Diagnostic SmitFraudFix suite attaque virus+
sanselmino
Messages postés
11
Statut
Membre
-
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité -
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité -
Bonjour,
Quelqu'un peut il m'aider ?
Je ne sais plus comment faire pour m'en débarasser Ewido,Bitdefender,Hijack effectué mais toujours résidents dans la bécane.
Merci
SmitFraudFix v2.130
Rapport fait à 21:59:45,71, 15/12/2006
Executé à partir de C:\Program Files\Fichiers communs\mozilla.org\GRE\1.7.3_2004091008\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
C:\WINDOWS\system32\issearch.exe PRESENT !
C:\WINDOWS\system32\olnohdw.dll PRESENT !
C:\WINDOWS\system32\ot.ico PRESENT !
C:\WINDOWS\system32\ts.ico PRESENT !
C:\WINDOWS\system32\components\flx?.dll PRESENT !
C:\WINDOWS\system32\components\flx??.dll PRESENT !
C:\WINDOWS\system32\components\flx???.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\STEPHANE\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
C:\DOCUME~1\ALLUSE~1\Bureau\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\Bureau\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Safety Bar\ PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}"="astral"
[HKEY_CLASSES_ROOT\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32
pe386 détecté, utilisez un scanner de Rootkit
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
[ Continuer la discussion ][ Répondre à sanselmino ][ Autres messages de sanselmino ]
< 3 > sanselmino (vendredi 15 décembre 2006 à 22:05:11)
Salut Régis59,
Et merci pour ton intervention rapide..voilà comme demandé le rapport d'analyse.....dites c'est grave docteur ??
SmitFraudFix v2.130
Rapport fait à 21:59:45,71, 15/12/2006
Executé à partir de C:\Program Files\Fichiers communs\mozilla.org\GRE\1.7.3_2004091008\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
C:\WINDOWS\system32\issearch.exe PRESENT !
C:\WINDOWS\system32\olnohdw.dll PRESENT !
C:\WINDOWS\system32\ot.ico PRESENT !
C:\WINDOWS\system32\ts.ico PRESENT !
C:\WINDOWS\system32\components\flx?.dll PRESENT !
C:\WINDOWS\system32\components\flx??.dll PRESENT !
C:\WINDOWS\system32\components\flx???.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\STEPHANE\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
C:\DOCUME~1\ALLUSE~1\Bureau\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\Bureau\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Safety Bar\ PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}"="astral"
[HKEY_CLASSES_ROOT\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32
pe386 détecté, utilisez un scanner de Rootkit
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
Quelqu'un peut il m'aider ?
Je ne sais plus comment faire pour m'en débarasser Ewido,Bitdefender,Hijack effectué mais toujours résidents dans la bécane.
Merci
SmitFraudFix v2.130
Rapport fait à 21:59:45,71, 15/12/2006
Executé à partir de C:\Program Files\Fichiers communs\mozilla.org\GRE\1.7.3_2004091008\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
C:\WINDOWS\system32\issearch.exe PRESENT !
C:\WINDOWS\system32\olnohdw.dll PRESENT !
C:\WINDOWS\system32\ot.ico PRESENT !
C:\WINDOWS\system32\ts.ico PRESENT !
C:\WINDOWS\system32\components\flx?.dll PRESENT !
C:\WINDOWS\system32\components\flx??.dll PRESENT !
C:\WINDOWS\system32\components\flx???.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\STEPHANE\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
C:\DOCUME~1\ALLUSE~1\Bureau\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\Bureau\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Safety Bar\ PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}"="astral"
[HKEY_CLASSES_ROOT\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32
pe386 détecté, utilisez un scanner de Rootkit
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
[ Continuer la discussion ][ Répondre à sanselmino ][ Autres messages de sanselmino ]
< 3 > sanselmino (vendredi 15 décembre 2006 à 22:05:11)
Salut Régis59,
Et merci pour ton intervention rapide..voilà comme demandé le rapport d'analyse.....dites c'est grave docteur ??
SmitFraudFix v2.130
Rapport fait à 21:59:45,71, 15/12/2006
Executé à partir de C:\Program Files\Fichiers communs\mozilla.org\GRE\1.7.3_2004091008\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
C:\WINDOWS\system32\issearch.exe PRESENT !
C:\WINDOWS\system32\olnohdw.dll PRESENT !
C:\WINDOWS\system32\ot.ico PRESENT !
C:\WINDOWS\system32\ts.ico PRESENT !
C:\WINDOWS\system32\components\flx?.dll PRESENT !
C:\WINDOWS\system32\components\flx??.dll PRESENT !
C:\WINDOWS\system32\components\flx???.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\STEPHANE\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\STEPHANE\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
C:\DOCUME~1\ALLUSE~1\Bureau\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1\Bureau\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Safety Bar\ PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}"="astral"
[HKEY_CLASSES_ROOT\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32
pe386 détecté, utilisez un scanner de Rootkit
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
A voir également:
- Diagnostic SmitFraudFix suite attaque virus+
- Diagnostic batterie pc - Guide
- Windows memory diagnostic - Télécharger - Optimisation
- Diagnostic bouton photo - Accueil - Outils
- Virus mcafee - Accueil - Piratage
- Diagnostic iphone - Accueil - IOS
13 réponses
Salut
Redémarres le PC en mode sans échec : tu tapotes sur la touche F8 de ton clavier (ou F5 ) dès le démarrage et tu choisis le mode sans échec)
- Ouvre le dossier "SmitfraudFix" et double clique sur "Smitfraudfix.cmd", choisit l 'option 2 et tu réponds oui à tout.
Enregistre le rapport puis Copie/colle le rapport sur le forum stp.
Redémarres le PC en mode sans échec : tu tapotes sur la touche F8 de ton clavier (ou F5 ) dès le démarrage et tu choisis le mode sans échec)
- Ouvre le dossier "SmitfraudFix" et double clique sur "Smitfraudfix.cmd", choisit l 'option 2 et tu réponds oui à tout.
Enregistre le rapport puis Copie/colle le rapport sur le forum stp.
C'est quoi le nom de la dll manquante ?
Fait ce nettoyage: (à faire réguliérement)
¤Telecharge et installe CCleaner (n'installe pas la barre d'outil Yahoo)
---> Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Si tu as besoin d'aide pour Ccleaner, regarde ce tutoriel:
http://www.tutopat.com/viewtopic.php?t=305
et
Télécharge, installe puis met à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici stp
Ewido: (en Anglais reste gratuit après la période d'essai)
--->Ewido
Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html
Fait ce nettoyage: (à faire réguliérement)
¤Telecharge et installe CCleaner (n'installe pas la barre d'outil Yahoo)
---> Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Si tu as besoin d'aide pour Ccleaner, regarde ce tutoriel:
http://www.tutopat.com/viewtopic.php?t=305
et
Télécharge, installe puis met à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici stp
Ewido: (en Anglais reste gratuit après la période d'essai)
--->Ewido
Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html
--
Salut Boulepate
Tu trouveras ci parès mon rapport AVG.
Au démarrage j'ai une pb du type RUNDLL
C\windows\system32\frsvabb.dll. module spécifié introuvable
Merci pour ton aide
A+
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 17:48:15 17/12/2006
+ Résultat de l'analyse:
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP202\A0039013.exe -> Adware.PluginDL : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040164.exe -> Adware.PluginDL : Aucune action entreprise.
C:\WINDOWS\system32\vtututu.dll -> Adware.Virtumonde : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040604.dll -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040605.dll -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__f_r_s_v_a_b_b_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__v_i_y_j_h_a_i_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040512.exe -> Downloader.Zlob.bei : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040155.exe -> Trojan.Small : Aucune action entreprise.
Fin du rapport
-------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 17:48:15 17/12/2006
+ Résultat de l'analyse:
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP202\A0039013.exe -> Adware.PluginDL : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040164.exe -> Adware.PluginDL : Aucune action entreprise.
C:\WINDOWS\system32\vtututu.dll -> Adware.Virtumonde : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040604.dll -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040605.dll -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__f_r_s_v_a_b_b_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__v_i_y_j_h_a_i_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040512.exe -> Downloader.Zlob.bei : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040155.exe -> Trojan.Small : Aucune action entreprise.
Fin du rapport
Salut Boulepate
Tu trouveras ci parès mon rapport AVG.
Au démarrage j'ai une pb du type RUNDLL
C\windows\system32\frsvabb.dll. module spécifié introuvable
Merci pour ton aide
A+
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 17:48:15 17/12/2006
+ Résultat de l'analyse:
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP202\A0039013.exe -> Adware.PluginDL : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040164.exe -> Adware.PluginDL : Aucune action entreprise.
C:\WINDOWS\system32\vtututu.dll -> Adware.Virtumonde : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040604.dll -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040605.dll -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__f_r_s_v_a_b_b_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__v_i_y_j_h_a_i_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040512.exe -> Downloader.Zlob.bei : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040155.exe -> Trojan.Small : Aucune action entreprise.
