
L'nalyse a été faite, j'ai décoché cookies mais bon j'espère que mes mots de passe et logins ne seront pas effacés... Enfin je sais que ce n'est pas moi l'expert... Bref, j'ai une petite question avant, parmis les fichiers à supprimer y'a des documents personnels (word) avec pour extension ".lnk" C'est quoi exactement? Parce que ces fichiers je ne veux surtout pas les perdre.
J'ai lancé RSIT et je reçois comme message d'erreur (après "continue") lors de l'application:
Autolt Error
Line -1:
Error: Error parsing function call
Autolt Error
Line -1:
Error: Error parsing function call
Re,
▶ Télécharge et installe MalwareByte's Anti-Malware
Malwarebyte
▶ Mets le à jour
▶ Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
▶ Sélectionne Exécuter un examen complet si ce n'est pas déjà fait
▶ clique sur Rechercher
▶ Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok
▶ Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.
▶ Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection
▶ Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.
Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Tutoriel pour MalwareByte's
▶ Télécharge et installe MalwareByte's Anti-Malware
Malwarebyte
▶ Mets le à jour
▶ Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
▶ Sélectionne Exécuter un examen complet si ce n'est pas déjà fait
▶ clique sur Rechercher
▶ Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok
▶ Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.
▶ Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection
▶ Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.
Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Tutoriel pour MalwareByte's
Malwarebytes' Anti-Malware 1.32
Version de la base de données: 1617
Windows 5.1.2600 Service Pack 3
05/01/2009 14:36:10
mbam-log-2009-01-05 (14-36-10).txt
Type de recherche: Examen complet (C:\|D:\|F:\|)
Eléments examinés: 103620
Temps écoulé: 49 minute(s), 59 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 3
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Program Files\JPEG Compression\uninstall.exe (Rogue.Installer) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\msqpdxxmmnwysk.dll (Trojan.TDSS) -> Delete on reboot.
C:\WINDOWS\system32\drivers\msqpdxxbedyrof.sys (Trojan.Agent) -> Quarantined and deleted successfully.
Version de la base de données: 1617
Windows 5.1.2600 Service Pack 3
05/01/2009 14:36:10
mbam-log-2009-01-05 (14-36-10).txt
Type de recherche: Examen complet (C:\|D:\|F:\|)
Eléments examinés: 103620
Temps écoulé: 49 minute(s), 59 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 3
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
C:\Program Files\JPEG Compression\uninstall.exe (Rogue.Installer) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\msqpdxxmmnwysk.dll (Trojan.TDSS) -> Delete on reboot.
C:\WINDOWS\system32\drivers\msqpdxxbedyrof.sys (Trojan.Agent) -> Quarantined and deleted successfully.
Re,
Redémarre ton pc et refait un log avec sa:
▶ Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.
▶ Double clique sur RSIT.exe pour lancer l'outil.
▶ Clique sur ' continue ' à l'écran Disclaimer.
▶ Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
▶ Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports
( log.txt & info.txt )
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Redémarre ton pc et refait un log avec sa:
▶ Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.
▶ Double clique sur RSIT.exe pour lancer l'outil.
▶ Clique sur ' continue ' à l'écran Disclaimer.
▶ Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
▶ Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports
( log.txt & info.txt )
(CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Toujours le message d'erreur
Il m'affiche d'abbord "running HiJackThis" puis "Performing Registry Dump" et là un message d'erreur apparait, le même que tout à l'heure...
Il m'affiche d'abbord "running HiJackThis" puis "Performing Registry Dump" et là un message d'erreur apparait, le même que tout à l'heure...
Re,
Télécharge toolscleaner sur ton Bureau :
toolscleaner
* Double-clique sur ToolsCleaner2.exe et laisse le travailler
* Clique sur Recherche et laisse le scan se terminer.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options facultatives.
* Clique sur Quitter, pour que le rapport puisse se créer.
* Le rapport (TCleaner.txt) se trouve à la racine de votre disque dur (C:\)...colle le dans ta réponse
Télécharge toolscleaner sur ton Bureau :
toolscleaner
* Double-clique sur ToolsCleaner2.exe et laisse le travailler
* Clique sur Recherche et laisse le scan se terminer.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options facultatives.
* Clique sur Quitter, pour que le rapport puisse se créer.
* Le rapport (TCleaner.txt) se trouve à la racine de votre disque dur (C:\)...colle le dans ta réponse
[ Rapport ToolsCleaner version 2.3.0 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\lopR.txt: trouvé !
C:\UsbFix.txt: trouvé !
C:\Lop SD: trouvé !
C:\_OtMoveIt: trouvé !
C:\Rsit: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\UsbFix.lnk: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\OTMoveIt3.exe: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\Rsit.exe: trouvé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix: trouvé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix\UsbFix.lnk: trouvé !
C:\Program Files\UsbFix: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\Program Files\UsbFix\UsbFix.exe: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\HijackThis.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\lopR.txt: supprimé !
C:\UsbFix.txt: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\UsbFix.lnk: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\OTMoveIt3.exe: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\Rsit.exe: supprimé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix\UsbFix.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Program Files\UsbFix\UsbFix.exe: supprimé !
C:\Lop SD: supprimé !
C:\_OtMoveIt: supprimé !
C:\Rsit: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix: supprimé !
C:\Program Files\UsbFix: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
-->- Recherche:
C:\lopR.txt: trouvé !
C:\UsbFix.txt: trouvé !
C:\Lop SD: trouvé !
C:\_OtMoveIt: trouvé !
C:\Rsit: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\UsbFix.lnk: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\OTMoveIt3.exe: trouvé !
C:\Documents and Settings\Jean-Luc\Bureau\Rsit.exe: trouvé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix: trouvé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix\UsbFix.lnk: trouvé !
C:\Program Files\UsbFix: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\Program Files\UsbFix\UsbFix.exe: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\HijackThis.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\lopR.txt: supprimé !
C:\UsbFix.txt: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\UsbFix.lnk: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\OTMoveIt3.exe: supprimé !
C:\Documents and Settings\Jean-Luc\Bureau\Rsit.exe: supprimé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix\UsbFix.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Program Files\UsbFix\UsbFix.exe: supprimé !
C:\Lop SD: supprimé !
C:\_OtMoveIt: supprimé !
C:\Rsit: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\Jean-Luc\Menu Démarrer\Programmes\UsbFix: supprimé !
C:\Program Files\UsbFix: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !