Internet marche plus
Fermé
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
-
4 juin 2009 à 08:19
Utilisateur anonyme - 4 juin 2009 à 20:11
Utilisateur anonyme - 4 juin 2009 à 20:11
A voir également:
- Internet marche plus
- Gps sans internet - Guide
- Plus de connexion internet - Guide
- Internet explorer 8 - Télécharger - Navigateurs
- Url site internet - Guide
- Internet explorer 11 - Télécharger - Navigateurs
43 réponses
Utilisateur anonyme
4 juin 2009 à 08:29
4 juin 2009 à 08:29
salut,
▶ Démarre Spybot, clique sur Mode, coche Mode avancé
𥭪 gauche, clique sur Outils, puis sur Résident
▶ Décoche la case devant Résident "TeaTimer" :
http://apu.mabul.org/up/5/apu-5-gpdx9e06cwz2dypom2q7n6nc.jpg
▶Quitte Spybot
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau
!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!
▶ Double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
▶ Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
▶ Choisis l'option 1 ( "recherche") et tapes "entrée" .
▶Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
de son contenu dans ta prochaine réponse ...
( le rapport est en outre sauvegardé ici -> C:\TB.txt )
Tutoriel Toolbard-S&D
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
▶ Démarre Spybot, clique sur Mode, coche Mode avancé
𥭪 gauche, clique sur Outils, puis sur Résident
▶ Décoche la case devant Résident "TeaTimer" :
http://apu.mabul.org/up/5/apu-5-gpdx9e06cwz2dypom2q7n6nc.jpg
▶Quitte Spybot
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau
!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!
▶ Double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
▶ Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
▶ Choisis l'option 1 ( "recherche") et tapes "entrée" .
▶Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
de son contenu dans ta prochaine réponse ...
( le rapport est en outre sauvegardé ici -> C:\TB.txt )
Tutoriel Toolbard-S&D
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Utilisateur anonyme
4 juin 2009 à 13:42
4 juin 2009 à 13:42
Re,
▶ Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
CCLEANER
▶ Lance-le. Va dans "Options" puis "Avancé",
▶ Tu décoches la case "Effacer uniquement les fichiers etc...".
▶ Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage.
▶ Tu vas dans "Registre", tu fais "Chercher des erreurs".
Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.
▶ Un tuto ( aide )
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
▶ Télécharge et installe MalwareByte's Anti-Malware
Malwarebyte
▶ Mets le à jour
▶ Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
▶ Sélectionne Exécuter un examen COMPLET si ce n'est pas déjà fait
▶ clique sur Rechercher
▶ Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok
▶ Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.
▶ Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection
▶ Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.
Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
Tutoriel pour MalwareByte's
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
▶ Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
CCLEANER
▶ Lance-le. Va dans "Options" puis "Avancé",
▶ Tu décoches la case "Effacer uniquement les fichiers etc...".
▶ Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage.
▶ Tu vas dans "Registre", tu fais "Chercher des erreurs".
Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.
▶ Un tuto ( aide )
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
▶ Télécharge et installe MalwareByte's Anti-Malware
Malwarebyte
▶ Mets le à jour
▶ Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
▶ Sélectionne Exécuter un examen COMPLET si ce n'est pas déjà fait
▶ clique sur Rechercher
▶ Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok
▶ Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.
▶ Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection
▶ Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.
Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
Tutoriel pour MalwareByte's
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 12:16
4 juin 2009 à 12:16
je poste mes 3 raports
le premier TB.txt
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:149 Go (Free:33 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 04/06/2009|12:15 )
-----------\\ SUPPRESSION
Commande ECHO désactivée.
Console - Windows Trust 2.00
(c) 2007-2008
... [Service] MyWebSearchService -- Marqué pour suppression !
... [Service] ASKService -- Marque pour suppression !
... [Service] ASKUpgrade -- Marque pour suppression !
-----------\\ Recherche de Fichiers / Dossiers ...
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] ASKService
[Service] ASKService
[Service] ASKService
[Service] ASKUpgrade
[Service] ASKUpgrade
[Service] ASKUpgrade
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
-----------\\ Extensions
( ) - {} =>
( ) - {} =>
( ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
-----------\\ [..\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Start Page"="https://www.google.fr/?gws_rd=ssl"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Start Page Redirect Cache"="https://www.msn.com/fr-fr?ocid=iehp"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\GDIPFONTCACHEV1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.Bin
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Profiles.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Glowria\Allocine.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Google\Chrome\User Data\Default\Bookmarks.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte d'envoi.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte de r‚ception.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Brouillons.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Folders.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\important.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Offline.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Pop3uidl.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments envoy‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments supprim‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Wallpaper1.bmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\index.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\76BNTY83\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\AP4ANQ8W\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\HAYAU54U\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\JDDOX1KO\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\frameiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\tabiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{19CD7335-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{2C23E96F-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{40A11EDF-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4E2603A7-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4F09F47D-50C1-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4FB1CA03-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{5106BA49-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{52CA486B-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{56A8297B-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{6950A159-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{705540C5-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7611E955-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7BABDC47-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7FF606A9-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{8558326F-5058-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F85A657B-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F95E45CD-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{0E927F66-4A85-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{3651D0EE-4B60-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{71909D42-4887-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{A8CD3968-4A8B-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{B8097B96-4E71-11DE-B131-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{BA2691E6-4860-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{CFC8ED78-4AE0-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{F46C6D2C-4B66-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{386836F1-4F77-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{ED92C879-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{CE37BA82-4FA1-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{ED92C87A-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{06B469CF-CDC2-47F4-81A9-8EA6E8506E45}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{6A1806CD-94D4-4689-BA73-E35EA1EA9990}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{07E14F53-BC9F-4BE8-918E-8C5AAA88DACF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{0B998EAC-D561-44F7-96CE-C020E1D2FC0D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{1621CF07-4B11-46A6-911C-A3F8E25432CE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{215B94A8-D3BC-455C-8E97-2BD0A8BB9020}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{21636127-E939-4613-83A4-56C630F98305}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{228CF6CE-9997-4D4B-B839-3C48073CDC35}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{28557407-DD07-404A-885F-DFD0D07B0CFE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{2E8DAE0A-CB77-48EB-8125-430971EA8CD1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3958D08C-83D3-4D51-9AD7-30AA870CB341}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3E7D19E1-A4C5-4D71-9402-5A360362809C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3F637222-79FC-4B8A-9EBB-AA7ECDC06D61}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4304DF10-FCE5-486C-ACC2-1DCF45BCE6D2}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4AD9C3E0-2863-4A6F-8460-CB29AAEEC41C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4C0BB22C-AF7E-4EFF-AFD1-6FEE60BF632F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5A59DC4A-97A0-4A96-8B5E-6625571A1330}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5AA8C16D-BFA7-4F8C-BDDB-E2F4225B7739}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{62162615-236A-4B2E-BFF7-E3722366F2F8}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{6B025548-14D7-49E7-87D1-73ADEC0E2FA0}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{72903353-57EB-484A-A204-1E9837D92648}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{82D17B54-DE7A-44CB-8001-5C3B73433E1B}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{84BB6A6E-EC0E-446E-B356-90DAA01301E1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{869B15AA-B951-4FD9-AEA1-AE4AC882A6D6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{87F55F7C-9EBE-4507-B8B3-425A92D67182}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{897CB529-4985-4FBF-BE43-2C54016E9A0C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{8AB082C7-CAA2-492E-AE82-786E8410B740}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{91767437-5764-42AF-805C-F6CF73325260}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{92001804-8A69-48C3-B8EC-BE02F8E5DC1D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{A86543EB-C71C-4F48-BF3A-E47E42EE7405}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{B8DD4423-9820-4EDB-879F-E4D2402C5761}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{C6B1DA01-28B9-4BC3-B491-B6EB6B2CD9DA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CA7070E2-B365-4602-974B-8B8AB784D5EF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CBA638DE-ED6D-43B8-A779-699A7E5F8100}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D1571C55-9E08-4D69-A78B-7B66EAE010BF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D5FF512A-C854-439B-9D52-15C61228A17F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D615529A-A93B-4525-95F7-060D23D5A9EA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D94FB94C-321B-4C0E-990A-0938CE4AA8E6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{DCB1C225-A710-4446-BA39-3A268F631B33}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E156E74F-264D-41E3-AD79-FCDB21C0514E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E4D1CC93-046E-4F98-B4A8-0B284C37210E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F0D6197C-EF2C-4228-AC2E-2990FFAACB38}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F20F55D6-4FD6-40AB-902D-11D10FC328F7}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\MusicType1VirginMegaFr\downloads.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\activesharingfolder.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\ContactsLog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00260.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00261.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00262.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00263.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\bernardbocquillon@msn.com\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\Brands\fr-FR\config.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\choulisette@hotmail.fr\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000D.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00010.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00011.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\m62300@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\nathmarquis@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\62dunathalie@live.fr\DFSR\Staging\CS{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}\01\10-{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}-v1-{189EF6FB-EBFD-4E74-A0B9-8E83E3D12674}-v10-Downloaded.frx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E3.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E4.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E5.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E6.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E7.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E8.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E9.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004EA.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsrtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\tmp.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\shyrel@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Movie Maker\MEDIATAB1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat.LOG
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\Desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeold.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\RssFeeds.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\sqmnoopt00.sqm
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\WindowsLiveMail.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\raulxmickael@msn.com\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.DTD
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.XML
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41366293776.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41667781132.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41993430095.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42011990351.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42298406619.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42330217323.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43282370197.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43438407711.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BonusInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BuildingInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivicInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivilizationInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4DiplomacyInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4HandicapInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4ImprovementInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4LeaderHeadInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4PromotionInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4TechInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4UnitInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\crc.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalDefines.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalText.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\Profiles\Default Profile.pfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\x-men.origins.wolverine.2009..avi(1).qp.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\7zAes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Aes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Branch.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Copy.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\LZMA.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Swap.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Formats\7z.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\Windows Live Writer.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\BlogProvidersB5.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\DhtmlImageViewers.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Markets.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Master.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\PassportSettings2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\SpellingConfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\TagProviders.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Updates.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\VideoProvidersB2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Writer_Config.cab
C:\WINDOWS\System32\$winnt$.inf
C:\WINDOWS\System32\12520437.cpx
C:\WINDOWS\System32\12520850.cpx
C:\WINDOWS\System32\6to4svc.dll
C:\WINDOWS\System32\aaaamon.dll
C:\WINDOWS\System32\aaclient.dll
C:\WINDOWS\System32\acctres.dll
C:\WINDOWS\System32\acledit.dll
C:\WINDOWS\System32\aclui.dll
C:\WINDOWS\System32\activeds.dll
C:\WINDOWS\System32\activeds.tlb
C:\WINDOWS\System32\actmovie.exe
C:\WINDOWS\System32\actxprxy.dll
C:\WINDOWS\System32\admparse.dll
C:\WINDOWS\System32\adptif.dll
C:\WINDOWS\System32\adsldp.dll
C:\WINDOWS\System32\adsldpc.dll
C:\WINDOWS\System32\adsmsext.dll
C:\WINDOWS\System32\adsnds.dll
C:\WINDOWS\System32\adsnt.dll
C:\WINDOWS\System32\adsnw.dll
C:\WINDOWS\System32\advapi32.dll
C:\WINDOWS\System32\advpack(2).dll
C:\WINDOWS\System32\advpack(3).dll
C:\WINDOWS\System32\advpack(4).dll
C:\WINDOWS\System32\advpack(5).dll
C:\WINDOWS\System32\advpack.dll
C:\WINDOWS\System32\advpack.dll.mui
C:\WINDOWS\System32\ahui.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\alsndmgr.cpl
C:\WINDOWS\System32\alsndmgr.wav
C:\WINDOWS\System32\amcompat.tlb
C:\WINDOWS\System32\amdpcom32.dll
C:\WINDOWS\System32\amstream.dll
C:\WINDOWS\System32\ansi.sys
C:\WINDOWS\System32\apcups.dll
C:\WINDOWS\System32\api.dat
C:\WINDOWS\System32\api32.dll
C:\WINDOWS\System32\append.exe
C:\WINDOWS\System32\apphelp.dll
C:\WINDOWS\System32\appmgmts.dll
C:\WINDOWS\System32\appmgr.dll
C:\WINDOWS\System32\appwiz.cpl
C:\WINDOWS\System32\app_filter_ui.log
C:\WINDOWS\System32\arp.exe
C:\WINDOWS\System32\asctrls.ocx
C:\WINDOWS\System32\asferror.dll
C:\WINDOWS\System32\asr_pfu.exe
C:\WINDOWS\System32\asycfilt.dll
C:\WINDOWS\System32\at.exe
C:\WINDOWS\System32\ati2cqag.dll
C:\WINDOWS\System32\ati2dvaa.dll
C:\WINDOWS\System32\ati2dvag.dll
C:\WINDOWS\System32\ati2edxx.dll
C:\WINDOWS\System32\ati2evxx.dll
C:\WINDOWS\System32\ati2evxx.exe
C:\WINDOWS\System32\Ati2mdxx.exe
C:\WINDOWS\System32\ati2sgag.exe
C:\WINDOWS\System32\ati3d1ag.dll
C:\WINDOWS\System32\ati3duag.dll
C:\WINDOWS\System32\atiadlxx.dll
C:\WINDOWS\System32\atibrtmon.exe
C:\WINDOWS\System32\aticalcl.dll
C:\WINDOWS\System32\aticaldd.dll
C:\WINDOWS\System32\aticalrt.dll
C:\WINDOWS\System32\ATIDDC.DLL
C:\WINDOWS\System32\ATIDEMGX.dll
C:\WINDOWS\System32\atifglpf.xml
C:\WINDOWS\System32\atiicdxx.dat
C:\WINDOWS\System32\atiiiexx.dll
C:\WINDOWS\System32\atikvmag.dll
C:\WINDOWS\System32\atioglxx.dll
C:\WINDOWS\System32\atiok3x2.dll
C:\WINDOWS\System32\atipdlxx.dll
C:\WINDOWS\System32\atitvo32.dll
C:\WINDOWS\System32\ativcoxx.dll
C:\WINDOWS\System32\ativtmxx.dll
C:\WINDOWS\System32\ativva5x.dat
C:\WINDOWS\System32\ativva6x.dat
C:\WINDOWS\System32\ativvaxx.cap
C:\WINDOWS\System32\ativvaxx.dat
C:\WINDOWS\System32\ativvaxx.dll
C:\WINDOWS\System32\atkctrs.dll
C:\WINDOWS\System32\atl.dll
C:\WINDOWS\System32\atmadm.exe
C:\WINDOWS\System32\atmfd.dll
C:\WINDOWS\System32\atmlib.dll
C:\WINDOWS\System32\atmpvcno.dll
C:\WINDOWS\System32\attrib.exe
C:\WINDOWS\System32\audiodev.dll
C:\WINDOWS\System32\audiosrv.dll
C:\WINDOWS\System32\auditusr.exe
C:\WINDOWS\System32\Aurora-VS.scr
C:\WINDOWS\System32\Aurora.scr
C:\WINDOWS\System32\authz.dll
C:\WINDOWS\System32\autochk.exe
C:\WINDOWS\System32\autoconv.exe
C:\WINDOWS\System32\autodisc.dll
C:\WINDOWS\System32\autofmt.exe
C:\WINDOWS\System32\autolfn.exe
C:\WINDOWS\System32\avicap.dll
C:\WINDOWS\System32\avicap32.dll
C:\WINDOWS\System32\avifil32.dll
C:\WINDOWS\System32\avifile.dll
C:\WINDOWS\System32\avwav3.dll
C:\WINDOWS\System32\azroles.dll
C:\WINDOWS\System32\basesrv.dll
C:\WINDOWS\System32\batmeter.dll
C:\WINDOWS\System32\batt.dll
C:\WINDOWS\System32\bdco1.dll
C:\WINDOWS\System32\bdco1ins.dll
C:\WINDOWS\System32\bddwpwzhnxtzcack.dll
C:\WINDOWS\System32\bidispl.dll
C:\WINDOWS\System32\bios1.rom
C:\WINDOWS\System32\bios4.rom
C:\WINDOWS\System32\bitsprx2.dll
C:\WINDOWS\System32\bitsprx3.dll
C:\WINDOWS\System32\bitsprx4.dll
C:\WINDOWS\System32\blackbox.dll
C:\WINDOWS\System32\blastcln.exe
C:\WINDOWS\System32\bootcfg.exe
C:\WINDOWS\System32\bootok.exe
C:\WINDOWS\System32\bootvid.dll
C:\WINDOWS\System32\bootvrfy.exe
C:\WINDOWS\System32\bopomofo.uce
C:\WINDOWS\System32\browselc.dll
C:\WINDOWS\System32\browser.dll
C:\WINDOWS\System32\browseui.dll
C:\WINDOWS\System32\browsewm.dll
C:\WINDOWS\System32\bthci.dll
C:\WINDOWS\System32\bthprops.cpl
C:\WINDOWS\System32\bthserv.dll
C:\WINDOWS\System32\btpanui.dll
C:\WINDOWS\System32\Bulles-VS.scr
C:\WINDOWS\System32\BuzzingBee.wav
C:\WINDOWS\System32\cabinet.dll
C:\WINDOWS\System32\cacls.exe
C:\WINDOWS\System32\calc.exe
C:\WINDOWS\System32\camocx.dll
C:\WINDOWS\System32\CapabilityTable.exe
C:\WINDOWS\System32\capesnpn.dll
C:\WINDOWS\System32\cards.dll
C:\WINDOWS\System32\catsrv.dll
C:\WINDOWS\System32\catsrvps.dll
C:\WINDOWS\System32\catsrvut.dll
C:\WINDOWS\System32\ccfgnt.dll
C:\WINDOWS\System32\cdfview.dll
C:\WINDOWS\System32\cdm.dll
C:\WINDOWS\System32\cdmodem.dll
C:\WINDOWS\System32\cdosys.dll
C:\WINDOWS\System32\certcli.dll
C:\WINDOWS\System32\certmgr.dll
C:\WINDOWS\System32\certmgr.msc
C:\WINDOWS\System32\cewmdm.dll
C:\WINDOWS\System32\cfgbkend.dll
C:\WINDOWS\System32\cfgmgr32.dll
C:\WINDOWS\System32\charmap.exe
C:\WINDOWS\System32\ChaŒnes.scf
C:\WINDOWS\System32\ChCfg.exe
C:\WINDOWS\System32\chcp.com
C:\WINDOWS\System32\chkdsk.exe
C:\WINDOWS\System32\chkntfs.exe
C:\WINDOWS\System32\cic.dll
C:\WINDOWS\System32\cipher.exe
C:\WINDOWS\System32\ckcnv.exe
C:\WINDOWS\System32\clb.dll
C:\WINDOWS\System32\clbcatex.dll
C:\WINDOWS\System32\clbcatq.dll
C:\WINDOWS\System32\cleanmgr.exe
C:\WINDOWS\System32\cliconfg.dll
C:\WINDOWS\System32\cliconfg.exe
C:\WINDOWS\System32\cliconfg.rll
C:\WINDOWS\System32\clusapi.dll
C:\WINDOWS\System32\cmcfg32.dll
C:\WINDOWS\System32\cmd.exe
C:\WINDOWS\System32\cmdial32.dll
C:\WINDOWS\System32\cmdl32.exe
C:\WINDOWS\System32\cmdlib.wsc
C:\WINDOWS\System32\CmdLineExt.dll
C:\WINDOWS\System32\CMExt.dll
C:\WINDOWS\System32\cmmon32.exe
C:\WINDOWS\System32\cmos.ram
C:\WINDOWS\System32\cmpbk32.dll
C:\WINDOWS\System32\cmprops.dll
C:\WINDOWS\System32\cmsetacl.dll
C:\WINDOWS\System32\cmstp.exe
C:\WINDOWS\System32\CmutEuro32.dll
C:\WINDOWS\System32\cmutil.dll
C:\WINDOWS\System32\cnbjmon.dll
C:\WINDOWS\System32\cnetcfg.dll
C:\WINDOWS\System32\cnvfat.dll
C:\WINDOWS\System32\colbact.dll
C:\WINDOWS\System32\comaddin.dll
C:\WINDOWS\System32\comcat.dll
C:\WINDOWS\System32\comctl32.dll
C:\WINDOWS\System32\comdlg32.dll
C:\WINDOWS\System32\comm.drv
C:\WINDOWS\System32\command.com
C:\WINDOWS\System32\commdlg.dll
C:\WINDOWS\System32\comp.exe
C:\WINDOWS\System32\compact.exe
C:\WINDOWS\System32\compatui.dll
C:\WINDOWS\System32\compmgmt.msc
C:\WINDOWS\System32\compobj.dll
C:\WINDOWS\System32\compstui.dll
C:\WINDOWS\System32\comrepl.dll
C:\WINDOWS\System32\comres.dll
C:\WINDOWS\System32\comsdupd.exe
C:\WINDOWS\System32\comsnap.dll
C:\WINDOWS\System32\comsvcs.dll
C:\WINDOWS\System32\comuid.dll
C:\WINDOWS\System32\CONFIG.TMP
C:\WINDOWS\System32\conime.exe
C:\WINDOWS\System32\console.dll
C:\WINDOWS\System32\control.exe
C:\WINDOWS\System32\convert.exe
C:\WINDOWS\System32\corpol.dll
C:\WINDOWS\System32\country.sys
C:\WINDOWS\System32\credssp.dll
C:\WINDOWS\System32\credui.dll
C:\WINDOWS\System32\crtdll.dll
C:\WINDOWS\System32\crypt32.dll
C:\WINDOWS\System32\cryptdlg.dll
C:\WINDOWS\System32\cryptdll.dll
C:\WINDOWS\System32\cryptext.dll
C:\WINDOWS\System32\cryptnet.dll
C:\WINDOWS\System32\cryptsvc.dll
C:\WINDOWS\System32\cryptui.dll
C:\WINDOWS\System32\cscdll.dll
C:\WINDOWS\System32\cscript.exe
C:\WINDOWS\System32\csrsrv.dll
C:\WINDOWS\System32\csrss.exe
C:\WINDOWS\System32\csseqchk.dll
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\ctl3d32.dll
C:\WINDOWS\System32\ctl3dv2.dll
C:\WINDOWS\System32\ctype.nls
C:\WINDOWS\System32\cvirt.dll
C:\WINDOWS\System32\cvirte.dll
C:\WINDOWS\System32\c_037.nls
C:\WINDOWS\System32\c_10000.nls
C:\WINDOWS\System32\c_10006.nls
C:\WINDOWS\System32\c_10007.nls
C:\WINDOWS\System32\c_10010.nls
C:\WINDOWS\System32\c_10017.nls
C:\WINDOWS\System32\c_10029.nls
C:\WINDOWS\System32\c_10079.nls
C:\WINDOWS\System32\c_10081.nls
C:\WINDOWS\System32\c_10082.nls
C:\WINDOWS\System32\c_1026.nls
C:\WINDOWS\System32\c_1250.nls
C:\WINDOWS\System32\c_1251.nls
C:\WINDOWS\System32\c_1252.nls
C:\WINDOWS\System32\c_1253.nls
C:\WINDOWS\System32\c_1254.nls
C:\WINDOWS\System32\c_1255.nls
C:\WINDOWS\System32\c_1256.nls
C:\WINDOWS\System32\c_1257.nls
C:\WINDOWS\System32\c_1258.nls
C:\WINDOWS\System32\c_20127.nls
C:\WINDOWS\System32\c_20261.nls
C:\WINDOWS\System32\c_20866.nls
C:\WINDOWS\System32\c_20905.nls
C:\WINDOWS\System32\c_21866.nls
C:\WINDOWS\System32\c_28591.nls
C:\WINDOWS\System32\c_28592.nls
C:\WINDOWS\System32\c_28593.nls
C:\WINDOWS\System32\C_28594.NLS
C:\WINDOWS\System32\C_28595.NLS
C:\WINDOWS\System32\C_28597.NLS
C:\WINDOWS\System32\c_28598.nls
C:\WINDOWS\System32\c_28599.nls
C:\WINDOWS\System32\c_28603.nls
C:\WINDOWS\System32\c_28605.nls
C:\WINDOWS\System32\c_437.nls
C:\WINDOWS\System32\c_500.nls
C:\WINDOWS\System32\c_737.nls
C:\WINDOWS\System32\c_775.nls
C:\WINDOWS\System32\c_850.nls
C:\WINDOWS\System32\c_852.nls
C:\WINDOWS\System32\c_855.nls
C:\WINDOWS\System32\c_857.nls
C:\WINDOWS\System32\c_860.nls
C:\WINDOWS\System32\c_861.nls
C:\WINDOWS\System32\c_863.nls
C:\WINDOWS\System32\c_865.nls
C:\WINDOWS\System32\c_866.nls
C:\WINDOWS\System32\c_869.nls
C:\WINDOWS\System32\c_874.nls
C:\WINDOWS\System32\c_875.nls
C:\WINDOWS\System32\c_932.nls
C:\WINDOWS\System32\c_936.nls
C:\WINDOWS\System32\c_949.nls
C:\WINDOWS\System32\c_950.nls
C:\WINDOWS\System32\d3d8.dll
C:\WINDOWS\System32\d3d8caps.dat
C:\WINDOWS\System32\d3d8thk.dll
C:\WINDOWS\System32\d3d9.dll
C:\WINDOWS\System32\d3d9caps.dat
C:\WINDOWS\System32\d3dcompiler_33.dll
C:\WINDOWS\System32\d3dcompiler_34.dll
C:\WINDOWS\System32\d3dcompiler_35.dll
C:\WINDOWS\System32\d3dcompiler_36.dll
C:\WINDOWS\System32\D3DCompiler_37.dll
C:\WINDOWS\System32\D3DCompiler_38.dll
C:\WINDOWS\System32\D3DCompiler_39.dll
C:\WINDOWS\System32\D3DCompiler_40.dll
C:\WINDOWS\System32\D3DCompiler_41.dll
C:\WINDOWS\System32\d3dim.dll
C:\WINDOWS\System32\d3dim700.dll
C:\WINDOWS\System32\d3dpmesh.dll
C:\WINDOWS\System32\d3dramp.dll
C:\WINDOWS\System32\d3drm.dll
C:\WINDOWS\System32\d3dx10.dll
C:\WINDOWS\System32\d3dx10_33.dll
C:\WINDOWS\System32\d3dx10_34.dll
C:\WINDOWS\System32\d3dx10_35.dll
C:\WINDOWS\System32\d3dx10_36.dll
C:\WINDOWS\System32\d3dx10_37.dll
C:\WINDOWS\System32\d3dx10_38.dll
C:\WINDOWS\System32\d3dx10_39.dll
C:\WINDOWS\System32\d3dx10_40.dll
C:\WINDOWS\System32\d3dx10_41.dll
C:\WINDOWS\System32\D3DX81ab.dll
C:\WINDOWS\System32\d3dx9.dll
C:\WINDOWS\System32\d3dx9_24.dll
C:\WINDOWS\System32\d3dx9_25.dll
C:\WINDOWS\System32\d3dx9_26.dll
C:\WINDOWS\System32\d3dx9_27.dll
C:\WINDOWS\System32\d3dx9_28.dll
C:\WINDOWS\System32\d3dx9_29.dll
C:\WINDOWS\System32\d3dx9_30.dll
C:\WINDOWS\System32\d3dx9_31.dll
C:\WINDOWS\System32\d3dx9_32.dll
C:\WINDOWS\System32\d3dx9_33.dll
C:\WINDOWS\System32\d3dx9_34.dll
C:\WINDOWS\System32\d3dx9_35.dll
C:\WINDOWS\System32\d3dx9_36.dll
C:\WINDOWS\System32\D3DX9_37.dll
C:\WINDOWS\System32\D3DX9_38.dll
C:\WINDOWS\System32\D3DX9_39.dll
C:\WINDOWS\System32\D3DX9_40.dll
C:\WINDOWS\System32\D3DX9_41.dll
C:\WINDOWS\System32\d3dxof.dll
C:\WINDOWS\System32\danim.dll
C:\WINDOWS\System32\dataclen.dll
C:\WINDOWS\System32\datime.dll
C:\WINDOWS\System32\daxctle.ocx
C:\WINDOWS\System32\dbghelp.dll
C:\WINDOWS\System32\dbmsrpcn.dll
C:\WINDOWS\System32\dbnetlib.dll
C:\WINDOWS\System32\dbnmpntw.dll
C:\WINDOWS\System32\dcache.bin
C:\WINDOWS\System32\dciman32.dll
C:\WINDOWS\System32\dcomcnfg.exe
C:\WINDOWS\System32\ddeml.dll
C:\WINDOWS\System32\ddraw.dll
C:\WINDOWS\System32\ddrawex.dll
C:\WINDOWS\System32\debug.exe
C:\WINDOWS\System32\desk.cpl
C:\WINDOWS\System32\deskadp.dll
C:\WINDOWS\System32\deskmon.dll
C:\WINDOWS\System32\deskperf.dll
C:\WINDOWS\System32\desktop.ini
C:\WINDOWS\System32\devenum.dll
C:\WINDOWS\System32\devmgmt.msc
C:\WINDOWS\System32\devmgr.dll
C:\WINDOWS\System32\dfb42448-7122-2023-be39-9182faa9fa78.exe
C:\WINDOWS\System32\dfshim.dll
C:\WINDOWS\System32\dfsshlex.dll
C:\WINDOWS\System32\dgnet.dll
C:\WINDOWS\System32\dgrpsetu.dll
C:\WINDOWS\System32\dgsetup.dll
C:\WINDOWS\System32\dhcpcsvc.dll
C:\WINDOWS\System32\dhcpmon.dll
C:\WINDOWS\System32\dhcpqec.dll
C:\WINDOWS\System32\dhcpsapi.dll
C:\WINDOWS\System32\diactfrm.dll
C:\WINDOWS\System32\diantz.exe
C:\WINDOWS\System32\digest.dll
C:\WINDOWS\System32\dimap.dll
C:\WINDOWS\System32\dimsntfy.dll
C:\WINDOWS\System32\dimsroam.dll
C:\WINDOWS\System32\dinput.dll
C:\WINDOWS\System32\dinput8.dll
C:\WINDOWS\System32\directx.cpl
C:\WINDOWS\System32\diskcomp.com
C:\WINDOWS\System32\diskcopy.com
C:\WINDOWS\System32\diskcopy.dll
C:\WINDOWS\System32\diskmgmt.msc
C:\WINDOWS\System32\diskpart.exe
C:\WINDOWS\System32\diskperf.exe
C:\WINDOWS\System32\dispex.dll
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\System32\dllhst3g.exe
C:\WINDOWS\System32\dmadmin.exe
C:\WINDOWS\System32\dmband.dll
C:\WINDOWS\System32\dmcompos.dll
C:\WINDOWS\System32\dmconfig.dll
C:\WINDOWS\System32\dmdlgs.dll
C:\WINDOWS\System32\dmdskmgr.dll
C:\WINDOWS\System32\dmdskres.dll
C:\WINDOWS\System32\dmime.dll
C:\WINDOWS\System32\dmintf.dll
C:\WINDOWS\System32\dmloader.dll
C:\WINDOWS\System32\dmocx.dll
C:\WINDOWS\System32\dmremote.exe
C:\WINDOWS\System32\dmscript.dll
C:\WINDOWS\System32\dmserver.dll
C:\WINDOWS\System32\dmstyle.dll
C:\WINDOWS\System32\dmsynth.dll
C:\WINDOWS\System32\dmusic.dll
C:\WINDOWS\System32\dmutil.dll
C:\WINDOWS\System32\dmview.ocx
C:\WINDOWS\System32\dnsapi.dll
C:\WINDOWS\System32\dnsrslvr.dll
C:\WINDOWS\System32\docprop.dll
C:\WINDOWS\System32\docprop2.dll
C:\WINDOWS\System32\doskey.exe
C:\WINDOWS\System32\dosx.exe
C:\WINDOWS\System32\dot3api.dll
C:\WINDOWS\System32\dot3cfg.dll
C:\WINDOWS\System32\dot3dlg.dll
C:\WINDOWS\System32\dot3gpclnt.dll
C:\WINDOWS\System32\dot3msm.dll
C:\WINDOWS\System32\dot3svc.dll
C:\WINDOWS\System32\dot3ui.dll
C:\WINDOWS\System32\dpcdll.dll
C:\WINDOWS\System32\dplay.dll
C:\WINDOWS\System32\dplaysvr.exe
C:\WINDOWS\System32\dplayx.dll
C:\WINDOWS\System32\dpmodemx.dll
C:\WINDOWS\System32\dpnaddr.dll
C:\WINDOWS\System32\dpnet.dll
C:\WINDOWS\System32\dpnhpast.dll
C:\WINDOWS\System32\dpnhupnp.dll
C:\WINDOWS\System32\dpnlobby.dll
C:\WINDOWS\System32\dpnmodem.dll
C:\WINDOWS\System32\dpnsvr.exe
C:\WINDOWS\System32\dpnwsock.dll
C:\WINDOWS\System32\dpserial.dll
C:\WINDOWS\System32\dpvacm.dll
C:\WINDOWS\System32\dpvoice.dll
C:\WINDOWS\System32\dpvsetup.exe
C:\WINDOWS\System32\dpvvox.dll
C:\WINDOWS\System32\dpwsock.dll
C:\WINDOWS\System32\dpwsockx.dll
C:\WINDOWS\System32\driverquery.exe
C:\WINDOWS\System32\drmclien.dll
C:\WINDOWS\System32\drmstor.dll
C:\WINDOWS\System32\drmupgds.exe
C:\WINDOWS\System32\drmv2clt.dll
C:\WINDOWS\System32\drprov.dll
C:\WINDOWS\System32\ds16gt.dLL
C:\WINDOWS\System32\ds32gt.dll
C:\WINDOWS\System32\dsauth.dll
C:\WINDOWS\System32\dsdmo.dll
C:\WINDOWS\System32\dsdmoprp.dll
C:\WINDOWS\System32\dskquota.dll
C:\WINDOWS\System32\dskquoui.dll
C:\WINDOWS\System32\dsound.dll
C:\WINDOWS\System32\dsound.vxd
C:\WINDOWS\System32\dsound3d.dll
C:\WINDOWS\System32\dsprop.dll
C:\WINDOWS\System32\dsprpres.dll
C:\WINDOWS\System32\dsquery.dll
C:\WINDOWS\System32\dssec.dat
C:\WINDOWS\System32\dssec.dll
C:\WINDOWS\System32\dssenh.dll
C:\WINDOWS\System32\dsuiext.dll
C:\WINDOWS\System32\dswave.dll
C:\WINDOWS\System32\duser.dll
C:\WINDOWS\System32\dvdplay.exe
C:\WINDOWS\System32\dvdupgrd.exe
C:\WINDOWS\System32\dx7vb.dll
C:\WINDOWS\System32\dx8vb.dll
C:\WINDOWS\System32\dxdiag.exe
C:\WINDOWS\System32\dxdiagn.dll
C:\WINDOWS\System32\dxmasf.dll
C:\WINDOWS\System32\dxtmsft.dll
C:\WINDOWS\System32\dxtrans(2).dll
C:\WINDOWS\System32\dxtrans(3).dll
C:\WINDOWS\System32\dxtrans.dll
C:\WINDOWS\System32\eapolqec.dll
C:\WINDOWS\System32\eapp3hst.dll
C:\WINDOWS\System32\eappcfg.dll
C:\WINDOWS\System32\eappgnui.dll
C:\WINDOWS\System32\eapphost.dll
C:\WINDOWS\System32\eappprxy.dll
C:\WINDOWS\System32\eapqec.dll
C:\WINDOWS\System32\eapsvc.dll
C:\WINDOWS\System32\edit.com
C:\WINDOWS\System32\edlin.exe
C:\WINDOWS\System32\efsadu.dll
C:\WINDOWS\System32\ega.cpi
C:\WINDOWS\System32\els.dll
C:\WINDOWS\System32\emptyregdb.dat
C:\WINDOWS\System32\encapi.dll
C:\WINDOWS\System32\encdec.dll
C:\WINDOWS\System32\EqnClass.Dll
C:\WINDOWS\System32\es(3).dll
C:\WINDOWS\System32\es.dll
C:\WINDOWS\System32\esent.dll
C:\WINDOWS\System32\esent97.dll
C:\WINDOWS\System32\esentprf.dll
C:\WINDOWS\System32\esentprf.hxx
C:\WINDOWS\System32\esentprf.ini
C:\WINDOWS\System32\esentutl.exe
C:\WINDOWS\System32\eudcedit.exe
C:\WINDOWS\System32\eula.txt
C:\WINDOWS\System32\eventcls.dll
C:\WINDOWS\System32\eventcreate.exe
C:\WINDOWS\System32\eventlog.dll
C:\WINDOWS\System32\eventquery.vbs
C:\WINDOWS\System32\eventtriggers.exe
C:\WINDOWS\System32\eventvwr.exe
C:\WINDOWS\System32\eventvwr.msc
C:\WINDOWS\System32\exe2bin.exe
C:\WINDOWS\System32\expand.exe
C:\WINDOWS\System32\expsrv.dll
C:\WINDOWS\System32\extmgr.dll
C:\WINDOWS\System32\extrac32.exe
C:\WINDOWS\System32\exts.dll
C:\WINDOWS\System32\fastopen.exe
C:\WINDOWS\System32\faultrep.dll
C:\WINDOWS\System32\faxpatch.exe
C:\WINDOWS\System32\fc.exe
C:\WINDOWS\System32\fdco1.dll
C:\WINDOWS\System32\fdco1ins.dll
C:\WINDOWS\System32\fdco_l1028.dll
C:\WINDOWS\System32\fdco_l1031.dll
C:\WINDOWS\System32\fdco_l1034.dll
C:\WINDOWS\System32\fdco_l1036.dll
C:\WINDOWS\System32\fdco_l1040.dll
C:\WINDOWS\System32\fdco_l1041.dll
C:\WINDOWS\System32\fdco_l1042.dll
C:\WINDOWS\System32\fdco_l1046.dll
C:\WINDOWS\System32\fdco_l2052.dll
C:\WINDOWS\System32\fde.dll
C:\WINDOWS\System32\fdeploy.dll
le premier TB.txt
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:149 Go (Free:33 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 04/06/2009|12:15 )
-----------\\ SUPPRESSION
Commande ECHO désactivée.
Console - Windows Trust 2.00
(c) 2007-2008
... [Service] MyWebSearchService -- Marqué pour suppression !
... [Service] ASKService -- Marque pour suppression !
... [Service] ASKUpgrade -- Marque pour suppression !
-----------\\ Recherche de Fichiers / Dossiers ...
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] ASKService
[Service] ASKService
[Service] ASKService
[Service] ASKUpgrade
[Service] ASKUpgrade
[Service] ASKUpgrade
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
-----------\\ Extensions
( ) - {} =>
( ) - {} =>
( ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
-----------\\ [..\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Start Page"="https://www.google.fr/?gws_rd=ssl"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Start Page Redirect Cache"="https://www.msn.com/fr-fr?ocid=iehp"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\GDIPFONTCACHEV1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.Bin
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Profiles.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Glowria\Allocine.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Google\Chrome\User Data\Default\Bookmarks.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte d'envoi.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte de r‚ception.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Brouillons.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Folders.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\important.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Offline.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Pop3uidl.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments envoy‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments supprim‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Wallpaper1.bmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\index.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\76BNTY83\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\AP4ANQ8W\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\HAYAU54U\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\JDDOX1KO\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\frameiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\tabiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{19CD7335-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{2C23E96F-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{40A11EDF-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4E2603A7-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4F09F47D-50C1-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4FB1CA03-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{5106BA49-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{52CA486B-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{56A8297B-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{6950A159-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{705540C5-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7611E955-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7BABDC47-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7FF606A9-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{8558326F-5058-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F85A657B-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F95E45CD-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{0E927F66-4A85-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{3651D0EE-4B60-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{71909D42-4887-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{A8CD3968-4A8B-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{B8097B96-4E71-11DE-B131-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{BA2691E6-4860-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{CFC8ED78-4AE0-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{F46C6D2C-4B66-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{386836F1-4F77-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{ED92C879-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{CE37BA82-4FA1-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{ED92C87A-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{06B469CF-CDC2-47F4-81A9-8EA6E8506E45}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{6A1806CD-94D4-4689-BA73-E35EA1EA9990}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{07E14F53-BC9F-4BE8-918E-8C5AAA88DACF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{0B998EAC-D561-44F7-96CE-C020E1D2FC0D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{1621CF07-4B11-46A6-911C-A3F8E25432CE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{215B94A8-D3BC-455C-8E97-2BD0A8BB9020}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{21636127-E939-4613-83A4-56C630F98305}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{228CF6CE-9997-4D4B-B839-3C48073CDC35}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{28557407-DD07-404A-885F-DFD0D07B0CFE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{2E8DAE0A-CB77-48EB-8125-430971EA8CD1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3958D08C-83D3-4D51-9AD7-30AA870CB341}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3E7D19E1-A4C5-4D71-9402-5A360362809C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3F637222-79FC-4B8A-9EBB-AA7ECDC06D61}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4304DF10-FCE5-486C-ACC2-1DCF45BCE6D2}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4AD9C3E0-2863-4A6F-8460-CB29AAEEC41C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4C0BB22C-AF7E-4EFF-AFD1-6FEE60BF632F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5A59DC4A-97A0-4A96-8B5E-6625571A1330}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5AA8C16D-BFA7-4F8C-BDDB-E2F4225B7739}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{62162615-236A-4B2E-BFF7-E3722366F2F8}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{6B025548-14D7-49E7-87D1-73ADEC0E2FA0}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{72903353-57EB-484A-A204-1E9837D92648}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{82D17B54-DE7A-44CB-8001-5C3B73433E1B}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{84BB6A6E-EC0E-446E-B356-90DAA01301E1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{869B15AA-B951-4FD9-AEA1-AE4AC882A6D6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{87F55F7C-9EBE-4507-B8B3-425A92D67182}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{897CB529-4985-4FBF-BE43-2C54016E9A0C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{8AB082C7-CAA2-492E-AE82-786E8410B740}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{91767437-5764-42AF-805C-F6CF73325260}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{92001804-8A69-48C3-B8EC-BE02F8E5DC1D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{A86543EB-C71C-4F48-BF3A-E47E42EE7405}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{B8DD4423-9820-4EDB-879F-E4D2402C5761}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{C6B1DA01-28B9-4BC3-B491-B6EB6B2CD9DA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CA7070E2-B365-4602-974B-8B8AB784D5EF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CBA638DE-ED6D-43B8-A779-699A7E5F8100}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D1571C55-9E08-4D69-A78B-7B66EAE010BF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D5FF512A-C854-439B-9D52-15C61228A17F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D615529A-A93B-4525-95F7-060D23D5A9EA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D94FB94C-321B-4C0E-990A-0938CE4AA8E6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{DCB1C225-A710-4446-BA39-3A268F631B33}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E156E74F-264D-41E3-AD79-FCDB21C0514E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E4D1CC93-046E-4F98-B4A8-0B284C37210E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F0D6197C-EF2C-4228-AC2E-2990FFAACB38}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F20F55D6-4FD6-40AB-902D-11D10FC328F7}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\MusicType1VirginMegaFr\downloads.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\activesharingfolder.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\ContactsLog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00260.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00261.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00262.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00263.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\bernardbocquillon@msn.com\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\Brands\fr-FR\config.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\choulisette@hotmail.fr\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000D.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00010.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00011.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\m62300@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\nathmarquis@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\62dunathalie@live.fr\DFSR\Staging\CS{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}\01\10-{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}-v1-{189EF6FB-EBFD-4E74-A0B9-8E83E3D12674}-v10-Downloaded.frx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E3.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E4.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E5.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E6.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E7.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E8.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E9.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004EA.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsrtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\tmp.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\shyrel@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Movie Maker\MEDIATAB1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat.LOG
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\Desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeold.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\RssFeeds.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\sqmnoopt00.sqm
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\WindowsLiveMail.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\raulxmickael@msn.com\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.DTD
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.XML
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41366293776.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41667781132.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41993430095.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42011990351.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42298406619.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42330217323.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43282370197.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43438407711.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BonusInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BuildingInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivicInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivilizationInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4DiplomacyInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4HandicapInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4ImprovementInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4LeaderHeadInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4PromotionInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4TechInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4UnitInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\crc.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalDefines.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalText.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\Profiles\Default Profile.pfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\x-men.origins.wolverine.2009..avi(1).qp.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\7zAes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Aes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Branch.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Copy.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\LZMA.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Swap.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Formats\7z.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\Windows Live Writer.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\BlogProvidersB5.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\DhtmlImageViewers.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Markets.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Master.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\PassportSettings2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\SpellingConfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\TagProviders.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Updates.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\VideoProvidersB2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Writer_Config.cab
C:\WINDOWS\System32\$winnt$.inf
C:\WINDOWS\System32\12520437.cpx
C:\WINDOWS\System32\12520850.cpx
C:\WINDOWS\System32\6to4svc.dll
C:\WINDOWS\System32\aaaamon.dll
C:\WINDOWS\System32\aaclient.dll
C:\WINDOWS\System32\acctres.dll
C:\WINDOWS\System32\acledit.dll
C:\WINDOWS\System32\aclui.dll
C:\WINDOWS\System32\activeds.dll
C:\WINDOWS\System32\activeds.tlb
C:\WINDOWS\System32\actmovie.exe
C:\WINDOWS\System32\actxprxy.dll
C:\WINDOWS\System32\admparse.dll
C:\WINDOWS\System32\adptif.dll
C:\WINDOWS\System32\adsldp.dll
C:\WINDOWS\System32\adsldpc.dll
C:\WINDOWS\System32\adsmsext.dll
C:\WINDOWS\System32\adsnds.dll
C:\WINDOWS\System32\adsnt.dll
C:\WINDOWS\System32\adsnw.dll
C:\WINDOWS\System32\advapi32.dll
C:\WINDOWS\System32\advpack(2).dll
C:\WINDOWS\System32\advpack(3).dll
C:\WINDOWS\System32\advpack(4).dll
C:\WINDOWS\System32\advpack(5).dll
C:\WINDOWS\System32\advpack.dll
C:\WINDOWS\System32\advpack.dll.mui
C:\WINDOWS\System32\ahui.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\alsndmgr.cpl
C:\WINDOWS\System32\alsndmgr.wav
C:\WINDOWS\System32\amcompat.tlb
C:\WINDOWS\System32\amdpcom32.dll
C:\WINDOWS\System32\amstream.dll
C:\WINDOWS\System32\ansi.sys
C:\WINDOWS\System32\apcups.dll
C:\WINDOWS\System32\api.dat
C:\WINDOWS\System32\api32.dll
C:\WINDOWS\System32\append.exe
C:\WINDOWS\System32\apphelp.dll
C:\WINDOWS\System32\appmgmts.dll
C:\WINDOWS\System32\appmgr.dll
C:\WINDOWS\System32\appwiz.cpl
C:\WINDOWS\System32\app_filter_ui.log
C:\WINDOWS\System32\arp.exe
C:\WINDOWS\System32\asctrls.ocx
C:\WINDOWS\System32\asferror.dll
C:\WINDOWS\System32\asr_pfu.exe
C:\WINDOWS\System32\asycfilt.dll
C:\WINDOWS\System32\at.exe
C:\WINDOWS\System32\ati2cqag.dll
C:\WINDOWS\System32\ati2dvaa.dll
C:\WINDOWS\System32\ati2dvag.dll
C:\WINDOWS\System32\ati2edxx.dll
C:\WINDOWS\System32\ati2evxx.dll
C:\WINDOWS\System32\ati2evxx.exe
C:\WINDOWS\System32\Ati2mdxx.exe
C:\WINDOWS\System32\ati2sgag.exe
C:\WINDOWS\System32\ati3d1ag.dll
C:\WINDOWS\System32\ati3duag.dll
C:\WINDOWS\System32\atiadlxx.dll
C:\WINDOWS\System32\atibrtmon.exe
C:\WINDOWS\System32\aticalcl.dll
C:\WINDOWS\System32\aticaldd.dll
C:\WINDOWS\System32\aticalrt.dll
C:\WINDOWS\System32\ATIDDC.DLL
C:\WINDOWS\System32\ATIDEMGX.dll
C:\WINDOWS\System32\atifglpf.xml
C:\WINDOWS\System32\atiicdxx.dat
C:\WINDOWS\System32\atiiiexx.dll
C:\WINDOWS\System32\atikvmag.dll
C:\WINDOWS\System32\atioglxx.dll
C:\WINDOWS\System32\atiok3x2.dll
C:\WINDOWS\System32\atipdlxx.dll
C:\WINDOWS\System32\atitvo32.dll
C:\WINDOWS\System32\ativcoxx.dll
C:\WINDOWS\System32\ativtmxx.dll
C:\WINDOWS\System32\ativva5x.dat
C:\WINDOWS\System32\ativva6x.dat
C:\WINDOWS\System32\ativvaxx.cap
C:\WINDOWS\System32\ativvaxx.dat
C:\WINDOWS\System32\ativvaxx.dll
C:\WINDOWS\System32\atkctrs.dll
C:\WINDOWS\System32\atl.dll
C:\WINDOWS\System32\atmadm.exe
C:\WINDOWS\System32\atmfd.dll
C:\WINDOWS\System32\atmlib.dll
C:\WINDOWS\System32\atmpvcno.dll
C:\WINDOWS\System32\attrib.exe
C:\WINDOWS\System32\audiodev.dll
C:\WINDOWS\System32\audiosrv.dll
C:\WINDOWS\System32\auditusr.exe
C:\WINDOWS\System32\Aurora-VS.scr
C:\WINDOWS\System32\Aurora.scr
C:\WINDOWS\System32\authz.dll
C:\WINDOWS\System32\autochk.exe
C:\WINDOWS\System32\autoconv.exe
C:\WINDOWS\System32\autodisc.dll
C:\WINDOWS\System32\autofmt.exe
C:\WINDOWS\System32\autolfn.exe
C:\WINDOWS\System32\avicap.dll
C:\WINDOWS\System32\avicap32.dll
C:\WINDOWS\System32\avifil32.dll
C:\WINDOWS\System32\avifile.dll
C:\WINDOWS\System32\avwav3.dll
C:\WINDOWS\System32\azroles.dll
C:\WINDOWS\System32\basesrv.dll
C:\WINDOWS\System32\batmeter.dll
C:\WINDOWS\System32\batt.dll
C:\WINDOWS\System32\bdco1.dll
C:\WINDOWS\System32\bdco1ins.dll
C:\WINDOWS\System32\bddwpwzhnxtzcack.dll
C:\WINDOWS\System32\bidispl.dll
C:\WINDOWS\System32\bios1.rom
C:\WINDOWS\System32\bios4.rom
C:\WINDOWS\System32\bitsprx2.dll
C:\WINDOWS\System32\bitsprx3.dll
C:\WINDOWS\System32\bitsprx4.dll
C:\WINDOWS\System32\blackbox.dll
C:\WINDOWS\System32\blastcln.exe
C:\WINDOWS\System32\bootcfg.exe
C:\WINDOWS\System32\bootok.exe
C:\WINDOWS\System32\bootvid.dll
C:\WINDOWS\System32\bootvrfy.exe
C:\WINDOWS\System32\bopomofo.uce
C:\WINDOWS\System32\browselc.dll
C:\WINDOWS\System32\browser.dll
C:\WINDOWS\System32\browseui.dll
C:\WINDOWS\System32\browsewm.dll
C:\WINDOWS\System32\bthci.dll
C:\WINDOWS\System32\bthprops.cpl
C:\WINDOWS\System32\bthserv.dll
C:\WINDOWS\System32\btpanui.dll
C:\WINDOWS\System32\Bulles-VS.scr
C:\WINDOWS\System32\BuzzingBee.wav
C:\WINDOWS\System32\cabinet.dll
C:\WINDOWS\System32\cacls.exe
C:\WINDOWS\System32\calc.exe
C:\WINDOWS\System32\camocx.dll
C:\WINDOWS\System32\CapabilityTable.exe
C:\WINDOWS\System32\capesnpn.dll
C:\WINDOWS\System32\cards.dll
C:\WINDOWS\System32\catsrv.dll
C:\WINDOWS\System32\catsrvps.dll
C:\WINDOWS\System32\catsrvut.dll
C:\WINDOWS\System32\ccfgnt.dll
C:\WINDOWS\System32\cdfview.dll
C:\WINDOWS\System32\cdm.dll
C:\WINDOWS\System32\cdmodem.dll
C:\WINDOWS\System32\cdosys.dll
C:\WINDOWS\System32\certcli.dll
C:\WINDOWS\System32\certmgr.dll
C:\WINDOWS\System32\certmgr.msc
C:\WINDOWS\System32\cewmdm.dll
C:\WINDOWS\System32\cfgbkend.dll
C:\WINDOWS\System32\cfgmgr32.dll
C:\WINDOWS\System32\charmap.exe
C:\WINDOWS\System32\ChaŒnes.scf
C:\WINDOWS\System32\ChCfg.exe
C:\WINDOWS\System32\chcp.com
C:\WINDOWS\System32\chkdsk.exe
C:\WINDOWS\System32\chkntfs.exe
C:\WINDOWS\System32\cic.dll
C:\WINDOWS\System32\cipher.exe
C:\WINDOWS\System32\ckcnv.exe
C:\WINDOWS\System32\clb.dll
C:\WINDOWS\System32\clbcatex.dll
C:\WINDOWS\System32\clbcatq.dll
C:\WINDOWS\System32\cleanmgr.exe
C:\WINDOWS\System32\cliconfg.dll
C:\WINDOWS\System32\cliconfg.exe
C:\WINDOWS\System32\cliconfg.rll
C:\WINDOWS\System32\clusapi.dll
C:\WINDOWS\System32\cmcfg32.dll
C:\WINDOWS\System32\cmd.exe
C:\WINDOWS\System32\cmdial32.dll
C:\WINDOWS\System32\cmdl32.exe
C:\WINDOWS\System32\cmdlib.wsc
C:\WINDOWS\System32\CmdLineExt.dll
C:\WINDOWS\System32\CMExt.dll
C:\WINDOWS\System32\cmmon32.exe
C:\WINDOWS\System32\cmos.ram
C:\WINDOWS\System32\cmpbk32.dll
C:\WINDOWS\System32\cmprops.dll
C:\WINDOWS\System32\cmsetacl.dll
C:\WINDOWS\System32\cmstp.exe
C:\WINDOWS\System32\CmutEuro32.dll
C:\WINDOWS\System32\cmutil.dll
C:\WINDOWS\System32\cnbjmon.dll
C:\WINDOWS\System32\cnetcfg.dll
C:\WINDOWS\System32\cnvfat.dll
C:\WINDOWS\System32\colbact.dll
C:\WINDOWS\System32\comaddin.dll
C:\WINDOWS\System32\comcat.dll
C:\WINDOWS\System32\comctl32.dll
C:\WINDOWS\System32\comdlg32.dll
C:\WINDOWS\System32\comm.drv
C:\WINDOWS\System32\command.com
C:\WINDOWS\System32\commdlg.dll
C:\WINDOWS\System32\comp.exe
C:\WINDOWS\System32\compact.exe
C:\WINDOWS\System32\compatui.dll
C:\WINDOWS\System32\compmgmt.msc
C:\WINDOWS\System32\compobj.dll
C:\WINDOWS\System32\compstui.dll
C:\WINDOWS\System32\comrepl.dll
C:\WINDOWS\System32\comres.dll
C:\WINDOWS\System32\comsdupd.exe
C:\WINDOWS\System32\comsnap.dll
C:\WINDOWS\System32\comsvcs.dll
C:\WINDOWS\System32\comuid.dll
C:\WINDOWS\System32\CONFIG.TMP
C:\WINDOWS\System32\conime.exe
C:\WINDOWS\System32\console.dll
C:\WINDOWS\System32\control.exe
C:\WINDOWS\System32\convert.exe
C:\WINDOWS\System32\corpol.dll
C:\WINDOWS\System32\country.sys
C:\WINDOWS\System32\credssp.dll
C:\WINDOWS\System32\credui.dll
C:\WINDOWS\System32\crtdll.dll
C:\WINDOWS\System32\crypt32.dll
C:\WINDOWS\System32\cryptdlg.dll
C:\WINDOWS\System32\cryptdll.dll
C:\WINDOWS\System32\cryptext.dll
C:\WINDOWS\System32\cryptnet.dll
C:\WINDOWS\System32\cryptsvc.dll
C:\WINDOWS\System32\cryptui.dll
C:\WINDOWS\System32\cscdll.dll
C:\WINDOWS\System32\cscript.exe
C:\WINDOWS\System32\csrsrv.dll
C:\WINDOWS\System32\csrss.exe
C:\WINDOWS\System32\csseqchk.dll
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\ctl3d32.dll
C:\WINDOWS\System32\ctl3dv2.dll
C:\WINDOWS\System32\ctype.nls
C:\WINDOWS\System32\cvirt.dll
C:\WINDOWS\System32\cvirte.dll
C:\WINDOWS\System32\c_037.nls
C:\WINDOWS\System32\c_10000.nls
C:\WINDOWS\System32\c_10006.nls
C:\WINDOWS\System32\c_10007.nls
C:\WINDOWS\System32\c_10010.nls
C:\WINDOWS\System32\c_10017.nls
C:\WINDOWS\System32\c_10029.nls
C:\WINDOWS\System32\c_10079.nls
C:\WINDOWS\System32\c_10081.nls
C:\WINDOWS\System32\c_10082.nls
C:\WINDOWS\System32\c_1026.nls
C:\WINDOWS\System32\c_1250.nls
C:\WINDOWS\System32\c_1251.nls
C:\WINDOWS\System32\c_1252.nls
C:\WINDOWS\System32\c_1253.nls
C:\WINDOWS\System32\c_1254.nls
C:\WINDOWS\System32\c_1255.nls
C:\WINDOWS\System32\c_1256.nls
C:\WINDOWS\System32\c_1257.nls
C:\WINDOWS\System32\c_1258.nls
C:\WINDOWS\System32\c_20127.nls
C:\WINDOWS\System32\c_20261.nls
C:\WINDOWS\System32\c_20866.nls
C:\WINDOWS\System32\c_20905.nls
C:\WINDOWS\System32\c_21866.nls
C:\WINDOWS\System32\c_28591.nls
C:\WINDOWS\System32\c_28592.nls
C:\WINDOWS\System32\c_28593.nls
C:\WINDOWS\System32\C_28594.NLS
C:\WINDOWS\System32\C_28595.NLS
C:\WINDOWS\System32\C_28597.NLS
C:\WINDOWS\System32\c_28598.nls
C:\WINDOWS\System32\c_28599.nls
C:\WINDOWS\System32\c_28603.nls
C:\WINDOWS\System32\c_28605.nls
C:\WINDOWS\System32\c_437.nls
C:\WINDOWS\System32\c_500.nls
C:\WINDOWS\System32\c_737.nls
C:\WINDOWS\System32\c_775.nls
C:\WINDOWS\System32\c_850.nls
C:\WINDOWS\System32\c_852.nls
C:\WINDOWS\System32\c_855.nls
C:\WINDOWS\System32\c_857.nls
C:\WINDOWS\System32\c_860.nls
C:\WINDOWS\System32\c_861.nls
C:\WINDOWS\System32\c_863.nls
C:\WINDOWS\System32\c_865.nls
C:\WINDOWS\System32\c_866.nls
C:\WINDOWS\System32\c_869.nls
C:\WINDOWS\System32\c_874.nls
C:\WINDOWS\System32\c_875.nls
C:\WINDOWS\System32\c_932.nls
C:\WINDOWS\System32\c_936.nls
C:\WINDOWS\System32\c_949.nls
C:\WINDOWS\System32\c_950.nls
C:\WINDOWS\System32\d3d8.dll
C:\WINDOWS\System32\d3d8caps.dat
C:\WINDOWS\System32\d3d8thk.dll
C:\WINDOWS\System32\d3d9.dll
C:\WINDOWS\System32\d3d9caps.dat
C:\WINDOWS\System32\d3dcompiler_33.dll
C:\WINDOWS\System32\d3dcompiler_34.dll
C:\WINDOWS\System32\d3dcompiler_35.dll
C:\WINDOWS\System32\d3dcompiler_36.dll
C:\WINDOWS\System32\D3DCompiler_37.dll
C:\WINDOWS\System32\D3DCompiler_38.dll
C:\WINDOWS\System32\D3DCompiler_39.dll
C:\WINDOWS\System32\D3DCompiler_40.dll
C:\WINDOWS\System32\D3DCompiler_41.dll
C:\WINDOWS\System32\d3dim.dll
C:\WINDOWS\System32\d3dim700.dll
C:\WINDOWS\System32\d3dpmesh.dll
C:\WINDOWS\System32\d3dramp.dll
C:\WINDOWS\System32\d3drm.dll
C:\WINDOWS\System32\d3dx10.dll
C:\WINDOWS\System32\d3dx10_33.dll
C:\WINDOWS\System32\d3dx10_34.dll
C:\WINDOWS\System32\d3dx10_35.dll
C:\WINDOWS\System32\d3dx10_36.dll
C:\WINDOWS\System32\d3dx10_37.dll
C:\WINDOWS\System32\d3dx10_38.dll
C:\WINDOWS\System32\d3dx10_39.dll
C:\WINDOWS\System32\d3dx10_40.dll
C:\WINDOWS\System32\d3dx10_41.dll
C:\WINDOWS\System32\D3DX81ab.dll
C:\WINDOWS\System32\d3dx9.dll
C:\WINDOWS\System32\d3dx9_24.dll
C:\WINDOWS\System32\d3dx9_25.dll
C:\WINDOWS\System32\d3dx9_26.dll
C:\WINDOWS\System32\d3dx9_27.dll
C:\WINDOWS\System32\d3dx9_28.dll
C:\WINDOWS\System32\d3dx9_29.dll
C:\WINDOWS\System32\d3dx9_30.dll
C:\WINDOWS\System32\d3dx9_31.dll
C:\WINDOWS\System32\d3dx9_32.dll
C:\WINDOWS\System32\d3dx9_33.dll
C:\WINDOWS\System32\d3dx9_34.dll
C:\WINDOWS\System32\d3dx9_35.dll
C:\WINDOWS\System32\d3dx9_36.dll
C:\WINDOWS\System32\D3DX9_37.dll
C:\WINDOWS\System32\D3DX9_38.dll
C:\WINDOWS\System32\D3DX9_39.dll
C:\WINDOWS\System32\D3DX9_40.dll
C:\WINDOWS\System32\D3DX9_41.dll
C:\WINDOWS\System32\d3dxof.dll
C:\WINDOWS\System32\danim.dll
C:\WINDOWS\System32\dataclen.dll
C:\WINDOWS\System32\datime.dll
C:\WINDOWS\System32\daxctle.ocx
C:\WINDOWS\System32\dbghelp.dll
C:\WINDOWS\System32\dbmsrpcn.dll
C:\WINDOWS\System32\dbnetlib.dll
C:\WINDOWS\System32\dbnmpntw.dll
C:\WINDOWS\System32\dcache.bin
C:\WINDOWS\System32\dciman32.dll
C:\WINDOWS\System32\dcomcnfg.exe
C:\WINDOWS\System32\ddeml.dll
C:\WINDOWS\System32\ddraw.dll
C:\WINDOWS\System32\ddrawex.dll
C:\WINDOWS\System32\debug.exe
C:\WINDOWS\System32\desk.cpl
C:\WINDOWS\System32\deskadp.dll
C:\WINDOWS\System32\deskmon.dll
C:\WINDOWS\System32\deskperf.dll
C:\WINDOWS\System32\desktop.ini
C:\WINDOWS\System32\devenum.dll
C:\WINDOWS\System32\devmgmt.msc
C:\WINDOWS\System32\devmgr.dll
C:\WINDOWS\System32\dfb42448-7122-2023-be39-9182faa9fa78.exe
C:\WINDOWS\System32\dfshim.dll
C:\WINDOWS\System32\dfsshlex.dll
C:\WINDOWS\System32\dgnet.dll
C:\WINDOWS\System32\dgrpsetu.dll
C:\WINDOWS\System32\dgsetup.dll
C:\WINDOWS\System32\dhcpcsvc.dll
C:\WINDOWS\System32\dhcpmon.dll
C:\WINDOWS\System32\dhcpqec.dll
C:\WINDOWS\System32\dhcpsapi.dll
C:\WINDOWS\System32\diactfrm.dll
C:\WINDOWS\System32\diantz.exe
C:\WINDOWS\System32\digest.dll
C:\WINDOWS\System32\dimap.dll
C:\WINDOWS\System32\dimsntfy.dll
C:\WINDOWS\System32\dimsroam.dll
C:\WINDOWS\System32\dinput.dll
C:\WINDOWS\System32\dinput8.dll
C:\WINDOWS\System32\directx.cpl
C:\WINDOWS\System32\diskcomp.com
C:\WINDOWS\System32\diskcopy.com
C:\WINDOWS\System32\diskcopy.dll
C:\WINDOWS\System32\diskmgmt.msc
C:\WINDOWS\System32\diskpart.exe
C:\WINDOWS\System32\diskperf.exe
C:\WINDOWS\System32\dispex.dll
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\System32\dllhst3g.exe
C:\WINDOWS\System32\dmadmin.exe
C:\WINDOWS\System32\dmband.dll
C:\WINDOWS\System32\dmcompos.dll
C:\WINDOWS\System32\dmconfig.dll
C:\WINDOWS\System32\dmdlgs.dll
C:\WINDOWS\System32\dmdskmgr.dll
C:\WINDOWS\System32\dmdskres.dll
C:\WINDOWS\System32\dmime.dll
C:\WINDOWS\System32\dmintf.dll
C:\WINDOWS\System32\dmloader.dll
C:\WINDOWS\System32\dmocx.dll
C:\WINDOWS\System32\dmremote.exe
C:\WINDOWS\System32\dmscript.dll
C:\WINDOWS\System32\dmserver.dll
C:\WINDOWS\System32\dmstyle.dll
C:\WINDOWS\System32\dmsynth.dll
C:\WINDOWS\System32\dmusic.dll
C:\WINDOWS\System32\dmutil.dll
C:\WINDOWS\System32\dmview.ocx
C:\WINDOWS\System32\dnsapi.dll
C:\WINDOWS\System32\dnsrslvr.dll
C:\WINDOWS\System32\docprop.dll
C:\WINDOWS\System32\docprop2.dll
C:\WINDOWS\System32\doskey.exe
C:\WINDOWS\System32\dosx.exe
C:\WINDOWS\System32\dot3api.dll
C:\WINDOWS\System32\dot3cfg.dll
C:\WINDOWS\System32\dot3dlg.dll
C:\WINDOWS\System32\dot3gpclnt.dll
C:\WINDOWS\System32\dot3msm.dll
C:\WINDOWS\System32\dot3svc.dll
C:\WINDOWS\System32\dot3ui.dll
C:\WINDOWS\System32\dpcdll.dll
C:\WINDOWS\System32\dplay.dll
C:\WINDOWS\System32\dplaysvr.exe
C:\WINDOWS\System32\dplayx.dll
C:\WINDOWS\System32\dpmodemx.dll
C:\WINDOWS\System32\dpnaddr.dll
C:\WINDOWS\System32\dpnet.dll
C:\WINDOWS\System32\dpnhpast.dll
C:\WINDOWS\System32\dpnhupnp.dll
C:\WINDOWS\System32\dpnlobby.dll
C:\WINDOWS\System32\dpnmodem.dll
C:\WINDOWS\System32\dpnsvr.exe
C:\WINDOWS\System32\dpnwsock.dll
C:\WINDOWS\System32\dpserial.dll
C:\WINDOWS\System32\dpvacm.dll
C:\WINDOWS\System32\dpvoice.dll
C:\WINDOWS\System32\dpvsetup.exe
C:\WINDOWS\System32\dpvvox.dll
C:\WINDOWS\System32\dpwsock.dll
C:\WINDOWS\System32\dpwsockx.dll
C:\WINDOWS\System32\driverquery.exe
C:\WINDOWS\System32\drmclien.dll
C:\WINDOWS\System32\drmstor.dll
C:\WINDOWS\System32\drmupgds.exe
C:\WINDOWS\System32\drmv2clt.dll
C:\WINDOWS\System32\drprov.dll
C:\WINDOWS\System32\ds16gt.dLL
C:\WINDOWS\System32\ds32gt.dll
C:\WINDOWS\System32\dsauth.dll
C:\WINDOWS\System32\dsdmo.dll
C:\WINDOWS\System32\dsdmoprp.dll
C:\WINDOWS\System32\dskquota.dll
C:\WINDOWS\System32\dskquoui.dll
C:\WINDOWS\System32\dsound.dll
C:\WINDOWS\System32\dsound.vxd
C:\WINDOWS\System32\dsound3d.dll
C:\WINDOWS\System32\dsprop.dll
C:\WINDOWS\System32\dsprpres.dll
C:\WINDOWS\System32\dsquery.dll
C:\WINDOWS\System32\dssec.dat
C:\WINDOWS\System32\dssec.dll
C:\WINDOWS\System32\dssenh.dll
C:\WINDOWS\System32\dsuiext.dll
C:\WINDOWS\System32\dswave.dll
C:\WINDOWS\System32\duser.dll
C:\WINDOWS\System32\dvdplay.exe
C:\WINDOWS\System32\dvdupgrd.exe
C:\WINDOWS\System32\dx7vb.dll
C:\WINDOWS\System32\dx8vb.dll
C:\WINDOWS\System32\dxdiag.exe
C:\WINDOWS\System32\dxdiagn.dll
C:\WINDOWS\System32\dxmasf.dll
C:\WINDOWS\System32\dxtmsft.dll
C:\WINDOWS\System32\dxtrans(2).dll
C:\WINDOWS\System32\dxtrans(3).dll
C:\WINDOWS\System32\dxtrans.dll
C:\WINDOWS\System32\eapolqec.dll
C:\WINDOWS\System32\eapp3hst.dll
C:\WINDOWS\System32\eappcfg.dll
C:\WINDOWS\System32\eappgnui.dll
C:\WINDOWS\System32\eapphost.dll
C:\WINDOWS\System32\eappprxy.dll
C:\WINDOWS\System32\eapqec.dll
C:\WINDOWS\System32\eapsvc.dll
C:\WINDOWS\System32\edit.com
C:\WINDOWS\System32\edlin.exe
C:\WINDOWS\System32\efsadu.dll
C:\WINDOWS\System32\ega.cpi
C:\WINDOWS\System32\els.dll
C:\WINDOWS\System32\emptyregdb.dat
C:\WINDOWS\System32\encapi.dll
C:\WINDOWS\System32\encdec.dll
C:\WINDOWS\System32\EqnClass.Dll
C:\WINDOWS\System32\es(3).dll
C:\WINDOWS\System32\es.dll
C:\WINDOWS\System32\esent.dll
C:\WINDOWS\System32\esent97.dll
C:\WINDOWS\System32\esentprf.dll
C:\WINDOWS\System32\esentprf.hxx
C:\WINDOWS\System32\esentprf.ini
C:\WINDOWS\System32\esentutl.exe
C:\WINDOWS\System32\eudcedit.exe
C:\WINDOWS\System32\eula.txt
C:\WINDOWS\System32\eventcls.dll
C:\WINDOWS\System32\eventcreate.exe
C:\WINDOWS\System32\eventlog.dll
C:\WINDOWS\System32\eventquery.vbs
C:\WINDOWS\System32\eventtriggers.exe
C:\WINDOWS\System32\eventvwr.exe
C:\WINDOWS\System32\eventvwr.msc
C:\WINDOWS\System32\exe2bin.exe
C:\WINDOWS\System32\expand.exe
C:\WINDOWS\System32\expsrv.dll
C:\WINDOWS\System32\extmgr.dll
C:\WINDOWS\System32\extrac32.exe
C:\WINDOWS\System32\exts.dll
C:\WINDOWS\System32\fastopen.exe
C:\WINDOWS\System32\faultrep.dll
C:\WINDOWS\System32\faxpatch.exe
C:\WINDOWS\System32\fc.exe
C:\WINDOWS\System32\fdco1.dll
C:\WINDOWS\System32\fdco1ins.dll
C:\WINDOWS\System32\fdco_l1028.dll
C:\WINDOWS\System32\fdco_l1031.dll
C:\WINDOWS\System32\fdco_l1034.dll
C:\WINDOWS\System32\fdco_l1036.dll
C:\WINDOWS\System32\fdco_l1040.dll
C:\WINDOWS\System32\fdco_l1041.dll
C:\WINDOWS\System32\fdco_l1042.dll
C:\WINDOWS\System32\fdco_l1046.dll
C:\WINDOWS\System32\fdco_l2052.dll
C:\WINDOWS\System32\fde.dll
C:\WINDOWS\System32\fdeploy.dll
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 12:17
4 juin 2009 à 12:17
info.txt:
info.txt logfile of random's system information tool 1.06 2009-06-04 12:13:39
======Uninstall list======
-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
AbiWord 2.6.6-->C:\Program Files\AbiSuite2\UninstallAbiWord2.exe
Adobe Flash Player 10 Plugin-->MsiExec.exe /X{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B}
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Advanced Spy-->C:\Program Files\9B517\Uninstall.exe
Age of Mythology - Gold Edition-->C:\Remote Programs\Age of Mythology - Gold Edition\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=300354;name=Age of Mythology - Gold Edition;dir=C:\Remote Programs\Age of Mythology - Gold Edition\;prvid=200;cmdid=1;prvdir=Default
AMD Processor Driver-->C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe -runfromtemp -l0x040c -removeonly
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x5c31
ATI Catalyst Registration-->MsiExec.exe /X{72736F5F-520D-472A-88CC-7B02872FD34E}
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
AutoIt v3.3.0.0-->C:\Program Files\AutoIt3\Uninstall.exe
AutoScreenShot-->C:\Program Files\AutoScreenShot\uninstall.exe
Booster Orange-->C:\Program Files\Booster Wanadoo\uninstall\uninstall.exe
Catalyst Control Center - Branding-->MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CDBurnerXP-->"C:\Program Files\CDBurnerXP\unins000.exe"
Cheat Engine 5.4-->"C:\Program Files\Cheat Engine\unins000.exe"
Ciel Auto-entrepreneur Facile 1.40-->MsiExec.exe /I{AF86BA3B-B465-4E12-B771-E12208FDB89B}
City Life-->C:\Remote Programs\City Life\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=428554;name=City Life;dir=C:\Remote Programs\City Life\;prvid=200;cmdid=1;prvdir=Default
Command & Conquer 3-->MsiExec.exe /I{B0C30E93-D3D9-4F04-A2AC-54749B573275}
Contextual Tool Thesuperads-->C:\WINDOWS\system32\dfb42448-7122-2023-be39-9182faa9fa78.exe
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
CyberGestion-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C964A549-C74A-11D3-B88A-00A0C9379093}\setup.exe"
Désinstallation du Allocine Video Manager-->C:\Program Files\Allocine\uninst-Allocine.exe
DofusCalc 1.5.1052-->"C:\Program Files\DofusCalc\unins000.exe"
ECO Bar-->regsvr32 /u /s "C:\Program Files\IEToolbar\ECO Bar\ecobar.dll"
Endless War 3-->"C:\Program Files\EndlessWar3_at\unins000.exe"
EVEREST Ultimate Edition v4.20-->"C:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe"
Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
HijackThis 2.0.2-->"C:\Documents and Settings\Administrateur\Bureau\HijackThis.exe" /uninstall
HomePlayer 1.5.6a-->C:\Program Files\HomePlayer\uninst.exe
Inkscape 0.46-->C:\Program Files\Inkscape\Uninstall.exe
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Lexmark 3500-4500 Series-->C:\Program Files\Lexmark 3500-4500 Series\Install\x86\Uninst.exe
LimeWire PRO 5.1.2-->"C:\Program Files\LimeWire\uninstall.exe"
LinkWare-->"C:\Documents and Settings\All Users\Application Data\{6764A9A0-1DAB-4AED-8936-9270ACCA5E17}\setup.exe" REMOVE=TRUE MODIFY=FALSE
Lundi Matin Business-->"C:\XAMPPLite\uninstall.exe"
Ma-Config.com-->MsiExec.exe /X{FACFAAB3-1443-427D-A0B0-1B55BB4F7FB2}
Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Mozilla Firefox (3.0.10)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
Mozilla Thunderbird (2.0.0.21)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
NewsLeecher v3.9 Final-->"C:\Program Files\NewsLeecher\unins000.exe"
NOD32 Antivirus System-->C:\Program Files\Eset\Setup\setup.exe /UNINSTALL
NOD32 FiX-->"C:\Program Files\Eset\unins000.exe"
NVIDIA Drivers-->C:\WINDOWS\system32\nvuide.exe UninstallGUI
NVIDIA ForceWare Network Access Manager-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{1F6423DE-7959-4178-80E0-023C7EAA5347} /l1036
Paint.NET v3.31-->MsiExec.exe /X{51AFB69C-1C54-4C77-A888-2860F8CD3E7D}
Performance Solution Blueskyadagency-->C:\WINDOWS\system32\zdcnkejvbmxxgnce.exe
Player Metaboli-->"C:\Program Files\Player Metaboli\Uninstall.exe"
QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
Realtek AC'97 Audio-->Alcrmv.exe -r -m
Run It-->"C:\Program Files\runit\runitu_32.exe"
Santa Claus - Gold-->C:\Remote Programs\Santa Claus - Gold Edition\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=394854;name=Santa Claus - Gold;dir=C:\Remote Programs\Santa Claus - Gold Edition\;prvid=200;cmdid=1;prvdir=Default
Search Assistant Thesuperads-->C:\WINDOWS\system32\obcowlxlherzshfo.dll-uninst.exe
Sierra Print Artist 4.5-->C:\WINDOWS\IsUninst.exe -fC:\SIERRA\PA45\Uninst.isu -c"C:\SIERRA\PA45\PASTP.DLL"
Sierra Utilities-->C:\Program Files\Sierra On-Line\sutil32.exe uninstall
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Swords and Sandals 2 2.0-->C:\Program Files\Fizzy\Swords and Sandals 2\uninst.exe
TeamSpeak 2 RC2-->"C:\Program Files\Teamspeak2_RC2\unins001.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Tycoon City - New York-->C:\Remote Programs\Tycoon City - New York\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=424054;name=Tycoon City - New York;dir=C:\Remote Programs\Tycoon City - New York\;prvid=200;cmdid=1;prvdir=Default
Unlocker 1.8.5-->C:\Program Files\Unlocker\uninst.exe
UseNeXT-->"C:\Program Files\UseNeXT\unins000.exe"
Vega$ - Make it Big-->C:\Remote Programs\Vegas Tycoon - Make It Big\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=580054;name=Vega$ - Make it Big;dir=C:\Remote Programs\Vegas Tycoon - Make It Big\;prvid=200;cmdid=1;prvdir=Default
VLC media player 0.9.9-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Wall Street Trader-->C:\Remote Programs\Wall Street Trader 2001\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=187054;name=Wall Street Trader;dir=C:\Remote Programs\Wall Street Trader 2001\;prvid=200;cmdid=1;prvdir=Default
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Trust Installer-->"C:\Program Files\WTInstaller\Désinstaller.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR-->"C:\Program Files\WinRAR\uninstall.exe"
World of Warcraft FREE Trial-->MsiExec.exe /X{02EBDBB9-4600-41D3-B566-40CB861511D2}
Youda Farmer fr-->"C:\Program Files\BoontyGames\Youda Farmer\unins000.exe"
======Hosts File======
127.0.0.1 localhost
127.0.0.1 mpa.one.microsoft.com
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
Securitycenter WMI appears to be broken
======System event log======
Computer Name: WINDOWS-571372A
Event Code: 10005
Message: DCOM a reçu l'erreur "%1058" lors de la mise en route du service upnphost avec les arguments ""
pour démarrer le serveur :
{204810B9-73B2-11D4-BF42-00B0D0118B56}
Record Number: 6411
Source Name: DCOM
Time Written: 20090409092653.000000+120
Event Type: erreur
User: WINDOWS-571372A\Administrateur
Computer Name: WINDOWS-571372A
Event Code: 10005
Message: DCOM a reçu l'erreur "%1058" lors de la mise en route du service EventSystem avec les arguments ""
pour démarrer le serveur :
{1BE1F766-5536-11D1-B726-00C04FB926AF}
Record Number: 6410
Source Name: DCOM
Time Written: 20090406153823.000000+120
Event Type: erreur
User: WINDOWS-571372A\Administrateur
Computer Name: WINDOWS-571372A
Event Code: 7036
Message: Le service Windows Installer est entré dans l'état : arrêté.
Record Number: 6409
Source Name: Service Control Manager
Time Written: 20090405073738.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 7036
Message: Le service Windows Installer est entré dans l'état : en cours d'exécution.
Record Number: 6408
Source Name: Service Control Manager
Time Written: 20090405072711.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Windows Installer.
Record Number: 6407
Source Name: Service Control Manager
Time Written: 20090405072711.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM
=====Application event log=====
Computer Name: WINDOWS-571372A
Event Code: 103
Message: msnmsgr (2956) \\.\C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 3166
Source Name: ESENT
Time Written: 20090504181430.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 102
Message: msnmsgr (2956) \\.\C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 3165
Source Name: ESENT
Time Written: 20090504110755.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 100
Message: msnmsgr (2956) Le moteur de base de données 5.01.2600.5512 est démarré.
Record Number: 3164
Source Name: ESENT
Time Written: 20090504110755.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 101
Message: msnmsgr (2956) Le moteur de base de données est arrêté.
Record Number: 3163
Source Name: ESENT
Time Written: 20090504110728.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 103
Message: msnmsgr (2956) \\.\C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 3162
Source Name: ESENT
Time Written: 20090504110728.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 47 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=2f00
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2009-06-04 12:13:39
======Uninstall list======
-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
AbiWord 2.6.6-->C:\Program Files\AbiSuite2\UninstallAbiWord2.exe
Adobe Flash Player 10 Plugin-->MsiExec.exe /X{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B}
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Advanced Spy-->C:\Program Files\9B517\Uninstall.exe
Age of Mythology - Gold Edition-->C:\Remote Programs\Age of Mythology - Gold Edition\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=300354;name=Age of Mythology - Gold Edition;dir=C:\Remote Programs\Age of Mythology - Gold Edition\;prvid=200;cmdid=1;prvdir=Default
AMD Processor Driver-->C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe -runfromtemp -l0x040c -removeonly
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x5c31
ATI Catalyst Registration-->MsiExec.exe /X{72736F5F-520D-472A-88CC-7B02872FD34E}
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
AutoIt v3.3.0.0-->C:\Program Files\AutoIt3\Uninstall.exe
AutoScreenShot-->C:\Program Files\AutoScreenShot\uninstall.exe
Booster Orange-->C:\Program Files\Booster Wanadoo\uninstall\uninstall.exe
Catalyst Control Center - Branding-->MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CDBurnerXP-->"C:\Program Files\CDBurnerXP\unins000.exe"
Cheat Engine 5.4-->"C:\Program Files\Cheat Engine\unins000.exe"
Ciel Auto-entrepreneur Facile 1.40-->MsiExec.exe /I{AF86BA3B-B465-4E12-B771-E12208FDB89B}
City Life-->C:\Remote Programs\City Life\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=428554;name=City Life;dir=C:\Remote Programs\City Life\;prvid=200;cmdid=1;prvdir=Default
Command & Conquer 3-->MsiExec.exe /I{B0C30E93-D3D9-4F04-A2AC-54749B573275}
Contextual Tool Thesuperads-->C:\WINDOWS\system32\dfb42448-7122-2023-be39-9182faa9fa78.exe
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
CyberGestion-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C964A549-C74A-11D3-B88A-00A0C9379093}\setup.exe"
Désinstallation du Allocine Video Manager-->C:\Program Files\Allocine\uninst-Allocine.exe
DofusCalc 1.5.1052-->"C:\Program Files\DofusCalc\unins000.exe"
ECO Bar-->regsvr32 /u /s "C:\Program Files\IEToolbar\ECO Bar\ecobar.dll"
Endless War 3-->"C:\Program Files\EndlessWar3_at\unins000.exe"
EVEREST Ultimate Edition v4.20-->"C:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe"
Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
HijackThis 2.0.2-->"C:\Documents and Settings\Administrateur\Bureau\HijackThis.exe" /uninstall
HomePlayer 1.5.6a-->C:\Program Files\HomePlayer\uninst.exe
Inkscape 0.46-->C:\Program Files\Inkscape\Uninstall.exe
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Lexmark 3500-4500 Series-->C:\Program Files\Lexmark 3500-4500 Series\Install\x86\Uninst.exe
LimeWire PRO 5.1.2-->"C:\Program Files\LimeWire\uninstall.exe"
LinkWare-->"C:\Documents and Settings\All Users\Application Data\{6764A9A0-1DAB-4AED-8936-9270ACCA5E17}\setup.exe" REMOVE=TRUE MODIFY=FALSE
Lundi Matin Business-->"C:\XAMPPLite\uninstall.exe"
Ma-Config.com-->MsiExec.exe /X{FACFAAB3-1443-427D-A0B0-1B55BB4F7FB2}
Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Mozilla Firefox (3.0.10)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
Mozilla Thunderbird (2.0.0.21)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
NewsLeecher v3.9 Final-->"C:\Program Files\NewsLeecher\unins000.exe"
NOD32 Antivirus System-->C:\Program Files\Eset\Setup\setup.exe /UNINSTALL
NOD32 FiX-->"C:\Program Files\Eset\unins000.exe"
NVIDIA Drivers-->C:\WINDOWS\system32\nvuide.exe UninstallGUI
NVIDIA ForceWare Network Access Manager-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{1F6423DE-7959-4178-80E0-023C7EAA5347} /l1036
Paint.NET v3.31-->MsiExec.exe /X{51AFB69C-1C54-4C77-A888-2860F8CD3E7D}
Performance Solution Blueskyadagency-->C:\WINDOWS\system32\zdcnkejvbmxxgnce.exe
Player Metaboli-->"C:\Program Files\Player Metaboli\Uninstall.exe"
QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
Realtek AC'97 Audio-->Alcrmv.exe -r -m
Run It-->"C:\Program Files\runit\runitu_32.exe"
Santa Claus - Gold-->C:\Remote Programs\Santa Claus - Gold Edition\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=394854;name=Santa Claus - Gold;dir=C:\Remote Programs\Santa Claus - Gold Edition\;prvid=200;cmdid=1;prvdir=Default
Search Assistant Thesuperads-->C:\WINDOWS\system32\obcowlxlherzshfo.dll-uninst.exe
Sierra Print Artist 4.5-->C:\WINDOWS\IsUninst.exe -fC:\SIERRA\PA45\Uninst.isu -c"C:\SIERRA\PA45\PASTP.DLL"
Sierra Utilities-->C:\Program Files\Sierra On-Line\sutil32.exe uninstall
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Swords and Sandals 2 2.0-->C:\Program Files\Fizzy\Swords and Sandals 2\uninst.exe
TeamSpeak 2 RC2-->"C:\Program Files\Teamspeak2_RC2\unins001.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Tycoon City - New York-->C:\Remote Programs\Tycoon City - New York\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=424054;name=Tycoon City - New York;dir=C:\Remote Programs\Tycoon City - New York\;prvid=200;cmdid=1;prvdir=Default
Unlocker 1.8.5-->C:\Program Files\Unlocker\uninst.exe
UseNeXT-->"C:\Program Files\UseNeXT\unins000.exe"
Vega$ - Make it Big-->C:\Remote Programs\Vegas Tycoon - Make It Big\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=580054;name=Vega$ - Make it Big;dir=C:\Remote Programs\Vegas Tycoon - Make It Big\;prvid=200;cmdid=1;prvdir=Default
VLC media player 0.9.9-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Wall Street Trader-->C:\Remote Programs\Wall Street Trader 2001\GPlrLanc.exe -LOpCode 2 /RemoveContent cid=187054;name=Wall Street Trader;dir=C:\Remote Programs\Wall Street Trader 2001\;prvid=200;cmdid=1;prvdir=Default
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Trust Installer-->"C:\Program Files\WTInstaller\Désinstaller.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR-->"C:\Program Files\WinRAR\uninstall.exe"
World of Warcraft FREE Trial-->MsiExec.exe /X{02EBDBB9-4600-41D3-B566-40CB861511D2}
Youda Farmer fr-->"C:\Program Files\BoontyGames\Youda Farmer\unins000.exe"
======Hosts File======
127.0.0.1 localhost
127.0.0.1 mpa.one.microsoft.com
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
Securitycenter WMI appears to be broken
======System event log======
Computer Name: WINDOWS-571372A
Event Code: 10005
Message: DCOM a reçu l'erreur "%1058" lors de la mise en route du service upnphost avec les arguments ""
pour démarrer le serveur :
{204810B9-73B2-11D4-BF42-00B0D0118B56}
Record Number: 6411
Source Name: DCOM
Time Written: 20090409092653.000000+120
Event Type: erreur
User: WINDOWS-571372A\Administrateur
Computer Name: WINDOWS-571372A
Event Code: 10005
Message: DCOM a reçu l'erreur "%1058" lors de la mise en route du service EventSystem avec les arguments ""
pour démarrer le serveur :
{1BE1F766-5536-11D1-B726-00C04FB926AF}
Record Number: 6410
Source Name: DCOM
Time Written: 20090406153823.000000+120
Event Type: erreur
User: WINDOWS-571372A\Administrateur
Computer Name: WINDOWS-571372A
Event Code: 7036
Message: Le service Windows Installer est entré dans l'état : arrêté.
Record Number: 6409
Source Name: Service Control Manager
Time Written: 20090405073738.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 7036
Message: Le service Windows Installer est entré dans l'état : en cours d'exécution.
Record Number: 6408
Source Name: Service Control Manager
Time Written: 20090405072711.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Windows Installer.
Record Number: 6407
Source Name: Service Control Manager
Time Written: 20090405072711.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM
=====Application event log=====
Computer Name: WINDOWS-571372A
Event Code: 103
Message: msnmsgr (2956) \\.\C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 3166
Source Name: ESENT
Time Written: 20090504181430.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 102
Message: msnmsgr (2956) \\.\C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 3165
Source Name: ESENT
Time Written: 20090504110755.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 100
Message: msnmsgr (2956) Le moteur de base de données 5.01.2600.5512 est démarré.
Record Number: 3164
Source Name: ESENT
Time Written: 20090504110755.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 101
Message: msnmsgr (2956) Le moteur de base de données est arrêté.
Record Number: 3163
Source Name: ESENT
Time Written: 20090504110728.000000+120
Event Type: Informations
User:
Computer Name: WINDOWS-571372A
Event Code: 103
Message: msnmsgr (2956) \\.\C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 3162
Source Name: ESENT
Time Written: 20090504110728.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 47 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=2f00
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
-----------------EOF-----------------
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 12:18
4 juin 2009 à 12:18
log.txt
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-06-04 12:13:26
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 35 GB (23%) free of 153 GB
Total RAM: 1534 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:13:38, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\systemserv32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
c:\xampplite\srvany.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\xampplite\srvany.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\XAMPPLite\MySQL\bin\mysqld.exe
C:\WINDOWS\system32\lxdicoms.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris
R3 - Default URLSearchHook is missing
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: TBSB05288 - {6714ADBD-C6C1-42A8-BD84-9C9339059421} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: blueskyadagency browser enhancer - {7BD4B476-3BDF-FFF8-3004-7B73F092A21C} - C:\WINDOWS\system32\bddwpwzhnxtzcack.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: thesuperads - {9dc63c5d-9d43-123c-6ecb-c29c3b6a6d1b} - C:\WINDOWS\system32\nse2483.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: thesuperads search enhancer - {EE53CE26-A406-DD74-E648-8DA165C8D4A0} - C:\WINDOWS\system32\obcowlxlherzshfo.dll
O3 - Toolbar: ECO Bar - {10000000-1000-1000-1000-100000000000} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Allocine] "C:\Program Files\Allocine\Allocine.exe" /check
O4 - HKLM\..\Run: [HTV Agent] C:\Program Files\HTV\HTV.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [lxdimon.exe] "C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe"
O4 - HKLM\..\Run: [lxdiamon] "C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe"
O4 - HKLM\..\Run: [yzvtspinhztmef] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\bddwpwzhnxtzcack.dll"
O4 - HKLM\..\Run: [WMP Update] C:\WINDOWS\system32\Wmpupdate.exe
O4 - HKLM\..\Run: [Microsoft] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [SystemService32] C:\WINDOWS\systemserv32.exe
O4 - HKCU\..\Run: [MSN Messager] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKCU\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: AutoScreenShot.lnk = C:\Program Files\AutoScreenShot\AutoScreenShot.exe
O4 - Global Startup: Booster Orange.lnk = C:\Program Files\Booster Wanadoo\wanadoo_booster.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O20 - Winlogon Notify: UpdateNf - C:\WINDOWS\SYSTEM32\updatenf.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Lundi Matin Business Apache (LMBApache) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: Lundi Matin Business MySQL (LMBMySQL) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: lxdi_device - - C:\WINDOWS\system32\lxdicoms.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-06-04 12:13:26
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 35 GB (23%) free of 153 GB
Total RAM: 1534 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:13:38, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\systemserv32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
c:\xampplite\srvany.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\xampplite\srvany.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\XAMPPLite\MySQL\bin\mysqld.exe
C:\WINDOWS\system32\lxdicoms.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris
R3 - Default URLSearchHook is missing
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: TBSB05288 - {6714ADBD-C6C1-42A8-BD84-9C9339059421} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: blueskyadagency browser enhancer - {7BD4B476-3BDF-FFF8-3004-7B73F092A21C} - C:\WINDOWS\system32\bddwpwzhnxtzcack.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: thesuperads - {9dc63c5d-9d43-123c-6ecb-c29c3b6a6d1b} - C:\WINDOWS\system32\nse2483.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: thesuperads search enhancer - {EE53CE26-A406-DD74-E648-8DA165C8D4A0} - C:\WINDOWS\system32\obcowlxlherzshfo.dll
O3 - Toolbar: ECO Bar - {10000000-1000-1000-1000-100000000000} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Allocine] "C:\Program Files\Allocine\Allocine.exe" /check
O4 - HKLM\..\Run: [HTV Agent] C:\Program Files\HTV\HTV.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [lxdimon.exe] "C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe"
O4 - HKLM\..\Run: [lxdiamon] "C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe"
O4 - HKLM\..\Run: [yzvtspinhztmef] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\bddwpwzhnxtzcack.dll"
O4 - HKLM\..\Run: [WMP Update] C:\WINDOWS\system32\Wmpupdate.exe
O4 - HKLM\..\Run: [Microsoft] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [SystemService32] C:\WINDOWS\systemserv32.exe
O4 - HKCU\..\Run: [MSN Messager] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKCU\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: AutoScreenShot.lnk = C:\Program Files\AutoScreenShot\AutoScreenShot.exe
O4 - Global Startup: Booster Orange.lnk = C:\Program Files\Booster Wanadoo\wanadoo_booster.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O20 - Winlogon Notify: UpdateNf - C:\WINDOWS\SYSTEM32\updatenf.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Lundi Matin Business Apache (LMBApache) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: Lundi Matin Business MySQL (LMBMySQL) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: lxdi_device - - C:\WINDOWS\system32\lxdicoms.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
Utilisateur anonyme
4 juin 2009 à 12:26
4 juin 2009 à 12:26
Re,
▶ Nettoyage avec ToolBar S&D :
!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!
▶Relances Toolbar-S&D en double-cliquant sur le raccourci.
▶ Tapes sur l'option 2 ( "nettoyage" ) puis tapes sur "Entrée".
Note : Ne touches à rien lors de la suppression !!
▶ Un rapport sera généré à la fin du processus : postes son contenu dans ta prochaine réponse
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
▶ Nettoyage avec ToolBar S&D :
!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!
▶Relances Toolbar-S&D en double-cliquant sur le raccourci.
▶ Tapes sur l'option 2 ( "nettoyage" ) puis tapes sur "Entrée".
Note : Ne touches à rien lors de la suppression !!
▶ Un rapport sera généré à la fin du processus : postes son contenu dans ta prochaine réponse
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 13:09
4 juin 2009 à 13:09
voila apres nettoyage
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:149 Go (Free:33 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 04/06/2009|12:40 )
-----------\\ SUPPRESSION
Commande ECHO désactivée.
Console - Windows Trust 2.00
(c) 2007-2008
... [Service] MyWebSearchService -- Marqué pour suppression !
... [Service] ASKService -- Marque pour suppression !
... [Service] ASKUpgrade -- Marque pour suppression !
-----------\\ Recherche de Fichiers / Dossiers ...
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] ASKService
[Service] ASKService
[Service] ASKService
[Service] ASKUpgrade
[Service] ASKUpgrade
[Service] ASKUpgrade
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
-----------\\ Extensions
( ) - {} =>
( ) - {} =>
( ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
-----------\\ [..\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Start Page"="https://www.google.fr/?gws_rd=ssl"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Start Page Redirect Cache"="https://www.msn.com/fr-fr?ocid=iehp"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\GDIPFONTCACHEV1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.Bin
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Profiles.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Glowria\Allocine.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Google\Chrome\User Data\Default\Bookmarks.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte d'envoi.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte de r‚ception.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Brouillons.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Folders.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\important.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Offline.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Pop3uidl.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments envoy‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments supprim‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Wallpaper1.bmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\index.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\76BNTY83\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\AP4ANQ8W\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\HAYAU54U\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\JDDOX1KO\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\frameiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\tabiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{19CD7335-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{2C23E96F-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{40A11EDF-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4E2603A7-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4F09F47D-50C1-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4FB1CA03-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{5106BA49-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{52CA486B-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{56A8297B-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{6950A159-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{705540C5-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7611E955-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7BABDC47-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7FF606A9-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{8558326F-5058-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F85A657B-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F95E45CD-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{0E927F66-4A85-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{3651D0EE-4B60-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{71909D42-4887-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{A8CD3968-4A8B-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{B8097B96-4E71-11DE-B131-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{BA2691E6-4860-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{CFC8ED78-4AE0-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{F46C6D2C-4B66-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{386836F1-4F77-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{ED92C879-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{CE37BA82-4FA1-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{ED92C87A-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{06B469CF-CDC2-47F4-81A9-8EA6E8506E45}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{6A1806CD-94D4-4689-BA73-E35EA1EA9990}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{07E14F53-BC9F-4BE8-918E-8C5AAA88DACF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{0B998EAC-D561-44F7-96CE-C020E1D2FC0D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{1621CF07-4B11-46A6-911C-A3F8E25432CE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{215B94A8-D3BC-455C-8E97-2BD0A8BB9020}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{21636127-E939-4613-83A4-56C630F98305}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{228CF6CE-9997-4D4B-B839-3C48073CDC35}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{28557407-DD07-404A-885F-DFD0D07B0CFE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{2E8DAE0A-CB77-48EB-8125-430971EA8CD1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3958D08C-83D3-4D51-9AD7-30AA870CB341}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3E7D19E1-A4C5-4D71-9402-5A360362809C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3F637222-79FC-4B8A-9EBB-AA7ECDC06D61}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4304DF10-FCE5-486C-ACC2-1DCF45BCE6D2}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4AD9C3E0-2863-4A6F-8460-CB29AAEEC41C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4C0BB22C-AF7E-4EFF-AFD1-6FEE60BF632F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5A59DC4A-97A0-4A96-8B5E-6625571A1330}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5AA8C16D-BFA7-4F8C-BDDB-E2F4225B7739}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{62162615-236A-4B2E-BFF7-E3722366F2F8}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{6B025548-14D7-49E7-87D1-73ADEC0E2FA0}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{72903353-57EB-484A-A204-1E9837D92648}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{82D17B54-DE7A-44CB-8001-5C3B73433E1B}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{84BB6A6E-EC0E-446E-B356-90DAA01301E1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{869B15AA-B951-4FD9-AEA1-AE4AC882A6D6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{87F55F7C-9EBE-4507-B8B3-425A92D67182}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{897CB529-4985-4FBF-BE43-2C54016E9A0C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{8AB082C7-CAA2-492E-AE82-786E8410B740}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{91767437-5764-42AF-805C-F6CF73325260}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{92001804-8A69-48C3-B8EC-BE02F8E5DC1D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{A86543EB-C71C-4F48-BF3A-E47E42EE7405}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{B8DD4423-9820-4EDB-879F-E4D2402C5761}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{C6B1DA01-28B9-4BC3-B491-B6EB6B2CD9DA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CA7070E2-B365-4602-974B-8B8AB784D5EF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CBA638DE-ED6D-43B8-A779-699A7E5F8100}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D1571C55-9E08-4D69-A78B-7B66EAE010BF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D5FF512A-C854-439B-9D52-15C61228A17F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D615529A-A93B-4525-95F7-060D23D5A9EA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D94FB94C-321B-4C0E-990A-0938CE4AA8E6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{DCB1C225-A710-4446-BA39-3A268F631B33}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E156E74F-264D-41E3-AD79-FCDB21C0514E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E4D1CC93-046E-4F98-B4A8-0B284C37210E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F0D6197C-EF2C-4228-AC2E-2990FFAACB38}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F20F55D6-4FD6-40AB-902D-11D10FC328F7}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\MusicType1VirginMegaFr\downloads.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\activesharingfolder.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\ContactsLog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00260.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00261.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00262.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00263.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\bernardbocquillon@msn.com\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\Brands\fr-FR\config.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\choulisette@hotmail.fr\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000D.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00010.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00011.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\m62300@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\nathmarquis@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\62dunathalie@live.fr\DFSR\Staging\CS{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}\01\10-{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}-v1-{189EF6FB-EBFD-4E74-A0B9-8E83E3D12674}-v10-Downloaded.frx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E3.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E4.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E5.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E6.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E7.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E8.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E9.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004EA.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsrtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\tmp.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\shyrel@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Movie Maker\MEDIATAB1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat.LOG
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\Desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeold.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\RssFeeds.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\sqmnoopt00.sqm
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\WindowsLiveMail.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\raulxmickael@msn.com\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.DTD
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.XML
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41366293776.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41667781132.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41993430095.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42011990351.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42298406619.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42330217323.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43282370197.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43438407711.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BonusInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BuildingInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivicInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivilizationInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4DiplomacyInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4HandicapInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4ImprovementInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4LeaderHeadInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4PromotionInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4TechInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4UnitInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\crc.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalDefines.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalText.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\Profiles\Default Profile.pfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\x-men.origins.wolverine.2009..avi(1).qp.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\7zAes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Aes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Branch.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Copy.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\LZMA.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Swap.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Formats\7z.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\Windows Live Writer.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\BlogProvidersB5.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\DhtmlImageViewers.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Markets.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Master.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\PassportSettings2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\SpellingConfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\TagProviders.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Updates.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\VideoProvidersB2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Writer_Config.cab
C:\WINDOWS\System32\$winnt$.inf
C:\WINDOWS\System32\12520437.cpx
C:\WINDOWS\System32\12520850.cpx
C:\WINDOWS\System32\6to4svc.dll
C:\WINDOWS\System32\aaaamon.dll
C:\WINDOWS\System32\aaclient.dll
C:\WINDOWS\System32\acctres.dll
C:\WINDOWS\System32\acledit.dll
C:\WINDOWS\System32\aclui.dll
C:\WINDOWS\System32\activeds.dll
C:\WINDOWS\System32\activeds.tlb
C:\WINDOWS\System32\actmovie.exe
C:\WINDOWS\System32\actxprxy.dll
C:\WINDOWS\System32\admparse.dll
C:\WINDOWS\System32\adptif.dll
C:\WINDOWS\System32\adsldp.dll
C:\WINDOWS\System32\adsldpc.dll
C:\WINDOWS\System32\adsmsext.dll
C:\WINDOWS\System32\adsnds.dll
C:\WINDOWS\System32\adsnt.dll
C:\WINDOWS\System32\adsnw.dll
C:\WINDOWS\System32\advapi32.dll
C:\WINDOWS\System32\advpack(2).dll
C:\WINDOWS\System32\advpack(3).dll
C:\WINDOWS\System32\advpack(4).dll
C:\WINDOWS\System32\advpack(5).dll
C:\WINDOWS\System32\advpack.dll
C:\WINDOWS\System32\advpack.dll.mui
C:\WINDOWS\System32\ahui.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\alsndmgr.cpl
C:\WINDOWS\System32\alsndmgr.wav
C:\WINDOWS\System32\amcompat.tlb
C:\WINDOWS\System32\amdpcom32.dll
C:\WINDOWS\System32\amstream.dll
C:\WINDOWS\System32\ansi.sys
C:\WINDOWS\System32\apcups.dll
C:\WINDOWS\System32\api.dat
C:\WINDOWS\System32\api32.dll
C:\WINDOWS\System32\append.exe
C:\WINDOWS\System32\apphelp.dll
C:\WINDOWS\System32\appmgmts.dll
C:\WINDOWS\System32\appmgr.dll
C:\WINDOWS\System32\appwiz.cpl
C:\WINDOWS\System32\app_filter_ui.log
C:\WINDOWS\System32\arp.exe
C:\WINDOWS\System32\asctrls.ocx
C:\WINDOWS\System32\asferror.dll
C:\WINDOWS\System32\asr_pfu.exe
C:\WINDOWS\System32\asycfilt.dll
C:\WINDOWS\System32\at.exe
C:\WINDOWS\System32\ati2cqag.dll
C:\WINDOWS\System32\ati2dvaa.dll
C:\WINDOWS\System32\ati2dvag.dll
C:\WINDOWS\System32\ati2edxx.dll
C:\WINDOWS\System32\ati2evxx.dll
C:\WINDOWS\System32\ati2evxx.exe
C:\WINDOWS\System32\Ati2mdxx.exe
C:\WINDOWS\System32\ati2sgag.exe
C:\WINDOWS\System32\ati3d1ag.dll
C:\WINDOWS\System32\ati3duag.dll
C:\WINDOWS\System32\atiadlxx.dll
C:\WINDOWS\System32\atibrtmon.exe
C:\WINDOWS\System32\aticalcl.dll
C:\WINDOWS\System32\aticaldd.dll
C:\WINDOWS\System32\aticalrt.dll
C:\WINDOWS\System32\ATIDDC.DLL
C:\WINDOWS\System32\ATIDEMGX.dll
C:\WINDOWS\System32\atifglpf.xml
C:\WINDOWS\System32\atiicdxx.dat
C:\WINDOWS\System32\atiiiexx.dll
C:\WINDOWS\System32\atikvmag.dll
C:\WINDOWS\System32\atioglxx.dll
C:\WINDOWS\System32\atiok3x2.dll
C:\WINDOWS\System32\atipdlxx.dll
C:\WINDOWS\System32\atitvo32.dll
C:\WINDOWS\System32\ativcoxx.dll
C:\WINDOWS\System32\ativtmxx.dll
C:\WINDOWS\System32\ativva5x.dat
C:\WINDOWS\System32\ativva6x.dat
C:\WINDOWS\System32\ativvaxx.cap
C:\WINDOWS\System32\ativvaxx.dat
C:\WINDOWS\System32\ativvaxx.dll
C:\WINDOWS\System32\atkctrs.dll
C:\WINDOWS\System32\atl.dll
C:\WINDOWS\System32\atmadm.exe
C:\WINDOWS\System32\atmfd.dll
C:\WINDOWS\System32\atmlib.dll
C:\WINDOWS\System32\atmpvcno.dll
C:\WINDOWS\System32\attrib.exe
C:\WINDOWS\System32\audiodev.dll
C:\WINDOWS\System32\audiosrv.dll
C:\WINDOWS\System32\auditusr.exe
C:\WINDOWS\System32\Aurora-VS.scr
C:\WINDOWS\System32\Aurora.scr
C:\WINDOWS\System32\authz.dll
C:\WINDOWS\System32\autochk.exe
C:\WINDOWS\System32\autoconv.exe
C:\WINDOWS\System32\autodisc.dll
C:\WINDOWS\System32\autofmt.exe
C:\WINDOWS\System32\autolfn.exe
C:\WINDOWS\System32\avicap.dll
C:\WINDOWS\System32\avicap32.dll
C:\WINDOWS\System32\avifil32.dll
C:\WINDOWS\System32\avifile.dll
C:\WINDOWS\System32\avwav3.dll
C:\WINDOWS\System32\azroles.dll
C:\WINDOWS\System32\basesrv.dll
C:\WINDOWS\System32\batmeter.dll
C:\WINDOWS\System32\batt.dll
C:\WINDOWS\System32\bdco1.dll
C:\WINDOWS\System32\bdco1ins.dll
C:\WINDOWS\System32\bddwpwzhnxtzcack.dll
C:\WINDOWS\System32\bidispl.dll
C:\WINDOWS\System32\bios1.rom
C:\WINDOWS\System32\bios4.rom
C:\WINDOWS\System32\bitsprx2.dll
C:\WINDOWS\System32\bitsprx3.dll
C:\WINDOWS\System32\bitsprx4.dll
C:\WINDOWS\System32\blackbox.dll
C:\WINDOWS\System32\blastcln.exe
C:\WINDOWS\System32\bootcfg.exe
C:\WINDOWS\System32\bootok.exe
C:\WINDOWS\System32\bootvid.dll
C:\WINDOWS\System32\bootvrfy.exe
C:\WINDOWS\System32\bopomofo.uce
C:\WINDOWS\System32\browselc.dll
C:\WINDOWS\System32\browser.dll
C:\WINDOWS\System32\browseui.dll
C:\WINDOWS\System32\browsewm.dll
C:\WINDOWS\System32\bthci.dll
C:\WINDOWS\System32\bthprops.cpl
C:\WINDOWS\System32\bthserv.dll
C:\WINDOWS\System32\btpanui.dll
C:\WINDOWS\System32\Bulles-VS.scr
C:\WINDOWS\System32\BuzzingBee.wav
C:\WINDOWS\System32\cabinet.dll
C:\WINDOWS\System32\cacls.exe
C:\WINDOWS\System32\calc.exe
C:\WINDOWS\System32\camocx.dll
C:\WINDOWS\System32\CapabilityTable.exe
C:\WINDOWS\System32\capesnpn.dll
C:\WINDOWS\System32\cards.dll
C:\WINDOWS\System32\catsrv.dll
C:\WINDOWS\System32\catsrvps.dll
C:\WINDOWS\System32\catsrvut.dll
C:\WINDOWS\System32\ccfgnt.dll
C:\WINDOWS\System32\cdfview.dll
C:\WINDOWS\System32\cdm.dll
C:\WINDOWS\System32\cdmodem.dll
C:\WINDOWS\System32\cdosys.dll
C:\WINDOWS\System32\certcli.dll
C:\WINDOWS\System32\certmgr.dll
C:\WINDOWS\System32\certmgr.msc
C:\WINDOWS\System32\cewmdm.dll
C:\WINDOWS\System32\cfgbkend.dll
C:\WINDOWS\System32\cfgmgr32.dll
C:\WINDOWS\System32\charmap.exe
C:\WINDOWS\System32\ChaŒnes.scf
C:\WINDOWS\System32\ChCfg.exe
C:\WINDOWS\System32\chcp.com
C:\WINDOWS\System32\chkdsk.exe
C:\WINDOWS\System32\chkntfs.exe
C:\WINDOWS\System32\cic.dll
C:\WINDOWS\System32\cipher.exe
C:\WINDOWS\System32\ckcnv.exe
C:\WINDOWS\System32\clb.dll
C:\WINDOWS\System32\clbcatex.dll
C:\WINDOWS\System32\clbcatq.dll
C:\WINDOWS\System32\cleanmgr.exe
C:\WINDOWS\System32\cliconfg.dll
C:\WINDOWS\System32\cliconfg.exe
C:\WINDOWS\System32\cliconfg.rll
C:\WINDOWS\System32\clusapi.dll
C:\WINDOWS\System32\cmcfg32.dll
C:\WINDOWS\System32\cmd.exe
C:\WINDOWS\System32\cmdial32.dll
C:\WINDOWS\System32\cmdl32.exe
C:\WINDOWS\System32\cmdlib.wsc
C:\WINDOWS\System32\CmdLineExt.dll
C:\WINDOWS\System32\CMExt.dll
C:\WINDOWS\System32\cmmon32.exe
C:\WINDOWS\System32\cmos.ram
C:\WINDOWS\System32\cmpbk32.dll
C:\WINDOWS\System32\cmprops.dll
C:\WINDOWS\System32\cmsetacl.dll
C:\WINDOWS\System32\cmstp.exe
C:\WINDOWS\System32\CmutEuro32.dll
C:\WINDOWS\System32\cmutil.dll
C:\WINDOWS\System32\cnbjmon.dll
C:\WINDOWS\System32\cnetcfg.dll
C:\WINDOWS\System32\cnvfat.dll
C:\WINDOWS\System32\colbact.dll
C:\WINDOWS\System32\comaddin.dll
C:\WINDOWS\System32\comcat.dll
C:\WINDOWS\System32\comctl32.dll
C:\WINDOWS\System32\comdlg32.dll
C:\WINDOWS\System32\comm.drv
C:\WINDOWS\System32\command.com
C:\WINDOWS\System32\commdlg.dll
C:\WINDOWS\System32\comp.exe
C:\WINDOWS\System32\compact.exe
C:\WINDOWS\System32\compatui.dll
C:\WINDOWS\System32\compmgmt.msc
C:\WINDOWS\System32\compobj.dll
C:\WINDOWS\System32\compstui.dll
C:\WINDOWS\System32\comrepl.dll
C:\WINDOWS\System32\comres.dll
C:\WINDOWS\System32\comsdupd.exe
C:\WINDOWS\System32\comsnap.dll
C:\WINDOWS\System32\comsvcs.dll
C:\WINDOWS\System32\comuid.dll
C:\WINDOWS\System32\CONFIG.TMP
C:\WINDOWS\System32\conime.exe
C:\WINDOWS\System32\console.dll
C:\WINDOWS\System32\control.exe
C:\WINDOWS\System32\convert.exe
C:\WINDOWS\System32\corpol.dll
C:\WINDOWS\System32\country.sys
C:\WINDOWS\System32\credssp.dll
C:\WINDOWS\System32\credui.dll
C:\WINDOWS\System32\crtdll.dll
C:\WINDOWS\System32\crypt32.dll
C:\WINDOWS\System32\cryptdlg.dll
C:\WINDOWS\System32\cryptdll.dll
C:\WINDOWS\System32\cryptext.dll
C:\WINDOWS\System32\cryptnet.dll
C:\WINDOWS\System32\cryptsvc.dll
C:\WINDOWS\System32\cryptui.dll
C:\WINDOWS\System32\cscdll.dll
C:\WINDOWS\System32\cscript.exe
C:\WINDOWS\System32\csrsrv.dll
C:\WINDOWS\System32\csrss.exe
C:\WINDOWS\System32\csseqchk.dll
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\ctl3d32.dll
C:\WINDOWS\System32\ctl3dv2.dll
C:\WINDOWS\System32\ctype.nls
C:\WINDOWS\System32\cvirt.dll
C:\WINDOWS\System32\cvirte.dll
C:\WINDOWS\System32\c_037.nls
C:\WINDOWS\System32\c_10000.nls
C:\WINDOWS\System32\c_10006.nls
C:\WINDOWS\System32\c_10007.nls
C:\WINDOWS\System32\c_10010.nls
C:\WINDOWS\System32\c_10017.nls
C:\WINDOWS\System32\c_10029.nls
C:\WINDOWS\System32\c_10079.nls
C:\WINDOWS\System32\c_10081.nls
C:\WINDOWS\System32\c_10082.nls
C:\WINDOWS\System32\c_1026.nls
C:\WINDOWS\System32\c_1250.nls
C:\WINDOWS\System32\c_1251.nls
C:\WINDOWS\System32\c_1252.nls
C:\WINDOWS\System32\c_1253.nls
C:\WINDOWS\System32\c_1254.nls
C:\WINDOWS\System32\c_1255.nls
C:\WINDOWS\System32\c_1256.nls
C:\WINDOWS\System32\c_1257.nls
C:\WINDOWS\System32\c_1258.nls
C:\WINDOWS\System32\c_20127.nls
C:\WINDOWS\System32\c_20261.nls
C:\WINDOWS\System32\c_20866.nls
C:\WINDOWS\System32\c_20905.nls
C:\WINDOWS\System32\c_21866.nls
C:\WINDOWS\System32\c_28591.nls
C:\WINDOWS\System32\c_28592.nls
C:\WINDOWS\System32\c_28593.nls
C:\WINDOWS\System32\C_28594.NLS
C:\WINDOWS\System32\C_28595.NLS
C:\WINDOWS\System32\C_28597.NLS
C:\WINDOWS\System32\c_28598.nls
C:\WINDOWS\System32\c_28599.nls
C:\WINDOWS\System32\c_28603.nls
C:\WINDOWS\System32\c_28605.nls
C:\WINDOWS\System32\c_437.nls
C:\WINDOWS\System32\c_500.nls
C:\WINDOWS\System32\c_737.nls
C:\WINDOWS\System32\c_775.nls
C:\WINDOWS\System32\c_850.nls
C:\WINDOWS\System32\c_852.nls
C:\WINDOWS\System32\c_855.nls
C:\WINDOWS\System32\c_857.nls
C:\WINDOWS\System32\c_860.nls
C:\WINDOWS\System32\c_861.nls
C:\WINDOWS\System32\c_863.nls
C:\WINDOWS\System32\c_865.nls
C:\WINDOWS\System32\c_866.nls
C:\WINDOWS\System32\c_869.nls
C:\WINDOWS\System32\c_874.nls
C:\WINDOWS\System32\c_875.nls
C:\WINDOWS\System32\c_932.nls
C:\WINDOWS\System32\c_936.nls
C:\WINDOWS\System32\c_949.nls
C:\WINDOWS\System32\c_950.nls
C:\WINDOWS\System32\d3d8.dll
C:\WINDOWS\System32\d3d8caps.dat
C:\WINDOWS\System32\d3d8thk.dll
C:\WINDOWS\System32\d3d9.dll
C:\WINDOWS\System32\d3d9caps.dat
C:\WINDOWS\System32\d3dcompiler_33.dll
C:\WINDOWS\System32\d3dcompiler_34.dll
C:\WINDOWS\System32\d3dcompiler_35.dll
C:\WINDOWS\System32\d3dcompiler_36.dll
C:\WINDOWS\System32\D3DCompiler_37.dll
C:\WINDOWS\System32\D3DCompiler_38.dll
C:\WINDOWS\System32\D3DCompiler_39.dll
C:\WINDOWS\System32\D3DCompiler_40.dll
C:\WINDOWS\System32\D3DCompiler_41.dll
C:\WINDOWS\System32\d3dim.dll
C:\WINDOWS\System32\d3dim700.dll
C:\WINDOWS\System32\d3dpmesh.dll
C:\WINDOWS\System32\d3dramp.dll
C:\WINDOWS\System32\d3drm.dll
C:\WINDOWS\System32\d3dx10.dll
C:\WINDOWS\System32\d3dx10_33.dll
C:\WINDOWS\System32\d3dx10_34.dll
C:\WINDOWS\System32\d3dx10_35.dll
C:\WINDOWS\System32\d3dx10_36.dll
C:\WINDOWS\System32\d3dx10_37.dll
C:\WINDOWS\System32\d3dx10_38.dll
C:\WINDOWS\System32\d3dx10_39.dll
C:\WINDOWS\System32\d3dx10_40.dll
C:\WINDOWS\System32\d3dx10_41.dll
C:\WINDOWS\System32\D3DX81ab.dll
C:\WINDOWS\System32\d3dx9.dll
C:\WINDOWS\System32\d3dx9_24.dll
C:\WINDOWS\System32\d3dx9_25.dll
C:\WINDOWS\System32\d3dx9_26.dll
C:\WINDOWS\System32\d3dx9_27.dll
C:\WINDOWS\System32\d3dx9_28.dll
C:\WINDOWS\System32\d3dx9_29.dll
C:\WINDOWS\System32\d3dx9_30.dll
C:\WINDOWS\System32\d3dx9_31.dll
C:\WINDOWS\System32\d3dx9_32.dll
C:\WINDOWS\System32\d3dx9_33.dll
C:\WINDOWS\System32\d3dx9_34.dll
C:\WINDOWS\System32\d3dx9_35.dll
C:\WINDOWS\System32\d3dx9_36.dll
C:\WINDOWS\System32\D3DX9_37.dll
C:\WINDOWS\System32\D3DX9_38.dll
C:\WINDOWS\System32\D3DX9_39.dll
C:\WINDOWS\System32\D3DX9_40.dll
C:\WINDOWS\System32\D3DX9_41.dll
C:\WINDOWS\System32\d3dxof.dll
C:\WINDOWS\System32\danim.dll
C:\WINDOWS\System32\dataclen.dll
C:\WINDOWS\System32\datime.dll
C:\WINDOWS\System32\daxctle.ocx
C:\WINDOWS\System32\dbghelp.dll
C:\WINDOWS\System32\dbmsrpcn.dll
C:\WINDOWS\System32\dbnetlib.dll
C:\WINDOWS\System32\dbnmpntw.dll
C:\WINDOWS\System32\dcache.bin
C:\WINDOWS\System32\dciman32.dll
C:\WINDOWS\System32\dcomcnfg.exe
C:\WINDOWS\System32\ddeml.dll
C:\WINDOWS\System32\ddraw.dll
C:\WINDOWS\System32\ddrawex.dll
C:\WINDOWS\System32\debug.exe
C:\WINDOWS\System32\desk.cpl
C:\WINDOWS\System32\deskadp.dll
C:\WINDOWS\System32\deskmon.dll
C:\WINDOWS\System32\deskperf.dll
C:\WINDOWS\System32\desktop.ini
C:\WINDOWS\System32\devenum.dll
C:\WINDOWS\System32\devmgmt.msc
C:\WINDOWS\System32\devmgr.dll
C:\WINDOWS\System32\dfb42448-7122-2023-be39-9182faa9fa78.exe
C:\WINDOWS\System32\dfshim.dll
C:\WINDOWS\System32\dfsshlex.dll
C:\WINDOWS\System32\dgnet.dll
C:\WINDOWS\System32\dgrpsetu.dll
C:\WINDOWS\System32\dgsetup.dll
C:\WINDOWS\System32\dhcpcsvc.dll
C:\WINDOWS\System32\dhcpmon.dll
C:\WINDOWS\System32\dhcpqec.dll
C:\WINDOWS\System32\dhcpsapi.dll
C:\WINDOWS\System32\diactfrm.dll
C:\WINDOWS\System32\diantz.exe
C:\WINDOWS\System32\digest.dll
C:\WINDOWS\System32\dimap.dll
C:\WINDOWS\System32\dimsntfy.dll
C:\WINDOWS\System32\dimsroam.dll
C:\WINDOWS\System32\dinput.dll
C:\WINDOWS\System32\dinput8.dll
C:\WINDOWS\System32\directx.cpl
C:\WINDOWS\System32\diskcomp.com
C:\WINDOWS\System32\diskcopy.com
C:\WINDOWS\System32\diskcopy.dll
C:\WINDOWS\System32\diskmgmt.msc
C:\WINDOWS\System32\diskpart.exe
C:\WINDOWS\System32\diskperf.exe
C:\WINDOWS\System32\dispex.dll
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\System32\dllhst3g.exe
C:\WINDOWS\System32\dmadmin.exe
C:\WINDOWS\System32\dmband.dll
C:\WINDOWS\System32\dmcompos.dll
C:\WINDOWS\System32\dmconfig.dll
C:\WINDOWS\System32\dmdlgs.dll
C:\WINDOWS\System32\dmdskmgr.dll
C:\WINDOWS\System32\dmdskres.dll
C:\WINDOWS\System32\dmime.dll
C:\WINDOWS\System32\dmintf.dll
C:\WINDOWS\System32\dmloader.dll
C:\WINDOWS\System32\dmocx.dll
C:\WINDOWS\System32\dmremote.exe
C:\WINDOWS\System32\dmscript.dll
C:\WINDOWS\System32\dmserver.dll
C:\WINDOWS\System32\dmstyle.dll
C:\WINDOWS\System32\dmsynth.dll
C:\WINDOWS\System32\dmusic.dll
C:\WINDOWS\System32\dmutil.dll
C:\WINDOWS\System32\dmview.ocx
C:\WINDOWS\System32\dnsapi.dll
C:\WINDOWS\System32\dnsrslvr.dll
C:\WINDOWS\System32\docprop.dll
C:\WINDOWS\System32\docprop2.dll
C:\WINDOWS\System32\doskey.exe
C:\WINDOWS\System32\dosx.exe
C:\WINDOWS\System32\dot3api.dll
C:\WINDOWS\System32\dot3cfg.dll
C:\WINDOWS\System32\dot3dlg.dll
C:\WINDOWS\System32\dot3gpclnt.dll
C:\WINDOWS\System32\dot3msm.dll
C:\WINDOWS\System32\dot3svc.dll
C:\WINDOWS\System32\dot3ui.dll
C:\WINDOWS\System32\dpcdll.dll
C:\WINDOWS\System32\dplay.dll
C:\WINDOWS\System32\dplaysvr.exe
C:\WINDOWS\System32\dplayx.dll
C:\WINDOWS\System32\dpmodemx.dll
C:\WINDOWS\System32\dpnaddr.dll
C:\WINDOWS\System32\dpnet.dll
C:\WINDOWS\System32\dpnhpast.dll
C:\WINDOWS\System32\dpnhupnp.dll
C:\WINDOWS\System32\dpnlobby.dll
C:\WINDOWS\System32\dpnmodem.dll
C:\WINDOWS\System32\dpnsvr.exe
C:\WINDOWS\System32\dpnwsock.dll
C:\WINDOWS\System32\dpserial.dll
C:\WINDOWS\System32\dpvacm.dll
C:\WINDOWS\System32\dpvoice.dll
C:\WINDOWS\System32\dpvsetup.exe
C:\WINDOWS\System32\dpvvox.dll
C:\WINDOWS\System32\dpwsock.dll
C:\WINDOWS\System32\dpwsockx.dll
C:\WINDOWS\System32\driverquery.exe
C:\WINDOWS\System32\drmclien.dll
C:\WINDOWS\System32\drmstor.dll
C:\WINDOWS\System32\drmupgds.exe
C:\WINDOWS\System32\drmv2clt.dll
C:\WINDOWS\System32\drprov.dll
C:\WINDOWS\System32\ds16gt.dLL
C:\WINDOWS\System32\ds32gt.dll
C:\WINDOWS\System32\dsauth.dll
C:\WINDOWS\System32\dsdmo.dll
C:\WINDOWS\System32\dsdmoprp.dll
C:\WINDOWS\System32\dskquota.dll
C:\WINDOWS\System32\dskquoui.dll
C:\WINDOWS\System32\dsound.dll
C:\WINDOWS\System32\dsound.vxd
C:\WINDOWS\System32\dsound3d.dll
C:\WINDOWS\System32\dsprop.dll
C:\WINDOWS\System32\dsprpres.dll
C:\WINDOWS\System32\dsquery.dll
C:\WINDOWS\System32\dssec.dat
C:\WINDOWS\System32\dssec.dll
C:\WINDOWS\System32\dssenh.dll
C:\WINDOWS\System32\dsuiext.dll
C:\WINDOWS\System32\dswave.dll
C:\WINDOWS\System32\duser.dll
C:\WINDOWS\System32\dvdplay.exe
C:\WINDOWS\System32\dvdupgrd.exe
C:\WINDOWS\System32\dx7vb.dll
C:\WINDOWS\System32\dx8vb.dll
C:\WINDOWS\System32\dxdiag.exe
C:\WINDOWS\System32\dxdiagn.dll
C:\WINDOWS\System32\dxmasf.dll
C:\WINDOWS\System32\dxtmsft.dll
C:\WINDOWS\System32\dxtrans(2).dll
C:\WINDOWS\System32\dxtrans(3).dll
C:\WINDOWS\System32\dxtrans.dll
C:\WINDOWS\System32\eapolqec.dll
C:\WINDOWS\System32\eapp3hst.dll
C:\WINDOWS\System32\eappcfg.dll
C:\WINDOWS\System32\eappgnui.dll
C:\WINDOWS\System32\eapphost.dll
C:\WINDOWS\System32\eappprxy.dll
C:\WINDOWS\System32\eapqec.dll
C:\WINDOWS\System32\eapsvc.dll
C:\WINDOWS\System32\edit.com
C:\WINDOWS\System32\edlin.exe
C:\WINDOWS\System32\efsadu.dll
C:\WINDOWS\System32\ega.cpi
C:\WINDOWS\System32\els.dll
C:\WINDOWS\System32\emptyregdb.dat
C:\WINDOWS\System32\encapi.dll
C:\WINDOWS\System32\encdec.dll
C:\WINDOWS\System32\EqnClass.Dll
C:\WINDOWS\System32\es(3).dll
C:\WINDOWS\System32\es.dll
C:\WINDOWS\System32\esent.dll
C:\WINDOWS\System32\esent97.dll
C:\WINDOWS\System32\esentprf.dll
C:\WINDOWS\System32\esentprf.hxx
C:\WINDOWS\System32\esentprf.ini
C:\WINDOWS\System32\esentutl.exe
C:\WINDOWS\System32\eudcedit.exe
C:\WINDOWS\System32\eula.txt
C:\WINDOWS\System32\eventcls.dll
C:\WINDOWS\System32\eventcreate.exe
C:\WINDOWS\System32\eventlog.dll
C:\WINDOWS\System32\eventquery.vbs
C:\WINDOWS\System32\eventtriggers.exe
C:\WINDOWS\System32\eventvwr.exe
C:\WINDOWS\System32\eventvwr.msc
C:\WINDOWS\System32\exe2bin.exe
C:\WINDOWS\System32\expand.exe
C:\WINDOWS\System32\expsrv.dll
C:\WINDOWS\System32\extmgr.dll
C:\WINDOWS\System32\extrac32.exe
C:\WINDOWS\System32\exts.dll
C:\WINDOWS\System32\fastopen.exe
C:\WINDOWS\System32\faultrep.dll
C:\WINDOWS\System32\faxpatch.exe
C:\WINDOWS\System32\fc.exe
C:\WINDOWS\System32\fdco1.dll
C:\WINDOWS\System32\fdco1ins.dll
C:\WINDOWS\System32\fdco_l1028.dll
C:\WINDOWS\System32\fdco_l1031.dll
C:\WINDOWS\System32\fdco_l1034.dll
C:\WINDOWS\System32\fdco_l1036.dll
C:\WINDOWS\System32\fdco_l1040.dll
C:\WINDOWS\System32\fdco_l1041.dll
C:\WINDOWS\System32\fdco_l1042.dll
C:\WINDOWS\System32\fdco_l1046.dll
C:\WINDOWS\System32\fdco_l2052.dll
C:\WINDOWS\System32\fde.dll
C:\WINDOWS\System32\fdeploy.dll
C:\WINDOWS\System32\f
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:149 Go (Free:33 Go)
E:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 04/06/2009|12:40 )
-----------\\ SUPPRESSION
Commande ECHO désactivée.
Console - Windows Trust 2.00
(c) 2007-2008
... [Service] MyWebSearchService -- Marqué pour suppression !
... [Service] ASKService -- Marque pour suppression !
... [Service] ASKUpgrade -- Marque pour suppression !
-----------\\ Recherche de Fichiers / Dossiers ...
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] MyWebSearchService
[Service] ASKService
[Service] ASKService
[Service] ASKService
[Service] ASKUpgrade
[Service] ASKUpgrade
[Service] ASKUpgrade
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
\...\{} - ()
-----------\\ Extensions
( ) - {} =>
( ) - {} =>
( ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
(Console - Windows Trust 2.00 ) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
((c) 2007-2008) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(Administrateur) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(All Users) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(Default User) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(LocalService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
(NetworkService) - {} =>
-----------\\ [..\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Start Page"="https://www.google.fr/?gws_rd=ssl"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Start Page Redirect Cache"="https://www.msn.com/fr-fr?ocid=iehp"
"Url"="http://www.microsoft.com/athome/community/rss.xml"
"Url"="http://rss.msn.com/en-us/?feedoutput=rss&ocid=iehrs&unsub=true"
"Url"="http://www.microsoft.com/atwork/community/rss.xml"
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Commande ECHO d‚sactiv‚e.
Console - Windows Trust 2.00
(c) 2007-2008
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\GDIPFONTCACHEV1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.Bin
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Manifest.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\ATI\ACE\Profiles.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Glowria\Allocine.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Google\Chrome\User Data\Default\Bookmarks.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte d'envoi.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\BoŒte de r‚ception.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Brouillons.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Folders.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\important.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Offline.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\Pop3uidl.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments envoy‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Identities\{6A2FD3CC-6AB9-4E66-80BF-DD3641D6E608}\Microsoft\Outlook Express\l‚ments supprim‚s.dbx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Wallpaper1.bmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\index.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\76BNTY83\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\AP4ANQ8W\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\HAYAU54U\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Feeds Cache\JDDOX1KO\desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\brndlog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\frameiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\tabiconcache.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{19CD7335-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{2C23E96F-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{40A11EDF-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4E2603A7-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4F09F47D-50C1-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{4FB1CA03-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{5106BA49-4FFF-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{52CA486B-50C0-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{56A8297B-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{6950A159-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{705540C5-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7611E955-50CF-11DE-B137-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7BABDC47-50BE-11DE-B135-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{7FF606A9-4FFD-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{8558326F-5058-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F85A657B-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{F95E45CD-5053-11DE-B133-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{0E927F66-4A85-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{3651D0EE-4B60-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{71909D42-4887-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{A8CD3968-4A8B-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{B8097B96-4E71-11DE-B131-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{BA2691E6-4860-11DE-B12F-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{CFC8ED78-4AE0-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Active\{F46C6D2C-4B66-11DE-B130-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{386836F1-4F77-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{ED92C879-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{CE37BA82-4FA1-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Recovery\Last Active\{ED92C87A-4FA0-11DE-B132-00115BAA4574}.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{06B469CF-CDC2-47F4-81A9-8EA6E8506E45}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{6A1806CD-94D4-4689-BA73-E35EA1EA9990}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Internet Explorer\Services\search_{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}.ico
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{07E14F53-BC9F-4BE8-918E-8C5AAA88DACF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{0B998EAC-D561-44F7-96CE-C020E1D2FC0D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{1621CF07-4B11-46A6-911C-A3F8E25432CE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{215B94A8-D3BC-455C-8E97-2BD0A8BB9020}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{21636127-E939-4613-83A4-56C630F98305}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{228CF6CE-9997-4D4B-B839-3C48073CDC35}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{28557407-DD07-404A-885F-DFD0D07B0CFE}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{2E8DAE0A-CB77-48EB-8125-430971EA8CD1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3958D08C-83D3-4D51-9AD7-30AA870CB341}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3E7D19E1-A4C5-4D71-9402-5A360362809C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{3F637222-79FC-4B8A-9EBB-AA7ECDC06D61}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4304DF10-FCE5-486C-ACC2-1DCF45BCE6D2}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4AD9C3E0-2863-4A6F-8460-CB29AAEEC41C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{4C0BB22C-AF7E-4EFF-AFD1-6FEE60BF632F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5A59DC4A-97A0-4A96-8B5E-6625571A1330}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{5AA8C16D-BFA7-4F8C-BDDB-E2F4225B7739}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{62162615-236A-4B2E-BFF7-E3722366F2F8}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{6B025548-14D7-49E7-87D1-73ADEC0E2FA0}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{72903353-57EB-484A-A204-1E9837D92648}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{82D17B54-DE7A-44CB-8001-5C3B73433E1B}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{84BB6A6E-EC0E-446E-B356-90DAA01301E1}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{869B15AA-B951-4FD9-AEA1-AE4AC882A6D6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{87F55F7C-9EBE-4507-B8B3-425A92D67182}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{897CB529-4985-4FBF-BE43-2C54016E9A0C}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{8AB082C7-CAA2-492E-AE82-786E8410B740}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{91767437-5764-42AF-805C-F6CF73325260}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{92001804-8A69-48C3-B8EC-BE02F8E5DC1D}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{A86543EB-C71C-4F48-BF3A-E47E42EE7405}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{B8DD4423-9820-4EDB-879F-E4D2402C5761}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{C6B1DA01-28B9-4BC3-B491-B6EB6B2CD9DA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CA7070E2-B365-4602-974B-8B8AB784D5EF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{CBA638DE-ED6D-43B8-A779-699A7E5F8100}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D1571C55-9E08-4D69-A78B-7B66EAE010BF}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D5FF512A-C854-439B-9D52-15C61228A17F}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D615529A-A93B-4525-95F7-060D23D5A9EA}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{D94FB94C-321B-4C0E-990A-0938CE4AA8E6}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{DCB1C225-A710-4446-BA39-3A268F631B33}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E156E74F-264D-41E3-AD79-FCDB21C0514E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{E4D1CC93-046E-4F98-B4A8-0B284C37210E}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F0D6197C-EF2C-4228-AC2E-2990FFAACB38}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\Cache d'images\LocalMLS\{F20F55D6-4FD6-40AB-902D-11D10FC328F7}.jpg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Media Player\MusicType1VirginMegaFr\downloads.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\activesharingfolder.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\ContactsLog.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0025F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00260.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00261.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00262.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00263.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\62dunathalie@live.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\bernardbocquillon@msn.com\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\Brands\fr-FR\config.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\choulisette@hotmail.fr\SharingMetadata\Logs\Dfsr00004.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000D.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000E.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr0000F.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00010.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr00011.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\corentinmarquis@hotmail.fr\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\m62300@hotmail.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\nathmarquis@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\pending.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\volume.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\62dunathalie@live.fr\DFSR\Staging\CS{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}\01\10-{97B1E1CB-155A-04F3-48EE-A4BBEFCA1979}-v1-{189EF6FB-EBFD-4E74-A0B9-8E83E3D12674}-v10-Downloaded.frx
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E3.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E4.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E5.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E6.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E7.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E8.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004E9.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsr004EA.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\fsrtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\raulxmickael@msn.com\SharingMetadata\Working\database_8804_8459_484_4C5E\tmp.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Messenger\shyrel@live.fr\SharingMetadata\Logs\Dfsr00005.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Movie Maker\MEDIATAB1.DAT
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows\UsrClass.dat.LOG
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\Desktop.ini
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\62dunathalie@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\bernardbocquillon@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\choulisette@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\corentinmarquis@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\m62300@hotmail.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\nathmarquis@hotmail.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\real\Ignored\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\raulxmickael@msn.com\shadow\Ignored\IgnoredReason.txt
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\real\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\shyrel@live.fr\shadow\members.stg
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{27c60923-7f1a-4e93-8d18-4ef2afe1e910}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{395a5357-2dfe-41fc-9595-8934ca679850}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{64531a27-8490-472a-afcf-60394ed13a12}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{69c1a643-bf5a-4a33-ae34-d5bd7cf94c45}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\contacts.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\tempedb.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\edbtmp.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Contacts\{d96d9cdc-2d59-4daf-8f11-a4c9a1ae3412}\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\oeold.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\RssFeeds.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\sqmnoopt00.sqm
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\WindowsLiveMail.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\edb00001.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Backup\temp\Mail.pat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\edb.chk
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\WLCalendarStore.edb
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\edb.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res1.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Calendars\raulxmickael@msn.com\DBStore\LogFiles\res2.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\raulxmickael@msn.com\oeconfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.DTD
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Microsoft\Windows Media\11.0\WMSDKNS.XML
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41366293776.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41667781132.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization41993430095.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42011990351.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42298406619.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization42330217323.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43282370197.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\catalogCivilization43438407711.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BonusInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4BuildingInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivicInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4CivilizationInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4DiplomacyInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4HandicapInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4ImprovementInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4LeaderHeadInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4PromotionInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4TechInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\CIV4UnitInfos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\crc.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalDefines.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\cache\GlobalText.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\My Games\Sid Meier's Civilization 4\Profiles\Default Profile.pfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\cache.qpc.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\QuickPar\x-men.origins.wolverine.2009..avi(1).qp.bak
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\7zAes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Aes.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Branch.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Copy.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\LZMA.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Codecs\Swap.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Seven Zip\Formats\7z.dll
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XPC.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Thunderbird\Profiles\6gpxdd6o.default\XUL.mfl
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\Windows Live Writer.log
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\BlogProvidersB5.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\DhtmlImageViewers.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Markets.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Master.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\PassportSettings2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\SpellingConfig.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\TagProviders.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Updates.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\VideoProvidersB2.xml
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\Windows Live Writer\ResourceCache\live\Writer_Config.cab
C:\WINDOWS\System32\$winnt$.inf
C:\WINDOWS\System32\12520437.cpx
C:\WINDOWS\System32\12520850.cpx
C:\WINDOWS\System32\6to4svc.dll
C:\WINDOWS\System32\aaaamon.dll
C:\WINDOWS\System32\aaclient.dll
C:\WINDOWS\System32\acctres.dll
C:\WINDOWS\System32\acledit.dll
C:\WINDOWS\System32\aclui.dll
C:\WINDOWS\System32\activeds.dll
C:\WINDOWS\System32\activeds.tlb
C:\WINDOWS\System32\actmovie.exe
C:\WINDOWS\System32\actxprxy.dll
C:\WINDOWS\System32\admparse.dll
C:\WINDOWS\System32\adptif.dll
C:\WINDOWS\System32\adsldp.dll
C:\WINDOWS\System32\adsldpc.dll
C:\WINDOWS\System32\adsmsext.dll
C:\WINDOWS\System32\adsnds.dll
C:\WINDOWS\System32\adsnt.dll
C:\WINDOWS\System32\adsnw.dll
C:\WINDOWS\System32\advapi32.dll
C:\WINDOWS\System32\advpack(2).dll
C:\WINDOWS\System32\advpack(3).dll
C:\WINDOWS\System32\advpack(4).dll
C:\WINDOWS\System32\advpack(5).dll
C:\WINDOWS\System32\advpack.dll
C:\WINDOWS\System32\advpack.dll.mui
C:\WINDOWS\System32\ahui.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\alsndmgr.cpl
C:\WINDOWS\System32\alsndmgr.wav
C:\WINDOWS\System32\amcompat.tlb
C:\WINDOWS\System32\amdpcom32.dll
C:\WINDOWS\System32\amstream.dll
C:\WINDOWS\System32\ansi.sys
C:\WINDOWS\System32\apcups.dll
C:\WINDOWS\System32\api.dat
C:\WINDOWS\System32\api32.dll
C:\WINDOWS\System32\append.exe
C:\WINDOWS\System32\apphelp.dll
C:\WINDOWS\System32\appmgmts.dll
C:\WINDOWS\System32\appmgr.dll
C:\WINDOWS\System32\appwiz.cpl
C:\WINDOWS\System32\app_filter_ui.log
C:\WINDOWS\System32\arp.exe
C:\WINDOWS\System32\asctrls.ocx
C:\WINDOWS\System32\asferror.dll
C:\WINDOWS\System32\asr_pfu.exe
C:\WINDOWS\System32\asycfilt.dll
C:\WINDOWS\System32\at.exe
C:\WINDOWS\System32\ati2cqag.dll
C:\WINDOWS\System32\ati2dvaa.dll
C:\WINDOWS\System32\ati2dvag.dll
C:\WINDOWS\System32\ati2edxx.dll
C:\WINDOWS\System32\ati2evxx.dll
C:\WINDOWS\System32\ati2evxx.exe
C:\WINDOWS\System32\Ati2mdxx.exe
C:\WINDOWS\System32\ati2sgag.exe
C:\WINDOWS\System32\ati3d1ag.dll
C:\WINDOWS\System32\ati3duag.dll
C:\WINDOWS\System32\atiadlxx.dll
C:\WINDOWS\System32\atibrtmon.exe
C:\WINDOWS\System32\aticalcl.dll
C:\WINDOWS\System32\aticaldd.dll
C:\WINDOWS\System32\aticalrt.dll
C:\WINDOWS\System32\ATIDDC.DLL
C:\WINDOWS\System32\ATIDEMGX.dll
C:\WINDOWS\System32\atifglpf.xml
C:\WINDOWS\System32\atiicdxx.dat
C:\WINDOWS\System32\atiiiexx.dll
C:\WINDOWS\System32\atikvmag.dll
C:\WINDOWS\System32\atioglxx.dll
C:\WINDOWS\System32\atiok3x2.dll
C:\WINDOWS\System32\atipdlxx.dll
C:\WINDOWS\System32\atitvo32.dll
C:\WINDOWS\System32\ativcoxx.dll
C:\WINDOWS\System32\ativtmxx.dll
C:\WINDOWS\System32\ativva5x.dat
C:\WINDOWS\System32\ativva6x.dat
C:\WINDOWS\System32\ativvaxx.cap
C:\WINDOWS\System32\ativvaxx.dat
C:\WINDOWS\System32\ativvaxx.dll
C:\WINDOWS\System32\atkctrs.dll
C:\WINDOWS\System32\atl.dll
C:\WINDOWS\System32\atmadm.exe
C:\WINDOWS\System32\atmfd.dll
C:\WINDOWS\System32\atmlib.dll
C:\WINDOWS\System32\atmpvcno.dll
C:\WINDOWS\System32\attrib.exe
C:\WINDOWS\System32\audiodev.dll
C:\WINDOWS\System32\audiosrv.dll
C:\WINDOWS\System32\auditusr.exe
C:\WINDOWS\System32\Aurora-VS.scr
C:\WINDOWS\System32\Aurora.scr
C:\WINDOWS\System32\authz.dll
C:\WINDOWS\System32\autochk.exe
C:\WINDOWS\System32\autoconv.exe
C:\WINDOWS\System32\autodisc.dll
C:\WINDOWS\System32\autofmt.exe
C:\WINDOWS\System32\autolfn.exe
C:\WINDOWS\System32\avicap.dll
C:\WINDOWS\System32\avicap32.dll
C:\WINDOWS\System32\avifil32.dll
C:\WINDOWS\System32\avifile.dll
C:\WINDOWS\System32\avwav3.dll
C:\WINDOWS\System32\azroles.dll
C:\WINDOWS\System32\basesrv.dll
C:\WINDOWS\System32\batmeter.dll
C:\WINDOWS\System32\batt.dll
C:\WINDOWS\System32\bdco1.dll
C:\WINDOWS\System32\bdco1ins.dll
C:\WINDOWS\System32\bddwpwzhnxtzcack.dll
C:\WINDOWS\System32\bidispl.dll
C:\WINDOWS\System32\bios1.rom
C:\WINDOWS\System32\bios4.rom
C:\WINDOWS\System32\bitsprx2.dll
C:\WINDOWS\System32\bitsprx3.dll
C:\WINDOWS\System32\bitsprx4.dll
C:\WINDOWS\System32\blackbox.dll
C:\WINDOWS\System32\blastcln.exe
C:\WINDOWS\System32\bootcfg.exe
C:\WINDOWS\System32\bootok.exe
C:\WINDOWS\System32\bootvid.dll
C:\WINDOWS\System32\bootvrfy.exe
C:\WINDOWS\System32\bopomofo.uce
C:\WINDOWS\System32\browselc.dll
C:\WINDOWS\System32\browser.dll
C:\WINDOWS\System32\browseui.dll
C:\WINDOWS\System32\browsewm.dll
C:\WINDOWS\System32\bthci.dll
C:\WINDOWS\System32\bthprops.cpl
C:\WINDOWS\System32\bthserv.dll
C:\WINDOWS\System32\btpanui.dll
C:\WINDOWS\System32\Bulles-VS.scr
C:\WINDOWS\System32\BuzzingBee.wav
C:\WINDOWS\System32\cabinet.dll
C:\WINDOWS\System32\cacls.exe
C:\WINDOWS\System32\calc.exe
C:\WINDOWS\System32\camocx.dll
C:\WINDOWS\System32\CapabilityTable.exe
C:\WINDOWS\System32\capesnpn.dll
C:\WINDOWS\System32\cards.dll
C:\WINDOWS\System32\catsrv.dll
C:\WINDOWS\System32\catsrvps.dll
C:\WINDOWS\System32\catsrvut.dll
C:\WINDOWS\System32\ccfgnt.dll
C:\WINDOWS\System32\cdfview.dll
C:\WINDOWS\System32\cdm.dll
C:\WINDOWS\System32\cdmodem.dll
C:\WINDOWS\System32\cdosys.dll
C:\WINDOWS\System32\certcli.dll
C:\WINDOWS\System32\certmgr.dll
C:\WINDOWS\System32\certmgr.msc
C:\WINDOWS\System32\cewmdm.dll
C:\WINDOWS\System32\cfgbkend.dll
C:\WINDOWS\System32\cfgmgr32.dll
C:\WINDOWS\System32\charmap.exe
C:\WINDOWS\System32\ChaŒnes.scf
C:\WINDOWS\System32\ChCfg.exe
C:\WINDOWS\System32\chcp.com
C:\WINDOWS\System32\chkdsk.exe
C:\WINDOWS\System32\chkntfs.exe
C:\WINDOWS\System32\cic.dll
C:\WINDOWS\System32\cipher.exe
C:\WINDOWS\System32\ckcnv.exe
C:\WINDOWS\System32\clb.dll
C:\WINDOWS\System32\clbcatex.dll
C:\WINDOWS\System32\clbcatq.dll
C:\WINDOWS\System32\cleanmgr.exe
C:\WINDOWS\System32\cliconfg.dll
C:\WINDOWS\System32\cliconfg.exe
C:\WINDOWS\System32\cliconfg.rll
C:\WINDOWS\System32\clusapi.dll
C:\WINDOWS\System32\cmcfg32.dll
C:\WINDOWS\System32\cmd.exe
C:\WINDOWS\System32\cmdial32.dll
C:\WINDOWS\System32\cmdl32.exe
C:\WINDOWS\System32\cmdlib.wsc
C:\WINDOWS\System32\CmdLineExt.dll
C:\WINDOWS\System32\CMExt.dll
C:\WINDOWS\System32\cmmon32.exe
C:\WINDOWS\System32\cmos.ram
C:\WINDOWS\System32\cmpbk32.dll
C:\WINDOWS\System32\cmprops.dll
C:\WINDOWS\System32\cmsetacl.dll
C:\WINDOWS\System32\cmstp.exe
C:\WINDOWS\System32\CmutEuro32.dll
C:\WINDOWS\System32\cmutil.dll
C:\WINDOWS\System32\cnbjmon.dll
C:\WINDOWS\System32\cnetcfg.dll
C:\WINDOWS\System32\cnvfat.dll
C:\WINDOWS\System32\colbact.dll
C:\WINDOWS\System32\comaddin.dll
C:\WINDOWS\System32\comcat.dll
C:\WINDOWS\System32\comctl32.dll
C:\WINDOWS\System32\comdlg32.dll
C:\WINDOWS\System32\comm.drv
C:\WINDOWS\System32\command.com
C:\WINDOWS\System32\commdlg.dll
C:\WINDOWS\System32\comp.exe
C:\WINDOWS\System32\compact.exe
C:\WINDOWS\System32\compatui.dll
C:\WINDOWS\System32\compmgmt.msc
C:\WINDOWS\System32\compobj.dll
C:\WINDOWS\System32\compstui.dll
C:\WINDOWS\System32\comrepl.dll
C:\WINDOWS\System32\comres.dll
C:\WINDOWS\System32\comsdupd.exe
C:\WINDOWS\System32\comsnap.dll
C:\WINDOWS\System32\comsvcs.dll
C:\WINDOWS\System32\comuid.dll
C:\WINDOWS\System32\CONFIG.TMP
C:\WINDOWS\System32\conime.exe
C:\WINDOWS\System32\console.dll
C:\WINDOWS\System32\control.exe
C:\WINDOWS\System32\convert.exe
C:\WINDOWS\System32\corpol.dll
C:\WINDOWS\System32\country.sys
C:\WINDOWS\System32\credssp.dll
C:\WINDOWS\System32\credui.dll
C:\WINDOWS\System32\crtdll.dll
C:\WINDOWS\System32\crypt32.dll
C:\WINDOWS\System32\cryptdlg.dll
C:\WINDOWS\System32\cryptdll.dll
C:\WINDOWS\System32\cryptext.dll
C:\WINDOWS\System32\cryptnet.dll
C:\WINDOWS\System32\cryptsvc.dll
C:\WINDOWS\System32\cryptui.dll
C:\WINDOWS\System32\cscdll.dll
C:\WINDOWS\System32\cscript.exe
C:\WINDOWS\System32\csrsrv.dll
C:\WINDOWS\System32\csrss.exe
C:\WINDOWS\System32\csseqchk.dll
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\ctl3d32.dll
C:\WINDOWS\System32\ctl3dv2.dll
C:\WINDOWS\System32\ctype.nls
C:\WINDOWS\System32\cvirt.dll
C:\WINDOWS\System32\cvirte.dll
C:\WINDOWS\System32\c_037.nls
C:\WINDOWS\System32\c_10000.nls
C:\WINDOWS\System32\c_10006.nls
C:\WINDOWS\System32\c_10007.nls
C:\WINDOWS\System32\c_10010.nls
C:\WINDOWS\System32\c_10017.nls
C:\WINDOWS\System32\c_10029.nls
C:\WINDOWS\System32\c_10079.nls
C:\WINDOWS\System32\c_10081.nls
C:\WINDOWS\System32\c_10082.nls
C:\WINDOWS\System32\c_1026.nls
C:\WINDOWS\System32\c_1250.nls
C:\WINDOWS\System32\c_1251.nls
C:\WINDOWS\System32\c_1252.nls
C:\WINDOWS\System32\c_1253.nls
C:\WINDOWS\System32\c_1254.nls
C:\WINDOWS\System32\c_1255.nls
C:\WINDOWS\System32\c_1256.nls
C:\WINDOWS\System32\c_1257.nls
C:\WINDOWS\System32\c_1258.nls
C:\WINDOWS\System32\c_20127.nls
C:\WINDOWS\System32\c_20261.nls
C:\WINDOWS\System32\c_20866.nls
C:\WINDOWS\System32\c_20905.nls
C:\WINDOWS\System32\c_21866.nls
C:\WINDOWS\System32\c_28591.nls
C:\WINDOWS\System32\c_28592.nls
C:\WINDOWS\System32\c_28593.nls
C:\WINDOWS\System32\C_28594.NLS
C:\WINDOWS\System32\C_28595.NLS
C:\WINDOWS\System32\C_28597.NLS
C:\WINDOWS\System32\c_28598.nls
C:\WINDOWS\System32\c_28599.nls
C:\WINDOWS\System32\c_28603.nls
C:\WINDOWS\System32\c_28605.nls
C:\WINDOWS\System32\c_437.nls
C:\WINDOWS\System32\c_500.nls
C:\WINDOWS\System32\c_737.nls
C:\WINDOWS\System32\c_775.nls
C:\WINDOWS\System32\c_850.nls
C:\WINDOWS\System32\c_852.nls
C:\WINDOWS\System32\c_855.nls
C:\WINDOWS\System32\c_857.nls
C:\WINDOWS\System32\c_860.nls
C:\WINDOWS\System32\c_861.nls
C:\WINDOWS\System32\c_863.nls
C:\WINDOWS\System32\c_865.nls
C:\WINDOWS\System32\c_866.nls
C:\WINDOWS\System32\c_869.nls
C:\WINDOWS\System32\c_874.nls
C:\WINDOWS\System32\c_875.nls
C:\WINDOWS\System32\c_932.nls
C:\WINDOWS\System32\c_936.nls
C:\WINDOWS\System32\c_949.nls
C:\WINDOWS\System32\c_950.nls
C:\WINDOWS\System32\d3d8.dll
C:\WINDOWS\System32\d3d8caps.dat
C:\WINDOWS\System32\d3d8thk.dll
C:\WINDOWS\System32\d3d9.dll
C:\WINDOWS\System32\d3d9caps.dat
C:\WINDOWS\System32\d3dcompiler_33.dll
C:\WINDOWS\System32\d3dcompiler_34.dll
C:\WINDOWS\System32\d3dcompiler_35.dll
C:\WINDOWS\System32\d3dcompiler_36.dll
C:\WINDOWS\System32\D3DCompiler_37.dll
C:\WINDOWS\System32\D3DCompiler_38.dll
C:\WINDOWS\System32\D3DCompiler_39.dll
C:\WINDOWS\System32\D3DCompiler_40.dll
C:\WINDOWS\System32\D3DCompiler_41.dll
C:\WINDOWS\System32\d3dim.dll
C:\WINDOWS\System32\d3dim700.dll
C:\WINDOWS\System32\d3dpmesh.dll
C:\WINDOWS\System32\d3dramp.dll
C:\WINDOWS\System32\d3drm.dll
C:\WINDOWS\System32\d3dx10.dll
C:\WINDOWS\System32\d3dx10_33.dll
C:\WINDOWS\System32\d3dx10_34.dll
C:\WINDOWS\System32\d3dx10_35.dll
C:\WINDOWS\System32\d3dx10_36.dll
C:\WINDOWS\System32\d3dx10_37.dll
C:\WINDOWS\System32\d3dx10_38.dll
C:\WINDOWS\System32\d3dx10_39.dll
C:\WINDOWS\System32\d3dx10_40.dll
C:\WINDOWS\System32\d3dx10_41.dll
C:\WINDOWS\System32\D3DX81ab.dll
C:\WINDOWS\System32\d3dx9.dll
C:\WINDOWS\System32\d3dx9_24.dll
C:\WINDOWS\System32\d3dx9_25.dll
C:\WINDOWS\System32\d3dx9_26.dll
C:\WINDOWS\System32\d3dx9_27.dll
C:\WINDOWS\System32\d3dx9_28.dll
C:\WINDOWS\System32\d3dx9_29.dll
C:\WINDOWS\System32\d3dx9_30.dll
C:\WINDOWS\System32\d3dx9_31.dll
C:\WINDOWS\System32\d3dx9_32.dll
C:\WINDOWS\System32\d3dx9_33.dll
C:\WINDOWS\System32\d3dx9_34.dll
C:\WINDOWS\System32\d3dx9_35.dll
C:\WINDOWS\System32\d3dx9_36.dll
C:\WINDOWS\System32\D3DX9_37.dll
C:\WINDOWS\System32\D3DX9_38.dll
C:\WINDOWS\System32\D3DX9_39.dll
C:\WINDOWS\System32\D3DX9_40.dll
C:\WINDOWS\System32\D3DX9_41.dll
C:\WINDOWS\System32\d3dxof.dll
C:\WINDOWS\System32\danim.dll
C:\WINDOWS\System32\dataclen.dll
C:\WINDOWS\System32\datime.dll
C:\WINDOWS\System32\daxctle.ocx
C:\WINDOWS\System32\dbghelp.dll
C:\WINDOWS\System32\dbmsrpcn.dll
C:\WINDOWS\System32\dbnetlib.dll
C:\WINDOWS\System32\dbnmpntw.dll
C:\WINDOWS\System32\dcache.bin
C:\WINDOWS\System32\dciman32.dll
C:\WINDOWS\System32\dcomcnfg.exe
C:\WINDOWS\System32\ddeml.dll
C:\WINDOWS\System32\ddraw.dll
C:\WINDOWS\System32\ddrawex.dll
C:\WINDOWS\System32\debug.exe
C:\WINDOWS\System32\desk.cpl
C:\WINDOWS\System32\deskadp.dll
C:\WINDOWS\System32\deskmon.dll
C:\WINDOWS\System32\deskperf.dll
C:\WINDOWS\System32\desktop.ini
C:\WINDOWS\System32\devenum.dll
C:\WINDOWS\System32\devmgmt.msc
C:\WINDOWS\System32\devmgr.dll
C:\WINDOWS\System32\dfb42448-7122-2023-be39-9182faa9fa78.exe
C:\WINDOWS\System32\dfshim.dll
C:\WINDOWS\System32\dfsshlex.dll
C:\WINDOWS\System32\dgnet.dll
C:\WINDOWS\System32\dgrpsetu.dll
C:\WINDOWS\System32\dgsetup.dll
C:\WINDOWS\System32\dhcpcsvc.dll
C:\WINDOWS\System32\dhcpmon.dll
C:\WINDOWS\System32\dhcpqec.dll
C:\WINDOWS\System32\dhcpsapi.dll
C:\WINDOWS\System32\diactfrm.dll
C:\WINDOWS\System32\diantz.exe
C:\WINDOWS\System32\digest.dll
C:\WINDOWS\System32\dimap.dll
C:\WINDOWS\System32\dimsntfy.dll
C:\WINDOWS\System32\dimsroam.dll
C:\WINDOWS\System32\dinput.dll
C:\WINDOWS\System32\dinput8.dll
C:\WINDOWS\System32\directx.cpl
C:\WINDOWS\System32\diskcomp.com
C:\WINDOWS\System32\diskcopy.com
C:\WINDOWS\System32\diskcopy.dll
C:\WINDOWS\System32\diskmgmt.msc
C:\WINDOWS\System32\diskpart.exe
C:\WINDOWS\System32\diskperf.exe
C:\WINDOWS\System32\dispex.dll
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\System32\dllhst3g.exe
C:\WINDOWS\System32\dmadmin.exe
C:\WINDOWS\System32\dmband.dll
C:\WINDOWS\System32\dmcompos.dll
C:\WINDOWS\System32\dmconfig.dll
C:\WINDOWS\System32\dmdlgs.dll
C:\WINDOWS\System32\dmdskmgr.dll
C:\WINDOWS\System32\dmdskres.dll
C:\WINDOWS\System32\dmime.dll
C:\WINDOWS\System32\dmintf.dll
C:\WINDOWS\System32\dmloader.dll
C:\WINDOWS\System32\dmocx.dll
C:\WINDOWS\System32\dmremote.exe
C:\WINDOWS\System32\dmscript.dll
C:\WINDOWS\System32\dmserver.dll
C:\WINDOWS\System32\dmstyle.dll
C:\WINDOWS\System32\dmsynth.dll
C:\WINDOWS\System32\dmusic.dll
C:\WINDOWS\System32\dmutil.dll
C:\WINDOWS\System32\dmview.ocx
C:\WINDOWS\System32\dnsapi.dll
C:\WINDOWS\System32\dnsrslvr.dll
C:\WINDOWS\System32\docprop.dll
C:\WINDOWS\System32\docprop2.dll
C:\WINDOWS\System32\doskey.exe
C:\WINDOWS\System32\dosx.exe
C:\WINDOWS\System32\dot3api.dll
C:\WINDOWS\System32\dot3cfg.dll
C:\WINDOWS\System32\dot3dlg.dll
C:\WINDOWS\System32\dot3gpclnt.dll
C:\WINDOWS\System32\dot3msm.dll
C:\WINDOWS\System32\dot3svc.dll
C:\WINDOWS\System32\dot3ui.dll
C:\WINDOWS\System32\dpcdll.dll
C:\WINDOWS\System32\dplay.dll
C:\WINDOWS\System32\dplaysvr.exe
C:\WINDOWS\System32\dplayx.dll
C:\WINDOWS\System32\dpmodemx.dll
C:\WINDOWS\System32\dpnaddr.dll
C:\WINDOWS\System32\dpnet.dll
C:\WINDOWS\System32\dpnhpast.dll
C:\WINDOWS\System32\dpnhupnp.dll
C:\WINDOWS\System32\dpnlobby.dll
C:\WINDOWS\System32\dpnmodem.dll
C:\WINDOWS\System32\dpnsvr.exe
C:\WINDOWS\System32\dpnwsock.dll
C:\WINDOWS\System32\dpserial.dll
C:\WINDOWS\System32\dpvacm.dll
C:\WINDOWS\System32\dpvoice.dll
C:\WINDOWS\System32\dpvsetup.exe
C:\WINDOWS\System32\dpvvox.dll
C:\WINDOWS\System32\dpwsock.dll
C:\WINDOWS\System32\dpwsockx.dll
C:\WINDOWS\System32\driverquery.exe
C:\WINDOWS\System32\drmclien.dll
C:\WINDOWS\System32\drmstor.dll
C:\WINDOWS\System32\drmupgds.exe
C:\WINDOWS\System32\drmv2clt.dll
C:\WINDOWS\System32\drprov.dll
C:\WINDOWS\System32\ds16gt.dLL
C:\WINDOWS\System32\ds32gt.dll
C:\WINDOWS\System32\dsauth.dll
C:\WINDOWS\System32\dsdmo.dll
C:\WINDOWS\System32\dsdmoprp.dll
C:\WINDOWS\System32\dskquota.dll
C:\WINDOWS\System32\dskquoui.dll
C:\WINDOWS\System32\dsound.dll
C:\WINDOWS\System32\dsound.vxd
C:\WINDOWS\System32\dsound3d.dll
C:\WINDOWS\System32\dsprop.dll
C:\WINDOWS\System32\dsprpres.dll
C:\WINDOWS\System32\dsquery.dll
C:\WINDOWS\System32\dssec.dat
C:\WINDOWS\System32\dssec.dll
C:\WINDOWS\System32\dssenh.dll
C:\WINDOWS\System32\dsuiext.dll
C:\WINDOWS\System32\dswave.dll
C:\WINDOWS\System32\duser.dll
C:\WINDOWS\System32\dvdplay.exe
C:\WINDOWS\System32\dvdupgrd.exe
C:\WINDOWS\System32\dx7vb.dll
C:\WINDOWS\System32\dx8vb.dll
C:\WINDOWS\System32\dxdiag.exe
C:\WINDOWS\System32\dxdiagn.dll
C:\WINDOWS\System32\dxmasf.dll
C:\WINDOWS\System32\dxtmsft.dll
C:\WINDOWS\System32\dxtrans(2).dll
C:\WINDOWS\System32\dxtrans(3).dll
C:\WINDOWS\System32\dxtrans.dll
C:\WINDOWS\System32\eapolqec.dll
C:\WINDOWS\System32\eapp3hst.dll
C:\WINDOWS\System32\eappcfg.dll
C:\WINDOWS\System32\eappgnui.dll
C:\WINDOWS\System32\eapphost.dll
C:\WINDOWS\System32\eappprxy.dll
C:\WINDOWS\System32\eapqec.dll
C:\WINDOWS\System32\eapsvc.dll
C:\WINDOWS\System32\edit.com
C:\WINDOWS\System32\edlin.exe
C:\WINDOWS\System32\efsadu.dll
C:\WINDOWS\System32\ega.cpi
C:\WINDOWS\System32\els.dll
C:\WINDOWS\System32\emptyregdb.dat
C:\WINDOWS\System32\encapi.dll
C:\WINDOWS\System32\encdec.dll
C:\WINDOWS\System32\EqnClass.Dll
C:\WINDOWS\System32\es(3).dll
C:\WINDOWS\System32\es.dll
C:\WINDOWS\System32\esent.dll
C:\WINDOWS\System32\esent97.dll
C:\WINDOWS\System32\esentprf.dll
C:\WINDOWS\System32\esentprf.hxx
C:\WINDOWS\System32\esentprf.ini
C:\WINDOWS\System32\esentutl.exe
C:\WINDOWS\System32\eudcedit.exe
C:\WINDOWS\System32\eula.txt
C:\WINDOWS\System32\eventcls.dll
C:\WINDOWS\System32\eventcreate.exe
C:\WINDOWS\System32\eventlog.dll
C:\WINDOWS\System32\eventquery.vbs
C:\WINDOWS\System32\eventtriggers.exe
C:\WINDOWS\System32\eventvwr.exe
C:\WINDOWS\System32\eventvwr.msc
C:\WINDOWS\System32\exe2bin.exe
C:\WINDOWS\System32\expand.exe
C:\WINDOWS\System32\expsrv.dll
C:\WINDOWS\System32\extmgr.dll
C:\WINDOWS\System32\extrac32.exe
C:\WINDOWS\System32\exts.dll
C:\WINDOWS\System32\fastopen.exe
C:\WINDOWS\System32\faultrep.dll
C:\WINDOWS\System32\faxpatch.exe
C:\WINDOWS\System32\fc.exe
C:\WINDOWS\System32\fdco1.dll
C:\WINDOWS\System32\fdco1ins.dll
C:\WINDOWS\System32\fdco_l1028.dll
C:\WINDOWS\System32\fdco_l1031.dll
C:\WINDOWS\System32\fdco_l1034.dll
C:\WINDOWS\System32\fdco_l1036.dll
C:\WINDOWS\System32\fdco_l1040.dll
C:\WINDOWS\System32\fdco_l1041.dll
C:\WINDOWS\System32\fdco_l1042.dll
C:\WINDOWS\System32\fdco_l1046.dll
C:\WINDOWS\System32\fdco_l2052.dll
C:\WINDOWS\System32\fde.dll
C:\WINDOWS\System32\fdeploy.dll
C:\WINDOWS\System32\f
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 13:18
4 juin 2009 à 13:18
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-06-04 13:20:33
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 35 GB (23%) free of 153 GB
Total RAM: 1534 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:20:40, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\systemserv32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
c:\xampplite\srvany.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\xampplite\srvany.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\XAMPPLite\MySQL\bin\mysqld.exe
C:\WINDOWS\system32\lxdicoms.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris
R3 - Default URLSearchHook is missing
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: TBSB05288 - {6714ADBD-C6C1-42A8-BD84-9C9339059421} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: blueskyadagency browser enhancer - {7BD4B476-3BDF-FFF8-3004-7B73F092A21C} - C:\WINDOWS\system32\bddwpwzhnxtzcack.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: thesuperads - {9dc63c5d-9d43-123c-6ecb-c29c3b6a6d1b} - C:\WINDOWS\system32\nse2483.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: thesuperads search enhancer - {EE53CE26-A406-DD74-E648-8DA165C8D4A0} - C:\WINDOWS\system32\obcowlxlherzshfo.dll
O3 - Toolbar: ECO Bar - {10000000-1000-1000-1000-100000000000} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Allocine] "C:\Program Files\Allocine\Allocine.exe" /check
O4 - HKLM\..\Run: [HTV Agent] C:\Program Files\HTV\HTV.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [lxdimon.exe] "C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe"
O4 - HKLM\..\Run: [lxdiamon] "C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe"
O4 - HKLM\..\Run: [yzvtspinhztmef] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\bddwpwzhnxtzcack.dll"
O4 - HKLM\..\Run: [WMP Update] C:\WINDOWS\system32\Wmpupdate.exe
O4 - HKLM\..\Run: [Microsoft] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [SystemService32] C:\WINDOWS\systemserv32.exe
O4 - HKCU\..\Run: [MSN Messager] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKCU\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: AutoScreenShot.lnk = C:\Program Files\AutoScreenShot\AutoScreenShot.exe
O4 - Global Startup: Booster Orange.lnk = C:\Program Files\Booster Wanadoo\wanadoo_booster.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O20 - Winlogon Notify: UpdateNf - C:\WINDOWS\SYSTEM32\updatenf.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Lundi Matin Business Apache (LMBApache) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: Lundi Matin Business MySQL (LMBMySQL) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: lxdi_device - - C:\WINDOWS\system32\lxdicoms.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
Run by Administrateur at 2009-06-04 13:20:33
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 35 GB (23%) free of 153 GB
Total RAM: 1534 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:20:40, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\systemserv32.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
c:\xampplite\srvany.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\xampplite\srvany.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\XAMPPLite\MySQL\bin\mysqld.exe
C:\WINDOWS\system32\lxdicoms.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris
R3 - Default URLSearchHook is missing
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: TBSB05288 - {6714ADBD-C6C1-42A8-BD84-9C9339059421} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: blueskyadagency browser enhancer - {7BD4B476-3BDF-FFF8-3004-7B73F092A21C} - C:\WINDOWS\system32\bddwpwzhnxtzcack.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: thesuperads - {9dc63c5d-9d43-123c-6ecb-c29c3b6a6d1b} - C:\WINDOWS\system32\nse2483.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: thesuperads search enhancer - {EE53CE26-A406-DD74-E648-8DA165C8D4A0} - C:\WINDOWS\system32\obcowlxlherzshfo.dll
O3 - Toolbar: ECO Bar - {10000000-1000-1000-1000-100000000000} - C:\Program Files\IEToolbar\ECO Bar\ecobar.dll
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Allocine] "C:\Program Files\Allocine\Allocine.exe" /check
O4 - HKLM\..\Run: [HTV Agent] C:\Program Files\HTV\HTV.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [lxdimon.exe] "C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe"
O4 - HKLM\..\Run: [lxdiamon] "C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe"
O4 - HKLM\..\Run: [yzvtspinhztmef] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\bddwpwzhnxtzcack.dll"
O4 - HKLM\..\Run: [WMP Update] C:\WINDOWS\system32\Wmpupdate.exe
O4 - HKLM\..\Run: [Microsoft] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [SystemService32] C:\WINDOWS\systemserv32.exe
O4 - HKCU\..\Run: [MSN Messager] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKLM\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKCU\..\Policies\Explorer\Run: [Mozilla Explorer v.1 (Beta) RC 4 Rev. 93] C:\WINDOWS\system32\Winzip\MSN Messager.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: AutoScreenShot.lnk = C:\Program Files\AutoScreenShot\AutoScreenShot.exe
O4 - Global Startup: Booster Orange.lnk = C:\Program Files\Booster Wanadoo\wanadoo_booster.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O20 - Winlogon Notify: UpdateNf - C:\WINDOWS\SYSTEM32\updatenf.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Lundi Matin Business Apache (LMBApache) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: Lundi Matin Business MySQL (LMBMySQL) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: lxdi_device - - C:\WINDOWS\system32\lxdicoms.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
Utilisateur anonyme
4 juin 2009 à 13:28
4 juin 2009 à 13:28
Re,
---> Télécharge OTM (D'OldTimer) sur ton Bureau :
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant en gras ci-dessous :
:processes
explorer.exe
:files
c:\program files\ietoolbar\eco bar\ecobar.dll
c:\program files\runit\runit_32.exe
c:\windows\system32\updatenf.dll
c:\windows\system32\regsvr32.exe
c:\windows\system32\updatenf.dll
C:\WINDOWS\system32\bddwpwzhnxtzcack.dll
C:\WINDOWS\system32\nse2483.dll
C:\WINDOWS\systemserv32.exe
:Reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_CLASSES_ROOT\CLSID\{10000000-1000-1000-1000-100000000000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10000000-1000-1000-1000-100000000000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{10000000-1000-1000-1000-100000000000}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}]
:commands
[emptytemp]
[start explorer]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
---> Télécharge OTM (D'OldTimer) sur ton Bureau :
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant en gras ci-dessous :
:processes
explorer.exe
:files
c:\program files\ietoolbar\eco bar\ecobar.dll
c:\program files\runit\runit_32.exe
c:\windows\system32\updatenf.dll
c:\windows\system32\regsvr32.exe
c:\windows\system32\updatenf.dll
C:\WINDOWS\system32\bddwpwzhnxtzcack.dll
C:\WINDOWS\system32\nse2483.dll
C:\WINDOWS\systemserv32.exe
:Reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_CLASSES_ROOT\CLSID\{10000000-1000-1000-1000-100000000000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10000000-1000-1000-1000-100000000000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{10000000-1000-1000-1000-100000000000}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}]
:commands
[emptytemp]
[start explorer]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 13:40
4 juin 2009 à 13:40
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
c:\program files\ietoolbar\eco bar\ecobar.dll unregistered successfully.
c:\program files\ietoolbar\eco bar\ecobar.dll moved successfully.
c:\program files\runit\runit_32.exe moved successfully.
DllUnregisterServer procedure not found in c:\windows\system32\updatenf.dll
c:\windows\system32\updatenf.dll NOT unregistered.
c:\windows\system32\updatenf.dll moved successfully.
c:\windows\system32\regsvr32.exe moved successfully.
File/Folder c:\windows\system32\updatenf.dll not found.
C:\WINDOWS\system32\bddwpwzhnxtzcack.dll unregistered successfully.
C:\WINDOWS\system32\bddwpwzhnxtzcack.dll moved successfully.
C:\WINDOWS\system32\nse2483.dll unregistered successfully.
C:\WINDOWS\system32\nse2483.dll moved successfully.
C:\WINDOWS\systemserv32.exe moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ deleted successfully.
Registry key HKEY_CLASSES_ROOT\CLSID\{10000000-1000-1000-1000-100000000000}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10000000-1000-1000-1000-100000000000}\\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{10000000-1000-1000-1000-100000000000} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10000000-1000-1000-1000-100000000000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\etilqs_NIJrJ8i9xtQv78NYR0SX scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\ib29.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2B.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2D.tmp scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\urlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTM by OldTimer - Version 2.1.0.0 log created on 06042009_133304
Files moved on Reboot...
File C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\etilqs_NIJrJ8i9xtQv78NYR0SX not found!
C:\WINDOWS\temp\ib29.tmp moved successfully.
C:\WINDOWS\temp\ib2A.tmp moved successfully.
C:\WINDOWS\temp\ib2B.tmp moved successfully.
C:\WINDOWS\temp\ib2C.tmp moved successfully.
C:\WINDOWS\temp\ib2D.tmp moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl moved successfully.
Registry entries deleted on Reboot...
Process explorer.exe killed successfully.
========== FILES ==========
c:\program files\ietoolbar\eco bar\ecobar.dll unregistered successfully.
c:\program files\ietoolbar\eco bar\ecobar.dll moved successfully.
c:\program files\runit\runit_32.exe moved successfully.
DllUnregisterServer procedure not found in c:\windows\system32\updatenf.dll
c:\windows\system32\updatenf.dll NOT unregistered.
c:\windows\system32\updatenf.dll moved successfully.
c:\windows\system32\regsvr32.exe moved successfully.
File/Folder c:\windows\system32\updatenf.dll not found.
C:\WINDOWS\system32\bddwpwzhnxtzcack.dll unregistered successfully.
C:\WINDOWS\system32\bddwpwzhnxtzcack.dll moved successfully.
C:\WINDOWS\system32\nse2483.dll unregistered successfully.
C:\WINDOWS\system32\nse2483.dll moved successfully.
C:\WINDOWS\systemserv32.exe moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ deleted successfully.
Registry key HKEY_CLASSES_ROOT\CLSID\{10000000-1000-1000-1000-100000000000}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10000000-1000-1000-1000-100000000000}\\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{10000000-1000-1000-1000-100000000000} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10000000-1000-1000-1000-100000000000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6714ADBD-C6C1-42A8-BD84-9C9339059421}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BD4B476-3BDF-FFF8-3004-7B73F092A21C}\\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE53CE26-A406-DD74-E648-8DA165C8D4A0}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\etilqs_NIJrJ8i9xtQv78NYR0SX scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\ib29.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2A.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2B.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2C.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\ib2D.tmp scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\urlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTM by OldTimer - Version 2.1.0.0 log created on 06042009_133304
Files moved on Reboot...
File C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\etilqs_NIJrJ8i9xtQv78NYR0SX not found!
C:\WINDOWS\temp\ib29.tmp moved successfully.
C:\WINDOWS\temp\ib2A.tmp moved successfully.
C:\WINDOWS\temp\ib2B.tmp moved successfully.
C:\WINDOWS\temp\ib2C.tmp moved successfully.
C:\WINDOWS\temp\ib2D.tmp moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\XUL.mfl moved successfully.
Registry entries deleted on Reboot...
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 14:34
4 juin 2009 à 14:34
Malwarebytes' Anti-Malware 1.37
Version de la base de données: 2227
Windows 5.1.2600 Service Pack 3
04/06/2009 14:29:12
mbam-log-2009-06-04 (14-29-12).txt
Type de recherche: Examen rapide
Eléments examinés: 77162
Temps écoulé: 6 minute(s), 6 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 19
Valeur(s) du Registre infectée(s): 5
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 12
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\Interface\{255c13ae-4bb0-45c3-bae1-ba6c088c43b3} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8fbb0d9a-1f7b-465b-8292-1593b880e92a} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e67d5bc7-7129-493e-9281-f47bdaface4f} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{2ee92bca-74c4-4d4b-88da-db9f9e3c9f93} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\dfb42448-7122-2023-be39-9182faa9fa78 (Adware.TheSuperAds) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\zdcnkejvbmxxgnce (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\runit (Adware.Trace) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\UpdateNf (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\runit (Adware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\TBSB05288 (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1caf5ba3-b6f0-a169-6d26-ec74607d4b5d} (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bfast.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\commission-junction.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\fastclick.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\fastclick.net (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\kqzyfj.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\linksynergy.com (Adware.BHO) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\winrar (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mozilla explorer v.1 (beta) rc 4 rev. 93 (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\system update (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mozilla explorer v.1 (beta) rc 4 rev. 93 (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ForceClassicControlPanel (Hijack.ControlPanelStyle) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSMHelp (Hijack.Help) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
C:\Program Files\runit (Trojan.Agent) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\WINDOWS\system32\Kaspersky\C&C Renegade.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\dcmwk1360.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\jgbq77854.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\api32.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\avwav3.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\dfb42448-7122-2023-be39-9182faa9fa78.exe (Adware.TheSuperAds) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\zdcnkejvbmxxgnce.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
c:\program files\runit\config.txt (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\runit\runitu_32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\components\8e23cf2d-934e-98e9-db19-c77123837581.dll (Adware.Yoog) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\raidmg.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\obcowlxlherzshfo.dll-uninst.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
dernier rapport
Version de la base de données: 2227
Windows 5.1.2600 Service Pack 3
04/06/2009 14:29:12
mbam-log-2009-06-04 (14-29-12).txt
Type de recherche: Examen rapide
Eléments examinés: 77162
Temps écoulé: 6 minute(s), 6 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 19
Valeur(s) du Registre infectée(s): 5
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 12
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\Interface\{255c13ae-4bb0-45c3-bae1-ba6c088c43b3} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8fbb0d9a-1f7b-465b-8292-1593b880e92a} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e67d5bc7-7129-493e-9281-f47bdaface4f} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{2ee92bca-74c4-4d4b-88da-db9f9e3c9f93} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\dfb42448-7122-2023-be39-9182faa9fa78 (Adware.TheSuperAds) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\zdcnkejvbmxxgnce (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\runit (Adware.Trace) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\UpdateNf (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\runit (Adware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\TBSB05288 (Adware.IEtoolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1caf5ba3-b6f0-a169-6d26-ec74607d4b5d} (Adware.Adrotator) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\bfast.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\commission-junction.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\fastclick.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\fastclick.net (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\kqzyfj.com (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\linksynergy.com (Adware.BHO) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\winrar (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mozilla explorer v.1 (beta) rc 4 rev. 93 (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\system update (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\mozilla explorer v.1 (beta) rc 4 rev. 93 (Trojan.Dropper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ForceClassicControlPanel (Hijack.ControlPanelStyle) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSMHelp (Hijack.Help) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
C:\Program Files\runit (Trojan.Agent) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\WINDOWS\system32\Kaspersky\C&C Renegade.exe (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\dcmwk1360.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\jgbq77854.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\api32.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\avwav3.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\dfb42448-7122-2023-be39-9182faa9fa78.exe (Adware.TheSuperAds) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\zdcnkejvbmxxgnce.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
c:\program files\runit\config.txt (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\runit\runitu_32.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\components\8e23cf2d-934e-98e9-db19-c77123837581.dll (Adware.Yoog) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\raidmg.dll (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\obcowlxlherzshfo.dll-uninst.exe (Adware.Adrotator) -> Quarantined and deleted successfully.
dernier rapport
Utilisateur anonyme
4 juin 2009 à 14:55
4 juin 2009 à 14:55
Re,
Supprime la quarantaine de malwarebyte.
Redémarre ton pc , et refait un log avec RSIT.
merci
Supprime la quarantaine de malwarebyte.
Redémarre ton pc , et refait un log avec RSIT.
merci
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 15:09
4 juin 2009 à 15:09
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-06-04 15:12:01
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 33 GB (22%) free of 153 GB
Total RAM: 1534 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:12:14, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\AutoScreenShot\AutoScreenShot.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
c:\xampplite\srvany.exe
c:\xampplite\srvany.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\WINDOWS\system32\lxdicoms.exe
C:\XAMPPLite\MySQL\bin\mysqld.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris
R3 - Default URLSearchHook is missing
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Allocine] "C:\Program Files\Allocine\Allocine.exe" /check
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [lxdimon.exe] "C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe"
O4 - HKLM\..\Run: [lxdiamon] "C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe"
O4 - HKLM\..\Run: [WMP Update] C:\WINDOWS\system32\Wmpupdate.exe
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: AutoScreenShot.lnk = C:\Program Files\AutoScreenShot\AutoScreenShot.exe
O4 - Global Startup: Booster Orange.lnk = C:\Program Files\Booster Wanadoo\wanadoo_booster.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Lundi Matin Business Apache (LMBApache) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: Lundi Matin Business MySQL (LMBMySQL) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: lxdi_device - - C:\WINDOWS\system32\lxdicoms.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
Run by Administrateur at 2009-06-04 15:12:01
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 33 GB (22%) free of 153 GB
Total RAM: 1534 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:12:14, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\AutoScreenShot\AutoScreenShot.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
c:\xampplite\srvany.exe
c:\xampplite\srvany.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\WINDOWS\system32\lxdicoms.exe
C:\XAMPPLite\MySQL\bin\mysqld.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\XAMPPLite\Apache\bin\apache.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris
R3 - Default URLSearchHook is missing
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O4 - HKLM\..\Run: [nTrayFw] C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Allocine] "C:\Program Files\Allocine\Allocine.exe" /check
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [lxdimon.exe] "C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe"
O4 - HKLM\..\Run: [lxdiamon] "C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe"
O4 - HKLM\..\Run: [WMP Update] C:\WINDOWS\system32\Wmpupdate.exe
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-20\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: runit_32.lnk = C:\Program Files\runit\runit_32.exe
O4 - Global Startup: AutoScreenShot.lnk = C:\Program Files\AutoScreenShot\AutoScreenShot.exe
O4 - Global Startup: Booster Orange.lnk = C:\Program Files\Booster Wanadoo\wanadoo_booster.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Lundi Matin Business Apache (LMBApache) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: Lundi Matin Business MySQL (LMBMySQL) - Unknown owner - c:\xampplite\srvany.exe
O23 - Service: lxdi_device - - C:\WINDOWS\system32\lxdicoms.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
Utilisateur anonyme
4 juin 2009 à 15:14
4 juin 2009 à 15:14
Re,
Clique sur le menu Demarrer / Panneau de configuration / Options des dossiers / puis dans l'onglet Affichage
- Coche Afficher les fichiers et dossiers cachés
- Décoche Masquer les extensions des fichiers dont le type est connu
- Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Rends toi sur ce site :
https://www.virustotal.com/gui/
Clique sur parcourir et cherche ces fichiers :
C:\WINDOWS\system32\lxdicomm.dll
C:\WINDOWS\system32\lxdijswr.dll
C:\WINDOWS\system32\lxdicnv4.dll
Clique sur Send File.
Un rapport va s'élaborer ligne à ligne.
Attends la fin. Il doit comprendre la taille du fichier envoyé.
Sauvegarde le rapport avec le bloc-note.
Copie le dans ta réponse.
Egalement le lien.
Merci
Clique sur le menu Demarrer / Panneau de configuration / Options des dossiers / puis dans l'onglet Affichage
- Coche Afficher les fichiers et dossiers cachés
- Décoche Masquer les extensions des fichiers dont le type est connu
- Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Rends toi sur ce site :
https://www.virustotal.com/gui/
Clique sur parcourir et cherche ces fichiers :
C:\WINDOWS\system32\lxdicomm.dll
C:\WINDOWS\system32\lxdijswr.dll
C:\WINDOWS\system32\lxdicnv4.dll
Clique sur Send File.
Un rapport va s'élaborer ligne à ligne.
Attends la fin. Il doit comprendre la taille du fichier envoyé.
Sauvegarde le rapport avec le bloc-note.
Copie le dans ta réponse.
Egalement le lien.
Merci
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 15:33
4 juin 2009 à 15:33
Fichier lxdicomm.dll reçu le 2009.06.04 13:25:05 (UTC)
Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
Résultat: 0/40 (0%)
Fichier lxdijswr.dll reçu le 2009.06.04 13:28:31 (UTC)
Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
Résultat: 0/40 (0%)
Fichier lxdicnv4.dll reçu le 2009.06.04 13:31:36 (UTC)
Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
Résultat: 0/39 (0%)
Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
Résultat: 0/40 (0%)
Fichier lxdijswr.dll reçu le 2009.06.04 13:28:31 (UTC)
Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
Résultat: 0/40 (0%)
Fichier lxdicnv4.dll reçu le 2009.06.04 13:31:36 (UTC)
Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
Résultat: 0/39 (0%)
Utilisateur anonyme
4 juin 2009 à 15:38
4 juin 2009 à 15:38
Re,
Fait Ccleaner et fait ce qui suit:
---> Télécharge OTM (D'OldTimer) sur ton Bureau :
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant en gras ci-dessous :
:processes
explorer.exe
:files
C:\Program Files\runit\runit_32.exe
C:\Program Files\IEToolbar
:commands
[emptytemp]
[start explorer]
[reboot]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
Fait Ccleaner et fait ce qui suit:
---> Télécharge OTM (D'OldTimer) sur ton Bureau :
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant en gras ci-dessous :
:processes
explorer.exe
:files
C:\Program Files\runit\runit_32.exe
C:\Program Files\IEToolbar
:commands
[emptytemp]
[start explorer]
[reboot]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 16:00
4 juin 2009 à 16:00
otm refuse de fonctionner suis a 99% d utilisation processus sur otm et veut toujours pas s ouvrir
alors que tt a l heure ca fonctionnais bien
alors que tt a l heure ca fonctionnais bien
Utilisateur anonyme
4 juin 2009 à 16:00
4 juin 2009 à 16:00
Re,
Fait ce qui suit:
▶ Télécharge ComboFix (de sUBs) sur ton Bureau.
/!\Désactive temporairement toute protection résidente /!\ (Antivirus, antispywares..)
▶ Double clique sur ComboFix.exe.
▶ Accepte la licence en cliquant sur Oui.
▶ Le programme va te demander si tu souhaites installer la Console de Récupération. C'est une précaution, au cas où l'ordinateur tomberait en panne. Je te conseille donc de l'installer, ça ne coûte rien, et ça pourrait potentiellement servir !
▶ Lorsque l'opération sera terminée, un rapport apparaîtra. Poste ce rapport dans ta prochaine réponse.
▶Le rapport se trouve ici : %SystemDrive%\ComboFix.txt (%systemdrive% étant la partition où est installée Windows; C:\ en général)
Aide :Comment utiliser ComboFix.
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
Fait ce qui suit:
▶ Télécharge ComboFix (de sUBs) sur ton Bureau.
/!\Désactive temporairement toute protection résidente /!\ (Antivirus, antispywares..)
▶ Double clique sur ComboFix.exe.
▶ Accepte la licence en cliquant sur Oui.
▶ Le programme va te demander si tu souhaites installer la Console de Récupération. C'est une précaution, au cas où l'ordinateur tomberait en panne. Je te conseille donc de l'installer, ça ne coûte rien, et ça pourrait potentiellement servir !
▶ Lorsque l'opération sera terminée, un rapport apparaîtra. Poste ce rapport dans ta prochaine réponse.
▶Le rapport se trouve ici : %SystemDrive%\ComboFix.txt (%systemdrive% étant la partition où est installée Windows; C:\ en général)
Aide :Comment utiliser ComboFix.
Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
cotlak
Messages postés
193
Date d'inscription
lundi 26 septembre 2005
Statut
Membre
Dernière intervention
18 septembre 2009
17
4 juin 2009 à 16:27
4 juin 2009 à 16:27
ComboFix 09-06-03.04 - Administrateur 04/06/2009 16:16.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.1534.1032 [GMT 2:00]
Lancé depuis: c:\documents and settings\Administrateur\Bureau\ComboFix.exe
* Un antivirus résident est actif
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\IEToolbar
c:\program files\IEToolbar\ECO Bar\basis.xml
c:\program files\IEToolbar\ECO Bar\icons.bmp
c:\program files\IEToolbar\ECO Bar\info.txt
c:\program files\IEToolbar\ECO Bar\tbhelper.dll
c:\program files\IEToolbar\ECO Bar\uninstall.exe
c:\program files\IEToolbar\ECO Bar\version.txt
c:\program files\IEToolbar\ECO Bar\your_logo.png
c:\program files\Mozilla Firefox\components\obcowlxlherzshfo.dll
c:\windows\cbwh6056.exe
c:\windows\rrrtg4033.exe
c:\windows\system32\api.dat
c:\windows\system32\drivers\npf.sys
c:\windows\system32\msconfig.exe
c:\windows\system32\Packet.dll
c:\windows\system32\pthreadVC.dll
c:\windows\system32\WanPacket.dll
c:\windows\system32\wpcap.dll
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_BOONTY_GAMES
-------\Legacy_NPF
-------\Service_Boonty Games
-------\Service_NPF
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-04 au 2009-06-04 ))))))))))))))))))))))))))))))))))))
.
2009-06-04 12:18 . 2009-05-26 11:20 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-04 12:18 . 2009-05-26 11:19 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-04 11:37 . 2009-06-04 11:58 -------- d-----w- c:\windows\system32\System Update
2009-06-04 11:33 . 2009-06-04 11:33 -------- d-----w- C:\_OTM
2009-06-04 10:13 . 2009-06-04 10:13 -------- d-----w- C:\rsit
2009-06-04 06:50 . 2009-06-04 10:41 -------- d-----w- C:\ToolBar SD
2009-06-04 06:02 . 2009-06-04 06:04 -------- dc-h--w- c:\windows\ie8
2009-06-03 17:02 . 2009-06-04 12:12 -------- d-----w- c:\windows\system32\Kaspersky
2009-06-03 05:32 . 2009-06-03 05:32 36359 ----a-w- c:\windows\system32\Wmpupdate.exe
2009-06-03 05:32 . 2009-05-07 09:56 19672576 ------w- c:\windows\LimeWireWin.exe
2009-06-02 18:23 . 2009-06-04 06:10 -------- d-----w- c:\windows\system32\C&C Renegade
2009-06-02 00:45 . 2009-06-02 18:23 -------- d-----w- c:\windows\system32\Winrar
2009-06-01 16:48 . 2009-06-01 16:48 -------- d-----w- c:\documents and settings\Administrateur\Application Data\fizzy
2009-06-01 16:47 . 2009-06-01 16:47 -------- d-----w- c:\program files\Fizzy
2009-05-28 16:23 . 2009-05-28 16:23 442880 ----a-w- c:\windows\system32\obcowlxlherzshfo.dll
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- c:\program files\Fichiers communs\Ciel
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- c:\documents and settings\All Users\Application Data\Ciel
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- c:\program files\Ciel
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- C:\Données Ciel
2009-05-27 12:17 . 2009-05-27 12:17 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Inkscape
2009-05-27 12:12 . 2009-05-27 12:17 -------- d-----w- c:\program files\Inkscape
2009-05-27 08:25 . 2009-05-27 08:25 -------- d-----w- C:\logs
2009-05-27 08:24 . 2009-05-27 08:24 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Lexmark Productivity Studio
2009-05-27 08:20 . 2009-05-28 14:16 -------- d-----w- c:\documents and settings\All Users\lx_cats
2009-05-27 08:16 . 2006-07-31 23:53 40960 ----a-w- c:\windows\system32\lxdivs.dll
2009-05-27 08:16 . 2007-03-30 08:13 344064 ----a-w- c:\windows\system32\lxdicoin.dll
2009-05-27 08:16 . 2008-04-13 18:45 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2009-05-27 08:16 . 2008-04-13 18:45 15104 ----a-w- c:\windows\system32\dllcache\usbscan.sys
2009-05-27 08:16 . 2001-08-23 15:47 87040 ----a-w- c:\windows\system32\wiafbdrv.dll
2009-05-27 08:16 . 2001-08-23 15:47 87040 ----a-w- c:\windows\system32\dllcache\wiafbdrv.dll
2009-05-26 05:03 . 2009-05-26 05:03 -------- d-----w- c:\program files\AutoIt3
2009-05-21 19:34 . 2009-05-21 19:34 -------- d-sh--w- c:\documents and settings\Administrateur\IECompatCache
2009-05-21 19:34 . 2009-05-21 19:34 -------- d-sh--w- c:\documents and settings\Administrateur\PrivacIE
2009-05-21 19:30 . 2009-05-21 19:30 -------- d-sh--w- c:\documents and settings\Administrateur\IETldCache
2009-05-21 19:23 . 2009-06-04 05:32 -------- d-----w- c:\windows\ie8updates
2009-05-21 19:15 . 2009-04-25 05:30 102400 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-05-21 18:58 . 2009-05-26 05:03 -------- d-----w- c:\windows\ShellNew
2009-05-20 18:01 . 2009-05-20 18:14 -------- d-----w- c:\program files\FACTOURE
2009-05-20 17:45 . 2009-05-20 17:45 -------- d-----w- c:\documents and settings\All Users\Application Data\ATI
2009-05-20 17:44 . 2009-05-20 17:44 0 ----a-w- c:\windows\ativpsrm.bin
2009-05-20 17:27 . 2009-05-20 17:27 -------- d-----w- c:\program files\ATI
2009-05-20 17:20 . 2006-07-01 20:42 43520 ----a-w- c:\windows\system32\drivers\AmdK8.sys
2009-05-20 17:20 . 2009-05-20 17:20 -------- d-----w- c:\program files\AMD
2009-05-20 17:19 . 2009-05-20 17:19 -------- d-----w- c:\documents and settings\Administrateur\Application Data\InstallShield
2009-05-20 17:18 . 2009-05-20 17:18 -------- d-----w- c:\program files\ma-config.com
2009-05-20 17:18 . 2009-05-20 17:18 -------- d-----w- c:\documents and settings\All Users\Application Data\ma-config.com
2009-05-20 16:28 . 2009-05-20 16:31 -------- d-----w- C:\XAMPPLite
2009-05-14 15:08 . 2009-05-15 15:51 664 ----a-w- c:\windows\system32\d3d9caps.dat
2009-05-13 16:58 . 2009-05-13 16:58 -------- d-----w- c:\documents and settings\Administrateur\Local Settings\Application Data\Seven Zip
2009-05-12 15:32 . 2009-06-01 08:05 -------- d-----w- c:\program files\HTV
2009-05-09 19:06 . 2009-05-09 19:06 -------- d-----w- c:\documents and settings\Administrateur\Local Settings\Application Data\Glowria
2009-05-09 19:05 . 2009-05-09 19:05 -------- d-----w- c:\program files\Allocine
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-04 12:18 . 2009-02-12 14:56 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-04 11:49 . 2009-01-24 15:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-06-04 11:47 . 2008-03-15 05:50 -------- d-----w- c:\program files\CCleaner
2009-06-03 05:48 . 2009-04-27 15:34 -------- d-----w- c:\documents and settings\Administrateur\Application Data\UseNeXT
2009-06-03 05:48 . 2008-03-15 14:00 -------- d-----w- c:\documents and settings\Administrateur\Application Data\LimeWire
2009-06-03 05:33 . 2008-03-15 14:00 -------- d-----w- c:\program files\LimeWire
2009-06-02 08:57 . 2008-04-19 18:53 -------- d-----w- c:\documents and settings\Administrateur\Application Data\teamspeak2
2009-06-02 07:00 . 2009-03-23 16:57 -------- d-----w- c:\program files\Mozilla Thunderbird
2009-06-01 13:00 . 2009-04-27 15:34 -------- d-----w- c:\program files\UseNeXT
2009-05-28 13:54 . 2008-02-13 18:54 6716 -c--a-w- c:\windows\sumatrapdfprefs.dat
2009-05-27 08:15 . 2009-02-07 09:05 -------- d-----w- c:\program files\Lexmark 3500-4500 Series
2009-05-20 17:49 . 2002-08-30 12:00 66350 ----a-w- c:\windows\system32\perfc00C.dat
2009-05-20 17:49 . 2002-08-30 12:00 446528 ----a-w- c:\windows\system32\perfh00C.dat
2009-05-20 17:27 . 2008-03-15 07:14 -------- d-----w- c:\program files\ATI Technologies
2009-05-20 17:20 . 2008-03-15 06:16 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-05-20 17:04 . 2009-01-02 14:55 -------- d-----w- c:\program files\Player Metaboli
2009-05-20 17:04 . 2009-01-02 14:56 68 ----a-w- c:\windows\GPlrLanc.dat
2009-05-20 17:04 . 2009-01-02 14:56 -------- d-----w- c:\documents and settings\All Users\Application Data\Player Metaboli
2009-05-20 16:48 . 2008-03-15 07:11 1100 ----a-w- c:\windows\system32\d3d8caps.dat
2009-05-18 17:46 . 2009-03-21 07:21 -------- d-----w- c:\program files\Teamspeak2_RC2
2009-05-14 16:03 . 2009-03-28 16:25 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-05-13 16:59 . 2009-02-17 07:19 -------- d-----w- c:\documents and settings\All Users\Application Data\{6764A9A0-1DAB-4AED-8936-9270ACCA5E17}
2009-05-07 15:09 . 2009-05-03 13:44 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Command & Conquer 3 Les guerres du Tiberium
2009-05-05 18:28 . 2009-04-27 16:21 -------- d-----w- c:\documents and settings\Administrateur\Application Data\vlc
2009-05-03 13:42 . 2009-05-03 13:42 -------- d--h--r- c:\documents and settings\Administrateur\Application Data\SecuROM
2009-05-03 12:29 . 2008-08-17 05:45 -------- d-----w- c:\program files\Electronic Arts
2009-05-03 12:26 . 2009-05-03 12:17 -------- d-----w- c:\documents and settings\Administrateur\Application Data\DAEMON Tools Lite
2009-05-03 12:23 . 2009-05-03 12:23 -------- d-----w- c:\documents and settings\All Users\Application Data\DAEMON Tools Lite
2009-05-03 12:23 . 2009-05-03 12:22 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-05-03 12:17 . 2009-05-03 12:17 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-04-27 16:20 . 2009-04-27 16:20 -------- d-----w- c:\program files\VideoLAN
2009-04-27 15:49 . 2009-04-27 07:11 -------- d-----w- c:\program files\BoontyGames
2009-04-27 15:45 . 2009-04-27 15:45 -------- d-----w- c:\documents and settings\Administrateur\Application Data\YoudaGames
2009-04-27 15:35 . 2009-04-27 15:35 -------- d-----w- c:\program files\QuickPar
2009-04-27 07:14 . 2009-04-27 07:14 -------- d-----w- c:\documents and settings\All Users\Application Data\BOONTY
2009-04-27 07:14 . 2009-04-27 07:14 -------- d-----w- c:\program files\Fichiers communs\BOONTY Shared
2009-04-27 07:11 . 2009-04-27 07:11 -------- d-----w- c:\program files\Boonty
2009-04-14 16:12 . 2009-01-24 15:31 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-03-29 06:46 . 2008-03-15 07:17 17576 ----a-w- c:\documents and settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-03-16 12:18 . 2009-03-29 06:03 69448 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2009-03-16 12:18 . 2009-03-29 06:03 517448 ----a-w- c:\windows\system32\XAudio2_4.dll
2009-03-16 12:18 . 2009-03-29 06:03 235352 ----a-w- c:\windows\system32\xactengine3_4.dll
2009-03-16 12:18 . 2009-03-29 06:03 22360 ----a-w- c:\windows\system32\X3DAudio1_6.dll
2009-03-09 13:27 . 2009-03-29 06:03 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2009-03-09 13:27 . 2009-03-29 06:03 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2009-03-09 13:27 . 2009-03-29 06:03 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2009-03-08 02:34 . 2008-02-12 21:26 914944 ----a-w- c:\windows\system32\wininet.dll
2009-03-08 02:34 . 2008-02-12 21:23 43008 ----a-w- c:\windows\system32\licmgr10.dll
2009-03-08 02:33 . 2008-02-12 21:23 18944 ----a-w- c:\windows\system32\corpol.dll
2009-03-08 02:33 . 2008-02-13 18:53 420352 ----a-w- c:\windows\system32\vbscript.dll
2009-03-08 02:32 . 2008-02-12 21:23 72704 ----a-w- c:\windows\system32\admparse.dll
2009-03-08 02:32 . 2008-02-12 21:23 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-03-08 02:31 . 2008-02-12 21:23 34816 ----a-w- c:\windows\system32\imgutil.dll
2009-03-08 02:31 . 2008-02-12 21:23 48128 ----a-w- c:\windows\system32\mshtmler.dll
2009-03-08 02:31 . 2008-02-12 21:23 45568 ----a-w- c:\windows\system32\mshta.exe
2009-03-08 02:22 . 2008-02-12 21:23 156160 ----a-w- c:\windows\system32\msls31.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-29 68856]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"nTrayFw"="c:\program files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe" [2005-12-21 270336]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2008-03-15 949376]
"Allocine"="c:\program files\Allocine\Allocine.exe" [2009-02-26 925808]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-02-25 61440]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2007-10-04 307200]
"lxdimon.exe"="c:\program files\Lexmark 3500-4500 Series\lxdimon.exe" [2007-07-16 434864]
"lxdiamon"="c:\program files\Lexmark 3500-4500 Series\lxdiamon.exe" [2007-07-16 25264]
"WMP Update"="c:\windows\system32\Wmpupdate.exe" [2009-06-03 36359]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\soundman.exe [2007-04-16 577536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WIAWizardMenu"="c:\windows\system32\sti_ci.dll" [2008-04-14 138240]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"ShowDeskFix"="shell32" [X]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
AutoScreenShot.lnk - c:\program files\AutoScreenShot\AutoScreenShot.exe [2008-8-24 207201]
Booster Orange.lnk - c:\program files\Booster Wanadoo\wanadoo_booster.exe [2008-5-14 184320]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"SynchronousMachineGroupPolicy"= 0 (0x0)
"SynchronousUserGroupPolicy"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
"HideRunAsVerb"= 1 (0x1)
"NoNetConnectDisconnect"= 1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoSMConfigurePrograms"= 1 (0x1)
"NoStrCmpLogical"= 0 (0x0)
"NoWelcomeScreen"= 1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSMHelp"= 1 (0x1)
"ForceClassicControlPanel"= 1 (0x1)
"NoResolveTrack"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoSMConfigurePrograms"= 1 (0x1)
"NoStrCmpLogical"= 0 (0x0)
"NoWelcomeScreen"= 1 (0x1)
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32
"wave2"= serwvdrv.dll
"wave3"= serwvdrv.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
"DisableUnicastResponsesToMulticastBroadcast"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\InstantTouch\\bin\\CmCenterV2.exe"=
"c:\\Program Files\\HomePlayer\\HomePlayer.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Electronic Arts\\Command & Conquer 3\\RetailExe\\1.0\\cnc3game.dat"=
"c:\\XAMPPLite\\mysql\\bin\\mysqld.exe"=
"c:\\XAMPPLite\\apache\\bin\\apache.exe"=
"c:\\WINDOWS\\system32\\lxdicoms.exe"=
"c:\\Program Files\\Lexmark 3500-4500 Series\\lxdimon.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdipswx.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdijswx.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxditime.exe"=
R1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [15/03/2008 18:03 15424]
R2 LMBApache;Lundi Matin Business Apache;c:\xampplite\srvany.exe [14/05/1997 23:49 13312]
R2 LMBMySQL;Lundi Matin Business MySQL;c:\xampplite\srvany.exe [14/05/1997 23:49 13312]
R2 lxdi_device;lxdi_device;c:\windows\system32\lxdicoms.exe -service --> c:\windows\system32\lxdicoms.exe -service [?]
R2 X4HSX32Ex;X4HSX32Ex;c:\program files\Player Metaboli\X4HSX32Ex.sys [21/03/2009 16:14 29856]
S3 camvid20;Philips ToUcam Camera; Video;c:\windows\system32\drivers\camdrv21.sys [15/03/2008 08:35 223232]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [13/05/2009 14:37 234864]
--- Autres Services/Pilotes en mémoire ---
*NewlyCreated* - HELPSVC
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{0J1K2S2B-WIGS-Y03S-PFY6-5EU028U8GRFL}]
c:\windows\system32\Kaspersky\C&C Renegade.exe Restart
.
Contenu du dossier 'Tâches planifiées'
2009-06-04 c:\windows\Tasks\User_Feed_Synchronization-{96C14F65-A98E-487F-AAA2-5A0F42BAC151}.job
- c:\windows\system32\msfeedssync.exe [2008-03-15 02:31]
.
- - - - ORPHELINS SUPPRIMES - - - -
SafeBoot-procexp90.Sys
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://google.fr/
mWindow Title =
LSP: c:\windows\system32\imon.dll
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
Trusted Zone: allocine.fr\glowria
Trusted Zone: urssaf.fr\www.cfe
DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} - hxxp://data.jeuxclassiques.com/npwwg.cab
DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} - hxxps://plugins.valueactive.eu/flashax/iefax.cab
FF - ProfilePath - c:\documents and settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\
FF - component: c:\program files\Mozilla Firefox\extensions\YPlayer@yummy.net\components\FYPlayer.dll
FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npExentCtl.dll
---- PARAMETRES FIREFOX ----
FF - user.js: signed.applets.codebase_principal_support - true
/* To avoid the user interaction, add the following lines: */
FF - user.js: capability.principal.codebase.YummyPlayer_YAEL.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_YAEL.id - hxxp://yael.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_LHOST.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_LHOST.id - hxxp://localhost/
/* GLDE */
FF - user.js: capability.principal.codebase.YummyPlayer_GLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GLDE.id - hxxp://gamesflatrate.de/
FF - user.js: capability.principal.codebase.YummyPlayer_WGLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WGLDE.id - hxxp://www.gamesflatrate.de/
FF - user.js: capability.principal.codebase.YummyPlayer_GLDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GLDEINT.id - hxxp://glde-int.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SGLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SGLDE.id - hxxps://gamesflatrate.de/
FF - user.js: capability.principal.codebase.YummyPlayer_WSGLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSGLDE.id - hxxps://www.gamesflatrate.de/
/* BGFR */
FF - user.js: capability.principal.codebase.YummyPlayer_BGFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BGFR.id - hxxp://linternaute.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SBGFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SBGFR.id - hxxps://linternaute.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_BGFRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BGFRINT.id - hxxp://bgfr-int.metaboli.fr/
/* BILD */
FF - user.js: capability.principal.codebase.YummyPlayer_BILD.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BILD.id - hxxp://bild.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SBILD.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SBILD.id - hxxps://bild.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_BILDINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BILDINT.id - hxxp://bild-int.metaboli.fr/
/* BTUK */
FF - user.js: capability.principal.codebase.YummyPlayer_BTUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BTUK.id - hxxp://btvision.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SBTUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SBTUK.id - hxxps://btvision.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_BTUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BTUKINT.id - hxxp://bt-int.metaboli.fr/
/* CLIC */
FF - user.js: capability.principal.codebase.YummyPlayer_CLIC.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CLIC.id - hxxp://clubic.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SCLIC.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SCLIC.id - hxxps://clubic.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_CLICINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CLICINT.id - hxxp://clic-int.metaboli.fr/
/* COUK */
FF - user.js: capability.principal.codebase.YummyPlayer_COUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_COUK.id - hxxp://metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_WCOUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WCOUK.id - hxxp://www.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_WSCOUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSCOUK.id - hxxps://www.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SCOUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SCOUK.id - hxxps://metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_COUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_COUKINT.id - hxxp://uk-int.metaboli.fr/
/* MEDE */
FF - user.js: capability.principal.codebase.YummyPlayer_MEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MEDE.id - hxxp://metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_WMEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WMEDE.id - hxxp://www.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SMEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMEDE.id - hxxps://metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_MEDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MEDEINT.id - hxxp://de-int.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WSMEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSMEDE.id - hxxps://www.metaboli.de/
/* CUUK */
FF - user.js: capability.principal.codebase.YummyPlayer_CUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CUUK.id - hxxp://custompc.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SCUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SCUUK.id - hxxps://custompc.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_CUUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CUUKINT.id - hxxp://cuuk-int.metaboli.fr/
/* EUUK */
FF - user.js: capability.principal.codebase.YummyPlayer_EUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_EUUK.id - hxxp://eurogamer.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SEUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SEUUK.id - hxxps://eurogamer.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_EUUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_EUUKINT.id - hxxp://euuk-int.metaboli.fr/
/* FUNR */
FF - user.js: capability.principal.codebase.YummyPlayer_FUNR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_FUNR.id - hxxp://fun.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SFUNR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFUNR.id - hxxps://fun.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_FUNRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_FUNRINT.id - hxxp://fun-int.metaboli.fr/
/* GONE */
FF - user.js: capability.principal.codebase.YummyPlayer_GONE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GONE.id - hxxp://gameone.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SGONE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SGONE.id - hxxps://gameone.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_GONEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GONEINT.id - hxxp://gone-int.metaboli.fr/
/* GUDE */
FF - user.js: capability.principal.codebase.YummyPlayer_GUDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GUDE.id - hxxp://gamerunlimited.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SGUDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SGUDE.id - hxxps://gamerunlimited.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_GUDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GUDEINT.id - hxxp://gude-int.metaboli.fr/
/* META */
FF - user.js: capability.principal.codebase.YummyPlayer_META.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_META.id - hxxp://metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WMETA.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WMETA.id - hxxp://www.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SMETA.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMETA.id - hxxps://metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WSMETA.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSMETA.id - hxxps://www.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_METAINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_METAINT.id - hxxp://fr-int.metaboli.fr/
/* MNDE */
FF - user.js: capability.principal.codebase.YummyPlayer_MNDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNDE.id - hxxp://livegames.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SMNDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMNDE.id - hxxps://livegames.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_MNDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNDEINT.id - hxxp://msde-int.metaboli.fr/
/* MNFR */
FF - user.js: capability.principal.codebase.YummyPlayer_MNFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNFR.id - hxxp://livegames.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SMNFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMNFR.id - hxxps://livegames.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_MNFRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNFRINT.id - hxxp://msfr-int.metaboli.fr/
/* MNUK */
FF - user.js: capability.principal.codebase.YummyPlayer_MNUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNUK.id - hxxp://livegames.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SMNUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMNUK.id - hxxps://livegames.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_MNUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNUKINT.id - hxxp://msuk-int.metaboli.fr/
/* NCNU */
FF - user.js: capability.principal.codebase.YummyPlayer_NCNU.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_NCNU.id - hxxp://numericable.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SNCNU.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SNCNU.id - hxxps://numericable.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_NCNUINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_NCNUINT.id - hxxp://ncnu-int.metaboli.fr/
/* QPUK */
FF - user.js: capability.principal.codebase.YummyPlayer_QPUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_QPUK.id - hxxp://quintplay.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SQPUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SQPUK.id - hxxps://quintplay.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_QPUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_QPUKINT.id - hxxp://qpuk-int.metaboli.fr/
/* SFFR */
FF - user.js: capability.principal.codebase.YummyPlayer_SFFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFFR.id - hxxp://jeux-pc.sfr.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFR.id - hxxps://jeux-pc.sfr.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRM.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRM.id - hxxp://sfr.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFRM.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFRM.id - hxxps://sfr.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRINT.id - hxxp://sfr-int.metaboli.fr/
/* SPDE */
FF - user.js: capability.principal.codebase.YummyPlayer_SPDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SPDE.id - hxxp://spieletipps.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SSPDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SSPDE.id - hxxps://spieletipps.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SPDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SPDEINT.id - hxxp://spde-int.metaboli.fr/
/* WOJ_ */
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_.id - hxxp://woj-prod.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SWOJ_.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SWOJ_.id - hxxps://woj-prod.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_INT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_INT.id - hxxp://woj-int.metaboli.fr/
user_pref(capability.principal.codebase.YummyPlayer_XX0001.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0001.id,hxxp://www.neufgame.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0002.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0002.id,hxxps://www.neufgame.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0003.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0003.id,hxxp://neufgame.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0004.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0004.id,hxxp://ad.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0005.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0005.id,hxxps://ad.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0006.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0006.id,hxxp://ads.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0007.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0007.id,hxxps://ads.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0008.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0008.id,hxxp://ads.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0009.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0009.id,hxxps://ads.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0010.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0010.id,hxxp://ads.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0011.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0011.id,hxxps://ads.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0012.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0012.id,hxxp://ag.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0013.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0013.id,hxxps://ag.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0014.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0014.id,hxxp://alice.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0015.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0015.id,hxxps://alice.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0016.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0016.id,hxxp://allocine.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0017.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0017.id,hxxps://allocine.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0018.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0018.id,hxxp://am.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0019.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0019.id,hxxps://am.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0020.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0020.id,hxxp://aol.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0021.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0021.id,hxxps://aol.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0022.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0022.id,hxxp://bc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0023.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0023.id,hxxps://bc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0024.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0024.id,hxxp://linternaute.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0025.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0025.id,hxxps://linternaute.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0026.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0026.id,hxxp://bild.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0027.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0027.id,hxxps://bild.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0028.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0028.id,hxxp://btvision.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0029.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0029.id,hxxps://btvision.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0030.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0030.id,hxxp://www.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0031.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0031.id,hxxp://cg.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0032.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0032.id,hxxps://cg.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0033.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0033.id,hxxp://cibleclick.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0034.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0034.id,hxxps://cibleclick.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0035.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0035.id,hxxp://cegetel.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0036.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0036.id,hxxps://cegetel.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0037.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0037.id,hxxp://choc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0038.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0038.id,hxxps://choc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0039.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0039.id,hxxp://cj.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0040.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0040.id,hxxps://cj.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0041.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0041.id,hxxp://cj.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0042.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0042.id,hxxps://cj.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0043.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0043.id,hxxp://cj.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0044.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0044.id,hxxps://cj.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0045.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0045.id,hxxp://cj.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0046.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0046.id,hxxps://cj.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0047.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0047.id,hxxp://metaboli.clubic.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0048.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0048.id,hxxps://metaboli.clubic.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0049.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0049.id,hxxp://metaboli.club-internet.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0050.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0050.id,hxxps://metaboli.club-internet.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0051.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0051.id,hxxp://coeur.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0052.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0052.id,hxxps://coeur.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0053.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0053.id,hxxp://come.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0054.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0054.id,hxxps://come.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0055.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0055.id,hxxp://lesaccros2.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0056.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0056.id,hxxps://lesaccros2.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0057.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0057.id,hxxp://surcouf.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0058.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0058.id,hxxps://surcouf.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0059.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0059.id,hxxp://www.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0060.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0060.id,hxxps://www.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0061.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0061.id,hxxp://cs.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0062.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0062.id,hxxps://cs.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0063.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0063.id,hxxp://custompc.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0064.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0064.id,hxxps://custompc.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0065.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0065.id,hxxp://cvg.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0066.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0066.id,hxxps://cvg.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0067.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0067.id,hxxp://daooda.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0068.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0068.id,hxxps://daooda.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0069.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0069.id,hxxp://daooda.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0070.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0070.id,hxxps://daooda.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0071.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0071.id,hxxp://daooda.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0072.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0072.id,hxxps://daooda.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0073.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0073.id,hxxp://digitaldownload.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0074.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0074.id,hxxps://digitaldownload.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0075.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0075.id,hxxp://eurogamer.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0076.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0076.id,hxxps://eurogamer.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0077.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0077.id,hxxp://eurogamer.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0078.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0078.id,hxxps://eurogamer.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0079.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0079.id,hxxp://exagame.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0080.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0080.id,hxxps://exagame.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0081.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0081.id,hxxp://fb.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0082.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0082.id,hxxps://fb.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0083.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0083.id,hxxp://fb.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0084.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0084.id,hxxps://fb.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0085.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0085.id,hxxp://fb.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0086.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0086.id,hxxps://fb.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0087.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0087.id,hxxp://firstcoffee.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0088.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0088.id,hxxps://firstcoffee.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0089.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0089.id,hxxp://fnac.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0090.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0090.id,hxxps://fnac.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0091.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0091.id,hxxp://fox.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0092.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0092.id,hxxps://fox.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0093.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0093.id,hxxp://fox.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0094.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0094.id,hxxps://fox.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0095.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0095.id,hxxp://fox.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0096.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0096.id,hxxps://fox.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0097.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0097.id,hxxp://free.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0098.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0098.id,hxxps://free.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0099.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0099.id,hxxp://funsta.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0100.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0100.id,hxxps://funsta.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0101.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0101.id,hxxp://funsta.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0102.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0102.id,hxxps://funsta.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0103.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0103.id,hxxp://metaboli.funradio.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0104.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0104.id,hxxps://metaboli.funradio.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0105.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0105.id,hxxp://fastweb.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0106.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0106.id,hxxps://fastweb.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0107.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0107.id,hxxp://god1.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0108.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0108.id,hxxps://god1.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0109.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0109.id,hxxp://god2.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0110.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0110.id,hxxps://god2.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0111.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0111.id,hxxp://god3.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0112.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0112.id,hxxps://god3.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0113.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0113.id,hxxp://gamona.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0114.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0114.id,hxxps://gamona.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0115.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0115.id,hxxp://giga.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0116.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0116.id,hxxps://giga.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0117.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0117.id,hxxp://gameseek.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0118.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0118.id,hxxps://gameseek.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0119.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0119.id,hxxp://www.gamesflatrate.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0120.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0120.id,hxxps://www.gamesflatrate.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0121.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0121.id,hxxp://games24.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0122.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0122.id,hxxps://games24.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0123.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0123.id,hxxp://ondemand.game.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0124.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0124.id,hxxps://ondemand.game.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0125.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0125.id,hxxp://google.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0126.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0126.id,hxxps://google.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0127.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0127.id,hxxp://google.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0128.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0128.id,hxxps://google.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0129.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0129.id,hxxp://gameone.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0130.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0130.id,hxxps://gameone.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0131.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0131.id,hxxp://google.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0132.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0132.id,hxxps://google.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0133.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0133.id,hxxp://goog.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0134.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0134.id,hxxps://goog.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0135.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0135.id,hxxp://google.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0136.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0136.id,hxxps://google.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0137.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0137.id,hxxp://gameplay.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0138.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0138.id,hxxps://gameplay.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0139.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0139.id,hxxp://gamesonradar.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0140.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0140.id,hxxps://gamesonradar.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0141.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0141.id,hxxp://gameshadow.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0142.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0142.id,hxxps://gameshadow.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0143.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0143.id,hxxp://gametap.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0144.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0144.id,hxxps://gametap.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0145.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0145.id,hxxp://gametap2.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0146.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0146.id,hxxps://gametap2.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0147.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0147.id,hxxp://gamespot.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0148.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0148.id,hxxps://gamespot.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0149.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0149.id,hxxp://gamerunlimited.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0150.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0150.id,hxxps://gamerunlimited.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0151.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0151.id,hxxp://guts.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0152.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0152.id,hxxps://guts.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0153.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0153.id,hxxp://gameswelt.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0154.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0154.id,hxxps://gameswelt.metaboli.de);
user_pref(capability.principal.codebase.YummyPl
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.1534.1032 [GMT 2:00]
Lancé depuis: c:\documents and settings\Administrateur\Bureau\ComboFix.exe
* Un antivirus résident est actif
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\IEToolbar
c:\program files\IEToolbar\ECO Bar\basis.xml
c:\program files\IEToolbar\ECO Bar\icons.bmp
c:\program files\IEToolbar\ECO Bar\info.txt
c:\program files\IEToolbar\ECO Bar\tbhelper.dll
c:\program files\IEToolbar\ECO Bar\uninstall.exe
c:\program files\IEToolbar\ECO Bar\version.txt
c:\program files\IEToolbar\ECO Bar\your_logo.png
c:\program files\Mozilla Firefox\components\obcowlxlherzshfo.dll
c:\windows\cbwh6056.exe
c:\windows\rrrtg4033.exe
c:\windows\system32\api.dat
c:\windows\system32\drivers\npf.sys
c:\windows\system32\msconfig.exe
c:\windows\system32\Packet.dll
c:\windows\system32\pthreadVC.dll
c:\windows\system32\WanPacket.dll
c:\windows\system32\wpcap.dll
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_BOONTY_GAMES
-------\Legacy_NPF
-------\Service_Boonty Games
-------\Service_NPF
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-04 au 2009-06-04 ))))))))))))))))))))))))))))))))))))
.
2009-06-04 12:18 . 2009-05-26 11:20 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-04 12:18 . 2009-05-26 11:19 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-04 11:37 . 2009-06-04 11:58 -------- d-----w- c:\windows\system32\System Update
2009-06-04 11:33 . 2009-06-04 11:33 -------- d-----w- C:\_OTM
2009-06-04 10:13 . 2009-06-04 10:13 -------- d-----w- C:\rsit
2009-06-04 06:50 . 2009-06-04 10:41 -------- d-----w- C:\ToolBar SD
2009-06-04 06:02 . 2009-06-04 06:04 -------- dc-h--w- c:\windows\ie8
2009-06-03 17:02 . 2009-06-04 12:12 -------- d-----w- c:\windows\system32\Kaspersky
2009-06-03 05:32 . 2009-06-03 05:32 36359 ----a-w- c:\windows\system32\Wmpupdate.exe
2009-06-03 05:32 . 2009-05-07 09:56 19672576 ------w- c:\windows\LimeWireWin.exe
2009-06-02 18:23 . 2009-06-04 06:10 -------- d-----w- c:\windows\system32\C&C Renegade
2009-06-02 00:45 . 2009-06-02 18:23 -------- d-----w- c:\windows\system32\Winrar
2009-06-01 16:48 . 2009-06-01 16:48 -------- d-----w- c:\documents and settings\Administrateur\Application Data\fizzy
2009-06-01 16:47 . 2009-06-01 16:47 -------- d-----w- c:\program files\Fizzy
2009-05-28 16:23 . 2009-05-28 16:23 442880 ----a-w- c:\windows\system32\obcowlxlherzshfo.dll
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- c:\program files\Fichiers communs\Ciel
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- c:\documents and settings\All Users\Application Data\Ciel
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- c:\program files\Ciel
2009-05-28 11:23 . 2009-05-28 11:23 -------- d-----w- C:\Données Ciel
2009-05-27 12:17 . 2009-05-27 12:17 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Inkscape
2009-05-27 12:12 . 2009-05-27 12:17 -------- d-----w- c:\program files\Inkscape
2009-05-27 08:25 . 2009-05-27 08:25 -------- d-----w- C:\logs
2009-05-27 08:24 . 2009-05-27 08:24 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Lexmark Productivity Studio
2009-05-27 08:20 . 2009-05-28 14:16 -------- d-----w- c:\documents and settings\All Users\lx_cats
2009-05-27 08:16 . 2006-07-31 23:53 40960 ----a-w- c:\windows\system32\lxdivs.dll
2009-05-27 08:16 . 2007-03-30 08:13 344064 ----a-w- c:\windows\system32\lxdicoin.dll
2009-05-27 08:16 . 2008-04-13 18:45 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2009-05-27 08:16 . 2008-04-13 18:45 15104 ----a-w- c:\windows\system32\dllcache\usbscan.sys
2009-05-27 08:16 . 2001-08-23 15:47 87040 ----a-w- c:\windows\system32\wiafbdrv.dll
2009-05-27 08:16 . 2001-08-23 15:47 87040 ----a-w- c:\windows\system32\dllcache\wiafbdrv.dll
2009-05-26 05:03 . 2009-05-26 05:03 -------- d-----w- c:\program files\AutoIt3
2009-05-21 19:34 . 2009-05-21 19:34 -------- d-sh--w- c:\documents and settings\Administrateur\IECompatCache
2009-05-21 19:34 . 2009-05-21 19:34 -------- d-sh--w- c:\documents and settings\Administrateur\PrivacIE
2009-05-21 19:30 . 2009-05-21 19:30 -------- d-sh--w- c:\documents and settings\Administrateur\IETldCache
2009-05-21 19:23 . 2009-06-04 05:32 -------- d-----w- c:\windows\ie8updates
2009-05-21 19:15 . 2009-04-25 05:30 102400 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-05-21 18:58 . 2009-05-26 05:03 -------- d-----w- c:\windows\ShellNew
2009-05-20 18:01 . 2009-05-20 18:14 -------- d-----w- c:\program files\FACTOURE
2009-05-20 17:45 . 2009-05-20 17:45 -------- d-----w- c:\documents and settings\All Users\Application Data\ATI
2009-05-20 17:44 . 2009-05-20 17:44 0 ----a-w- c:\windows\ativpsrm.bin
2009-05-20 17:27 . 2009-05-20 17:27 -------- d-----w- c:\program files\ATI
2009-05-20 17:20 . 2006-07-01 20:42 43520 ----a-w- c:\windows\system32\drivers\AmdK8.sys
2009-05-20 17:20 . 2009-05-20 17:20 -------- d-----w- c:\program files\AMD
2009-05-20 17:19 . 2009-05-20 17:19 -------- d-----w- c:\documents and settings\Administrateur\Application Data\InstallShield
2009-05-20 17:18 . 2009-05-20 17:18 -------- d-----w- c:\program files\ma-config.com
2009-05-20 17:18 . 2009-05-20 17:18 -------- d-----w- c:\documents and settings\All Users\Application Data\ma-config.com
2009-05-20 16:28 . 2009-05-20 16:31 -------- d-----w- C:\XAMPPLite
2009-05-14 15:08 . 2009-05-15 15:51 664 ----a-w- c:\windows\system32\d3d9caps.dat
2009-05-13 16:58 . 2009-05-13 16:58 -------- d-----w- c:\documents and settings\Administrateur\Local Settings\Application Data\Seven Zip
2009-05-12 15:32 . 2009-06-01 08:05 -------- d-----w- c:\program files\HTV
2009-05-09 19:06 . 2009-05-09 19:06 -------- d-----w- c:\documents and settings\Administrateur\Local Settings\Application Data\Glowria
2009-05-09 19:05 . 2009-05-09 19:05 -------- d-----w- c:\program files\Allocine
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-04 12:18 . 2009-02-12 14:56 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-04 11:49 . 2009-01-24 15:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-06-04 11:47 . 2008-03-15 05:50 -------- d-----w- c:\program files\CCleaner
2009-06-03 05:48 . 2009-04-27 15:34 -------- d-----w- c:\documents and settings\Administrateur\Application Data\UseNeXT
2009-06-03 05:48 . 2008-03-15 14:00 -------- d-----w- c:\documents and settings\Administrateur\Application Data\LimeWire
2009-06-03 05:33 . 2008-03-15 14:00 -------- d-----w- c:\program files\LimeWire
2009-06-02 08:57 . 2008-04-19 18:53 -------- d-----w- c:\documents and settings\Administrateur\Application Data\teamspeak2
2009-06-02 07:00 . 2009-03-23 16:57 -------- d-----w- c:\program files\Mozilla Thunderbird
2009-06-01 13:00 . 2009-04-27 15:34 -------- d-----w- c:\program files\UseNeXT
2009-05-28 13:54 . 2008-02-13 18:54 6716 -c--a-w- c:\windows\sumatrapdfprefs.dat
2009-05-27 08:15 . 2009-02-07 09:05 -------- d-----w- c:\program files\Lexmark 3500-4500 Series
2009-05-20 17:49 . 2002-08-30 12:00 66350 ----a-w- c:\windows\system32\perfc00C.dat
2009-05-20 17:49 . 2002-08-30 12:00 446528 ----a-w- c:\windows\system32\perfh00C.dat
2009-05-20 17:27 . 2008-03-15 07:14 -------- d-----w- c:\program files\ATI Technologies
2009-05-20 17:20 . 2008-03-15 06:16 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-05-20 17:04 . 2009-01-02 14:55 -------- d-----w- c:\program files\Player Metaboli
2009-05-20 17:04 . 2009-01-02 14:56 68 ----a-w- c:\windows\GPlrLanc.dat
2009-05-20 17:04 . 2009-01-02 14:56 -------- d-----w- c:\documents and settings\All Users\Application Data\Player Metaboli
2009-05-20 16:48 . 2008-03-15 07:11 1100 ----a-w- c:\windows\system32\d3d8caps.dat
2009-05-18 17:46 . 2009-03-21 07:21 -------- d-----w- c:\program files\Teamspeak2_RC2
2009-05-14 16:03 . 2009-03-28 16:25 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-05-13 16:59 . 2009-02-17 07:19 -------- d-----w- c:\documents and settings\All Users\Application Data\{6764A9A0-1DAB-4AED-8936-9270ACCA5E17}
2009-05-07 15:09 . 2009-05-03 13:44 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Command & Conquer 3 Les guerres du Tiberium
2009-05-05 18:28 . 2009-04-27 16:21 -------- d-----w- c:\documents and settings\Administrateur\Application Data\vlc
2009-05-03 13:42 . 2009-05-03 13:42 -------- d--h--r- c:\documents and settings\Administrateur\Application Data\SecuROM
2009-05-03 12:29 . 2008-08-17 05:45 -------- d-----w- c:\program files\Electronic Arts
2009-05-03 12:26 . 2009-05-03 12:17 -------- d-----w- c:\documents and settings\Administrateur\Application Data\DAEMON Tools Lite
2009-05-03 12:23 . 2009-05-03 12:23 -------- d-----w- c:\documents and settings\All Users\Application Data\DAEMON Tools Lite
2009-05-03 12:23 . 2009-05-03 12:22 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-05-03 12:17 . 2009-05-03 12:17 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-04-27 16:20 . 2009-04-27 16:20 -------- d-----w- c:\program files\VideoLAN
2009-04-27 15:49 . 2009-04-27 07:11 -------- d-----w- c:\program files\BoontyGames
2009-04-27 15:45 . 2009-04-27 15:45 -------- d-----w- c:\documents and settings\Administrateur\Application Data\YoudaGames
2009-04-27 15:35 . 2009-04-27 15:35 -------- d-----w- c:\program files\QuickPar
2009-04-27 07:14 . 2009-04-27 07:14 -------- d-----w- c:\documents and settings\All Users\Application Data\BOONTY
2009-04-27 07:14 . 2009-04-27 07:14 -------- d-----w- c:\program files\Fichiers communs\BOONTY Shared
2009-04-27 07:11 . 2009-04-27 07:11 -------- d-----w- c:\program files\Boonty
2009-04-14 16:12 . 2009-01-24 15:31 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-03-29 06:46 . 2008-03-15 07:17 17576 ----a-w- c:\documents and settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-03-16 12:18 . 2009-03-29 06:03 69448 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2009-03-16 12:18 . 2009-03-29 06:03 517448 ----a-w- c:\windows\system32\XAudio2_4.dll
2009-03-16 12:18 . 2009-03-29 06:03 235352 ----a-w- c:\windows\system32\xactengine3_4.dll
2009-03-16 12:18 . 2009-03-29 06:03 22360 ----a-w- c:\windows\system32\X3DAudio1_6.dll
2009-03-09 13:27 . 2009-03-29 06:03 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2009-03-09 13:27 . 2009-03-29 06:03 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2009-03-09 13:27 . 2009-03-29 06:03 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2009-03-08 02:34 . 2008-02-12 21:26 914944 ----a-w- c:\windows\system32\wininet.dll
2009-03-08 02:34 . 2008-02-12 21:23 43008 ----a-w- c:\windows\system32\licmgr10.dll
2009-03-08 02:33 . 2008-02-12 21:23 18944 ----a-w- c:\windows\system32\corpol.dll
2009-03-08 02:33 . 2008-02-13 18:53 420352 ----a-w- c:\windows\system32\vbscript.dll
2009-03-08 02:32 . 2008-02-12 21:23 72704 ----a-w- c:\windows\system32\admparse.dll
2009-03-08 02:32 . 2008-02-12 21:23 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-03-08 02:31 . 2008-02-12 21:23 34816 ----a-w- c:\windows\system32\imgutil.dll
2009-03-08 02:31 . 2008-02-12 21:23 48128 ----a-w- c:\windows\system32\mshtmler.dll
2009-03-08 02:31 . 2008-02-12 21:23 45568 ----a-w- c:\windows\system32\mshta.exe
2009-03-08 02:22 . 2008-02-12 21:23 156160 ----a-w- c:\windows\system32\msls31.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-29 68856]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"nTrayFw"="c:\program files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe" [2005-12-21 270336]
"nod32kui"="c:\program files\Eset\nod32kui.exe" [2008-03-15 949376]
"Allocine"="c:\program files\Allocine\Allocine.exe" [2009-02-26 925808]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-02-25 61440]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2007-10-04 307200]
"lxdimon.exe"="c:\program files\Lexmark 3500-4500 Series\lxdimon.exe" [2007-07-16 434864]
"lxdiamon"="c:\program files\Lexmark 3500-4500 Series\lxdiamon.exe" [2007-07-16 25264]
"WMP Update"="c:\windows\system32\Wmpupdate.exe" [2009-06-03 36359]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\soundman.exe [2007-04-16 577536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WIAWizardMenu"="c:\windows\system32\sti_ci.dll" [2008-04-14 138240]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"ShowDeskFix"="shell32" [X]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
AutoScreenShot.lnk - c:\program files\AutoScreenShot\AutoScreenShot.exe [2008-8-24 207201]
Booster Orange.lnk - c:\program files\Booster Wanadoo\wanadoo_booster.exe [2008-5-14 184320]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"SynchronousMachineGroupPolicy"= 0 (0x0)
"SynchronousUserGroupPolicy"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
"HideRunAsVerb"= 1 (0x1)
"NoNetConnectDisconnect"= 1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoSMConfigurePrograms"= 1 (0x1)
"NoStrCmpLogical"= 0 (0x0)
"NoWelcomeScreen"= 1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSMHelp"= 1 (0x1)
"ForceClassicControlPanel"= 1 (0x1)
"NoResolveTrack"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoSMConfigurePrograms"= 1 (0x1)
"NoStrCmpLogical"= 0 (0x0)
"NoWelcomeScreen"= 1 (0x1)
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32
"wave2"= serwvdrv.dll
"wave3"= serwvdrv.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
"DisableUnicastResponsesToMulticastBroadcast"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\InstantTouch\\bin\\CmCenterV2.exe"=
"c:\\Program Files\\HomePlayer\\HomePlayer.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Electronic Arts\\Command & Conquer 3\\RetailExe\\1.0\\cnc3game.dat"=
"c:\\XAMPPLite\\mysql\\bin\\mysqld.exe"=
"c:\\XAMPPLite\\apache\\bin\\apache.exe"=
"c:\\WINDOWS\\system32\\lxdicoms.exe"=
"c:\\Program Files\\Lexmark 3500-4500 Series\\lxdimon.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdipswx.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxdijswx.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\lxditime.exe"=
R1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [15/03/2008 18:03 15424]
R2 LMBApache;Lundi Matin Business Apache;c:\xampplite\srvany.exe [14/05/1997 23:49 13312]
R2 LMBMySQL;Lundi Matin Business MySQL;c:\xampplite\srvany.exe [14/05/1997 23:49 13312]
R2 lxdi_device;lxdi_device;c:\windows\system32\lxdicoms.exe -service --> c:\windows\system32\lxdicoms.exe -service [?]
R2 X4HSX32Ex;X4HSX32Ex;c:\program files\Player Metaboli\X4HSX32Ex.sys [21/03/2009 16:14 29856]
S3 camvid20;Philips ToUcam Camera; Video;c:\windows\system32\drivers\camdrv21.sys [15/03/2008 08:35 223232]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [13/05/2009 14:37 234864]
--- Autres Services/Pilotes en mémoire ---
*NewlyCreated* - HELPSVC
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{0J1K2S2B-WIGS-Y03S-PFY6-5EU028U8GRFL}]
c:\windows\system32\Kaspersky\C&C Renegade.exe Restart
.
Contenu du dossier 'Tâches planifiées'
2009-06-04 c:\windows\Tasks\User_Feed_Synchronization-{96C14F65-A98E-487F-AAA2-5A0F42BAC151}.job
- c:\windows\system32\msfeedssync.exe [2008-03-15 02:31]
.
- - - - ORPHELINS SUPPRIMES - - - -
SafeBoot-procexp90.Sys
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://google.fr/
mWindow Title =
LSP: c:\windows\system32\imon.dll
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
Trusted Zone: allocine.fr\glowria
Trusted Zone: urssaf.fr\www.cfe
DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} - hxxp://data.jeuxclassiques.com/npwwg.cab
DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} - hxxps://plugins.valueactive.eu/flashax/iefax.cab
FF - ProfilePath - c:\documents and settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\mcn99mfk.default\
FF - component: c:\program files\Mozilla Firefox\extensions\YPlayer@yummy.net\components\FYPlayer.dll
FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npExentCtl.dll
---- PARAMETRES FIREFOX ----
FF - user.js: signed.applets.codebase_principal_support - true
/* To avoid the user interaction, add the following lines: */
FF - user.js: capability.principal.codebase.YummyPlayer_YAEL.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_YAEL.id - hxxp://yael.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_LHOST.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_LHOST.id - hxxp://localhost/
/* GLDE */
FF - user.js: capability.principal.codebase.YummyPlayer_GLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GLDE.id - hxxp://gamesflatrate.de/
FF - user.js: capability.principal.codebase.YummyPlayer_WGLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WGLDE.id - hxxp://www.gamesflatrate.de/
FF - user.js: capability.principal.codebase.YummyPlayer_GLDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GLDEINT.id - hxxp://glde-int.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SGLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SGLDE.id - hxxps://gamesflatrate.de/
FF - user.js: capability.principal.codebase.YummyPlayer_WSGLDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSGLDE.id - hxxps://www.gamesflatrate.de/
/* BGFR */
FF - user.js: capability.principal.codebase.YummyPlayer_BGFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BGFR.id - hxxp://linternaute.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SBGFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SBGFR.id - hxxps://linternaute.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_BGFRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BGFRINT.id - hxxp://bgfr-int.metaboli.fr/
/* BILD */
FF - user.js: capability.principal.codebase.YummyPlayer_BILD.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BILD.id - hxxp://bild.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SBILD.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SBILD.id - hxxps://bild.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_BILDINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BILDINT.id - hxxp://bild-int.metaboli.fr/
/* BTUK */
FF - user.js: capability.principal.codebase.YummyPlayer_BTUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BTUK.id - hxxp://btvision.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SBTUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SBTUK.id - hxxps://btvision.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_BTUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_BTUKINT.id - hxxp://bt-int.metaboli.fr/
/* CLIC */
FF - user.js: capability.principal.codebase.YummyPlayer_CLIC.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CLIC.id - hxxp://clubic.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SCLIC.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SCLIC.id - hxxps://clubic.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_CLICINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CLICINT.id - hxxp://clic-int.metaboli.fr/
/* COUK */
FF - user.js: capability.principal.codebase.YummyPlayer_COUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_COUK.id - hxxp://metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_WCOUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WCOUK.id - hxxp://www.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_WSCOUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSCOUK.id - hxxps://www.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SCOUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SCOUK.id - hxxps://metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_COUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_COUKINT.id - hxxp://uk-int.metaboli.fr/
/* MEDE */
FF - user.js: capability.principal.codebase.YummyPlayer_MEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MEDE.id - hxxp://metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_WMEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WMEDE.id - hxxp://www.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SMEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMEDE.id - hxxps://metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_MEDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MEDEINT.id - hxxp://de-int.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WSMEDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSMEDE.id - hxxps://www.metaboli.de/
/* CUUK */
FF - user.js: capability.principal.codebase.YummyPlayer_CUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CUUK.id - hxxp://custompc.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SCUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SCUUK.id - hxxps://custompc.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_CUUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_CUUKINT.id - hxxp://cuuk-int.metaboli.fr/
/* EUUK */
FF - user.js: capability.principal.codebase.YummyPlayer_EUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_EUUK.id - hxxp://eurogamer.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SEUUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SEUUK.id - hxxps://eurogamer.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_EUUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_EUUKINT.id - hxxp://euuk-int.metaboli.fr/
/* FUNR */
FF - user.js: capability.principal.codebase.YummyPlayer_FUNR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_FUNR.id - hxxp://fun.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SFUNR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFUNR.id - hxxps://fun.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_FUNRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_FUNRINT.id - hxxp://fun-int.metaboli.fr/
/* GONE */
FF - user.js: capability.principal.codebase.YummyPlayer_GONE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GONE.id - hxxp://gameone.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SGONE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SGONE.id - hxxps://gameone.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_GONEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GONEINT.id - hxxp://gone-int.metaboli.fr/
/* GUDE */
FF - user.js: capability.principal.codebase.YummyPlayer_GUDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GUDE.id - hxxp://gamerunlimited.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SGUDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SGUDE.id - hxxps://gamerunlimited.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_GUDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_GUDEINT.id - hxxp://gude-int.metaboli.fr/
/* META */
FF - user.js: capability.principal.codebase.YummyPlayer_META.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_META.id - hxxp://metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WMETA.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WMETA.id - hxxp://www.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SMETA.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMETA.id - hxxps://metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WSMETA.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WSMETA.id - hxxps://www.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_METAINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_METAINT.id - hxxp://fr-int.metaboli.fr/
/* MNDE */
FF - user.js: capability.principal.codebase.YummyPlayer_MNDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNDE.id - hxxp://livegames.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SMNDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMNDE.id - hxxps://livegames.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_MNDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNDEINT.id - hxxp://msde-int.metaboli.fr/
/* MNFR */
FF - user.js: capability.principal.codebase.YummyPlayer_MNFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNFR.id - hxxp://livegames.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SMNFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMNFR.id - hxxps://livegames.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_MNFRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNFRINT.id - hxxp://msfr-int.metaboli.fr/
/* MNUK */
FF - user.js: capability.principal.codebase.YummyPlayer_MNUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNUK.id - hxxp://livegames.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SMNUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SMNUK.id - hxxps://livegames.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_MNUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_MNUKINT.id - hxxp://msuk-int.metaboli.fr/
/* NCNU */
FF - user.js: capability.principal.codebase.YummyPlayer_NCNU.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_NCNU.id - hxxp://numericable.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SNCNU.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SNCNU.id - hxxps://numericable.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_NCNUINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_NCNUINT.id - hxxp://ncnu-int.metaboli.fr/
/* QPUK */
FF - user.js: capability.principal.codebase.YummyPlayer_QPUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_QPUK.id - hxxp://quintplay.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_SQPUK.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SQPUK.id - hxxps://quintplay.metaboli.co.uk/
FF - user.js: capability.principal.codebase.YummyPlayer_QPUKINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_QPUKINT.id - hxxp://qpuk-int.metaboli.fr/
/* SFFR */
FF - user.js: capability.principal.codebase.YummyPlayer_SFFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFFR.id - hxxp://jeux-pc.sfr.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFR.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFR.id - hxxps://jeux-pc.sfr.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRM.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRM.id - hxxp://sfr.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFRM.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SSFFRM.id - hxxps://sfr.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SFFRINT.id - hxxp://sfr-int.metaboli.fr/
/* SPDE */
FF - user.js: capability.principal.codebase.YummyPlayer_SPDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SPDE.id - hxxp://spieletipps.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SSPDE.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SSPDE.id - hxxps://spieletipps.metaboli.de/
FF - user.js: capability.principal.codebase.YummyPlayer_SPDEINT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SPDEINT.id - hxxp://spde-int.metaboli.fr/
/* WOJ_ */
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_.id - hxxp://woj-prod.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_SWOJ_.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_SWOJ_.id - hxxps://woj-prod.metaboli.fr/
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_INT.granted - UniversalXPConnect
FF - user.js: capability.principal.codebase.YummyPlayer_WOJ_INT.id - hxxp://woj-int.metaboli.fr/
user_pref(capability.principal.codebase.YummyPlayer_XX0001.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0001.id,hxxp://www.neufgame.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0002.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0002.id,hxxps://www.neufgame.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0003.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0003.id,hxxp://neufgame.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0004.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0004.id,hxxp://ad.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0005.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0005.id,hxxps://ad.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0006.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0006.id,hxxp://ads.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0007.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0007.id,hxxps://ads.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0008.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0008.id,hxxp://ads.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0009.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0009.id,hxxps://ads.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0010.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0010.id,hxxp://ads.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0011.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0011.id,hxxps://ads.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0012.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0012.id,hxxp://ag.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0013.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0013.id,hxxps://ag.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0014.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0014.id,hxxp://alice.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0015.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0015.id,hxxps://alice.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0016.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0016.id,hxxp://allocine.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0017.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0017.id,hxxps://allocine.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0018.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0018.id,hxxp://am.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0019.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0019.id,hxxps://am.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0020.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0020.id,hxxp://aol.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0021.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0021.id,hxxps://aol.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0022.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0022.id,hxxp://bc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0023.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0023.id,hxxps://bc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0024.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0024.id,hxxp://linternaute.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0025.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0025.id,hxxps://linternaute.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0026.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0026.id,hxxp://bild.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0027.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0027.id,hxxps://bild.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0028.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0028.id,hxxp://btvision.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0029.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0029.id,hxxps://btvision.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0030.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0030.id,hxxp://www.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0031.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0031.id,hxxp://cg.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0032.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0032.id,hxxps://cg.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0033.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0033.id,hxxp://cibleclick.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0034.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0034.id,hxxps://cibleclick.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0035.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0035.id,hxxp://cegetel.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0036.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0036.id,hxxps://cegetel.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0037.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0037.id,hxxp://choc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0038.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0038.id,hxxps://choc.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0039.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0039.id,hxxp://cj.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0040.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0040.id,hxxps://cj.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0041.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0041.id,hxxp://cj.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0042.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0042.id,hxxps://cj.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0043.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0043.id,hxxp://cj.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0044.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0044.id,hxxps://cj.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0045.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0045.id,hxxp://cj.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0046.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0046.id,hxxps://cj.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0047.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0047.id,hxxp://metaboli.clubic.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0048.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0048.id,hxxps://metaboli.clubic.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0049.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0049.id,hxxp://metaboli.club-internet.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0050.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0050.id,hxxps://metaboli.club-internet.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0051.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0051.id,hxxp://coeur.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0052.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0052.id,hxxps://coeur.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0053.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0053.id,hxxp://come.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0054.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0054.id,hxxps://come.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0055.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0055.id,hxxp://lesaccros2.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0056.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0056.id,hxxps://lesaccros2.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0057.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0057.id,hxxp://surcouf.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0058.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0058.id,hxxps://surcouf.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0059.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0059.id,hxxp://www.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0060.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0060.id,hxxps://www.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0061.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0061.id,hxxp://cs.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0062.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0062.id,hxxps://cs.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0063.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0063.id,hxxp://custompc.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0064.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0064.id,hxxps://custompc.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0065.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0065.id,hxxp://cvg.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0066.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0066.id,hxxps://cvg.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0067.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0067.id,hxxp://daooda.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0068.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0068.id,hxxps://daooda.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0069.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0069.id,hxxp://daooda.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0070.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0070.id,hxxps://daooda.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0071.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0071.id,hxxp://daooda.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0072.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0072.id,hxxps://daooda.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0073.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0073.id,hxxp://digitaldownload.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0074.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0074.id,hxxps://digitaldownload.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0075.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0075.id,hxxp://eurogamer.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0076.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0076.id,hxxps://eurogamer.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0077.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0077.id,hxxp://eurogamer.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0078.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0078.id,hxxps://eurogamer.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0079.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0079.id,hxxp://exagame.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0080.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0080.id,hxxps://exagame.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0081.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0081.id,hxxp://fb.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0082.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0082.id,hxxps://fb.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0083.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0083.id,hxxp://fb.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0084.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0084.id,hxxps://fb.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0085.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0085.id,hxxp://fb.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0086.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0086.id,hxxps://fb.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0087.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0087.id,hxxp://firstcoffee.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0088.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0088.id,hxxps://firstcoffee.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0089.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0089.id,hxxp://fnac.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0090.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0090.id,hxxps://fnac.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0091.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0091.id,hxxp://fox.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0092.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0092.id,hxxps://fox.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0093.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0093.id,hxxp://fox.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0094.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0094.id,hxxps://fox.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0095.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0095.id,hxxp://fox.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0096.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0096.id,hxxps://fox.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0097.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0097.id,hxxp://free.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0098.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0098.id,hxxps://free.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0099.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0099.id,hxxp://funsta.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0100.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0100.id,hxxps://funsta.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0101.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0101.id,hxxp://funsta.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0102.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0102.id,hxxps://funsta.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0103.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0103.id,hxxp://metaboli.funradio.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0104.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0104.id,hxxps://metaboli.funradio.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0105.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0105.id,hxxp://fastweb.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0106.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0106.id,hxxps://fastweb.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0107.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0107.id,hxxp://god1.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0108.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0108.id,hxxps://god1.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0109.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0109.id,hxxp://god2.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0110.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0110.id,hxxps://god2.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0111.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0111.id,hxxp://god3.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0112.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0112.id,hxxps://god3.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0113.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0113.id,hxxp://gamona.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0114.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0114.id,hxxps://gamona.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0115.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0115.id,hxxp://giga.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0116.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0116.id,hxxps://giga.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0117.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0117.id,hxxp://gameseek.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0118.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0118.id,hxxps://gameseek.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0119.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0119.id,hxxp://www.gamesflatrate.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0120.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0120.id,hxxps://www.gamesflatrate.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0121.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0121.id,hxxp://games24.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0122.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0122.id,hxxps://games24.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0123.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0123.id,hxxp://ondemand.game.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0124.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0124.id,hxxps://ondemand.game.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0125.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0125.id,hxxp://google.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0126.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0126.id,hxxps://google.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0127.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0127.id,hxxp://google.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0128.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0128.id,hxxps://google.metaboli.it);
user_pref(capability.principal.codebase.YummyPlayer_XX0129.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0129.id,hxxp://gameone.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0130.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0130.id,hxxps://gameone.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0131.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0131.id,hxxp://google.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0132.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0132.id,hxxps://google.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0133.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0133.id,hxxp://goog.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0134.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0134.id,hxxps://goog.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0135.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0135.id,hxxp://google.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0136.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0136.id,hxxps://google.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0137.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0137.id,hxxp://gameplay.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0138.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0138.id,hxxps://gameplay.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0139.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0139.id,hxxp://gamesonradar.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0140.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0140.id,hxxps://gamesonradar.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0141.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0141.id,hxxp://gameshadow.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0142.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0142.id,hxxps://gameshadow.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0143.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0143.id,hxxp://gametap.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0144.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0144.id,hxxps://gametap.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0145.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0145.id,hxxp://gametap2.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0146.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0146.id,hxxps://gametap2.metaboli.com);
user_pref(capability.principal.codebase.YummyPlayer_XX0147.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0147.id,hxxp://gamespot.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0148.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0148.id,hxxps://gamespot.metaboli.co.uk);
user_pref(capability.principal.codebase.YummyPlayer_XX0149.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0149.id,hxxp://gamerunlimited.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0150.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0150.id,hxxps://gamerunlimited.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0151.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0151.id,hxxp://guts.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0152.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0152.id,hxxps://guts.metaboli.fr);
user_pref(capability.principal.codebase.YummyPlayer_XX0153.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0153.id,hxxp://gameswelt.metaboli.de);
user_pref(capability.principal.codebase.YummyPlayer_XX0154.granted,UniversalXPConnect);
user_pref(capability.principal.codebase.YummyPlayer_XX0154.id,hxxps://gameswelt.metaboli.de);
user_pref(capability.principal.codebase.YummyPl