Supprimer SpyProtector !
Résolu
Quiiick
Messages postés
81
Date d'inscription
Statut
Membre
Dernière intervention
-
loloetseb Messages postés 5508 Date d'inscription Statut Membre Dernière intervention -
loloetseb Messages postés 5508 Date d'inscription Statut Membre Dernière intervention -
A voir également:
- Supprimer SpyProtector !
- Supprimer rond bleu whatsapp - Guide
- Supprimer une page word - Guide
- Supprimer pub youtube - Accueil - Streaming
- Supprimer compte instagram - Guide
- Fichier impossible à supprimer - Guide
12 réponses
Salut,
▶ Télécharge hijackthis
▶ Enregistre la cible sous .... "le bureau"
▶ Fais un double-clic sur "HJTInstall.exe" afin de lancer l'installation
▶ Clique sur Install ensuite sur "I Accept"
▶ Clique sur" Do a scan system and save log file"
▶ Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse
▶ Tuto hijackthis(Merci à Balltrap34)
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
▶ Télécharge hijackthis
▶ Enregistre la cible sous .... "le bureau"
▶ Fais un double-clic sur "HJTInstall.exe" afin de lancer l'installation
▶ Clique sur Install ensuite sur "I Accept"
▶ Clique sur" Do a scan system and save log file"
▶ Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse
▶ Tuto hijackthis(Merci à Balltrap34)
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:10:25, on 10/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\PROGRA~1\LAUNCH~1\LManager.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
C:\Program Files\Softwin\BitDefender10\bdagent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.spyprotector-pro.com/securitypage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://sgonlinescan.com/sg1/1/10156/?a=1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: EoBho - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - (no file)
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [PCLEUSBTip] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\SOUFIYANE\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O20 - AppInit_DLLs: C:\WINDOWS\System32\cryptnet32.dll
O20 - Winlogon Notify: 98937fe8509 - C:\WINDOWS\System32\cryptnet32.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Droppix Service - Unknown owner - C:\Program Files\Fichiers communs\Droppix\DxService.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
O23 - Service: WEP/WPA-PMK key recovery service (WZCOOK) - Unknown owner - C:\Documents and Settings\Propriétaire\Bureau\logiciel aircrak\aircrack-2.41\aircrack-2.41\win32\wzcook.exe (file missing)
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
Scan saved at 23:10:25, on 10/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\PROGRA~1\LAUNCH~1\LManager.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
C:\Program Files\Softwin\BitDefender10\bdagent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.spyprotector-pro.com/securitypage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://sgonlinescan.com/sg1/1/10156/?a=1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: EoBho - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - (no file)
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~1\bdmcon.exe
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [PCLEUSBTip] C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\SOUFIYANE\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: GlobeTrotter Connect.lnk = C:\Program Files\Bouygues\GlobeTrotter Connect\GlobeTrotter Connect.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_0_3_1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O20 - AppInit_DLLs: C:\WINDOWS\System32\cryptnet32.dll
O20 - Winlogon Notify: 98937fe8509 - C:\WINDOWS\System32\cryptnet32.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Droppix Service - Unknown owner - C:\Program Files\Fichiers communs\Droppix\DxService.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
O23 - Service: WEP/WPA-PMK key recovery service (WZCOOK) - Unknown owner - C:\Documents and Settings\Propriétaire\Bureau\logiciel aircrak\aircrack-2.41\aircrack-2.41\win32\wzcook.exe (file missing)
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
Bonjour, J'aile même problème.
Ci-dessous le bloc-notes.