Fin du rapport
-------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 17:48:15 17/12/2006
+ Résultat de l'analyse:
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP202\A0039013.exe -> Adware.PluginDL : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040164.exe -> Adware.PluginDL : Aucune action entreprise.
C:\WINDOWS\system32\vtututu.dll -> Adware.Virtumonde : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040604.dll -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP210\A0040605.dll -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__f_r_s_v_a_b_b_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\WINDOWS\system32\__delete_on_reboot__v_i_y_j_h_a_i_._d_l_l_ -> Downloader.Busky : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040512.exe -> Downloader.Zlob.bei : Aucune action entreprise.
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP207\A0040155.exe -> Trojan.Small : Aucune action entreprise.
Fin du rapport
Relance Ewido et "delete" tout
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clique dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clique dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
Salut Boulepate,
Il semble que certains sont encore réticents à disparaitre .....
BitDefender Online Scanner
Scan report generated at: Tue, Dec 19, 2006 - 23:25:18
Scan path: A:\;C:\;D:\;E:\;G:\;H:\;I:\;J:\;
Statistics
Time
02:58:56
Files
774140
Folders
7316
Boot Sectors
2
Archives
39598
Packed Files
53008
Results
Identified Viruses
5
Infected Files
6
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
3
Engines Info
Virus Definitions
350802
Engine build
AVCORE v1.0 (build 2371) (i386) (Dec 13 2006 11:16:42)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040511.dll
Infected with: Trojan.FakeAlert.S
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040511.dll
Disinfection failed
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040511.dll
Deleted
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP218\A0043086.exe
Infected with: Trojan.Agent.ACL
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP218\A0043086.exe
Disinfection failed
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP218\A0043086.exe
Deleted
C:\WINDOWS\system32\clrxrdgq.exe
Infected with: Trojan.Agent.ACL
C:\WINDOWS\system32\clrxrdgq.exe
Disinfection failed
C:\WINDOWS\system32\clrxrdgq.exe
Deleted
C:\WINDOWS\system32\okusmfil.dll
Infected with: Trojan.Juan.B
C:\WINDOWS\system32\okusmfil.dll
Disinfection failed
C:\WINDOWS\system32\okusmfil.dll
Delete failed
C:\WINDOWS\system32\vtututu.dll
Infected with: Trojan.Virtumod.DF
C:\WINDOWS\system32\vtututu.dll
Disinfection failed
C:\WINDOWS\system32\vtututu.dll
Delete failed
C:\WINDOWS\system32\winzlo32.dll
Infected with: Trojan.Klone.H
C:\WINDOWS\system32\winzlo32.dll
Disinfection failed
C:\WINDOWS\system32\winzlo32.dll
Delete failed
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/beginwith.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/beginwith.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>H
Il semble que certains sont encore réticents à disparaitre .....
BitDefender Online Scanner
Scan report generated at: Tue, Dec 19, 2006 - 23:25:18
Scan path: A:\;C:\;D:\;E:\;G:\;H:\;I:\;J:\;
Statistics
Time
02:58:56
Files
774140
Folders
7316
Boot Sectors
2
Archives
39598
Packed Files
53008
Results
Identified Viruses
5
Infected Files
6
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
3
Engines Info
Virus Definitions
350802
Engine build
AVCORE v1.0 (build 2371) (i386) (Dec 13 2006 11:16:42)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040511.dll
Infected with: Trojan.FakeAlert.S
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040511.dll
Disinfection failed
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP209\A0040511.dll
Deleted
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP218\A0043086.exe
Infected with: Trojan.Agent.ACL
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP218\A0043086.exe
Disinfection failed
C:\System Volume Information\_restore{AF454EF8-DE95-4662-BE7E-790AE8BCB6F4}\RP218\A0043086.exe
Deleted
C:\WINDOWS\system32\clrxrdgq.exe
Infected with: Trojan.Agent.ACL
C:\WINDOWS\system32\clrxrdgq.exe
Disinfection failed
C:\WINDOWS\system32\clrxrdgq.exe
Deleted
C:\WINDOWS\system32\okusmfil.dll
Infected with: Trojan.Juan.B
C:\WINDOWS\system32\okusmfil.dll
Disinfection failed
C:\WINDOWS\system32\okusmfil.dll
Delete failed
C:\WINDOWS\system32\vtututu.dll
Infected with: Trojan.Virtumod.DF
C:\WINDOWS\system32\vtututu.dll
Disinfection failed
C:\WINDOWS\system32\vtututu.dll
Delete failed
C:\WINDOWS\system32\winzlo32.dll
Infected with: Trojan.Klone.H
C:\WINDOWS\system32\winzlo32.dll
Disinfection failed
C:\WINDOWS\system32\winzlo32.dll
Delete failed
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/beginwith.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/beginwith.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/bufferdepth.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipbegin.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clipend.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/clocksource.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/colordepth.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/connectiontype.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cookieenabled.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/cpuclass.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/currtime.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/decelerate.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/dur.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/end.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endevent.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/endhold.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/eventrestart.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/expires.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/folder.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/height.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/image.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/img.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/javaenabled.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/localtime.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/onoffbehavior.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/platform.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/player.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/playerobject.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/progressbehavior.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeat.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/repeatdur.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/sound.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/src.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/statics.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/syncbehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/synctolerance.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/systemlanguage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/target.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeaction.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timeline.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timelinebehavior.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/timestartrule.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/type.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/userlanguage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/width.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/properties/xmldocument.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/addcomponentrequest.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/adddabehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/beginelement.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/clearcomponentrequest.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/compareversions.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/docomponentrequest.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/endelement.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getattribute_2.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/getcomponentversion.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/iscomponentinstalled.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/ishomepage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/load.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigate.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigateframe.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/navigatehomepage.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/pause.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removeattribute_1.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 5)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/removedabehavior.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/resume.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 2)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 3)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 4)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 6)
Clean
C:\Works\MSWord\OFFICE1.CAB=>HTMLREF.CHM=>/workshop/author/behaviors/reference/methods/save.htm=>(JAVASCRIPT 7)
Clean
C:\Works\MSWord\OFFICE1.CAB=>H
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Salut Sanselmino
Télécharge HijackThis:
--->hijackthis
Installe le dans son propre dossier:
-clique droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clique sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
Télécharge HijackThis:
--->hijackthis
Installe le dans son propre dossier:
-clique droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clique sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
Boulepate,
Volià comme demandé....
A+
Logfile of HijackThis v1.99.1
Scan saved at 08:12:47, on 22/12/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\WINDOWS\System32\msasvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
C:\progra~1\scansoft\paperp~1\pptd40nt.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\mozilla.org\Mozilla\mozilla.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\TEMP\win1B.tmp.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {20BA5E4C-645A-4C8D-B35B-54AE78A10DC9} - C:\WINDOWS\System32\mlljk.dll
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: (no name) - {3FD6B99C-A275-46ea-8FD1-3D63986E51E4} - C:\WINDOWS\System32\okusmfil.dll
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - (no file)
O2 - BHO: (no name) - {7411F8BA-29A3-3216-9DE7-024AC0AAB9F6} - (no file)
O2 - BHO: (no name) - {9B0C7A02-A17A-4C81-BD7D-30A622701C36} - C:\WINDOWS\System32\vtututu.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {18668683-731c-48fa-b1b9-ad013748fb00} - (no file)
O3 - Toolbar: (no name) - {74DD705D-6834-439C-A735-A6DBE2677452} - (no file)
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [PaperPort PTD] c:\progra~1\scansoft\paperp~1\pptd40nt.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [thisbiasstupidwarn] C:\Documents and Settings\All Users\Application Data\Bikeboobthisbias\SendNoun.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [frsvabb.dll] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\frsvabb.dll,mhomdtd
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Team Jump] C:\DOCUME~1\STEPHANE\APPLIC~1\PARTDE~1\HoleCool.exe
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O20 - Winlogon Notify: mlljk - C:\WINDOWS\System32\mlljk.dll
O20 - Winlogon Notify: vtututu - C:\WINDOWS\SYSTEM32\vtututu.dll
O20 - Winlogon Notify: winzlo32 - C:\WINDOWS\SYSTEM32\winzlo32.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\System32\msasvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
Volià comme demandé....
