Win32horst

Résolu
onsoir tout le monde :

depuis quelques jours le trojan Win32.Horst ( sous diverses extensions : or, pg, ol ) se manifeste dès que je suis connecté à Internet. Il crée un fichier "setup.exe" ainsi qu'un "autorun.inf" dans C:\Documents and settings\All users\Documents. L'antivirus avast l'enlève automatiquement mais ce virus revient toujours 5-10 minutes aprés: voici le log de hijackThis:

Logfile of HijackThis v1.99.1
Scan saved at 22:41:19, on 15/12/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\WINDOWS\system32\XCSyncML.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Cegetel\C-BOX\Wizard\QuickAccess.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\TribalWeb.net\tribalweb.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\Alex\LOCALS~1\Temp\Rar$EX01.297\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [XCSyncML] C:\WINDOWS\system32\XCSyncML.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [.nvsvc] C:\WINDOWS\system\smss.exe /w
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Configuration de la C-BOX] C:\Program Files\Cegetel\C-BOX\Wizard\QuickAccess.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Startup: TribalWeb.net.lnk = C:\Program Files\TribalWeb.net\tribalweb.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.00\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcDataSrv.exe
O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcSandraSrv.exe

Merci d'avance
Configuration: Windows XP
Internet Explorer 6.0

25 réponses

  1. Bonjour

    $$ Télécharge
    SDFix sur ton bureau
    http://downloads.andymanchesta.com/RemovalTools/SDFix.zip

    clean.zip
    http://www.malekal.com/download/clean.zip
    Décompresse-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.

    $$ Redémarre en mode sans échec.

    $$ Ouvre le dossier Clean qui se trouve sur ton bureau, et double-clic sur clean.cmd.
    Une fenêtre noire va apparaître pendant un instant, laisse la ouverte.

    $$ Fais un clic droit sur SDFix.zip et choisis "Extraire tout"
    Double-clique sur RunThis.bat
    Tape Y pour lancer le script.
    Le Fix supprime les services du virus et nettoie le registre, de ce fait un redémarrage est nécessaire
    Presse une touche pour redémarrer
    Le PC va mettre du temps avant de démarrer, presse une touche lorsque "Finished" s'affiche

    Ouvre le dossier SDFix et copie/colle ici le contenu du fichier "Report.txt" avec le rapport qui se trouve ici C:\rapport_clean.txt et un nouveau HijackThis.

    Je ne vois pas de parefeu, est ce que celui de Windows est activé ?
    0
    1. Ok.

      Va dans Panneau de configuration et ouvre le "Centre de sécurité"(icône du bouclier)
      Assure toi tout d'abord que le pare-feu est activé (le bouton est vert dans ce cas!).
      Clique sur le menu pare-feu et sélectionne l'onglet "Exceptions".
      Si la case "Partage de fichiers et d'imprimantes" est cochée , décoche là.
      0
      1. SDFix: Version 1.46
        ****************

        16/12/2006 - 9:47:51,45

        Microsoft Windows XP [version 5.1.2600]

        Running From: C:\DOCUME~1\Alex\MESDOC~1\TLCHAR~1\SDFix

        Stage One - Safe Mode

        Checking For Trojan Services...

        Service Name:

        File Path:

        Starting Registry Repairs...

        Restoring Default Hosts File...

        Stage One Complete

        Rebooting...

        Stage Two - Normal Mode

        Checking For Malware:
        --------------------

        C:\DOCUME~1\Alex\LOCALS~1\Temp\setup.exe
        C:\DOCUME~1\Alex\LOCALS~1\Temp\setup_wm.exe
        C:\WINDOWS\system\smss.exe

        Backing Up and Removing any Files Found...

        Final Check:

        Services:
        ---------

        Authorized Applications Key Export:

        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
        "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
        "C:\\Program Files\\The All-Seeing Eye\\eye.exe"="C:\\Program Files\\The All-Seeing Eye\\eye.exe:*:Enabled:Yahoo! All-Seeing Eye"
        "C:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"="C:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe:*:Disabled:CoD2MP_s"
        "C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
        "C:\\Program Files\\TribalWeb.net\\tribalweb.exe"="C:\\Program Files\\TribalWeb.net\\tribalweb.exe:*:Enabled:TribalWeb.net : Réseau privé sur Internet"
        "C:\\Program Files\\BitTornado\\btdownloadgui.exe"="C:\\Program Files\\BitTornado\\btdownloadgui.exe:*:Enabled:btdownloadgui"
        "C:\\Program Files\\KONAMI\\Pro Evolution Soccer 5\\PES5.exe"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 5\\PES5.exe:*:Disabled:pes5.exe"
        "C:\\Program Files\\NEC\\NEC Mobile Suite\\CommsService.exe"="C:\\Program Files\\NEC\\NEC Mobile Suite\\CommsService.exe:*:Enabled:Communication service"
        "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
        "C:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe"="C:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe:*:Disabled:Nero Home"
        "C:\\Program Files\\ABC\\abc.exe"="C:\\Program Files\\ABC\\abc.exe:*:Enabled:abc"
        "C:\\Program Files\\MVM 2005 - Virtua Tennis\\VIRTUA_TENNIS_PC.exe"="C:\\Program Files\\MVM 2005 - Virtua Tennis\\VIRTUA_TENNIS_PC.exe:*:Enabled:VIRTUA_TENNIS_PC"
        "C:\\WINDOWS\\system32\\dpnsvr.exe"="C:\\WINDOWS\\system32\\dpnsvr.exe:*:Enabled:Microsoft DirectPlay8 Server"
        "C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
        "C:\\Program Files\\Internet Explorer\\iexplore.exe"="C:\\Program Files\\Internet Explorer\\iexplore.exe:*:Enabled:Internet Explorer"
        "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
        "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
        "C:\\WINDOWS\\system32\\svchost.exe"="C:\\WINDOWS\\system32\\svchost.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\23exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\23exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\57exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\57exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\41exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\41exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\84exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\84exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\37exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\37exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\68exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\68exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\22exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\22exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\2exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\2exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\16exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\16exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\3exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\3exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\33exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\33exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\31exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\31exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\98exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\98exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\11exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\11exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\15exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\15exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\9exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\9exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\70exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\70exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\49exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\49exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\52exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\52exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\93exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\93exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\38exmodul32f.b.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\38exmodul32f.b.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\80exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\80exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\1exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\1exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\33exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\33exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\62exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\62exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\81exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\81exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\29exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\29exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\72exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\72exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\38exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\38exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\71exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\71exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\82exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\82exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\83exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\83exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\20exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\20exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\96exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\96exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\12exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\12exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\44exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\44exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\56exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\56exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\8exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\8exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\36exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\36exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\67exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\67exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\94exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\94exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\24exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\24exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\50exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\50exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\85exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\85exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\34exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\34exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\88exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\88exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\52exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\52exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\37exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\37exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\39exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\39exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\61exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\61exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\78exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\78exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\27exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\27exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\26exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\26exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\35exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\35exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\9exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\9exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\66exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\66exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\57exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\57exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\99exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\99exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\76exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\76exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\97exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\97exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\63exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\63exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\75exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\75exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\42exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\42exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\46exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\46exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\55exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\55exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\11exmodul32f.c.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\11exmodul32f.c.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\4exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\4exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\26exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\26exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\55exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\55exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\58exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\58exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\12exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\12exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\78exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\78exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\92exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\92exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\1exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\1exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\18exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\18exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\68exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\68exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\48exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\48exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\2exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\2exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\30exmodul32f.d.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\30exmodul32f.d.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\61exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\61exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\8exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\8exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\25exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\25exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\29exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\29exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\35exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\35exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\48exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\48exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\69exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\69exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\78exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\78exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\64exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\64exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\39exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\39exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\15exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\15exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\3exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\3exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\12exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\12exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\80exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\80exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\85exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\85exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\28exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\28exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\14exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\14exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\47exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\47exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\49exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\49exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\84exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\84exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\65exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\65exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\59exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\59exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\0exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\0exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\30exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\30exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\90exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\90exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\71exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\71exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\22exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\22exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\38exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\38exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\86exmodul32f.f.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\86exmodul32f.f.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\15exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\15exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\46exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\46exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\99exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\99exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\62exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\62exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\52exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\52exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\97exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\97exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\75exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\75exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\54exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\54exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\45exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\91exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\91exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\64exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\64exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\61exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\61exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\8exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\8exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\11exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\11exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\13exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\13exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\39exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\39exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\76exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\76exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\29exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\29exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\40exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\40exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\72exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\72exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\85exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\85exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\48exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\48exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\27exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\27exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\43exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\43exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\74exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\49exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\49exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\82exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\82exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\51exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\51exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\1exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\1exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\70exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\70exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\20exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\20exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\24exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\24exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\10exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\10exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\95exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\95exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\35exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\35exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\50exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\50exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\56exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\56exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\98exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\98exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\92exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\92exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\7exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\7exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\34exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\34exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\87exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\87exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\89exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\89exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\68exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\68exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\47exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\47exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\22exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\22exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\23exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\23exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\28exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\28exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\80exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\80exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\73exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\73exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\93exmodul32f.i.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\93exmodul32f.i.exe:*:Enabled:Microsoft Update"
        "C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.j.exe"="C:\\DOCUME~1\\Alex\\LOCALS~1\\Temp\\53exmodul32f.j.exe:*:Enabled:Microsoft Update"
        "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"

        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
        "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
        "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
        "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"

        Files:
        ------

        Backups Folder: - C:\DOCUME~1\Alex\MESDOC~1\TLCHAR~1\SDFix\backups\backups.zip

        Checking for files with Hidden Attributes:

        C:\WINDOWS\system32\cdplayer.exe.manifest
        C:\WINDOWS\system32\logonui.exe.manifest
        C:\IO.SYS
        C:\MSDOS.SYS
        C:\pagefile.sys
        C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\9a11e5a8e98d4dbcc7a31e21685b8239\BIT8.tmp

        FINISHED!
        0
        1. Logfile of HijackThis v1.99.1
          Scan saved at 10:00:31, on 16/12/2006
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          C:\Program Files\Alwil Software\Avast4\ashServ.exe
          C:\WINDOWS\Explorer.EXE
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          C:\WINDOWS\SOUNDMAN.EXE
          C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
          C:\WINDOWS\system32\XCSyncML.exe
          C:\Program Files\DAEMON Tools\daemon.exe
          C:\Program Files\USB Disk Win98 Driver\Res.EXE
          C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          C:\WINDOWS\system32\ctfmon.exe
          C:\Program Files\Cegetel\C-BOX\Wizard\QuickAccess.exe
          C:\Program Files\MSN Messenger\MsnMsgr.Exe
          C:\Program Files\Skype\Phone\Skype.exe
          C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
          C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
          C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
          C:\Program Files\TribalWeb.net\tribalweb.exe
          C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
          C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
          C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
          C:\WINDOWS\System32\HPZipm12.exe
          C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
          C:\WINDOWS\system32\NOTEPAD.EXE
          C:\Program Files\Internet Explorer\iexplore.exe
          C:\Program Files\WinRAR\WinRAR.exe
          C:\DOCUME~1\Alex\LOCALS~1\Temp\Rar$EX00.860\HijackThis.exe

          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
          O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
          O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
          O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
          O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
          O4 - HKLM\..\Run: [XCSyncML] C:\WINDOWS\system32\XCSyncML.exe
          O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
          O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
          O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
          O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
          O4 - HKCU\..\Run: [Configuration de la C-BOX] C:\Program Files\Cegetel\C-BOX\Wizard\QuickAccess.exe
          O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
          O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
          O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
          O4 - Startup: TribalWeb.net.lnk = C:\Program Files\TribalWeb.net\tribalweb.exe
          O4 - Global Startup: hp psc 1000 series.lnk = ?
          O4 - Global Startup: hpoddt01.exe.lnk = ?
          O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
          O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html
          O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
          O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.00\MediaManager\grab.html
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
          O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
          O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
          O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
          O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
          O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
          O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL
          O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
          O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
          O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
          O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
          O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
          O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
          O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
          O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcDataSrv.exe
          O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcSandraSrv.exe
          0
          1. Bonjour

            Il manque ce rapport
            C:\rapport_clean.txt

            As tu vule message pour le paramètre du parefeu ?

            HijackThis est propre.

            Télécharge DiagHelp.zip (de Malekal_Morte) sur ton bureau
            http://www.malekal.com/download/DiagHelp.zip
            - Fais un clic droit sur le fichier et extraire tout
            - Un nouveau dossier chercher va être créé DiagHelp
            - Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
            - Une fenêtre va s'ouvrir, choisis l'option 1
            - L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande
            - A la fin de l'analyse, il te sera redemandé de redémarrer l'ordinateur... Une fois l'ordinateur redémarré le rapport va apparaître sur le bloc-note.. Ce dernier se trouve sur C:\resultat.txt
            - Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :
            -- Dans le bloc-note, cliquez sur le menu Edition / Selectionner tout
            -- A nouveau menu Edition / copier
            -- Dans un nouveau message ici, faire un clic droit / coller
            0
            1. Excuse moi pour le retard.Je te met tout de suite à disposition le rapport clean.txt:

              Script clean par Malekal_morte - http://www.malekal.com

              Microsoft Windows XP [version 5.1.2600]
              Script execute en mode sans echec

              *** Suppression de fichiers sur C:

              *** Suppression des fichiers dans C:\WINDOWS\

              *** Suppression des fichiers dans C:\WINDOWS\system32

              J'ai bien vu le message pour le paramètre du pare-feu.Tout est OK par rapport à ce que tu m'as demander.Je t'envois tout de suite le fichier resultat.txt correspondant à l'analyse de dialhelp

              C:\WINDOWS\System32\wpa.dbl -->19/12/2006 08:53:36
              C:\WINDOWS\System32\nscompat.tlb -->15/12/2006 18:35:54
              C:\WINDOWS\System32\amcompat.tlb -->15/12/2006 18:35:54
              C:\WINDOWS\System32\d3d9caps.dat -->14/12/2006 23:08:30
              C:\WINDOWS\System32\nvs2.inf -->12/12/2006 21:46:15
              C:\WINDOWS\System32\MRT.exe -->08/12/2006 00:13:44
              C:\WINDOWS\System32\CONFIG.NT -->28/11/2006 17:22:41
              C:\WINDOWS\System32\inetcomm.dll -->08/11/2006 06:07:30
              C:\WINDOWS\System32\jupdate-1.5.0_09-b03.log -->07/11/2006 20:58:35
              C:\WINDOWS\System32\msxml4.dll -->04/11/2006 14:14:00
              C:\WINDOWS\System32\wmploc.dll -->03/11/2006 10:03:34
              C:\WINDOWS\System32\wmpshell.dll -->03/11/2006 09:59:06
              C:\WINDOWS\System32\wmerror.dll -->03/11/2006 09:58:42
              C:\WINDOWS\System32\asferror.dll -->03/11/2006 09:56:54
              C:\WINDOWS\System32\wpdshextres.dll -->02/11/2006 11:52:12
              C:\WINDOWS\System32\PerfStringBackup.INI -->29/10/2006 09:48:33
              C:\WINDOWS\System32\perfh00C.dat -->29/10/2006 09:48:33
              C:\WINDOWS\System32\perfh009.dat -->29/10/2006 09:48:33
              C:\WINDOWS\System32\perfc00C.dat -->29/10/2006 09:48:33
              C:\WINDOWS\System32\perfc009.dat -->29/10/2006 09:48:33
              C:\WINDOWS\System32\wininet.dll -->23/10/2006 16:18:48
              C:\WINDOWS\System32\urlmon.dll -->23/10/2006 16:18:48
              C:\WINDOWS\System32\shlwapi.dll -->23/10/2006 16:18:48
              C:\WINDOWS\System32\shdocvw.dll -->23/10/2006 16:18:47
              C:\WINDOWS\System32\pngfilt.dll -->23/10/2006 16:18:47

              C:\WINDOWS\wiadebug.log -->19/12/2006 08:53:33
              C:\WINDOWS\WindowsUpdate.log -->19/12/2006 08:53:19
              C:\WINDOWS\wiaservc.log -->19/12/2006 08:53:18
              C:\WINDOWS\0.log -->19/12/2006 08:53:07
              C:\WINDOWS\bootstat.dat -->19/12/2006 08:53:04
              C:\WINDOWS\SchedLgU.Txt -->19/12/2006 08:52:04
              C:\WINDOWS\tsoc.log -->19/12/2006 08:51:14
              C:\WINDOWS\ocmsn.log -->19/12/2006 08:51:14
              C:\WINDOWS\ocgen.log -->19/12/2006 08:51:14
              C:\WINDOWS\ntdtcsetup.log -->19/12/2006 08:51:14
              C:\WINDOWS\KB925454.log -->19/12/2006 08:51:14
              C:\WINDOWS\imsins.log -->19/12/2006 08:51:14
              C:\WINDOWS\iis6.log -->19/12/2006 08:51:14
              C:\WINDOWS\comsetup.log -->19/12/2006 08:51:14
              C:\WINDOWS\setupapi.log -->19/12/2006 08:51:13

              C:\WINDOWS\alcrmv.exe |11/04/2006 17:58:34
              C:\WINDOWS\alcupd.exe |11/04/2006 17:58:34
              C:\WINDOWS\IsUn040c.exe |09/06/2006 17:16:18
              C:\WINDOWS\slrundll.exe |20/08/2004 00:10:02
              C:\WINDOWS\SOUNDMAN.EXE |11/04/2006 17:58:39
              C:\WINDOWS\Sqirlz Morph Uninstaller.exe |19/06/2006 13:47:53
              C:\WINDOWS\TLCUninstall.exe |09/06/2006 17:16:32
              C:\WINDOWS\twunk_16.exe |30/08/2002 13:00:00
              C:\WINDOWS\twunk_32.exe |30/08/2002 13:00:00
              C:\WINDOWS\UNNeroBackItUp.exe |12/09/2005 14:13:46
              C:\WINDOWS\UNNeroMediaHome.exe |12/09/2005 14:13:46
              C:\WINDOWS\UNNeroShowTime.exe |12/09/2005 14:13:46
              C:\WINDOWS\UNNeroVision.exe |12/09/2005 14:13:46
              C:\WINDOWS\UNRecode.exe |12/09/2005 14:13:46
              C:\WINDOWS\twain.dll |30/08/2002 13:00:00
              C:\WINDOWS\twain_32.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\append.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\aswBoot.exe |27/11/2006 07:59:01
              C:\WINDOWS\system32\ati2evxx.exe |12/08/2003 21:25:24
              C:\WINDOWS\system32\Ati2mdxx.exe |04/09/2001 21:24:26
              C:\WINDOWS\system32\ati2sgag.exe |12/04/2006 05:38:05
              C:\WINDOWS\system32\CloseWiz32.exe |11/04/2006 18:03:03
              C:\WINDOWS\system32\debug.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\DivXCodecUpdateChecker.exe |11/07/2006 23:33:49
              C:\WINDOWS\system32\DivXsm.exe |12/07/2006 00:40:17
              C:\WINDOWS\system32\dosx.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\dvdplay.exe |23/08/2001 18:47:34
              C:\WINDOWS\system32\edlin.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\exe2bin.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\fastopen.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\HPZinw12.exe |17/04/2006 21:48:47
              C:\WINDOWS\system32\HPZipm12.exe |17/04/2006 21:48:47
              C:\WINDOWS\system32\java.exe |07/11/2006 20:58:36
              C:\WINDOWS\system32\javaw.exe |07/11/2006 20:58:36
              C:\WINDOWS\system32\javaws.exe |07/11/2006 20:58:36
              C:\WINDOWS\system32\mem.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\mscdexnt.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\NeroCheck.exe |09/07/2001 09:50:42
              C:\WINDOWS\system32\nlsfunc.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\pxcpya64.exe |20/07/2006 14:28:21
              C:\WINDOWS\system32\pxcpyi64.exe |20/07/2006 14:28:21
              C:\WINDOWS\system32\pxhpinst.exe |20/07/2006 14:28:21
              C:\WINDOWS\system32\pxinsa64.exe |20/07/2006 14:28:21
              C:\WINDOWS\system32\pxinsi64.exe |20/07/2006 14:28:21
              C:\WINDOWS\system32\redir.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\setver.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\share.exe |30/08/2002 13:00:00
              C:\WINDOWS\system32\slrundll.exe |20/08/2004 00:10:02
              C:\WINDOWS\system32\slserv.exe |20/08/2004 00:10:02
              C:\WINDOWS\system32\srkey.exe |09/06/2006 17:59:58
              C:\WINDOWS\system32\usrmlnka.exe |23/08/2001 18:47:48
              C:\WINDOWS\system32\usrprbda.exe |23/08/2001 18:47:48
              C:\WINDOWS\system32\usrshuta.exe |23/08/2001 18:47:48
              C:\WINDOWS\system32\XCSyncML.exe |15/05/2006 18:21:35
              C:\WINDOWS\system32\a3d.dll |11/04/2006 17:58:38
              C:\WINDOWS\system32\amstream.dll |11/12/2002 23:14:32
              C:\WINDOWS\system32\ati2cqag.dll |20/08/2004 00:09:19
              C:\WINDOWS\system32\ati2dvaa.dll |20/08/2004 00:09:19
              C:\WINDOWS\system32\ati2dvag.dll |12/08/2003 21:34:46
              C:\WINDOWS\system32\ati2evxx.dll |12/08/2003 21:26:46
              C:\WINDOWS\system32\ati3d1ag.dll |12/08/2003 20:49:16
              C:\WINDOWS\system32\ati3d2ag.dll |12/08/2003 21:01:08
              C:\WINDOWS\system32\ati3duag.dll |12/08/2003 21:15:36
              C:\WINDOWS\system32\ATIDDC.DLL |12/08/2003 21:24:58
              C:\WINDOWS\system32\atiiiexx.dll |12/04/2006 14:07:21
              C:\WINDOWS\system32\atioglxx.dll |12/08/2003 22:06:16
              C:\WINDOWS\system32\atipdlxx.dll |12/08/2003 21:27:14
              C:\WINDOWS\system32\atitvo32.dll |12/08/2003 20:40:14
              C:\WINDOWS\system32\ativcoxx.dll |09/11/2001 14:01:04
              C:\WINDOWS\system32\ativtmxx.dll |20/08/2004 00:09:19
              C:\WINDOWS\system32\ativvaxx.dll |20/08/2004 00:09:19
              C:\WINDOWS\system32\atmfd.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\atmlib.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\Audio3D.dll |11/04/2006 17:58:38
              C:\WINDOWS\system32\CJ60Lib.dll |21/06/2004 12:20:56
              C:\WINDOWS\system32\CmdLineExt03.dll |08/05/2006 23:05:53
              C:\WINDOWS\system32\coclassfast.dll |08/12/2006 17:45:46
              C:\WINDOWS\system32\cocpyinf.dll |15/05/2006 18:16:28
              C:\WINDOWS\system32\compatui.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\Dbgwproc.dll |08/07/2006 08:00:54
              C:\WINDOWS\system32\dgrpsetu.dll |11/04/2006 18:38:37
              C:\WINDOWS\system32\dgsetup.dll |11/04/2006 18:38:37
              C:\WINDOWS\system32\DivX.dll |02/10/2006 20:04:39
              C:\WINDOWS\system32\DivXWMPExtType.dll |11/07/2006 23:33:49
              C:\WINDOWS\system32\divx_xx07.dll |02/10/2006 20:04:40
              C:\WINDOWS\system32\divx_xx0c.dll |02/10/2006 20:04:40
              C:\WINDOWS\system32\divx_xx11.dll |02/10/2006 20:04:40
              C:\WINDOWS\system32\dpl100.dll |11/08/2006 00:03:58
              C:\WINDOWS\system32\dpu10.dll |11/07/2006 23:54:31
              C:\WINDOWS\system32\dpu11.dll |11/07/2006 23:54:31
              C:\WINDOWS\system32\dpuGUI10.dll |11/07/2006 23:54:34
              C:\WINDOWS\system32\dpuGUI11.dll |11/07/2006 23:54:31
              C:\WINDOWS\system32\dpus11.dll |11/07/2006 23:54:31
              C:\WINDOWS\system32\dpv11.dll |11/07/2006 23:54:31
              C:\WINDOWS\system32\dtu100.dll |11/08/2006 00:03:57
              C:\WINDOWS\system32\encdec.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\EqnClass.Dll |11/04/2006 18:38:36
              C:\WINDOWS\system32\hpgwiamd.dll |28/02/2003 09:10:02
              C:\WINDOWS\system32\hpotscl.dll |09/03/2003 21:31:04
              C:\WINDOWS\system32\hpovst08.dll |09/03/2003 21:31:04
              C:\WINDOWS\system32\HPZc3212.dll |17/04/2006 21:48:04
              C:\WINDOWS\system32\hpzcoi07.dll |09/03/2003 21:30:52
              C:\WINDOWS\system32\hpzcon07.dll |09/03/2003 21:30:50
              C:\WINDOWS\system32\HPZidr12.dll |17/04/2006 21:48:46
              C:\WINDOWS\system32\HPZipr12.dll |17/04/2006 21:48:46
              C:\WINDOWS\system32\HPZipt12.dll |17/04/2006 21:48:47
              C:\WINDOWS\system32\HPZisn12.dll |17/04/2006 21:48:47
              C:\WINDOWS\system32\hpzsnt07.dll |09/03/2003 21:30:52
              C:\WINDOWS\system32\hsfcisp2.dll |20/08/2004 00:09:27
              C:\WINDOWS\system32\HSF_INST.dll |11/04/2006 18:40:12
              C:\WINDOWS\system32\hticons.dll |11/04/2006 17:43:29
              C:\WINDOWS\system32\HtmlWH.dll |06/08/2006 11:18:41
              C:\WINDOWS\system32\hypertrm.dll |17/11/2004 18:57:39
              C:\WINDOWS\system32\iccvid.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\ieencode.dll |20/08/2004 00:09:27
              C:\WINDOWS\system32\imagX7.dll |26/07/2004 15:16:10
              C:\WINDOWS\system32\imagXpr7.dll |26/07/2004 15:16:10
              C:\WINDOWS\system32\imagXR7.dll |26/07/2004 15:16:10
              C:\WINDOWS\system32\imagXRA7.dll |26/07/2004 15:16:10
              C:\WINDOWS\system32\INETWH32.dll |06/08/2006 11:18:41
              C:\WINDOWS\system32\ir32_32.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\ir41_qc.dll |14/11/2002 11:59:36
              C:\WINDOWS\system32\ir41_qcx.dll |14/11/2002 11:59:36
              C:\WINDOWS\system32\ir50_32.dll |14/11/2002 11:59:38
              C:\WINDOWS\system32\ir50_qc.dll |14/11/2002 11:59:38
              C:\WINDOWS\system32\ir50_qcx.dll |14/11/2002 11:59:40
              C:\WINDOWS\system32\isrdbg32.dll |11/04/2006 17:45:15
              C:\WINDOWS\system32\jgaw400.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\jgdw400.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\jgmd400.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\jgpl400.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\jgsd400.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\jgsh400.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\lame_enc.dll |15/12/2003 14:49:24
              C:\WINDOWS\system32\libdivx.dll |12/07/2006 00:40:00
              C:\WINDOWS\system32\mdmxsdk.dll |20/08/2004 00:09:30
              C:\WINDOWS\system32\mdwmdmsp.dll |23/08/2001 18:47:06
              C:\WINDOWS\system32\mgxoschk.dll |06/08/2006 11:18:36
              C:\WINDOWS\system32\msdmo.dll |11/12/2002 23:14:32
              C:\WINDOWS\system32\msencode.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\mtxparhd.dll |20/08/2004 00:09:35
              C:\WINDOWS\system32\NCTAudioEditor2.dll |22/04/2004 11:38:46
              C:\WINDOWS\system32\NCTAudioFile2.dll |21/04/2004 16:11:32
              C:\WINDOWS\system32\NCTAudioGrabber2.dll |08/12/2003 11:16:20
              C:\WINDOWS\system32\NCTAudioInformation2.dll |02/03/2004 11:10:02
              C:\WINDOWS\system32\NCTAudioPlayer2.dll |12/04/2004 14:32:40
              C:\WINDOWS\system32\NCTAudioRecord2.dll |12/04/2004 14:36:02
              C:\WINDOWS\system32\NCTAudioTransform2.dll |16/04/2004 10:09:42
              C:\WINDOWS\system32\NCTAudioVisualization2.dll |08/12/2003 11:19:30
              C:\WINDOWS\system32\NCTWMAFile2.dll |20/05/2004 14:24:04
              C:\WINDOWS\system32\NeroCo.dll |16/02/2005 13:18:04
              C:\WINDOWS\system32\nv4_disp.dll |20/08/2004 00:09:36
              C:\WINDOWS\system32\Oemdspif.dll |12/08/2003 21:27:00
              C:\WINDOWS\system32\PA207USD.DLL |08/01/2004 09:30:22
              C:\WINDOWS\system32\paqsp.dll |23/08/2001 18:47:16
              C:\WINDOWS\system32\PawLib.dll |04/03/2005 09:11:06
              C:\WINDOWS\system32\psisdecd.dll |11/04/2006 21:08:21
              C:\WINDOWS\system32\px.dll |20/07/2006 14:28:20
              C:\WINDOWS\system32\pxdrv.dll |20/07/2006 14:28:21
              C:\WINDOWS\system32\pxmas.dll |20/07/2006 14:28:21
              C:\WINDOWS\system32\pxwave.dll |20/07/2006 14:28:21
              C:\WINDOWS\system32\qedwipes.dll |11/12/2002 23:14:32
              C:\WINDOWS\system32\qt-dx331.dll |27/07/2006 18:28:42
              C:\WINDOWS\system32\ROBOEX32.DLL |06/08/2006 11:18:41
              C:\WINDOWS\system32\s3gnb.dll |20/08/2004 00:09:39
              C:\WINDOWS\system32\sbe.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\slbcsp.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\slbiop.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\slbrccsp.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\slcoinst.dll |20/08/2004 00:09:41
              C:\WINDOWS\system32\slextspk.dll |20/08/2004 00:09:41
              C:\WINDOWS\system32\slgen.dll |20/08/2004 00:09:41
              C:\WINDOWS\system32\spnike.dll |23/08/2001 18:47:18
              C:\WINDOWS\system32\sprio600.dll |23/08/2001 18:47:18
              C:\WINDOWS\system32\sprio800.dll |23/08/2001 18:47:18
              C:\WINDOWS\system32\spxcoins.dll |11/04/2006 18:38:36
              C:\WINDOWS\system32\ssldivx.dll |12/07/2006 00:40:00
              C:\WINDOWS\system32\STAPI.dll |15/05/2006 18:21:35
              C:\WINDOWS\system32\tsd32.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\TwnLib4.dll |09/07/2004 07:43:56
              C:\WINDOWS\system32\usrcntra.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrcoina.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrdpa.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrdtea.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrfaxa.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrlbva.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrrtosa.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrsdpia.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrsvpia.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrv42a.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrv80a.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrvoica.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\usrvpa.dll |23/08/2001 18:47:20
              C:\WINDOWS\system32\vxblock.dll |20/07/2006 14:28:21
              C:\WINDOWS\system32\win87em.dll |30/08/2002 13:00:00
              C:\WINDOWS\system32\WinObex.dll |15/05/2006 18:21:35

              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\WINDOWS\system32

              20/08/2004 00:09 6 144 csrss.exe
              1 fichier(s) 6 144 octets
              0 Rép(s) 12 865 888 256 octets libres

              Contenu de Downloaded Program Files
              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\WINDOWS\Downloaded Program Files

              30/10/2006 14:41 <REP> .
              30/10/2006 14:41 <REP> ..
              11/04/2006 17:46 65 desktop.ini
              14/10/1997 17:52 697 DirectAnimation Java Classes.osd
              25/06/2006 12:50 1 793 erma.inf
              29/05/2003 14:00 160 864 messengerstatsclient.dll
              20/01/2000 14:25 1 162 Microsoft XML Parser for Java.osd
              30/06/2005 14:19 227 MsnMessengerSetupDownloader.inf
              13/08/2005 23:26 113 664 MsnMessengerSetupDownloader.ocx
              27/03/2006 12:00 5 019 swflash.inf
              8 fichier(s) 283 491 octets

              Total des fichiers listés :
              8 fichier(s) 283 491 octets
              2 Rép(s) 12 865 888 256 octets libres

              Recherche de rootkit! (Merci S!Ri)
              [b]infection possible Magic.Control[/b] : un scan F-Secure BlackLight est recommandé

              Recherche d'infections connues

              Liste des programmes installes

              Élysée 3.41
              ABC (remove only)
              Adobe Reader 7.0.8 - Français
              Adobe Shockwave Player
              Age of Empires III
              Age of Empires III
              AIDA32 v3.93
              Archiveur WinRAR
              ATI Control Panel
              ATI Display Driver
              ATI HydraVision
              AutoUpdate
              avast! Antivirus
              Beach Volleyball (remove only)
              Bel Atout 3.92
              BitTornado 0.3.15
              Boomerang Breaker
              Call of Duty(R) 2
              Call of Duty(R) 2
              Call of Duty(R) 2 Patch 1.2
              Call of Duty(R) 2 Patch 1.3
              Correctif Windows XP - KB873339
              Correctif Windows XP - KB885250
              Correctif Windows XP - KB885835
              Correctif Windows XP - KB885836
              Correctif Windows XP - KB886185
              Correctif Windows XP - KB887472
              Correctif Windows XP - KB887742
              Correctif Windows XP - KB888113
              Correctif Windows XP - KB888302
              Correctif Windows XP - KB890859
              Correctif Windows XP - KB891781
              Del Mp3 Karaoke 4.6.4604
              Disque de souvenirs HP
              DivX Codec
              DivX Content Uploader
              DivX Converter
              DivX Player
              DivX Web Player
              EA SPORTS online 2007
              eMedia
              eMule
              eMulev0.47a.-MorphXTv8.13
              Evolution GT
              FIFA 07
              FoxTarot version 4.0
              Fx Audio Converter
              Google Toolbar for Firefox
              Harry Potter TM
              HijackThis 1.99.1
              hp psc 1100 series
              Installation de la C-BOX
              J2SE Runtime Environment 5.0 Update 3
              J2SE Runtime Environment 5.0 Update 6
              J2SE Runtime Environment 5.0 Update 9
              KaraFun 1.01b
              Lecteur Windows Media 11
              LimeWire PRO 4.10.0
              Macromedia Flash Player 8
              Macromedia Flash Player 8
              MAGIX melody maker e-version
              Micro Application - PrintPratic 3
              Microsoft .NET Framework 1.1
              Microsoft .NET Framework 1.1 French Language Pack
              Microsoft Office Access MUI (French) 2007 (Beta)
              Microsoft Office Excel MUI (French) 2007 (Beta)
              Microsoft Office InfoPath MUI (French) 2007 (Beta)
              Microsoft Office Outlook MUI (French) 2007 (Beta)
              Microsoft Office PowerPoint MUI (French) 2007 (Beta)
              Microsoft Office Professional 2007 (Beta)
              Microsoft Office Professional Plus 2007 (Beta)
              Microsoft Office Proof (Arabic) 2007 (Beta)
              Microsoft Office Proof (Dutch) 2007 (Beta)
              Microsoft Office Proof (English) 2007 (Beta)
              Microsoft Office Proof (French) 2007 (Beta)
              Microsoft Office Proof (German) 2007 (Beta)
              Microsoft Office Proof (Spanish) 2007 (Beta)
              Microsoft Office Publisher MUI (French) 2007 (Beta)
              Microsoft Office Shared MUI (French) 2007 (Beta)
              Microsoft Office Word MUI (French) 2007 (Beta)
              Microsoft User-Mode Driver Framework Feature Pack 1.0
              Microsoft XML Parser
              Mise à jour de sécurité pour Lecteur Windows Media (KB911564)
              Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
              Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
              Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
              Mise à jour de sécurité pour Windows XP (KB890046)
              Mise à jour de sécurité pour Windows XP (KB893756)
              Mise à jour de sécurité pour Windows XP (KB896358)
              Mise à jour de sécurité pour Windows XP (KB896422)
              Mise à jour de sécurité pour Windows XP (KB896423)
              Mise à jour de sécurité pour Windows XP (KB896424)
              Mise à jour de sécurité pour Windows XP (KB896428)
              Mise à jour de sécurité pour Windows XP (KB899587)
              Mise à jour de sécurité pour Windows XP (KB899591)
              Mise à jour de sécurité pour Windows XP (KB900725)
              Mise à jour de sécurité pour Windows XP (KB901017)
              Mise à jour de sécurité pour Windows XP (KB901214)
              Mise à jour de sécurité pour Windows XP (KB902400)
              Mise à jour de sécurité pour Windows XP (KB904706)
              Mise à jour de sécurité pour Windows XP (KB905414)
              Mise à jour de sécurité pour Windows XP (KB905749)
              Mise à jour de sécurité pour Windows XP (KB908519)
              Mise à jour de sécurité pour Windows XP (KB908531)
              Mise à jour de sécurité pour Windows XP (KB911280)
              Mise à jour de sécurité pour Windows XP (KB911562)
              Mise à jour de sécurité pour Windows XP (KB911567)
              Mise à jour de sécurité pour Windows XP (KB911927)
              Mise à jour de sécurité pour Windows XP (KB912812)
              Mise à jour de sécurité pour Windows XP (KB912919)
              Mise à jour de sécurité pour Windows XP (KB913446)
              Mise à jour de sécurité pour Windows XP (KB913580)
              Mise à jour de sécurité pour Windows XP (KB914388)
              Mise à jour de sécurité pour Windows XP (KB914389)
              Mise à jour de sécurité pour Windows XP (KB916281)
              Mise à jour de sécurité pour Windows XP (KB917159)
              Mise à jour de sécurité pour Windows XP (KB917344)
              Mise à jour de sécurité pour Windows XP (KB917422)
              Mise à jour de sécurité pour Windows XP (KB917953)
              Mise à jour de sécurité pour Windows XP (KB918439)
              Mise à jour de sécurité pour Windows XP (KB918899)
              Mise à jour de sécurité pour Windows XP (KB919007)
              Mise à jour de sécurité pour Windows XP (KB920213)
              Mise à jour de sécurité pour Windows XP (KB920214)
              Mise à jour de sécurité pour Windows XP (KB920670)
              Mise à jour de sécurité pour Windows XP (KB920683)
              Mise à jour de sécurité pour Windows XP (KB920685)
              Mise à jour de sécurité pour Windows XP (KB921398)
              Mise à jour de sécurité pour Windows XP (KB921883)
              Mise à jour de sécurité pour Windows XP (KB922616)
              Mise à jour de sécurité pour Windows XP (KB922760)
              Mise à jour de sécurité pour Windows XP (KB922819)
              Mise à jour de sécurité pour Windows XP (KB923191)
              Mise à jour de sécurité pour Windows XP (KB923414)
              Mise à jour de sécurité pour Windows XP (KB923694)
              Mise à jour de sécurité pour Windows XP (KB923980)
              Mise à jour de sécurité pour Windows XP (KB924191)
              Mise à jour de sécurité pour Windows XP (KB924270)
              Mise à jour de sécurité pour Windows XP (KB924496)
              Mise à jour de sécurité pour Windows XP (KB925454)
              Mise à jour de sécurité pour Windows XP (KB925486)
              Mise à jour de sécurité pour Windows XP (KB926255)
              Mise à jour pour Windows XP (KB898461)
              Mise à jour pour Windows XP (KB900485)
              Mise à jour pour Windows XP (KB910437)
              Mise à jour pour Windows XP (KB916595)
              Mise à jour pour Windows XP (KB920872)
              Mise à jour pour Windows XP (KB922582)
              Mozilla Firefox (1.5)
              MP3 Player Utilities
              MP3 Player Utilities 4.00
              MSXML 4.0 SP2 (KB925672)
              MSXML 4.0 SP2 (KB927978)
              Music Phone
              NATHAN Vacances CE1 V.1.00 (C:)
              NEC Mobile Drivers
              NEC Mobile Drivers
              NEC Mobile Suite
              NEC Synchronization
              NEC WMC USB_T1 Software
              Need for Speed™ Carbon
              Nero 7 Demo
              OpenOffice.org 2.0
              PC Camera
              PC Camera
              Photo et imagerie HP 2.0 - All-in-One
              Photo et imagerie HP 2.0 - All-in-One Pilote
              Photo et imagerie HP 2.0 - hp psc 1100 series
              Pilotes SAGEM F@st 3302
              Pixia
              Pixia
              PowerStrip 3 (remove only)
              Pro Evolution Soccer 5
              Pro Evolution Soccer 5
              Realtek AC'97 Audio
              Rise Of Legends
              Rise Of Legends
              Sinbad - La Légende des Sept Mers(tm)
              SiSoftware Sandra Lite 2005.SR3 (Win64/32/CE)
              Skype (BETA)
              Sqirlz Morph
              TribalWeb.net
              Téléchargeur de Toca RD3 fr
              USB Disk Win98 Driver
              VD Codec Pack 1.6
              VideoLAN VLC media player 0.8.5
              Virtua Tennis
              Virtual DJ - Atomix Productions
              WebFldrs XP
              WebMediaPlayer
              Windows Genuine Advantage Notifications (KB905474)
              Windows Installer 3.1 (KB893803)
              Windows Live Messenger
              Windows Live Sign-in Assistant
              Windows Media Format 11 runtime
              Windows Media Format 11 runtime
              Windows Media Player 11
              Windows Media Player 9 Series Winter Fun Pack
              Windows XP Service Pack 2
              Yu-Gi-Oh! Power of Chaos YUGI THE DESTINY
              Zoombinis Archipel en danger

              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\Program Files

              15/12/2006 10:51 <REP> .
              15/12/2006 10:51 <REP> ..
              10/10/2006 20:17 5 481 0x040c.ini
              10/10/2006 20:17 31 232 1036.MST
              01/10/2006 09:19 <REP> 1964
              25/07/2006 10:00 <REP> ABC
              12/04/2006 12:06 <REP> Activision
              31/05/2006 16:48 <REP> Adobe
              11/04/2006 19:54 <REP> AIDA32 - Personal System Information
              11/04/2006 19:51 <REP> Alwil Software
              09/06/2006 17:59 <REP> Atari
              12/04/2006 05:38 <REP> ATI Technologies
              15/10/2006 10:37 <REP> BeachVolleyball
              03/05/2006 17:42 <REP> BitTornado
              18/05/2006 18:22 <REP> Black Bean
              08/12/2006 17:45 <REP> Cegetel
              10/10/2006 20:18 <REP> Common Files
              11/04/2006 17:44 <REP> ComPlus Applications
              08/07/2006 07:59 <REP> Cool MP3 Converter
              18/05/2006 18:18 <REP> DAEMON Tools
              20/07/2006 10:47 <REP> DelMp3Kok
              04/10/2006 21:48 <REP> DivX
              04/07/2006 10:16 <REP> EA Games
              01/11/2006 20:36 <REP> EA SPORTS
              24/11/2006 18:29 <REP> Electronic Arts
              15/12/2006 19:46 <REP> eMule
              06/08/2006 11:18 <REP> Fichiers communs
              08/12/2006 19:33 <REP> FoxTarot4
              08/07/2006 08:01 <REP> Fx Audio Conveter
              20/07/2006 14:29 <REP> Google
              17/04/2006 21:52 <REP> Hewlett-Packard
              12/09/2006 10:40 <REP> Incomplete
              19/12/2006 08:51 <REP> Internet Explorer
              07/11/2006 20:58 <REP> Java
              04/09/2006 19:15 <REP> Jeux de cartes
              19/07/2006 16:35 <REP> KaraFun
              30/06/2006 16:28 <REP> KONAMI
              12/09/2006 10:38 <REP> LimeWire
              24/04/2006 09:08 <REP> Messenger
              30/10/2006 18:55 <REP> Micro Application
              11/04/2006 17:49 <REP> microsoft frontpage
              23/08/2006 16:55 <REP> Microsoft Games
              05/06/2006 21:18 <REP> Microsoft Office
              05/06/2006 21:18 <REP> Microsoft Visual Studio
              05/06/2006 21:15 <REP> Microsoft Works
              22/10/2006 17:05 <REP> Mindscape
              23/04/2006 19:45 <REP> Movie Maker
              19/12/2006 09:22 <REP> Mozilla Firefox
              24/04/2006 16:00 <REP> mozilla.org
              01/11/2006 17:04 <REP> MP3 Player Utilities
              01/11/2006 17:05 <REP> MP3 Player Utilities 4.00
              05/06/2006 21:18 <REP> MSBuild
              24/05/2006 19:19 <REP> MSN
              11/04/2006 17:43 <REP> MSN Gaming Zone
              02/09/2006 09:36 <REP> MSN Messenger
              14/10/2006 21:14 <REP> MSXML 4.0
              03/11/2006 13:18 <REP> MVM 2005 - Virtua Tennis
              23/05/2006 19:00 <REP> NEC
              15/05/2006 18:21 <REP> NEC Synchronization
              10/05/2006 16:36 <REP> Nero
              23/04/2006 19:42 <REP> NetMeeting
              15/09/2006 16:59 <REP> OpenOffice.org 2.0
              19/12/2006 08:50 <REP> Outlook Express
              10/10/2006 20:18 <REP> PC Camera
              10/10/2006 20:17 5 264 896 PC Camera.msi
              12/04/2006 12:03 <REP> PowerStrip
              08/05/2006 20:32 <REP> Project64 v1.5
              08/12/2006 17:45 <REP> SAGEM
              19/06/2006 13:49 <REP> Seagrand
              11/04/2006 17:46 <REP> Services en ligne
              11/04/2006 20:04 <REP> SiSoftware
              11/04/2006 18:47 <REP> Skype
              19/06/2006 13:47 <REP> Sqirlz Morph
              08/12/2006 19:15 <REP> Super Mario Blue Twilight DX
              06/06/2006 21:14 <REP> Téléchargeur de Toca RD3
              13/10/2006 20:59 <REP> The All-Seeing Eye
              29/11/2006 21:47 <REP> TribalWeb.net
              19/04/2006 15:10 <REP> Unalis
              14/12/2006 18:44 <REP> USB Disk Win98 Driver
              03/05/2006 10:23 <REP> VDCodecPack1.6
              26/11/2006 13:09 <REP> VideoLAN
              22/05/2006 19:35 <REP> VirtualDJ
              12/12/2006 21:46 <REP> WebMediaPlayer
              15/12/2006 10:51 <REP> Windows Media Connect 2
              15/12/2006 18:35 <REP> Windows Media Player
              23/04/2006 19:42 <REP> Windows NT
              12/09/2006 10:46 <REP> Windows XP Fun Pack
              17/04/2006 11:10 <REP> WinRAR
              11/04/2006 17:49 <REP> xerox
              3 fichier(s) 5 301 609 octets
              86 Rép(s) 12 865 486 848 octets libres
              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\Program Files\fichiers communs

              06/08/2006 11:18 <REP> .
              06/08/2006 11:18 <REP> ..
              31/05/2006 16:50 <REP> Adobe
              21/07/2006 07:59 <REP> Ahead
              06/06/2006 21:14 <REP> BOONTY Shared
              05/06/2006 21:18 <REP> DESIGNER
              17/04/2006 21:50 <REP> Hewlett-Packard
              12/04/2006 12:05 <REP> InstallShield
              24/04/2006 16:55 <REP> Java
              06/08/2006 11:18 <REP> MAGIX Shared
              26/06/2006 11:37 <REP> Microsoft Shared
              11/04/2006 17:45 <REP> MSSoap
              11/04/2006 18:38 <REP> ODBC
              11/04/2006 17:45 <REP> Services
              11/04/2006 18:38 <REP> SpeechEngines
              19/12/2006 08:53 <REP> System
              11/07/2006 20:03 <REP> Wise Installation Wizard
              15/05/2006 18:21 <REP> XCPCSync.OEM
              0 fichier(s) 0 octets
              18 Rép(s) 12 865 486 848 octets libres
              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders

              05/06/2006 21:18 <REP> .
              05/06/2006 21:18 <REP> ..
              05/06/2006 21:12 <REP> 1036
              25/04/2006 20:33 967 952 MSONSEXT.DLL
              02/05/2006 18:37 40 208 MSOSV.DLL
              03/06/1999 13:09 122 937 MSOWS409.DLL
              07/03/2001 08:00 127 033 MSOWS40c.DLL
              4 fichier(s) 1 258 130 octets
              3 Rép(s) 12 865 486 848 octets libres
              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\Program Files\common files

              10/10/2006 20:18 <REP> .
              10/10/2006 20:18 <REP> ..
              10/10/2006 20:18 <REP> PCCamera
              0 fichier(s) 0 octets
              3 Rép(s) 12 865 486 848 octets libres
              Le volume dans le lecteur C n'a pas de nom.
              Le numéro de série du volume est B861-F53E

              Répertoire de C:\

              11/11/2001 00:00 68 096 diff.exe
              27/08/2006 14:10 103 424 grep.exe
              2 fichier(s) 171 520 octets
              0 Rép(s) 12 865 486 848 octets libres
              c:\Documents and Settings\Alex\Application Data\LimeWire\.NetworkShare\LimeWireWin4.12.6-fixed.exe
              c:\Documents and Settings\Alex\Application Data\LimeWire\.NetworkShare\Incomplete\T-4519880-LimeWireWin4.12.6-nopack2.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{2D9AA6DC-19CB-42ED-83AC-5A34CBC66904}\_056E09DEE04D4D46886A0E0EE9101552.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{2D9AA6DC-19CB-42ED-83AC-5A34CBC66904}\_F1438262CEF4478EBD3CBFD8C89E8846.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{2D9AA6DC-19CB-42ED-83AC-5A34CBC66904}\ARPPRODUCTICON.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{2D9AA6DC-19CB-42ED-83AC-5A34CBC66904}\NewShortcut6_2D9AA6DC19CB42ED83AC5A34CBC66904.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{2D9AA6DC-19CB-42ED-83AC-5A34CBC66904}\Uninstall_Music_Phon_2D9AA6DC19CB42ED83AC5A34CBC66904.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{52C8FAA0-68CA-4AF9-8A7A-92CF3174CC77}\IconTmpl5.26D6FF13_F77C_402E_8E96_9E49DFBBAF31.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}\_26e91eb.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}\_5af141bb.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}\_bb32ea6.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{6815FCDD-401D-481E-BA88-31B4754C2B46}\ARPPRODUCTICON.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{7784A172-61F1-445E-8368-601607E0DD22}\_18be6784.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{7784A172-61F1-445E-8368-601607E0DD22}\_294823.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{7784A172-61F1-445E-8368-601607E0DD22}\_2cd672ae.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{7784A172-61F1-445E-8368-601607E0DD22}\_4ae13d6c.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{7784A172-61F1-445E-8368-601607E0DD22}\_69525f90.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\diff.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\FilesInfoCmd.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\Fport.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\grep.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\LFiles.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\LISTDLLS.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\pslist.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\streams.exe
              c:\Documents and Settings\Alex\Bureau\E.E.O + Relaxation\DiagHelp\swreg.exe
              c:\Documents and Settings\Alex\Bureau\Jeux\FoxTarot.exe
              c:\Documents and Settings\Alex\Bureau\OpenOffice.org 2.0 Installation Files\setup.exe
              c:\Documents and Settings\Alex\Local Settings\Tempsetup.exe
              c:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Office\Alerts\winword.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\0exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\0exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\10exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\10exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\10exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\11exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\11exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\11exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\11exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\12exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\12exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\13exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\14exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\14exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\14exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\14exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\15exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\15exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\15exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\16exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\16exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\17exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\17exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\18exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\18exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\19exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\1exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\1exhdd.p.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\1exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\20exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\20exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\21exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\21exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\21exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\21exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\21exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\22exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\22exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\24exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\24exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\25exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\26exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\26exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\26exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\26exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\26exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\27exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\28exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\28exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\29exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\2exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\2exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\30exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\30exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\31exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\31exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\32exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\32exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\32exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\33exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\33exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\34exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\34exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\34exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\34exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\35exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\35exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\35exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\35exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\35exmodul32f.k.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\36exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\36exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\36exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\37exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\37exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\37exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\38exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\38exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\38exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\39exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\39exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\39exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\39exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\3exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\3exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\3exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\40exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\40exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\41exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\41exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\42exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\43exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\43exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\43exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\43exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\44exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\44exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\45exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\45exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\45exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\45exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\46exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\47exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\47exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\47exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\47exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\48exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\48exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\49exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\49exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\4exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\4exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\50exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\50exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\50exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\51exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\51exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\51exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\51exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\51exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\52exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\52exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\53exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\54exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\54exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\54exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\55exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\55exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\55exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\55exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\56exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\57exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\58exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\58exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\59exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\59exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\5exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\5exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\60exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\60exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\60exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\61exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\61exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\61exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\62exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\62exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\62exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\62exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\63exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\63exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\63exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\64exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\64exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\64exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\65exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\66exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\66exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\67exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\67exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\68exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\69exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\69exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\69exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\6exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\6exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\6exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\70exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\70exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\70exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\70exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\71exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\71exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\71exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\72exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\72exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\73exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\73exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\73exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\74exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\75exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\75exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\76exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\76exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\77exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\77exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\78exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\79exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\79exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\79exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\79exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\7exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\7exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\80exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\80exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\80exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\82exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\83exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\83exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\84exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\84exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\85exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\86exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\86exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\86exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\87exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\87exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\87exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\87exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\88exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\88exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\88exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\89exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\89exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\89exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\8exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\8exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\8exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\8exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\90exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\91exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\91exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\91exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\91exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\91exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\92exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\92exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\92exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\93exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\93exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\93exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\94exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\94exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\95exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\96exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\96exhdd.o.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\97exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\97exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\97exhdd.n.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\97exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\98exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\98exhdd.r.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\98exssd32.v.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\99exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\9exhdd.l.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\9exhdd.m.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\9exhdd.q.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\atl.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\AutoRun.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\GL_3.EXE
              c:\Documents and Settings\Alex\Local Settings\Temp\msnsearch.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Div3E.tmp\DivXInstaller.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\msxmlwr\instmsi.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\msxmlwr\instmsiw.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\msxmlwr\setup.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Nero7.tmp\SetupX.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Nero7.tmp\Redist\50comupd.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Nero7.tmp\Redist\instmsia.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Nero7.tmp\Redist\instmsiw.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Nero7.tmp\Redist\ShFolder.Exe
              c:\Documents and Settings\Alex\Local Settings\Temp\Nero7.tmp\setup\NeroDelTmp.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\SetupX.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Redist\50comupd.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Redist\instmsia.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Redist\ShFolder.Exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Redist\instmsiw\msiexec.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Redist\instmsiw\msiinst.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Setup\NeroDelTmp.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\NeroDemo9936\Setup\UninstallNero.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nstmp\uninstall.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nstmp1\uninstall.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nsx94.tmp\PxCpyA64.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nsx94.tmp\PxCpyI64.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nsx94.tmp\pxhpinst.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nsx94.tmp\PxInsA64.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nsx94.tmp\PxInsI64.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\nsx94.tmp\pxsetup.exe
              c:\Documents and Settings\Alex\Local Settings\Temp\{15DEB988-715F-439D-AE0E-545899AC3DDF}\{C6B7E3A6-0BA7-478D-A5AB-8DED8FC62D80}\Drivers\Setup.exe
              c:\Documents and Settings\Alex\Local Settings\Temporary Internet Files\Content.IE5\6X6RS56T\webmediaplayer_setup[1].exe
              c:\Documents and Settings\Alex\Mes documents\applications baptiste\1964.exe
              c:\Documents and Settings\Alex\Mes documents\applications baptiste\pj64.exe
              c:\Documents and Settings\Alex\Mes documents\applications baptiste\rom GBA\winrar.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\AdbeRdr705_fra_full.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\all seeing eye.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\avast_avast_4.7.844_francais_anglais_11113.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\belatout392.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\BitTornado.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\coolmp3converter.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\copy cleaner.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\daemon403-x86.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\DelMp3Kok.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\directx_9_0b_.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\DivXInstaller.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\elysee341.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\eMule0.47a-Installer.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\eMulev0.47a.-MorphXTv8.13-installer.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\FoxTarot403.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\FxACSU.EXE
              c:\Documents and Settings\Alex\Mes documents\Installation\Install_Messenger.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\mozilla_mozilla_1.7.12_francais_10797.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\mozilla-firefox_mozilla_firefox_1.5.0.2_francais_11003.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\Nero-7.2.0.3b_fra_no_yt.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\OOo_2.0.3_Win32Intel_install_fr.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\OPPLUS-FR.EXE
              c:\Documents and Settings\Alex\Mes documents\Installation\pixia_pixia_3.3b_anglais_10276.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\PrintPratic.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\sabrina_setup.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\Skype.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\SkypeSetup-Beta.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\SteamInstall.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\SteamInstall_Full.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\tribalweb.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\tribalweb_setup(2).exe
              c:\Documents and Settings\Alex\Mes documents\Installation\tribalweb_setup.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\VDCodecPack1.6.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\winamp524_full.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\wmp11-windowsxp-x86-fr-fr.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\direct x\dxsetup.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\Maps Call Of Duty 2\cod2intelpatch_101.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\Maps Call Of Duty 2\CoD2SP_s.exe
              c:\Documents and Settings\Alex\Mes documents\Installation\Maps Call Of Duty 2\patch 1.2\CallofDuty2Patchv1_2.exe
              c:\Documents and Settings\Alex\Mes documents\Mes réceptions TribalWeb.net\usmozac\ccsetup135.exe
              c:\Documents and Settings\Alex\Mes documents\Mes réceptions TribalWeb.net\usmozac\SDFix.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\cRack initiaux\age3.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\cRack initiaux\CoD2MP_s.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\cRack initiaux\CoD2SP_s.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\cRack initiaux\fifa07.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\cRack initiaux\NFSC.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\cRack initiaux\PES5.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\Mes réceptions TribalWeb.net\usmozac\AIDA_32_3.93_Personnal_Edition.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\Mes réceptions TribalWeb.net\usmozac\setupfre.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\cliptext.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\download.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\moveex.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\Process.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\RegDACL.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\RestartIt!.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\sc.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\sha160.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\swreg.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\swsc.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\unzip.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\zip.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\Replace\W2K.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\apps\Replace\XP.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\attrib.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\find.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\findstr.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\reg.exe
              c:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\regedit.exe
              c:\Documents and Settings\Alex\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
              c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
              c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
              0
              1. Contributeur
                bonsoir tout le monde , désolé de m'incruster :p

                je pense que tu deverais commencé par installé un parfeu ca va empeché le trojan de se multiplié

                a++++
                0
                1. Bonsoir

                  Oui pour un parefeu plus performant, mais le parefeu Windows configuré de cette manière évite la surinfection.

                  DiagHelp montre un possible rootkit.

                  Télécharge Blacklight (de F-Secure) et sauvegarde le sur ton Bureau.
                  https://www.f-secure.com/en
                  Clique sur "I ACCEPT" au bas de la page. Sauvegarde le sur ton Bureau.

                  Double-clique blbeta.exe et accepte la licence; clique Scan puis Next

                  Tu verras une liste de fichiers détectés apparaître. Tu verras également un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres)

                  Copie et colle le contenu de ce rapport dans ta prochaine réponse.
                  0
                  1. 12/20/06 20:51:36 [Info]: BlackLight Engine 1.0.47 initialized
                    12/20/06 20:51:36 [Info]: OS: 5.1 build 2600 (Service Pack 2)
                    12/20/06 20:51:36 [Note]: 7019 4
                    12/20/06 20:51:36 [Note]: 7005 0
                    12/20/06 20:51:39 [Note]: 7006 0
                    12/20/06 20:51:39 [Note]: 7011 252
                    12/20/06 20:51:40 [Note]: 7026 0
                    12/20/06 20:51:40 [Note]: 7026 0
                    12/20/06 20:51:40 [Note]: 7024 3
                    12/20/06 20:51:40 [Info]: Hidden process: C:\windows\system32\wohiyqskad.exe
                    12/20/06 20:51:40 [Note]: FSRAW library version 1.7.1020
                    12/20/06 20:54:13 [Note]: 4013 95563
                    12/20/06 20:54:13 [Note]: 4020 89432 131072
                    12/20/06 20:54:13 [Note]: 4018 89432 131072
                    12/20/06 20:54:13 [Note]: 4013 95563
                    12/20/06 20:54:13 [Note]: 4020 89432 131072
                    12/20/06 20:54:13 [Note]: 4018 89432 131072
                    12/20/06 20:55:01 [Note]: 4013 2408
                    12/20/06 20:55:01 [Note]: 4020 89434 131072
                    12/20/06 20:55:01 [Note]: 4020 89434 131072
                    12/20/06 20:55:01 [Note]: 4018 89434 131072
                    12/20/06 20:55:01 [Note]: 4013 2408
                    12/20/06 20:55:01 [Note]: 4020 89434 131072
                    12/20/06 20:55:01 [Note]: 4018 89434 131072
                    12/20/06 20:55:14 [Note]: 4013 95564
                    12/20/06 20:55:14 [Note]: 4020 89428 851968
                    12/20/06 20:55:14 [Note]: 4018 89428 851968
                    12/20/06 20:55:14 [Note]: 4013 95564
                    12/20/06 20:55:14 [Note]: 4020 89428 851968
                    12/20/06 20:55:14 [Note]: 4018 89428 851968
                    12/20/06 20:55:15 [Note]: 4013 86749
                    12/20/06 20:55:15 [Note]: 4020 89428 851968
                    12/20/06 20:55:15 [Note]: 4018 89428 851968
                    12/20/06 20:55:15 [Note]: 4013 86749
                    12/20/06 20:55:15 [Note]: 4020 89428 851968
                    12/20/06 20:55:15 [Note]: 4018 89428 851968
                    12/20/06 20:59:56 [Info]: Hidden file: c:\WINDOWS\Prefetch\WOHIYQSKAD.EXE-01EE1730.pf
                    12/20/06 20:59:56 [Note]: 10002 1
                    12/20/06 21:00:36 [Info]: Hidden file: c:\WINDOWS\system32\wohiyqskad.dat
                    12/20/06 21:00:36 [Note]: 10002 1
                    12/20/06 21:00:37 [Info]: Hidden file: C:\windows\system32\wohiyqskad.exe
                    12/20/06 21:00:37 [Note]: 10002 1
                    12/20/06 21:00:38 [Info]: Hidden file: c:\WINDOWS\system32\wohiyqskad_nav.dat
                    12/20/06 21:00:38 [Note]: 10002 1
                    12/20/06 21:00:38 [Info]: Hidden file: c:\WINDOWS\system32\wohiyqskad_navps.dat
                    12/20/06 21:00:38 [Note]: 10002 1
                    12/20/06 21:03:02 [Note]: 7007 0
                    0
                    1. Bonjour

                      Blacklight montre les fichiers infectieux.

                      Une partie de la procédure se déroulera sans avoir accès à internet, prière d'imprimer ces instructions, ou de les coller dans un fichier texte, pour lecture durant cette désinfection.
                      Les manipulations sont à faire sans interruption et dans l'ordre.
                      Si tu ne comprends pas quelque chose, demande des explications avant de commencer.


                      Télécharge Brute Force Uninstaller (de Merijn)
                      http://www.merijn.org/files/bfu.zip
                      Créé un nouveau dossier directement sur le C:\ et nomme-le BFU. Décompresse le fichier téléchargé dans ce nouveau dossier (C:\BFU)

                      FAIS UN CLIC-DROIT sur le lien suivant
                      http://metallica.geekstogo.com/EGDACCESS.bfu
                      et choisis "Enregistrer la cible sous..." afin de télécharger EGDACCESS.bfu (de Metallica). Sauvegarde dans le dossier créé (C:\BFU). **Note: si tu utlises Internet Explorer, lors de la sauvegarde, assure-toi que le champs "Type :" affiche "Tous les fichiers". Tu dois maintenant avoir deux fichiers dans le dossier C:\BFU : EGDACCESS.bfu et BFU.exe (très important).

                      Ouvre le Bloc-note et copie-colle les lignes ci-dessous
                      RegDeleteKey HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wohiyqskad
                      RegDelValue HKLM\Software\Microsoft\Windows\CurrentVersion\Run|wohiyqskad
                      FileDelete %SYSDIR%\wohiyqskad_navps.dat
                      FileDelete %SYSDIR%\wohiyqskad_nav.dat
                      FileDelete %SYSDIR%\wohiyqskad.dat
                      FileDelete %SYSDIR%\wohiyqskad.exe
                      
                      FileDelete C:\egd.txt
                      SystemRun regedit|/e C:\egd.txt "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"|0
                      
                      SystemEmptyTempFolder
                      SystemEmptyRecycleBin

                      Sauvegarde dans le dossier créé (C:\BFU) (Nom du fichier : "Fixme.bfu " -sans inclure les guillemets- ; Type : Tous les fichiers).

                      $$ Redémarre en mode Sans Échec : au redémarrage, tapote immédiatement la touche F8 ou F5; tu verras un écran avec choix de démarrages apparaître. Utilisant les flèches du clavier, choisis "Mode Sans Échec" et valide avec "Entrée". Choisis ton compte usuel, et non Administrateur.

                      $$ Démarre le "Brute Force Uninstaller" en double-cliquant BFU.exe (du dossier C:\BFU)

                      --- Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur :

                      EGDACCESS.bfu

                      - Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci : C:\BFU\EGDACCESS.bfu
                      Clique sur Execute et laisse-le faire son travail.
                      Attendre que Complete script execution apparaîsse et clique sur OK.

                      --- Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur :

                      Fixme.bfu

                      Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci :C:\BFU\Fixme.bfu
                      Clique sur Execute et laisse-le faire son travail.
                      Attendre que Complete script execution apparaîsse et clique sur OK

                      Clique Exit pour fermer le programme BFU.

                      $$ Redémarre normalement

                      Poste un nouveau hijackthis avec le rapport situé ici C:\egd.txt
                      0
                      1. Logfile of HijackThis v1.99.1
                        Scan saved at 12:27:50, on 21/12/2006
                        Platform: Windows XP SP2 (WinNT 5.01.2600)
                        MSIE: Internet Explorer v7.00 (7.00.5730.0011)

                        Running processes:
                        C:\WINDOWS\System32\smss.exe
                        C:\WINDOWS\system32\winlogon.exe
                        C:\WINDOWS\system32\services.exe
                        C:\WINDOWS\system32\lsass.exe
                        C:\WINDOWS\system32\Ati2evxx.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\spoolsv.exe
                        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                        C:\Program Files\Alwil Software\Avast4\ashServ.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                        C:\WINDOWS\Explorer.EXE
                        C:\WINDOWS\SOUNDMAN.EXE
                        C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                        C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
                        C:\WINDOWS\system32\XCSyncML.exe
                        C:\Program Files\DAEMON Tools\daemon.exe
                        C:\Program Files\USB Disk Win98 Driver\Res.EXE
                        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                        C:\WINDOWS\system32\ctfmon.exe
                        C:\Program Files\Cegetel\C-BOX\Wizard\QuickAccess.exe
                        C:\Program Files\MSN Messenger\MsnMsgr.Exe
                        C:\Program Files\Skype\Phone\Skype.exe
                        C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
                        C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
                        C:\Program Files\TribalWeb.net\tribalweb.exe
                        C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
                        C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
                        C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
                        C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
                        C:\Program Files\Internet Explorer\iexplore.exe
                        C:\Program Files\WinRAR\WinRAR.exe
                        C:\DOCUME~1\Alex\LOCALS~1\Temp\Rar$EX00.922\HijackThis.exe

                        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                        O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
                        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
                        O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                        O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
                        O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
                        O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
                        O4 - HKLM\..\Run: [XCSyncML] C:\WINDOWS\system32\XCSyncML.exe
                        O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
                        O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                        O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
                        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
                        O4 - HKCU\..\Run: [Configuration de la C-BOX] C:\Program Files\Cegetel\C-BOX\Wizard\QuickAccess.exe
                        O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
                        O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
                        O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
                        O4 - Startup: TribalWeb.net.lnk = C:\Program Files\TribalWeb.net\tribalweb.exe
                        O4 - Global Startup: hp psc 1000 series.lnk = ?
                        O4 - Global Startup: hpoddt01.exe.lnk = ?
                        O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                        O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html
                        O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
                        O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.00\MediaManager\grab.html
                        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
                        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
                        O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
                        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
                        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
                        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                        O11 - Options group: [INTERNATIONAL] International*
                        O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
                        O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
                        O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
                        O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
                        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
                        O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL
                        O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
                        O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
                        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                        O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
                        O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
                        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
                        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
                        O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
                        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                        O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
                        O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcDataSrv.exe
                        O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005.SR3\RpcSandraSrv.exe
                        0
                        1. Rien dans ce rapport.

                          Il manque le rapport situé ici C:\egd.txt
                          0
                          1. BFU v1.00.9
                            Windows XP SP2 (WinNT 5.01.2600 SP2)
                            Script started at 18:59:03, on 21/12/2006

                            Warning: unknown command 'C:\egd.txt "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run"|0' on line #10
                            Failed: FolderDelete C:\DOCUME~1\Alex\LOCALS~1\Temp\Rar$EX51.734 (operation failed)
                            Failed: FileDelete C:\DOCUME~1\Alex\LOCALS~1\Temp\~DF293B.tmp (operation failed)
                            Failed: FileDelete C:\WINDOWS\Temp\Perflib_Perfdata_738.dat (operation failed)
                            Failed: FolderDelete C:\WINDOWS\Temp\_avast4_ (operation failed)
                            Script completed.
                            0
                            1. Ce rapport montre qu'il y a eu un problème avec le script de BFU.

                              Poste un rapport BlackLight à la place.
                              0
                              1. 12/23/06 09:55:56 [Info]: BlackLight Engine 1.0.47 initialized
                                12/23/06 09:55:56 [Info]: OS: 5.1 build 2600 (Service Pack 2)
                                12/23/06 09:55:56 [Note]: 7019 4
                                12/23/06 09:55:56 [Note]: 7005 0
                                12/23/06 09:55:59 [Note]: 7006 0
                                12/23/06 09:55:59 [Note]: 7011 572
                                12/23/06 09:55:59 [Note]: 7026 0
                                12/23/06 09:55:59 [Note]: 7026 0
                                12/23/06 09:56:14 [Note]: FSRAW library version 1.7.1020
                                12/23/06 10:17:24 [Note]: 7007 0
                                0
                                1. Bonsoir je suis celui ki a ce problème c'était un ami ki fesait l'interlocuteur car je n'avais pas bien le temps d'écrire des mails
                                  Pour l'analyse kaspersky, j'ai un problème pour télécharger le premier active x kaxwebscan_unicode.cam.Je ne peux pas lancer l'installation de ce fichier
                                  0
                                  1. Bonjour

                                    Règle les ActiveX comme ceci.

                                    Démarrer-->Parametres-->Panneau de configuration-->Options Internet ou Sur la fenetre du navigateur Internet,Outils-->Options Internet

                                    Dans la fenêtre qui s'ouvre, sélectionnez l'onglet Sécurité. Après cela,
                                    cliquez sur le bouton Personnaliser le niveau...

                                    Une nouvelle fenêtre s'ouvre, dans la partie qui se nomme Parametres de securité,
                                    effectuez alors les réglages suivants :

                                    A la ligne : Contrôles ActiveX reconnus sûrs pour l'écriture de scripts,
                                    cochez la case Activer.

                                    Puis, à la ligne : Contrôles d'initialisation et de scripts ActiveX non
                                    marqués comme sécurisés, cochez la case Désactiver.

                                    Maintenant, à la ligne : Exécuter les contrôles ActiveX et les plugins,
                                    cochez la case Activer.

                                    Après cela, à la ligne : Télécharger les contrôles ActiveX non signés,
                                    cochez la case Désactiver.

                                    Et pour finir, à la ligne : Télécharger les contrôles ActiveX signés,
                                    cochez la case Demander.

                                    cliquez sur le bouton OK, afin que les modifications soient
                                    prises en compte
                                    0
                                    1. Voici le rapport kaspersky :

                                      KASPERSKY ON-LINE SCANNER REPORT
                                      Monday, December 25, 2006 6:04:36 PM
                                      Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
                                      Kaspersky On-line Scanner version : 5.0.83.0
                                      Dernière mise à jour de la base antivirus Kaspersky : 25/12/2006
                                      Enregistrements dans la base antivirus Kaspersky : 239971
                                      Paramètres d'analyse
                                      Analyser avec la base antivirus suivante standard
                                      Analyser les archives vrai
                                      Analyser les bases de messagerie vrai
                                      Cible de l'analyse Poste de travail
                                      C:\
                                      D:\
                                      E:\
                                      F:\
                                      G:\
                                      Statistiques de l'analyse
                                      Total d'objets analysés 94580
                                      Nombre de virus trouvés 11
                                      Nombre d'objets infectés 208 / 0
                                      Nombre d'objets suspects 0
                                      Durée de l'analyse 02:45:03

                                      Nom de l'objet infecté Nom du virus Dernière action
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\call256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\callmember256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\chat512.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\chatmsg256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\chatmsg32768.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\chatmsg4096.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\chatmsg512.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\chatmsg8192.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\contactgroup256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\index2.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\profile256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\user1024.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\user16384.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\user256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Application Data\Skype\usmozac\voicemail256.dbb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Cookies\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Messenger\pelo_63@msn.com\SharingMetadata\Logs\Dfsr.log L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Messenger\pelo_63@msn.com\SharingMetadata\pending.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Messenger\pelo_63@msn.com\SharingMetadata\Working\database_50B8_6210_B861_F53E\dfsr.db L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Messenger\pelo_63@msn.com\SharingMetadata\Working\database_50B8_6210_B861_F53E\fsr.log L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Messenger\pelo_63@msn.com\SharingMetadata\Working\database_50B8_6210_B861_F53E\fsrtmp.log L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Messenger\pelo_63@msn.com\SharingMetadata\Working\database_50B8_6210_B861_F53E\tmp.edb L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Windows Live Contacts\pelo_63@msn.com\real\members.stg L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Windows Live Contacts\pelo_63@msn.com\shadow\members.stg L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Historique\History.IE5\MSHist012006122520061226\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Temp\~DFE98D.tmp L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Temp\~DFE999.tmp L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Temp\~DFF570.tmp L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Temp\~DFF57E.tmp L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\Local Settings\Tempsetup.exe Infecté : Trojan-Proxy.Win32.Horst.pp ignoré
                                      C:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\backups.zip/backups/setup.exe Infecté : Trojan-Proxy.Win32.Horst.sz ignoré
                                      C:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\backups.zip/backups/smss.exe Infecté : Trojan-Proxy.Win32.Horst.pj ignoré
                                      C:\Documents and Settings\Alex\Mes documents\Téléchargements\SDFix\backups\backups.zip ZIP: infecté - 2 ignoré
                                      C:\Documents and Settings\Alex\NTUSER.DAT L'objet est verrouillé ignoré
                                      C:\Documents and Settings\Alex\ntuser.dat.LOG L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
                                      C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
                                      C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                                      C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                                      C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
                                      C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log L'objet est verrouillé ignoré
                                      C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt L'objet est verrouillé ignoré
                                      C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP291\A0061906.exe Infecté : Trojan-Downloader.Win32.Agent.aii ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP291\A0064228.exe Infecté : Trojan-Proxy.Win32.Horst.pp ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP320\A0072891.exe Infecté : Trojan-Proxy.Win32.Horst.pj ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073327.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073328.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073329.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073330.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073333.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073334.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073353.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073363.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073376.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073377.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073379.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073380.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073382.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073383.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073385.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073388.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073389.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073390.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073391.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073392.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073394.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073395.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073396.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073397.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073398.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073400.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073401.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073402.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073403.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073404.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073405.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073406.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073407.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073408.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073410.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073411.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073412.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073414.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073415.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073419.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073420.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073422.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073423.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073424.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073426.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073427.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073428.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073429.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073430.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073431.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073432.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073434.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073436.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073437.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073439.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073440.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073441.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073442.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073445.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073446.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073447.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073448.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073450.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073451.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073452.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073453.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073454.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073455.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073456.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073457.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073458.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073460.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073461.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073462.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073463.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073464.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073465.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073468.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073469.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073470.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073471.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073472.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073473.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073474.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073475.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073476.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073477.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073478.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073479.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073480.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073481.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073482.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073484.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073485.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073487.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073488.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073489.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073490.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073492.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073493.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073494.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073496.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073497.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073498.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073499.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073500.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073501.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073502.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073503.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073504.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073506.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073507.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073508.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073509.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073510.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073512.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073513.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073514.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073516.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073517.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073518.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073519.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073520.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073521.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073522.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073523.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073524.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073525.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073527.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073528.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073530.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073531.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073532.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073533.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073535.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073536.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073537.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073539.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073540.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073541.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073542.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073543.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073545.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073546.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073547.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073548.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073549.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073550.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073551.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073553.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073554.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073556.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073558.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073559.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073561.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073562.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073563.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073569.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073573.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073577.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073578.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073580.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073582.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073584.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073585.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073586.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073587.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073589.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073591.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073592.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073596.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073597.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073598.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073600.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073601.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073604.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073608.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073609.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073612.exe Infecté : Trojan-Proxy.Win32.Horst.ra ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073613.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073615.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073616.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073617.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073618.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073620.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073623.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073625.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073629.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073630.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073632.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073634.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073638.exe Infecté : Trojan-Proxy.Win32.Horst.pt ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073639.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073640.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073641.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073642.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073643.exe Infecté : Backdoor.Win32.Medbot.az ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073644.exe Infecté : Trojan-Proxy.Win32.Horst.pz ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073645.exe Infecté : Trojan-Proxy.Win32.Horst.ls ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073646.exe Infecté : Trojan-Proxy.Win32.Horst.tr ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP324\A0073647.exe Infecté : Trojan-Proxy.Win32.Horst.sa ignoré
                                      C:\System Volume Information\_restore{5A74A256-0B21-41C4-B404-7FAEB172C9E1}\RP330\change.log L'objet est verrouillé ignoré
                                      C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
                                      C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
                                      C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
                                      C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\Antivirus.Evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\Internet.evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\ODiag.evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\OSession.evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\drivers\dtscsi.sys L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\drivers\sptd.sys L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\drivers\sptd0845.sys L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
                                      C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
                                      C:\WINDOWS\Temp\Perflib_Perfdata_72c.dat L'objet est verrouillé ignoré
                                      C:\WINDOWS\Temp\_avast4_\Webshlock.txt L'objet est verrouillé ignoré
                                      C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
                                      C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
                                      C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
                                      Analyse terminée.
                                      0
                                      • 1
                                      • 2