Merci de vore aide précieuse.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:05:14, on 11/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Documents and Settings\Administrateur\Application Data\lsascs.exe
C:\WINDOWS\system32\hlihsmon.exe
C:\Program Files\EoRezo\EoEngine.exe
C:\Documents and Settings\Administrateur\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ppcbooster\ppcb_32.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\regsvr32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eo.st
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: &Research - {0B014B81-4E12-46F9-806F-55867AF8FD3C} - C:\WINDOWS\system32\winsystems.dll
O2 - BHO: adsoftinc - {2ea54526-fda6-188b-fde9-da0676196271} - C:\WINDOWS\system32\nsw35.dll
O2 - BHO: adsoftinc browser enhancer - {5430AFA6-8AC2-6EDB-8C1F-013E2FA3FF47} - C:\WINDOWS\system32\ohsqzobqyrj.dll
O2 - BHO: TBSB05288 - {6714ADBD-C6C1-42A8-BD84-9C9339059421} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: EoBHO - {C7B76B90-3455-4AE6-A752-EAC4D19689E5} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
O2 - BHO: (no name) - {d25513b2-f11b-45de-87b3-11dc8e48f8d7} - C:\WINDOWS\system32\dolemiju.dll
O2 - BHO: {6febfecd-7fe7-ea19-da54-c6785f25a49e} - {e94a52f5-876c-45ad-91ae-7ef7dcefbef6} - C:\WINDOWS\system32\eetfwx.dll
O3 - Toolbar: ECO Bar - {10000000-1000-1000-1000-100000000000} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ripemodado] Rundll32.exe "C:\WINDOWS\system32\kohirovu.dll",s
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Administrateur\Application Data\lsascs.exe
O4 - HKLM\..\Run: [hlihsmon] "C:\WINDOWS\system32\hlihsmon.exe"
O4 - HKLM\..\Run: [kkmkxrgdvtoq] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\ohsqzobqyrj.dll"
O4 - HKLM\..\Run: [EoEngine] "C:\Program Files\EoRezo\EoEngine.exe"
O4 - HKLM\..\Run: [SoftwareHelper] C:\Documents and Settings\Administrateur\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
O4 - HKLM\..\Run: [a48ba81b] rundll32.exe "C:\WINDOWS\system32\miporime.dll",b
O4 - HKLM\..\Run: [CPMa7b89b87] Rundll32.exe "c:\windows\system32\reposoku.dll",a
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [ripemodado] Rundll32.exe "C:\WINDOWS\system32\kohirovu.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Startup: p2pmax.lnk = C:\Program Files\p2pmax\p2pmax.exe
O4 - Startup: ppcb_32.lnk = C:\Program Files\ppcbooster\ppcb_32.exe
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: Lancement rapide de Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\system32\kiyivaro.dll eetfwx.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\Syst
O20 - Winlogon Notify: a48ba8b4511 - C:\WINDOWS\System32\dpnhupnp32.dll
O20 - Winlogon Notify: a48ba8b4515 - C:\WINDOWS\System32\dpserial32.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\reposoku.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\reposoku.dll
Ci-dessous le bloc-notes.
Merci de vore aide précieuse.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:05:14, on 11/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Documents and Settings\Administrateur\Application Data\lsascs.exe
C:\WINDOWS\system32\hlihsmon.exe
C:\Program Files\EoRezo\EoEngine.exe
C:\Documents and Settings\Administrateur\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ppcbooster\ppcb_32.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\regsvr32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eo.st
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: &Research - {0B014B81-4E12-46F9-806F-55867AF8FD3C} - C:\WINDOWS\system32\winsystems.dll
O2 - BHO: adsoftinc - {2ea54526-fda6-188b-fde9-da0676196271} - C:\WINDOWS\system32\nsw35.dll
O2 - BHO: adsoftinc browser enhancer - {5430AFA6-8AC2-6EDB-8C1F-013E2FA3FF47} - C:\WINDOWS\system32\ohsqzobqyrj.dll
O2 - BHO: TBSB05288 - {6714ADBD-C6C1-42A8-BD84-9C9339059421} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: EoBHO - {C7B76B90-3455-4AE6-A752-EAC4D19689E5} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
O2 - BHO: (no name) - {d25513b2-f11b-45de-87b3-11dc8e48f8d7} - C:\WINDOWS\system32\dolemiju.dll
O2 - BHO: {6febfecd-7fe7-ea19-da54-c6785f25a49e} - {e94a52f5-876c-45ad-91ae-7ef7dcefbef6} - C:\WINDOWS\system32\eetfwx.dll
O3 - Toolbar: ECO Bar - {10000000-1000-1000-1000-100000000000} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ripemodado] Rundll32.exe "C:\WINDOWS\system32\kohirovu.dll",s
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Administrateur\Application Data\lsascs.exe
O4 - HKLM\..\Run: [hlihsmon] "C:\WINDOWS\system32\hlihsmon.exe"
O4 - HKLM\..\Run: [kkmkxrgdvtoq] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\ohsqzobqyrj.dll"
O4 - HKLM\..\Run: [EoEngine] "C:\Program Files\EoRezo\EoEngine.exe"
O4 - HKLM\..\Run: [SoftwareHelper] C:\Documents and Settings\Administrateur\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
O4 - HKLM\..\Run: [a48ba81b] rundll32.exe "C:\WINDOWS\system32\miporime.dll",b
O4 - HKLM\..\Run: [CPMa7b89b87] Rundll32.exe "c:\windows\system32\reposoku.dll",a
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [ripemodado] Rundll32.exe "C:\WINDOWS\system32\kohirovu.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Startup: p2pmax.lnk = C:\Program Files\p2pmax\p2pmax.exe
O4 - Startup: ppcb_32.lnk = C:\Program Files\ppcbooster\ppcb_32.exe
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: Lancement rapide de Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\system32\kiyivaro.dll eetfwx.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpnhupnp32.dll C:\WINDOWS\System32\dpserial32.dll C:\WINDOWS\Syst
O20 - Winlogon Notify: a48ba8b4511 - C:\WINDOWS\System32\dpnhupnp32.dll
O20 - Winlogon Notify: a48ba8b4515 - C:\WINDOWS\System32\dpserial32.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\reposoku.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\reposoku.dll
Re,
==>>Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.<<===
!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!
▶ Double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
▶ Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
▶ Choisis l'option 1 ( "recherche") et tapes "entrée" .
▶Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
de son contenu dans ta prochaine réponse ...
( le rapport est en outre sauvegardé ici -> C:\TB.txt )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Tutoriel Toolbard-S&D
==>>Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.<<===
!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!
▶ Double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
▶ Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
▶ Choisis l'option 1 ( "recherche") et tapes "entrée" .
▶Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
de son contenu dans ta prochaine réponse ...
( le rapport est en outre sauvegardé ici -> C:\TB.txt )
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Tutoriel Toolbard-S&D
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) III Mobile CPU 1000MHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A05
USER : Meleton ( Administrator )
BOOT : Normal boot
Antivirus : PC Tools AntiVirus 5.0.1.1 5.0.1.1 (Activated)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:31 Go)
D:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 24/01/2009| 9:25 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\DOCUME~1\Meleton\LOCALS~1\Temp\nsr8.tmp
C:\DOCUME~1\Meleton\LOCALS~1\Temp\nss4.tmp
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.spy-protector-pro.com/securitypage"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"startpage"="http://www.spy-protector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 24/01/2009| 9:27 - Option : [1]
-----------\\ Fin du rapport a 9:27:08,29
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) III Mobile CPU 1000MHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A05
USER : Meleton ( Administrator )
BOOT : Normal boot
Antivirus : PC Tools AntiVirus 5.0.1.1 5.0.1.1 (Activated)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:31 Go)
D:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 24/01/2009| 9:25 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\DOCUME~1\Meleton\LOCALS~1\Temp\nsr8.tmp
C:\DOCUME~1\Meleton\LOCALS~1\Temp\nss4.tmp
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.spy-protector-pro.com/securitypage"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"startpage"="http://www.spy-protector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 24/01/2009| 9:27 - Option : [1]
-----------\\ Fin du rapport a 9:27:08,29
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Bonjour,
Je vous joins le rapport de TOOLBAR.
Merci infiniment de votre aide.
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.66GHz )
BIOS : PhoenixBIOS 4.0 Release 6.0
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:7 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 11/01/2009|15:10 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\WINDOWS\iun6002.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ICD1.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nsj51.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nsx27.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nsz31.tmp
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://eo.st"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"startpage"="http://www.spyprotector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home"
--------------------\\ Recherche d'autres infections
--------------------\\ ROGUES ..
C:\DOCUME~1\ADMINI~1\MENUDM~1\Antivirus 2009
C:\PROGRA~1\Antivirus 2009
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX06.970\crack.exe
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX06.970\crack.nfo
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX38.521\crack
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX38.521\crack\crack.exe
C:\DOCUME~1\ADMINI~1\Mes documents\LimeWire\Saved\norton antivirus 2009 crack by ZWT.zip
1 - "C:\ToolBar SD\TB_1.txt" - 11/01/2009|15:18 - Option : [1]
-----------\\ Fin du rapport a 15:18:44,54
Je vous joins le rapport de TOOLBAR.
Merci infiniment de votre aide.
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.66GHz )
BIOS : PhoenixBIOS 4.0 Release 6.0
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:7 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 11/01/2009|15:10 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\WINDOWS\iun6002.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ICD1.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nsj51.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nsx27.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\nsz31.tmp
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://eo.st"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"startpage"="http://www.spyprotector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home"
--------------------\\ Recherche d'autres infections
--------------------\\ ROGUES ..
C:\DOCUME~1\ADMINI~1\MENUDM~1\Antivirus 2009
C:\PROGRA~1\Antivirus 2009
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX06.970\crack.exe
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX06.970\crack.nfo
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX38.521\crack
C:\DOCUME~1\ADMINI~1\Local Settings\Temp\Rar$EX38.521\crack\crack.exe
C:\DOCUME~1\ADMINI~1\Mes documents\LimeWire\Saved\norton antivirus 2009 crack by ZWT.zip
1 - "C:\ToolBar SD\TB_1.txt" - 11/01/2009|15:18 - Option : [1]
-----------\\ Fin du rapport a 15:18:44,54
Re,
Tu squatte le topic d'un autre !!
Créer ton propre topic.=>http://pagesperso-orange.fr/rginformatique/section%20virus/demofairesontmessage.htm?thread
Tu squatte le topic d'un autre !!