A+
Logfile of HijackThis v1.99.1
Scan saved at 08:12:47, on 22/12/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\WINDOWS\System32\msasvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
C:\progra~1\scansoft\paperp~1\pptd40nt.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\mozilla.org\Mozilla\mozilla.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\TEMP\win1B.tmp.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {20BA5E4C-645A-4C8D-B35B-54AE78A10DC9} - C:\WINDOWS\System32\mlljk.dll
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: (no name) - {3FD6B99C-A275-46ea-8FD1-3D63986E51E4} - C:\WINDOWS\System32\okusmfil.dll
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - (no file)
O2 - BHO: (no name) - {7411F8BA-29A3-3216-9DE7-024AC0AAB9F6} - (no file)
O2 - BHO: (no name) - {9B0C7A02-A17A-4C81-BD7D-30A622701C36} - C:\WINDOWS\System32\vtututu.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {18668683-731c-48fa-b1b9-ad013748fb00} - (no file)
O3 - Toolbar: (no name) - {74DD705D-6834-439C-A735-A6DBE2677452} - (no file)
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [PaperPort PTD] c:\progra~1\scansoft\paperp~1\pptd40nt.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [thisbiasstupidwarn] C:\Documents and Settings\All Users\Application Data\Bikeboobthisbias\SendNoun.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [frsvabb.dll] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\frsvabb.dll,mhomdtd
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Team Jump] C:\DOCUME~1\STEPHANE\APPLIC~1\PARTDE~1\HoleCool.exe
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O20 - Winlogon Notify: mlljk - C:\WINDOWS\System32\mlljk.dll
O20 - Winlogon Notify: vtututu - C:\WINDOWS\SYSTEM32\vtututu.dll
O20 - Winlogon Notify: winzlo32 - C:\WINDOWS\SYSTEM32\winzlo32.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\System32\msasvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
ok, merci
¤ Télécharge lopxp:
http://pageperso.aol.fr/balltrap34/lopxp.zip
dézippe-le sur ton bureau puis double-clic sur le fichier "lopxp.bat"
quand il à terminé, un rapport s'ouvre : fais un copier-coller puis mets le ici
¤ Clique sur démarrer, tous les programmes, accessoires, puis bloc-note
Dès qu'il s'ouvre, copie/colle le texte ci-dessous dans le bloc note:
dir "%ProgramFiles%\*" /a > files.txt
notepad files.txt
Clique sur fichier, enregistrer sous, chosit à type: "tous les fichiers"
Nom de fichier: abcde.bat et enregistre le ou tu le retrouvera facilement
Double clique dessus, un rapport va s'ouvrir, enregistre le et envoit le moi stp
¤ Télécharge lopxp:
http://pageperso.aol.fr/balltrap34/lopxp.zip
dézippe-le sur ton bureau puis double-clic sur le fichier "lopxp.bat"
quand il à terminé, un rapport s'ouvre : fais un copier-coller puis mets le ici
¤ Clique sur démarrer, tous les programmes, accessoires, puis bloc-note
Dès qu'il s'ouvre, copie/colle le texte ci-dessous dans le bloc note:
dir "%ProgramFiles%\*" /a > files.txt
notepad files.txt
Clique sur fichier, enregistrer sous, chosit à type: "tous les fichiers"
Nom de fichier: abcde.bat et enregistre le ou tu le retrouvera facilement
Double clique dessus, un rapport va s'ouvrir, enregistre le et envoit le moi stp
Voilà M'sieur!
Rapport fait à 8:34:20,98 le 22/12/2006
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\All Users\Application Data
13/12/2006 22:57 <REP> Bikeboobthisbias
10/09/2006 07:42 <REP> Yahoo! Companion
12/03/2006 10:15 1755 QTSBandwidthCache
12/03/2006 10:09 <REP> Apple Computer
04/03/2006 18:52 <REP> QuickTime
10/06/2005 14:28 2843 hpzinstall.log
22/01/2005 08:18 <REP> DVD Shrink
18/05/2004 08:15 <REP> ABBYY
30/11/2003 22:49 <REP> Symantec
06/10/2003 22:18 <REP> Sony Corporation
29/08/2003 13:55 <REP> MSN6
17/03/2003 11:46 <REP> SBSI
17/03/2003 11:36 62 desktop.ini
17/03/2003 11:36 <REP> Microsoft
17/03/2003 11:36 <REP> .
17/03/2003 11:36 <REP> ..
3 fichier(s) 4660 octets
13 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\Default User\Application Data
10/07/2003 17:17 <REP> Identities
10/07/2003 17:17 <REP> InterTrust
17/03/2003 11:36 62 desktop.ini
17/03/2003 11:36 <REP> ..
17/03/2003 11:36 <REP> Microsoft
17/03/2003 11:36 <REP> .
1 fichier(s) 62 octets
5 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\INVITE\Application Data
02/05/2005 21:31 <REP> Macromedia
02/05/2005 21:21 <REP> MSN6
02/05/2005 12:12 <REP> Adobe
28/04/2005 11:08 <REP> Talkback
28/04/2005 11:08 <REP> Mozilla
28/09/2003 07:07 <REP> Real
27/08/2003 18:51 62 desktop.ini
27/08/2003 18:51 <REP> InterTrust
27/08/2003 18:51 <REP> Identities
27/08/2003 18:51 <REP> ..
27/08/2003 18:51 <REP> .
27/08/2003 18:51 <REP> Microsoft
1 fichier(s) 62 octets
11 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\ISABELLE\Application Data
19/12/2006 10:45 <REP> SearchToolbarCorp
05/03/2006 17:47 <REP> Google
25/01/2006 21:11 <REP> MailFrontier
09/07/2004 11:15 <REP> Talkback
18/05/2004 08:55 <REP> ABBYY
06/05/2004 21:45 <REP> Template
15/12/2003 18:49 83 sversion.ini
04/12/2003 15:47 <REP> InterVideo
30/11/2003 22:50 <REP> Symantec
20/11/2003 18:39 <REP> Sony Corporation
10/10/2003 19:45 <REP> Mozilla
20/09/2003 00:40 <REP> Real
19/09/2003 22:06 <REP> Macromedia
15/09/2003 22:33 <REP> Help
30/08/2003 21:09 <REP> Adobe
29/08/2003 13:55 <REP> MSN6
14/07/2003 22:59 58296 GDIPFONTCACHEV1.DAT
10/07/2003 17:18 62 desktop.ini
10/07/2003 17:18 <REP> Identities
10/07/2003 17:18 <REP> InterTrust
10/07/2003 17:18 <REP> Microsoft
10/07/2003 17:18 <REP> ..
10/07/2003 17:18 <REP> .
3 fichier(s) 58441 octets
20 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\STEPHANE\Application Data
17/12/2006 15:55 <REP> SearchToolbarCorp
13/12/2006 22:56 <REP> PartDefaultLoud
24/09/2006 20:26 <REP> uTorrent
12/03/2006 10:14 <REP> Apple Computer
03/03/2006 10:28 <REP> Google
06/01/2005 10:32 <REP> Macromedia
10/07/2004 10:55 <REP> Talkback
02/04/2004 09:46 58296 GDIPFONTCACHEV1.DAT
11/12/2003 04:30 <REP> Symantec
16/10/2003 11:54 <REP> MSN6
12/10/2003 17:19 <REP> Mozilla
06/10/2003 22:24 <REP> Sony Corporation
28/09/2003 15:19 <REP> Help
20/09/2003 15:26 <REP> Real
23/08/2003 14:44 <REP> Adobe
23/08/2003 13:21 <REP> InterVideo
14/07/2003 15:58 62 desktop.ini
14/07/2003 15:58 <REP> Identities
14/07/2003 15:58 <REP> InterTrust
14/07/2003 15:58 <REP> Microsoft
14/07/2003 15:58 <REP> .
14/07/2003 15:58 <REP> ..
2 fichier(s) 58358 octets
20 R‚p(s) 40351813632 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\WINDOWS\Tasks
14/12/2005 10:17 268 AC683D70919FB118.job
23/11/2003 09:47 266 Nettoyage de disque.job
17/03/2003 11:42 6 SA.DAT
17/03/2003 11:41 <REP> ..
17/03/2003 11:41 <REP> .
10/03/2003 09:11 65 desktop.ini
4 fichier(s) 605 octets
2 R‚p(s) 40ÿ351ÿ813ÿ632 octets libres
******************************************
Recherche dans Program files
Le dossier C:\Program Files\C2Media n'existe pas
*************** Fin du rapport ****************
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Program Files
20/12/2006 18:07 <REP> .
20/12/2006 18:07 <REP> ..
10/07/2003 17:17 <REP> %ALLUSERSPROFILE%
16/04/2005 13:26 <REP> 321Studios
21/03/2004 22:23 <REP> Adobe
14/07/2003 16:09 <REP> Ahead
14/12/2005 17:26 <REP> Alwil Software
12/12/2003 13:28 <REP> AWM
11/05/2004 21:11 <REP> B2020
24/06/2006 10:21 <REP> Borland
09/09/2006 22:02 <REP> CCleaner
20/12/2006 18:07 <REP> CCleaner2
17/10/2006 07:01 <REP> CDex_150
28/09/2003 14:50 <REP> CH Products
09/09/2006 21:06 <REP> CleanUp!
14/12/2005 10:24 <REP> Common Files
17/03/2003 11:40 <REP> ComPlus Applications
13/04/2004 20:28 <REP> Creative
30/01/2004 21:12 <REP> ddm
23/09/2006 17:01 <REP> directx
25/06/2005 08:39 <REP> DivX
14/12/2005 10:17 <REP> Download Plugin
01/10/2006 14:26 <REP> DVD Shrink
16/10/2005 17:25 <REP> DVDFab Express
16/04/2005 13:28 <REP> DVDFab Gold
16/04/2005 13:27 <REP> DVDFab Platinum
23/08/2003 13:38 <REP> EACom
12/01/2005 23:18 <REP> Earth Resource Mapping
23/08/2003 13:36 <REP> Electronic Arts
20/12/2006 18:09 <REP> eMule
17/12/2006 15:47 <REP> ewido anti-spyware 4.0
23/09/2006 17:19 <REP> ffdshow
17/12/2006 19:38 <REP> Fichiers communs
14/06/2006 10:26 <REP> FotoStation Easy
16/04/2005 08:10 <REP> Free.fr
21/11/2003 23:24 <REP> FunWebProducts
03/03/2006 10:28 <REP> Google
17/12/2006 15:58 <REP> Grisoft
19/09/2005 22:15 <REP> Guitar Pro 4
27/09/2004 23:36 <REP> Havas Interactive
11/06/2005 18:26 <REP> Hewlett-Packard
22/12/2006 08:02 <REP> Hijackthis Version Fran‡aise
08/06/2005 22:28 <REP> HotPotatoes6
11/06/2005 18:26 <REP> HP
09/09/2006 18:16 <REP> InstallShield Installation Information
19/12/2006 15:57 <REP> Internet Explorer
20/03/2006 07:59 <REP> InterVideo
09/11/2006 08:09 <REP> Inventel
09/11/2006 08:08 <REP> Inventel(2)
11/07/2003 00:21 <REP> Iomega
12/03/2006 10:10 <REP> iPod
12/03/2006 10:11 <REP> iTunes
10/07/2003 17:26 <REP> Java
10/07/2003 17:26 <REP> Java Web Start
23/09/2006 17:19 <REP> KaraFun
17/09/2003 15:44 <REP> LeechFTP
21/03/2004 19:56 <REP> Macromedia
17/03/2003 11:39 <REP> Messenger
17/03/2003 11:49 <REP> Microsoft Encarta
17/03/2003 11:42 <REP> microsoft frontpage
23/08/2003 14:55 <REP> Microsoft Games
23/08/2003 13:52 <REP> Microsoft Hardware
17/03/2003 11:49 <REP> Microsoft Money
17/03/2003 11:47 <REP> Microsoft Office
17/03/2003 11:49 <REP> Microsoft Picture It! 7
09/09/2006 18:22 <REP> Microsoft Works
17/03/2003 11:46 <REP> Microsoft Works Suite 2003
05/09/2004 18:21 <REP> MOTO3D
16/12/2004 18:05 <REP> Movie Maker
01/10/2004 21:01 <REP> mozilla.org
09/09/2006 09:42 <REP> mp3divx
17/03/2003 11:40 <REP> MSN
17/03/2003 11:39 <REP> MSN Gaming Zone
08/06/2006 13:26 <REP> Musicalis
15/04/2004 19:48 <REP> NetMeeting
10/10/2003 19:45 <REP> Netscape
29/02/2004 08:26 <REP> Nikon
15/12/2006 07:21 <REP> Norton AntiVirus
20/12/2006 18:10 <REP> Norton AntiVirus(2)
18/12/2004 09:48 <REP> Nouveau repertoire
16/12/2004 18:05 <REP> Ocad7
19/12/2006 10:47 <REP> OpenOffice.org1.1.0
17/12/2006 19:38 <REP> Outlook Express
02/02/2006 19:29 <REP> Overland
28/05/2005 11:47 <REP> ParaUSB
14/12/2005 10:17 <REP> PartDefaultLoud
13/09/2004 19:42 <REP> Photocopier
19/10/2004 23:06 <REP> PhotoFiltre
24/06/2006 10:45 <REP> Piano Suite
22/01/2006 12:37 <REP> PrecisionTime
12/03/2006 10:13 <REP> QuickTime
22/08/2004 20:36 <REP> Real
06/05/2004 20:16 <REP> ScanSoft
21/06/2006 12:22 <REP> Securitoo
17/03/2003 11:41 <REP> Services en ligne
19/09/2003 19:11 <REP> SiSoftware
17/08/2006 16:59 <REP> SlySoft
06/10/2003 22:21 <REP> Sony
21/10/2005 20:28 <REP> Steinberg
15/12/2006 22:22 <REP> Sunbelt Software
17/06/2005 21:34 2ÿ354ÿ472 SVGView.exe
14/12/2006 09:33 <REP> Symantec
15/12/2006 16:18 <REP> SymNetDrv
19/12/2006 15:57 <REP> Uninstall Information
10/10/2003 19:43 <REP> Visicom Media
24/04/2004 22:04 <REP> Voyetra
19/12/2006 18:26 <REP> VSAdd-in
22/12/2006 08:10 <REP> Wanadoo
04/12/2003 21:24 <REP> Webteh
06/01/2005 22:35 <REP> WildArcade
16/04/2005 08:18 <REP> WinAce
14/02/2006 23:09 <REP> Winamp
24/06/2006 10:37 <REP> Windows Media Player
17/03/2003 11:39 <REP> Windows NT
19/12/2006 14:21 <REP> WindowsUpdate
27/09/2003 14:52 <REP> WinHTTrack
21/10/2005 20:28 <REP> WinMX
08/02/2005 08:30 <REP> WinRAR
17/03/2003 11:42 <REP> xerox
16/04/2005 13:22 <REP> XviD
09/09/2006 22:02 <REP> Yahoo!
11/12/2004 10:09 <REP> Zone Labs
16/12/2006 08:30 <REP> ?icrosoft
1 fichier(s) 2ÿ354ÿ472 octets
122 R‚p(s) 40ÿ351ÿ735ÿ808 octets libres
Rapport fait à 8:34:20,98 le 22/12/2006
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\All Users\Application Data
13/12/2006 22:57 <REP> Bikeboobthisbias
10/09/2006 07:42 <REP> Yahoo! Companion
12/03/2006 10:15 1755 QTSBandwidthCache
12/03/2006 10:09 <REP> Apple Computer
04/03/2006 18:52 <REP> QuickTime
10/06/2005 14:28 2843 hpzinstall.log
22/01/2005 08:18 <REP> DVD Shrink
18/05/2004 08:15 <REP> ABBYY
30/11/2003 22:49 <REP> Symantec
06/10/2003 22:18 <REP> Sony Corporation
29/08/2003 13:55 <REP> MSN6
17/03/2003 11:46 <REP> SBSI
17/03/2003 11:36 62 desktop.ini
17/03/2003 11:36 <REP> Microsoft
17/03/2003 11:36 <REP> .
17/03/2003 11:36 <REP> ..
3 fichier(s) 4660 octets
13 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\Default User\Application Data
10/07/2003 17:17 <REP> Identities
10/07/2003 17:17 <REP> InterTrust
17/03/2003 11:36 62 desktop.ini
17/03/2003 11:36 <REP> ..
17/03/2003 11:36 <REP> Microsoft
17/03/2003 11:36 <REP> .
1 fichier(s) 62 octets
5 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\INVITE\Application Data
02/05/2005 21:31 <REP> Macromedia
02/05/2005 21:21 <REP> MSN6
02/05/2005 12:12 <REP> Adobe
28/04/2005 11:08 <REP> Talkback
28/04/2005 11:08 <REP> Mozilla
28/09/2003 07:07 <REP> Real
27/08/2003 18:51 62 desktop.ini
27/08/2003 18:51 <REP> InterTrust
27/08/2003 18:51 <REP> Identities
27/08/2003 18:51 <REP> ..
27/08/2003 18:51 <REP> .
27/08/2003 18:51 <REP> Microsoft
1 fichier(s) 62 octets
11 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\ISABELLE\Application Data
19/12/2006 10:45 <REP> SearchToolbarCorp
05/03/2006 17:47 <REP> Google
25/01/2006 21:11 <REP> MailFrontier
09/07/2004 11:15 <REP> Talkback
18/05/2004 08:55 <REP> ABBYY
06/05/2004 21:45 <REP> Template
15/12/2003 18:49 83 sversion.ini
04/12/2003 15:47 <REP> InterVideo
30/11/2003 22:50 <REP> Symantec
20/11/2003 18:39 <REP> Sony Corporation
10/10/2003 19:45 <REP> Mozilla
20/09/2003 00:40 <REP> Real
19/09/2003 22:06 <REP> Macromedia
15/09/2003 22:33 <REP> Help
30/08/2003 21:09 <REP> Adobe
29/08/2003 13:55 <REP> MSN6
14/07/2003 22:59 58296 GDIPFONTCACHEV1.DAT
10/07/2003 17:18 62 desktop.ini
10/07/2003 17:18 <REP> Identities
10/07/2003 17:18 <REP> InterTrust
10/07/2003 17:18 <REP> Microsoft
10/07/2003 17:18 <REP> ..
10/07/2003 17:18 <REP> .
3 fichier(s) 58441 octets
20 R‚p(s) 40351817728 octets libres
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Documents and Settings\STEPHANE\Application Data
17/12/2006 15:55 <REP> SearchToolbarCorp
13/12/2006 22:56 <REP> PartDefaultLoud
24/09/2006 20:26 <REP> uTorrent
12/03/2006 10:14 <REP> Apple Computer
03/03/2006 10:28 <REP> Google
06/01/2005 10:32 <REP> Macromedia
10/07/2004 10:55 <REP> Talkback
02/04/2004 09:46 58296 GDIPFONTCACHEV1.DAT
11/12/2003 04:30 <REP> Symantec
16/10/2003 11:54 <REP> MSN6
12/10/2003 17:19 <REP> Mozilla
06/10/2003 22:24 <REP> Sony Corporation
28/09/2003 15:19 <REP> Help
20/09/2003 15:26 <REP> Real
23/08/2003 14:44 <REP> Adobe
23/08/2003 13:21 <REP> InterVideo
14/07/2003 15:58 62 desktop.ini
14/07/2003 15:58 <REP> Identities
14/07/2003 15:58 <REP> InterTrust
14/07/2003 15:58 <REP> Microsoft
14/07/2003 15:58 <REP> .
14/07/2003 15:58 <REP> ..
2 fichier(s) 58358 octets
20 R‚p(s) 40351813632 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\WINDOWS\Tasks
14/12/2005 10:17 268 AC683D70919FB118.job
23/11/2003 09:47 266 Nettoyage de disque.job
17/03/2003 11:42 6 SA.DAT
17/03/2003 11:41 <REP> ..
17/03/2003 11:41 <REP> .
10/03/2003 09:11 65 desktop.ini
4 fichier(s) 605 octets
2 R‚p(s) 40ÿ351ÿ813ÿ632 octets libres
******************************************
Recherche dans Program files
Le dossier C:\Program Files\C2Media n'existe pas
*************** Fin du rapport ****************
Le volume dans le lecteur C s'appelle 53_03_02
Le num‚ro de s‚rie du volume est D852-58BA
R‚pertoire de C:\Program Files
20/12/2006 18:07 <REP> .
20/12/2006 18:07 <REP> ..
10/07/2003 17:17 <REP> %ALLUSERSPROFILE%
16/04/2005 13:26 <REP> 321Studios
21/03/2004 22:23 <REP> Adobe
14/07/2003 16:09 <REP> Ahead
14/12/2005 17:26 <REP> Alwil Software
12/12/2003 13:28 <REP> AWM
11/05/2004 21:11 <REP> B2020
24/06/2006 10:21 <REP> Borland
09/09/2006 22:02 <REP> CCleaner
20/12/2006 18:07 <REP> CCleaner2
17/10/2006 07:01 <REP> CDex_150
28/09/2003 14:50 <REP> CH Products
09/09/2006 21:06 <REP> CleanUp!
14/12/2005 10:24 <REP> Common Files
17/03/2003 11:40 <REP> ComPlus Applications
13/04/2004 20:28 <REP> Creative
30/01/2004 21:12 <REP> ddm
23/09/2006 17:01 <REP> directx
25/06/2005 08:39 <REP> DivX
14/12/2005 10:17 <REP> Download Plugin
01/10/2006 14:26 <REP> DVD Shrink
16/10/2005 17:25 <REP> DVDFab Express
16/04/2005 13:28 <REP> DVDFab Gold
16/04/2005 13:27 <REP> DVDFab Platinum
23/08/2003 13:38 <REP> EACom
12/01/2005 23:18 <REP> Earth Resource Mapping
23/08/2003 13:36 <REP> Electronic Arts
20/12/2006 18:09 <REP> eMule
17/12/2006 15:47 <REP> ewido anti-spyware 4.0
23/09/2006 17:19 <REP> ffdshow
17/12/2006 19:38 <REP> Fichiers communs
14/06/2006 10:26 <REP> FotoStation Easy
16/04/2005 08:10 <REP> Free.fr
21/11/2003 23:24 <REP> FunWebProducts
03/03/2006 10:28 <REP> Google
17/12/2006 15:58 <REP> Grisoft
19/09/2005 22:15 <REP> Guitar Pro 4
27/09/2004 23:36 <REP> Havas Interactive
11/06/2005 18:26 <REP> Hewlett-Packard
22/12/2006 08:02 <REP> Hijackthis Version Fran‡aise
08/06/2005 22:28 <REP> HotPotatoes6
11/06/2005 18:26 <REP> HP
09/09/2006 18:16 <REP> InstallShield Installation Information
19/12/2006 15:57 <REP> Internet Explorer
20/03/2006 07:59 <REP> InterVideo
09/11/2006 08:09 <REP> Inventel
09/11/2006 08:08 <REP> Inventel(2)
11/07/2003 00:21 <REP> Iomega
12/03/2006 10:10 <REP> iPod
12/03/2006 10:11 <REP> iTunes
10/07/2003 17:26 <REP> Java
10/07/2003 17:26 <REP> Java Web Start
23/09/2006 17:19 <REP> KaraFun
17/09/2003 15:44 <REP> LeechFTP
21/03/2004 19:56 <REP> Macromedia
17/03/2003 11:39 <REP> Messenger
17/03/2003 11:49 <REP> Microsoft Encarta
17/03/2003 11:42 <REP> microsoft frontpage
23/08/2003 14:55 <REP> Microsoft Games
23/08/2003 13:52 <REP> Microsoft Hardware
17/03/2003 11:49 <REP> Microsoft Money
17/03/2003 11:47 <REP> Microsoft Office
17/03/2003 11:49 <REP> Microsoft Picture It! 7
09/09/2006 18:22 <REP> Microsoft Works
17/03/2003 11:46 <REP> Microsoft Works Suite 2003
05/09/2004 18:21 <REP> MOTO3D
16/12/2004 18:05 <REP> Movie Maker
01/10/2004 21:01 <REP> mozilla.org
09/09/2006 09:42 <REP> mp3divx
17/03/2003 11:40 <REP> MSN
17/03/2003 11:39 <REP> MSN Gaming Zone
08/06/2006 13:26 <REP> Musicalis
15/04/2004 19:48 <REP> NetMeeting
10/10/2003 19:45 <REP> Netscape
29/02/2004 08:26 <REP> Nikon
15/12/2006 07:21 <REP> Norton AntiVirus
20/12/2006 18:10 <REP> Norton AntiVirus(2)
18/12/2004 09:48 <REP> Nouveau repertoire
16/12/2004 18:05 <REP> Ocad7
19/12/2006 10:47 <REP> OpenOffice.org1.1.0
17/12/2006 19:38 <REP> Outlook Express
02/02/2006 19:29 <REP> Overland
28/05/2005 11:47 <REP> ParaUSB
14/12/2005 10:17 <REP> PartDefaultLoud
13/09/2004 19:42 <REP> Photocopier
19/10/2004 23:06 <REP> PhotoFiltre
24/06/2006 10:45 <REP> Piano Suite
22/01/2006 12:37 <REP> PrecisionTime
12/03/2006 10:13 <REP> QuickTime
22/08/2004 20:36 <REP> Real
06/05/2004 20:16 <REP> ScanSoft
21/06/2006 12:22 <REP> Securitoo
17/03/2003 11:41 <REP> Services en ligne
19/09/2003 19:11 <REP> SiSoftware
17/08/2006 16:59 <REP> SlySoft
06/10/2003 22:21 <REP> Sony
21/10/2005 20:28 <REP> Steinberg
15/12/2006 22:22 <REP> Sunbelt Software
17/06/2005 21:34 2ÿ354ÿ472 SVGView.exe
14/12/2006 09:33 <REP> Symantec
15/12/2006 16:18 <REP> SymNetDrv
19/12/2006 15:57 <REP> Uninstall Information
10/10/2003 19:43 <REP> Visicom Media
24/04/2004 22:04 <REP> Voyetra
19/12/2006 18:26 <REP> VSAdd-in
22/12/2006 08:10 <REP> Wanadoo
04/12/2003 21:24 <REP> Webteh
06/01/2005 22:35 <REP> WildArcade
16/04/2005 08:18 <REP> WinAce
14/02/2006 23:09 <REP> Winamp
24/06/2006 10:37 <REP> Windows Media Player
17/03/2003 11:39 <REP> Windows NT
19/12/2006 14:21 <REP> WindowsUpdate
27/09/2003 14:52 <REP> WinHTTrack
21/10/2005 20:28 <REP> WinMX
08/02/2005 08:30 <REP> WinRAR
17/03/2003 11:42 <REP> xerox
16/04/2005 13:22 <REP> XviD
09/09/2006 22:02 <REP> Yahoo!
11/12/2004 10:09 <REP> Zone Labs
16/12/2006 08:30 <REP> ?icrosoft
1 fichier(s) 2ÿ354ÿ472 octets
122 R‚p(s) 40ÿ351ÿ735ÿ808 octets libres
Ok, merci, y'a encore du travail !
Je te conseille de garder Avast et Kerio le duo fonctionne très bien, le reste on va le supprimer :
¤ Va dans ajouter/supprimer des programmes et désinstalle :
LiveUpdate (Symantec si encore présent)
Ewido
¤ Clic sur "demarrer", "executer", tape: services.msc ,cherche dans la liste ces lignes, fait un clic droit dessus choisis "propriétés" et régle les sur "désactivé"
- Automatic LiveUpdate Scheduler
- AVG Anti-Spyware Guard
- France Telecom Routing Table Service
- InstallDriver Table Manager
- LiveUpdate
- Microsoft authenticate service
- NVIDIA Display Driver Service
¤ Fait ceci :
Pour afficher tous les dossiers et fichiers cachés
Clique sur "démarrer", "panneau de configuration", "outils" ,"option des dossiers", "affichage"
"
Coche:
¤ afficher les fichiers et dossiers cachés
- Clique sur "appliquer" puis "ok"
_____________________________________
Clic sur démarrer, poste de travail, C:, documents and settings, all users, application data et supprimes ces dossiers :
- Bikeboobthisbias
- Symantec
Clic sur démarrer, poste de travail, C:, documents and settings, Isabelle, application data et supprimes ces dossiers :
- SearchToolbarCorp
- Symantec
Clic sur démarrer, poste de travail, C:, documents and settings, Stéphane, application data et supprimes ces dossiers :
- SearchToolbarCorp
- Symantec
¤ Clic sur démarrer, poste de travail, C:, program files et supprime ces dossiers :
- FunWebProducts
- ewido anti-spyware 4.0
- Zone Labs
- VSAdd-in
- Symantec
- SymNetDrv
- Securitoo
- Norton AntiVirus
- Norton AntiVirus(2)
** Si un fichier persiste lors de la suppression fait ceci:
-Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisit "mode sans echec" attends un peu.. puis va supprimer les fichiers/dossiers, vide ta corbeille et redémarre ton PC normalement
¤ Redémarre ton PC en mode sans echec et fait un nettoyage complet avec CCleaner. (important)
¤ Télécharge VundoFix
http://www.atribune.org/ccount/click.php?id=4
double clic dessus choisis "start for vundo"
attends quelques minutes, quand le scan est terminé clic sur "remove vundo"
un message te demandera si tu veux supprimes les fichiers sur "yes"
Quand il a terminé, clic sur "yes" ton ordinateur devrait redemarrer sinon, fais le par toit même
Une fois qu'il a redemarré colle le rapport C:\vundofix.txt et un nouveau rapport hijackthis stp
Je te conseille de garder Avast et Kerio le duo fonctionne très bien, le reste on va le supprimer :
¤ Va dans ajouter/supprimer des programmes et désinstalle :
LiveUpdate (Symantec si encore présent)
Ewido
¤ Clic sur "demarrer", "executer", tape: services.msc ,cherche dans la liste ces lignes, fait un clic droit dessus choisis "propriétés" et régle les sur "désactivé"
- Automatic LiveUpdate Scheduler
- AVG Anti-Spyware Guard
- France Telecom Routing Table Service
- InstallDriver Table Manager
- LiveUpdate
- Microsoft authenticate service
- NVIDIA Display Driver Service
¤ Fait ceci :
Pour afficher tous les dossiers et fichiers cachés
Clique sur "démarrer", "panneau de configuration", "outils" ,"option des dossiers", "affichage"
"
Coche:
¤ afficher les fichiers et dossiers cachés
- Clique sur "appliquer" puis "ok"
_____________________________________
Clic sur démarrer, poste de travail, C:, documents and settings, all users, application data et supprimes ces dossiers :
- Bikeboobthisbias
- Symantec
Clic sur démarrer, poste de travail, C:, documents and settings, Isabelle, application data et supprimes ces dossiers :
- SearchToolbarCorp
- Symantec
Clic sur démarrer, poste de travail, C:, documents and settings, Stéphane, application data et supprimes ces dossiers :
- SearchToolbarCorp
- Symantec
¤ Clic sur démarrer, poste de travail, C:, program files et supprime ces dossiers :
- FunWebProducts
- ewido anti-spyware 4.0
- Zone Labs
- VSAdd-in
- Symantec
- SymNetDrv
- Securitoo
- Norton AntiVirus
- Norton AntiVirus(2)
** Si un fichier persiste lors de la suppression fait ceci:
-Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisit "mode sans echec" attends un peu.. puis va supprimer les fichiers/dossiers, vide ta corbeille et redémarre ton PC normalement
¤ Redémarre ton PC en mode sans echec et fait un nettoyage complet avec CCleaner. (important)
¤ Télécharge VundoFix
http://www.atribune.org/ccount/click.php?id=4
double clic dessus choisis "start for vundo"
attends quelques minutes, quand le scan est terminé clic sur "remove vundo"
un message te demandera si tu veux supprimes les fichiers sur "yes"
Quand il a terminé, clic sur "yes" ton ordinateur devrait redemarrer sinon, fais le par toit même
Une fois qu'il a redemarré colle le rapport C:\vundofix.txt et un nouveau rapport hijackthis stp
Salut Boulepate,
Merci pour ta patience je ne sais pas comment tu arrives à gérer tous le monde à la fois avec tous les pbs qu'on te soumets mais en tout cas ça aide bien.
Bon querlques questions j'ai eu un pb pour charger Vundofix à partir de mon pc le mess était :"ad blocked here by KPF"
J'ai du le charger sur la clé USB à partir d'une autre bécane pour l'importer ensuite. Donc pb
Toujours les erreurs passées de RUNDLL qui apparaissent.
Des pbs sur internet explorer à partir duquel je n'arrive plus à ouvrir les mails sur free (ils manquents des données)
Enfin comme tu dis il y a encore du boulot. Mais prends le temps de profiter des fêtes de fin d'année quand même
Joyeux noel
A+
VundoFix V6.2.13
Checking Java version...
Scan started at 15:43:00 22/12/2006
Listing files found while scanning....
C:\WINDOWS\system32\winzlo32.dll
C:\WINDOWS\System32\mlljk.dll
C:\WINDOWS\System32\kjllm.ini
C:\WINDOWS\System32\kjllm.bak2
Beginning removal...
Attempting to delete C:\WINDOWS\system32\winzlo32.dll
C:\WINDOWS\system32\winzlo32.dll Has been deleted!
Attempting to delete C:\WINDOWS\System32\mlljk.dll
C:\WINDOWS\System32\mlljk.dll Has been deleted!
Attempting to delete C:\WINDOWS\System32\kjllm.ini
C:\WINDOWS\System32\kjllm.ini Has been deleted!
Attempting to delete C:\WINDOWS\System32\kjllm.bak2
C:\WINDOWS\System32\kjllm.bak2 Has been deleted!
Performing Repairs to the registry.
Done!
Logfile of HijackThis v1.99.1
Scan saved at 16:14:46, on 22/12/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
C:\progra~1\scansoft\paperp~1\pptd40nt.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
c:\progra~1\intern~1\iexplore.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: (no name) - {3FD6B99C-A275-46ea-8FD1-3D63986E51E4} - C:\WINDOWS\System32\okusmfil.dll
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - (no file)
O2 - BHO: (no name) - {7411F8BA-29A3-3216-9DE7-024AC0AAB9F6} - (no file)
O2 - BHO: (no name) - {9754E8DA-254C-4208-B330-2960A745FBA0} - C:\WINDOWS\System32\mlljk.dll (file missing)
O2 - BHO: (no name) - {9B0C7A02-A17A-4C81-BD7D-30A622701C36} - C:\WINDOWS\System32\vtututu.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {18668683-731c-48fa-b1b9-ad013748fb00} - (no file)
O3 - Toolbar: (no name) - {74DD705D-6834-439C-A735-A6DBE2677452} - (no file)
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [PaperPort PTD] c:\progra~1\scansoft\paperp~1\pptd40nt.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [thisbiasstupidwarn] C:\Documents and Settings\All Users\Application Data\Bikeboobthisbias\SendNoun.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [frsvabb.dll] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\frsvabb.dll,mhomdtd
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Team Jump] C:\DOCUME~1\STEPHANE\APPLIC~1\PARTDE~1\HoleCool.exe
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O20 - Winlogon Notify: vtututu - C:\WINDOWS\SYSTEM32\vtututu.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
Merci pour ta patience je ne sais pas comment tu arrives à gérer tous le monde à la fois avec tous les pbs qu'on te soumets mais en tout cas ça aide bien.
Bon querlques questions j'ai eu un pb pour charger Vundofix à partir de mon pc le mess était :"ad blocked here by KPF"
J'ai du le charger sur la clé USB à partir d'une autre bécane pour l'importer ensuite. Donc pb
Toujours les erreurs passées de RUNDLL qui apparaissent.
