Virus bloodhound
Résolu
vin110
Messages postés
173
Statut
Membre
-
Utilisateur anonyme -
Utilisateur anonyme -
bonjour,
mon ordinateur est infecter par le virus bloodhound,que dois-je faire pour le supprimer ?
merci
vin110
mon ordinateur est infecter par le virus bloodhound,que dois-je faire pour le supprimer ?
merci
vin110
A voir également:
- Virus bloodhound
- Virus mcafee - Accueil - Piratage
- Virus facebook demande d'amis - Accueil - Facebook
- Virus informatique - Guide
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Undisclosed-recipients virus - Guide
5 réponses
Bonsoir ,
Dans un premier temps, fait déja tout cela :
telecharge et execute ces antispywares ( pense a les mettre a jour avant de les lancer)
(1) ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip
***
(2) spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm
***
et aussi ceci
(3) Ccleaner :
Télécharge Ccleaner ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
(4) Edwido
http://download.ewido.net/ewido-setup.exe
Pendant l'installation, sur la page "Additional Options", décoche les deux options "Install background guard" et "Install scan via context menu Ewido Security Suite. Clique sur mise à jour.
Clique sur scanner puis sur scan complet du système.
(5) Pour vérifier, scanne ton PC avec cet antivirus en ligne :
https://www.bitdefender.com/toolbox/
(6) télécharge HijackThis ici:
https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
Bon courage
A+
Dans un premier temps, fait déja tout cela :
telecharge et execute ces antispywares ( pense a les mettre a jour avant de les lancer)
(1) ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip
***
(2) spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm
***
et aussi ceci
(3) Ccleaner :
Télécharge Ccleaner ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
(4) Edwido
http://download.ewido.net/ewido-setup.exe
Pendant l'installation, sur la page "Additional Options", décoche les deux options "Install background guard" et "Install scan via context menu Ewido Security Suite. Clique sur mise à jour.
Clique sur scanner puis sur scan complet du système.
(5) Pour vérifier, scanne ton PC avec cet antivirus en ligne :
https://www.bitdefender.com/toolbox/
(6) télécharge HijackThis ici:
https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
Bon courage
A+
bonjour
j'ai effectué toutes les opération que vous m'avez demander de faire et voici donc le rapport hijackthis :
Logfile of HijackThis v1.99.1
Scan saved at 14:08:10, on 06/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.olidata.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Windows] run.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [winlog] winlog.exe
O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunServices: [Windows] run.exe
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.olidata.com/
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_sit...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O20 - Winlogon Notify: Setup - C:\WINDOWS\system32\fp2403fqe.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: Firewall service (FWSvc) - WinSoftware, Ltd. - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
bonne chance
j'ai effectué toutes les opération que vous m'avez demander de faire et voici donc le rapport hijackthis :
Logfile of HijackThis v1.99.1
Scan saved at 14:08:10, on 06/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.olidata.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Windows] run.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [winlog] winlog.exe
O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunServices: [Windows] run.exe
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.olidata.com/
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_sit...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O20 - Winlogon Notify: Setup - C:\WINDOWS\system32\fp2403fqe.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: Firewall service (FWSvc) - WinSoftware, Ltd. - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
bonne chance
Salut vous deux :-)
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"
O4 - HKLM\..\Run: [Windows] run.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunServices: [Windows] run.exe
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_sit...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
Clique sur demarrer, poste de travail, C:, program files, cherche et supprime ce dossier:
WinAntiVirus Pro 2006
Clique sur demarrer, rechercher,cherche et supprime ces fichiers:
run.exe
winlog.exe
si un fichier persiste lors de la suppression fais ceci:
-Redemarres ton pc, dès l'allumage de celui ci tapotes la touche f8, à l'ecran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers, vides ta corbeille et redemarres normalement
Fait ce nettoyage, puis redemarre l'ordi et remet un nouveau rapport hijackthis
¤Telecharges et installes ceci, dans la colonne de gauche cliques sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs
CCleaner:
Ccleaner
¤Relance Ccleaner ,vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis cliques sur "lancer le nettoyage"
ça ne sera pas fini ;-)
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"
O4 - HKLM\..\Run: [Windows] run.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunServices: [Windows] run.exe
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_sit...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
Clique sur demarrer, poste de travail, C:, program files, cherche et supprime ce dossier:
WinAntiVirus Pro 2006
Clique sur demarrer, rechercher,cherche et supprime ces fichiers:
run.exe
winlog.exe
si un fichier persiste lors de la suppression fais ceci:
-Redemarres ton pc, dès l'allumage de celui ci tapotes la touche f8, à l'ecran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers, vides ta corbeille et redemarres normalement
Fait ce nettoyage, puis redemarre l'ordi et remet un nouveau rapport hijackthis
¤Telecharges et installes ceci, dans la colonne de gauche cliques sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs
CCleaner:
Ccleaner
¤Relance Ccleaner ,vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis cliques sur "lancer le nettoyage"
ça ne sera pas fini ;-)
bonjour,
la suppression de WinAntiVirus Pro 2006 s'est bien déroulée mais je n'est pas trouvé les deux fichiers ( run.exe et winlog.exe )
voici le rapport Hijackthis :
Logfile of HijackThis v1.99.1
Scan saved at 16:59:26, on 06/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\WINDOWS\system32\wuauclt.exe
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.olidata.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [winlog] winlog.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.olidata.com/
O20 - Winlogon Notify: ShellScrap - C:\WINDOWS\system32\fpj2031oe.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
merci
a+
la suppression de WinAntiVirus Pro 2006 s'est bien déroulée mais je n'est pas trouvé les deux fichiers ( run.exe et winlog.exe )
voici le rapport Hijackthis :
Logfile of HijackThis v1.99.1
Scan saved at 16:59:26, on 06/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\WINDOWS\system32\wuauclt.exe
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.olidata.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [outlook] C:\Program Files\outlook\outlook.exe /auto
O4 - HKLM\..\Run: [winlog] winlog.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.olidata.com/
O20 - Winlogon Notify: ShellScrap - C:\WINDOWS\system32\fpj2031oe.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
merci
a+
voici le rapport :
Logfile of HijackThis v1.99.1
Scan saved at 22:38:56, on 07/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Teamspeak2_RC2\TeamSpeak.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\BearShare\BearShare.exe
C:\Program Files\Valve\Steam\Steam.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.olidata.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.olidata.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game02.zylom.com/activex/zylomgamesplayer.cab
O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\c0000admed0a0.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - Eastman Kodak Company - (no file)
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
Logfile of HijackThis v1.99.1
Scan saved at 22:38:56, on 07/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Messenger Plus! 3\MsgPlus.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Teamspeak2_RC2\TeamSpeak.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\BearShare\BearShare.exe
C:\Program Files\Valve\Steam\Steam.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.olidata.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\Messenger Plus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.olidata.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game02.zylom.com/activex/zylomgamesplayer.cab
O20 - Winlogon Notify: H323TSP - C:\WINDOWS\system32\c0000admed0a0.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - Eastman Kodak Company - (no file)
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
Télécharge l2mfix ici:
http://www.downloads.subratam.org/l2mfix.exe
double clique sur l2mfix.exe pour lancer l'extraction.
dans le dossier l2mfix, double clique sur l2mfix.bat et choisis l'option 1 et valide avec la touche entrée
il va te generer un rapport
Copie et colle le resultat ici s'il te plait.
http://www.downloads.subratam.org/l2mfix.exe
double clique sur l2mfix.exe pour lancer l'extraction.
dans le dossier l2mfix, double clique sur l2mfix.bat et choisis l'option 1 et valide avec la touche entrée
il va te generer un rapport
Copie et colle le resultat ici s'il te plait.
c'est bon cette fois ci sa a fonctionner et voici le rapport :
L2mfix 032106
Creating Account.
La commande s'est termin‚e correctement.
Adding Administrative privleges.
Checking for L2MFix account(0=no 1=yes):
1
Granting SeDebugPrivilege to L2MFIX ... successful
Running From:
C:\WINDOWS\system32
Killing Processes!
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 720 'smss.exe'
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'win
Running From:
C:\WINDOWS\system32
Killing Processes!
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 728 'smss.exe'
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID
Running From:
C:\WINDOWS\system32
Killing Processes!
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 728 'smss.exe'
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killin
L2mfix 032106
Creating Account.
La commande s'est termin‚e correctement.
Adding Administrative privleges.
Checking for L2MFix account(0=no 1=yes):
1
Granting SeDebugPrivilege to L2MFIX ... successful
Running From:
C:\WINDOWS\system32
Killing Processes!
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 720 'smss.exe'
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'winlogon.exe'
Killing PID 816 'win
Running From:
C:\WINDOWS\system32
Killing Processes!
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 728 'smss.exe'
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID
Running From:
C:\WINDOWS\system32
Killing Processes!
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 728 'smss.exe'
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright(C) 2002-2003 Craig.Peacock@beyondlogic.org
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killing PID 832 'winlogon.exe'
Killin
Logfile of HijackThis v1.99.1
Scan saved at 00:08:06, on 08/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\BearShare\BearShare.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.olidata.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.olidata.com
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: URL - C:\WINDOWS\system32\j2j6lc1s1f.dll (file missing)
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - Eastman Kodak Company - (no file)
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
Scan saved at 00:08:06, on 08/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\BearShare\BearShare.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.olidata.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eBayToolbar] C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Download with Star Downloader - C:\Documents and Settings\Olivier\Mes documents\Vincent\VINCENT\instalation\sdie.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\YAHOO!\COMMON\yhexbmesfr.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.olidata.com
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: URL - C:\WINDOWS\system32\j2j6lc1s1f.dll (file missing)
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - Eastman Kodak Company - (no file)
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
ça a marché apparament
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"
O20 - Winlogon Notify: URL - C:\WINDOWS\system32\j2j6lc1s1f.dll (file missing)
Fait ce scan anti-virus en ligne une fois qu'il a terminé colle le rapport ici stp, puis je pense que ça sera ok.
https://www.bitdefender.com/toolbox/
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"
O20 - Winlogon Notify: URL - C:\WINDOWS\system32\j2j6lc1s1f.dll (file missing)
Fait ce scan anti-virus en ligne une fois qu'il a terminé colle le rapport ici stp, puis je pense que ça sera ok.
https://www.bitdefender.com/toolbox/
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question