Créer ton propre topic.=>http://pagesperso-orange.fr/rginformatique/section%20virus/demofairesontmessage.htm?thread
bonjour moi aussi j'ai le même probléme et j'ai suivi votre demarche et voila le raport
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 2800+ )
BIOS : Default System BIOS
USER : Laurence ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1169 [VPS 080630-1] 4.8.1169 (Activated)
C:\ (Local Disk) - NTFS - Total:76 Go (Free:38 Go)
D:\ (CD or DVD) - CDFS - Total:4 Go (Free:0 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 18/01/2009|18:05 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\Dealio
C:\Program Files\Dealio\kb125
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-04-07-20-31-03.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-04-12-20-08-19
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-30-10-45-24.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-04-09-52-25.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\4_elements16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\annes_dream_world16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\burger_island_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\dream_day_wedding_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\lavendars_botanicals16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\magic_encyclopedia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\oberonconfig.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\obSearchHistory.dat
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\search_yahoo.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\time_quest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\3d_ultra_minigolf_adventures_deluxe16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\candy_factory16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\deep_quest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\dream_day_honeymoon16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\fashion_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\MagiciansHandbook16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\solitaire_cruise16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\around_the_world_in_80_days16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\babysitting_mania16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\discovering_nature16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\lucky_clover16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\MCF_raven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\paparazzi16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\turbo_pizza16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\AliceGreenfingers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\Cake_mania_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\dream_day_first_home16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\eye_for_design16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\family_restaurant16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\heart_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\hells_kitchen16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\penguins_journey16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\pet_shop_hop16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\vogue_tales16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\west16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\AliceGreenfingers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\Cake_mania_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\dream_day_first_home16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\eye_for_design16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\family_restaurant16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\heart_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\hells_kitchen16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\penguins_journey16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\pet_shop_hop16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\vogue_tales16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\west16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\AliceGreenfingers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\Cake_mania_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\dream_day_first_home16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\eye_for_design16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\family_restaurant16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\heart_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\hells_kitchen16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\penguins_journey16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\pet_shop_hop16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\vogue_tales16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\west16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\7_wonders_treasures_of_seven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\big_city_adventure_sydney16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\death_nile16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\diner_dash_flo_through_time16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\luxor_quest_for_the_afterlife16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\natalie_brooks16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\the_hidden_object_show16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\7_wonders_treasures_of_seven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\big_city_adventure_sydney16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\death_nile16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\diner_dash_flo_through_time16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\luxor_quest_for_the_afterlife16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\natalie_brooks16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\the_hidden_object_show16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\7_wonders_treasures_of_seven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\big_city_adventure_sydney16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\death_nile16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\diner_dash_flo_through_time16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\luxor_quest_for_the_afterlife16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\natalie_brooks16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\the_hidden_object_show16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\chuzzle_christmas_edition16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\farm_frenzy_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\my_tribe16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\womens_murder_club_fr16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\annas_ice_cream16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\around_the_world_in_80_days16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\chicken_invaders_3_xmas16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\farm_frenzy_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\piggly_christmas_edition16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\search_yahoo.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\season_match_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\4_elements16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\annes_dream_world16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\burger_island_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\dream_day_wedding_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\lavendars_botanicals16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\magic_encyclopedia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\search_yahoo.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\time_quest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\webgame.gif
C:\Program Files\GamesBar
C:\Program Files\GamesBar\Localization-French.ini
C:\Program Files\GamesBar\oberontb.dll
C:\Program Files\GamesBar\OBGet.exe
C:\Program Files\GamesBar\uninst.exe
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\GamesBar
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.js
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.xul
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.dtd
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb125
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb125\temp
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb125\temp\ws-13988.log
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\temp
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\ErrorPageTemplate.css
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\help.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\pixel.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tabdata.js
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tablib.js
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tabwelcome_en.html
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tab_icon.png
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\toolbar_background.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\vista_directions.png
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\xp_directions.png
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\yahoo_search.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\temp\ws-14259.log
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\temp\ws-14262.log
C:\DOCUME~1\Paul\APPLIC~1\Search Settings
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\temp
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\ErrorPageTemplate.css
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\help.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\pixel.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tabdata.js
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tablib.js
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tabwelcome_en.html
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tab_icon.png
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\toolbar_background.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\vista_directions.png
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\xp_directions.png
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\yahoo_search.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\temp\ws-14257.log
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\temp\ws-14260.log
C:\Program Files\Search Settings
C:\Program Files\Search Settings\kb125
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Search Settings\kb125\res
C:\Program Files\Search Settings\kb125\SearchSettings.dll
C:\Program Files\Search Settings\kb125\temp
C:\Program Files\Search Settings\kb125\res\ErrorPageTemplate.css
C:\Program Files\Search Settings\kb125\res\help.gif
C:\Program Files\Search Settings\kb125\res\pixel.gif
C:\Program Files\Search Settings\kb125\res\tabdata.js
C:\Program Files\Search Settings\kb125\res\tablib.js
C:\Program Files\Search Settings\kb125\res\tabwelcome_en.html
C:\Program Files\Search Settings\kb125\res\tab_icon.png
C:\Program Files\Search Settings\kb125\res\toolbar_background.gif
C:\Program Files\Search Settings\kb125\res\vista_directions.png
C:\Program Files\Search Settings\kb125\res\xp_directions.png
C:\Program Files\Search Settings\kb125\res\yahoo_search.gif
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.spyprotector-pro.com/securitypage"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"startpage"="http://www.spyprotector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://internetsearchservice.com/"
"Search Page"="https://internetsearchservice.com/"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
"Search Bar"="http://internetsearchservice.com/ie6.html"
"SearchMigratedDefaultURL"="https://internetsearchservice.com/606/search-engine-optimization-seo-specialist-in-phoenix-az/?q{searchTerms}"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 18/01/2009|18:07 - Option : [1]
-----------\\ Fin du rapport a 18:07:50,37
voila moi je fai quoi pour le supprimer apré ??
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 2800+ )
BIOS : Default System BIOS
USER : Laurence ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1169 [VPS 080630-1] 4.8.1169 (Activated)
C:\ (Local Disk) - NTFS - Total:76 Go (Free:38 Go)
D:\ (CD or DVD) - CDFS - Total:4 Go (Free:0 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 18/01/2009|18:05 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\Dealio
C:\Program Files\Dealio\kb125
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-04-07-20-31-03.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-04-12-20-08-19
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-30-10-45-24.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-04-09-52-25.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\4_elements16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\annes_dream_world16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\burger_island_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\dream_day_wedding_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\lavendars_botanicals16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\magic_encyclopedia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\oberonconfig.xm_
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\obSearchHistory.dat
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\search_yahoo.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\time_quest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\3d_ultra_minigolf_adventures_deluxe16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\candy_factory16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\deep_quest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\dream_day_honeymoon16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\fashion_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\MagiciansHandbook16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\solitaire_cruise16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-02-16-19-56-55\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\around_the_world_in_80_days16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\babysitting_mania16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\discovering_nature16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\lucky_clover16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\MCF_raven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\paparazzi16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\turbo_pizza16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-03-27-20-22-59\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-05-25-12-54-39\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-47\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-21-19-12-51\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\16x16talismania.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\bricks_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\cradle_of_persia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\cradle_rome16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\farm_frenzy16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\jewelquest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\magic_match16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\micro_olympics16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\Ocean_Express16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\riseAtlantis16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\scurbbles16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\seasonmatch16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-06-23-19-08-07\xango16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\AliceGreenfingers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\Cake_mania_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\dream_day_first_home16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\eye_for_design16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\family_restaurant16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\heart_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\hells_kitchen16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\penguins_journey16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\pet_shop_hop16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\vogue_tales16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-10-17-28-40\west16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\AliceGreenfingers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\Cake_mania_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\dream_day_first_home16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\eye_for_design16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\family_restaurant16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\heart_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\hells_kitchen16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\penguins_journey16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\pet_shop_hop16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\vogue_tales16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-07-22-18-12-31\west16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\AliceGreenfingers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\Azada16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\Cake_mania_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\dream_day_first_home16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\eye_for_design16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\family_restaurant16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\heart_of_egypt16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\hells_kitchen16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\penguins_journey16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\peril_at_end_house16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\pet_shop_hop16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\vogue_tales16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-09-08-17-14-52\west16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\7_wonders_treasures_of_seven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\big_city_adventure_sydney16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\death_nile16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\diner_dash_flo_through_time16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\luxor_quest_for_the_afterlife16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\natalie_brooks16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\the_hidden_object_show16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-11-26-15-43-28\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\7_wonders_treasures_of_seven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\big_city_adventure_sydney16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\death_nile16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\diner_dash_flo_through_time16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\luxor_quest_for_the_afterlife16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\natalie_brooks16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\the_hidden_object_show16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-05-17-51-51\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\7_wonders_treasures_of_seven16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\big_city_adventure_sydney16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\death_nile16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\diner_dash_flo_through_time16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\luxor_quest_for_the_afterlife16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\natalie_brooks16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\the_hidden_object_show16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\virtualvillagers16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-17-19-25-22\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\chuzzle_christmas_edition16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\farm_frenzy_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\my_tribe16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\popup_off.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\popup_on.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\ranch_rush16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\search_goog.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\08-12-23-10-41-57\womens_murder_club_fr16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-14-14-15-54\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\annas_ice_cream16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\around_the_world_in_80_days16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\chicken_invaders_3_xmas16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\farm_frenzy_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\peggle_nights16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\piggly_christmas_edition16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\search_yahoo.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\season_match_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-15-16-26-44\webgame.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\4_elements16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\about.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\action.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\annes_dream_world16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\arcade.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\burger_island_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\buy.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\cards.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\deals.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\download.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\dream_day_wedding_216x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\feedback.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\help.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\highlight.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\jigsaw.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\lavendars_botanicals16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\magic_encyclopedia16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\mahjong.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\multiplayer.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\mygames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\mystery_stories_island_of_hope16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\newGames.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\partner.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\puzzle.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\search.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\search_yahoo.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\sendafriend.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\sports.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\time_quest16x16.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\trial.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\uninstall.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\update.gif
C:\DOCUME~1\ALLUSE~1\APPLIC~1\GamesBar\09-01-16-18-07-00\webgame.gif
C:\Program Files\GamesBar
C:\Program Files\GamesBar\Localization-French.ini
C:\Program Files\GamesBar\oberontb.dll
C:\Program Files\GamesBar\OBGet.exe
C:\Program Files\GamesBar\uninst.exe
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\GamesBar
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.js
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.xul
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.dtd
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb125
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb125\temp
C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb125\temp\ws-13988.log
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\temp
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\ErrorPageTemplate.css
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\help.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\pixel.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tabdata.js
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tablib.js
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tabwelcome_en.html
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\tab_icon.png
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\toolbar_background.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\vista_directions.png
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\xp_directions.png
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\res\yahoo_search.gif
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\temp\ws-14259.log
C:\DOCUME~1\Laurence\APPLIC~1\Search Settings\kb125\temp\ws-14262.log
C:\DOCUME~1\Paul\APPLIC~1\Search Settings
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\temp
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\ErrorPageTemplate.css
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\help.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\pixel.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tabdata.js
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tablib.js
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tabwelcome_en.html
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\tab_icon.png
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\toolbar_background.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\vista_directions.png
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\xp_directions.png
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\res\yahoo_search.gif
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\temp\ws-14257.log
C:\DOCUME~1\Paul\APPLIC~1\Search Settings\kb125\temp\ws-14260.log
C:\Program Files\Search Settings
C:\Program Files\Search Settings\kb125
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Search Settings\kb125\res
C:\Program Files\Search Settings\kb125\SearchSettings.dll
C:\Program Files\Search Settings\kb125\temp
C:\Program Files\Search Settings\kb125\res\ErrorPageTemplate.css
C:\Program Files\Search Settings\kb125\res\help.gif
C:\Program Files\Search Settings\kb125\res\pixel.gif
C:\Program Files\Search Settings\kb125\res\tabdata.js
C:\Program Files\Search Settings\kb125\res\tablib.js
C:\Program Files\Search Settings\kb125\res\tabwelcome_en.html
C:\Program Files\Search Settings\kb125\res\tab_icon.png
C:\Program Files\Search Settings\kb125\res\toolbar_background.gif
C:\Program Files\Search Settings\kb125\res\vista_directions.png
C:\Program Files\Search Settings\kb125\res\xp_directions.png
C:\Program Files\Search Settings\kb125\res\yahoo_search.gif
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.spyprotector-pro.com/securitypage"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"startpage"="http://www.spyprotector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://internetsearchservice.com/"
"Search Page"="https://internetsearchservice.com/"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
"Search Bar"="http://internetsearchservice.com/ie6.html"
"SearchMigratedDefaultURL"="https://internetsearchservice.com/606/search-engine-optimization-seo-specialist-in-phoenix-az/?q{searchTerms}"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 18/01/2009|18:07 - Option : [1]
-----------\\ Fin du rapport a 18:07:50,37
voila moi je fai quoi pour le supprimer apré ??
Salut,
Tu squatte le topic d'un autre !!
Créer ton propre topic.=>http://pagesperso-orange.fr/
Tu peut faire l'option 2 de toolbard s&d.
Tu squatte le topic d'un autre !!
Créer ton propre topic.=>http://pagesperso-orange.fr/
Tu peut faire l'option 2 de toolbard s&d.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:02:40, on 19/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\imapi.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=D4322FEE7CF74A348CB9CE970F098EF5
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\RavMon.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u11-windows-i586-jc.cab&AuthParam=1580990370_ae51af1f2e3e7c78a0fbe2e88da6073d&ext=.cab
O20 - AppInit_DLLs: C:\WINDOWS\System32\kbddv32.dll
O20 - Winlogon Notify: 5d36b4e7517 - C:\WINDOWS\System32\kbddv32.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
Scan saved at 15:02:40, on 19/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\imapi.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=D4322FEE7CF74A348CB9CE970F098EF5
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\RavMon.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u11-windows-i586-jc.cab&AuthParam=1580990370_ae51af1f2e3e7c78a0fbe2e88da6073d&ext=.cab
O20 - AppInit_DLLs: C:\WINDOWS\System32\kbddv32.dll
O20 - Winlogon Notify: 5d36b4e7517 - C:\WINDOWS\System32\kbddv32.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:02:40, on 19/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\imapi.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=D4322FEE7CF74A348CB9CE970F098EF5
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\RavMon.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u11-windows-i586-jc.cab&AuthParam=1580990370_ae51af1f2e3e7c78a0fbe2e88da6073d&ext=.cab
O20 - AppInit_DLLs: C:\WINDOWS\System32\kbddv32.dll
O20 - Winlogon Notify: 5d36b4e7517 - C:\WINDOWS\System32\kbddv32.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
Scan saved at 15:02:40, on 19/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\imapi.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=D4322FEE7CF74A348CB9CE970F098EF5
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\RavMon.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Utilisateur\Application Data\lsascs.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD5/JSCDL/jre/6u11-b90/jinstall-6u11-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u11-windows-i586-jc.cab&AuthParam=1580990370_ae51af1f2e3e7c78a0fbe2e88da6073d&ext=.cab
O20 - AppInit_DLLs: C:\WINDOWS\System32\kbddv32.dll
O20 - Winlogon Notify: 5d36b4e7517 - C:\WINDOWS\System32\kbddv32.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:29:49, on 22/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\SMSC\SetIcon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Documents and Settings\Propriétaire\Application Data\lsascs.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\Propriétaire\Mes documents\DAEMON Tools Lite\daemon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.fr/webhp?hl=fr&tab=iw
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SetIcon] \Program Files\SMSC\SetIcon.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [LSA Shellu] C:\Documents and Settings\Propriétaire\lsass.exe
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Propriétaire\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [joybait] C:\DOCUME~1\PROPRI~1\APPLIC~1\SUPPOR~1\TITLEWMA.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.911.3380\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Documents and Settings\Propriétaire\Mes documents\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ares] "C:\Documents and Settings\Propriétaire\Bureau\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [Installer] C:\Documents and Settings\Propriétaire\Bureau\setup_10355_3777_.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Image Transfer.lnk = ?
O4 - Global Startup: Philips FunCam Monitor.lnk = C:\Program Files\Philips Photo Manager\FunCam\Philips FunCam Monitor.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5FD7D527-1874-4C5C-AB8D-ECDF77292453}: NameServer = 80.10.246.5 80.10.246.136
O20 - AppInit_DLLs: C:\WINDOWS\System32\icwdial32.dll
O20 - Winlogon Notify: 88749959511 - C:\WINDOWS\System32\icwdial32.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\WINDOWS\system32\DRIVERS\xaudio.exe
Scan saved at 21:29:49, on 22/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\SMSC\SetIcon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Documents and Settings\Propriétaire\Application Data\lsascs.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Documents and Settings\Propriétaire\Mes documents\DAEMON Tools Lite\daemon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.fr/webhp?hl=fr&tab=iw
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SetIcon] \Program Files\SMSC\SetIcon.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [LSA Shellu] C:\Documents and Settings\Propriétaire\lsass.exe
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Propriétaire\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [joybait] C:\DOCUME~1\PROPRI~1\APPLIC~1\SUPPOR~1\TITLEWMA.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.911.3380\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Documents and Settings\Propriétaire\Mes documents\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ares] "C:\Documents and Settings\Propriétaire\Bureau\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [Installer] C:\Documents and Settings\Propriétaire\Bureau\setup_10355_3777_.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Image Transfer.lnk = ?
