Virus, pu de son, impossible de lancer Hijacs
laurent
-
moment de grace Messages postés 30049 Statut Contributeur sécurité -
moment de grace Messages postés 30049 Statut Contributeur sécurité -
Bonjour,
Je vais aller au plus simple:
Je pense être infecté par un virus pour les raisons suivantes:
- Je n'ai plus aucun périphérique de son et il impossible d'en réinstaller, à titre d'exemple même mon casque plug & play ne fonctionne pas.
- Aucun antivirus en ligne ne peux être utilisés sans qu'ils soient subitement intérrompus.
- J'ai esssayer d'installer plusieurs antivirus et de la même manière l'installation s'arrête subitement.
- Impossible de lancer Hijackthis et même de taper Hijackthis dans un moteur de recherche sans que ca se coupe.
Voila je n'ai pu d'antivirus sur mon PC et plus de son, je suis un peu démuni, si quelqu'un peut m'aider, je n'ai rien trouvé de similaire sur internet.
Merci
Je vais aller au plus simple:
Je pense être infecté par un virus pour les raisons suivantes:
- Je n'ai plus aucun périphérique de son et il impossible d'en réinstaller, à titre d'exemple même mon casque plug & play ne fonctionne pas.
- Aucun antivirus en ligne ne peux être utilisés sans qu'ils soient subitement intérrompus.
- J'ai esssayer d'installer plusieurs antivirus et de la même manière l'installation s'arrête subitement.
- Impossible de lancer Hijackthis et même de taper Hijackthis dans un moteur de recherche sans que ca se coupe.
Voila je n'ai pu d'antivirus sur mon PC et plus de son, je suis un peu démuni, si quelqu'un peut m'aider, je n'ai rien trouvé de similaire sur internet.
Merci
A voir également:
- Virus, pu de son, impossible de lancer Hijacs
- Virus mcafee - Accueil - Piratage
- Qu'est ce qui se lance au démarrage de l'ordinateur - Guide
- Lancer une application au démarrage windows 10 - Guide
- 952 votre texto n'a pas pu etre envoyé ✓ - Forum SFR
- Nous n'avons pas pu nous connecter à ce réseau ✓ - Forum WiFi
59 réponses
bonjour
veux tu aller là et faire le test stp
http://consultaide.e-monsite.com/rubrique,conficker-simples-tests,355935.html
veux tu aller là et faire le test stp
http://consultaide.e-monsite.com/rubrique,conficker-simples-tests,355935.html
ok
Télécharge rkill
Enregistre-le sur ton Bureau
Double-clique sur l'icone rkill ( pour Vista/Seven clic-droit Exécuter en tant qu'Administrateur)
Un bref écran noir t'indiquera que le tool s'est correctement exécuter, s'il ne lance pas
change de lien de téléchargement en utilisant le suivant à partir d'ici:
https://download.bleepingcomputer.com/grinler/rkill.exe
https://download.bleepingcomputer.com/grinler/rkill.exe
Rkill COM: Rkill COM:
https://download.bleepingcomputer.com/grinler/rkill.com
https://download.bleepingcomputer.com/grinler/rkill.com
Rkill SCR: Rkill RCS:
https://download.bleepingcomputer.com/grinler/rkill.scr
https://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF: Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif
http://download.bleepingcomputer.com/grinler/rkill.pif
une fois qu'il aura terminé
* Télécharge Random's System Information Tool (RSIT) de Random/Random.
(outil de diagnostic)
http://images.malwareremoval.com/random/RSIT.exe
* Enregistre le sur ton Bureau.
* Double clique sur RSIT.exe pour lancer l'outil.
* Clique sur "Continue" à l'écran Disclaimer.
* Si l'outil HijackThis n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu s'il te le demande)
et tu devras accepter la licence.
* Une fois le scan terminé, deux rapports vont apparaître : poste les dans deux messages séparés stp
Les rapports se trouvent à cet endroit:
C:\rsit\info.txt
C:\rsit\log.txt
Télécharge rkill
Enregistre-le sur ton Bureau
Double-clique sur l'icone rkill ( pour Vista/Seven clic-droit Exécuter en tant qu'Administrateur)
Un bref écran noir t'indiquera que le tool s'est correctement exécuter, s'il ne lance pas
change de lien de téléchargement en utilisant le suivant à partir d'ici:
https://download.bleepingcomputer.com/grinler/rkill.exe
https://download.bleepingcomputer.com/grinler/rkill.exe
Rkill COM: Rkill COM:
https://download.bleepingcomputer.com/grinler/rkill.com
https://download.bleepingcomputer.com/grinler/rkill.com
Rkill SCR: Rkill RCS:
https://download.bleepingcomputer.com/grinler/rkill.scr
https://download.bleepingcomputer.com/grinler/rkill.scr
Rkill PIF: Rkill PIF:
http://download.bleepingcomputer.com/grinler/rkill.pif
http://download.bleepingcomputer.com/grinler/rkill.pif
une fois qu'il aura terminé
* Télécharge Random's System Information Tool (RSIT) de Random/Random.
(outil de diagnostic)
http://images.malwareremoval.com/random/RSIT.exe
* Enregistre le sur ton Bureau.
* Double clique sur RSIT.exe pour lancer l'outil.
* Clique sur "Continue" à l'écran Disclaimer.
* Si l'outil HijackThis n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu s'il te le demande)
et tu devras accepter la licence.
* Une fois le scan terminé, deux rapports vont apparaître : poste les dans deux messages séparés stp
Les rapports se trouvent à cet endroit:
C:\rsit\info.txt
C:\rsit\log.txt
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
info.txt logfile of random's system information tool 1.06 2010-04-01 18:40:41
======Uninstall list======
-(/'|'\)- DivX Codec 3.11a Codec -(/'|'\)--->C:\WINDOWS\System32\rundll32.exe setupapi,InstallHinfSection Remove_DivX 132 C:\WINDOWS\INF\DivX.inf
-->C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Photoshop 7.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\appc\Photoshop 7.0\Uninst.isu" -c"C:\appc\Photoshop 7.0\Uninst.dll"
Advanced Port Scanner v1.3-->C:\Program Files\Advanced Port Scanner\uninstal.exe
Aion-->"C:\Program Files\InstallShield Installation Information\{452E1E7A-47F9-4084-8899-BA74F372D55F}\setup.exe" -runfromtemp -l0x040c -removeonly
aMSN 0.97.2-->C:\appc\aMSN\uninstall.exe
ANNO 1404-->"C:\Program Files\InstallShield Installation Information\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}\Setup.exe" -runfromtemp -l0x040c -removeonly
a-squared Anti-Malware 4.5-->"C:\Program Files\a-squared Anti-Malware\unins000.exe"
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->MsiExec.exe /I{3CE5D820-34E8-4362-BA66-02C50E1AF75E}
ATI Display Driver-->rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI HYDRAVISION-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{083F79E4-6FE9-46FB-A6C6-4F8862742947}\setup.exe"
ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
ATI Problem Report Wizard-->MsiExec.exe /X{5DA6F06A-B389-407B-BF8C-1548767914D8}
ATITool Overclocking Utility-->"C:\appc\ATITool\Uninstall.exe"
Autodesk 3ds Max 2008 32-bit Additional Maps and Material Libraries-->MsiExec.exe /I{EDC8D89C-DC3D-4a3d-ABE7-97D281C0A13A}
Autodesk 3ds Max 2008 32-bit Architectural Materials Library-->MsiExec.exe /I{3C106CBD-3E5A-4275-94F9-23FFE687D090}
Autodesk 3ds Max 2008 32-bit Help-->MsiExec.exe /I{38EC4486-44FF-49da-8FFF-87DA9DCBC06B}
Autodesk 3ds Max 2008 32-bit Vault 2008 Plug-In-->MsiExec.exe /I{679035C8-CEB8-4a5c-847A-5FB3FFADC0EB}
Autodesk 3ds Max 2008 32-bit Vault 5 Plug-In-->MsiExec.exe /I{D1B7094B-8CAC-492a-9EE6-D1576ED35208}
Autodesk 3ds Max 2008 32-bit Videos-->MsiExec.exe /I{AB2037C6-FE46-41fd-B1B2-4D62FBB1E57A}
Autodesk 3ds Max 2008 32-bit-->MsiExec.exe /I{BF658A51-6D4F-4CB0-8D40-D183692B995D}
Autodesk 3ds Max 8 Additional Maps and Materials-->MsiExec.exe /I{59D070F5-CCE6-418B-84A3-CCA63D75ED8A}
Autodesk 3ds Max 8 Architectural Materials-->MsiExec.exe /I{28FDF917-8750-4A54-9E05-D7798E699B47}
Autodesk 3ds Max 8 Reference Files-->MsiExec.exe /I{73C935A7-36C6-48B5-A32E-FD5BD96FD25C}
AVG 7.5-->C:\appc\Grisoft\AVG7\setup.exe /UNINSTALL
AVIVO Codecs-->MsiExec.exe /X{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}
Backburner-->MsiExec.exe /I{3D347E6D-5A03-4342-B5BA-6A771885F379}
CamfrogWEB Advanced ActiveX Plugin (remove only)-->"C:\Program Files\CFWebAdvancedU\Uninstall.exe"
Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
Crystal Reports Basic for Visual Studio 2008-->MsiExec.exe /X{AA467959-A1D6-4F45-90CD-11DC57733F32}
DivX Player-->C:\appc\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Pro Codec Adware-->C:\appc\DivX\DivXProAdwareCodecUninstall.exe /CODEC
DivX Web Player-->C:\appc\DivX\DivXWebPlayerUninstall.exe /PLUGIN
DreamStation DXi-->C:\WINDOWS\DSDXIRMV.EXE C:\PROGRAM FILES\AUDIO SIMULATION\DREAMSTATION DXI
eMule-->"C:\appc\eMule\Uninstall.exe"
FBX Plugin 2006.11.1 for Max 2008-->C:\Program Files\Autodesk\FBX\FbxPlugins\2006.11.1\Max2008\Uninstall.exe
FileZilla (remove only)-->"C:\appc\FileZilla\uninstall.exe"
FL Studio 4.1-->MsiExec.exe /X{450E216C-CC53-4E53-86AD-3938A1046603}
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
Governor of Poker-->"C:\Program Files\orange\jeux\Governor of Poker\Uninstall.exe" "C:\Program Files\orange\jeux\Governor of Poker\install.log"
HP Customer Participation Program 9.0-->C:\appc\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Deskjet All-In-One Software 9.0-->C:\appc\HP\Digital Imaging\{FA8A44D7-3E8A-4034-9C4F-088FA6B72BC4}\setup\hpzscr01.exe -datfile hposcr14.dat
HP Imaging Device Functions 9.0-->C:\appc\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart Essential 2.01-->C:\appc\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
HP Photosmart, Officejet and Deskjet 7.0.A-->C:\appc\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzscr01.exe -datfile hposcr11.dat
HP Product Assistant-->MsiExec.exe /I{36FDBE6E-6684-462B-AE98-9A39A1B200CC}
HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
HP Solution Center 9.0-->C:\appc\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{FE57DE70-95DE-4B64-9266-84DA811053DB}
HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
Indeo® XP Software-->C:\WINDOWS\IsUninst.exe -fC:\appc\Ligos\Indeo\UninstXP.isu
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) SE Runtime Environment 6 Update 1-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
KC Softwares VideoInspector-->"C:\Program Files\KC Softwares\VideoInspector\unins000.exe"
Kit Runtime VB6.0-->C:\WINDOWS\st6unst.exe -n "C:\WINDOWS\system32\ST6UNST.LOG"
LC5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66022DA4-0E8D-45C7-A533-B70A38876854}\Setup.exe"
LuckyTender 1.3.1-->C:\Program Files\LuckyTender\uninst.exe
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft .NET Framework 3.5-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5\setup.exe
Microsoft .NET Framework 3.5-->MsiExec.exe /I{2FC099BD-AC9B-33EB-809C-D332E1B27C40}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Device Emulator version 3.0 - ENU-->MsiExec.exe /X{B32E7732-B2FB-3FD0-81AC-6025B1104C66}
Microsoft Document Explorer 2008 Language Pack - FRA-->MsiExec.exe /X{AACA7728-BE87-3D11-8A3F-773664BFCF1B}
Microsoft Document Explorer 2008-->C:\Program Files\Fichiers communs\Microsoft Shared\Help 9\Microsoft Document Explorer 2008\install.exe
Microsoft Document Explorer 2008-->MsiExec.exe /X{6753B40C-0FBD-3BED-8A9D-0ACAC2DCD85D}
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Visual Web Developer 2007-->MsiExec.exe /X{90120000-0021-0000-0000-0000000FF1CE}
Microsoft Office Visual Web Developer MUI (English) 2007-->MsiExec.exe /X{90120000-0021-0409-0000-0000000FF1CE}
Microsoft Office XP Professional avec FrontPage-->MsiExec.exe /I{9028040C-6000-11D3-8CFE-0050048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server 2005 Express Edition (SQLEXPRESS)-->MsiExec.exe /I{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}
Microsoft SQL Server 2005 Tools Express Edition-->MsiExec.exe /I{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}
Microsoft SQL Server 2005-->"c:\Program Files\Microsoft SQL Server\90\Setup Bootstrap\ARPWrapper.exe" /Remove
Microsoft SQL Server Compact 3.5 Design Tools ENU-->MsiExec.exe /X{2E5C075E-11AB-4BDD-918C-7B9A68953FF8}
Microsoft SQL Server Compact 3.5 ENU-->MsiExec.exe /I{BCC899FE-2DAA-460C-A5FB-60291E73D9C3}
Microsoft SQL Server Compact 3.5 for Devices ENU-->MsiExec.exe /I{241F2BF7-69EB-42A4-9156-96B2426C7504}
Microsoft SQL Server Database Publishing Wizard 1.2-->MsiExec.exe /X{9A33B83D-FFC4-44CF-BEEF-632DECEF2FCD}
Microsoft SQL Server Native Client-->MsiExec.exe /I{F9B3DD02-B0B3-42E9-8650-030DFF0D133D}
Microsoft SQL Server Setup Support Files (English)-->MsiExec.exe /X{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{E9F44C98-B8B6-480F-AF7B-E42A0A46F4E3}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual Studio 2008 Performance Collection Tools - ENU-->MsiExec.exe /I{EB3F5C2A-0754-38B8-8722-7B537006BF46}
Microsoft Visual Studio Team System 2008 Team Suite - ENU-->C:\appc\Microsoft Visual Studio 2008\Microsoft Visual Studio Team System 2008 Team Suite - ENU\setup.exe
Microsoft Visual Studio Web Authoring Component-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall VISUALWEBDEVELOPER /dll OSETUP.DLL
Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools-->MsiExec.exe /X{05EC21B8-4593-3037-A781-A6B5AFFCB19D}
Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries-->MsiExec.exe /X{842FAF7C-50EF-4463-9B8F-6222E1384D7D}
Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and IntelliSense-->MsiExec.exe /X{64c5b887-b5ee-42b8-8596-78905a6b5f1f}
Microsoft Windows SDK for Visual Studio 2008 Tools-->MsiExec.exe /X{CAA376AF-0DE8-4FCA-942E-C6AC579B94B3}
Microsoft Windows SDK for Visual Studio 2008 Win32 Tools-->MsiExec.exe /X{B268E9A1-04A9-40D0-9866-846BE2B74BA7}
Mise à jour de sécurité pour Windows XP (KB893066)-->"C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
Module linguistique Microsoft Document Explorer 2008 - FRA-->C:\Program Files\Fichiers communs\Microsoft Shared\Help 9\Microsoft Document Explorer 2008 Language Pack - FRA\install.exe
moto6811-->C:\WINDOWS\unin040c.exe -fC:\appc\Simulateurs\moto6811\DeIsL1.isu -cC:\appc\Simulateurs\moto6811\_ISREG32.DLL
Mount&Blade-->C:\jeux\Mount&Blade\uninstall.exe
Mozilla Firefox (3.5.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSDN Library for Visual Studio 2008 - ENU-->C:\Program Files\MSDN\MSDN9.0\MSDN Library for Visual Studio 2008 - ENU\setup.exe
MSDN Library for Visual Studio 2008 - ENU-->MsiExec.exe /X{3A762A82-618D-3CAA-B847-D074ABFA0B2E}
MSDN Library for Visual Studio 2008 SP1 - FRA-->MsiExec.exe /X{41780632-1841-3FBC-B7BE-8E8A4031E257}
MSDN Library pour Visual Studio 2008 SP1-->C:\Program Files\MSDN\MSDN9.0\MSDN Library for Visual Studio 2008 SP1 - FRA\setup.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
MUSK Codec Pack v5-->"C:\appc\MUSK Codec Pack v5\unins000.exe"
MySQL Connector/ODBC 3.51-->MsiExec.exe /I{EDE4AA32-ECD4-4FC2-BAD2-E50ED86219E6}
NCsoft Launcher-->"C:\Program Files\InstallShield Installation Information\{C9FB868B-2086-4EE2-BD4F-BFBA36B131F4}\setup.exe" -runfromtemp -l0x040c -removeonly
Nero 7 Ultra Edition-->MsiExec.exe /I{F14B8ECC-BDA0-4987-9201-D7B7DBE11036}
Notepad++-->C:\appc\Notepad++\uninstall.exe
Oblivion-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{35CB6715-41F8-4F99-8881-6FC75BF054B0}\setup.exe" -l0x40c -removeonly
OCR Software by I.R.I.S 7.0-->C:\appc\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
On2 VP3 Video for Windows Codec-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CF59708F-60F4-11D5-866A-00A0D2183227}\Setup.exe" -l0x9
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
PICBASIC studio-->C:\WINDOWS\IsUninst.exe -fc:\appc\PICBASIC\Uninst.isu
PokerStars-->"C:\jeux\PokerStars\PokerStarsUninstall.exe" /u:PokerStars
Programme de gestion Camera de Logitech®-->"C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
Quest3D 3.5.1-->"C:\appc\Act-3D\Quest3D 3.5.1\unins000.exe"
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe" -l0x40c -removeonly
Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
SeaMonkey (2.0.2)-->C:\Program Files\SeaMonkey\uninstall\helper.exe
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
SmartFTP Client 3.0 Setup Files (remove only)-->C:\Program Files\SmartFTP Client 3.0 Setup Files\uninst-sftp.exe
SmartFTP Client-->MsiExec.exe /I{6F23C1A3-9F62-470C-BD12-B83F04E67865}
SplitCam-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{00718491-55BF-46C6-83EF-4B3B95AC807A}\setup.exe" -l0x9 -removeonly
SPORE(TM)-->"C:\Program Files\InstallShield Installation Information\{9DF0196F-B6B8-4C3A-8790-DE42AA530101}\SPORESetup.exe" -runfromtemp -l0x040c -removeonly
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Startup Manager 2.0-->C:\WINDOWS\uninst.exe -f"c:\appc\Miclone\Startup Manager 2.0\DeIsL1.isu" -c"c:\appc\Miclone\Startup Manager 2.0\_ISREG32.DLL"
Super macro 3.1-->C:\appc\Super macro\uninst.exe
TeamSpeak 2 RC2-->C:\Teamspeak2_RC2\unins000.exe
The 4th Coming v1.40 with expanded content by Dialsoft-->C:\jeux\THE4TH~1\Uninst\UNWISE.EXE C:\jeux\THE4TH~1\Uninst\INSTALL.LOG
The 4th Coming v1.50 with expanded content by Dialsoft-->C:\jeux\THE4TH~1\Uninst\UNWISE.EXE C:\jeux\THE4TH~1\Uninst\INSTALL.LOG
Theme Hospital-->C:\WINDOWS\unin040c.exe -fc:\appc\theme_hospital\jeux\DeIsL1.isu
Turbo Squid Tentacles 3ds Max 2008-->MsiExec.exe /X{72019134-3A61-4C39-A540-245600C4CDFA}
VideoLAN VLC media player 0.7.0-->"C:\appc\VideoLAN\VLC\uninstall.exe"
Virtools 4.0-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{676F71C1-A4A1-4FB6-BC14-C455CF31ACC4}
Visual Studio Tools for the Office system 3.0 Runtime-->C:\Program Files\Fichiers communs\Microsoft Shared\VSTO\9.0\Visual Studio Tools for the Office system 3.0 Runtime\install.exe
Visual Studio Tools for the Office system 3.0 Runtime-->MsiExec.exe /X{8FB53850-246A-3507-8ADE-0060093FFEA6}
VP6 VFW Codec-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A23866A0-738B-4091-9924-0B0DE3988A15}\Setup.exe" -l0x9
WampServer 2.0-->"c:\wamp\unins000.exe"
Warhammer Online - Age of Reckoning-->"C:\jeux\Warhammer Online - Age of Reckoning\unins000.exe"
WinAVI Video Converter 7.7.1-->"C:\appc\WinAVI Video Converter\unins000.exe"
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
Windows Mobile 5.0 SDK R2 for Pocket PC-->MsiExec.exe /I{6C9F6D23-E9AD-43C9-B43A-011562AAF876}
Windows Mobile 5.0 SDK R2 for Smartphone-->MsiExec.exe /I{9656F3AC-6BA9-43F0-ABED-F214B5DAB27B}
Windows XP Service Pack 2-->C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
WinHTTrack Website Copier 3.43-->"C:\app\WinHTTrack\unins000.exe"
WinISO 5.3-->C:\appc\WinISO\unins000.exe
WinPcap 4.0.2-->C:\Program Files\WinPcap\uninstall.exe
WinRAR archiver-->C:\appcWinRAR\uninstall.exe
Wireshark 1.0.7-->"C:\Program Files\Wireshark\uninstall.exe"
World of Warcraft-->C:\Program Files\Fichiers communs\Blizzard Entertainment\World of Warcraft\Uninstall.exe
Wow Cartographe 1.07-->C:\jeux\WowCartographe\uninst.exe
XviD MPEG-4 Video Codec-->C:\appc\XviD\unins000.exe
=====HijackThis Backups=====
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe [2009-04-18]
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab [2009-04-18]
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html [2009-04-18]
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab [2009-04-18]
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2009-05-03]
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-05-03]
O2 - BHO: LuckyTender - {5E2402A0-5F99-4188-B30D-D8743996B340} - C:\Program Files\LuckyTender\1.3.1\LuckyTender.dll (file missing) [2009-05-03]
O4 - HKLM\..\Run: [DAEMON Tools] "C:\appc\DAEMON Tools\daemon.exe" -lang 1033 [2009-05-03]
O4 - HKLM\..\Run: [sysldtray] C:\windows\ld03.exe [2009-05-03]
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe [2009-05-03]
O4 - HKLM\..\Run: [AVG7_CC] C:\appc\Grisoft\AVG7\avgcc.exe /STARTUP [2009-05-03]
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\appc\HP\Digital Imaging\bin\hpqtra08.exe [2009-05-03]
O4 - HKCU\..\Run: [dll32] dll32 [2009-05-03]
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ? [2009-05-03]
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" [2009-05-03]
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-05-03]
O4 - HKLM\..\Run: [pp] C:\windows\pp06.exe [2009-05-03]
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background [2009-05-03]
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [2009-05-03]
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE [2009-05-03]
O4 - HKLM\..\Run: [sysnltray2] c:\windows\nl12.exe [2009-05-03]
O4 - Global Startup: Microsoft Office.lnk = C:\appc\Microsoft Office\Office10\OSA.EXE [2009-05-03]
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE [2009-05-03]
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-05-03]
O4 - HKCU\..\Run: [DL32] DL32 [2009-05-03]
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll [2009-05-03]
O4 - Startup: Sins of a Solar Empire Launcher.lnk = E:\SINS_Launcher.exe [2009-05-03]
O4 - HKLM\..\Run: [HP Software Update] C:\appc\HP\HP Software Update\HPWuSchd2.exe [2009-05-03]
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe [2009-05-03]
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe [2009-05-03]
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe" [2009-05-03]
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-05-03]
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) [2009-05-03]
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-05-03]
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2009-05-03]
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe [2009-05-03]
O4 - HKLM\..\Run: [sysfbtray] c:\windows\freddy42.exe [2009-05-03]
O2 - BHO: Microsoft Web Test Recorder 9.0 Helper - {E31CE47F-C268-41ba-897B-B415E613947D} - C:\appc\Microsoft Visual Studio 2008\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO90.dll [2009-05-03]
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE [2009-05-03]
======Hosts File======
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
======Security center information======
AV: AVG 7.5.560 (outdated)
======System event log======
Computer Name: PSYKO
Event Code: 7036
Message: Le service Gestionnaire de connexions d'accès distant est entré dans l'état : en cours d'exécution.
Record Number: 270110
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Gestionnaire de connexions d'accès distant.
Record Number: 270109
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User: PSYKO\lolo
Computer Name: PSYKO
Event Code: 7036
Message: Le service Téléphonie est entré dans l'état : en cours d'exécution.
Record Number: 270108
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 7006
Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
Accès refusé.
Record Number: 270107
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: erreur
User:
Computer Name: PSYKO
Event Code: 7036
Message: Le service Service de découvertes SSDP est entré dans l'état : en cours d'exécution.
Record Number: 270106
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: PSYKO
Event Code: 9666
Message: The Service Broker protocol transport is disabled or not configured.
Record Number: 33302
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115456.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 3408
Message: Recovery is complete. This is an informational message only. No user action is required.
Record Number: 33301
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115456.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 17137
Message: Starting up database 'tempdb'.
Record Number: 33300
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115455.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 17126
Message: SQL Server is now ready for client connections. This is an informational message; no user action is required.
Record Number: 33299
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115454.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 17199
Message: Dedicated administrator connection support was not started because it is not available on this edition of SQL Server. This is an informational message only. No user action is required.
Record Number: 33298
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115454.000000+060
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\Autodesk Shared\;C:\appc\Autodesk\backburner\;c:\Program Files\Microsoft SQL Server\90\Tools\binn\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0f06
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
"VS90COMNTOOLS"=C:\appc\Microsoft Visual Studio 2008\Common7\Tools\
-----------------EOF-----------------
======Uninstall list======
-(/'|'\)- DivX Codec 3.11a Codec -(/'|'\)--->C:\WINDOWS\System32\rundll32.exe setupapi,InstallHinfSection Remove_DivX 132 C:\WINDOWS\INF\DivX.inf
-->C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Photoshop 7.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\appc\Photoshop 7.0\Uninst.isu" -c"C:\appc\Photoshop 7.0\Uninst.dll"
Advanced Port Scanner v1.3-->C:\Program Files\Advanced Port Scanner\uninstal.exe
Aion-->"C:\Program Files\InstallShield Installation Information\{452E1E7A-47F9-4084-8899-BA74F372D55F}\setup.exe" -runfromtemp -l0x040c -removeonly
aMSN 0.97.2-->C:\appc\aMSN\uninstall.exe
ANNO 1404-->"C:\Program Files\InstallShield Installation Information\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}\Setup.exe" -runfromtemp -l0x040c -removeonly
a-squared Anti-Malware 4.5-->"C:\Program Files\a-squared Anti-Malware\unins000.exe"
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->MsiExec.exe /I{3CE5D820-34E8-4362-BA66-02C50E1AF75E}
ATI Display Driver-->rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI HYDRAVISION-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{083F79E4-6FE9-46FB-A6C6-4F8862742947}\setup.exe"
ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
ATI Problem Report Wizard-->MsiExec.exe /X{5DA6F06A-B389-407B-BF8C-1548767914D8}
ATITool Overclocking Utility-->"C:\appc\ATITool\Uninstall.exe"
Autodesk 3ds Max 2008 32-bit Additional Maps and Material Libraries-->MsiExec.exe /I{EDC8D89C-DC3D-4a3d-ABE7-97D281C0A13A}
Autodesk 3ds Max 2008 32-bit Architectural Materials Library-->MsiExec.exe /I{3C106CBD-3E5A-4275-94F9-23FFE687D090}
Autodesk 3ds Max 2008 32-bit Help-->MsiExec.exe /I{38EC4486-44FF-49da-8FFF-87DA9DCBC06B}
Autodesk 3ds Max 2008 32-bit Vault 2008 Plug-In-->MsiExec.exe /I{679035C8-CEB8-4a5c-847A-5FB3FFADC0EB}
Autodesk 3ds Max 2008 32-bit Vault 5 Plug-In-->MsiExec.exe /I{D1B7094B-8CAC-492a-9EE6-D1576ED35208}
Autodesk 3ds Max 2008 32-bit Videos-->MsiExec.exe /I{AB2037C6-FE46-41fd-B1B2-4D62FBB1E57A}
Autodesk 3ds Max 2008 32-bit-->MsiExec.exe /I{BF658A51-6D4F-4CB0-8D40-D183692B995D}
Autodesk 3ds Max 8 Additional Maps and Materials-->MsiExec.exe /I{59D070F5-CCE6-418B-84A3-CCA63D75ED8A}
Autodesk 3ds Max 8 Architectural Materials-->MsiExec.exe /I{28FDF917-8750-4A54-9E05-D7798E699B47}
Autodesk 3ds Max 8 Reference Files-->MsiExec.exe /I{73C935A7-36C6-48B5-A32E-FD5BD96FD25C}
AVG 7.5-->C:\appc\Grisoft\AVG7\setup.exe /UNINSTALL
AVIVO Codecs-->MsiExec.exe /X{C941F1F1-25B3-4DF5-83E6-888C51A1AAB6}
Backburner-->MsiExec.exe /I{3D347E6D-5A03-4342-B5BA-6A771885F379}
CamfrogWEB Advanced ActiveX Plugin (remove only)-->"C:\Program Files\CFWebAdvancedU\Uninstall.exe"
Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
Crystal Reports Basic for Visual Studio 2008-->MsiExec.exe /X{AA467959-A1D6-4F45-90CD-11DC57733F32}
DivX Player-->C:\appc\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Pro Codec Adware-->C:\appc\DivX\DivXProAdwareCodecUninstall.exe /CODEC
DivX Web Player-->C:\appc\DivX\DivXWebPlayerUninstall.exe /PLUGIN
DreamStation DXi-->C:\WINDOWS\DSDXIRMV.EXE C:\PROGRAM FILES\AUDIO SIMULATION\DREAMSTATION DXI
eMule-->"C:\appc\eMule\Uninstall.exe"
FBX Plugin 2006.11.1 for Max 2008-->C:\Program Files\Autodesk\FBX\FbxPlugins\2006.11.1\Max2008\Uninstall.exe
FileZilla (remove only)-->"C:\appc\FileZilla\uninstall.exe"
FL Studio 4.1-->MsiExec.exe /X{450E216C-CC53-4E53-86AD-3938A1046603}
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
Governor of Poker-->"C:\Program Files\orange\jeux\Governor of Poker\Uninstall.exe" "C:\Program Files\orange\jeux\Governor of Poker\install.log"
HP Customer Participation Program 9.0-->C:\appc\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Deskjet All-In-One Software 9.0-->C:\appc\HP\Digital Imaging\{FA8A44D7-3E8A-4034-9C4F-088FA6B72BC4}\setup\hpzscr01.exe -datfile hposcr14.dat
HP Imaging Device Functions 9.0-->C:\appc\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart Essential 2.01-->C:\appc\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
HP Photosmart, Officejet and Deskjet 7.0.A-->C:\appc\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzscr01.exe -datfile hposcr11.dat
HP Product Assistant-->MsiExec.exe /I{36FDBE6E-6684-462B-AE98-9A39A1B200CC}
HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
HP Solution Center 9.0-->C:\appc\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{FE57DE70-95DE-4B64-9266-84DA811053DB}
HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
Indeo® XP Software-->C:\WINDOWS\IsUninst.exe -fC:\appc\Ligos\Indeo\UninstXP.isu
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) SE Runtime Environment 6 Update 1-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
KC Softwares VideoInspector-->"C:\Program Files\KC Softwares\VideoInspector\unins000.exe"
Kit Runtime VB6.0-->C:\WINDOWS\st6unst.exe -n "C:\WINDOWS\system32\ST6UNST.LOG"
LC5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66022DA4-0E8D-45C7-A533-B70A38876854}\Setup.exe"
LuckyTender 1.3.1-->C:\Program Files\LuckyTender\uninst.exe
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft .NET Framework 3.5-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5\setup.exe
Microsoft .NET Framework 3.5-->MsiExec.exe /I{2FC099BD-AC9B-33EB-809C-D332E1B27C40}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Device Emulator version 3.0 - ENU-->MsiExec.exe /X{B32E7732-B2FB-3FD0-81AC-6025B1104C66}
Microsoft Document Explorer 2008 Language Pack - FRA-->MsiExec.exe /X{AACA7728-BE87-3D11-8A3F-773664BFCF1B}
Microsoft Document Explorer 2008-->C:\Program Files\Fichiers communs\Microsoft Shared\Help 9\Microsoft Document Explorer 2008\install.exe
Microsoft Document Explorer 2008-->MsiExec.exe /X{6753B40C-0FBD-3BED-8A9D-0ACAC2DCD85D}
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Visual Web Developer 2007-->MsiExec.exe /X{90120000-0021-0000-0000-0000000FF1CE}
Microsoft Office Visual Web Developer MUI (English) 2007-->MsiExec.exe /X{90120000-0021-0409-0000-0000000FF1CE}
Microsoft Office XP Professional avec FrontPage-->MsiExec.exe /I{9028040C-6000-11D3-8CFE-0050048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server 2005 Express Edition (SQLEXPRESS)-->MsiExec.exe /I{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}
Microsoft SQL Server 2005 Tools Express Edition-->MsiExec.exe /I{2750B389-A2D2-4953-99CA-27C1F2A8E6FD}
Microsoft SQL Server 2005-->"c:\Program Files\Microsoft SQL Server\90\Setup Bootstrap\ARPWrapper.exe" /Remove
Microsoft SQL Server Compact 3.5 Design Tools ENU-->MsiExec.exe /X{2E5C075E-11AB-4BDD-918C-7B9A68953FF8}
Microsoft SQL Server Compact 3.5 ENU-->MsiExec.exe /I{BCC899FE-2DAA-460C-A5FB-60291E73D9C3}
Microsoft SQL Server Compact 3.5 for Devices ENU-->MsiExec.exe /I{241F2BF7-69EB-42A4-9156-96B2426C7504}
Microsoft SQL Server Database Publishing Wizard 1.2-->MsiExec.exe /X{9A33B83D-FFC4-44CF-BEEF-632DECEF2FCD}
Microsoft SQL Server Native Client-->MsiExec.exe /I{F9B3DD02-B0B3-42E9-8650-030DFF0D133D}
Microsoft SQL Server Setup Support Files (English)-->MsiExec.exe /X{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{E9F44C98-B8B6-480F-AF7B-E42A0A46F4E3}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual Studio 2008 Performance Collection Tools - ENU-->MsiExec.exe /I{EB3F5C2A-0754-38B8-8722-7B537006BF46}
Microsoft Visual Studio Team System 2008 Team Suite - ENU-->C:\appc\Microsoft Visual Studio 2008\Microsoft Visual Studio Team System 2008 Team Suite - ENU\setup.exe
Microsoft Visual Studio Web Authoring Component-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall VISUALWEBDEVELOPER /dll OSETUP.DLL
Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools-->MsiExec.exe /X{05EC21B8-4593-3037-A781-A6B5AFFCB19D}
Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries-->MsiExec.exe /X{842FAF7C-50EF-4463-9B8F-6222E1384D7D}
Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and IntelliSense-->MsiExec.exe /X{64c5b887-b5ee-42b8-8596-78905a6b5f1f}
Microsoft Windows SDK for Visual Studio 2008 Tools-->MsiExec.exe /X{CAA376AF-0DE8-4FCA-942E-C6AC579B94B3}
Microsoft Windows SDK for Visual Studio 2008 Win32 Tools-->MsiExec.exe /X{B268E9A1-04A9-40D0-9866-846BE2B74BA7}
Mise à jour de sécurité pour Windows XP (KB893066)-->"C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
Module linguistique Microsoft Document Explorer 2008 - FRA-->C:\Program Files\Fichiers communs\Microsoft Shared\Help 9\Microsoft Document Explorer 2008 Language Pack - FRA\install.exe
moto6811-->C:\WINDOWS\unin040c.exe -fC:\appc\Simulateurs\moto6811\DeIsL1.isu -cC:\appc\Simulateurs\moto6811\_ISREG32.DLL
Mount&Blade-->C:\jeux\Mount&Blade\uninstall.exe
Mozilla Firefox (3.5.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSDN Library for Visual Studio 2008 - ENU-->C:\Program Files\MSDN\MSDN9.0\MSDN Library for Visual Studio 2008 - ENU\setup.exe
MSDN Library for Visual Studio 2008 - ENU-->MsiExec.exe /X{3A762A82-618D-3CAA-B847-D074ABFA0B2E}
MSDN Library for Visual Studio 2008 SP1 - FRA-->MsiExec.exe /X{41780632-1841-3FBC-B7BE-8E8A4031E257}
MSDN Library pour Visual Studio 2008 SP1-->C:\Program Files\MSDN\MSDN9.0\MSDN Library for Visual Studio 2008 SP1 - FRA\setup.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
MUSK Codec Pack v5-->"C:\appc\MUSK Codec Pack v5\unins000.exe"
MySQL Connector/ODBC 3.51-->MsiExec.exe /I{EDE4AA32-ECD4-4FC2-BAD2-E50ED86219E6}
NCsoft Launcher-->"C:\Program Files\InstallShield Installation Information\{C9FB868B-2086-4EE2-BD4F-BFBA36B131F4}\setup.exe" -runfromtemp -l0x040c -removeonly
Nero 7 Ultra Edition-->MsiExec.exe /I{F14B8ECC-BDA0-4987-9201-D7B7DBE11036}
Notepad++-->C:\appc\Notepad++\uninstall.exe
Oblivion-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{35CB6715-41F8-4F99-8881-6FC75BF054B0}\setup.exe" -l0x40c -removeonly
OCR Software by I.R.I.S 7.0-->C:\appc\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
On2 VP3 Video for Windows Codec-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CF59708F-60F4-11D5-866A-00A0D2183227}\Setup.exe" -l0x9
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
PICBASIC studio-->C:\WINDOWS\IsUninst.exe -fc:\appc\PICBASIC\Uninst.isu
PokerStars-->"C:\jeux\PokerStars\PokerStarsUninstall.exe" /u:PokerStars
Programme de gestion Camera de Logitech®-->"C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
Quest3D 3.5.1-->"C:\appc\Act-3D\Quest3D 3.5.1\unins000.exe"
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe" -l0x40c -removeonly
Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
SeaMonkey (2.0.2)-->C:\Program Files\SeaMonkey\uninstall\helper.exe
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
SmartFTP Client 3.0 Setup Files (remove only)-->C:\Program Files\SmartFTP Client 3.0 Setup Files\uninst-sftp.exe
SmartFTP Client-->MsiExec.exe /I{6F23C1A3-9F62-470C-BD12-B83F04E67865}
SplitCam-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{00718491-55BF-46C6-83EF-4B3B95AC807A}\setup.exe" -l0x9 -removeonly
SPORE(TM)-->"C:\Program Files\InstallShield Installation Information\{9DF0196F-B6B8-4C3A-8790-DE42AA530101}\SPORESetup.exe" -runfromtemp -l0x040c -removeonly
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Startup Manager 2.0-->C:\WINDOWS\uninst.exe -f"c:\appc\Miclone\Startup Manager 2.0\DeIsL1.isu" -c"c:\appc\Miclone\Startup Manager 2.0\_ISREG32.DLL"
Super macro 3.1-->C:\appc\Super macro\uninst.exe
TeamSpeak 2 RC2-->C:\Teamspeak2_RC2\unins000.exe
The 4th Coming v1.40 with expanded content by Dialsoft-->C:\jeux\THE4TH~1\Uninst\UNWISE.EXE C:\jeux\THE4TH~1\Uninst\INSTALL.LOG
The 4th Coming v1.50 with expanded content by Dialsoft-->C:\jeux\THE4TH~1\Uninst\UNWISE.EXE C:\jeux\THE4TH~1\Uninst\INSTALL.LOG
Theme Hospital-->C:\WINDOWS\unin040c.exe -fc:\appc\theme_hospital\jeux\DeIsL1.isu
Turbo Squid Tentacles 3ds Max 2008-->MsiExec.exe /X{72019134-3A61-4C39-A540-245600C4CDFA}
VideoLAN VLC media player 0.7.0-->"C:\appc\VideoLAN\VLC\uninstall.exe"
Virtools 4.0-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{676F71C1-A4A1-4FB6-BC14-C455CF31ACC4}
Visual Studio Tools for the Office system 3.0 Runtime-->C:\Program Files\Fichiers communs\Microsoft Shared\VSTO\9.0\Visual Studio Tools for the Office system 3.0 Runtime\install.exe
Visual Studio Tools for the Office system 3.0 Runtime-->MsiExec.exe /X{8FB53850-246A-3507-8ADE-0060093FFEA6}
VP6 VFW Codec-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A23866A0-738B-4091-9924-0B0DE3988A15}\Setup.exe" -l0x9
WampServer 2.0-->"c:\wamp\unins000.exe"
Warhammer Online - Age of Reckoning-->"C:\jeux\Warhammer Online - Age of Reckoning\unins000.exe"
WinAVI Video Converter 7.7.1-->"C:\appc\WinAVI Video Converter\unins000.exe"
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
Windows Mobile 5.0 SDK R2 for Pocket PC-->MsiExec.exe /I{6C9F6D23-E9AD-43C9-B43A-011562AAF876}
Windows Mobile 5.0 SDK R2 for Smartphone-->MsiExec.exe /I{9656F3AC-6BA9-43F0-ABED-F214B5DAB27B}
Windows XP Service Pack 2-->C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
WinHTTrack Website Copier 3.43-->"C:\app\WinHTTrack\unins000.exe"
WinISO 5.3-->C:\appc\WinISO\unins000.exe
WinPcap 4.0.2-->C:\Program Files\WinPcap\uninstall.exe
WinRAR archiver-->C:\appcWinRAR\uninstall.exe
Wireshark 1.0.7-->"C:\Program Files\Wireshark\uninstall.exe"
World of Warcraft-->C:\Program Files\Fichiers communs\Blizzard Entertainment\World of Warcraft\Uninstall.exe
Wow Cartographe 1.07-->C:\jeux\WowCartographe\uninst.exe
XviD MPEG-4 Video Codec-->C:\appc\XviD\unins000.exe
=====HijackThis Backups=====
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe [2009-04-18]
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab [2009-04-18]
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html [2009-04-18]
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab [2009-04-18]
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2009-05-03]
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-05-03]
O2 - BHO: LuckyTender - {5E2402A0-5F99-4188-B30D-D8743996B340} - C:\Program Files\LuckyTender\1.3.1\LuckyTender.dll (file missing) [2009-05-03]
O4 - HKLM\..\Run: [DAEMON Tools] "C:\appc\DAEMON Tools\daemon.exe" -lang 1033 [2009-05-03]
O4 - HKLM\..\Run: [sysldtray] C:\windows\ld03.exe [2009-05-03]
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe [2009-05-03]
O4 - HKLM\..\Run: [AVG7_CC] C:\appc\Grisoft\AVG7\avgcc.exe /STARTUP [2009-05-03]
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\appc\HP\Digital Imaging\bin\hpqtra08.exe [2009-05-03]
O4 - HKCU\..\Run: [dll32] dll32 [2009-05-03]
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ? [2009-05-03]
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" [2009-05-03]
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-05-03]
O4 - HKLM\..\Run: [pp] C:\windows\pp06.exe [2009-05-03]
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background [2009-05-03]
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [2009-05-03]
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE [2009-05-03]
O4 - HKLM\..\Run: [sysnltray2] c:\windows\nl12.exe [2009-05-03]
O4 - Global Startup: Microsoft Office.lnk = C:\appc\Microsoft Office\Office10\OSA.EXE [2009-05-03]
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE [2009-05-03]
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-05-03]
O4 - HKCU\..\Run: [DL32] DL32 [2009-05-03]
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll [2009-05-03]
O4 - Startup: Sins of a Solar Empire Launcher.lnk = E:\SINS_Launcher.exe [2009-05-03]
O4 - HKLM\..\Run: [HP Software Update] C:\appc\HP\HP Software Update\HPWuSchd2.exe [2009-05-03]
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.2.3/cfweb_activex.camfrogweb.com-advanced-2.0.2.3_instmodule.exe [2009-05-03]
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe [2009-05-03]
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe" [2009-05-03]
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-05-03]
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) [2009-05-03]
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-05-03]
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2009-05-03]
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe [2009-05-03]
O4 - HKLM\..\Run: [sysfbtray] c:\windows\freddy42.exe [2009-05-03]
O2 - BHO: Microsoft Web Test Recorder 9.0 Helper - {E31CE47F-C268-41ba-897B-B415E613947D} - C:\appc\Microsoft Visual Studio 2008\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO90.dll [2009-05-03]
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE [2009-05-03]
======Hosts File======
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
======Security center information======
AV: AVG 7.5.560 (outdated)
======System event log======
Computer Name: PSYKO
Event Code: 7036
Message: Le service Gestionnaire de connexions d'accès distant est entré dans l'état : en cours d'exécution.
Record Number: 270110
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Gestionnaire de connexions d'accès distant.
Record Number: 270109
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User: PSYKO\lolo
Computer Name: PSYKO
Event Code: 7036
Message: Le service Téléphonie est entré dans l'état : en cours d'exécution.
Record Number: 270108
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 7006
Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
Accès refusé.
Record Number: 270107
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: erreur
User:
Computer Name: PSYKO
Event Code: 7036
Message: Le service Service de découvertes SSDP est entré dans l'état : en cours d'exécution.
Record Number: 270106
Source Name: Service Control Manager
Time Written: 20100208111356.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: PSYKO
Event Code: 9666
Message: The Service Broker protocol transport is disabled or not configured.
Record Number: 33302
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115456.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 3408
Message: Recovery is complete. This is an informational message only. No user action is required.
Record Number: 33301
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115456.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 17137
Message: Starting up database 'tempdb'.
Record Number: 33300
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115455.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 17126
Message: SQL Server is now ready for client connections. This is an informational message; no user action is required.
Record Number: 33299
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115454.000000+060
Event Type: Informations
User:
Computer Name: PSYKO
Event Code: 17199
Message: Dedicated administrator connection support was not started because it is not available on this edition of SQL Server. This is an informational message only. No user action is required.
Record Number: 33298
Source Name: MSSQL$SQLEXPRESS
Time Written: 20100221115454.000000+060
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\Autodesk Shared\;C:\appc\Autodesk\backburner\;c:\Program Files\Microsoft SQL Server\90\Tools\binn\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0f06
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
"VS90COMNTOOLS"=C:\appc\Microsoft Visual Studio 2008\Common7\Tools\
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by lolo at 2010-04-01 18:40:28
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 2 GB (1%) free of 238 GB
Total RAM: 2047 MB (67% free)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\appc\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\appc\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E2402A0-5F99-4188-B30D-D8743996B340}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E31CE47F-C268-41ba-897B-B415E613947D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-18 16207872]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"a-squared"=C:\Program Files\a-squared Anti-Malware\a2guard.exe [2010-04-01 3280712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2010-04-01 842240]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-19 1667584]
"PlayNC Launcher"= []
"flec003.exe"=C:\Documents and Settings\lolo\Application Data\hidires\flec003.exe [2010-02-15 2557956]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
HP Digital Imaging Monitor.lnk - C:\appc\HP\Digital Imaging\bin\hpqtra08.exe
Iolo Macro Magic.lnk - C:\appc\Macro Magic\Macros.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-10-04 90112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=1
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\appc\eMule\emule.exe"="C:\appc\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Disabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe"="C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe:*:Enabled:Anno4Web"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe"="C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe:*:Enabled:Warhammer Voice Over Downloader"
"C:\Program Files\SmartFTP Client\SmartFTP.exe"="C:\Program Files\SmartFTP Client\SmartFTP.exe:*:Enabled:SmartFTP Client 3.0"
"C:\Documents and Settings\lolo\Application Data\m\flec006.exe"="C:\Documents and Settings\lolo\Application Data\m\flec006.exe:*:Disabled:flec006"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
======File associations======
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files\trend micro
2010-04-01 18:40:28 ----D---- C:\rsit
2010-04-01 18:32:12 ----D---- C:\Program Files\a-squared Anti-Malware
2010-03-31 19:44:25 ----A---- C:\WINDOWS\ban_list.txt
2010-03-20 13:05:45 ----A---- C:\WINDOWS\system32\ban_list.txt
2010-03-19 23:33:01 ----D---- C:\Documents and Settings\lolo\Application Data\HPAppData
2010-03-19 15:46:47 ----D---- C:\Documents and Settings\All Users\Application Data\WEBREG
2010-03-19 15:45:27 ----D---- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
2010-03-19 15:36:02 ----D---- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
2010-03-19 15:35:37 ----A---- C:\WINDOWS\system32\hpzll5ha.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\hppldcoi.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\difxapi.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpovst10.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpotscl3.dll
2010-03-19 15:35:04 ----RA---- C:\WINDOWS\system32\hpowiax3.dll
======List of files/folders modified in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files
2010-04-01 18:38:36 ----D---- C:\WINDOWS\Temp
2010-04-01 18:18:00 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-04-01 18:16:12 ----D---- C:\Program Files\Windows Media Player
2010-04-01 18:16:06 ----D---- C:\WINDOWS\Prefetch
2010-04-01 18:15:30 ----A---- C:\WINDOWS\NeroDigital.ini
2010-04-01 17:47:30 ----D---- C:\WINDOWS
2010-04-01 00:52:04 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-03-29 22:58:52 ----D---- C:\WINDOWS\system32
2010-03-25 14:38:38 ----D---- C:\Program Files\Mozilla Firefox
2010-03-20 13:06:39 ----D---- C:\WINDOWS\system32\CatRoot2
2010-03-19 15:46:41 ----SHD---- C:\WINDOWS\Installer
2010-03-19 15:46:41 ----HD---- C:\Config.Msi
2010-03-19 15:46:23 ----A---- C:\WINDOWS\win.ini
2010-03-19 15:45:27 ----D---- C:\Program Files\HP
2010-03-19 15:43:06 ----D---- C:\WINDOWS\WinSxS
2010-03-19 15:38:24 ----D---- C:\WINDOWS\twain_32
2010-03-19 15:36:10 ----D---- C:\WINDOWS\system32\drivers
2010-03-19 15:35:23 ----HD---- C:\WINDOWS\inf
2010-03-19 15:35:21 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-03-19 15:35:09 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-03-14 13:35:14 ----D---- C:\Program Files\SeaMonkey
2010-03-11 04:58:00 ----SD---- C:\Documents and Settings\lolo\Application Data\Microsoft
2010-03-09 12:22:01 ----D---- C:\wamp
2010-03-03 15:31:29 ----D---- C:\Documents and Settings\lolo\Application Data\Image Zone Express
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\System32\DRIVERS\ATITool.sys [2006-11-10 24064]
R1 AvgClean;AVG7 Clean Driver; C:\WINDOWS\System32\Drivers\avgclean.sys [2008-11-07 10760]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-19 40320]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-11-25 12032]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2009-08-14 281760]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2009-08-14 25888]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-10-04 1754624]
R3 ATIAVAIW;ATI T200 Unified AVStream service; C:\WINDOWS\System32\DRIVERS\atinavt2.sys [2006-09-06 168832]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2006-12-30 223128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-16 4275712]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-05-27 22016]
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\WINDOWS\System32\DRIVERS\LV561AV.SYS [2005-01-31 211712]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys [2006-06-19 81792]
R3 SPLITCAM;Splitcam, WDM Camera Stream Splitter; C:\WINDOWS\System32\DRIVERS\splitcam.sys [2007-03-01 13824]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2004-08-04 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 MPE;BDA MPE Filter; C:\WINDOWS\System32\DRIVERS\MPE.sys [2004-08-04 15360]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 nm;Pilote du Moniteur réseau; C:\WINDOWS\System32\DRIVERS\NMnt.sys [2004-08-03 40320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-06 34064]
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2007-01-30 47360]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2004-08-04 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 VSPerfDrv90;Performance Tools Driver 9.0; \??\C:\appc\Microsoft Visual Studio 2008\Team Tools\Performance Tools\VSPerfDrv90.sys []
S3 WINIO;WINIO; \??\C:\appc\PICBASIC\winio.sys []
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 Avg7Core;AVG7 Kernel; C:\WINDOWS\System32\Drivers\avg7core.sys [2008-11-07 821856]
S4 Avg7RsW;AVG7 Wrap Driver; C:\WINDOWS\System32\Drivers\avg7rsw.sys [2008-11-07 4224]
S4 Avg7RsXP;AVG7 Resident Driver XP; C:\WINDOWS\System32\Drivers\avg7rsxp.sys [2008-11-07 27776]
S4 AvgTdi;AVG Network Redirector; C:\WINDOWS\System32\Drivers\avgtdi.sys [2008-11-07 4960]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\System32\DRIVERS\sr.sys [2004-08-19 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe [2008-04-08 79360]
R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-18 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2007-02-10 29178224]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-10-03 520192]
S2 AVGEMS;AVG E-mail Scanner; C:\appc\Grisoft\AVG7\avgemc.exe [2010-04-01 406528]
S2 mi-raysat_3dsMax2008_32;mental ray 3.6 Satellite for Autodesk 3ds Max 2008 32-bit 32-bit; C:\appc\Autodesk\3ds Max 2008\mentalray\satellite\raysat_3dsMax2008_32server.exe [2007-09-24 65536]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2007-02-02 69632]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-10-09 724992]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\system32\GameMon.des [2009-08-30 3407412]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2007-11-06 92792]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.8\bin\httpd.exe [2008-01-18 24635]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.0.51b\bin\mysqld-nt.exe [2008-04-17 5750784]
S4 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2006-10-04 425984]
S4 Avg7Alrt;AVG7 Alert Manager Server; C:\appc\Grisoft\AVG7\avgamsvr.exe [2010-02-08 418816]
S4 Avg7UpdSvc;AVG7 Update Service; C:\appc\Grisoft\AVG7\avgupsvc.exe [2010-02-08 49664]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 msvsmon90;Visual Studio 2008 Remote Debugger; C:\appc\Microsoft Visual Studio 2008\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2007-11-07 3004416]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
S4 T4C_Watch;T4C Watch; C:\T4C Server\T4C Watch.exe [2006-01-27 114688]
-----------------EOF-----------------
Run by lolo at 2010-04-01 18:40:28
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 2 GB (1%) free of 238 GB
Total RAM: 2047 MB (67% free)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\appc\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\appc\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E2402A0-5F99-4188-B30D-D8743996B340}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E31CE47F-C268-41ba-897B-B415E613947D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-18 16207872]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"a-squared"=C:\Program Files\a-squared Anti-Malware\a2guard.exe [2010-04-01 3280712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2010-04-01 842240]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-19 1667584]
"PlayNC Launcher"= []
"flec003.exe"=C:\Documents and Settings\lolo\Application Data\hidires\flec003.exe [2010-02-15 2557956]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
HP Digital Imaging Monitor.lnk - C:\appc\HP\Digital Imaging\bin\hpqtra08.exe
Iolo Macro Magic.lnk - C:\appc\Macro Magic\Macros.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-10-04 90112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=1
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\appc\eMule\emule.exe"="C:\appc\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Disabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe"="C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe:*:Enabled:Anno4Web"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe"="C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe:*:Enabled:Warhammer Voice Over Downloader"
"C:\Program Files\SmartFTP Client\SmartFTP.exe"="C:\Program Files\SmartFTP Client\SmartFTP.exe:*:Enabled:SmartFTP Client 3.0"
"C:\Documents and Settings\lolo\Application Data\m\flec006.exe"="C:\Documents and Settings\lolo\Application Data\m\flec006.exe:*:Disabled:flec006"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
======File associations======
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files\trend micro
2010-04-01 18:40:28 ----D---- C:\rsit
2010-04-01 18:32:12 ----D---- C:\Program Files\a-squared Anti-Malware
2010-03-31 19:44:25 ----A---- C:\WINDOWS\ban_list.txt
2010-03-20 13:05:45 ----A---- C:\WINDOWS\system32\ban_list.txt
2010-03-19 23:33:01 ----D---- C:\Documents and Settings\lolo\Application Data\HPAppData
2010-03-19 15:46:47 ----D---- C:\Documents and Settings\All Users\Application Data\WEBREG
2010-03-19 15:45:27 ----D---- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
2010-03-19 15:36:02 ----D---- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
2010-03-19 15:35:37 ----A---- C:\WINDOWS\system32\hpzll5ha.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\hppldcoi.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\difxapi.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpovst10.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpotscl3.dll
2010-03-19 15:35:04 ----RA---- C:\WINDOWS\system32\hpowiax3.dll
======List of files/folders modified in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files
2010-04-01 18:38:36 ----D---- C:\WINDOWS\Temp
2010-04-01 18:18:00 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-04-01 18:16:12 ----D---- C:\Program Files\Windows Media Player
2010-04-01 18:16:06 ----D---- C:\WINDOWS\Prefetch
2010-04-01 18:15:30 ----A---- C:\WINDOWS\NeroDigital.ini
2010-04-01 17:47:30 ----D---- C:\WINDOWS
2010-04-01 00:52:04 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-03-29 22:58:52 ----D---- C:\WINDOWS\system32
2010-03-25 14:38:38 ----D---- C:\Program Files\Mozilla Firefox
2010-03-20 13:06:39 ----D---- C:\WINDOWS\system32\CatRoot2
2010-03-19 15:46:41 ----SHD---- C:\WINDOWS\Installer
2010-03-19 15:46:41 ----HD---- C:\Config.Msi
2010-03-19 15:46:23 ----A---- C:\WINDOWS\win.ini
2010-03-19 15:45:27 ----D---- C:\Program Files\HP
2010-03-19 15:43:06 ----D---- C:\WINDOWS\WinSxS
2010-03-19 15:38:24 ----D---- C:\WINDOWS\twain_32
2010-03-19 15:36:10 ----D---- C:\WINDOWS\system32\drivers
2010-03-19 15:35:23 ----HD---- C:\WINDOWS\inf
2010-03-19 15:35:21 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-03-19 15:35:09 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-03-14 13:35:14 ----D---- C:\Program Files\SeaMonkey
2010-03-11 04:58:00 ----SD---- C:\Documents and Settings\lolo\Application Data\Microsoft
2010-03-09 12:22:01 ----D---- C:\wamp
2010-03-03 15:31:29 ----D---- C:\Documents and Settings\lolo\Application Data\Image Zone Express
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\System32\DRIVERS\ATITool.sys [2006-11-10 24064]
R1 AvgClean;AVG7 Clean Driver; C:\WINDOWS\System32\Drivers\avgclean.sys [2008-11-07 10760]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-19 40320]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-11-25 12032]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2009-08-14 281760]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2009-08-14 25888]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-10-04 1754624]
R3 ATIAVAIW;ATI T200 Unified AVStream service; C:\WINDOWS\System32\DRIVERS\atinavt2.sys [2006-09-06 168832]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2006-12-30 223128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-16 4275712]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-05-27 22016]
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\WINDOWS\System32\DRIVERS\LV561AV.SYS [2005-01-31 211712]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys [2006-06-19 81792]
R3 SPLITCAM;Splitcam, WDM Camera Stream Splitter; C:\WINDOWS\System32\DRIVERS\splitcam.sys [2007-03-01 13824]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2004-08-04 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 MPE;BDA MPE Filter; C:\WINDOWS\System32\DRIVERS\MPE.sys [2004-08-04 15360]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 nm;Pilote du Moniteur réseau; C:\WINDOWS\System32\DRIVERS\NMnt.sys [2004-08-03 40320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-06 34064]
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2007-01-30 47360]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2004-08-04 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 VSPerfDrv90;Performance Tools Driver 9.0; \??\C:\appc\Microsoft Visual Studio 2008\Team Tools\Performance Tools\VSPerfDrv90.sys []
S3 WINIO;WINIO; \??\C:\appc\PICBASIC\winio.sys []
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 Avg7Core;AVG7 Kernel; C:\WINDOWS\System32\Drivers\avg7core.sys [2008-11-07 821856]
S4 Avg7RsW;AVG7 Wrap Driver; C:\WINDOWS\System32\Drivers\avg7rsw.sys [2008-11-07 4224]
S4 Avg7RsXP;AVG7 Resident Driver XP; C:\WINDOWS\System32\Drivers\avg7rsxp.sys [2008-11-07 27776]
S4 AvgTdi;AVG Network Redirector; C:\WINDOWS\System32\Drivers\avgtdi.sys [2008-11-07 4960]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\System32\DRIVERS\sr.sys [2004-08-19 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe [2008-04-08 79360]
R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-18 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2007-02-10 29178224]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-10-03 520192]
S2 AVGEMS;AVG E-mail Scanner; C:\appc\Grisoft\AVG7\avgemc.exe [2010-04-01 406528]
S2 mi-raysat_3dsMax2008_32;mental ray 3.6 Satellite for Autodesk 3ds Max 2008 32-bit 32-bit; C:\appc\Autodesk\3ds Max 2008\mentalray\satellite\raysat_3dsMax2008_32server.exe [2007-09-24 65536]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2007-02-02 69632]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-10-09 724992]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\system32\GameMon.des [2009-08-30 3407412]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2007-11-06 92792]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.8\bin\httpd.exe [2008-01-18 24635]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.0.51b\bin\mysqld-nt.exe [2008-04-17 5750784]
S4 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2006-10-04 425984]
S4 Avg7Alrt;AVG7 Alert Manager Server; C:\appc\Grisoft\AVG7\avgamsvr.exe [2010-02-08 418816]
S4 Avg7UpdSvc;AVG7 Update Service; C:\appc\Grisoft\AVG7\avgupsvc.exe [2010-02-08 49664]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 msvsmon90;Visual Studio 2008 Remote Debugger; C:\appc\Microsoft Visual Studio 2008\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2007-11-07 3004416]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
S4 T4C_Watch;T4C Watch; C:\T4C Server\T4C Watch.exe [2006-01-27 114688]
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by lolo at 2010-04-01 18:40:28
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 2 GB (1%) free of 238 GB
Total RAM: 2047 MB (67% free)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\appc\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\appc\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E2402A0-5F99-4188-B30D-D8743996B340}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E31CE47F-C268-41ba-897B-B415E613947D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-18 16207872]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"a-squared"=C:\Program Files\a-squared Anti-Malware\a2guard.exe [2010-04-01 3280712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2010-04-01 842240]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-19 1667584]
"PlayNC Launcher"= []
"flec003.exe"=C:\Documents and Settings\lolo\Application Data\hidires\flec003.exe [2010-02-15 2557956]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
HP Digital Imaging Monitor.lnk - C:\appc\HP\Digital Imaging\bin\hpqtra08.exe
Iolo Macro Magic.lnk - C:\appc\Macro Magic\Macros.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-10-04 90112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=1
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\appc\eMule\emule.exe"="C:\appc\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Disabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe"="C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe:*:Enabled:Anno4Web"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe"="C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe:*:Enabled:Warhammer Voice Over Downloader"
"C:\Program Files\SmartFTP Client\SmartFTP.exe"="C:\Program Files\SmartFTP Client\SmartFTP.exe:*:Enabled:SmartFTP Client 3.0"
"C:\Documents and Settings\lolo\Application Data\m\flec006.exe"="C:\Documents and Settings\lolo\Application Data\m\flec006.exe:*:Disabled:flec006"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
======File associations======
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files\trend micro
2010-04-01 18:40:28 ----D---- C:\rsit
2010-04-01 18:32:12 ----D---- C:\Program Files\a-squared Anti-Malware
2010-03-31 19:44:25 ----A---- C:\WINDOWS\ban_list.txt
2010-03-20 13:05:45 ----A---- C:\WINDOWS\system32\ban_list.txt
2010-03-19 23:33:01 ----D---- C:\Documents and Settings\lolo\Application Data\HPAppData
2010-03-19 15:46:47 ----D---- C:\Documents and Settings\All Users\Application Data\WEBREG
2010-03-19 15:45:27 ----D---- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
2010-03-19 15:36:02 ----D---- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
2010-03-19 15:35:37 ----A---- C:\WINDOWS\system32\hpzll5ha.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\hppldcoi.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\difxapi.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpovst10.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpotscl3.dll
2010-03-19 15:35:04 ----RA---- C:\WINDOWS\system32\hpowiax3.dll
======List of files/folders modified in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files
2010-04-01 18:38:36 ----D---- C:\WINDOWS\Temp
2010-04-01 18:18:00 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-04-01 18:16:12 ----D---- C:\Program Files\Windows Media Player
2010-04-01 18:16:06 ----D---- C:\WINDOWS\Prefetch
2010-04-01 18:15:30 ----A---- C:\WINDOWS\NeroDigital.ini
2010-04-01 17:47:30 ----D---- C:\WINDOWS
2010-04-01 00:52:04 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-03-29 22:58:52 ----D---- C:\WINDOWS\system32
2010-03-25 14:38:38 ----D---- C:\Program Files\Mozilla Firefox
2010-03-20 13:06:39 ----D---- C:\WINDOWS\system32\CatRoot2
2010-03-19 15:46:41 ----SHD---- C:\WINDOWS\Installer
2010-03-19 15:46:41 ----HD---- C:\Config.Msi
2010-03-19 15:46:23 ----A---- C:\WINDOWS\win.ini
2010-03-19 15:45:27 ----D---- C:\Program Files\HP
2010-03-19 15:43:06 ----D---- C:\WINDOWS\WinSxS
2010-03-19 15:38:24 ----D---- C:\WINDOWS\twain_32
2010-03-19 15:36:10 ----D---- C:\WINDOWS\system32\drivers
2010-03-19 15:35:23 ----HD---- C:\WINDOWS\inf
2010-03-19 15:35:21 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-03-19 15:35:09 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-03-14 13:35:14 ----D---- C:\Program Files\SeaMonkey
2010-03-11 04:58:00 ----SD---- C:\Documents and Settings\lolo\Application Data\Microsoft
2010-03-09 12:22:01 ----D---- C:\wamp
2010-03-03 15:31:29 ----D---- C:\Documents and Settings\lolo\Application Data\Image Zone Express
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\System32\DRIVERS\ATITool.sys [2006-11-10 24064]
R1 AvgClean;AVG7 Clean Driver; C:\WINDOWS\System32\Drivers\avgclean.sys [2008-11-07 10760]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-19 40320]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-11-25 12032]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2009-08-14 281760]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2009-08-14 25888]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-10-04 1754624]
R3 ATIAVAIW;ATI T200 Unified AVStream service; C:\WINDOWS\System32\DRIVERS\atinavt2.sys [2006-09-06 168832]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2006-12-30 223128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-16 4275712]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-05-27 22016]
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\WINDOWS\System32\DRIVERS\LV561AV.SYS [2005-01-31 211712]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys [2006-06-19 81792]
R3 SPLITCAM;Splitcam, WDM Camera Stream Splitter; C:\WINDOWS\System32\DRIVERS\splitcam.sys [2007-03-01 13824]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2004-08-04 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 MPE;BDA MPE Filter; C:\WINDOWS\System32\DRIVERS\MPE.sys [2004-08-04 15360]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 nm;Pilote du Moniteur réseau; C:\WINDOWS\System32\DRIVERS\NMnt.sys [2004-08-03 40320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-06 34064]
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2007-01-30 47360]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2004-08-04 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 VSPerfDrv90;Performance Tools Driver 9.0; \??\C:\appc\Microsoft Visual Studio 2008\Team Tools\Performance Tools\VSPerfDrv90.sys []
S3 WINIO;WINIO; \??\C:\appc\PICBASIC\winio.sys []
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 Avg7Core;AVG7 Kernel; C:\WINDOWS\System32\Drivers\avg7core.sys [2008-11-07 821856]
S4 Avg7RsW;AVG7 Wrap Driver; C:\WINDOWS\System32\Drivers\avg7rsw.sys [2008-11-07 4224]
S4 Avg7RsXP;AVG7 Resident Driver XP; C:\WINDOWS\System32\Drivers\avg7rsxp.sys [2008-11-07 27776]
S4 AvgTdi;AVG Network Redirector; C:\WINDOWS\System32\Drivers\avgtdi.sys [2008-11-07 4960]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\System32\DRIVERS\sr.sys [2004-08-19 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe [2008-04-08 79360]
R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-18 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2007-02-10 29178224]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-10-03 520192]
S2 AVGEMS;AVG E-mail Scanner; C:\appc\Grisoft\AVG7\avgemc.exe [2010-04-01 406528]
S2 mi-raysat_3dsMax2008_32;mental ray 3.6 Satellite for Autodesk 3ds Max 2008 32-bit 32-bit; C:\appc\Autodesk\3ds Max 2008\mentalray\satellite\raysat_3dsMax2008_32server.exe [2007-09-24 65536]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2007-02-02 69632]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-10-09 724992]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\system32\GameMon.des [2009-08-30 3407412]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2007-11-06 92792]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.8\bin\httpd.exe [2008-01-18 24635]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.0.51b\bin\mysqld-nt.exe [2008-04-17 5750784]
S4 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2006-10-04 425984]
S4 Avg7Alrt;AVG7 Alert Manager Server; C:\appc\Grisoft\AVG7\avgamsvr.exe [2010-02-08 418816]
S4 Avg7UpdSvc;AVG7 Update Service; C:\appc\Grisoft\AVG7\avgupsvc.exe [2010-02-08 49664]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 msvsmon90;Visual Studio 2008 Remote Debugger; C:\appc\Microsoft Visual Studio 2008\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2007-11-07 3004416]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
S4 T4C_Watch;T4C Watch; C:\T4C Server\T4C Watch.exe [2006-01-27 114688]
-----------------EOF-----------------
Run by lolo at 2010-04-01 18:40:28
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 2 GB (1%) free of 238 GB
Total RAM: 2047 MB (67% free)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\appc\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\appc\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E2402A0-5F99-4188-B30D-D8743996B340}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E31CE47F-C268-41ba-897B-B415E613947D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2006-12-18 231160]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-18 16207872]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"a-squared"=C:\Program Files\a-squared Anti-Malware\a2guard.exe [2010-04-01 3280712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2010-04-01 842240]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-19 1667584]
"PlayNC Launcher"= []
"flec003.exe"=C:\Documents and Settings\lolo\Application Data\hidires\flec003.exe [2010-02-15 2557956]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
HP Digital Imaging Monitor.lnk - C:\appc\HP\Digital Imaging\bin\hpqtra08.exe
Iolo Macro Magic.lnk - C:\appc\Macro Magic\Macros.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-10-04 90112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=1
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\appc\eMule\emule.exe"="C:\appc\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Disabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe"="C:\Program Files\Ubisoft\Related Designs\ANNO 1404\tools\Anno4Web.exe:*:Enabled:Anno4Web"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe"="C:\Documents and Settings\lolo\Bureau\WAR_Trial_Downloader.exe:*:Enabled:Warhammer Voice Over Downloader"
"C:\Program Files\SmartFTP Client\SmartFTP.exe"="C:\Program Files\SmartFTP Client\SmartFTP.exe:*:Enabled:SmartFTP Client 3.0"
"C:\Documents and Settings\lolo\Application Data\m\flec006.exe"="C:\Documents and Settings\lolo\Application Data\m\flec006.exe:*:Disabled:flec006"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
======File associations======
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files\trend micro
2010-04-01 18:40:28 ----D---- C:\rsit
2010-04-01 18:32:12 ----D---- C:\Program Files\a-squared Anti-Malware
2010-03-31 19:44:25 ----A---- C:\WINDOWS\ban_list.txt
2010-03-20 13:05:45 ----A---- C:\WINDOWS\system32\ban_list.txt
2010-03-19 23:33:01 ----D---- C:\Documents and Settings\lolo\Application Data\HPAppData
2010-03-19 15:46:47 ----D---- C:\Documents and Settings\All Users\Application Data\WEBREG
2010-03-19 15:45:27 ----D---- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
2010-03-19 15:36:02 ----D---- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
2010-03-19 15:35:37 ----A---- C:\WINDOWS\system32\hpzll5ha.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\hppldcoi.dll
2010-03-19 15:35:06 ----RA---- C:\WINDOWS\system32\difxapi.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpovst10.dll
2010-03-19 15:35:05 ----RA---- C:\WINDOWS\system32\hpotscl3.dll
2010-03-19 15:35:04 ----RA---- C:\WINDOWS\system32\hpowiax3.dll
======List of files/folders modified in the last 1 months======
2010-04-01 18:40:30 ----D---- C:\Program Files
2010-04-01 18:38:36 ----D---- C:\WINDOWS\Temp
2010-04-01 18:18:00 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-04-01 18:16:12 ----D---- C:\Program Files\Windows Media Player
2010-04-01 18:16:06 ----D---- C:\WINDOWS\Prefetch
2010-04-01 18:15:30 ----A---- C:\WINDOWS\NeroDigital.ini
2010-04-01 17:47:30 ----D---- C:\WINDOWS
2010-04-01 00:52:04 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-03-29 22:58:52 ----D---- C:\WINDOWS\system32
2010-03-25 14:38:38 ----D---- C:\Program Files\Mozilla Firefox
2010-03-20 13:06:39 ----D---- C:\WINDOWS\system32\CatRoot2
2010-03-19 15:46:41 ----SHD---- C:\WINDOWS\Installer
2010-03-19 15:46:41 ----HD---- C:\Config.Msi
2010-03-19 15:46:23 ----A---- C:\WINDOWS\win.ini
2010-03-19 15:45:27 ----D---- C:\Program Files\HP
2010-03-19 15:43:06 ----D---- C:\WINDOWS\WinSxS
2010-03-19 15:38:24 ----D---- C:\WINDOWS\twain_32
2010-03-19 15:36:10 ----D---- C:\WINDOWS\system32\drivers
2010-03-19 15:35:23 ----HD---- C:\WINDOWS\inf
2010-03-19 15:35:21 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-03-19 15:35:09 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-03-14 13:35:14 ----D---- C:\Program Files\SeaMonkey
2010-03-11 04:58:00 ----SD---- C:\Documents and Settings\lolo\Application Data\Microsoft
2010-03-09 12:22:01 ----D---- C:\wamp
2010-03-03 15:31:29 ----D---- C:\Documents and Settings\lolo\Application Data\Image Zone Express
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ATITool;ATITool Overclocking Utility; C:\WINDOWS\System32\DRIVERS\ATITool.sys [2006-11-10 24064]
R1 AvgClean;AVG7 Clean Driver; C:\WINDOWS\System32\Drivers\avgclean.sys [2008-11-07 10760]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-19 40320]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-11-25 12032]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2009-08-14 281760]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2009-08-14 25888]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2006-10-04 1754624]
R3 ATIAVAIW;ATI T200 Unified AVStream service; C:\WINDOWS\System32\DRIVERS\atinavt2.sys [2006-09-06 168832]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2006-12-30 223128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-16 4275712]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-05-27 22016]
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\WINDOWS\System32\DRIVERS\LV561AV.SYS [2005-01-31 211712]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys [2006-06-19 81792]
R3 SPLITCAM;Splitcam, WDM Camera Stream Splitter; C:\WINDOWS\System32\DRIVERS\splitcam.sys [2007-03-01 13824]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2004-08-04 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 MPE;BDA MPE Filter; C:\WINDOWS\System32\DRIVERS\MPE.sys [2004-08-04 15360]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 nm;Pilote du Moniteur réseau; C:\WINDOWS\System32\DRIVERS\NMnt.sys [2004-08-03 40320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-06 34064]
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2007-01-30 47360]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2004-08-04 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 VSPerfDrv90;Performance Tools Driver 9.0; \??\C:\appc\Microsoft Visual Studio 2008\Team Tools\Performance Tools\VSPerfDrv90.sys []
S3 WINIO;WINIO; \??\C:\appc\PICBASIC\winio.sys []
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S4 Avg7Core;AVG7 Kernel; C:\WINDOWS\System32\Drivers\avg7core.sys [2008-11-07 821856]
S4 Avg7RsW;AVG7 Wrap Driver; C:\WINDOWS\System32\Drivers\avg7rsw.sys [2008-11-07 4224]
S4 Avg7RsXP;AVG7 Resident Driver XP; C:\WINDOWS\System32\Drivers\avg7rsxp.sys [2008-11-07 27776]
S4 AvgTdi;AVG Network Redirector; C:\WINDOWS\System32\Drivers\avgtdi.sys [2008-11-07 4960]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\System32\DRIVERS\sr.sys [2004-08-19 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe [2008-04-08 79360]
R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-18 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2007-02-10 29178224]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-10-03 520192]
S2 AVGEMS;AVG E-mail Scanner; C:\appc\Grisoft\AVG7\avgemc.exe [2010-04-01 406528]
S2 mi-raysat_3dsMax2008_32;mental ray 3.6 Satellite for Autodesk 3ds Max 2008 32-bit 32-bit; C:\appc\Autodesk\3ds Max 2008\mentalray\satellite\raysat_3dsMax2008_32server.exe [2007-09-24 65536]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2007-02-02 69632]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-10-09 724992]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\system32\GameMon.des [2009-08-30 3407412]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2007-11-06 92792]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.8\bin\httpd.exe [2008-01-18 24635]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.0.51b\bin\mysqld-nt.exe [2008-04-17 5750784]
S4 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2006-10-04 425984]
S4 Avg7Alrt;AVG7 Alert Manager Server; C:\appc\Grisoft\AVG7\avgamsvr.exe [2010-02-08 418816]
S4 Avg7UpdSvc;AVG7 Update Service; C:\appc\Grisoft\AVG7\avgupsvc.exe [2010-02-08 49664]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]
S4 msvsmon90;Visual Studio 2008 Remote Debugger; C:\appc\Microsoft Visual Studio 2008\Common7\IDE\Remote Debugger\x86\msvsmon.exe [2007-11-07 3004416]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
S4 T4C_Watch;T4C Watch; C:\T4C Server\T4C Watch.exe [2006-01-27 114688]
-----------------EOF-----------------
Voila , ca a mis un peu de temps, parce que avec ce virus j'ai du mal à naviguer sur les forum et poster des messages.
Je serai de retour sur le forum que tard ce soir.
Merci
Je serai de retour sur le forum que tard ce soir.
Merci
ok
nous avons du travail ...
je ne sais pas si c'est de toi même ou si on t'a guidé pour fixer des lignes...mais ca n'a pas été brillant
* Téléchargez FindyKill sur le Bureau.
http://pagesperso-orange.fr/NosTools/Chiquitine29/Setup.exe
Mirroir :
http://findykill.changelog.fr/Setup.exe
* Double-cliquez sur FindyKill présent sur le Bureau.
* Choisissez l'option 1 (Recherche).
* Laissez travailler l'outil.
* Ensuite postez le rapport FindyKill.txt qui apparaîtra (si vous avez créé un sujet sur un forum pour vous faire aider).
* Note : Le rapport FindyKill.txt est sauvegardé à la racine du disque (C:\FindyKill.txt).
(CTRL+A pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller)
* Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
* Tuto : http://pagesperso-orange.fr/NosTools/index.html
Je cherche beaucoup...et maintenant je trouve !
(sourire)
nous avons du travail ...
je ne sais pas si c'est de toi même ou si on t'a guidé pour fixer des lignes...mais ca n'a pas été brillant
* Téléchargez FindyKill sur le Bureau.
http://pagesperso-orange.fr/NosTools/Chiquitine29/Setup.exe
Mirroir :
http://findykill.changelog.fr/Setup.exe
* Double-cliquez sur FindyKill présent sur le Bureau.
* Choisissez l'option 1 (Recherche).
* Laissez travailler l'outil.
* Ensuite postez le rapport FindyKill.txt qui apparaîtra (si vous avez créé un sujet sur un forum pour vous faire aider).
* Note : Le rapport FindyKill.txt est sauvegardé à la racine du disque (C:\FindyKill.txt).
(CTRL+A pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller)
* Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
* Tuto : http://pagesperso-orange.fr/NosTools/index.html
Je cherche beaucoup...et maintenant je trouve !
(sourire)
Je n'ai pas compris cette phrase :
"je ne sais pas si c'est de toi même ou si on t'a guidé pour fixer des lignes...mais ca n'a pas été brillant "
Je ne sais pas ce que vous entendez par lignes ?
Je vous post dans le prochain message le dernier rapport.
"je ne sais pas si c'est de toi même ou si on t'a guidé pour fixer des lignes...mais ca n'a pas été brillant "
Je ne sais pas ce que vous entendez par lignes ?
Je vous post dans le prochain message le dernier rapport.
############################## | FindyKill V5.038 |
############################## | Processus infectieux stoppés |
"C:\Documents and Settings\lolo\Application Data\drivers\winupgro.exe" (1908)
"C:\Documents and Settings\lolo\Application Data\hidires\flec003.exe" (2044)
"C:\WINDOWS\wintems.exe" (3676)
"C:\Documents and Settings\lolo\Application Data\m\flec006.exe" (1128)
############################## | Processus infectieux stoppés |
"C:\Documents and Settings\lolo\Application Data\drivers\winupgro.exe" (1908)
"C:\Documents and Settings\lolo\Application Data\hidires\flec003.exe" (2044)
"C:\WINDOWS\wintems.exe" (3676)
"C:\Documents and Settings\lolo\Application Data\m\flec006.exe" (1128)
################## | Eléments infectieux |
C:\WINDOWS\ban_list.txt
C:\WINDOWS\mdelk.exe
C:\WINDOWS\wintems.exe
C:\WINDOWS\system32\AutoRun.inf
C:\WINDOWS\system32\ban_list.txt
C:\WINDOWS\system32\mdelk.exe
C:\WINDOWS\system32\srosa2.sys
C:\WINDOWS\system32\wfsintwq.sys
C:\WINDOWS\system32\wintems.exe
C:\Documents and Settings\lolo\Application Data\drivers
C:\Documents and Settings\lolo\Application Data\drivers\downld
C:\Documents and Settings\lolo\Application Data\drivers\downld\114750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\137765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\138046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\138281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\139578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\140234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\140859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\142187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\143078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\143718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\144031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\144265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\144609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15273937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15278062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15278390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15279953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15282203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15282515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15282781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15283875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15287453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15288156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15289796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15290906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15291812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15292484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15292734.exe
C:\WINDOWS\ban_list.txt
C:\WINDOWS\mdelk.exe
C:\WINDOWS\wintems.exe
C:\WINDOWS\system32\AutoRun.inf
C:\WINDOWS\system32\ban_list.txt
C:\WINDOWS\system32\mdelk.exe
C:\WINDOWS\system32\srosa2.sys
C:\WINDOWS\system32\wfsintwq.sys
C:\WINDOWS\system32\wintems.exe
C:\Documents and Settings\lolo\Application Data\drivers
C:\Documents and Settings\lolo\Application Data\drivers\downld
C:\Documents and Settings\lolo\Application Data\drivers\downld\114750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\137765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\138046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\138281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\139578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\140234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\140859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\142187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\143078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\143718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\144031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\144265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\144609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15273937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15277812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15278062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15278390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15279953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15282203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15282515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15282781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15283875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15287453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15288156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15289796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15290906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15291812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15292484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15292734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15292937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15293312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15323859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15355296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15366578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15366968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15367234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15367375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15367593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15368671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15369828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15370093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15373312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15373593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15374015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15374406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15374828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15375937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15376703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15377421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15377718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15379265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15381390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15382031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15383562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15384109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15384890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15386140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15386734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15386968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15390203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15390546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15390937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15395437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15396984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15398140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15400375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15400843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15402281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15402484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15403890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15411140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15416937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15417312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15418859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15293312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15323859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15355296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15366578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15366968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15367234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15367375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15367593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15368671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15369828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15370093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15373312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15373593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15374015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15374406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15374828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15375937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15376703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15377421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15377718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15379265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15381390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15382031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15383562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15384109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15384890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15386140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15386734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15386968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15390203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15390546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15390937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15395437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15396984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15398140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15400375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15400843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15402281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15402484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15403890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15411140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15416937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15417312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15418859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15419562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15420453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15421375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15422125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15422390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15422640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15423453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15423921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15424062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15424281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15424515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15429015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15430796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15431000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15432640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15433937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15436187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15437437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15438000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15438437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15438671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15468156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15468859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15469281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15484906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15500375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15500703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15501093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15501546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15545156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15546062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15546687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15547093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15547453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15547875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15582859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15583062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15420453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15421375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15422125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15422390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15422640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15423453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15423921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15424062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15424281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15424515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15429015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15430796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15431000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15432640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15433937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15434921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15436187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15437437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15438000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15438437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15438671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15468156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15468859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15469281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15484906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15500375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15500703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15501093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15501546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15502734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15545156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15546062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15546687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15547093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15547453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15547875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15582859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15583062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15584093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15585046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15629531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15629859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15633843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15637218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15637828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15640562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15674265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15674437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15695109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15695828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15696859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15698531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15700046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15701109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15701703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15703359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15704609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15705015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15705468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15706312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15707390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15707968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15712078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15713093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15716796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15718046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15719203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15722593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15727000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15727828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15728515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15585046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15586953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15629531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15629859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15633843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15637218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15637828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15640562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15674265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15674437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15695109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15695828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15696859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15698531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15699812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15700046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15701109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15701703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15703359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15704609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15705015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15705468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15706312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15707390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15707968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15712078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15713093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15716796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15718046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15719203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15722593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15726781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15727000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15727828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15728515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15728718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15728906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15729125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15729406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15729859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15764906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15767265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15767656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15768312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15768953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15769406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15769828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15770093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15812468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15812921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15814187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15814765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15824281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15827984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15828515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15829296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15829843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15830500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15830984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15832687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15833625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15833984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15835156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15835406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15835984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15836437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15836578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15871343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15872531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15873593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15873828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15874046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15874640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15875343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15876546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15877484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15878281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15879687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15880078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15915125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15916328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15917078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15917203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15917390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15919093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15919625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15920296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15921015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15921671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15922171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15923000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15923765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15924171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15966609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15966968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15967375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15967734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15967953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15728906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15729125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15729406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15729859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15764906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15765953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15766937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15767265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15767656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15768312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15768953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15769406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15769828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15770093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15812468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15812921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15813968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15814187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15814765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15824281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15827984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15828515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15829296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15829843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15830500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15830984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15831750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15832687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15833625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15833984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15834953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15835156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15835406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15835984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15836437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15836578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15871343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15872531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15873593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15873828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15874046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15874640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15875343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15876546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15877484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15878281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15879687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15880078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15915125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15916328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15917078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15917203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15917390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15919093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15919625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15920296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15921015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15921671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15922171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15923000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15923765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15924171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15966609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15966968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15967375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15967734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15967953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15968734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15970796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15972875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15974500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15975156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15975328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15996531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16001156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16002218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16006093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16006640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16007062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16008625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16010109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16011093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16011593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16011859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16013390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16013687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16013921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16014203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16014453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16014906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16018718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16019109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16019484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16020125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16020781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16021828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16023234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16024187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16024843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16025296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16025718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16026296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16026750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16027656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16029796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16030109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16066250.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16066625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16069843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16101593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16101781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16101968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16102671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16103187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16103625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16104062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16104453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16139531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16140171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16140812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16141468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\175312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\178453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\204125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\204875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\205562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\205984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\206250.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\206390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\206593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\207640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15972875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15973656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15974500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15975156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15975328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15996531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\15997843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16001156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16002218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16003875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16004828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16005906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16006093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16006640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16007062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16008625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16010109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16011093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16011593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16011859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16013390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16013687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16013921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16014203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16014453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16014906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16018718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16019109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16019484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16020125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16020781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16021828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16023234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16024187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16024843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16025296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16025718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16026296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16026750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16027656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16029796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16030109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16065750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16066250.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16066625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16069843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16101593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16101781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16101968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16102671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16103187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16103625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16104062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16104453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16139531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16140171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16140812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\16141468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\175312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\178453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\204125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\204875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\205562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\205984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\206250.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\206390.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\206593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\207640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\210109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\210515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\210984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\212109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\212718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\212968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\213203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\214546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\215859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\216125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\216468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\216921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\217296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\217609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\217843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\219500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\220140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\220984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\221734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\227453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\228640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\228984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\230718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\231781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\232531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\233375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\234109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\234359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\234593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\235500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\237062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\237328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\237546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\239093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\240375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\240578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\240937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\241234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\241625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\243015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\244421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\244859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\245312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\245546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\275859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\276546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\276968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\292437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30543031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30543281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30543578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30557656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30557937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30558156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30561468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30562484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30563265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30563750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30564781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30565687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30566328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30566578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30566796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30567140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30597640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30656046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30686968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\209734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\210109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\210515.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\210984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\212109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\212718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\212968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\213203.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\214546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\215859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\216125.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\216468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\216921.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\217296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\217609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\217843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\218640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\219500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\220140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\220984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\221734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225218.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\225656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\227453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\228640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\228984.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\230718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\231781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\232531.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\233375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\234109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\234359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\234593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\235500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\236656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\237062.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\237328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\237546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\239093.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\240375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\240578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\240937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\241234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\241625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\243015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\244421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\244859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\245312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\245546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\275859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\276546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\276968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\292437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30542843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30543031.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30543281.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30543578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30557656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30557937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30558156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30561468.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30562484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30563265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30563750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30564781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30565687.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30566328.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30566578.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30566796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30567140.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30597640.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30656046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30686968.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687500.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30687812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30781250.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30787609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30787906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30788187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30788546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30788937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\307890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30789375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30790656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30791296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30791562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30791781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30793078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30794406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30794671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30795000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30798437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30798796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30800078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30804812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30805453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30806437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30807312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30807562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30807796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30808000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30808234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30809828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30811015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30811265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30812718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30813562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30814375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30815187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30815906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30816156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30816375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30820421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30821875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30824625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30826406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30827109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30827562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30827828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\308359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30858156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30858859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30859265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30874796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\308765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30890234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30891171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30891562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30892156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30892593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30892828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30893046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30893296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30935812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\309359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30936812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30937437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30937843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30938187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30938703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30973703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30973875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30974890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30976359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30977296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30977562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30977906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30781250.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30787609.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30787906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30788187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30788546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30788937.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\307890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30789375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30790656.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30791296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30791562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30791781.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30793078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30794406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30794671.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30795000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30798437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30798796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799484.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30799859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30800078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30804812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30805453.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30806437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30807312.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30807562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30807796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30808000.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30808234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30809828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30811015.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30811265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30812718.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30813562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30814375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30815187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30815906.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30816156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30816375.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817734.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30817953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818750.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30818953.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30820421.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30821875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822078.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822343.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822546.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30822828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30824625.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30826406.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30827109.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30827562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30827828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\308359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30858156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30858859.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30859265.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30874796.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\308765.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30890234.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30891171.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30891562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30892156.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30892593.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30892828.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30893046.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30893296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30935812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\309359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30936812.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30937437.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30937843.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30938187.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30938703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30973703.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30973875.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30974890.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30976359.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30977296.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30977562.exe
C:\Documents and Settings\lolo\Application Data\drivers\downld\30977906.exe