Virus bagle et vista

Fermé
Klint - 14 janv. 2010 à 17:09
 Utilisateur anonyme - 15 janv. 2010 à 17:32
Bonjour,

Je pense avoir un virus Bagle sur mon ordinateur (blocage de l'antivirus avast, impossibilité d'installer un nouvel antivirus, plus de son, Windows ralentit et qui s'ouvre une fois sur deux, ralentissements et fermeture automatique de firefox)

Après avoir parcouru quelques forums, j'ai tenté de télécharger un certains nombre de logiciels mais rien ne fonctionne (Le navigateur ferme automatiquement lorsque je tente de télécharger Findykill, BagleD et Bagle.exe s'ouvrent mais ne semble pas fonctionner) et le logiciel Elibagla qui est apparemment LA solution pour mon problème ne semble pas être compatible avec windows vista.

Quelqu'un a t-il une solution?

Merci beaucoup

7 réponses

Utilisateur anonyme
14 janv. 2010 à 17:12
salut telecharge findykill ici :

Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent(car il est detecté a tort comme infection)

▶ Télécharge et installe List&Kill'em et enregistre le sur ton bureau

▶ Branche clés usb , disques durs externes , mp3 , mp4 , etc..

double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation

coche la case "creer une icone sur le bureau"

une fois terminée , clic sur "terminer" et le programme se lancera seul

choisis la langue puis choisis l'option 1 = Mode Recherche

▶ laisse travailler l'outil

à l'apparition de la fenetre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.

un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.

▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"

tu peux supprimer le rapport catchme.log de ton bureau maintenant.

0
Merci de ta réponse

Voilà le contenu du rapport

Genuine Intel(R) CPU 2140 @ 1.60GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 7.0.6000.16575
Windows Firewall Status : Disabled
AV : BullGuard Antivirus [ Enabled | (!) Outdated ]
AV : avast! antivirus 4.8.1335 [VPS 100112-0] 4.8.1335 [ (!) Disabled | Updated ]

C:\ -> Disque fixe local | 445,74 Go (40,28 Go free) [BOOT] | NTFS
D:\ -> Disque fixe local | 20 Go (619,98 Mo free) [RECOVER] | FAT32
E:\ -> Disque amovible
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque CD-ROM

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running


======================
Keys "Run"
======================
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MsnMsgr REG_SZ "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} REG_SZ "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
WMPNSCFG REG_SZ C:\Program Files\Windows Media Player\WMPNSCFG.exe
RocketDock REG_SZ "C:\Program Files\RocketDock\RocketDock.exe"
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\AdobeUpdater

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Windows Defender REG_EXPAND_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
RtHDVCpl REG_SZ RtHDVCpl.exe
NeroFilterCheck REG_SZ C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
toolbar_eula_launcher REG_SZ C:\Program Files\GoogleEULA\EULALauncher.exe
NvSvc REG_SZ RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
NvCplDaemon REG_SZ RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
NvMediaCenter REG_SZ RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
VX3000 REG_SZ C:\Windows\vVX3000.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
LogMeIn GUI REG_SZ "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
CorelDRAW Graphics Suite 11b REG_SZ
fssui REG_SZ "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
avast! REG_SZ C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

=====================
Other Keys
=====================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
ConsentPromptBehaviorAdmin REG_DWORD 2 (0x2)
ConsentPromptBehaviorUser REG_DWORD 1 (0x1)
EnableInstallerDetection REG_DWORD 1 (0x1)
EnableLUA REG_DWORD 0 (0x0)
EnableSecureUIAPaths REG_DWORD 1 (0x1)
EnableVirtualization REG_DWORD 1 (0x1)
PromptOnSecureDesktop REG_DWORD 1 (0x1)
ValidateAdminCodeSignatures REG_DWORD 0 (0x0)
dontdisplaylastusername REG_DWORD 0 (0x0)
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
scforceoption REG_DWORD 0 (0x0)
shutdownwithoutlogon REG_DWORD 1 (0x1)
undockwithoutlogon REG_DWORD 1 (0x1)
FilterAdministratorToken REG_DWORD 0 (0x0)

===============
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS REG_SZ

===============

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

===============
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

===============
ActivX controls
===============
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{04CB5B64-5915-4629-B869-8945CEBADD21}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{17492023-C23A-453E-A040-C7C580BBF700}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{88764F69-3831-4EC1-B40B-FF21D8381345}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}

===============
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{0B74EEEF-3EEB-D31C-9ED2-396053BAA68F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5FAAE3CB-AE12-73FC-B586-441A3AA8B759}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{62DD9C11-A2BF-0839-6B65-8779D8901385}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{93696D8C-C34E-29F4-9871-E1477AE7CB82}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{B65F6376-49EA-1738-8FE3-95A3C5248B20}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11CF-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}

==============
BHO :
======
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{C451C08A-EC37-45DF-AAAD-18B51AB5E837}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]

================
Internet Explorer :
================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr/?ocid=iehp

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr/?ocid=iehp

========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]

Ndisuio : 0x4
EapHost : 0x3
Wlansvc : 0x2
SharedAccess : 0x4
windefend : 0x4
wuauserv : 0x4
wscsvc : 0x4

=========

=======
Drive :
=======

D‚fragmenteur de disque Windows
Copyright (c) 2006 Microsoft Corp.

Rapport d'analyse pour le volume C: BOOT

Taille du volume = 446 Go
Espace libre = 40.29 Go
tendue d'espace libre la plus grande = 26.27 Go
Pourcentage de fragmentation des fichiers = 0 %

Remarqueÿ: sur les volumes NTFS, les fragments de fichiers de plus de 64ÿMo ne sont pas inclus dans les statistiques de fragmentation.

Il n'est pas n‚cessaire de d‚fragmenter ce volume.

¤¤¤¤¤¤¤¤¤¤ Files/folders :

C:\Windows\System32\ban_list.txt
C:\Windows\System32\MDELK.exe
C:\Windows\System32\srosa2.sys
C:\Windows\System32\wfsintwq.sys
C:\Windows\System32\wintems.exe
C:\Users\vincent\Local Settings\Temp\alm.log
C:\Users\vincent\Local Settings\Temp\amt.log
C:\Users\vincent\Local Settings\Temp\sic.pdf
C:\Users\vincent\Local Settings\Temp\ytb.exe
C:\Users\vincent\LOCAL Settings\Temp\AutoRun.exe
C:\Users\vincent\LOCAL Settings\Temp\eauninstall.exe
C:\Users\vincent\LOCAL Settings\Temp\FlashPlayerUpdate.exe
C:\Users\vincent\LOCAL Settings\Temp\FlashPlayerUpdate01.exe
C:\Users\vincent\LOCAL Settings\Temp\FlashPlayerUpdate02.exe
C:\Users\vincent\LOCAL Settings\Temp\GDM66DE.exe
C:\Users\vincent\LOCAL Settings\Temp\Install_WLMessenger.exe
C:\Users\vincent\LOCAL Settings\Temp\msgA1AD.exe
C:\Users\vincent\LOCAL Settings\Temp\ose00000.exe
C:\Users\vincent\LOCAL Settings\Temp\SimCity 4_uninst.exe
C:\Users\vincent\LOCAL Settings\Temp\wlsetup-cvr.exe
C:\Users\vincent\LOCAL Settings\Temp\ytb.exe
C:\Users\vincent\LOCAL Settings\Temp\_is23D5.exe
C:\Users\vincent\LOCAL Settings\Temp\_isF9C0.exe

¤¤¤¤¤¤¤¤¤¤ Keys :

"HKCU\Software\Local AppWizard-Generated Applications\winupgro"
HKCR\CLSID\{248dd896-bb45-11cf-9abc-0080c7e7b78d}
HKCR\CLSID\{248dd897-bb45-11cf-9abc-0080c7e7b78d}
HKCR\Interface\{248dd892-bb45-11cf-9abc-0080c7e7b78d}
HKCR\Interface\{248dd893-bb45-11cf-9abc-0080c7e7b78d}
HKCR\TypeLib\{248dd890-bb45-11cf-9abc-0080c7e7b78d}
HKCU\Software\bisoft
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA
HKLM\SYSTEM\ControlSet001\Services\srosa
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_SROSA
HKLM\SYSTEM\ControlSet002\Services\srosa
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
HKLM\SYSTEM\CurrentControlSet\Services\srosa

================
Other infections
================

catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-14 17:44:14
Windows 6.0.6000 NTFS

scanning hidden processes ...

C:\Users\vincent\AppData\Roaming\drivers\winupgro.exe [3380] 0x86D1ED90
C:\Users\vincent\AppData\Roaming\m\flec006.exe [4000] 0x86CF12E0
C:\Windows\wintems.exe [2812] 0x86C97D90

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa]
"Type"=dword:00000001
"Start"=dword:00000001
"ErrorControl"=dword:00000000
"ImagePath"=str(2):"\??\C:\Windows\system32\wfsintwq.sys"
"DisplayName"="srosa"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa]
"Type"=dword:00000001
"Start"=dword:00000001
"ErrorControl"=dword:00000000
"ImagePath"=str(2):"\??\C:\Windows\system32\wfsintwq.sys"
"DisplayName"="srosa"

scanning hidden registry entries ...

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"drvsyskit"="C:\Users\vincent\AppData\Roaming\drivers\winupgro.exe"
"mule_st_key"="C:\Users\vincent\AppData\Roaming\m\flec006.exe"
"german.exe"="C:\Windows\wintems.exe"

scanning hidden files ...

C:\Windows\mdelk.exe 72708 bytes executable
C:\Windows\System32\IME\shared
C:\Windows\System32\IME\shared\res
C:\Windows\System32\mdelk.exe 72708 bytes executable
C:\Windows\System32\wfsintwq.sys 107732 bytes executable
C:\Windows\System32\wintems.exe 72708 bytes executable
C:\Users\vincent\AppData\Roaming\drivers\downld
C:\Users\vincent\AppData\Roaming\drivers\downld\133224.exe 613 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\133396.exe 613 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\133505.exe 479 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\133724.exe 479 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\133833.exe 313 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\135065.exe 950276 bytes executable
C:\Users\vincent\AppData\Roaming\drivers\downld\1361826.exe 29 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1361997.exe 29 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1362138.exe 99332 bytes executable
C:\Users\vincent\AppData\Roaming\drivers\downld\1406364.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1407144.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1407675.exe 72708 bytes executable
C:\Users\vincent\AppData\Roaming\drivers\downld\1443446.exe 405 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1443945.exe 405 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1444475.exe 327 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1444647.exe 327 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1444818.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1445458.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1445817.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1448204.exe 968 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1448609.exe 968 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1448984.exe 401 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1449748.exe 401 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1450247.exe 292 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1450512.exe 292 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1450715.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1450809.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1450902.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1451620.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1452182.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1452525.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1452930.exe 679 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1453055.exe 679 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1453180.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1454319.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1455723.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1456737.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1457314.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1457657.exe 36442 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1476487.exe 36442 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1494068.exe 103 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1494177.exe 103 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1494302.exe 398 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1494692.exe 398 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1494941.exe 298 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1495097.exe 298 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1495222.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1495363.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1495550.exe 1806 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1496579.exe 1806 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1497375.exe 526 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1499200.exe 526 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1499793.exe 4263 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1502492.exe 4263 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1504863.exe 512 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1505082.exe 512 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1505206.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1506345.exe 4074 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1508966.exe 4074 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1511337.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1511446.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1512585.exe 488 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1513833.exe 488 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1514410.exe 1429 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1518388.exe 1429 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1519200.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1519293.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1519434.exe 399 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1520323.exe 399 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1520900.exe 319 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1520978.exe 319 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1521072.exe 613 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1521165.exe 613 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1521290.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1521446.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1521633.exe 564 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1522897.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1523037.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1523209.exe 294 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1523271.exe 294 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1527951.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1528809.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1529589.exe 185 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1529823.exe 185 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1530713.exe 323 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1531227.exe 323 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1531571.exe 302 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1533255.exe 302 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1534769.exe 515 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1535127.exe 515 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1535471.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1536391.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1537124.exe 962 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1537467.exe 962 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1537748.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1580134.exe 406 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1580929.exe 406 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1581460.exe 5268 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1584127.exe 5268 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1587559.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1588058.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1588464.exe 416 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1588792.exe 416 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1589182.exe 960 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1589556.exe 960 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1590367.exe 5227 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1594689.exe 5227 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1597528.exe 962 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1597949.exe 962 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1598635.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1598807.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1601677.exe 4328 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1604173.exe 4328 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1608151.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1446846.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1457501.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1505706.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1522382.exe 564 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1537889.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1609509.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1657635.exe 199 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1667869.exe 389 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1681612.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1693047.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1715152.exe 499 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1943210.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1982819.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2044112.exe 2440 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2134468.exe 395 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1610616.exe 9596 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1617168.exe 9588 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1623736.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1624282.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1644983.exe 401 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1645170.exe 401 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1648618.exe 613 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1648727.exe 613 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1648852.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1648946.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1649070.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1649538.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1650038.exe 196 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1650474.exe 196 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1650864.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1651691.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1652534.exe 3429 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1654219.exe 3429 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1657479.exe 199 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1657838.exe 404 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1658150.exe 404 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1658477.exe 396 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1658977.exe 396 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1659476.exe 300 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1659632.exe 300 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1659819.exe 1626 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1660474.exe 1626 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1661067.exe 1098 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1661488.exe 1098 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1661863.exe 399 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1662783.exe 399 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1663360.exe 961 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1663688.exe 961 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1664000.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1664624.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1665232.exe 542 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1665607.exe 542 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1665981.exe 389 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1672237.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1672439.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1672611.exe 21 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1672970.exe 21 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1673126.exe 1251 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1676729.exe 1251 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1677790.exe 1199 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1678071.exe 1199 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1678352.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1678477.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1678601.exe 280 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1678695.exe 280 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1678820.exe 406 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1679303.exe 406 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1679818.exe 402 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1680271.exe 402 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1680754.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1680879.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1681019.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1682299.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1682564.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1682845.exe 511 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1683219.exe 511 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1683375.exe 960 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1683593.exe 960 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1684639.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1684795.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1684982.exe 394 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1685169.exe 394 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1685372.exe 173 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1689007.exe 173 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1689475.exe 511 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1689880.exe 511 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1690036.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1690161.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1690270.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1691862.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1692938.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1693172.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1693250.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1693359.exe 964 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1693609.exe 964 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1693874.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1694545.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1695200.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1695715.exe 208 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1696214.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1696308.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1696432.exe 3494 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1699069.exe 3494 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1705933.exe 4368 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1708538.exe 4368 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1710270.exe 1 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1710816.exe 1 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1711299.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1712656.exe 1635 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1713889.exe 499 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1715839.exe 167629 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1803355.exe 167478 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1886863.exe 1093 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1887159.exe 1093 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1893430.exe 282 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1894538.exe 282 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1895146.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1895240.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1895349.exe 509 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1896036.exe 509 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1896519.exe 291 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1897377.exe 291 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1898188.exe 498 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1898563.exe 498 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1898968.exe 232 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1899733.exe 232 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1900294.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1900716.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1942945.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1943460.exe 28 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1943616.exe 28 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1943788.exe 298 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1944131.exe 298 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1944443.exe 315 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1944536.exe 315 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1944646.exe 33622 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1962679.exe 33622 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1979574.exe 323 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1979683.exe 323 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1979839.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1979917.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1980011.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1980573.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1981197.exe 286 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1981306.exe 286 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1981462.exe 287 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1982023.exe 287 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1982616.exe 823 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1982991.exe 645 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1983147.exe 645 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1983287.exe 13390 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\1990900.exe 13391 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039011.exe 301 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039198.exe 301 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039354.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039479.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039619.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039744.exe 331 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039869.exe 299 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2039962.exe 299 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2040087.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2040196.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2040290.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2040368.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2040493.exe 335 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2040758.exe 335 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2041054.exe 2440 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2046436.exe 400 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2046811.exe 400 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2047232.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2047481.exe 25 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2047700.exe 71016 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2086060.exe 71016 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2126449.exe 451 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2126590.exe 451 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2126808.exe 1081 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2127182.exe 1081 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2127494.exe 2324 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2128571.exe 2324 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2129897.exe 290 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2130287.exe 290 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2130552.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2131285.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2131831.exe 218 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2133048.exe 218 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2133906.exe 395 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2134936.exe 391 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2135372.exe 391 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2140364.exe 398 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2140848.exe 398 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2141363.exe 964 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2141753.exe 964 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2147416.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2147509.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2147603.exe 1127 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2147946.exe 1127 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2148336.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2148820.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2149163.exe 39954 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2173920.exe 39954 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2197679.exe 292 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2197866.exe 292 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2198038.exe 468 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2198459.exe 468 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2198880.exe 645 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2199395.exe 645 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2199770.exe 956 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2200082.exe 956 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2200565.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2200674.exe 212 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2200799.exe 1691 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2202125.exe 1691 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2202983.exe 1683 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\2204075.exe 1683 bytes
C:\Users\vincent\AppData\Roaming\drivers\downld\705888.exe 262144 bytes executable
C:\Users\vincent\AppData\Roaming\drivers\downld\835978.exe 1114628 bytes executable
C:\Users\vincent\AppData\Roaming\drivers\winupgro.exe 837120 bytes executable
C:\Users\vincent\AppData\Roaming\m\flec006.exe 99332 bytes executable
C:\Users\vincent\AppData\Roaming\m\shared
C:\Users\vincent\AppData\Roaming\m\shared\12Ghosts 2ndBackup v21.02e.zip 942432 bytes
C:\Users\vincent\AppData\Roaming\m\shared\1st Audio Splitter Extractor v1.25 by CAT.zip 1085463 bytes
C:\Users\vincent\AppData\Roaming\m\shared\30 Happy Easter Riddles ScreenSaver v5.00 by FHCF.zip 966485 bytes
C:\Users\vincent\AppData\Roaming\m\shared\3D Aqua Clock.zip 943609 bytes
C:\Users\vincent\AppData\Roaming\m\shared\3D Object Converter 1.06 (Serial).zip 1031471 bytes
C:\Users\vincent\AppData\Roaming\m\shared\ABC Amber Mozilla Converter 4.02 keygen.zip 942560 bytes
C:\Users\vincent\AppData\Roaming\m\shared\AceFTP 2.02 (Serial).zip 931119 bytes
C:\Users\vincent\AppData\Roaming\m\shared\aCoffee 1.0.zip 974028 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MobiRise 3GP Converter 1.17 keygen.zip 943883 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Modem Spy v2.9.2.zip 874587 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MP3 Workshop 1.87.zip 1102206 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MP3CD4ME 1.10 (Serial).zip 1008890 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MS Word Wedding Invitation Template Software 7.0.zip 950257 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MsgBox 1.0.zip 918138 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Music Manager 9.16.zip 854653 bytes
C:\Users\vincent\AppData\Roaming\m\shared\My Internet TV (MyInternetTV) v4.1.8 build 164 by Under SEH T3am.zip 1045634 bytes
C:\Users\vincent\AppData\Roaming\m\shared\My Streamer v1.0.1.6 WinXP Cracked by BRD.zip 847627 bytes
C:\Users\vincent\AppData\Roaming\m\shared\My Trainings Diary v2.2.0.5 Cracked PROPER READNFO by iND.zip 1013525 bytes
C:\Users\vincent\AppData\Roaming\m\shared\NCH Software Express Invoice v2.13 by AT4RE.zip 937466 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Neodynamic ImageDraw SDK for .NET 2.0.zip 940124 bytes
C:\Users\vincent\AppData\Roaming\m\shared\NeoNote 2.00 for PalmOS.zip 911120 bytes
C:\Users\vincent\AppData\Roaming\m\shared\NetWalker for Mac.zip 933039 bytes
C:\Users\vincent\AppData\Roaming\m\shared\CRM Permis A.zip 1061341 bytes
C:\Users\vincent\AppData\Roaming\m\shared\DB Blob Editor 2.5 (Serial).zip 921382 bytes
C:\Users\vincent\AppData\Roaming\m\shared\dbQwikSync PRO 1.3.zip 982382 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Decoder 2.0.7 for Mac (Serial).zip 903155 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Deep Paint 1.0b (Serial).zip 1088657 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Deep Sea Fishing 2 v1.0.zip 968739 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Desktop Money 3D ScreenSaver v1.0.zip 877704 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Super Bounce Out! by Unknown.zip 944492 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Symantec Enterprise Firewall and VPN 7.0 (Serial).zip 978172 bytes
C:\Users\vincent\AppData\Roaming\m\shared\System Mechanic 3.7a.zip 936846 bytes
C:\Users\vincent\AppData\Roaming\m\shared\T3Screensaver 1.0.zip 922142 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Teles CAPI with NTRAS (Serial).zip 955593 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Test Center v3.1.0.zip 1041903 bytes
C:\Users\vincent\AppData\Roaming\m\shared\TestMaster v3.2.zip 1130802 bytes
C:\Users\vincent\AppData\Roaming\m\shared\The Lost City of Gold v1.0.0.19 WinALL Incl Keygen by ECLiPSE.zip 1033791 bytes
C:\Users\vincent\AppData\Roaming\m\shared\The Sims Life Stories DECENSOR PATCH.zip 917113 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Thief The Dark Project No-CD #1.zip 1010414 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Heavy Equipment and Machinery Inventory 1.1.zip 855650 bytes
C:\Users\vincent\AppData\Roaming\m\shared\HiFi WMA Recorder Joiner v1.02 WinALL by CHiCNCREAM.zip 1053249 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Hotkey Sound Recorder v1.20 WinALL Incl Keygen by ViRiLiTY.zip 867550 bytes
C:\Users\vincent\AppData\Roaming\m\shared\HyperSnap-DX v5.02.00 by TSRh.zip 916220 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ico Edit 1.5.zip 841287 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Image Merger .EXE 1.0.20.zip 974349 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Image2Web v1.0.0.0.zip 952234 bytes
C:\Users\vincent\AppData\Roaming\m\shared\ImgViewer 2.43 (Serial).zip 1153862 bytes
C:\Users\vincent\AppData\Roaming\m\shared\ImTOO DVD to MP4 Converter v4.0.40.0217 Inc by LMi.zip 944772 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Insert Pics.zip 1004600 bytes
C:\Users\vincent\AppData\Roaming\m\shared\JForge 2.62 (Serial).zip 971360 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Acronis True Image Server v8.0.889 German by ZWT.zip 981117 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Business Continuity Management System 4.3 keygen.zip 930034 bytes
C:\Users\vincent\AppData\Roaming\m\shared\DiskDB 2.12 (Serial).zip 918255 bytes
C:\Users\vincent\AppData\Roaming\m\shared\First Battalion PLUS 4 TRAINER by Unleashed.zip 831261 bytes
C:\Users\vincent\AppData\Roaming\m\shared\HaneWin NFS Server v1.1.43 German by BLiZZARD.zip 891653 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Kalimages v2.04 SERIAL by FFF.zip 1039943 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Loan Advisor v1.07.zip 931595 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MIRC 6.16 WinALL Keygen OnlyFocus1961.zip 951453 bytes
C:\Users\vincent\AppData\Roaming\m\shared\one cat picture printer 1.01 serial by REVENGE.zip 1027303 bytes
C:\Users\vincent\AppData\Roaming\m\shared\PowerDIFF for ORACLE 1.01.00.zip 1028055 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Registry Healer v2.2.zip 934854 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SecuKEEPER v2.8 Win2kXP2k3 Incl Keymaker And Patch by ARN.zip 931948 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SourcePublisher for C Plus Plus v1.4.366b HPUX Incl Keygen by Lz0.zip 900401 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Super Audio Grabber v3.0 WinALL by TBE.zip 883317 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Tide Plotter 2003.4.1.zip 970573 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Trojan Remover All Versions by Suicide Solution.zip 993141 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WaveArts MasterVerb VST DX 3.05 (Serial).zip 986458 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SereneScreen v2.0.zip 1057773 bytes
C:\Users\vincent\AppData\Roaming\m\shared\ShutdownPlus 4.0.zip 854358 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Sidi v1.1.zip 926703 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SiTrack 1.0A (Serial).zip 929428 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Sky Aces Western Front v2.00 Unlocker by TNT.zip 1015006 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SkylarkUtilities Clean It v3.07.12.06 Incl Keymaker by ARN.zip 1074776 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Slick View v1.0.013a by BLiZZARD.zip 1007819 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Slipstream Solutions Phone Schedule v2.3.9 for Pocket PC XScale ARM.zip 873003 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SlovoEd Classic English-German 7.2.zip 978144 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SmartCheck 6.2x.zip 900391 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SmartDraw! v4.22.zip 918203 bytes
C:\Users\vincent\AppData\Roaming\m\shared\SobolSoft MS SQL Server Export Table To Text File Software by AT4RE.zip 1130556 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WebPosition Gold 1.10.93 (Serial).zip 979115 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Window Killer 1.0 patch.zip 881634 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WinFamily 6.02 (Serial).zip 993667 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WinPresenter v1.6 by HERETiC.zip 1009443 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WinReporter v3.01 WinNT2kXP Incl Keygen by BLiZZARD.zip 879019 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WinTipper 2002 v3.5.28.1.zip 1024231 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Wise for Windows Installer v6.10.0.450 Enterprise Edition by ZWT.zip 954092 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Network LookOut Administrator v2.3.1 KEYGEN by FFF.zip 844324 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Nice Dice v2.3 WinAll by LAXiTY.zip 1034109 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Nidesoft DVD to AVI Converter Platinum 5.2.18.zip 1101462 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Nokia 3210 Music Melodies v1.0.zip 896651 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Norton Antivirus All Versions Turkish.zip 848469 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Note-A-Phi 2.1.0.zip 1003745 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Nsasoft SpotMSN v1.4.zip 946322 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Okoker AVI DivX MPEG RMVB WMV To DVD VCD Converter And Burner v2.0 Cracked by RHE.zip 929914 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Oleansoft Lite Photos v1.3 Keygen Only by Lz0.zip 888472 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Fishing Diary Database 95.2.3 (Serial).zip 898869 bytes
C:\Users\vincent\AppData\Roaming\m\shared\FiveStar PopUp Blocker v1.0 WinALL by TBE.zip 893231 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Font Impressions 2.0 (Serial).zip 914813 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ford Racing 2 v1.0 +3 TRAINER 1.zip 1054131 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Fraction Master 1.1 (Serial).zip 897203 bytes
C:\Users\vincent\AppData\Roaming\m\shared\FreeCell Solitaire v2.01 for PalmOS.zip 927137 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Freedom Force +2 Trainer.zip 829993 bytes
C:\Users\vincent\AppData\Roaming\m\shared\AnyChart Flash Map Component 1.02 keygen.zip 933066 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Apple Network Administrator Toolkit Retail for Mac.zip 945843 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Aresuki 2.0 for Mac (Serial).zip 871481 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ashampoo 45+ Products by iRC.zip 1033107 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ashampoo CD Recording Suite 4.4.0.5.zip 904625 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ashampoo SnapYa! 1.5.3.3 SE.zip 900265 bytes
C:\Users\vincent\AppData\Roaming\m\shared\AudioSlimmer 1.1.91 (Serial).zip 918752 bytes
C:\Users\vincent\AppData\Roaming\m\shared\B-Jigsaw v7.4.zip 926235 bytes
C:\Users\vincent\AppData\Roaming\m\shared\BallSwapper 1.03.1.zip 937482 bytes
C:\Users\vincent\AppData\Roaming\m\shared\BAUHAUS MIRAGE STUDIO CRACKED V1.5A by AGFX.zip 917729 bytes
C:\Users\vincent\AppData\Roaming\m\shared\BayCheck Pro 1.0 (Serial).zip 867641 bytes
C:\Users\vincent\AppData\Roaming\m\shared\BioAssistant 1.7.1 for Mac.zip 908225 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Bulk EMailer 4.6.zip 1066432 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Speed Video Splitter v2.5.4 by Under SEH T3am.zip 1091564 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Speed-O-Meter v3.0.zip 890484 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Sport Airplanes 3D 1.0.zip 948387 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Spyware Doctor v3.0.0.288.zip 933381 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Stardock SkinStudio v4.5 Professional Incl Keygen by SSG.zip 960572 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Steinberg Traktor DJ Mixer v1.0.2.zip 984822 bytes
C:\Users\vincent\AppData\Roaming\m\shared\StromaSoft CRM 3.3.22 (crack).zip 1020221 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Subaru Rally Challenge Retail JAVA K800 by RLYEH.zip 853986 bytes
C:\Users\vincent\AppData\Roaming\m\shared\KillSpam 6.2.0.3.zip 905547 bytes
C:\Users\vincent\AppData\Roaming\m\shared\KingConvert MeiZu M8 Video Converter 5.0.0.8.zip 885625 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Kingdia DVD Ripper v2.5.4 by BRD.zip 944553 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Konvertor bmp2xxx 1.03-key.zip 1009756 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Laden Detectiv v1.0 [GERMAN] Fixed EXE.zip 909771 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Leaf Drums 2.11 (Serial).zip 1045224 bytes
C:\Users\vincent\AppData\Roaming\m\shared\True Screen Saver Builder v3.0 Full Edition.zip 969782 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Tutu FLAC MP3 Converter 3.01.09.0526 keygen.zip 951277 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Tweakmaster Pro v2.04 Build 764 French Winall Cracked by HS.zip 980672 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ultra AVI Converter v2.2.2 by ViRiLiTY.zip 896202 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Ultra Lingua 3.0 French for Mac.zip 967676 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Understand for Ada v1.4.344 OSF by Lz0.zip 1040936 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Understand for Delphi v1.4.342 IRIX by Lz0.zip 931520 bytes
C:\Users\vincent\AppData\Roaming\m\shared\User Control 2005 v4.155.0 WinALL by TBE.zip 1058827 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VBScodePrint 1.1.0 (Serial).zip 887781 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VCW Vicmans EmailEra 1.55.zip 859013 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VG Clone v2.0.1 for 3DS MAX.zip 956418 bytes
C:\Users\vincent\AppData\Roaming\m\shared\PowerSearch v3.11 by ViRiLiTY.zip 940919 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Printer Peer 5.0.2235.zip 1073013 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Prism4CAD 2010 - Gradient colors 1.4 keygen.zip 941468 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Privacy Shredder v3.0 by NiTROUS.zip 951475 bytes
C:\Users\vincent\AppData\Roaming\m\shared\PTS AudioCD MP3Studio 2.35 (Serial).zip 1034384 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Public PC Desktop v5.5 by REVENGE.zip 1062277 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Quick3D Pro 4.0.zip 947983 bytes
C:\Users\vincent\AppData\Roaming\m\shared\RankMeter 1.63.zip 1057440 bytes
C:\Users\vincent\AppData\Roaming\m\shared\CA Project (Serial).zip 984534 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Camtasia Studio 2.0.2 (Serial).zip 981085 bytes
C:\Users\vincent\AppData\Roaming\m\shared\CGSD Upright v1.0 for Adobe Photoshop.zip 1019478 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Charts plugin 1.57.zip 1085349 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Chat Watch 1.5.1 (Serial).zip 1046869 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Chemical Reagent Calculator 2.5.zip 834298 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Church Secretary 5.0.zip 1032843 bytes
C:\Users\vincent\AppData\Roaming\m\shared\CoolFocus TreeView Pro Designer v1.2.0.zip 951190 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MailBell 2.11.zip 979984 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MailSweep 1.6 (Serial).zip 925508 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Managed Switch Port Mapping Tool v1.53.zip 908275 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MASPware HandNotes v3.0 Retail for PocketPC Release 2 by RLYEH.zip 880467 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Math Quiz Creator v1.5.0 by AT4RE.zip 1056067 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Measure Converter 1.0.zip 960744 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Meeting Room Manager 2001 v3.3.zip 925964 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MegaDoc 1.5 for PalmOS.zip 829808 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Merry Motors by SND.zip 954738 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Microsoft Office Visio 2007 PRO RIP by rG.zip 953040 bytes
C:\Users\vincent\AppData\Roaming\m\shared\MiniPortal v1.3.5 by SnD.zip 838818 bytes
C:\Users\vincent\AppData\Roaming\m\shared\E-Term32 Plus 2.0 (Serial).zip 998334 bytes
C:\Users\vincent\AppData\Roaming\m\shared\EditLive 1.4.zip 1048189 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Electronic Home Database 2009.3.zip 1026283 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Emryn GrafxShop v2.4.3.6.zip 962148 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Extra DVD to FLV Ripper by AT4RE.zip 990130 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Farstone DriveClone v1.0 Regged WinAll by HS.zip 926353 bytes
C:\Users\vincent\AppData\Roaming\m\shared\FAXstf PRO 10.6 for Mac (Serial).zip 936247 bytes
C:\Users\vincent\AppData\Roaming\m\shared\FileRecovery For XDPicture Card v1.2 by CAFE.zip 986898 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Find It 3.02.01.zip 935780 bytes
C:\Users\vincent\AppData\Roaming\m\shared\FireBurner 2.1.5 (Serial).zip 908383 bytes
C:\Users\vincent\AppData\Roaming\m\shared\tnakswar 1.0 for palmos cracked prc by TSRh.zip 932641 bytes
C:\Users\vincent\AppData\Roaming\m\shared\TopDog Search Engine Analyzer Submitter 5.7.0.394.zip 1028783 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Total Recall Data Recovery Software v1.0.7 by Unknown.zip 917242 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Total Video Converter v3.11 by IRC.zip 934252 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Track 4Win Monitor 2.6 Build 624.zip 1084721 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Track4Win v2.1.zip 1036330 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Trellian MetaEditor v1.04.001.4794.zip 846745 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Triad Strategy Game 1.1.zip 952910 bytes
C:\Users\vincent\AppData\Roaming\m\shared\One Click Unzip 2.2.zip 1069758 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Opera 6.01.1041.zip 842966 bytes
C:\Users\vincent\AppData\Roaming\m\shared\PanelBar for JSP 4.0.92-key.zip 864289 bytes
C:\Users\vincent\AppData\Roaming\m\shared\PeerSync Pro II 4.3.2.zip 972411 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Photo Filtre v6.2.3 Incl Keymaker by Core.zip 944371 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Photo Gallery Screensaver Compiler 2.01.zip 1055822 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Play Keyboards 2.0 (Serial).zip 898490 bytes
C:\Users\vincent\AppData\Roaming\m\shared\PowerArchiver 2004 v9.26.01 Polish WinALL by BRD.zip 1155825 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VisualGallery 1.1.zip 938651 bytes
C:\Users\vincent\AppData\Roaming\m\shared\vito themeeditor desktop 1.1.1 cracked by TSRh.zip 950788 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VoiceON v2.00.zip 915697 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VSO PhotoDVD v2.0.11.965 Multilingual WinALL by CHiCNCREAM.zip 981126 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VueScan 7.6 for Mac.zip 862530 bytes
C:\Users\vincent\AppData\Roaming\m\shared\VueScan v7.5.2.zip 866334 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Wallpaper Calendar v3.0.2 build 87 by TSRh.zip 970126 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Rich Media Pack 2.zip 1041084 bytes
C:\Users\vincent\AppData\Roaming\m\shared\River Past MPEG 4 Booster Pack v1.6 WinALL Incl Keygen by BRD.zip 962521 bytes
C:\Users\vincent\AppData\Roaming\m\shared\River Past RealMedia Booster Pack v1.3 by BRD.zip 1035626 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Rock'n'Roll 2004 v1.05 +3 TRAINER.zip 906422 bytes
C:\Users\vincent\AppData\Roaming\m\shared\RocketReader Speed Reading 4.01 (Serial).zip 1075034 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Roller Derby Scoreboard Deluxe v1.0.1 WinALL by TBE.zip 971121 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Active Desktop Calendar 4.31.040816.zip 967979 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Adobe Photoshop Elements 4.0 for Mac.zip 1001138 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Adobe Photoshop Elements v2.0.zip 944476 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Advanced CD Ripper v2.41.zip 893569 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Alchemy Mindworks Graphic Workshop Professional RAW Plugin v2.0a 16 Keygen by Lz0.zip 863754 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Animagic Gif Animator 1.22 (Serial).zip 1055879 bytes
C:\Users\vincent\AppData\Roaming\m\shared\FX ChemStruct 1.202.3.zip 830182 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Gameloft Ibiza Beach Party Retail JAVA N80 by RLYEH.zip 928353 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Genie Backup Manager Professional v6.0.7.1631 Keygen Only by DVT.zip 1130394 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Gestheures v1.0.88 French.zip 941389 bytes
C:\Users\vincent\AppData\Roaming\m\shared\GetRight v4.3.zip 968207 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Giganews Binary Newsreader 3.1.6.zip 1046908 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Guesthouse - Guest Management System 1.4.0.zip 930253 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WitCobber RM to AVI MPEG WMV VCD SVCD DVD Converter v5.7 by SND.zip 970812 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WordZap Deluxe v6.00.zip 1066484 bytes
C:\Users\vincent\AppData\Roaming\m\shared\World In Conflict v1.006 +9 TRAINER.zip 1057230 bytes
C:\Users\vincent\AppData\Roaming\m\shared\WW2 Badges and Banners Pack for Warhammer 40000 Dawn of War.zip 901904 bytes
C:\Users\vincent\AppData\Roaming\m\shared\XR Backup 2.0.0098.zip 909758 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Zip Express 2.0.21 (Serial).zip 1012828 bytes
C:\Users\vincent\AppData\Roaming\m\shared\Zoner Photo Studio v8.0.4 Professional by CYGNUS.zip 936733 bytes
C:\Users\vincent\Documents\Logiciels\illustrator cs2\Adobe Illustrator CS2-full-francais+crack\AUTORUN.INF 49 bytes

scan completed successfully
hidden processes: 3
hidden services: 1
hidden files: 567


Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
kernel: MBR read successfully
user & kernel MBR OK

==========
Programs
==========

Adobe
Alwil Software
Apple Software Update
Bonjour
CClean
0
Utilisateur anonyme
14 janv. 2010 à 19:03
▶ Relance List&Kill'em(soit en clic droit pour vista),avec le raccourci sur ton bureau.
mais cette fois-ci :

▶ choisis l'option 2 = Mode Suppression

laisse travailler l'outil.

en fin de scan un rapport s'ouvre

▶ colle le contenu dans ta reponse
0
Voilà le rapport :

Genuine Intel(R) CPU 2140 @ 1.60GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 7.0.6000.16575
Windows Firewall Status : Disabled
AV : BullGuard Antivirus [ Enabled | (!) Outdated ]
AV : avast! antivirus 4.8.1335 [VPS 100112-0] 4.8.1335 [ (!) Disabled | Updated ]

C:\ -> Disque fixe local | 445,74 Go (40,26 Go free) [BOOT] | NTFS
D:\ -> Disque fixe local | 20 Go (619,98 Mo free) [RECOVER] | FAT32
E:\ -> Disque amovible
F:\ -> Disque amovible
G:\ -> Disque amovible
H:\ -> Disque CD-ROM


¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running


Detections :
==========


¤¤¤¤¤¤¤¤¤¤ Files/folders :

"C:\Windows\System32\ban_list.txt"
"C:\Windows\System32\MDELK.exe"
"C:\Windows\system32\srosa2.sys"
"C:\Windows\system32\wfsintwq.sys"
"C:\Windows\System32\wintems.exe"
C:\Users\vincent\Local Settings\Temp\alm.log
C:\Users\vincent\Local Settings\Temp\amt.log
C:\Users\vincent\Local Settings\Temp\sic.pdf
C:\Users\vincent\Local Settings\Temp\ytb.exe
C:\Users\vincent\LOCAL Settings\Temp\AutoRun.exe
C:\Users\vincent\LOCAL Settings\Temp\eauninstall.exe
C:\Users\vincent\LOCAL Settings\Temp\FlashPlayerUpdate.exe
C:\Users\vincent\LOCAL Settings\Temp\FlashPlayerUpdate01.exe
C:\Users\vincent\LOCAL Settings\Temp\FlashPlayerUpdate02.exe
C:\Users\vincent\LOCAL Settings\Temp\GDM66DE.exe
C:\Users\vincent\LOCAL Settings\Temp\Install_WLMessenger.exe
C:\Users\vincent\LOCAL Settings\Temp\msgA1AD.exe
C:\Users\vincent\LOCAL Settings\Temp\ose00000.exe
C:\Users\vincent\LOCAL Settings\Temp\SimCity 4_uninst.exe
C:\Users\vincent\LOCAL Settings\Temp\wlsetup-cvr.exe
C:\Users\vincent\LOCAL Settings\Temp\_is23D5.exe
C:\Users\vincent\LOCAL Settings\Temp\_isF9C0.exe


¤¤¤¤¤¤¤¤¤¤ Files/folders deleted :

Quarantine :

alm.log.Kill'em
amt.log.Kill'em
AutoRun.exe.Kill'em
ban_list.txt.Kill'em
eauninstall.exe.Kill'em
FlashPlayerUpdate.exe.Kill'em
FlashPlayerUpdate01.exe.Kill'em
FlashPlayerUpdate02.exe.Kill'em
GDM66DE.exe.Kill'em
Install_WLMessenger.exe.Kill'em
msgA1AD.exe.Kill'em
ose00000.exe.Kill'em
sic.pdf.Kill'em
SimCity 4_uninst.exe.Kill'em
srosa2.sys.Kill'em
wlsetup-cvr.exe.Kill'em
ytb.exe.Kill'em
_is23D5.exe.Kill'em
_isF9C0.exe.Kill'em

==============
host file OK !
==============

========
Registry
========
Deleted : HKCU\Software\Local AppWizard-Generated Applications\winupgro
Deleted : HKCR\CLSID\{248dd896-bb45-11cf-9abc-0080c7e7b78d}
Deleted : HKCR\CLSID\{248dd897-bb45-11cf-9abc-0080c7e7b78d}
Deleted : HKCR\Interface\{248dd892-bb45-11cf-9abc-0080c7e7b78d}
Deleted : HKCR\Interface\{248dd893-bb45-11cf-9abc-0080c7e7b78d}
Deleted : HKCR\TypeLib\{248dd890-bb45-11cf-9abc-0080c7e7b78d}
Deleted : HKCU\Software\bisoft

============
Disk Cleaned
============

================
Prefetch cleaned
================



¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
0
Utilisateur anonyme
14 janv. 2010 à 21:53
reessaie findykill maintenant
0
Aurais tu un lien pour télécharger findykill stp? Parce que pour l'instant, le fait de cliquer sur un lien qui m'envoie vers Findykill ferme automatiquement le navigateur. Même le fait d'effectuer une recherche dans google ferme automatiquement firefox.
0
Utilisateur anonyme
14 janv. 2010 à 22:12
voici le canned :

▶ Télécharge FindyKill sur ton bureau :

http://pagesperso-orange.fr/NosTools/Chiquitine29/Setup.exe

! Déconnecte toi et ferme toutes applications en cours !

▶ Double clique (clic droit "en tant qu'administrateur" pour Vista) sur "FindyKill.exe" pour lancer l'installation et laisse les paramètres d'instalation par défaut .

▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)

▶ Double-clique (clic droit "en tant qu'administrateur" pour Vista)sur le raccourci FindyKill qui est sur ton bureau pour lancer l'outil .

▶ Au menu principal choisis l'option " F " pour français et tape sur [entrée] .

▶ Au second menu Choisis l'option " 1 " (recherche) et tape sur [entrée]

▶ Laisse travailler l'outil et ne touche à rien ...

▶ Poste le rapport qui apparait à la fin , sur le forum ...

( le rapport est sauvegardé aussi sous C:\FindyKill.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
0
Voilà, supression maintenant je suppose? Encore merci pour ton aide


############################## | FindyKill V5.024 |

# User : vincent (Administrateurs) # PC-DE-VINCENT
# Update on 09/01/2010 by El Desaparecido
# Start at: 22:20:51 | 14/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com

# Genuine Intel(R) CPU 2140 @ 1.60GHz
# Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
# Internet Explorer 7.0.6000.16575
# Windows Firewall Status : Enabled
# AV : BullGuard Antivirus [ Enabled | (!) Outdated ]
# AV : avast! antivirus 4.8.1335 [VPS 100112-0] 4.8.1335 [ (!) Disabled | Updated ]

# C:\ # Disque fixe local # 445,74 Go (40,09 Go free) [BOOT] # NTFS
# D:\ # Disque fixe local # 20 Go (619,98 Mo free) [RECOVER] # FAT32
# E:\ # Disque amovible
# F:\ # Disque amovible
# G:\ # Disque amovible
# H:\ # Disque CD-ROM

############################## | Processus actifs |


################## | C: |


################## | C:\Windows |

Présent ! C:\Windows\ban_list.txt
Présent ! C:\Windows\mdelk.exe
Présent ! C:\Windows\wintems.exe

################## | C:\Windows\Prefetch |


################## | C:\Windows\system32 |

Présent ! C:\Windows\system32\mdelk.exe
Présent ! C:\Windows\system32\srosa2.sys
Présent ! C:\Windows\system32\wfsintwq.sys
Présent ! C:\Windows\system32\wintems.exe

################## | C:\Windows\system32\drivers |


################## | C:\Users\vincent\AppData\Roaming |

Présent ! C:\Users\vincent\AppData\Roaming\drivers
Présent ! C:\Users\vincent\AppData\Roaming\drivers\downld
Présent ! C:\Users\vincent\AppData\Roaming\drivers\winupgro.exe
Présent ! C:\Users\vincent\AppData\Roaming\m
Présent ! C:\Users\vincent\AppData\Roaming\m\data.oct
Présent ! C:\Users\vincent\AppData\Roaming\m\flec006.exe
Présent ! C:\Users\vincent\AppData\Roaming\m\list.oct
Présent ! C:\Users\vincent\AppData\Roaming\m\srvlist.oct
Présent ! C:\Users\vincent\AppData\Roaming\m\shared

################## | Temporary Internet Files |

Présent ! C:\Users\vincent\Local Settings\Temporary Internet Files\Content.IE5\S9APQ9DN\file[1].txt

################## | Registre |

Présent ! [HKLM\SYSTEM\CurrentControlSet\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet002\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet003\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet004\Services\srosa]
Présent ! [HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA]
Présent ! [HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_SROSA]
Présent ! [HKCU\Software\bisoft]
Présent ! [HKCU\Software\DateTime4]
Présent ! [HKCU\Software\MuleAppData]
Présent ! [HKCU\Software\WS35]
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\bisoft]
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\DateTime4]
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\MuleAppData]
Présent ! [HKCU\Software\Local AppWizard-Generated Applications\keygen]
Présent ! [HKCU\Software\Local AppWizard-Generated Applications\winupgro]
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\Local AppWizard-Generated Applications\keygen]
Présent ! [HKU\S-1-5-21-1014792221-1335902643-1430148032-1000\Software\Local AppWizard-Generated Applications\winupgro]

################## | Etat |

# Affichage des fichiers cachés : OK

# Mode sans echec : OK

# (!) Uac = 0x0

# (!) Ndisuio -> Start = 4 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
# Wlansvc -> Start = 2 ( Good = 2 | Bad = 4 )
# (!) SharedAccess -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) windefend -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) wuauserv -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) wscsvc -> Start = 4 ( Good = 2 | Bad = 4 )


################## | Cracks > Keygens > Serials |

"C:\logiciels\keygen.exe"
18/09/2004 03:02 |Size 837120 |Crc32 aa09289c |Md5 2ecb58f0a847a1a99f6a4057e4df8bf9

"C:\Users\vincent\Documents\Logiciels\illustrator cs2\Adobe Illustrator CS2-full-francais+crack\Setup.exe"
29/08/2005 20:46 |Size 159744 |Crc32 7d40e599 |Md5 a2c6003ddcd8d9b5a79f94660e607099

"C:\Users\vincent\Documents\Logiciels\illustrator cs2\Adobe Illustrator CS2-full-francais+crack\Adobe Reader 7.0\AdbeRdr70_fra_full.exe"
29/08/2005 20:45 |Size 22606384 |Crc32 36b66db1 |Md5 264e2dc1bde41050502e3df98788c49f

"C:\Users\vincent\Documents\Logiciels\illustrator cs2\Adobe Illustrator CS2-full-francais+crack\Adobe(R) Illustrator(R) CS2\instmsiw.exe"
10/03/2002 21:06 |Size 1822520 |Crc32 be716ace |Md5 61a5fb191ae2ae876db31dcce75e4183

"C:\Users\vincent\Documents\Logiciels\illustrator cs2\Adobe Illustrator CS2-full-francais+crack\Adobe(R) Illustrator(R) CS2\setup.exe"
09/06/2005 11:04 |Size 225280 |Crc32 c2cc7fa2 |Md5 5bd1a18427b7f93487b8faee8d32c909

"D:\CLAIRE\logiciels\illustrator cs2\keygen.exe"
04/05/2005 01:47 |Size 59904 |Crc32 5a18eced |Md5 b824c5d7bea0d803440c19744c6543ef


################## | ! Fin du rapport # FindyKill V5.024 ! |
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
14 janv. 2010 à 22:51
########### [ Option 2 ( Suppression ) ]



▶ Déconnecte toi et ferme toutes application en cours ( navigateur compris ) .

▶ Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)

▶ Relance "FindyKill" (clic droit "en tant qu'administrateur" pour Vista): au menu principal choisis l'option " F " pour français et tape sur [entrée] .

▶ Au second menu choisis l'option 2 (suppression) et tape sur [entrée]

▶ Le pc va redémarrer automatiquement ...

▶ le programme va travailler , ne touche à rien ... , ton bureau ne sera pas accessible c est normal !

▶ Poste le rapport qui apparait à la fin ( le rapport est sauvegardé aussi sous C:\FindyKill.txt )

▶ Si le Bureau ne réapparait pas, presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tape explorer.exe et valide
0
Je n'arrive pas à poster le rapport, en tout cas je n'ai pas de message de confirmation.

Je disait donc que tout semble fonctionner normalement.

Merci beaucoup d'avoir pris de ton temps pour m'aider.
0
Utilisateur anonyme
15 janv. 2010 à 11:49
ok heberge-le rapport ici

Pour me le transmettre clique sur ce lien : http://www.cijoint.fr/

▶ Clique sur Parcourir et cherche le fichier ci-dessus.

▶ Clique sur Ouvrir.

▶ Clique sur "Cliquez ici pour déposer le fichier".

Un lien de cette forme :

http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt

est ajouté dans la page.

▶ Copie ce lien dans ta réponse.
0
Voilà,

http://www.cijoint.fr/cjlink.php?file=cj201001/cijwS0TyPo.txt
0
Utilisateur anonyme
15 janv. 2010 à 17:32
ok fallait pas jouer avec le keygen ^^

^▶ Passer de Avast à AntiVir :

▶ Télécharge Désinstalleur d'Avast!.

▶ redemarre en mode sans echec :

Comment aller en Mode sans échec
1) Redémarres ton ordi
2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
3) Tu verras un écran avec options de démarrage apparaître
4) Choisis la première option : Sans Échec, et valide avec "Entrée"
5) Choisis ton compte habituel, et non Administrateur (si besoin ... )
(attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)


▶ Désinstalle via Ajout/Suppression de Programmes (si présents) :

* Avast!


▶ ensuite execute le desinstaller

Ceci effacera la majorité des traces du produit Avast! d'Alwil Software.

▶ redemarre

▶ Télécharge Ccleaner sur ton Bureau. :

▶ Clique sur "download the latest version"
▶ Installe-le en laissant seulement les options suivantes cochées :

- Ajouter un raccourci sur le Bureau
- Contrôler automatiquement les mises à jour de CCleaner

▶ Lance le Nettoyage
▶ Clique sur Chercher des erreurs et sauvegarde si tu le souhaites.

plus de precision sur la configuration de ccleaner te seront donnees plus tard


tuto Comment utiliser CCleaner.
***************

▶ Télécharge Antivir en Francais ou Antivir en Francais sur ton Bureau.:



▶ Double clique sur l'exécutable téléchargé pour lancer l'installation.
▶ À la fin de l'installation, clique sur Finish.
▶ Ouvre Antivir, assure-toi qu’il soit bien à jour !
▶ Dans l'onglet Protection Locale, choisis Contrôler.
▶ Active la recherche de rootkits via le + de Recherche de Rootkits, puis dans Sélection manuelle, coche tout (tes partitions de disque dur).
▶ Clique sur la loupe du milieu pour lancer le scan en tant qu'Administrateur.
▶ Poste moi le rapport généré : Pour cela, clique sur l'onglet Aperçu, puis choisis Rapports, tu trouveras son rapport..
▶ Sélectionne le rapport et clique sur l'icône "Afficher le fichier de rapport du rapport sélectionné.


▶ Note : Pour une éradication des menaces plus efficace, lance le scan en mode sans échec.

Pourquoi changer ? :Avast Vs Antivir

Tuto de configuration en vidéo (Merci Nico)



0