O4 - Global Startup: Philips FunCam Monitor.lnk = C:\Program Files\Philips Photo Manager\FunCam\Philips FunCam Monitor.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5FD7D527-1874-4C5C-AB8D-ECDF77292453}: NameServer = 80.10.246.5 80.10.246.136
O20 - AppInit_DLLs: C:\WINDOWS\System32\icwdial32.dll
O20 - Winlogon Notify: 88749959511 - C:\WINDOWS\System32\icwdial32.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\WINDOWS\system32\DRIVERS\xaudio.exe
même problem avc spyprotector
voici mon rappport
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU T5500 @ 1.66GHz )
BIOS : Ver 1.00PARTTBLP
USER : Hélena ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:61 Go (Free:37 Go)
D:\ (Local Disk) - NTFS - Total:49 Go (Free:6 Go)
E:\ (CD or DVD)
F:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( sam. 24/01/2009|19:13 )
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"Start Page"="http://www.spy-protector-pro.com/securitypage"
"startpage"="http://www.spy-protector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - sam. 24/01/2009|19:14 - Option : [1]
-----------\\ Fin du rapport a 19:14:40,33
voici mon rappport
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU T5500 @ 1.66GHz )
BIOS : Ver 1.00PARTTBLP
USER : Hélena ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:61 Go (Free:37 Go)
D:\ (Local Disk) - NTFS - Total:49 Go (Free:6 Go)
E:\ (CD or DVD)
F:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( sam. 24/01/2009|19:13 )
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"Start Page"="http://www.spy-protector-pro.com/securitypage"
"startpage"="http://www.spy-protector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - sam. 24/01/2009|19:14 - Option : [1]
-----------\\ Fin du rapport a 19:14:40,33
merci pour l'astuce
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:47:16, on 28.02.2009
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.ch/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O18 - Protocol: bw+0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs: C:\WINDOWS\System32\ds16gt32.dll
O20 - Winlogon Notify: 7c79f08d530 - C:\WINDOWS\System32\ds16gt32.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:47:16, on 28.02.2009
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.ch/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O18 - Protocol: bw+0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs: C:\WINDOWS\System32\ds16gt32.dll
O20 - Winlogon Notify: 7c79f08d530 - C:\WINDOWS\System32\ds16gt32.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
merci pour l'astuce
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:47:16, on 28.02.2009
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ch/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O18 - Protocol: bw+0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs: C:\WINDOWS\System32\ds16gt32.dll
O20 - Winlogon Notify: 7c79f08d530 - C:\WINDOWS\System32\ds16gt32.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:47:16, on 28.02.2009
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ch/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Spy Protector] C:\Documents and Settings\Pruiti Claudio\Application Data\lsascs.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O18 - Protocol: bw+0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {36C548AA-AD5B-40C9-BA7F-D95FB9B6A6CB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - AppInit_DLLs: C:\WINDOWS\System32\ds16gt32.dll
O20 - Winlogon Notify: 7c79f08d530 - C:\WINDOWS\System32\ds16gt32.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
Les gars, VX vous demande de creer votre propre topic,la desinfection peut etre lognue,on ne peut pas avoir 10 personne sur ce topic donc merci de creer votre propre topic car sinon dans ces conditions aucune aide ne pourra etre apporté!!!!!!!!!!!!!!!
Procedure pour cepruiti
Télécharger Smitfraudfix par S!RI :
http://siri.urz.free.fr/Fix/SmitfraudFix.php
Décompresser l'archive
Exécuter le en double cliquant sur Smitfraudfix.cmd
Appuyer sur une touche pour continuer
Arriver à l'invite de commande, saisir la lettre L afin de basculer le fix en langue française
Au menu, choisir l’option 1 : Recherche
Poster le rapport ainsi généré
Télécharger Smitfraudfix par S!RI :
http://siri.urz.free.fr/Fix/SmitfraudFix.php
Décompresser l'archive
Exécuter le en double cliquant sur Smitfraudfix.cmd
Appuyer sur une touche pour continuer
Arriver à l'invite de commande, saisir la lettre L afin de basculer le fix en langue française
Au menu, choisir l’option 1 : Recherche
Poster le rapport ainsi généré
Scan saved at 13:16:01, on 03/02/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\vVX1000.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Lexmark 3400 Series\ezprint.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\WINDOWS\system32\lxcycoms.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.spyprotector-pro.com/securitypage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [lxcymon.exe] "C:\Program Files\Lexmark 3400 Series\lxcymon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 3400 Series\ezprint.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [LXCYCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCYtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (MediaBar) - http://sib1.od2.com/common/musicmanager/installation/MusicManagerPlugin.CAB
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: C:\WINDOWS\System32\eappprxy32.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O20 - Winlogon Notify: e008c69b509 - C:\WINDOWS\System32\eappprxy32.dll (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: lxcy_device - - C:\WINDOWS\system32\lxcycoms.exe
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) XP 3000+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : guillaume et camille ( Administrator )
BOOT : Normal boot
Antivirus : AVG Anti-Virus Free 8.0 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:48 Go (Free:19 Go)
D:\ (Local Disk) - NTFS - Total:65 Go (Free:48 Go)
E:\ (CD or DVD)
F:\ (CD or DVD)
G:\ (USB)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 03/02/2009|13:29 )
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
"startpage"="http://www.spyprotector-pro.com/securitypage"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 03/02/2009|13:29 - Option : [1]
-----------\\ Fin du rapport a 13:29:50,73