Des pbs sur internet explorer à partir duquel je n'arrive plus à ouvrir les mails sur free (ils manquents des données)
Enfin comme tu dis il y a encore du boulot. Mais prends le temps de profiter des fêtes de fin d'année quand même
Joyeux noel
A+
VundoFix V6.2.13
Checking Java version...
Scan started at 15:43:00 22/12/2006
Listing files found while scanning....
C:\WINDOWS\system32\winzlo32.dll
C:\WINDOWS\System32\mlljk.dll
C:\WINDOWS\System32\kjllm.ini
C:\WINDOWS\System32\kjllm.bak2
Beginning removal...
Attempting to delete C:\WINDOWS\system32\winzlo32.dll
C:\WINDOWS\system32\winzlo32.dll Has been deleted!
Attempting to delete C:\WINDOWS\System32\mlljk.dll
C:\WINDOWS\System32\mlljk.dll Has been deleted!
Attempting to delete C:\WINDOWS\System32\kjllm.ini
C:\WINDOWS\System32\kjllm.ini Has been deleted!
Attempting to delete C:\WINDOWS\System32\kjllm.bak2
C:\WINDOWS\System32\kjllm.bak2 Has been deleted!
Performing Repairs to the registry.
Done!
Logfile of HijackThis v1.99.1
Scan saved at 16:14:46, on 22/12/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
C:\progra~1\scansoft\paperp~1\pptd40nt.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
c:\progra~1\intern~1\iexplore.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: (no name) - {3FD6B99C-A275-46ea-8FD1-3D63986E51E4} - C:\WINDOWS\System32\okusmfil.dll
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - (no file)
O2 - BHO: (no name) - {7411F8BA-29A3-3216-9DE7-024AC0AAB9F6} - (no file)
O2 - BHO: (no name) - {9754E8DA-254C-4208-B330-2960A745FBA0} - C:\WINDOWS\System32\mlljk.dll (file missing)
O2 - BHO: (no name) - {9B0C7A02-A17A-4C81-BD7D-30A622701C36} - C:\WINDOWS\System32\vtututu.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {18668683-731c-48fa-b1b9-ad013748fb00} - (no file)
O3 - Toolbar: (no name) - {74DD705D-6834-439C-A735-A6DBE2677452} - (no file)
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [PaperPort PTD] c:\progra~1\scansoft\paperp~1\pptd40nt.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [thisbiasstupidwarn] C:\Documents and Settings\All Users\Application Data\Bikeboobthisbias\SendNoun.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [frsvabb.dll] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\frsvabb.dll,mhomdtd
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Team Jump] C:\DOCUME~1\STEPHANE\APPLIC~1\PARTDE~1\HoleCool.exe
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O20 - Winlogon Notify: vtututu - C:\WINDOWS\SYSTEM32\vtututu.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
Salut Sanselmino
Concernant Kerio regarde ici, une bonne partie y est :
https://kerio.probb.fr/
Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: (no name) - {3FD6B99C-A275-46ea-8FD1-3D63986E51E4} - C:\WINDOWS\System32\okusmfil.dll
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - (no file)
O2 - BHO: (no name) - {7411F8BA-29A3-3216-9DE7-024AC0AAB9F6} - (no file)
O2 - BHO: (no name) - {9754E8DA-254C-4208-B330-2960A745FBA0} - C:\WINDOWS\System32\mlljk.dll (file missing)
O2 - BHO: (no name) - {9B0C7A02-A17A-4C81-BD7D-30A622701C36} - C:\WINDOWS\System32\vtututu.dll
O3 - Toolbar: (no name) - {18668683-731c-48fa-b1b9-ad013748fb00} - (no file)
O3 - Toolbar: (no name) - {74DD705D-6834-439C-A735-A6DBE2677452} - (no file)
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [PaperPort PTD] c:\progra~1\scansoft\paperp~1\pptd40nt.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [thisbiasstupidwarn] C:\Documents and Settings\All Users\Application Data\Bikeboobthisbias\SendNoun.exe
O4 - HKLM\..\Run: [frsvabb.dll] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\frsvabb.dll,mhomdtd
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Team Jump] C:\DOCUME~1\STEPHANE\APPLIC~1\PARTDE~1\HoleCool.exe
¤ Télécharge VirtumundoBegone sur le bureau:
http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
Double clique ensuite sur VirtumundoBeGone.exe et suis les instructions.
Une fois terminé, redémarre et poste le rapport VBG.TXT créé sur le bureau dans ta prochaine réponse avec un nouveau rapport HijackThis.
Ne t'inquiète pas si tu vois un message Ecran bleu "Erreur fatale", c'est normal et attendu.
¤ Télécharge Killbox:
http://www.killbox.net/downloads/KillBox.exe
Double clique sur killbox.exe (Pocket Killbox)
- coche: delete on reboot
dans la barre vide entre ceci: (exactement)
C:\WINDOWS\System32\frsvabb.dll
- clique sur le rond rouge avec la croix blanche
- une fenêtre va apparaître pour confirmation cliques sur "YES"
- une seconde fenêtre te demande si tu veux redémarrer cliques sur "NO"
Ensuite à nouveau dans la barre vide, tu entres ceci:
C:\WINDOWS\System32\okusmfil.dll
- clique sur la croix rouge
- une fenêtre va apparaître pour confirmation clique sur "YES"
- une seconde fenêtre te demande si tu veux redémarrer clique sur "YES"
Laisse le pc redémarrer s'il ne redémarre pas de lui même alors fait le.
Puis remet un rapport hijackthis stp
Bonne fête à toi ;-)
Concernant Kerio regarde ici, une bonne partie y est :
https://kerio.probb.fr/
Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {00A6FAF1-072E-44cf-8957-5838F569A31D} - (no file)
O2 - BHO: (no name) - {3FD6B99C-A275-46ea-8FD1-3D63986E51E4} - C:\WINDOWS\System32\okusmfil.dll
O2 - BHO: (no name) - {46A4E9D9-B30E-452A-8157-DBBEC8573B03} - (no file)
O2 - BHO: (no name) - {7411F8BA-29A3-3216-9DE7-024AC0AAB9F6} - (no file)
O2 - BHO: (no name) - {9754E8DA-254C-4208-B330-2960A745FBA0} - C:\WINDOWS\System32\mlljk.dll (file missing)
O2 - BHO: (no name) - {9B0C7A02-A17A-4C81-BD7D-30A622701C36} - C:\WINDOWS\System32\vtututu.dll
O3 - Toolbar: (no name) - {18668683-731c-48fa-b1b9-ad013748fb00} - (no file)
O3 - Toolbar: (no name) - {74DD705D-6834-439C-A735-A6DBE2677452} - (no file)
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\common\swtrayv4.exe
O4 - HKLM\..\Run: [PaperPort PTD] c:\progra~1\scansoft\paperp~1\pptd40nt.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [thisbiasstupidwarn] C:\Documents and Settings\All Users\Application Data\Bikeboobthisbias\SendNoun.exe
O4 - HKLM\..\Run: [frsvabb.dll] C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\frsvabb.dll,mhomdtd
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Team Jump] C:\DOCUME~1\STEPHANE\APPLIC~1\PARTDE~1\HoleCool.exe
¤ Télécharge VirtumundoBegone sur le bureau:
http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
Double clique ensuite sur VirtumundoBeGone.exe et suis les instructions.
Une fois terminé, redémarre et poste le rapport VBG.TXT créé sur le bureau dans ta prochaine réponse avec un nouveau rapport HijackThis.
Ne t'inquiète pas si tu vois un message Ecran bleu "Erreur fatale", c'est normal et attendu.
¤ Télécharge Killbox:
http://www.killbox.net/downloads/KillBox.exe
Double clique sur killbox.exe (Pocket Killbox)
- coche: delete on reboot
dans la barre vide entre ceci: (exactement)
C:\WINDOWS\System32\frsvabb.dll
- clique sur le rond rouge avec la croix blanche
- une fenêtre va apparaître pour confirmation cliques sur "YES"
- une seconde fenêtre te demande si tu veux redémarrer cliques sur "NO"
Ensuite à nouveau dans la barre vide, tu entres ceci:
C:\WINDOWS\System32\okusmfil.dll
- clique sur la croix rouge
- une fenêtre va apparaître pour confirmation clique sur "YES"
- une seconde fenêtre te demande si tu veux redémarrer clique sur "YES"
Laisse le pc redémarrer s'il ne redémarre pas de lui même alors fait le.
Puis remet un rapport hijackthis stp
Bonne fête à toi ;-)
Bonjour,
on va avancer Boulepate pendant qu'il dort lol (salut Boulepate).
Ouvre l'explorateur, cherche ce fichier et supprimes le :
C:\WINDOWS\Tasks\AC683D70919FB118.job
Bonne suite.
on va avancer Boulepate pendant qu'il dort lol (salut Boulepate).
Ouvre l'explorateur, cherche ce fichier et supprimes le :
C:\WINDOWS\Tasks\AC683D70919FB118.job
Bonne suite.
Bonjour à tous,
Je me suis éloigné quelques temps de mes soucis informatiques mais ils demeurent toujours comme vous l'imaginez.
Donc c'est reparti pour les diagnostics....
Logfile of HijackThis v1.99.1
Scan saved at 13:43:08, on 12/01/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
[01/12/2007, 13:31:51] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\STEPHANE\Bureau\VirtumundoBeGone.exe" )
[01/12/2007, 13:32:19] - Detected System Information:
[01/12/2007, 13:32:19] - Windows Version: 5.1.2600, Service Pack 1
[01/12/2007, 13:32:19] - Current Username: STEPHANE (Admin)
[01/12/2007, 13:32:19] - Windows is in NORMAL mode.
[01/12/2007, 13:32:19] - Searching for Browser Helper Objects:
[01/12/2007, 13:32:19] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[01/12/2007, 13:32:19] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
[01/12/2007, 13:32:19] - BHO 3: {243B17DE-77C7-46BF-B94B-0B5F309A0E64} ()
[01/12/2007, 13:32:19] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:19] - Checking for HKLM\...\Winlogon\Notify\mnyside
[01/12/2007, 13:32:19] - Key not found: HKLM\...\Winlogon\Notify\mnyside, continuing.
[01/12/2007, 13:32:19] - BHO 4: {9B0C7A02-A17A-4C81-BD7D-30A622701C36} ()
[01/12/2007, 13:32:19] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:19] - Checking for HKLM\...\Winlogon\Notify\vtututu
[01/12/2007, 13:32:19] - Found: HKLM\...\Winlogon\Notify\vtututu - This is probably Virtumundo.
[01/12/2007, 13:32:19] - Assigning {9B0C7A02-A17A-4C81-BD7D-30A622701C36} MSEvents Object
[01/12/2007, 13:32:19] - BHO list has been changed! Starting over...
[01/12/2007, 13:32:19] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[01/12/2007, 13:32:19] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
[01/12/2007, 13:32:19] - BHO 3: {243B17DE-77C7-46BF-B94B-0B5F309A0E64} ()
[01/12/2007, 13:32:19] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:19] - Checking for HKLM\...\Winlogon\Notify\mnyside
[01/12/2007, 13:32:19] - Key not found: HKLM\...\Winlogon\Notify\mnyside, continuing.
[01/12/2007, 13:32:19] - BHO 4: {9B0C7A02-A17A-4C81-BD7D-30A622701C36} (MSEvents Object)
[01/12/2007, 13:32:19] - ALERT: Found MSEvents Object!
[01/12/2007, 13:32:19] - Finished Searching Browser Helper Objects
[01/12/2007, 13:32:19] - *** Detected MSEvents Object
[01/12/2007, 13:32:19] - Trying to remove MSEvents Object...
[01/12/2007, 13:32:20] - Terminating Process: IEXPLORE.EXE
[01/12/2007, 13:32:22] - Terminating Process: RUNDLL32.EXE
[01/12/2007, 13:32:22] - Disabling Automatic Shell Restart
[01/12/2007, 13:32:22] - Terminating Process: EXPLORER.EXE
[01/12/2007, 13:32:22] - Suspending the NT Session Manager System Service
[01/12/2007, 13:32:22] - Terminating Windows NT Logon/Logoff Manager
[01/12/2007, 13:32:23] - Re-enabling Automatic Shell Restart
[01/12/2007, 13:32:23] - File to disable: C:\WINDOWS\system32\vtututu.dll
[01/12/2007, 13:32:24] - Renaming C:\WINDOWS\system32\vtututu.dll -> C:\WINDOWS\system32\vtututu.dll.vir
[01/12/2007, 13:32:24] - File successfully renamed!
[01/12/2007, 13:32:24] - Removing HKLM\...\Browser Helper Objects\{9B0C7A02-A17A-4C81-BD7D-30A622701C36}
[01/12/2007, 13:32:24] - Removing HKCR\CLSID\{9B0C7A02-A17A-4C81-BD7D-30A622701C36}
[01/12/2007, 13:32:25] - Adding Kill Bit for ActiveX for GUID: {9B0C7A02-A17A-4C81-BD7D-30A622701C36}
[01/12/2007, 13:32:25] - Deleting ATLEvents/MSEvents Registry entries
[01/12/2007, 13:32:25] - Removing HKLM\...\Winlogon\Notify\vtututu
[01/12/2007, 13:32:25] - Searching for Browser Helper Objects:
[01/12/2007, 13:32:25] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[01/12/2007, 13:32:25] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
[01/12/2007, 13:32:25] - BHO 3: {243B17DE-77C7-46BF-B94B-0B5F309A0E64} ()
[01/12/2007, 13:32:25] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:25] - Checking for HKLM\...\Winlogon\Notify\mnyside
[01/12/2007, 13:32:25] - Key not found: HKLM\...\Winlogon\Notify\mnyside, continuing.
[01/12/2007, 13:32:25] - Finished Searching Browser Helper Objects
[01/12/2007, 13:32:26] - Finishing up...
[01/12/2007, 13:32:26] - A restart is needed.
[01/12/2007, 13:32:32] - Attempting to Restart via STOP error (Blue Screen!)
[01/12/2007, 13:36:52] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\STEPHANE\Bureau\VirtumundoBeGone.exe" )
[01/12/2007, 13:36:57] - User choose NOT to continue. Exiting...
Logfile of HijackThis v1.99.1
Scan saved at 14:05:24, on 12/01/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
Pour info
Le Lyonnais Je ne trouve pas ce fichier : C:\WINDOWS\Tasks\AC683D70919FB118.job
Boulepate : qu’est ce que je dois chercher exactement sur le site recommandé de kerio ?
Meilleurs Vœux de bonne année à tous
Je me suis éloigné quelques temps de mes soucis informatiques mais ils demeurent toujours comme vous l'imaginez.
Donc c'est reparti pour les diagnostics....
Logfile of HijackThis v1.99.1
Scan saved at 13:43:08, on 12/01/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
[01/12/2007, 13:31:51] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\STEPHANE\Bureau\VirtumundoBeGone.exe" )
[01/12/2007, 13:32:19] - Detected System Information:
[01/12/2007, 13:32:19] - Windows Version: 5.1.2600, Service Pack 1
[01/12/2007, 13:32:19] - Current Username: STEPHANE (Admin)
[01/12/2007, 13:32:19] - Windows is in NORMAL mode.
[01/12/2007, 13:32:19] - Searching for Browser Helper Objects:
[01/12/2007, 13:32:19] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[01/12/2007, 13:32:19] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
[01/12/2007, 13:32:19] - BHO 3: {243B17DE-77C7-46BF-B94B-0B5F309A0E64} ()
[01/12/2007, 13:32:19] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:19] - Checking for HKLM\...\Winlogon\Notify\mnyside
[01/12/2007, 13:32:19] - Key not found: HKLM\...\Winlogon\Notify\mnyside, continuing.
[01/12/2007, 13:32:19] - BHO 4: {9B0C7A02-A17A-4C81-BD7D-30A622701C36} ()
[01/12/2007, 13:32:19] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:19] - Checking for HKLM\...\Winlogon\Notify\vtututu
[01/12/2007, 13:32:19] - Found: HKLM\...\Winlogon\Notify\vtututu - This is probably Virtumundo.
[01/12/2007, 13:32:19] - Assigning {9B0C7A02-A17A-4C81-BD7D-30A622701C36} MSEvents Object
[01/12/2007, 13:32:19] - BHO list has been changed! Starting over...
[01/12/2007, 13:32:19] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[01/12/2007, 13:32:19] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
[01/12/2007, 13:32:19] - BHO 3: {243B17DE-77C7-46BF-B94B-0B5F309A0E64} ()
[01/12/2007, 13:32:19] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:19] - Checking for HKLM\...\Winlogon\Notify\mnyside
[01/12/2007, 13:32:19] - Key not found: HKLM\...\Winlogon\Notify\mnyside, continuing.
[01/12/2007, 13:32:19] - BHO 4: {9B0C7A02-A17A-4C81-BD7D-30A622701C36} (MSEvents Object)
[01/12/2007, 13:32:19] - ALERT: Found MSEvents Object!
[01/12/2007, 13:32:19] - Finished Searching Browser Helper Objects
[01/12/2007, 13:32:19] - *** Detected MSEvents Object
[01/12/2007, 13:32:19] - Trying to remove MSEvents Object...
[01/12/2007, 13:32:20] - Terminating Process: IEXPLORE.EXE
[01/12/2007, 13:32:22] - Terminating Process: RUNDLL32.EXE
[01/12/2007, 13:32:22] - Disabling Automatic Shell Restart
[01/12/2007, 13:32:22] - Terminating Process: EXPLORER.EXE
[01/12/2007, 13:32:22] - Suspending the NT Session Manager System Service
[01/12/2007, 13:32:22] - Terminating Windows NT Logon/Logoff Manager
[01/12/2007, 13:32:23] - