Analyse rapport RSIT svp !
Résolu
superman1221
Messages postés
114
Date d'inscription
Statut
Membre
Dernière intervention
-
superman1221 Messages postés 114 Date d'inscription Statut Membre Dernière intervention -
superman1221 Messages postés 114 Date d'inscription Statut Membre Dernière intervention -
Bonjour,
J'ai des problèmes de virus depuis quelques temps. Quelqu'un pourrait vérifier mon rapport svp ?
Logfile of random's system information tool 1.08 (written by random/random)
Run by Daniel at 2011-06-09 14:18:02
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 18 GB (53%) free of 34 GB
Total RAM: 1535 MB (40% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:18:17, on 09/06/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\WINDOWS\System32\gearsec.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\RelevantKnowledge\rlvknlg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TeamViewer\Version6\TeamViewer.exe
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\PROGRA~1\Druide\Antidote\Gestionnaire Antidote.exe
C:\Program Files\BitTorrent\bittorrent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\VideoMate\ComproRemote.exe
C:\Program Files\Fichiers communs\VideoMate\ComproScheduler.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\System32\MDM.EXE
C:\DOCUME~1\Daniel\LOCALS~1\Temp\Ysm.exe
C:\Documents and Settings\Daniel\Bureau\Virus\RSIT.exe
C:\Program Files\trend micro\Daniel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.autocompletepro.com/?si=10206&bi=400
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.autocompletepro.com/?si=10206&bi=400
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.autocompletepro.com/?si=10206&bi=400
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.ca/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.autocompletepro.com/?si=10206&bi=400
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - (no file)
R3 - URLSearchHook: (no name) - {4daac69c-cba7-45e2-9bc8-1044483d3352} - (no file)
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SuggestMeYesBHO - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Program Files\AutocompletePro\AutocompletePro.dll
O2 - BHO: IE Privacy Keeper - Last IE Window Detector - {1201333E-BAD9-481C-BCF5-6904498CF85B} - C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPKbho.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Interest recogniser for Crazyloader (powered by Spointer) - {C5F65718-341D-4e7d-9842-FCB9CC89527E} - C:\Program Files\CrazyLoader\spointer\extensions\crazyloader_air_ie.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [Yyuhesebevaxi] rundll32.exe "C:\WINDOWS\ayenulohufaje.dll",Startup
O4 - HKLM\..\Run: [sp4jke] C:\Documents and Settings\Daniel\Application Data\25e23d.exe
O4 - HKLM\..\Run: [bipro] rundll32 "C:\WINDOWS\$XNTUninstall643$\wktly.dll",,Run
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [Gestionnaire Antidote.exe] C:\PROGRA~1\Druide\Antidote\Gestionnaire Antidote.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe"
O4 - HKCU\..\Run: [4ECYTQ9SIC] C:\DOCUME~1\Daniel\LOCALS~1\Temp\Ysm.exe
O4 - HKCU\..\Run: [KOQMLYTPE7] C:\WINDOWS\Ytadea.exe
O4 - HKCU\..\Run: [Syaxeri] rundll32.exe "C:\WINDOWS\wmsdupi.dll",Startup
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-20 Startup: Launch WhiteSmoke.lnk = C:\Program Files\WhiteSmoke\WSEnrichment.exe (User 'SERVICE RÉSEAU')
O4 - S-1-5-18 Startup: Launch WhiteSmoke.lnk = C:\Program Files\WhiteSmoke\WSEnrichment.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Launch WhiteSmoke.lnk = C:\Program Files\WhiteSmoke\WSEnrichment.exe (User 'Default user')
O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe
O4 - Startup: RollerCoaster Tycoon 3 Registration.lnk = C:\Documents and Settings\Daniel\Local Settings\Temp\{C73CE7FF-81AF-4D63-A827-863F32B3C8F1}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe
O4 - Global Startup: ComproRemote.lnk = ?
O4 - Global Startup: ComproScheduler.lnk = ?
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: TL-WN321G Wireless Utility.lnk = C:\Program Files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe
O4 - Global Startup: TweakYC.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote K - IE 6.htm (HKCU)
O9 - Extra button: Dictionnaires - {F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote D - IE 6.htm (HKCU)
O9 - Extra button: Guides - {FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote G - IE 6.htm (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.google.fr/
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O20 - Winlogon Notify: RelevantKnowledge - C:\Program Files\RelevantKnowledge\rlls.dll
O21 - SSODL: SwUpdate - {003541A1-3BC0-1B1C-AAF3-040114001C01} - C:\Documents and Settings\All Users\Application Data\Macromedia\swfupdate\swfupdate.dll
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Service de sécurité matérielle (GEARSecurity) - GEAR Software - C:\WINDOWS\System32\gearsec.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\System32\imapi.exe
O23 - Service: iPod Service (iPodService) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\System32\mnmsrvc.exe
O23 - Service: MouseDriver - Unknown owner - C:\Documents.exe (file missing)
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\System32\wbem\wmiapsrv.exe
--
End of file - 12495 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\ewpqj.job
C:\WINDOWS\tasks\PCMA.job
C:\WINDOWS\tasks\ppvgtmd.job
C:\WINDOWS\tasks\WGASetup.job
C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
C:\WINDOWS\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16 37808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
AC-Pro - C:\Program Files\AutocompletePro\AutocompletePro.dll [2010-11-11 97760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1201333E-BAD9-481C-BCF5-6904498CF85B}]
LastWinDet Class - C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPKbho.dll [2004-05-19 81920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-11-26 1623392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2011-03-18 2471240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5F65718-341D-4e7d-9842-FCB9CC89527E}]
Interest recogniser for Crazyloader (powered by Spointer) - C:\Program Files\CrazyLoader\spointer\extensions\crazyloader_air_ie.dll [2010-08-19 135840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-05-16 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
SearchSettings Class - C:\Program Files\Search Settings\SearchSettings.dll [2009-12-16 1109504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-05-16 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2011-03-18 2471240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG7_EMC"=C:\PROGRA~1\Grisoft\AVG7\avgemc.exe [2004-02-29 186420]
"SunJavaUpdateSched"=C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [2010-02-18 248040]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2011-03-18 2071904]
"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2009-06-17 85160]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-04 17408]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2004-02-12 49152]
"HP Component Manager"=C:\Program Files\HP\hpcoretech\hpcmpmgr.exe [2004-05-12 241664]
"Yyuhesebevaxi"=C:\WINDOWS\ayenulohufaje.dll [2005-03-02 270336]
"sp4jke"=C:\Documents and Settings\Daniel\Application Data\25e23d.exe []
"bipro"=rundll32 C:\WINDOWS\$XNTUninstall643$\wktly.dll,,Run []
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2011-03-13 114992]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2004-02-29 98304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Gestionnaire Antidote.exe"=C:\PROGRA~1\Druide\Antidote\Gestionnaire Antidote.exe [2008-12-02 542136]
"BitTorrent"=C:\Program Files\BitTorrent\bittorrent.exe [2011-06-07 400760]
"4ECYTQ9SIC"=C:\DOCUME~1\Daniel\LOCALS~1\Temp\Ysm.exe [2011-06-08 239104]
"KOQMLYTPE7"=C:\WINDOWS\Ytadea.exe []
"Syaxeri"= C:\WINDOWS\wmsdupi.dll,Startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdaptecDirectCD]
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CreateCD50]
C:\PROGRA~1\FICHIE~1\ADAPTE~1\CreateCD\CREATE~1.EXE -r []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2003-12-30 229376]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2004-02-29 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
C:\Program Files\Analog Devices\SoundMAX\Smtray.exe [2002-06-26 90112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2004-02-29 151597]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office\OSA9.EXE [1999-02-17 65588]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Symantec Fax Starter Edition Port.lnk]
C:\PROGRA~1\MICROS~2\Office\1036\OLFSNT40.EXE [1999-04-06 46080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^WinZip Quick Pick.lnk]
C:\PROGRA~1\WinZip\WZQKPICK.EXE [2002-11-27 106561]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
ComproRemote.lnk - C:\Program Files\Fichiers communs\VideoMate\ComproRemote.exe
ComproScheduler.lnk - C:\Program Files\Fichiers communs\VideoMate\ComproScheduler.exe
Démarrage rapide du logiciel HP Image Zone.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
TL-WN321G Wireless Utility.lnk - C:\Program Files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe
TweakYC.lnk - C:\Program Files\VideoMate\ComproPVR 2\TweakYC.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE
C:\Documents and Settings\Daniel\Menu Démarrer\Programmes\Démarrage
MagicDisc.lnk - C:\Program Files\MagicDisc\MagicDisc.exe
RollerCoaster Tycoon 3 Registration.lnk - C:\Documents and Settings\Daniel\Local Settings\Temp\{C73CE7FF-81AF-4D63-A827-863F32B3C8F1}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2004-01-27 86016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-07-15 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\RelevantKnowledge]
C:\Program Files\RelevantKnowledge\rlls.dll [2011-03-03 545408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
SwUpdate - {003541A1-3BC0-1B1C-AAF3-040114001C01} - C:\Documents and Settings\All Users\Application Data\Macromedia\swfupdate\swfupdate.dll [2011-06-08 74752]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\AVG\AVG9\avgupd.exe"="C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG9\avgnsx.exe"="C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Microsoft Games\Age of Empires II\EMPIRES2.ICD"="C:\Program Files\Microsoft Games\Age of Empires II\EMPIRES2.ICD:*:Enabled:Age of Empires II"
"C:\Program Files\CrazyLoader\crazyloader.exe"="C:\Program Files\CrazyLoader\crazyloader.exe:*:Enabled:CrazyLoader v1.2"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Javaw (x64)"
"C:\Program Files\Java\jre6\bin\javaws.exe"="C:\Program Files\Java\jre6\bin\javaws.exe:*:Enabled:Javaws (x64)"
"C:\Program Files\EA Games\Battlefield 1942\BF1942.exe"="C:\Program Files\EA Games\Battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\WINDOWS\Temp\~os8.tmp\rlvknlg.exe"="C:\WINDOWS\Temp\~os8.tmp\rlvknlg.exe:*:Enabled:rlvknlg.exe"
"c:\program files\relevantknowledge\rlvknlg.exe"="c:\program files\relevantknowledge\rlvknlg.exe:*:Enabled:rlvknlg.exe"
"C:\Documents and Settings\Daniel\Application Data\25e23d.exe"="C:\Documents and Settings\Daniel\Application Data\25e23d.exe:*:Enabled:25e23d.exe"
"C:\WINDOWS\system32\lsass.exe"="C:\WINDOWS\system32\lsass.exe:*:Enabled:LSA Shell"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\lsass.exe"="C:\WINDOWS\system32\lsass.exe:*:Enabled:LSA Shell"
======List of files/folders created in the last 1 months======
2011-06-09 14:18:02 ----D---- C:\rsit
2011-06-09 14:18:02 ----D---- C:\Program Files\trend micro
2011-06-08 19:16:23 ----A---- C:\Documents and Settings\Daniel\Application Data\1t81v4bzz.bat
2011-06-08 19:15:49 ----A---- C:\Documents and Settings\Daniel\Application Data\qiwpjt0oo.bat
2011-06-08 19:12:39 ----A---- C:\Documents and Settings\Daniel\Application Data\80e81bi6.bat
2011-06-08 19:11:58 ----D---- C:\Program Files\SweetIM
2011-06-08 19:11:58 ----D---- C:\Documents and Settings\All Users\Application Data\SweetIM
2011-06-08 19:11:45 ----D---- C:\Program Files\WhiteSmoke
2011-06-08 19:11:03 ----A---- C:\Documents and Settings\Daniel\Application Data\tlzsmw3rr.bat
2011-06-08 19:10:56 ----A---- C:\Documents and Settings\Daniel\Application Data\ibpiclsh.bat
2011-06-08 19:06:08 ----A---- C:\Documents and Settings\Daniel\Application Data\h9ohbkrf.bat
2011-06-08 19:05:42 ----D---- C:\WINDOWS\$XNTUninstall643$
2011-06-08 19:03:01 ----A---- C:\Documents and Settings\Daniel\Application Data\4wa4x7e22.bat
2011-06-08 18:59:21 ----A---- C:\Documents and Settings\Daniel\Application Data\7ze70ah5.bat
2011-06-08 18:58:16 ----A---- C:\Documents and Settings\Daniel\Application Data\meslfpwk.bat
2011-06-08 18:58:06 ----D---- C:\Documents and Settings\All Users\Application Data\Macromedia
2011-06-08 18:56:52 ----A---- C:\Documents and Settings\Daniel\Application Data\jbpiclth.bat
2011-06-08 18:56:37 ----A---- C:\Documents and Settings\Daniel\Application Data\g8mf9iqe.bat
2011-06-08 18:56:22 ----A---- C:\Documents and Settings\Daniel\Application Data\e7le8hod.bat
2011-06-08 18:56:12 ----A---- C:\Documents and Settings\Daniel\Application Data\c5jc6fmb.bat
2011-06-08 18:55:51 ----A---- C:\Documents and Settings\Daniel\Application Data\h9nhakrf.bat
2011-06-08 18:55:39 ----A---- C:\Documents and Settings\Daniel\Application Data\phvoisznn.bat
2011-06-08 18:53:14 ----A---- C:\Documents and Settings\Daniel\Application Data\wo2vpz6uu.bat
2011-06-08 18:51:58 ----A---- C:\Documents and Settings\Daniel\Application Data\b3ib4el9.bat
2011-06-08 18:50:32 ----A---- C:\Documents and Settings\Daniel\Application Data\rjxqku1pp.bat
2011-06-08 18:49:17 ----A---- C:\Documents and Settings\Daniel\Application Data\91f82cj7.bat
2011-06-08 18:47:04 ----A---- C:\Documents and Settings\Daniel\Application Data\phvoirznm.bat
2011-06-08 18:46:52 ----H---- C:\Documents and Settings\Daniel\Application Data\MouseDriver.bat
2011-06-08 18:45:45 ----RASH---- C:\WINDOWS\system32\kbdmaorix.dll
2011-06-08 18:45:44 ----RASH---- C:\WINDOWS\system32\kbdbuy.dll
2011-05-22 23:56:36 ----A---- C:\WINDOWS\IE4 Error Log.txt
======List of files/folders modified in the last 1 months======
2011-06-09 14:18:02 ----RD---- C:\Program Files
2011-06-09 14:11:14 ----SD---- C:\WINDOWS\Tasks
2011-06-09 14:11:02 ----D---- C:\Program Files\RelevantKnowledge
2011-06-09 14:10:44 ----AC---- C:\WINDOWS\mdm.ini
2011-06-09 14:08:26 ----D---- C:\Documents and Settings\Daniel\Application Data\BitTorrent
2011-06-09 14:07:34 ----D---- C:\WINDOWS\system32
2011-06-09 13:58:44 ----D---- C:\WINDOWS
2011-06-09 13:58:08 ----D---- C:\WINDOWS\Temp
2011-06-09 13:57:11 ----D---- C:\Documents and Settings\All Users\Application Data\avg9
2011-06-09 13:54:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-06-09 11:51:58 ----D---- C:\WINDOWS\system32\drivers\Avg
2011-06-09 11:45:29 ----D---- C:\WINDOWS\Prefetch
2011-06-09 11:43:09 ----SHD---- C:\System Volume Information
2011-06-09 11:43:09 ----D---- C:\WINDOWS\system32\Restore
2011-06-08 20:12:10 ----D---- C:\Program Files\Mozilla Firefox
2011-06-08 19:13:09 ----SHD---- C:\WINDOWS\Installer
2011-06-08 19:12:47 ----HD---- C:\Config.Msi
2011-06-08 18:51:58 ----D---- C:\WINDOWS\system32\drivers\etc
2011-06-08 18:45:46 ----D---- C:\Program Files\Belarc
2011-06-07 20:45:35 ----A---- C:\WINDOWS\Antidote.ini
2011-06-07 20:06:51 ----D---- C:\Documents and Settings\Daniel\Application Data\vlc
2011-06-07 11:23:58 ----D---- C:\Program Files\BitTorrent
2011-06-03 23:21:02 ----D---- C:\Documents and Settings\Daniel\Application Data\dvdcss
2011-05-21 21:48:11 ----A---- C:\WINDOWS\NeroDigital.ini
2011-05-14 11:40:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-05-13 23:44:41 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtre de bus AGP Intel; C:\WINDOWS\System32\DRIVERS\agp440.sys [2004-08-04 42368]
R0 IdeBusDr;IdeBusDr; C:\WINDOWS\System32\DRIVERS\IdeBusDr.sys [2002-08-14 13782]
R0 IdeChnDr;Intel(R) Ultra ATA Controller; C:\WINDOWS\System32\DRIVERS\IdeChnDr.sys [2002-08-14 93594]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-08-06 721904]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-07-15 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-06-05 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2011-05-06 243152]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-12-17 26024]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-19 40320]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-19 14848]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2010-03-02 20747]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2004-01-27 669696]
R3 bcm4sbxp;ASUSTeK/Broadcom 440x 10/100 Integrated Controller XP Driver; C:\WINDOWS\System32\DRIVERS\bcm4sbxp.sys [2002-09-09 41728]
R3 Cap7134;VideoMate TV Capture; C:\WINDOWS\system32\DRIVERS\Cap7134.sys [2005-09-23 354048]
R3 GEARAspiWDM;GEAR CDRom Filter; C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys [2003-11-03 9760]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-06-22 51088]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-06-22 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-06-22 21744]
R3 mcdbus;mcdbus; C:\WINDOWS\system32\DRIVERS\mcdbus.sys [2009-02-24 116736]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 PhTVTune;VideoMate TV Tuner; C:\WINDOWS\system32\DRIVERS\PhTVTune.sys [2005-09-12 19840]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2002-09-06 549368]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
R3 VClone;VClone; C:\WINDOWS\system32\DRIVERS\VClone.sys [2009-08-09 29696]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 ms_mpu401;Pilote UART MIDI MPU-401 Microsoft; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 RT73;TL-WN321G USB Wireless Adapter; C:\WINDOWS\system32\DRIVERS\rt73.sys [2006-01-12 252928]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2005-01-28 18944]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2009-12-16 375296]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2004-01-27 397312]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-07-15 308136]
R2 GEARSecurity;Service de sécurité matérielle; C:\WINDOWS\System32\gearsec.exe [2003-12-20 53248]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-05-16 153376]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-07-15 45056]
R2 TeamViewer6;TeamViewer 6; C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2011-01-27 2253688]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\System32\wdfmgr.exe [2005-01-28 38912]
R3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-03-18 65536]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-01-27 512000]
S2 MouseDriver;MouseDriver; C:\Documents and Settings\Daniel\Application Data\MouseDriver.bat [2011-06-08 107]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service; C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe [2011-03-18 947528]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPodService;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2003-12-30 417792]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.08 2011-06-09 14:18:22
======Uninstall list======
-->C:\Program Files\Fichiers communs\Real\Update_OB\rnuninst.exe RealNetworks|RealPlayer|6.0
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Acoustica CD/DVD Label Maker-->C:\Program Files\Acoustica CD Label Maker\cdlabel.exe UNINSTALL
Ad-Aware SE Personal-->C:\PROGRA~1\Lavasoft\AD-AWA~2\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~2\INSTALL.LOG
Adobe Acrobat 5.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10i_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Shockwave Player 11.5-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
Antidote RX v7-->MsiExec.exe /X{A474EA56-5DBD-4181-8230-806A4762EA7F}
Apollo DivX to DVD Creator 4.5.7-->"C:\Program Files\Apollo DivX to DVD Creator\unins000.exe"
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Display Driver-->rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
AutocompletePro-->"C:\Program Files\AutocompletePro\unins000.exe"
AVG Free 9.0-->C:\Program Files\AVG\AVG9\setup.exe /UNINSTALL
AxCrypt 1.7.2126.0-->MsiExec.exe /I{E4C1DBF1-67D9-4973-9DEC-677E695E7CE0}
BitTorrent-->C:\Program Files\BitTorrent\uninst.exe
CamStudio 2.0 Fr-->"C:\Program Files\CamStudio\unins000.exe"
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
ComproDVD 2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{21DAFB84-2421-488F-B17D-102FF53396AA}\setup.exe" -l0x9
ComproPVR 2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FE5F8DF-755D-4E39-848A-154776182015}\setup.exe" -l0x9
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB979306)-->"C:\WINDOWS\$NtUninstallKB979306$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
Correctif Windows XP - KB810217-->C:\WINDOWS\$NtUninstallKB810217$\spuninst\spuninst.exe
Correctif Windows XP - KB873339-->C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
Correctif Windows XP - KB885250-->C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
Correctif Windows XP - KB885835-->C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
Correctif Windows XP - KB885836-->C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
Correctif Windows XP - KB886185-->C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
Correctif Windows XP - KB887472-->C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
Correctif Windows XP - KB887742-->C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
Correctif Windows XP - KB888113-->C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
Correctif Windows XP - KB888302-->C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
Correctif Windows XP - KB890859-->"C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
Correctif Windows XP - KB891781-->C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
CrazyLoader-->"C:\Program Files\CrazyLoader\uninstall.exe"
Diamond Mine-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{61474E25-34B5-4B95-962D-415DBE39E148}\Setup.exe"
Digital Voice Recorder-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B478ACE-8512-4A46-ACB2-69D83DF2F6C7}\setup.exe" -l0x9 -remove
Garmin USB Drivers-->MsiExec.exe /X{65F9E1F3-A2C1-4AA9-9F33-A3AEB0255F0E}
Garmin WebUpdater-->MsiExec.exe /X{D17111CB-C992-42A9-9D56-C19395102AAA}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HP Image Zone 4.2-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP PSC & OfficeJet 4.2-->"C:\Program Files\HP\Digital Imaging\{A1062847-0846-427A-92A1-BB8251A91E91}\setup\hpzscr01.exe" -datfile hposcr04.dat
HP Software Update-->MsiExec.exe /X{457791C5-D702-4143-A7B2-2744BE9573F2}
Intel Application Accelerator-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9984DF60-1C5B-11D3-ACA1-908A4FC10801}\Setup.exe" -INTELUNINST
iTunes-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{9705A7E1-3DD1-4BAC-8CA9-FE7B1473BEC9}
J2SE Runtime Environment 5.0 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
Java(TM) 6 Update 20-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216020FF}
Lecteur Windows Media 10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Media Player Codec Pack 3.4.0-->C:\WINDOWS\system32\C2MP\Uninst.exe
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Security Update (KB979906)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office 2000 Premium-->MsiExec.exe /I{0000040C-78E1-11D2-B60F-006097C998E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB890046)-->"C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB893066)-->"C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB893756)-->"C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896358)-->"C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896422)-->"C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896423)-->"C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896424)-->"C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896428)-->"C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899587)-->"C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899589)-->"C:\WINDOWS\$NtUninstallKB899589$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899591)-->"C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB900725)-->"C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901017)-->"C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901214)-->"C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB902400)-->"C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB904706)-->"C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905414)-->"C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905749)-->"C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905915)-->"C:\WINDOWS\$NtUninstallKB905915$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB908519)-->"C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB912919)-->"C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB944338-v2)-->"C:\WINDOWS\$NtUninstallKB944338-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958470)-->"C:\WINDOWS\$NtUninstallKB958470$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971032)-->"C:\WINDOWS\$NtUninstallKB971032$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971468)-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971961)-->"C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975561)-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977165-v2)-->"C:\WINDOWS\$NtUninstallKB977165-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978251)-->"C:\WINDOWS\$NtUninstallKB978251$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978262)-->"C:\WINDOWS\$NtUninstallKB978262$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979559)-->"C:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979683)-->"C:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB981350)-->"C:\WINDOWS\$NtUninstallKB981350$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB982381)-->"C:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB894391)-->"C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB910437)-->"C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB925720)-->"C:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB978207)-->"C:\WINDOWS\$NtUninstallKB978207$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB980182)-->"C:\WINDOWS\$NtUninstallKB980182$\spuninst\spuninst.exe"
Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
Mozilla Firefox (3.6.17)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
Nero 6 Ultra Edition-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Open Video Converter version 3.3-->"C:\Program Files\VideoConverter\unins000.exe"
QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log
RealOne Player-->C:\Program Files\Fichiers communs\Real\Update_OB\rnuninst.exe RealNetworks|RealPlayer|6.0
RelevantKnowledge-->C:\Program Files\RelevantKnowledge\rlvknlg.exe -bootremove -uninst:RelevantKnowledge
Search Settings v1.2.3-->MsiExec.exe /X{5F05C28D-DEA9-4AD6-A73A-064175988EAB}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
SoftwareClub Video Cutter Max 3.6.0.8-->"C:\Program Files\SoftwareClub.ws\Video Cutter Max\unins000.exe"
SoundMAX-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe"
Street-Ads Browser Enhancer-->"C:\WINDOWS\$XNTUninstall643$\apUninstall.exe"
SweetIM for Messenger 3.4-->MsiExec.exe /X{F70AE624-2B41-476F-BC9C-0A7F158C3F15}
TeamViewer 6-->C:\Program Files\TeamViewer\Version6\uninstall.exe
TL-WN321G Wireless Utility-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B468AE7B-C667-4073-BED8-EAD17D5EE08C}\setup.exe" -l0x9 -removeonly
Ulead Disc-Direct SDK-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8D2C1E44-7685-4D05-8342-B0DC6422FA47}\setup.exe" -l0x9
Uninstall 1.0.0.1-->"C:\Program Files\Fichiers communs\DVDVideoSoft\unins000.exe"
Unlocker 1.9.0-->C:\Program Files\Unlocker\uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Usenet.nl-->"C:\Program Files\Usenet.nl\unins000.exe"
VideoMate TV driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{13E5C47B-D111-406A-9B69-D5886BDA5F86}\setup.exe" -l0x9
ViewSonic Windows XP Signed Files-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FC47C7A5-BE63-11D5-B7C9-005004566E4D}\Setup.exe" -l0x9
VirtualCloneDrive-->"C:\Program Files\Elaborate Bytes\VirtualCloneDrive\vcd-uninst.exe" /D="C:\Program Files\Elaborate Bytes\VirtualCloneDrive"
VLC media player 1.0.1-->C:\Program Files\VideoLAN\VLC\uninstall.exe
WhiteSmoke-->C:\Program Files\WhiteSmoke\Uninst.exe
Winamp (remove only)-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0)-->rundll32.exe C:\PROGRA~1\DIFX\15B7F172FC21855D\DIFxAppA.dll, DIFxARPUninstallDriverPackage C:\WINDOWS\system32\DRVSTORE\grmnusb_8E661E05CC789A6D1B8ABAA087CF60EDD72AC35D\grmnusb.inf
Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows XP Service Pack 2-->C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
WinZip-->"C:\PROGRA~1\WINZIP\winzip32.exe" /uninstall
WMV TO AVI CONVERTER version 3.1.1-->"C:\Program Files\WMVTOAVI\unins000.exe"
Hosts File Missing
======Security center information======
AV: AVG Anti-Virus Free
======System event log======
Computer Name: P4-2400
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Pml Driver HPZ12.
Record Number: 7683
Source Name: Service Control Manager
Time Written: 20110122131408.000000-300
Event Type: Informations
User: P4-2400\Daniel
Computer Name: P4-2400
Event Code: 7036
Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.
Record Number: 7682
Source Name: Service Control Manager
Time Written: 20110122131407.000000-300
Event Type: I
J'ai des problèmes de virus depuis quelques temps. Quelqu'un pourrait vérifier mon rapport svp ?
Logfile of random's system information tool 1.08 (written by random/random)
Run by Daniel at 2011-06-09 14:18:02
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 18 GB (53%) free of 34 GB
Total RAM: 1535 MB (40% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:18:17, on 09/06/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\WINDOWS\System32\gearsec.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\RelevantKnowledge\rlvknlg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TeamViewer\Version6\TeamViewer.exe
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\PROGRA~1\Druide\Antidote\Gestionnaire Antidote.exe
C:\Program Files\BitTorrent\bittorrent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\VideoMate\ComproRemote.exe
C:\Program Files\Fichiers communs\VideoMate\ComproScheduler.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\System32\MDM.EXE
C:\DOCUME~1\Daniel\LOCALS~1\Temp\Ysm.exe
C:\Documents and Settings\Daniel\Bureau\Virus\RSIT.exe
C:\Program Files\trend micro\Daniel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.autocompletepro.com/?si=10206&bi=400
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.autocompletepro.com/?si=10206&bi=400
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.autocompletepro.com/?si=10206&bi=400
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.ca/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.autocompletepro.com/?si=10206&bi=400
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - (no file)
R3 - URLSearchHook: (no name) - {4daac69c-cba7-45e2-9bc8-1044483d3352} - (no file)
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SuggestMeYesBHO - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Program Files\AutocompletePro\AutocompletePro.dll
O2 - BHO: IE Privacy Keeper - Last IE Window Detector - {1201333E-BAD9-481C-BCF5-6904498CF85B} - C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPKbho.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Interest recogniser for Crazyloader (powered by Spointer) - {C5F65718-341D-4e7d-9842-FCB9CC89527E} - C:\Program Files\CrazyLoader\spointer\extensions\crazyloader_air_ie.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [Yyuhesebevaxi] rundll32.exe "C:\WINDOWS\ayenulohufaje.dll",Startup
O4 - HKLM\..\Run: [sp4jke] C:\Documents and Settings\Daniel\Application Data\25e23d.exe
O4 - HKLM\..\Run: [bipro] rundll32 "C:\WINDOWS\$XNTUninstall643$\wktly.dll",,Run
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [Gestionnaire Antidote.exe] C:\PROGRA~1\Druide\Antidote\Gestionnaire Antidote.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe"
O4 - HKCU\..\Run: [4ECYTQ9SIC] C:\DOCUME~1\Daniel\LOCALS~1\Temp\Ysm.exe
O4 - HKCU\..\Run: [KOQMLYTPE7] C:\WINDOWS\Ytadea.exe
O4 - HKCU\..\Run: [Syaxeri] rundll32.exe "C:\WINDOWS\wmsdupi.dll",Startup
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-20 Startup: Launch WhiteSmoke.lnk = C:\Program Files\WhiteSmoke\WSEnrichment.exe (User 'SERVICE RÉSEAU')
O4 - S-1-5-18 Startup: Launch WhiteSmoke.lnk = C:\Program Files\WhiteSmoke\WSEnrichment.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Launch WhiteSmoke.lnk = C:\Program Files\WhiteSmoke\WSEnrichment.exe (User 'Default user')
O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe
O4 - Startup: RollerCoaster Tycoon 3 Registration.lnk = C:\Documents and Settings\Daniel\Local Settings\Temp\{C73CE7FF-81AF-4D63-A827-863F32B3C8F1}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe
O4 - Global Startup: ComproRemote.lnk = ?
O4 - Global Startup: ComproScheduler.lnk = ?
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: TL-WN321G Wireless Utility.lnk = C:\Program Files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe
O4 - Global Startup: TweakYC.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote K - IE 6.htm (HKCU)
O9 - Extra button: Dictionnaires - {F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote D - IE 6.htm (HKCU)
O9 - Extra button: Guides - {FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote G - IE 6.htm (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.google.fr/
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O20 - Winlogon Notify: RelevantKnowledge - C:\Program Files\RelevantKnowledge\rlls.dll
O21 - SSODL: SwUpdate - {003541A1-3BC0-1B1C-AAF3-040114001C01} - C:\Documents and Settings\All Users\Application Data\Macromedia\swfupdate\swfupdate.dll
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Service de sécurité matérielle (GEARSecurity) - GEAR Software - C:\WINDOWS\System32\gearsec.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\System32\imapi.exe
O23 - Service: iPod Service (iPodService) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\System32\mnmsrvc.exe
O23 - Service: MouseDriver - Unknown owner - C:\Documents.exe (file missing)
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\System32\wbem\wmiapsrv.exe
--
End of file - 12495 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\ewpqj.job
C:\WINDOWS\tasks\PCMA.job
C:\WINDOWS\tasks\ppvgtmd.job
C:\WINDOWS\tasks\WGASetup.job
C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
C:\WINDOWS\tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
C:\WINDOWS\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16 37808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
AC-Pro - C:\Program Files\AutocompletePro\AutocompletePro.dll [2010-11-11 97760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1201333E-BAD9-481C-BCF5-6904498CF85B}]
LastWinDet Class - C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPKbho.dll [2004-05-19 81920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-11-26 1623392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2011-03-18 2471240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5F65718-341D-4e7d-9842-FCB9CC89527E}]
Interest recogniser for Crazyloader (powered by Spointer) - C:\Program Files\CrazyLoader\spointer\extensions\crazyloader_air_ie.dll [2010-08-19 135840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-05-16 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
SearchSettings Class - C:\Program Files\Search Settings\SearchSettings.dll [2009-12-16 1109504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-05-16 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2011-03-18 2471240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG7_EMC"=C:\PROGRA~1\Grisoft\AVG7\avgemc.exe [2004-02-29 186420]
"SunJavaUpdateSched"=C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [2010-02-18 248040]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2011-03-18 2071904]
"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2009-06-17 85160]
"UnlockerAssistant"=C:\Program Files\Unlocker\UnlockerAssistant.exe [2010-07-04 17408]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2004-02-12 49152]
"HP Component Manager"=C:\Program Files\HP\hpcoretech\hpcmpmgr.exe [2004-05-12 241664]
"Yyuhesebevaxi"=C:\WINDOWS\ayenulohufaje.dll [2005-03-02 270336]
"sp4jke"=C:\Documents and Settings\Daniel\Application Data\25e23d.exe []
"bipro"=rundll32 C:\WINDOWS\$XNTUninstall643$\wktly.dll,,Run []
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2011-03-13 114992]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2004-02-29 98304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Gestionnaire Antidote.exe"=C:\PROGRA~1\Druide\Antidote\Gestionnaire Antidote.exe [2008-12-02 542136]
"BitTorrent"=C:\Program Files\BitTorrent\bittorrent.exe [2011-06-07 400760]
"4ECYTQ9SIC"=C:\DOCUME~1\Daniel\LOCALS~1\Temp\Ysm.exe [2011-06-08 239104]
"KOQMLYTPE7"=C:\WINDOWS\Ytadea.exe []
"Syaxeri"= C:\WINDOWS\wmsdupi.dll,Startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdaptecDirectCD]
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CreateCD50]
C:\PROGRA~1\FICHIE~1\ADAPTE~1\CreateCD\CREATE~1.EXE -r []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2003-12-30 229376]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2004-02-29 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
C:\Program Files\Analog Devices\SoundMAX\Smtray.exe [2002-06-26 90112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2004-02-29 151597]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office\OSA9.EXE [1999-02-17 65588]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Symantec Fax Starter Edition Port.lnk]
C:\PROGRA~1\MICROS~2\Office\1036\OLFSNT40.EXE [1999-04-06 46080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^WinZip Quick Pick.lnk]
C:\PROGRA~1\WinZip\WZQKPICK.EXE [2002-11-27 106561]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
ComproRemote.lnk - C:\Program Files\Fichiers communs\VideoMate\ComproRemote.exe
ComproScheduler.lnk - C:\Program Files\Fichiers communs\VideoMate\ComproScheduler.exe
Démarrage rapide du logiciel HP Image Zone.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
TL-WN321G Wireless Utility.lnk - C:\Program Files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe
TweakYC.lnk - C:\Program Files\VideoMate\ComproPVR 2\TweakYC.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE
C:\Documents and Settings\Daniel\Menu Démarrer\Programmes\Démarrage
MagicDisc.lnk - C:\Program Files\MagicDisc\MagicDisc.exe
RollerCoaster Tycoon 3 Registration.lnk - C:\Documents and Settings\Daniel\Local Settings\Temp\{C73CE7FF-81AF-4D63-A827-863F32B3C8F1}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2004-01-27 86016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2010-07-15 12536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\RelevantKnowledge]
C:\Program Files\RelevantKnowledge\rlls.dll [2011-03-03 545408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
SwUpdate - {003541A1-3BC0-1B1C-AAF3-040114001C01} - C:\Documents and Settings\All Users\Application Data\Macromedia\swfupdate\swfupdate.dll [2011-06-08 74752]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\AVG\AVG9\avgupd.exe"="C:\Program Files\AVG\AVG9\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG9\avgnsx.exe"="C:\Program Files\AVG\AVG9\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Microsoft Games\Age of Empires II\EMPIRES2.ICD"="C:\Program Files\Microsoft Games\Age of Empires II\EMPIRES2.ICD:*:Enabled:Age of Empires II"
"C:\Program Files\CrazyLoader\crazyloader.exe"="C:\Program Files\CrazyLoader\crazyloader.exe:*:Enabled:CrazyLoader v1.2"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Javaw (x64)"
"C:\Program Files\Java\jre6\bin\javaws.exe"="C:\Program Files\Java\jre6\bin\javaws.exe:*:Enabled:Javaws (x64)"
"C:\Program Files\EA Games\Battlefield 1942\BF1942.exe"="C:\Program Files\EA Games\Battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Program Files\TeamViewer\Version6\TeamViewer.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"C:\WINDOWS\Temp\~os8.tmp\rlvknlg.exe"="C:\WINDOWS\Temp\~os8.tmp\rlvknlg.exe:*:Enabled:rlvknlg.exe"
"c:\program files\relevantknowledge\rlvknlg.exe"="c:\program files\relevantknowledge\rlvknlg.exe:*:Enabled:rlvknlg.exe"
"C:\Documents and Settings\Daniel\Application Data\25e23d.exe"="C:\Documents and Settings\Daniel\Application Data\25e23d.exe:*:Enabled:25e23d.exe"
"C:\WINDOWS\system32\lsass.exe"="C:\WINDOWS\system32\lsass.exe:*:Enabled:LSA Shell"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\lsass.exe"="C:\WINDOWS\system32\lsass.exe:*:Enabled:LSA Shell"
======List of files/folders created in the last 1 months======
2011-06-09 14:18:02 ----D---- C:\rsit
2011-06-09 14:18:02 ----D---- C:\Program Files\trend micro
2011-06-08 19:16:23 ----A---- C:\Documents and Settings\Daniel\Application Data\1t81v4bzz.bat
2011-06-08 19:15:49 ----A---- C:\Documents and Settings\Daniel\Application Data\qiwpjt0oo.bat
2011-06-08 19:12:39 ----A---- C:\Documents and Settings\Daniel\Application Data\80e81bi6.bat
2011-06-08 19:11:58 ----D---- C:\Program Files\SweetIM
2011-06-08 19:11:58 ----D---- C:\Documents and Settings\All Users\Application Data\SweetIM
2011-06-08 19:11:45 ----D---- C:\Program Files\WhiteSmoke
2011-06-08 19:11:03 ----A---- C:\Documents and Settings\Daniel\Application Data\tlzsmw3rr.bat
2011-06-08 19:10:56 ----A---- C:\Documents and Settings\Daniel\Application Data\ibpiclsh.bat
2011-06-08 19:06:08 ----A---- C:\Documents and Settings\Daniel\Application Data\h9ohbkrf.bat
2011-06-08 19:05:42 ----D---- C:\WINDOWS\$XNTUninstall643$
2011-06-08 19:03:01 ----A---- C:\Documents and Settings\Daniel\Application Data\4wa4x7e22.bat
2011-06-08 18:59:21 ----A---- C:\Documents and Settings\Daniel\Application Data\7ze70ah5.bat
2011-06-08 18:58:16 ----A---- C:\Documents and Settings\Daniel\Application Data\meslfpwk.bat
2011-06-08 18:58:06 ----D---- C:\Documents and Settings\All Users\Application Data\Macromedia
2011-06-08 18:56:52 ----A---- C:\Documents and Settings\Daniel\Application Data\jbpiclth.bat
2011-06-08 18:56:37 ----A---- C:\Documents and Settings\Daniel\Application Data\g8mf9iqe.bat
2011-06-08 18:56:22 ----A---- C:\Documents and Settings\Daniel\Application Data\e7le8hod.bat
2011-06-08 18:56:12 ----A---- C:\Documents and Settings\Daniel\Application Data\c5jc6fmb.bat
2011-06-08 18:55:51 ----A---- C:\Documents and Settings\Daniel\Application Data\h9nhakrf.bat
2011-06-08 18:55:39 ----A---- C:\Documents and Settings\Daniel\Application Data\phvoisznn.bat
2011-06-08 18:53:14 ----A---- C:\Documents and Settings\Daniel\Application Data\wo2vpz6uu.bat
2011-06-08 18:51:58 ----A---- C:\Documents and Settings\Daniel\Application Data\b3ib4el9.bat
2011-06-08 18:50:32 ----A---- C:\Documents and Settings\Daniel\Application Data\rjxqku1pp.bat
2011-06-08 18:49:17 ----A---- C:\Documents and Settings\Daniel\Application Data\91f82cj7.bat
2011-06-08 18:47:04 ----A---- C:\Documents and Settings\Daniel\Application Data\phvoirznm.bat
2011-06-08 18:46:52 ----H---- C:\Documents and Settings\Daniel\Application Data\MouseDriver.bat
2011-06-08 18:45:45 ----RASH---- C:\WINDOWS\system32\kbdmaorix.dll
2011-06-08 18:45:44 ----RASH---- C:\WINDOWS\system32\kbdbuy.dll
2011-05-22 23:56:36 ----A---- C:\WINDOWS\IE4 Error Log.txt
======List of files/folders modified in the last 1 months======
2011-06-09 14:18:02 ----RD---- C:\Program Files
2011-06-09 14:11:14 ----SD---- C:\WINDOWS\Tasks
2011-06-09 14:11:02 ----D---- C:\Program Files\RelevantKnowledge
2011-06-09 14:10:44 ----AC---- C:\WINDOWS\mdm.ini
2011-06-09 14:08:26 ----D---- C:\Documents and Settings\Daniel\Application Data\BitTorrent
2011-06-09 14:07:34 ----D---- C:\WINDOWS\system32
2011-06-09 13:58:44 ----D---- C:\WINDOWS
2011-06-09 13:58:08 ----D---- C:\WINDOWS\Temp
2011-06-09 13:57:11 ----D---- C:\Documents and Settings\All Users\Application Data\avg9
2011-06-09 13:54:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-06-09 11:51:58 ----D---- C:\WINDOWS\system32\drivers\Avg
2011-06-09 11:45:29 ----D---- C:\WINDOWS\Prefetch
2011-06-09 11:43:09 ----SHD---- C:\System Volume Information
2011-06-09 11:43:09 ----D---- C:\WINDOWS\system32\Restore
2011-06-08 20:12:10 ----D---- C:\Program Files\Mozilla Firefox
2011-06-08 19:13:09 ----SHD---- C:\WINDOWS\Installer
2011-06-08 19:12:47 ----HD---- C:\Config.Msi
2011-06-08 18:51:58 ----D---- C:\WINDOWS\system32\drivers\etc
2011-06-08 18:45:46 ----D---- C:\Program Files\Belarc
2011-06-07 20:45:35 ----A---- C:\WINDOWS\Antidote.ini
2011-06-07 20:06:51 ----D---- C:\Documents and Settings\Daniel\Application Data\vlc
2011-06-07 11:23:58 ----D---- C:\Program Files\BitTorrent
2011-06-03 23:21:02 ----D---- C:\Documents and Settings\Daniel\Application Data\dvdcss
2011-05-21 21:48:11 ----A---- C:\WINDOWS\NeroDigital.ini
2011-05-14 11:40:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-05-13 23:44:41 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 agp440;Filtre de bus AGP Intel; C:\WINDOWS\System32\DRIVERS\agp440.sys [2004-08-04 42368]
R0 IdeBusDr;IdeBusDr; C:\WINDOWS\System32\DRIVERS\IdeBusDr.sys [2002-08-14 13782]
R0 IdeChnDr;Intel(R) Ultra ATA Controller; C:\WINDOWS\System32\DRIVERS\IdeChnDr.sys [2002-08-14 93594]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-08-06 721904]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2010-07-15 216400]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2010-06-05 29584]
R1 AvgTdiX;AVG Free Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2011-05-06 243152]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-12-17 26024]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2004-08-19 40320]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-19 14848]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2010-03-02 20747]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2004-01-27 669696]
R3 bcm4sbxp;ASUSTeK/Broadcom 440x 10/100 Integrated Controller XP Driver; C:\WINDOWS\System32\DRIVERS\bcm4sbxp.sys [2002-09-09 41728]
R3 Cap7134;VideoMate TV Capture; C:\WINDOWS\system32\DRIVERS\Cap7134.sys [2005-09-23 354048]
R3 GEARAspiWDM;GEAR CDRom Filter; C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys [2003-11-03 9760]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-06-22 51088]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-06-22 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-06-22 21744]
R3 mcdbus;mcdbus; C:\WINDOWS\system32\DRIVERS\mcdbus.sys [2009-02-24 116736]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 PhTVTune;VideoMate TV Tuner; C:\WINDOWS\system32\DRIVERS\PhTVTune.sys [2005-09-12 19840]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2002-09-06 549368]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
R3 VClone;VClone; C:\WINDOWS\system32\DRIVERS\VClone.sys [2009-08-09 29696]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 ms_mpu401;Pilote UART MIDI MPU-401 Microsoft; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 RT73;TL-WN321G USB Wireless Adapter; C:\WINDOWS\system32\DRIVERS\rt73.sys [2006-01-12 252928]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2005-01-28 18944]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2009-12-16 375296]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\System32\Ati2evxx.exe [2004-01-27 397312]
R2 avg9wd;AVG Free WatchDog; C:\Program Files\AVG\AVG9\avgwdsvc.exe [2010-07-15 308136]
R2 GEARSecurity;Service de sécurité matérielle; C:\WINDOWS\System32\gearsec.exe [2003-12-20 53248]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-05-16 153376]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-07-15 45056]
R2 TeamViewer6;TeamViewer 6; C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2011-01-27 2253688]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\System32\wdfmgr.exe [2005-01-28 38912]
R3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-03-18 65536]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-01-27 512000]
S2 MouseDriver;MouseDriver; C:\Documents and Settings\Daniel\Application Data\MouseDriver.bat [2011-06-08 107]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service; C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe [2011-03-18 947528]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPodService;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2003-12-30 417792]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.08 2011-06-09 14:18:22
======Uninstall list======
-->C:\Program Files\Fichiers communs\Real\Update_OB\rnuninst.exe RealNetworks|RealPlayer|6.0
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Acoustica CD/DVD Label Maker-->C:\Program Files\Acoustica CD Label Maker\cdlabel.exe UNINSTALL
Ad-Aware SE Personal-->C:\PROGRA~1\Lavasoft\AD-AWA~2\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~2\INSTALL.LOG
Adobe Acrobat 5.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil10i_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Shockwave Player 11.5-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
Antidote RX v7-->MsiExec.exe /X{A474EA56-5DBD-4181-8230-806A4762EA7F}
Apollo DivX to DVD Creator 4.5.7-->"C:\Program Files\Apollo DivX to DVD Creator\unins000.exe"
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Display Driver-->rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
AutocompletePro-->"C:\Program Files\AutocompletePro\unins000.exe"
AVG Free 9.0-->C:\Program Files\AVG\AVG9\setup.exe /UNINSTALL
AxCrypt 1.7.2126.0-->MsiExec.exe /I{E4C1DBF1-67D9-4973-9DEC-677E695E7CE0}
BitTorrent-->C:\Program Files\BitTorrent\uninst.exe
CamStudio 2.0 Fr-->"C:\Program Files\CamStudio\unins000.exe"
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
ComproDVD 2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{21DAFB84-2421-488F-B17D-102FF53396AA}\setup.exe" -l0x9
ComproPVR 2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FE5F8DF-755D-4E39-848A-154776182015}\setup.exe" -l0x9
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB979306)-->"C:\WINDOWS\$NtUninstallKB979306$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB981793)-->"C:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
Correctif Windows XP - KB810217-->C:\WINDOWS\$NtUninstallKB810217$\spuninst\spuninst.exe
Correctif Windows XP - KB873339-->C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
Correctif Windows XP - KB885250-->C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
Correctif Windows XP - KB885835-->C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
Correctif Windows XP - KB885836-->C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
Correctif Windows XP - KB886185-->C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
Correctif Windows XP - KB887472-->C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
Correctif Windows XP - KB887742-->C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
Correctif Windows XP - KB888113-->C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
Correctif Windows XP - KB888302-->C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
Correctif Windows XP - KB890859-->"C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
Correctif Windows XP - KB891781-->C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
CrazyLoader-->"C:\Program Files\CrazyLoader\uninstall.exe"
Diamond Mine-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{61474E25-34B5-4B95-962D-415DBE39E148}\Setup.exe"
Digital Voice Recorder-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B478ACE-8512-4A46-ACB2-69D83DF2F6C7}\setup.exe" -l0x9 -remove
Garmin USB Drivers-->MsiExec.exe /X{65F9E1F3-A2C1-4AA9-9F33-A3AEB0255F0E}
Garmin WebUpdater-->MsiExec.exe /X{D17111CB-C992-42A9-9D56-C19395102AAA}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HP Image Zone 4.2-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP PSC & OfficeJet 4.2-->"C:\Program Files\HP\Digital Imaging\{A1062847-0846-427A-92A1-BB8251A91E91}\setup\hpzscr01.exe" -datfile hposcr04.dat
HP Software Update-->MsiExec.exe /X{457791C5-D702-4143-A7B2-2744BE9573F2}
Intel Application Accelerator-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9984DF60-1C5B-11D3-ACA1-908A4FC10801}\Setup.exe" -INTELUNINST
iTunes-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{9705A7E1-3DD1-4BAC-8CA9-FE7B1473BEC9}
J2SE Runtime Environment 5.0 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
Java(TM) 6 Update 20-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216020FF}
Lecteur Windows Media 10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Media Player Codec Pack 3.4.0-->C:\WINDOWS\system32\C2MP\Uninst.exe
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Security Update (KB979906)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office 2000 Premium-->MsiExec.exe /I{0000040C-78E1-11D2-B60F-006097C998E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB978695)-->"C:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB2229593)-->"C:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB890046)-->"C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB893066)-->"C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB893756)-->"C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896358)-->"C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896422)-->"C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896423)-->"C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896424)-->"C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896428)-->"C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899587)-->"C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899589)-->"C:\WINDOWS\$NtUninstallKB899589$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899591)-->"C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB900725)-->"C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901017)-->"C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901214)-->"C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB902400)-->"C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB904706)-->"C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905414)-->"C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905749)-->"C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905915)-->"C:\WINDOWS\$NtUninstallKB905915$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB908519)-->"C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB912919)-->"C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB944338-v2)-->"C:\WINDOWS\$NtUninstallKB944338-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958470)-->"C:\WINDOWS\$NtUninstallKB958470$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971032)-->"C:\WINDOWS\$NtUninstallKB971032$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971468)-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971961)-->"C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975561)-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975562)-->"C:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977165-v2)-->"C:\WINDOWS\$NtUninstallKB977165-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977816)-->"C:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978251)-->"C:\WINDOWS\$NtUninstallKB978251$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978262)-->"C:\WINDOWS\$NtUninstallKB978262$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978338)-->"C:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978542)-->"C:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978601)-->"C:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979309)-->"C:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979482)-->"C:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979559)-->"C:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB979683)-->"C:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB980195)-->"C:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB980218)-->"C:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB980232)-->"C:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB981350)-->"C:\WINDOWS\$NtUninstallKB981350$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB982381)-->"C:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB894391)-->"C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB910437)-->"C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB925720)-->"C:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB978207)-->"C:\WINDOWS\$NtUninstallKB978207$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB980182)-->"C:\WINDOWS\$NtUninstallKB980182$\spuninst\spuninst.exe"
Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
Mozilla Firefox (3.6.17)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
Nero 6 Ultra Edition-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Open Video Converter version 3.3-->"C:\Program Files\VideoConverter\unins000.exe"
QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log
RealOne Player-->C:\Program Files\Fichiers communs\Real\Update_OB\rnuninst.exe RealNetworks|RealPlayer|6.0
RelevantKnowledge-->C:\Program Files\RelevantKnowledge\rlvknlg.exe -bootremove -uninst:RelevantKnowledge
Search Settings v1.2.3-->MsiExec.exe /X{5F05C28D-DEA9-4AD6-A73A-064175988EAB}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
SoftwareClub Video Cutter Max 3.6.0.8-->"C:\Program Files\SoftwareClub.ws\Video Cutter Max\unins000.exe"
SoundMAX-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe"
Street-Ads Browser Enhancer-->"C:\WINDOWS\$XNTUninstall643$\apUninstall.exe"
SweetIM for Messenger 3.4-->MsiExec.exe /X{F70AE624-2B41-476F-BC9C-0A7F158C3F15}
TeamViewer 6-->C:\Program Files\TeamViewer\Version6\uninstall.exe
TL-WN321G Wireless Utility-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B468AE7B-C667-4073-BED8-EAD17D5EE08C}\setup.exe" -l0x9 -removeonly
Ulead Disc-Direct SDK-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8D2C1E44-7685-4D05-8342-B0DC6422FA47}\setup.exe" -l0x9
Uninstall 1.0.0.1-->"C:\Program Files\Fichiers communs\DVDVideoSoft\unins000.exe"
Unlocker 1.9.0-->C:\Program Files\Unlocker\uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Usenet.nl-->"C:\Program Files\Usenet.nl\unins000.exe"
VideoMate TV driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{13E5C47B-D111-406A-9B69-D5886BDA5F86}\setup.exe" -l0x9
ViewSonic Windows XP Signed Files-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FC47C7A5-BE63-11D5-B7C9-005004566E4D}\Setup.exe" -l0x9
VirtualCloneDrive-->"C:\Program Files\Elaborate Bytes\VirtualCloneDrive\vcd-uninst.exe" /D="C:\Program Files\Elaborate Bytes\VirtualCloneDrive"
VLC media player 1.0.1-->C:\Program Files\VideoLAN\VLC\uninstall.exe
WhiteSmoke-->C:\Program Files\WhiteSmoke\Uninst.exe
Winamp (remove only)-->"C:\Program Files\Winamp\UninstWA.exe"
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0)-->rundll32.exe C:\PROGRA~1\DIFX\15B7F172FC21855D\DIFxAppA.dll, DIFxARPUninstallDriverPackage C:\WINDOWS\system32\DRVSTORE\grmnusb_8E661E05CC789A6D1B8ABAA087CF60EDD72AC35D\grmnusb.inf
Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows XP Service Pack 2-->C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe
WinZip-->"C:\PROGRA~1\WINZIP\winzip32.exe" /uninstall
WMV TO AVI CONVERTER version 3.1.1-->"C:\Program Files\WMVTOAVI\unins000.exe"
Hosts File Missing
======Security center information======
AV: AVG Anti-Virus Free
======System event log======
Computer Name: P4-2400
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Pml Driver HPZ12.
Record Number: 7683
Source Name: Service Control Manager
Time Written: 20110122131408.000000-300
Event Type: Informations
User: P4-2400\Daniel
Computer Name: P4-2400
Event Code: 7036
Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.
Record Number: 7682
Source Name: Service Control Manager
Time Written: 20110122131407.000000-300
Event Type: I
A voir également:
- Analyse rapport RSIT svp !
- Rsit - Télécharger - Antivirus & Antimalwares
- Rapport de stage - Guide
- Echec de l'analyse antivirus - Astuces et Solutions
- Échec de l'analyse antivirus. ✓ - Forum Antivirus
- Analyse composant pc - Guide
19 réponses
Bonjour,
Ton PC c'est une déchetterie ! :o)
Commence par faire ceci :
▶ Ad-Remover ◀
Télécharge AD-Remover (de C_XX) sur ton Bureau.
Déconnecte toi et ferme toutes les applications en cours
Double-clique sur l'icône AD-Remover
Au menu principal, clique sur "Nettoyer"
Confirme le lancement de l'analyse et laisse l'outil travailler
Poste le rapport qui apparait à la fin (il est aussi sauvegardé sous C:\Ad-report-CLEAN.txt )
Ton PC c'est une déchetterie ! :o)
Commence par faire ceci :
▶ Ad-Remover ◀
Télécharge AD-Remover (de C_XX) sur ton Bureau.
Déconnecte toi et ferme toutes les applications en cours
Double-clique sur l'icône AD-Remover
Au menu principal, clique sur "Nettoyer"
Confirme le lancement de l'analyse et laisse l'outil travailler
Poste le rapport qui apparait à la fin (il est aussi sauvegardé sous C:\Ad-report-CLEAN.txt )
======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======
Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (CLEAN [4]) -> Lancé à 16:25:32 le 09/06/2011, Mode normal
Microsoft Windows XP Professionnel Service Pack 2 (X86)
Daniel@P4-2400 ( )
============== ACTION(S) ==============
Service: "Application Updater" Stoppé et supprimé
Fichier supprimé: C:\Program Files\Mozilla Firefox\extensions\searchsettings@spigot.com
Fichier supprimé: C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default\searchplugins\askcom.xml
Fichier supprimé: C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default\searchplugins\conduit.xml
Dossier supprimé: C:\Documents and Settings\Daniel\Local Settings\Application Data\Conduit
Dossier supprimé: C:\Program Files\Conduit
Dossier supprimé: C:\Program Files\Application Updater
Dossier supprimé: C:\Program Files\AutocompletePro
Dossier supprimé: C:\Documents and Settings\Daniel\Menu Démarrer\Programmes\CrazyLoader
Dossier supprimé: C:\Program Files\CrazyLoader
Dossier supprimé: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\RelevantKnowledge
Dossier supprimé: C:\Program Files\RelevantKnowledge
Dossier supprimé: C:\Documents and Settings\Daniel\Application Data\Search Settings
Dossier supprimé: C:\Program Files\Search Settings
Dossier supprimé: C:\WINDOWS\$XNTUninstall643$
(!) -- Fichiers temporaires supprimés.
-- Fichier ouvert: C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default\Prefs.js --
Ligne supprimée: user_pref("CT2542115.SearchEngine", "Recherche||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_...
Ligne supprimée: user_pref("CT2542115.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT254...
Ligne supprimée: user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.yahoo.com/search?fr=greent...
Ligne supprimée: user_pref("CommunityToolbar.ToolbarsList", "CT2542115");
Ligne supprimée: user_pref("CommunityToolbar.ToolbarsList2", "CT2542115");
Ligne supprimée: user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2542115");
Ligne supprimée: user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2542115&Sea...
-- Fichier Fermé --
Clé supprimée: HKLM\Software\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Clé supprimée: HKLM\Software\Classes\CLSID\{6DF77AA3-27AF-46f2-A1DA-B569AC6BEEFF}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6DF77AA3-27AF-46f2-A1DA-B569AC6BEEFF}
Clé supprimée: HKLM\Software\Classes\CLSID\{6F6C45E4-E231-4F0F-8CD8-AA5770303EAA}
Clé supprimée: HKLM\Software\Classes\Interface\{6F6C45E4-E231-4F0F-8CD8-AA5770303EAA}
Clé supprimée: HKLM\Software\Classes\CLSID\{86460CE5-46A0-4543-B8FE-2D2AE182A2FE}
Clé supprimée: HKLM\Software\Classes\CLSID\{A1755B14-2AFA-42a6-97C3-AA81B4482B71}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1755B14-2AFA-42a6-97C3-AA81B4482B71}
Clé supprimée: HKLM\Software\Classes\CLSID\{C5F65718-341D-4e7d-9842-FCB9CC89527E}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5F65718-341D-4e7d-9842-FCB9CC89527E}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5F65718-341D-4e7d-9842-FCB9CC89527E}
Clé supprimée: HKLM\Software\Classes\CLSID\{CB1CC8F5-D23C-400F-8472-F6AEFEDE4768}
Clé supprimée: HKLM\Software\Classes\Interface\{CB1CC8F5-D23C-400F-8472-F6AEFEDE4768}
Clé supprimée: HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Clé supprimée: HKLM\Software\Classes\Interface\{471E3998-588E-41D5-A874-FA11C44B70DE}
Clé supprimée: HKLM\Software\Classes\Interface\{4F309FEB-422A-4808-91D0-71DFACCCA399}
Clé supprimée: HKLM\Software\Classes\Interface\{8F271B52-1E44-42D7-B316-BA23A0FD9DB4}
Clé supprimée: HKLM\Software\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Clé supprimée: HKLM\Software\Classes\Interface\{D4E856E7-C034-49BA-BFEF-B785F3CBD7BA}
Clé supprimée: HKLM\Software\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
Clé supprimée: HKLM\Software\Classes\Interface\{DB7A9C36-6C85-48BE-BA8D-151B6B144BE0}
Clé supprimée: HKLM\Software\Classes\Interface\{F77F3DFC-F5DC-4316-AB50-B50B16F2BEF4}
Clé supprimée: HKLM\Software\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Clé supprimée: HKLM\Software\Classes\TypeLib\{63AF3145-D2DC-4F1D-BB3A-3AAD9FEC3430}
Clé supprimée: HKLM\Software\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
Clé supprimée: HKLM\Software\Classes\TypeLib\{D530F69A-EB2D-4EC6-BD37-E123AEFCA011}
Clé supprimée: HKLM\Software\Classes\TypeLib\{F5BCBC2A-E8F6-4A47-BBCB-61713EA03787}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\$XNTUninstall643$
Clé supprimée: HKLM\Software\Classes\Crazyloader.Spointer
Clé supprimée: HKLM\Software\Classes\Crazyloader.Spointer.1
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerCtrl
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerCtrl.1
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerWebDisp
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerWebDisp.1
Clé supprimée: HKLM\Software\Classes\SearchSettings.BHO
Clé supprimée: HKLM\Software\Classes\SearchSettings.BHO.1
Clé supprimée: HKLM\Software\Classes\SuggestMeYes.SuggestMeYesBHO
Clé supprimée: HKLM\Software\Classes\SuggestMeYes.SuggestMeYesBHO.1
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2542115
Clé supprimée: HKLM\Software\Classes\AppID\AutocompletePro.DLL
Clé supprimée: HKLM\Software\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Clé supprimée: HKLM\Software\Application Updater
Clé supprimée: HKLM\Software\Conduit
Clé supprimée: HKLM\Software\PopCap
Clé supprimée: HKLM\Software\Search Settings
Clé supprimée: HKCU\Software\AutocompletePro
Clé supprimée: HKCU\Software\Conduit
Clé supprimée: HKCU\Software\Search Settings
Clé supprimée: HKCU\Software\Spointer
Clé supprimée: HKU\.DEFAULT\Software\AutocompletePro
Clé supprimée: HKU\.DEFAULT\Software\Search Settings
Clé supprimée: HKU\.DEFAULT\Software\Spointer
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\ClickPotato
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\CrazyLoader
Clé supprimée: HKLM\Software\Classes\Installer\Products\D82C50F59AED6DA47AA360145789E8BA
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Products\D82C50F59AED6DA47AA360145789E8BA
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DBA4B812-2415-4000-AFCB-56F53E668DC5}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5F05C28D-DEA9-4AD6-A73A-064175988EAB}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\AutocompletePro3_is1
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CrazyLoader
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Clé supprimée: HKLM\Software\Google\Chrome\Extensions\defdhglnppeioeflggkmglipcecffkhk
Clé supprimée: HKLM\Software\Google\Chrome\Extensions\fikmanfpkongnopggnndbikhhicdpfka
Clé supprimée: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\RelevantKnowledge
Valeur supprimée: HKLM\Software\Mozilla\Firefox\Extensions|{6E19037A-12E3-4295-8915-ED48BC341614}
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{00000000-6E41-4FD3-8538-502F5495E5FC}
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}
============== SCAN ADDITIONNEL ==============
**** Mozilla Firefox Version [3.6.17 (fr)] ****
Searchplugins\acpro.xml ( hxxp://search.autocompletepro.com?si=10206&q={searchTerms}/)
Searchplugins\avg_igeared.xml (hxxp://search.avg.com/route/?d=4b91abd2&v=6.103.018.001&i=23&tp=chrome&q={searchTerms}&lng=fr&iy=&ychte=cf/)
HKLM_Extensions|avg@igeared - C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared
HKLM_Extensions|{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C} - C:\Documents and Settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}
-- C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default --
Extensions\en-CA@dictionaries.addons.mozilla.org (Canadian English Dictionary)
Extensions\support@predictad.com (AutocompletePro - Your handy search suggestions tool)
Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} (Garmin Communicator)
Extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352} (Softonic_France Toolbar)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Daniel\\Bureau
Prefs.js - browser.search.defaultenginename, AVG Secure Search
Prefs.js - browser.search.selectedEngine, AVG Secure Search
Prefs.js - browser.startup.homepage, hxxp://www.google.ca/
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.17
Prefs.js - keyword.URL, hxxp://search.avg.com/route/?d=4b91abd2&v=6.103.018.001&i=23&tp=ab&iy=&ychte=cf&lng=fr&q=
========================================
**** Internet Explorer Version [6.0.2900.2180] ****
HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_URLSearchHooks|{4daac69c-cba7-45e2-9bc8-1044483d3352} (x)
HKCU_SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} - "Web Search" (hxxp://search.autocompletepro.com/?si=10206&bi=400&q={searchTerms})
HKCU_SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - "AVG Secure Search" (hxxp://search.avg.com/route/?d=4b91abd2&v=6.10.6.4&i=23&tp=chrome&q={searchTerms...)
HKLM_SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} - "SweetIM Search" (hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms})
HKCU_Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe (?)
HKCU_Extensions\{F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - "Correcteur" (C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote K - IE 6.ico)
HKCU_Extensions\{F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - "Dictionnaires" (C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote D - IE 6.ico)
HKCU_Extensions\{FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - "Guides" (C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote G - IE 6.ico)
BHO\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - "AcroIEHlprObj Class" (C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx)
BHO\{1201333E-BAD9-481C-BCF5-6904498CF85B} - "LastWinDet Class" (C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPKbho.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 366 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 18 Fichier(s)
C:\Ad-Report-CLEAN[1].txt - 09/06/2011 15:58:36 (427 Octet(s))
C:\Ad-Report-CLEAN[2].txt - 09/06/2011 16:09:22 (427 Octet(s))
C:\Ad-Report-CLEAN[3].txt - 09/06/2011 16:12:53 (427 Octet(s))
C:\Ad-Report-CLEAN[4].txt - 09/06/2011 16:25:49 (13246 Octet(s))
C:\Ad-Report-SCAN[1].txt - 09/06/2011 16:16:14 (8785 Octet(s))
Fin à: 16:27:49, 09/06/2011
============== E.O.F ==============
Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (CLEAN [4]) -> Lancé à 16:25:32 le 09/06/2011, Mode normal
Microsoft Windows XP Professionnel Service Pack 2 (X86)
Daniel@P4-2400 ( )
============== ACTION(S) ==============
Service: "Application Updater" Stoppé et supprimé
Fichier supprimé: C:\Program Files\Mozilla Firefox\extensions\searchsettings@spigot.com
Fichier supprimé: C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default\searchplugins\askcom.xml
Fichier supprimé: C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default\searchplugins\conduit.xml
Dossier supprimé: C:\Documents and Settings\Daniel\Local Settings\Application Data\Conduit
Dossier supprimé: C:\Program Files\Conduit
Dossier supprimé: C:\Program Files\Application Updater
Dossier supprimé: C:\Program Files\AutocompletePro
Dossier supprimé: C:\Documents and Settings\Daniel\Menu Démarrer\Programmes\CrazyLoader
Dossier supprimé: C:\Program Files\CrazyLoader
Dossier supprimé: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\RelevantKnowledge
Dossier supprimé: C:\Program Files\RelevantKnowledge
Dossier supprimé: C:\Documents and Settings\Daniel\Application Data\Search Settings
Dossier supprimé: C:\Program Files\Search Settings
Dossier supprimé: C:\WINDOWS\$XNTUninstall643$
(!) -- Fichiers temporaires supprimés.
-- Fichier ouvert: C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default\Prefs.js --
Ligne supprimée: user_pref("CT2542115.SearchEngine", "Recherche||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_...
Ligne supprimée: user_pref("CT2542115.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT254...
Ligne supprimée: user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.yahoo.com/search?fr=greent...
Ligne supprimée: user_pref("CommunityToolbar.ToolbarsList", "CT2542115");
Ligne supprimée: user_pref("CommunityToolbar.ToolbarsList2", "CT2542115");
Ligne supprimée: user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2542115");
Ligne supprimée: user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2542115&Sea...
-- Fichier Fermé --
Clé supprimée: HKLM\Software\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Clé supprimée: HKLM\Software\Classes\CLSID\{6DF77AA3-27AF-46f2-A1DA-B569AC6BEEFF}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6DF77AA3-27AF-46f2-A1DA-B569AC6BEEFF}
Clé supprimée: HKLM\Software\Classes\CLSID\{6F6C45E4-E231-4F0F-8CD8-AA5770303EAA}
Clé supprimée: HKLM\Software\Classes\Interface\{6F6C45E4-E231-4F0F-8CD8-AA5770303EAA}
Clé supprimée: HKLM\Software\Classes\CLSID\{86460CE5-46A0-4543-B8FE-2D2AE182A2FE}
Clé supprimée: HKLM\Software\Classes\CLSID\{A1755B14-2AFA-42a6-97C3-AA81B4482B71}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1755B14-2AFA-42a6-97C3-AA81B4482B71}
Clé supprimée: HKLM\Software\Classes\CLSID\{C5F65718-341D-4e7d-9842-FCB9CC89527E}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5F65718-341D-4e7d-9842-FCB9CC89527E}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5F65718-341D-4e7d-9842-FCB9CC89527E}
Clé supprimée: HKLM\Software\Classes\CLSID\{CB1CC8F5-D23C-400F-8472-F6AEFEDE4768}
Clé supprimée: HKLM\Software\Classes\Interface\{CB1CC8F5-D23C-400F-8472-F6AEFEDE4768}
Clé supprimée: HKLM\Software\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Clé supprimée: HKLM\Software\Classes\Interface\{471E3998-588E-41D5-A874-FA11C44B70DE}
Clé supprimée: HKLM\Software\Classes\Interface\{4F309FEB-422A-4808-91D0-71DFACCCA399}
Clé supprimée: HKLM\Software\Classes\Interface\{8F271B52-1E44-42D7-B316-BA23A0FD9DB4}
Clé supprimée: HKLM\Software\Classes\Interface\{C9AE652B-8C99-4AC2-B556-8B501182874E}
Clé supprimée: HKLM\Software\Classes\Interface\{D4E856E7-C034-49BA-BFEF-B785F3CBD7BA}
Clé supprimée: HKLM\Software\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
Clé supprimée: HKLM\Software\Classes\Interface\{DB7A9C36-6C85-48BE-BA8D-151B6B144BE0}
Clé supprimée: HKLM\Software\Classes\Interface\{F77F3DFC-F5DC-4316-AB50-B50B16F2BEF4}
Clé supprimée: HKLM\Software\Classes\TypeLib\{01BCB858-2F62-4F06-A8F4-48F927C15333}
Clé supprimée: HKLM\Software\Classes\TypeLib\{63AF3145-D2DC-4F1D-BB3A-3AAD9FEC3430}
Clé supprimée: HKLM\Software\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
Clé supprimée: HKLM\Software\Classes\TypeLib\{D530F69A-EB2D-4EC6-BD37-E123AEFCA011}
Clé supprimée: HKLM\Software\Classes\TypeLib\{F5BCBC2A-E8F6-4A47-BBCB-61713EA03787}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\$XNTUninstall643$
Clé supprimée: HKLM\Software\Classes\Crazyloader.Spointer
Clé supprimée: HKLM\Software\Classes\Crazyloader.Spointer.1
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerCtrl
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerCtrl.1
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerWebDisp
Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerWebDisp.1
Clé supprimée: HKLM\Software\Classes\SearchSettings.BHO
Clé supprimée: HKLM\Software\Classes\SearchSettings.BHO.1
Clé supprimée: HKLM\Software\Classes\SuggestMeYes.SuggestMeYesBHO
Clé supprimée: HKLM\Software\Classes\SuggestMeYes.SuggestMeYesBHO.1
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2542115
Clé supprimée: HKLM\Software\Classes\AppID\AutocompletePro.DLL
Clé supprimée: HKLM\Software\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Clé supprimée: HKLM\Software\Application Updater
Clé supprimée: HKLM\Software\Conduit
Clé supprimée: HKLM\Software\PopCap
Clé supprimée: HKLM\Software\Search Settings
Clé supprimée: HKCU\Software\AutocompletePro
Clé supprimée: HKCU\Software\Conduit
Clé supprimée: HKCU\Software\Search Settings
Clé supprimée: HKCU\Software\Spointer
Clé supprimée: HKU\.DEFAULT\Software\AutocompletePro
Clé supprimée: HKU\.DEFAULT\Software\Search Settings
Clé supprimée: HKU\.DEFAULT\Software\Spointer
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\ClickPotato
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\CrazyLoader
Clé supprimée: HKLM\Software\Classes\Installer\Products\D82C50F59AED6DA47AA360145789E8BA
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Products\D82C50F59AED6DA47AA360145789E8BA
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DBA4B812-2415-4000-AFCB-56F53E668DC5}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5F05C28D-DEA9-4AD6-A73A-064175988EAB}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D08D9F98-1C78-4704-87E6-368B0023D831}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\AutocompletePro3_is1
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\CrazyLoader
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Clé supprimée: HKLM\Software\Google\Chrome\Extensions\defdhglnppeioeflggkmglipcecffkhk
Clé supprimée: HKLM\Software\Google\Chrome\Extensions\fikmanfpkongnopggnndbikhhicdpfka
Clé supprimée: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\RelevantKnowledge
Valeur supprimée: HKLM\Software\Mozilla\Firefox\Extensions|{6E19037A-12E3-4295-8915-ED48BC341614}
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{E312764E-7706-43F1-8DAB-FCDD2B1E416D}
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{00000000-6E41-4FD3-8538-502F5495E5FC}
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}
============== SCAN ADDITIONNEL ==============
**** Mozilla Firefox Version [3.6.17 (fr)] ****
Searchplugins\acpro.xml ( hxxp://search.autocompletepro.com?si=10206&q={searchTerms}/)
Searchplugins\avg_igeared.xml (hxxp://search.avg.com/route/?d=4b91abd2&v=6.103.018.001&i=23&tp=chrome&q={searchTerms}&lng=fr&iy=&ychte=cf/)
HKLM_Extensions|avg@igeared - C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared
HKLM_Extensions|{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C} - C:\Documents and Settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}
-- C:\Documents and Settings\Daniel\Application Data\Mozilla\FireFox\Profiles\71grxzbe.default --
Extensions\en-CA@dictionaries.addons.mozilla.org (Canadian English Dictionary)
Extensions\support@predictad.com (AutocompletePro - Your handy search suggestions tool)
Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} (Garmin Communicator)
Extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352} (Softonic_France Toolbar)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\Daniel\\Bureau
Prefs.js - browser.search.defaultenginename, AVG Secure Search
Prefs.js - browser.search.selectedEngine, AVG Secure Search
Prefs.js - browser.startup.homepage, hxxp://www.google.ca/
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.17
Prefs.js - keyword.URL, hxxp://search.avg.com/route/?d=4b91abd2&v=6.103.018.001&i=23&tp=ab&iy=&ychte=cf&lng=fr&q=
========================================
**** Internet Explorer Version [6.0.2900.2180] ****
HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_URLSearchHooks|{4daac69c-cba7-45e2-9bc8-1044483d3352} (x)
HKCU_SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} - "Web Search" (hxxp://search.autocompletepro.com/?si=10206&bi=400&q={searchTerms})
HKCU_SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - "AVG Secure Search" (hxxp://search.avg.com/route/?d=4b91abd2&v=6.10.6.4&i=23&tp=chrome&q={searchTerms...)
HKLM_SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} - "SweetIM Search" (hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms})
HKCU_Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe (?)
HKCU_Extensions\{F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - "Correcteur" (C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote K - IE 6.ico)
HKCU_Extensions\{F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - "Dictionnaires" (C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote D - IE 6.ico)
HKCU_Extensions\{FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - "Guides" (C:\Program Files\Druide\Antidote\Internet Explorer\6\Antidote G - IE 6.ico)
BHO\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - "AcroIEHlprObj Class" (C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx)
BHO\{1201333E-BAD9-481C-BCF5-6904498CF85B} - "LastWinDet Class" (C:\Program Files\UnH Solutions\IE Privacy Keeper\IEPKbho.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 366 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 18 Fichier(s)
C:\Ad-Report-CLEAN[1].txt - 09/06/2011 15:58:36 (427 Octet(s))
C:\Ad-Report-CLEAN[2].txt - 09/06/2011 16:09:22 (427 Octet(s))
C:\Ad-Report-CLEAN[3].txt - 09/06/2011 16:12:53 (427 Octet(s))
C:\Ad-Report-CLEAN[4].txt - 09/06/2011 16:25:49 (13246 Octet(s))
C:\Ad-Report-SCAN[1].txt - 09/06/2011 16:16:14 (8785 Octet(s))
Fin à: 16:27:49, 09/06/2011
============== E.O.F ==============
Bonjour, désolé je n'étais pas chez moi aujourd'hui. Fais maintenant ceci :
Télécharge ComboFix ( de sUBs ) à cette adresse.
/!\ Ferme toutes les fenêtres de programme ouvertes /!\
/!\ Désactive temporairement toutes les protections résidentes ( Antivirus, Pare-Feu, AntiSpyware ) /!\
Double clique sur " Combofix.exe "
Suis les indications qui sont données à l'écran, à un moment tu auras un message te demandant d'installer la console de récupération, fais le.
Pendant le scan, ne touche à rien ( souris, clavier )
Tu seras peut être invité à redémarrer ton PC. A la fin du scan, combofix ouvrira un rapport, copie/colle le dans ta prochaine réponse.
Note : Si jamais il ne s'ouvrait pas, il se trouve sous C:\Combofix.txt
Télécharge ComboFix ( de sUBs ) à cette adresse.
/!\ Ferme toutes les fenêtres de programme ouvertes /!\
/!\ Désactive temporairement toutes les protections résidentes ( Antivirus, Pare-Feu, AntiSpyware ) /!\
Double clique sur " Combofix.exe "
Suis les indications qui sont données à l'écran, à un moment tu auras un message te demandant d'installer la console de récupération, fais le.
Pendant le scan, ne touche à rien ( souris, clavier )
Tu seras peut être invité à redémarrer ton PC. A la fin du scan, combofix ouvrira un rapport, copie/colle le dans ta prochaine réponse.
Note : Si jamais il ne s'ouvrait pas, il se trouve sous C:\Combofix.txt
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
ComboFix 11-06-10.05 - Daniel 10/06/2011 14:06:46.1.1 - x86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.1535.1149 [GMT -4:00]
Lancé depuis: c:\documents and settings\Daniel\Bureau\Virus\ComboFix.exe
.
PEV Error: LocalSettingsFile
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\Macromedia\swfupdate\swFUpdate.dll
c:\documents and settings\Daniel\Application Data\80e81bi6.bat
c:\documents and settings\Daniel\Application Data\MouseDriver.bat
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\chrome.manifest
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\chrome\content\_cfg.js
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\chrome\content\overlay.xul
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\install.rdf
c:\windows\ayenulohufaje.dll
D:\AUTORUN.INF
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_MOUSEDRIVER
-------\Service_MouseDriver
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-05-10 au 2011-06-10 ))))))))))))))))))))))))))))))))))))
.
.
2011-06-09 20:42 . 2011-06-09 20:42 -------- d-s---w- c:\documents and settings\NetworkService\UserData
2011-06-09 20:28 . 2011-06-09 20:28 -------- d-----w- c:\windows\system32\LogFiles
2011-06-09 19:58 . 2011-06-09 19:58 -------- d-----w- c:\program files\Ad-Remover
2011-06-09 18:18 . 2011-06-09 18:18 -------- d-----w- C:\rsit
2011-06-09 18:18 . 2011-06-09 18:18 -------- d-----w- c:\program files\trend micro
2011-06-08 23:16 . 2011-06-08 23:16 144 ----a-w- c:\documents and settings\Daniel\Application Data\1t81v4bzz.bat
2011-06-08 23:15 . 2011-06-08 23:15 144 ----a-w- c:\documents and settings\Daniel\Application Data\qiwpjt0oo.bat
2011-06-08 23:13 . 2011-06-08 23:14 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air
2011-06-08 23:13 . 2011-06-08 23:13 -------- d-----r- c:\documents and settings\NetworkService\Favoris
2011-06-08 23:12 . 2011-06-08 23:12 -------- d-----w- c:\documents and settings\NetworkService\Menu Démarrer
2011-06-08 23:11 . 2011-06-08 23:11 -------- d-----w- c:\program files\SweetIM
2011-06-08 23:11 . 2011-06-08 23:11 -------- d-----w- c:\documents and settings\All Users\Application Data\SweetIM
2011-06-08 23:11 . 2011-06-08 23:12 -------- d-----w- c:\program files\WhiteSmoke
2011-06-08 23:11 . 2011-06-08 23:11 144 ----a-w- c:\documents and settings\Daniel\Application Data\tlzsmw3rr.bat
2011-06-08 23:10 . 2011-06-08 23:10 144 ----a-w- c:\documents and settings\Daniel\Application Data\ibpiclsh.bat
2011-06-08 23:06 . 2011-06-08 23:06 144 ----a-w- c:\documents and settings\Daniel\Application Data\h9ohbkrf.bat
2011-06-08 23:03 . 2011-06-08 23:03 144 ----a-w- c:\documents and settings\Daniel\Application Data\4wa4x7e22.bat
2011-06-08 22:59 . 2011-06-08 22:59 144 ----a-w- c:\documents and settings\Daniel\Application Data\7ze70ah5.bat
2011-06-08 22:58 . 2011-06-08 22:58 144 ----a-w- c:\documents and settings\Daniel\Application Data\meslfpwk.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\jbpiclth.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\g8mf9iqe.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\e7le8hod.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\c5jc6fmb.bat
2011-06-08 22:55 . 2011-06-08 22:55 144 ----a-w- c:\documents and settings\Daniel\Application Data\h9nhakrf.bat
2011-06-08 22:55 . 2011-06-08 22:55 144 ----a-w- c:\documents and settings\Daniel\Application Data\phvoisznn.bat
2011-06-08 22:53 . 2011-06-08 22:53 144 ----a-w- c:\documents and settings\Daniel\Application Data\wo2vpz6uu.bat
2011-06-08 22:51 . 2011-06-08 22:51 144 ----a-w- c:\documents and settings\Daniel\Application Data\b3ib4el9.bat
2011-06-08 22:50 . 2011-06-08 22:50 144 ----a-w- c:\documents and settings\Daniel\Application Data\rjxqku1pp.bat
2011-06-08 22:49 . 2011-06-10 06:59 0 ----a-w- c:\windows\Jgariwawanubili.bin
2011-06-08 22:49 . 2011-06-08 22:49 144 ----a-w- c:\documents and settings\Daniel\Application Data\91f82cj7.bat
2011-06-08 22:47 . 2011-06-08 22:47 144 ----a-w- c:\documents and settings\Daniel\Application Data\phvoirznm.bat
2011-06-08 22:45 . 2011-06-08 22:45 102400 --sha-r- c:\windows\system32\kbdmaorix.dll
2011-06-08 22:45 . 2011-06-08 22:45 102400 --sha-r- c:\windows\system32\kbdbuy.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-04-02 20:09 . 2011-04-02 20:09 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-04-02 20:01 . 2011-04-02 20:01 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
1999-04-06 13:27 . 1999-04-06 13:27 99840 ----a-w- c:\program files\Fichiers communs\IRAABOUT.DLL
1998-12-09 03:53 . 1998-12-09 03:53 70144 ----a-w- c:\program files\Fichiers communs\IRAMDMTR.DLL
1998-12-09 03:53 . 1998-12-09 03:53 48640 ----a-w- c:\program files\Fichiers communs\IRALPTTR.DLL
1998-12-09 03:53 . 1998-12-09 03:53 31744 ----a-w- c:\program files\Fichiers communs\IRAWEBTR.DLL
1998-12-09 03:53 . 1998-12-09 03:53 186368 ----a-w- c:\program files\Fichiers communs\IRAREG.DLL
1998-12-09 03:53 . 1998-12-09 03:53 17920 ----a-w- c:\program files\Fichiers communs\IRASRIAL.DLL
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Gestionnaire Antidote.exe"="c:\progra~1\Druide\Antidote\Gestionnaire Antidote.exe" [2008-12-03 542136]
"BitTorrent"="c:\program files\BitTorrent\bittorrent.exe" [2011-06-07 400760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG7_EMC"="c:\progra~1\Grisoft\AVG7\avgemc.exe" [2004-02-29 186420]
"SunJavaUpdateSched"="c:\program files\Fichiers communs\Java\Java Update\jusched.exe" [2010-02-18 248040]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2009-06-17 85160]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [2010-07-04 17408]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2004-02-12 49152]
"HP Component Manager"="c:\program files\HP\hpcoretech\hpcmpmgr.exe" [2004-05-12 241664]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2011-03-13 114992]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2004-02-29 98304]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"="start http:" [X]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-19 15360]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
c:\documents and settings\Daniel\Menu D'marrer\Programmes\D'marrage\
MagicDisc.lnk - c:\program files\MagicDisc\MagicDisc.exe [N/A]
RollerCoaster Tycoon 3 Registration.lnk - c:\documents and settings\Daniel\Local Settings\Temp\{C73CE7FF-81AF-4D63-A827-863F32B3C8F1}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe [N/A]
.
c:\documents and settings\All Users\Menu D'marrer\Programmes\D'marrage\
ComproRemote.lnk - c:\program files\Fichiers communs\VideoMate\ComproRemote.exe [2010-10-16 147456]
ComproScheduler.lnk - c:\program files\Fichiers communs\VideoMate\ComproScheduler.exe [2010-10-16 69632]
D'marrage rapide du logiciel HP Image Zone.lnk - c:\program files\HP\Digital Imaging\bin\hpqthb08.exe [2004-5-29 53248]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2004-5-28 241664]
TL-WN321G Wireless Utility.lnk - c:\program files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe [2010-3-2 622592]
TweakYC.lnk - c:\program files\VideoMate\ComproPVR 2\TweakYC.exe [2010-10-16 516096]
WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2004-2-29 106561]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Symantec Fax Starter Edition Port.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Symantec Fax Starter Edition Port.lnk
backup=c:\windows\pss\Symantec Fax Starter Edition Port.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^WinZip Quick Pick.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\WinZip Quick Pick.lnk
backup=c:\windows\pss\WinZip Quick Pick.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2003-12-30 23:10 229376 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2004-02-29 18:57 98304 -c--a-w- c:\program files\QuickTime\qttask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
2002-06-26 22:36 90112 -c--a-w- c:\program files\Analog Devices\SoundMAX\SMTray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2004-02-29 18:46 151597 -c--a-w- c:\program files\Fichiers communs\Real\Update_OB\realsched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaws.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [05/08/2010 23:49 721904]
R2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [20/02/2011 00:01 2253688]
R3 PhTVTune;VideoMate TV Tuner;c:\windows\system32\drivers\PhTVTune.sys [16/10/2010 19:31 19840]
.
Contenu du dossier 'Tâches planifiées'
.
2011-06-10 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-03-06 03:18]
.
.
------- Examen supplémentaire -------
.
uInternet Connection Wizard,ShellNext = iexplore
TCP: DhcpNameServer = 192.168.0.1
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Daniel\Application Data\Mozilla\Firefox\Profiles\71grxzbe.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.ca/
FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4b91abd2&v=6.103.018.001&i=23&tp=ab&iy=&ychte=cf&lng=fr&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - Ext: Softonic_France Toolbar: {4daac69c-cba7-45e2-9bc8-1044483d3352} - %profile%\extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352}
FF - Ext: Canadian English Dictionary: en-CA@dictionaries.addons.mozilla.org - %profile%\extensions\en-CA@dictionaries.addons.mozilla.org
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Garmin Communicator: {195A3098-0BD5-4e90-AE22-BA1C540AFD1E} - %profile%\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
FF - Ext: AutocompletePro - Your handy search suggestions tool: support@predictad.com - %profile%\extensions\support@predictad.com
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
- - - - ORPHELINS SUPPRIMES - - - -
.
URLSearchHooks-{4daac69c-cba7-45e2-9bc8-1044483d3352} - (no file)
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKCU-Run-KOQMLYTPE7 - c:\windows\Ytadea.exe
HKCU-Run-Syaxeri - c:\windows\wmsdupi.dll
HKLM-Run-Yyuhesebevaxi - c:\windows\ayenulohufaje.dll
HKLM-Run-sp4jke - c:\documents and settings\Daniel\Application Data\25e23d.exe
HKLM-Run-bipro - c:\windows\$XNTUninstall643$\wktly.dll
MSConfigStartUp-AdaptecDirectCD - c:\program files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
MSConfigStartUp-CreateCD50 - c:\progra~1\FICHIE~1\ADAPTE~1\CreateCD\CREATE~1.EXE
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-06-10 14:19
Windows 5.1.2600 Service Pack 2 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'winlogon.exe'(740)
c:\windows\system32\Ati2evxx.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\windows\System32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\System32\gearsec.exe
c:\windows\system32\rundll32.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Analog Devices\SoundMAX\SMAgent.exe
c:\windows\System32\wdfmgr.exe
c:\program files\TeamViewer\Version6\TeamViewer.exe
c:\windows\System32\wbem\wmiapsrv.exe
c:\program files\HP\Digital Imaging\bin\hpqgalry.exe
c:\windows\system32\HPZipm12.exe
.
**************************************************************************
.
Heure de fin: 2011-06-10 14:24:29 - La machine a redémarré
ComboFix-quarantined-files.txt 2011-06-10 18:24
.
Avant-CF: 18 994 372 608 octets libres
Après-CF: 19 090 792 448 octets libres
.
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /fastdetect /NoExecute=OptIn
.
- - End Of File - - 79C264E5DD777DFD175A427508E5BB8E
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.1535.1149 [GMT -4:00]
Lancé depuis: c:\documents and settings\Daniel\Bureau\Virus\ComboFix.exe
.
PEV Error: LocalSettingsFile
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\Macromedia\swfupdate\swFUpdate.dll
c:\documents and settings\Daniel\Application Data\80e81bi6.bat
c:\documents and settings\Daniel\Application Data\MouseDriver.bat
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\chrome.manifest
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\chrome\content\_cfg.js
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\chrome\content\overlay.xul
c:\documents and settings\Daniel\Local Settings\Application Data\{CBD934B7-CBF5-4FE0-BEEC-C973C33F8F3C}\install.rdf
c:\windows\ayenulohufaje.dll
D:\AUTORUN.INF
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_MOUSEDRIVER
-------\Service_MouseDriver
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-05-10 au 2011-06-10 ))))))))))))))))))))))))))))))))))))
.
.
2011-06-09 20:42 . 2011-06-09 20:42 -------- d-s---w- c:\documents and settings\NetworkService\UserData
2011-06-09 20:28 . 2011-06-09 20:28 -------- d-----w- c:\windows\system32\LogFiles
2011-06-09 19:58 . 2011-06-09 19:58 -------- d-----w- c:\program files\Ad-Remover
2011-06-09 18:18 . 2011-06-09 18:18 -------- d-----w- C:\rsit
2011-06-09 18:18 . 2011-06-09 18:18 -------- d-----w- c:\program files\trend micro
2011-06-08 23:16 . 2011-06-08 23:16 144 ----a-w- c:\documents and settings\Daniel\Application Data\1t81v4bzz.bat
2011-06-08 23:15 . 2011-06-08 23:15 144 ----a-w- c:\documents and settings\Daniel\Application Data\qiwpjt0oo.bat
2011-06-08 23:13 . 2011-06-08 23:14 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air
2011-06-08 23:13 . 2011-06-08 23:13 -------- d-----r- c:\documents and settings\NetworkService\Favoris
2011-06-08 23:12 . 2011-06-08 23:12 -------- d-----w- c:\documents and settings\NetworkService\Menu Démarrer
2011-06-08 23:11 . 2011-06-08 23:11 -------- d-----w- c:\program files\SweetIM
2011-06-08 23:11 . 2011-06-08 23:11 -------- d-----w- c:\documents and settings\All Users\Application Data\SweetIM
2011-06-08 23:11 . 2011-06-08 23:12 -------- d-----w- c:\program files\WhiteSmoke
2011-06-08 23:11 . 2011-06-08 23:11 144 ----a-w- c:\documents and settings\Daniel\Application Data\tlzsmw3rr.bat
2011-06-08 23:10 . 2011-06-08 23:10 144 ----a-w- c:\documents and settings\Daniel\Application Data\ibpiclsh.bat
2011-06-08 23:06 . 2011-06-08 23:06 144 ----a-w- c:\documents and settings\Daniel\Application Data\h9ohbkrf.bat
2011-06-08 23:03 . 2011-06-08 23:03 144 ----a-w- c:\documents and settings\Daniel\Application Data\4wa4x7e22.bat
2011-06-08 22:59 . 2011-06-08 22:59 144 ----a-w- c:\documents and settings\Daniel\Application Data\7ze70ah5.bat
2011-06-08 22:58 . 2011-06-08 22:58 144 ----a-w- c:\documents and settings\Daniel\Application Data\meslfpwk.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\jbpiclth.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\g8mf9iqe.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\e7le8hod.bat
2011-06-08 22:56 . 2011-06-08 22:56 144 ----a-w- c:\documents and settings\Daniel\Application Data\c5jc6fmb.bat
2011-06-08 22:55 . 2011-06-08 22:55 144 ----a-w- c:\documents and settings\Daniel\Application Data\h9nhakrf.bat
2011-06-08 22:55 . 2011-06-08 22:55 144 ----a-w- c:\documents and settings\Daniel\Application Data\phvoisznn.bat
2011-06-08 22:53 . 2011-06-08 22:53 144 ----a-w- c:\documents and settings\Daniel\Application Data\wo2vpz6uu.bat
2011-06-08 22:51 . 2011-06-08 22:51 144 ----a-w- c:\documents and settings\Daniel\Application Data\b3ib4el9.bat
2011-06-08 22:50 . 2011-06-08 22:50 144 ----a-w- c:\documents and settings\Daniel\Application Data\rjxqku1pp.bat
2011-06-08 22:49 . 2011-06-10 06:59 0 ----a-w- c:\windows\Jgariwawanubili.bin
2011-06-08 22:49 . 2011-06-08 22:49 144 ----a-w- c:\documents and settings\Daniel\Application Data\91f82cj7.bat
2011-06-08 22:47 . 2011-06-08 22:47 144 ----a-w- c:\documents and settings\Daniel\Application Data\phvoirznm.bat
2011-06-08 22:45 . 2011-06-08 22:45 102400 --sha-r- c:\windows\system32\kbdmaorix.dll
2011-06-08 22:45 . 2011-06-08 22:45 102400 --sha-r- c:\windows\system32\kbdbuy.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-04-02 20:09 . 2011-04-02 20:09 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-04-02 20:01 . 2011-04-02 20:01 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
1999-04-06 13:27 . 1999-04-06 13:27 99840 ----a-w- c:\program files\Fichiers communs\IRAABOUT.DLL
1998-12-09 03:53 . 1998-12-09 03:53 70144 ----a-w- c:\program files\Fichiers communs\IRAMDMTR.DLL
1998-12-09 03:53 . 1998-12-09 03:53 48640 ----a-w- c:\program files\Fichiers communs\IRALPTTR.DLL
1998-12-09 03:53 . 1998-12-09 03:53 31744 ----a-w- c:\program files\Fichiers communs\IRAWEBTR.DLL
1998-12-09 03:53 . 1998-12-09 03:53 186368 ----a-w- c:\program files\Fichiers communs\IRAREG.DLL
1998-12-09 03:53 . 1998-12-09 03:53 17920 ----a-w- c:\program files\Fichiers communs\IRASRIAL.DLL
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Gestionnaire Antidote.exe"="c:\progra~1\Druide\Antidote\Gestionnaire Antidote.exe" [2008-12-03 542136]
"BitTorrent"="c:\program files\BitTorrent\bittorrent.exe" [2011-06-07 400760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG7_EMC"="c:\progra~1\Grisoft\AVG7\avgemc.exe" [2004-02-29 186420]
"SunJavaUpdateSched"="c:\program files\Fichiers communs\Java\Java Update\jusched.exe" [2010-02-18 248040]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2009-06-17 85160]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [2010-07-04 17408]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2004-02-12 49152]
"HP Component Manager"="c:\program files\HP\hpcoretech\hpcmpmgr.exe" [2004-05-12 241664]
"SweetIM"="c:\program files\SweetIM\Messenger\SweetIM.exe" [2011-03-13 114992]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2004-02-29 98304]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"="start http:" [X]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-19 15360]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
c:\documents and settings\Daniel\Menu D'marrer\Programmes\D'marrage\
MagicDisc.lnk - c:\program files\MagicDisc\MagicDisc.exe [N/A]
RollerCoaster Tycoon 3 Registration.lnk - c:\documents and settings\Daniel\Local Settings\Temp\{C73CE7FF-81AF-4D63-A827-863F32B3C8F1}\{907B4640-266B-4A21-92FB-CD1A86CD0F63}\ATR1.exe [N/A]
.
c:\documents and settings\All Users\Menu D'marrer\Programmes\D'marrage\
ComproRemote.lnk - c:\program files\Fichiers communs\VideoMate\ComproRemote.exe [2010-10-16 147456]
ComproScheduler.lnk - c:\program files\Fichiers communs\VideoMate\ComproScheduler.exe [2010-10-16 69632]
D'marrage rapide du logiciel HP Image Zone.lnk - c:\program files\HP\Digital Imaging\bin\hpqthb08.exe [2004-5-29 53248]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2004-5-28 241664]
TL-WN321G Wireless Utility.lnk - c:\program files\TP-LINK\TL-WN321G Wireless Utility\Installer\WINXP\TWCU.exe [2010-3-2 622592]
TweakYC.lnk - c:\program files\VideoMate\ComproPVR 2\TweakYC.exe [2010-10-16 516096]
WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2004-2-29 106561]
.
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\
Launch WhiteSmoke.lnk - c:\program files\WhiteSmoke\WSEnrichment.exe [2011-4-12 2162688]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Symantec Fax Starter Edition Port.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Symantec Fax Starter Edition Port.lnk
backup=c:\windows\pss\Symantec Fax Starter Edition Port.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^WinZip Quick Pick.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\WinZip Quick Pick.lnk
backup=c:\windows\pss\WinZip Quick Pick.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2003-12-30 23:10 229376 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2004-02-29 18:57 98304 -c--a-w- c:\program files\QuickTime\qttask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
2002-06-26 22:36 90112 -c--a-w- c:\program files\Analog Devices\SoundMAX\SMTray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2004-02-29 18:46 151597 -c--a-w- c:\program files\Fichiers communs\Real\Update_OB\realsched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaws.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [05/08/2010 23:49 721904]
R2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [20/02/2011 00:01 2253688]
R3 PhTVTune;VideoMate TV Tuner;c:\windows\system32\drivers\PhTVTune.sys [16/10/2010 19:31 19840]
.
Contenu du dossier 'Tâches planifiées'
.
2011-06-10 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2010-03-06 03:18]
.
.
------- Examen supplémentaire -------
.
uInternet Connection Wizard,ShellNext = iexplore
TCP: DhcpNameServer = 192.168.0.1
DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Daniel\Application Data\Mozilla\Firefox\Profiles\71grxzbe.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.google.ca/
FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4b91abd2&v=6.103.018.001&i=23&tp=ab&iy=&ychte=cf&lng=fr&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - Ext: Softonic_France Toolbar: {4daac69c-cba7-45e2-9bc8-1044483d3352} - %profile%\extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352}
FF - Ext: Canadian English Dictionary: en-CA@dictionaries.addons.mozilla.org - %profile%\extensions\en-CA@dictionaries.addons.mozilla.org
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Garmin Communicator: {195A3098-0BD5-4e90-AE22-BA1C540AFD1E} - %profile%\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
FF - Ext: AutocompletePro - Your handy search suggestions tool: support@predictad.com - %profile%\extensions\support@predictad.com
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
.
- - - - ORPHELINS SUPPRIMES - - - -
.
URLSearchHooks-{4daac69c-cba7-45e2-9bc8-1044483d3352} - (no file)
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKCU-Run-KOQMLYTPE7 - c:\windows\Ytadea.exe
HKCU-Run-Syaxeri - c:\windows\wmsdupi.dll
HKLM-Run-Yyuhesebevaxi - c:\windows\ayenulohufaje.dll
HKLM-Run-sp4jke - c:\documents and settings\Daniel\Application Data\25e23d.exe
HKLM-Run-bipro - c:\windows\$XNTUninstall643$\wktly.dll
MSConfigStartUp-AdaptecDirectCD - c:\program files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
MSConfigStartUp-CreateCD50 - c:\progra~1\FICHIE~1\ADAPTE~1\CreateCD\CREATE~1.EXE
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-06-10 14:19
Windows 5.1.2600 Service Pack 2 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
.
- - - - - - - > 'winlogon.exe'(740)
c:\windows\system32\Ati2evxx.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\windows\System32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\System32\gearsec.exe
c:\windows\system32\rundll32.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Analog Devices\SoundMAX\SMAgent.exe
c:\windows\System32\wdfmgr.exe
c:\program files\TeamViewer\Version6\TeamViewer.exe
c:\windows\System32\wbem\wmiapsrv.exe
c:\program files\HP\Digital Imaging\bin\hpqgalry.exe
c:\windows\system32\HPZipm12.exe
.
**************************************************************************
.
Heure de fin: 2011-06-10 14:24:29 - La machine a redémarré
ComboFix-quarantined-files.txt 2011-06-10 18:24
.
Avant-CF: 18 994 372 608 octets libres
Après-CF: 19 090 792 448 octets libres
.
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /fastdetect /NoExecute=OptIn
.
- - End Of File - - 79C264E5DD777DFD175A427508E5BB8E
Il reste pas mal d'éléments à supprimer.
-+-+-+-+-> CFScript <-+-+-+-+-
/!\ Attention : Cette procédure n'est valable que pour superman1221 /!\
[x] Copie le texte en gras ci dessous :
KillAll::
SysRst::
Firefox::
FF - Ext: Softonic_France Toolbar: {4daac69c-cba7-45e2-9bc8-1044483d3352} - %profile%\extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352}
File::
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\Launch WhiteSmoke.lnk
c:\documents and settings\Daniel\Application Data\*.bat
c:\windows\Jgariwawanubili.bin
c:\windows\system32\kbdbuy.dll
c:\windows\system32\kbdmaorix.dll
Folder::
c:\program files\WhiteSmoke
c:\program files\sweetim
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air
c:\documents and settings\All Users\Application Data\SweetIM
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"=-
Reboot::
[x] Ouvre le bloc-note puis colle le texte ci dessus dedans.
[x] Enregistre ce fichier sur ton bureau ( appelle le CFScript.txt ).
[x] Fais un glisser/déposer de ce fichier sur combofix.exe comme expliqué ici.
[x] Combofix va se lancer, patiente le temps du scan.
/!\ Ne fais rien pendant le scan ( clavier/souris ) /!\
[x] Poste le contenu du rapport qui s'ouvrira dans ta prochaine réponse.
-+-+-+-+-> CFScript <-+-+-+-+-
/!\ Attention : Cette procédure n'est valable que pour superman1221 /!\
[x] Copie le texte en gras ci dessous :
KillAll::
SysRst::
Firefox::
FF - Ext: Softonic_France Toolbar: {4daac69c-cba7-45e2-9bc8-1044483d3352} - %profile%\extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352}
File::
c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\Launch WhiteSmoke.lnk
c:\documents and settings\Daniel\Application Data\*.bat
c:\windows\Jgariwawanubili.bin
c:\windows\system32\kbdbuy.dll
c:\windows\system32\kbdmaorix.dll
Folder::
c:\program files\WhiteSmoke
c:\program files\sweetim
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air
c:\documents and settings\All Users\Application Data\SweetIM
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"=-
Reboot::
[x] Ouvre le bloc-note puis colle le texte ci dessus dedans.
[x] Enregistre ce fichier sur ton bureau ( appelle le CFScript.txt ).
[x] Fais un glisser/déposer de ce fichier sur combofix.exe comme expliqué ici.
[x] Combofix va se lancer, patiente le temps du scan.
/!\ Ne fais rien pendant le scan ( clavier/souris ) /!\
[x] Poste le contenu du rapport qui s'ouvrira dans ta prochaine réponse.
ComboFix 11-06-10.05 - Daniel 10/06/2011 15:30:54.2.1 - x86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.1535.1162 [GMT -4:00]
Lancé depuis: c:\documents and settings\Daniel\Bureau\Virus\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\Daniel\Bureau\CFScript.txt
.
FILE ::
"c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\Launch WhiteSmoke.lnk"
"c:\windows\Jgariwawanubili.bin"
"c:\windows\system32\kbdbuy.dll"
"c:\windows\system32\kbdmaorix.dll"
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\SweetIM
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\adapter.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\autoupdate.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\contentpackages.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\logger.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\messages.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\sweetim.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\sweetimapp.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\users\main_user_config.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\Bars\Default\bar.html
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\Bars\Default\bar.js
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\Bars\Default\bar.swf
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\contentdb\cache_indx.dat
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\packages\FailDialog\activationFail.htm
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\packages\FailDialog\close_but.gif
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\packages\FailDialog\failure_dialog_BG.jpg
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\cid.txt
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\config.sxe
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\country.sxe
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\country.sxe.tmp
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\history.db
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\update.sxe
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\update.xml
c:\program files\sweetim
c:\program files\sweetim\Messenger\ContentPackagesActivationHandler.exe
c:\program files\sweetim\Messenger\default.xml
c:\program files\sweetim\Messenger\mgAdaptersProxy.dll
c:\program files\sweetim\Messenger\mgArchive.dll
c:\program files\sweetim\Messenger\mgcommon.dll
c:\program files\sweetim\Messenger\mgcommunication.dll
c:\program files\sweetim\Messenger\mgconfig.dll
c:\program files\sweetim\Messenger\mgFlashPlayer.dll
c:\program files\sweetim\Messenger\mghooking.dll
c:\program files\sweetim\Messenger\mgICQAuto.dll
c:\program files\sweetim\Messenger\mgICQMessengerAdapter.dll
c:\program files\sweetim\Messenger\mglogger.dll
c:\program files\sweetim\Messenger\mgMediaPlayer.dll
c:\program files\sweetim\Messenger\mgMsnAuto.dll
c:\program files\sweetim\Messenger\mgMsnMessengerAdapter.dll
c:\program files\sweetim\Messenger\mgsimcommon.dll
c:\program files\sweetim\Messenger\mgSweetIM.dll
c:\program files\sweetim\Messenger\mgUpdateSupport.dll
c:\program files\sweetim\Messenger\mgxml_wrapper.dll
c:\program files\sweetim\Messenger\mgYahooAuto.dll
c:\program files\sweetim\Messenger\mgYahooMessengerAdapter.dll
c:\program files\sweetim\Messenger\msvcp71.dll
c:\program files\sweetim\Messenger\msvcr71.dll
c:\program files\sweetim\Messenger\resources\images\AudibleButton.png
c:\program files\sweetim\Messenger\resources\images\DisplayPicturesButton.png
c:\program files\sweetim\Messenger\resources\images\EmoticonButton.png
c:\program files\sweetim\Messenger\resources\images\GamesButton.png
c:\program files\sweetim\Messenger\resources\images\KeyboardButton.png
c:\program files\sweetim\Messenger\resources\images\NudgeButton.png
c:\program files\sweetim\Messenger\resources\images\SoundFxButton.png
c:\program files\sweetim\Messenger\resources\images\WinksButton.png
c:\program files\sweetim\Messenger\resources\sqlite\mgSqlite3.dll
c:\program files\sweetim\Messenger\SweetIM.exe
c:\program files\WhiteSmoke
c:\program files\WhiteSmoke\buy.ico
c:\program files\WhiteSmoke\ComVistaElevator.dll
c:\program files\WhiteSmoke\FloatButtonWhiteApps.txt
c:\program files\WhiteSmoke\FuncServer_WDC_x64.exe
c:\program files\WhiteSmoke\HookDllOE.dll
c:\program files\WhiteSmoke\HookDllOE64.dll
c:\program files\WhiteSmoke\html\english\common\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\common\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\common\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\common\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\common\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\common\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\common\js\common.js
c:\program files\WhiteSmoke\html\english\common\js\pngfix.js
c:\program files\WhiteSmoke\html\english\common\js\prototype.js
c:\program files\WhiteSmoke\html\english\common\js\xmlhttp.js
c:\program files\WhiteSmoke\html\english\dictClientDic\dictionary.html
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\ajax-loader.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_bottom_left.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_bottom_right.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_top_left.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_top_right.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\down_arrow.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\input_bg.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\input_bg_old.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\left_input.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\leftSide.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\leftSide2.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\loading_dictionary.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\right_input.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\rightSide.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\search_strip_bg3.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\down_arrow.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\go_over.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\go_press.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\go_up.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\humanTranslation_press.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\humanTranslation_roll.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\humanTranslation_up.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\moreLang_press.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\moreLang_roll.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\moreLang_up.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\spacer.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\index.html
c:\program files\WhiteSmoke\html\english\dictClientDic\js\common.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\Contextmenu.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\dictInterface.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\jquery-1.4.2.min.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\jquery.combobox.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\jquery.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\prototype.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\transInterface.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\xmlhttp.js
c:\program files\WhiteSmoke\html\english\dictClientDic\style\combobox.css
c:\program files\WhiteSmoke\html\english\dictClientDic\style\Contextmenu.css
c:\program files\WhiteSmoke\html\english\dictClientDic\style\dictionary.css
c:\program files\WhiteSmoke\html\english\dictClientDic\translator.html
c:\program files\WhiteSmoke\html\english\floatingButton\blue-Q-rollover.gif
c:\program files\WhiteSmoke\html\english\floatingButton\blue-rollover.gif
c:\program files\WhiteSmoke\html\english\floatingButton\blue-X-rollover.gif
c:\program files\WhiteSmoke\html\english\floatingButton\blue.gif
c:\program files\WhiteSmoke\html\english\floatingButton\index.html
c:\program files\WhiteSmoke\html\english\floatingButton\red&blue.gif
c:\program files\WhiteSmoke\html\english\floatingButton\Thumbs.db
c:\program files\WhiteSmoke\html\english\floatingButton_howto\img\Background\howto_bg.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\img\spacer.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\img\Thumbs.db
c:\program files\WhiteSmoke\html\english\floatingButton_howto\index.html
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\index.js
c:\program files\WhiteSmoke\html\english\floatingButton_howto\style\style.css
c:\program files\WhiteSmoke\html\english\gui\img\Background\ajax-loader.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\base_fade_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_bg_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_dark_bg.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_dark_bg_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_top_bg_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\bottom_grey_strip.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\buttons_tray_px.p_goldng
c:\program files\WhiteSmoke\html\english\gui\img\Background\buttons_tray_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bar_re_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bar_re_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bar_re_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bottom_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_strip_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\cascade.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\collapse.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_bl2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_br2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_dot.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_menu_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_sub_menu_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_submenu.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_submenu_dis.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_tl2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_tr2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\Copy of notice_right_top_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\down_arrow.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\dpreloader.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_footer_left.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_footer_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_footer_right.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_header_left.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_header_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_header_right.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_sidefade.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\feather.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\green.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\input_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\inputline_fade_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\left_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftBottom3.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftSide.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftSide2.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftSide3.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\logo.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\logo.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\logo2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\main_background.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\main_background_11.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\main_background_old.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\notice_checkbox_checked.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\notice_checkbox_unchecked.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\red.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\red2.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\resize_gripper.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\result_area_top_bg.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\right_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightBottom.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightSide.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightSide2.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightSide2_11.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\spacer.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\spacer_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_blue.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_green.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_green2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_purple.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_red.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_apply_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_apply_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_apply_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_check_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_check_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_check_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_left_corner.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_right_corner.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\ticket.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\top_grey_strip.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsLeft.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsLeft__.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsLeft_from_home.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsRight.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topRightBorder.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\wslogo.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\blue.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\bottom_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\buttons_tray_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bar_re_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bar_re_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bar_re_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bottom_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_strip_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\get-full.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\get-full3.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\green.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\help_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\help_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\help_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\left_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\logo.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\logo.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\logo2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\main_background.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\red.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\red2.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\right_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\sitting_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\sitting_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\sitting_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\smallclosebutton.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\store_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\store_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\store_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_apply_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_apply_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_apply_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_check_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_check_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_check_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x.jpg
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x_hover.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x_hover_old.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x_old.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\blue.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\bottom_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\buttons_tray_px.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_close_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_close_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_close_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_max_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_max_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_max_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_re_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_re_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_re_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bottom_px.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_px.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_px_11.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\green.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\left_input.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\leftCaptionCorner.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\leftCaptionCorner2.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logo.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logo_1.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logo3.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logologo2_11.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\main_background.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\red.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\red2.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\right_input.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner2.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner3.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner3_11.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\store_down.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\store_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\store_up.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_apply_down.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_apply_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_apply_up.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_check_down.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_check_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_check_up.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_px.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\addto_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\addto_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\addto_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\definition_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\definition_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\definition_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\enrichment_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\enrichment_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\enrichment_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\explanation_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\explanation_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\explanation_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\grammarexpclosebutton.gif
c:\program files\WhiteSmoke\html\english\gui\img\grammar\howto_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\howto_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\howto_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\search_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\search_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\search_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\thesaurus_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\thesaurus_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\thesaurus_up.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\closedy2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\content-review4.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\dot.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\down-content.gif
c:\program files\WhiteSmoke\html\english\gui\img\review-section\down.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade1.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade3.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade4.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade5.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\li-content.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\opencq8.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\report.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score1.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score3.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score4.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score5.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shadow.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shadow2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shdow.gif
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shdow_good.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_no_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_no_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_yes_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_yes_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\caption_bar_close_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_analyze.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_complete.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_connection.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_expired.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\loading_window.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\loading_window.swf
c:\program files\WhiteSmoke\html\english\gui\img\screens\myWelcome.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_bottom.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_gold.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_old.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_top.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_captionbar_press.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_captionbar_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_getitnow_press.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_getitnow_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_press.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_press.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_up_11.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeClose_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeClose_over.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeClose_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeGo_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeGo_over.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeGo_up.png
c:\program files\WhiteSmoke\html\english\gui\img\spacer.gif
c:\program files\WhiteSmoke\html\english\gui\index.html
c:\program files\WhiteSmoke\html\english\gui\js\appInterface.js
c:\program files\WhiteSmoke\html\english\gui\js\builder.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\common.js
c:\program files\WhiteSmoke\html\english\gui\js\Contextmenu.js
c:\program files\WhiteSmoke\html\english\gui\js\controls.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\dictionaryContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\dragdrop.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\effects.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\enrichmentContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\enrichmentsContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\final.js
c:\program files\WhiteSmoke\html\english\gui\js\gmonitor.js
c:\program files\WhiteSmoke\html\english\gui\js\grammarCache.class.js
c:\program files\WhiteSmoke\html\english\gui\js\grammarContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\gui\js\iframeTest.js
c:\program files\WhiteSmoke\html\english\gui\js\jqModal.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery-1.2.6.pack.NotUSED.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery-1.3.2.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery-1.3.2.min.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery.ba-throttle-debounce.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery.jeegoocontext.min.js
c:\program files\WhiteSmoke\html\english\gui\js\monitor.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\builder.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\controls.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\dragdrop.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\effects.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\prototype.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\slider.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\sound.js
c:\program files\WhiteSmoke\html\english\gui\js\prototype.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\scriptaculous.js
c:\program files\WhiteSmoke\html\english\gui\js\slider.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\sound.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\spellingContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\summary.js
c:\program files\WhiteSmoke\html\english\gui\js\supersleight.js
c:\program files\WhiteSmoke\html\english\gui\js\switchcontent.js
c:\program files\WhiteSmoke\html\english\gui\js\tooltip.js
c:\program files\WhiteSmoke\html\english\gui\js\unittest.js
c:\program files\WhiteSmoke\html\english\gui\js\ws_content_manager.js
c:\program files\WhiteSmoke\html\english\gui\js\ws_functions.js
c:\program files\WhiteSmoke\html\english\gui\js\ws_links.js
c:\program files\WhiteSmoke\html\english\gui\js\x.gif
c:\program files\WhiteSmoke\html\english\gui\js\xmlhttp.js
c:\program files\WhiteSmoke\html\english\gui\js\ypSlideOutMenus.js
c:\program files\WhiteSmoke\html\english\gui\js\ypSlideOutMenusContext.js
c:\program files\WhiteSmoke\html\english\gui\style\combobox.css
c:\program files\WhiteSmoke\html\english\gui\style\Contextmenu.css
c:\program files\WhiteSmoke\html\english\gui\style\dictionary.css
c:\program files\WhiteSmoke\html\english\gui\style\enrichment.css
c:\program files\WhiteSmoke\html\english\gui\style\enrichments.css
c:\program files\WhiteSmoke\html\english\gui\style\grammar.css
c:\program files\WhiteSmoke\html\english\gui\style\iframeTest.css
c:\program files\WhiteSmoke\html\english\gui\style\indexnew.css
c:\program files\WhiteSmoke\html\english\gui\style\jeegoo.css
c:\program files\WhiteSmoke\html\english\gui\style\jqModal.css
c:\program files\WhiteSmoke\html\english\gui\style\screens.css
c:\program files\WhiteSmoke\html\english\gui\style\spelling.css
c:\program files\WhiteSmoke\html\english\registration\img\banner.gif
c:\program files\WhiteSmoke\html\english\registration\img\banner.png
c:\program files\WhiteSmoke\html\english\registration\img\captionbar\caption_bar_close_down.gif
c:\program files\WhiteSmoke\html\english\registration\img\captionbar\caption_bar_close_up.gif
c:\program files\WhiteSmoke\html\english\registration\img\captionbar\caption_bar_close_up_over.gif
c:\program files\WhiteSmoke\html\english\registration\img\continue_button_click.gif
c:\program files\WhiteSmoke\html\english\registration\img\continue_button_over.gif
c:\program files\WhiteSmoke\html\english\registration\img\continue_button_up.gif
c:\program files\WhiteSmoke\html\english\registration\img\down.gif
c:\program files\WhiteSmoke\html\english\registration\img\down.png
c:\program files\WhiteSmoke\html\english\registration\img\f2.gif
c:\program files\WhiteSmoke\html\english\registration\index.html
c:\program files\WhiteSmoke\html\english\registration\js\regInterface.js
c:\program files\WhiteSmoke\html\english\registration\style\registration.css
c:\program files\WhiteSmoke\html\english\settings\css\index.css
c:\program files\WhiteSmoke\html\english\settings\img\Background\logo.png
c:\program files\WhiteSmoke\html\english\settings\img\Background\main_bg.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_down.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_over.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_up.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_down.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_over.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_up.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_connection_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_connection_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_connection_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_content_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_content_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_content_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_general_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_general_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_general_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_info_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_info_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_info_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_shortcut_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_shortcut_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_shortcut_on.png
c:\program files\WhiteSmoke\html\english\settings\img\captionbar\caption_bar_close_down.gif
c:\program files\WhiteSmoke\html\english\settings\img\captionbar\caption_bar_close_over.gif
c:\program files\WhiteSmoke\html\english\settings\img\captionbar\caption_bar_close_up.gif
c:\program files\WhiteSmoke\html\english\settings\index.html
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\settings\js\settingsInterface.js
c:\program files\WhiteSmoke\html\english\templates\dtree.css
c:\program files\WhiteSmoke\html\english\templates\dtree.js
c:\program files\WhiteSmoke\html\english\templates\General\Apologies\ApologyInnappropriateBehavior.html
c:\program files\WhiteSmoke\html\english\templates\General\Apologies\ApologyUnjustBehavior.html
c:\program files\WhiteSmoke\html\english\templates\General\Community Work\ResignationFromVoluntaryPosition.html
c:\program files\WhiteSmoke\html\english\templates\General\Condolences\LetterOfCondolence.html
c:\program files\WhiteSmoke\html\english\templates\General\Cover Letters\CoverLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Cover Letters\GrantCoverSheet.html
c:\program files\WhiteSmoke\html\english\templates\General\Family\FamilyNewsUpdate.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\AgreementToCompromiseDebt.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\BankError.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\DebtValidation.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\InvestigationOfBillingInquiry.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfCreditGeneral.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfCreditIrrevocable.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfCreditRevolving.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfDispute.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\RemovalOfInadequateInformation.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\ReplyToApplicationForCredit.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\RequestForIncreaseOfCreditLimit.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\ReturningUnsignedCheck.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\UnauthorizedCreditInquiry.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\AChristmasWish.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ArrivalOfChristmas.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\BlessingsAtChristmas.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetings.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetingsMessage.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetingsToASpouse.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetingsToWorkers.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasWishes.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\HappyChristmasGreeting.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\InTheStillOfTheNightChristmasGreeting.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\JoyousOccasion.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\LovePeaceAndJoy.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\MerryChristmasAndHappyNewYear.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\MerryChristmasToFamily.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Graduation\CongratulationsOnYourGraduation.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Graduation\CongratulationsToTheGraduate.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Graduation\YouHaveGraduated.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\EmployeePerformanceReviewAndPlanningSessions.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\EmploymentApplications.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\HealthRelatedIssues.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\NewEmployeeOrientation.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\TerminationOfEmployment.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\TuitionReimbursementPolicy.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\EmploymentReferenceLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\JobReferenceLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\LetterOfReference.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\ReferenceLetterByAcquaintance.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\RequestForEmployeeReferenceLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\VerificationOfEmploymentLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Letter Requesting Pay Raise.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Refusal of Resquest For Raise.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Leave of Absence.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Letter of Reference.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Meeting Regarding Pay Raise.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Paid or Unpaid Leave.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request For Salary Increase.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request to Schedule an Interview.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Acknowledgment of Job Application.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Confirmation of Job Dismissal.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Final Warning Before Dismissal.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Job Rejection Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Job Rejection Letter2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Rejection of Job Offer.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Employment Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Introduction of New Employee.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Letter for Assistant Professor.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\LetterForTenureTrackAssociateProfessor.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Offer of Employment.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Request for Employment Test.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Accept or Decline Job Offer.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Job Acceptance Letter 2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Job Acceptance Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Job Offer Acceptance.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Thank You Letters\Thank You Letter After Interview.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Thank You Letters\Thank You to Applicant for Testing.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Resignation Letters\Acceptance of Employee's Resignation.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Resignation Letters\Employee Termination Notice.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Resignation Letters\Job Resignation Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Personnel Office\Notice of Decision to Reprimand.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Cover Letter Auditor Development Program.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Job Application Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Job Search Cover Letter - Disabled Citizens.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Job Search Cover Letter - Software Employment.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Law Internship Cover Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Resume Cover Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Resume Cover Letter2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Letters of Recommendation\Letter of Recommendation.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Accounting Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Administrative Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Banking Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Customer Service Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Database and Application Developer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\End User Trainer and Instructional Designer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Engineering Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Freelance Marcom Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\General CV Format.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Graphic Designer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Healthcare Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Internship Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Java Developer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Management Resume 2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Management Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Marketing Administrator Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Marketing Director Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Marketing Manager Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Medical Essay Residency Experience.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Medical Resume - Physician.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Medical Resume Partnership in General Practice.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\PowerPoint Designer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Product Delivery Engineer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Sales Representative Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Software QA Engineer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Technical Publication Manager Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Technical Writer.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Web Developer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Web Maintainer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Advertising Commitment Form.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Art Advertising Flyer.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Request for Advertising Rate.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Subscriber Letter News Service.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Legal\Assignment of Literary Property.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Comments to Author Regarding Book.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Introduction of Novel.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Letter of Interest to Magazine.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Letter of Recommendation.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Magazine Review.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Promotional Letter Antique Shop.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Resumes\Actor Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Career Change.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Letter to a Friend Regarding Change of Job.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Sale of Automobile or Other Motor Vehicle.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Upset Regarding Loss of Job.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Admissions Essays\Admissions Essay for Entrance to Theater Institute.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Admissions Essays\Essay - Describe Events.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Admissions Essays\Graduate School Literary Essay.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Careers\Career Letter for Accounting Position.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Careers\Career Letter in Journalism.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Compliment Student on Graduation.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Congratulations to High School Graduate.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Personal Letter of Recommendation.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Request for Financial Assistance from Parents.html
c:\program files\WhiteSmoke\html\english\templates\General\Studen
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.1535.1162 [GMT -4:00]
Lancé depuis: c:\documents and settings\Daniel\Bureau\Virus\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\Daniel\Bureau\CFScript.txt
.
FILE ::
"c:\documents and settings\NetworkService\Menu D'marrer\Programmes\D'marrage\Launch WhiteSmoke.lnk"
"c:\windows\Jgariwawanubili.bin"
"c:\windows\system32\kbdbuy.dll"
"c:\windows\system32\kbdmaorix.dll"
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\SweetIM
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\adapter.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\autoupdate.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\contentpackages.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\logger.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\messages.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\sweetim.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\sweetimapp.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\conf\users\main_user_config.xml
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\Bars\Default\bar.html
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\Bars\Default\bar.js
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\Bars\Default\bar.swf
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\contentdb\cache_indx.dat
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\packages\FailDialog\activationFail.htm
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\packages\FailDialog\close_but.gif
c:\documents and settings\All Users\Application Data\SweetIM\Messenger\data\packages\FailDialog\failure_dialog_BG.jpg
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\cid.txt
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\config.sxe
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\country.sxe
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\country.sxe.tmp
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\history.db
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\update.sxe
c:\documents and settings\NetworkService\Local Settings\Application Data\crazyloader Air\update.xml
c:\program files\sweetim
c:\program files\sweetim\Messenger\ContentPackagesActivationHandler.exe
c:\program files\sweetim\Messenger\default.xml
c:\program files\sweetim\Messenger\mgAdaptersProxy.dll
c:\program files\sweetim\Messenger\mgArchive.dll
c:\program files\sweetim\Messenger\mgcommon.dll
c:\program files\sweetim\Messenger\mgcommunication.dll
c:\program files\sweetim\Messenger\mgconfig.dll
c:\program files\sweetim\Messenger\mgFlashPlayer.dll
c:\program files\sweetim\Messenger\mghooking.dll
c:\program files\sweetim\Messenger\mgICQAuto.dll
c:\program files\sweetim\Messenger\mgICQMessengerAdapter.dll
c:\program files\sweetim\Messenger\mglogger.dll
c:\program files\sweetim\Messenger\mgMediaPlayer.dll
c:\program files\sweetim\Messenger\mgMsnAuto.dll
c:\program files\sweetim\Messenger\mgMsnMessengerAdapter.dll
c:\program files\sweetim\Messenger\mgsimcommon.dll
c:\program files\sweetim\Messenger\mgSweetIM.dll
c:\program files\sweetim\Messenger\mgUpdateSupport.dll
c:\program files\sweetim\Messenger\mgxml_wrapper.dll
c:\program files\sweetim\Messenger\mgYahooAuto.dll
c:\program files\sweetim\Messenger\mgYahooMessengerAdapter.dll
c:\program files\sweetim\Messenger\msvcp71.dll
c:\program files\sweetim\Messenger\msvcr71.dll
c:\program files\sweetim\Messenger\resources\images\AudibleButton.png
c:\program files\sweetim\Messenger\resources\images\DisplayPicturesButton.png
c:\program files\sweetim\Messenger\resources\images\EmoticonButton.png
c:\program files\sweetim\Messenger\resources\images\GamesButton.png
c:\program files\sweetim\Messenger\resources\images\KeyboardButton.png
c:\program files\sweetim\Messenger\resources\images\NudgeButton.png
c:\program files\sweetim\Messenger\resources\images\SoundFxButton.png
c:\program files\sweetim\Messenger\resources\images\WinksButton.png
c:\program files\sweetim\Messenger\resources\sqlite\mgSqlite3.dll
c:\program files\sweetim\Messenger\SweetIM.exe
c:\program files\WhiteSmoke
c:\program files\WhiteSmoke\buy.ico
c:\program files\WhiteSmoke\ComVistaElevator.dll
c:\program files\WhiteSmoke\FloatButtonWhiteApps.txt
c:\program files\WhiteSmoke\FuncServer_WDC_x64.exe
c:\program files\WhiteSmoke\HookDllOE.dll
c:\program files\WhiteSmoke\HookDllOE64.dll
c:\program files\WhiteSmoke\html\english\common\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\common\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\common\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\common\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\common\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\common\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\common\js\common.js
c:\program files\WhiteSmoke\html\english\common\js\pngfix.js
c:\program files\WhiteSmoke\html\english\common\js\prototype.js
c:\program files\WhiteSmoke\html\english\common\js\xmlhttp.js
c:\program files\WhiteSmoke\html\english\dictClientDic\dictionary.html
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\ajax-loader.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_bottom_left.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_bottom_right.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_top_left.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\corner_top_right.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\down_arrow.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\input_bg.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\input_bg_old.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\left_input.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\leftSide.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\leftSide2.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\loading_dictionary.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\right_input.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\rightSide.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Background\search_strip_bg3.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\down_arrow.png
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\go_over.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\go_press.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\go_up.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\humanTranslation_press.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\humanTranslation_roll.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\humanTranslation_up.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\moreLang_press.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\moreLang_roll.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\Buttons\moreLang_up.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\img\spacer.gif
c:\program files\WhiteSmoke\html\english\dictClientDic\index.html
c:\program files\WhiteSmoke\html\english\dictClientDic\js\common.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\Contextmenu.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\dictInterface.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\jquery-1.4.2.min.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\jquery.combobox.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\jquery.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\prototype.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\transInterface.js
c:\program files\WhiteSmoke\html\english\dictClientDic\js\xmlhttp.js
c:\program files\WhiteSmoke\html\english\dictClientDic\style\combobox.css
c:\program files\WhiteSmoke\html\english\dictClientDic\style\Contextmenu.css
c:\program files\WhiteSmoke\html\english\dictClientDic\style\dictionary.css
c:\program files\WhiteSmoke\html\english\dictClientDic\translator.html
c:\program files\WhiteSmoke\html\english\floatingButton\blue-Q-rollover.gif
c:\program files\WhiteSmoke\html\english\floatingButton\blue-rollover.gif
c:\program files\WhiteSmoke\html\english\floatingButton\blue-X-rollover.gif
c:\program files\WhiteSmoke\html\english\floatingButton\blue.gif
c:\program files\WhiteSmoke\html\english\floatingButton\index.html
c:\program files\WhiteSmoke\html\english\floatingButton\red&blue.gif
c:\program files\WhiteSmoke\html\english\floatingButton\Thumbs.db
c:\program files\WhiteSmoke\html\english\floatingButton_howto\img\Background\howto_bg.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\img\spacer.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\img\Thumbs.db
c:\program files\WhiteSmoke\html\english\floatingButton_howto\index.html
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\floatingButton_howto\js\index.js
c:\program files\WhiteSmoke\html\english\floatingButton_howto\style\style.css
c:\program files\WhiteSmoke\html\english\gui\img\Background\ajax-loader.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\base_fade_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_bg_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_dark_bg.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_dark_bg_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\blue_top_bg_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\bottom_grey_strip.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\buttons_tray_px.p_goldng
c:\program files\WhiteSmoke\html\english\gui\img\Background\buttons_tray_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bar_re_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bar_re_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bar_re_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_bottom_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\caption_strip_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\cascade.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\collapse.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_bl2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_br2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_dot.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_menu_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_sub_menu_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_submenu.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_submenu_dis.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_tl2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\context_tr2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\Copy of notice_right_top_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\down_arrow.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\dpreloader.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_footer_left.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_footer_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_footer_right.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_header_left.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_header_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_header_right.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\edit_sidefade.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\feather.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\green.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\input_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\inputline_fade_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\left_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftBottom3.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftSide.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftSide2.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\leftSide3.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\logo.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\logo.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\logo2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\main_background.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\main_background_11.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\main_background_old.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\notice_checkbox_checked.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\notice_checkbox_unchecked.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\red.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\red2.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\resize_gripper.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\result_area_top_bg.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\right_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightBottom.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightSide.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightSide2.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\rightSide2_11.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\spacer.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\spacer_.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_blue.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_green.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_green2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_purple.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\strike_red.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_apply_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_apply_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_apply_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_check_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_check_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_check_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_left_corner.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\summaryline_right_corner.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\ticket.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\top_grey_strip.gif
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsLeft.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsLeft__.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsLeft_from_home.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topButtonsRight.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\topRightBorder.png
c:\program files\WhiteSmoke\html\english\gui\img\Background\wslogo.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\blue.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\bottom_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\buttons_tray_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bar_re_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bar_re_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bar_re_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_bottom_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\caption_strip_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\get-full.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\get-full3.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\green.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\help_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\help_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\help_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\left_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\logo.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\logo.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\logo2.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\main_background.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_dictionary_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_templates_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_toolkit_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_translator_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_tutorials_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\menuline_writer_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\red.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\red2.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\right_input.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\sitting_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\sitting_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\sitting_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\smallclosebutton.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\store_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\store_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\store_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_apply_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_apply_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_apply_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_check_down.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_check_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_check_up.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\summaryline_px.png
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x.jpg
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x_hover.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x_hover_old.gif
c:\program files\WhiteSmoke\html\english\gui\img\Buttons\x_old.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\blue.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\bottom_right_corner.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\buttons_tray_px.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_close_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_close_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_close_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_max_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_max_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_max_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_re_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_re_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bar_re_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_bottom_px.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_px.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\caption_px_11.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\green.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\left_input.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\leftCaptionCorner.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\leftCaptionCorner2.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logo.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logo_1.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logo3.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\logologo2_11.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\main_background.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_dictionary_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_templates_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_toolkit_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_translator_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_tutorials_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_down.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_on.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_roll.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\menuline_writer_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\red.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\red2.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\right_input.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner2.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner3.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\rightCaptionCorner3_11.gif
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\store_down.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\store_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\store_up.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_apply_down.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_apply_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_apply_up.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_check_down.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_check_roll.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_check_up.png
c:\program files\WhiteSmoke\html\english\gui\img\captionbar\summaryline_px.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\addto_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\addto_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\addto_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\definition_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\definition_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\definition_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\enrichment_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\enrichment_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\enrichment_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\explanation_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\explanation_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\explanation_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\grammarexpclosebutton.gif
c:\program files\WhiteSmoke\html\english\gui\img\grammar\howto_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\howto_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\howto_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\search_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\search_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\search_up.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\thesaurus_disabled.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\thesaurus_hover.png
c:\program files\WhiteSmoke\html\english\gui\img\grammar\thesaurus_up.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\closedy2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\content-review4.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\dot.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\down-content.gif
c:\program files\WhiteSmoke\html\english\gui\img\review-section\down.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade1.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade3.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade4.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\grade5.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\li-content.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\opencq8.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\report.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score1.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score3.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score4.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\score5.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shadow.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shadow2.png
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shdow.gif
c:\program files\WhiteSmoke\html\english\gui\img\review-section\shdow_good.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_no_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_no_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_yes_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\button_yes_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\caption_bar_close_over.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_analyze.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_complete.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_connection.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\ico_expired.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\loading_window.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\loading_window.swf
c:\program files\WhiteSmoke\html\english\gui\img\screens\myWelcome.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_bottom.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_gold.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_old.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_bg_top.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_captionbar_press.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_captionbar_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_getitnow_press.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_getitnow_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_press.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_press.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_up.gif
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\screen_ok_up_11.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeClose_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeClose_over.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeClose_up.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeGo_down.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeGo_over.png
c:\program files\WhiteSmoke\html\english\gui\img\screens\welcomeGo_up.png
c:\program files\WhiteSmoke\html\english\gui\img\spacer.gif
c:\program files\WhiteSmoke\html\english\gui\index.html
c:\program files\WhiteSmoke\html\english\gui\js\appInterface.js
c:\program files\WhiteSmoke\html\english\gui\js\builder.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\common.js
c:\program files\WhiteSmoke\html\english\gui\js\Contextmenu.js
c:\program files\WhiteSmoke\html\english\gui\js\controls.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\dictionaryContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\dragdrop.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\effects.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\enrichmentContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\enrichmentsContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\final.js
c:\program files\WhiteSmoke\html\english\gui\js\gmonitor.js
c:\program files\WhiteSmoke\html\english\gui\js\grammarCache.class.js
c:\program files\WhiteSmoke\html\english\gui\js\grammarContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\gui\js\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\gui\js\iframeTest.js
c:\program files\WhiteSmoke\html\english\gui\js\jqModal.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery-1.2.6.pack.NotUSED.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery-1.3.2.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery-1.3.2.min.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery.ba-throttle-debounce.js
c:\program files\WhiteSmoke\html\english\gui\js\jquery.jeegoocontext.min.js
c:\program files\WhiteSmoke\html\english\gui\js\monitor.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\builder.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\controls.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\dragdrop.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\effects.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\prototype.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\slider.js
c:\program files\WhiteSmoke\html\english\gui\js\NonPackedVersion\sound.js
c:\program files\WhiteSmoke\html\english\gui\js\prototype.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\scriptaculous.js
c:\program files\WhiteSmoke\html\english\gui\js\slider.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\sound.pack.js
c:\program files\WhiteSmoke\html\english\gui\js\spellingContextMenu.class.js
c:\program files\WhiteSmoke\html\english\gui\js\summary.js
c:\program files\WhiteSmoke\html\english\gui\js\supersleight.js
c:\program files\WhiteSmoke\html\english\gui\js\switchcontent.js
c:\program files\WhiteSmoke\html\english\gui\js\tooltip.js
c:\program files\WhiteSmoke\html\english\gui\js\unittest.js
c:\program files\WhiteSmoke\html\english\gui\js\ws_content_manager.js
c:\program files\WhiteSmoke\html\english\gui\js\ws_functions.js
c:\program files\WhiteSmoke\html\english\gui\js\ws_links.js
c:\program files\WhiteSmoke\html\english\gui\js\x.gif
c:\program files\WhiteSmoke\html\english\gui\js\xmlhttp.js
c:\program files\WhiteSmoke\html\english\gui\js\ypSlideOutMenus.js
c:\program files\WhiteSmoke\html\english\gui\js\ypSlideOutMenusContext.js
c:\program files\WhiteSmoke\html\english\gui\style\combobox.css
c:\program files\WhiteSmoke\html\english\gui\style\Contextmenu.css
c:\program files\WhiteSmoke\html\english\gui\style\dictionary.css
c:\program files\WhiteSmoke\html\english\gui\style\enrichment.css
c:\program files\WhiteSmoke\html\english\gui\style\enrichments.css
c:\program files\WhiteSmoke\html\english\gui\style\grammar.css
c:\program files\WhiteSmoke\html\english\gui\style\iframeTest.css
c:\program files\WhiteSmoke\html\english\gui\style\indexnew.css
c:\program files\WhiteSmoke\html\english\gui\style\jeegoo.css
c:\program files\WhiteSmoke\html\english\gui\style\jqModal.css
c:\program files\WhiteSmoke\html\english\gui\style\screens.css
c:\program files\WhiteSmoke\html\english\gui\style\spelling.css
c:\program files\WhiteSmoke\html\english\registration\img\banner.gif
c:\program files\WhiteSmoke\html\english\registration\img\banner.png
c:\program files\WhiteSmoke\html\english\registration\img\captionbar\caption_bar_close_down.gif
c:\program files\WhiteSmoke\html\english\registration\img\captionbar\caption_bar_close_up.gif
c:\program files\WhiteSmoke\html\english\registration\img\captionbar\caption_bar_close_up_over.gif
c:\program files\WhiteSmoke\html\english\registration\img\continue_button_click.gif
c:\program files\WhiteSmoke\html\english\registration\img\continue_button_over.gif
c:\program files\WhiteSmoke\html\english\registration\img\continue_button_up.gif
c:\program files\WhiteSmoke\html\english\registration\img\down.gif
c:\program files\WhiteSmoke\html\english\registration\img\down.png
c:\program files\WhiteSmoke\html\english\registration\img\f2.gif
c:\program files\WhiteSmoke\html\english\registration\index.html
c:\program files\WhiteSmoke\html\english\registration\js\regInterface.js
c:\program files\WhiteSmoke\html\english\registration\style\registration.css
c:\program files\WhiteSmoke\html\english\settings\css\index.css
c:\program files\WhiteSmoke\html\english\settings\img\Background\logo.png
c:\program files\WhiteSmoke\html\english\settings\img\Background\main_bg.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_down.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_over.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\cancel_up.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_down.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_over.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\save_up.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_connection_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_connection_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_connection_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_content_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_content_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_content_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_general_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_general_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_general_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_info_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_info_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_info_on.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_shortcut_disabled.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_shortcut_off.png
c:\program files\WhiteSmoke\html\english\settings\img\Buttons\tab_shortcut_on.png
c:\program files\WhiteSmoke\html\english\settings\img\captionbar\caption_bar_close_down.gif
c:\program files\WhiteSmoke\html\english\settings\img\captionbar\caption_bar_close_over.gif
c:\program files\WhiteSmoke\html\english\settings\img\captionbar\caption_bar_close_up.gif
c:\program files\WhiteSmoke\html\english\settings\index.html
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\blank.gif
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\checkerboard.gif
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\helix.gif
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\iepngfix.htc
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\iepngfix.html
c:\program files\WhiteSmoke\html\english\settings\js\iepngfix\opacity.png
c:\program files\WhiteSmoke\html\english\settings\js\settingsInterface.js
c:\program files\WhiteSmoke\html\english\templates\dtree.css
c:\program files\WhiteSmoke\html\english\templates\dtree.js
c:\program files\WhiteSmoke\html\english\templates\General\Apologies\ApologyInnappropriateBehavior.html
c:\program files\WhiteSmoke\html\english\templates\General\Apologies\ApologyUnjustBehavior.html
c:\program files\WhiteSmoke\html\english\templates\General\Community Work\ResignationFromVoluntaryPosition.html
c:\program files\WhiteSmoke\html\english\templates\General\Condolences\LetterOfCondolence.html
c:\program files\WhiteSmoke\html\english\templates\General\Cover Letters\CoverLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Cover Letters\GrantCoverSheet.html
c:\program files\WhiteSmoke\html\english\templates\General\Family\FamilyNewsUpdate.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\AgreementToCompromiseDebt.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\BankError.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\DebtValidation.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\InvestigationOfBillingInquiry.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfCreditGeneral.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfCreditIrrevocable.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfCreditRevolving.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\LetterOfDispute.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\RemovalOfInadequateInformation.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\ReplyToApplicationForCredit.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\RequestForIncreaseOfCreditLimit.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\ReturningUnsignedCheck.html
c:\program files\WhiteSmoke\html\english\templates\General\Finance\UnauthorizedCreditInquiry.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\AChristmasWish.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ArrivalOfChristmas.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\BlessingsAtChristmas.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetings.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetingsMessage.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetingsToASpouse.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasGreetingsToWorkers.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\ChristmasWishes.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\HappyChristmasGreeting.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\InTheStillOfTheNightChristmasGreeting.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\JoyousOccasion.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\LovePeaceAndJoy.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\MerryChristmasAndHappyNewYear.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Christmas\MerryChristmasToFamily.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Graduation\CongratulationsOnYourGraduation.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Graduation\CongratulationsToTheGraduate.html
c:\program files\WhiteSmoke\html\english\templates\General\Greetings\Graduation\YouHaveGraduated.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\EmployeePerformanceReviewAndPlanningSessions.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\EmploymentApplications.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\HealthRelatedIssues.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\NewEmployeeOrientation.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\TerminationOfEmployment.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Manual\TuitionReimbursementPolicy.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\EmploymentReferenceLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\JobReferenceLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\LetterOfReference.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\ReferenceLetterByAcquaintance.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\RequestForEmployeeReferenceLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employee Reference Letters\VerificationOfEmploymentLetter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Letter Requesting Pay Raise.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Refusal of Resquest For Raise.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Leave of Absence.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Letter of Reference.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Meeting Regarding Pay Raise.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request for Paid or Unpaid Leave.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request For Salary Increase.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Employment Requests\Request to Schedule an Interview.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Acknowledgment of Job Application.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Confirmation of Job Dismissal.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Final Warning Before Dismissal.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Job Rejection Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Job Rejection Letter2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Dismissal and Rejection\Rejection of Job Offer.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Employment Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Introduction of New Employee.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Letter for Assistant Professor.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\LetterForTenureTrackAssociateProfessor.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Offer of Employment.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Employment Letters\Request for Employment Test.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Accept or Decline Job Offer.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Job Acceptance Letter 2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Job Acceptance Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Job Acceptance\Job Offer Acceptance.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Thank You Letters\Thank You Letter After Interview.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Hiring Employees\Thank You Letters\Thank You to Applicant for Testing.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Resignation Letters\Acceptance of Employee's Resignation.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Resignation Letters\Employee Termination Notice.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Hiring and Termination\Resignation Letters\Job Resignation Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Personnel Office\Notice of Decision to Reprimand.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Cover Letter Auditor Development Program.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Job Application Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Job Search Cover Letter - Disabled Citizens.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Job Search Cover Letter - Software Employment.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Law Internship Cover Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Resume Cover Letter.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Job Search Cover Letters\Resume Cover Letter2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Letters of Recommendation\Letter of Recommendation.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Accounting Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Administrative Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Banking Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Customer Service Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Database and Application Developer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\End User Trainer and Instructional Designer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Engineering Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Freelance Marcom Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\General CV Format.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Graphic Designer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Healthcare Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Internship Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Java Developer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Management Resume 2.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Management Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Marketing Administrator Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Marketing Director Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Marketing Manager Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Medical Essay Residency Experience.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Medical Resume - Physician.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Medical Resume Partnership in General Practice.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\PowerPoint Designer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Product Delivery Engineer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Sales Representative Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Software QA Engineer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Technical Publication Manager Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Technical Writer.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Web Developer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Human Resources\Resumes and Cover Letters\Resumes\Web Maintainer Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Advertising Commitment Form.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Art Advertising Flyer.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Request for Advertising Rate.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Advertising\Subscriber Letter News Service.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Legal\Assignment of Literary Property.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Comments to Author Regarding Book.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Introduction of Novel.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Letter of Interest to Magazine.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Letter of Recommendation.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Magazine Review.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Promotions\Promotional Letter Antique Shop.html
c:\program files\WhiteSmoke\html\english\templates\General\Literary\Resumes\Actor Resume.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Career Change.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Letter to a Friend Regarding Change of Job.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Sale of Automobile or Other Motor Vehicle.html
c:\program files\WhiteSmoke\html\english\templates\General\Personal Matters\Upset Regarding Loss of Job.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Admissions Essays\Admissions Essay for Entrance to Theater Institute.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Admissions Essays\Essay - Describe Events.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Admissions Essays\Graduate School Literary Essay.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Careers\Career Letter for Accounting Position.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Careers\Career Letter in Journalism.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Compliment Student on Graduation.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Congratulations to High School Graduate.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Personal Letter of Recommendation.html
c:\program files\WhiteSmoke\html\english\templates\General\Students\Personal Correspondence\Request for Financial Assistance from Parents.html
c:\program files\WhiteSmoke\html\english\templates\General\Studen
Bonjour,
Le rapport Combofix n'est pas complet, peux-tu l'héberger sur pjjoint : http://pjjoint.malekal.com/ et me poster le lien ?
Le rapport Combofix n'est pas complet, peux-tu l'héberger sur pjjoint : http://pjjoint.malekal.com/ et me poster le lien ?
Bonjour,
Désolé pour le délai, je n'étais pas très disponible ces derniers jours.
On poursuit :
-+-+-+-+-> OtMoveIt <-+-+-+-+-
[x] Télécharge OtMoveIt sur ton bureau.
[x] Lance le , puis copie/colle le texte ci dessous dans l'encadré " Paste instructions for items to be moved ".
[x] Clique maintenant sur " MoveIt! "
[x] Copie/Colle le contenu du rapport qui s'ouvrira dans ton prochain message.
Désolé pour le délai, je n'étais pas très disponible ces derniers jours.
On poursuit :
-+-+-+-+-> OtMoveIt <-+-+-+-+-
[x] Télécharge OtMoveIt sur ton bureau.
[x] Lance le , puis copie/colle le texte ci dessous dans l'encadré " Paste instructions for items to be moved ".
:files c:\documents and settings\Daniel\Application Data\*.bat :commands [emptytemp]
[x] Clique maintenant sur " MoveIt! "
[x] Copie/Colle le contenu du rapport qui s'ouvrira dans ton prochain message.
All processes killed
========== FILES ==========
c:\documents and settings\Daniel\Application Data\1t81v4bzz.bat moved successfully.
c:\documents and settings\Daniel\Application Data\4wa4x7e22.bat moved successfully.
c:\documents and settings\Daniel\Application Data\7ze70ah5.bat moved successfully.
c:\documents and settings\Daniel\Application Data\91f82cj7.bat moved successfully.
c:\documents and settings\Daniel\Application Data\b3ib4el9.bat moved successfully.
c:\documents and settings\Daniel\Application Data\c5jc6fmb.bat moved successfully.
c:\documents and settings\Daniel\Application Data\e7le8hod.bat moved successfully.
c:\documents and settings\Daniel\Application Data\g8mf9iqe.bat moved successfully.
c:\documents and settings\Daniel\Application Data\h9nhakrf.bat moved successfully.
c:\documents and settings\Daniel\Application Data\h9ohbkrf.bat moved successfully.
c:\documents and settings\Daniel\Application Data\ibpiclsh.bat moved successfully.
c:\documents and settings\Daniel\Application Data\jbpiclth.bat moved successfully.
c:\documents and settings\Daniel\Application Data\meslfpwk.bat moved successfully.
c:\documents and settings\Daniel\Application Data\phvoirznm.bat moved successfully.
c:\documents and settings\Daniel\Application Data\phvoisznn.bat moved successfully.
c:\documents and settings\Daniel\Application Data\qiwpjt0oo.bat moved successfully.
c:\documents and settings\Daniel\Application Data\rjxqku1pp.bat moved successfully.
c:\documents and settings\Daniel\Application Data\tlzsmw3rr.bat moved successfully.
c:\documents and settings\Daniel\Application Data\wo2vpz6uu.bat moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Daniel
->Temp folder emptied: 484689 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Java cache emptied: 83502 bytes
->FireFox cache emptied: 63198930 bytes
->Flash cache emptied: 39591 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 4068902 bytes
->Flash cache emptied: 669 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 2055 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1119633 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1395946 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 307549 bytes
RecycleBin emptied: 1328 bytes
Total Files Cleaned = 68,00 mb
OTM by OldTimer - Version 3.1.18.0 log created on 06162011_030054
Files moved on Reboot...
Registry entries deleted on Reboot...
========== FILES ==========
c:\documents and settings\Daniel\Application Data\1t81v4bzz.bat moved successfully.
c:\documents and settings\Daniel\Application Data\4wa4x7e22.bat moved successfully.
c:\documents and settings\Daniel\Application Data\7ze70ah5.bat moved successfully.
c:\documents and settings\Daniel\Application Data\91f82cj7.bat moved successfully.
c:\documents and settings\Daniel\Application Data\b3ib4el9.bat moved successfully.
c:\documents and settings\Daniel\Application Data\c5jc6fmb.bat moved successfully.
c:\documents and settings\Daniel\Application Data\e7le8hod.bat moved successfully.
c:\documents and settings\Daniel\Application Data\g8mf9iqe.bat moved successfully.
c:\documents and settings\Daniel\Application Data\h9nhakrf.bat moved successfully.
c:\documents and settings\Daniel\Application Data\h9ohbkrf.bat moved successfully.
c:\documents and settings\Daniel\Application Data\ibpiclsh.bat moved successfully.
c:\documents and settings\Daniel\Application Data\jbpiclth.bat moved successfully.
c:\documents and settings\Daniel\Application Data\meslfpwk.bat moved successfully.
c:\documents and settings\Daniel\Application Data\phvoirznm.bat moved successfully.
c:\documents and settings\Daniel\Application Data\phvoisznn.bat moved successfully.
c:\documents and settings\Daniel\Application Data\qiwpjt0oo.bat moved successfully.
c:\documents and settings\Daniel\Application Data\rjxqku1pp.bat moved successfully.
c:\documents and settings\Daniel\Application Data\tlzsmw3rr.bat moved successfully.
c:\documents and settings\Daniel\Application Data\wo2vpz6uu.bat moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Daniel
->Temp folder emptied: 484689 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Java cache emptied: 83502 bytes
->FireFox cache emptied: 63198930 bytes
->Flash cache emptied: 39591 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 4068902 bytes
->Flash cache emptied: 669 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 2055 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1119633 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1395946 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 307549 bytes
RecycleBin emptied: 1328 bytes
Total Files Cleaned = 68,00 mb
OTM by OldTimer - Version 3.1.18.0 log created on 06162011_030054
Files moved on Reboot...
Registry entries deleted on Reboot...
Ok, maintenant fais ceci :
-+-+-+-+-> ZHPDiag <-+-+-+-+-
[x] Nous allons effectuer un diagnostic de ton ordinateur, pour ce faire, télécharge ZHPDiag ( de Nicolas Coolman ).
[x] Exécute l'installateur ( /!\ Coche la case " créer une icône sur le bureau /!\ ) puis lance le une fois l'installation terminée.
[x] Clique sur l'icône en forme de loupe en haut à gauche ( Lancer le diagnostic ).
[x] Une fois l'analyse terminée, clique sur l'icône en forme de disquette bleue puis sauvegarde le fichier sur ton bureau.
[x] Rend toi sur cjoint puis clique sur " Choisissez un fichier ".
[x] Sélectionne le fichier ZHPDiag.txt présent sur ton bureau, puis clique sur " Ouvrir ".
[x] Clique ensuite sur " Créer le lien cjoint " puis copie/colle dans ta prochaine réponse le lien créé.
-+-+-+-+-> ZHPDiag <-+-+-+-+-
[x] Nous allons effectuer un diagnostic de ton ordinateur, pour ce faire, télécharge ZHPDiag ( de Nicolas Coolman ).
[x] Exécute l'installateur ( /!\ Coche la case " créer une icône sur le bureau /!\ ) puis lance le une fois l'installation terminée.
[x] Clique sur l'icône en forme de loupe en haut à gauche ( Lancer le diagnostic ).
[x] Une fois l'analyse terminée, clique sur l'icône en forme de disquette bleue puis sauvegarde le fichier sur ton bureau.
[x] Rend toi sur cjoint puis clique sur " Choisissez un fichier ".
[x] Sélectionne le fichier ZHPDiag.txt présent sur ton bureau, puis clique sur " Ouvrir ".
[x] Clique ensuite sur " Créer le lien cjoint " puis copie/colle dans ta prochaine réponse le lien créé.
Je ne suis pas capable de mettre le ZHPDiag.txt sur cjoint.com car la page internet m'indique toujours :
La connexion a été réinitialisée
La connexion avec le serveur a été réinitialisée pendant le chargement de la page.
* Le site est peut-être temporairement indisponible ou surchargé. Réessayez plus
tard ;
* Si vous n'arrivez à naviguer sur aucun site, vérifiez la connexion
au réseau de votre ordinateur ;
* Si votre ordinateur ou votre réseau est protégé par un pare-feu ou un proxy,
assurez-vous que Firefox est autorisé à accéder au Web.
La connexion a été réinitialisée
La connexion avec le serveur a été réinitialisée pendant le chargement de la page.
* Le site est peut-être temporairement indisponible ou surchargé. Réessayez plus
tard ;
* Si vous n'arrivez à naviguer sur aucun site, vérifiez la connexion
au réseau de votre ordinateur ;
* Si votre ordinateur ou votre réseau est protégé par un pare-feu ou un proxy,
assurez-vous que Firefox est autorisé à accéder au Web.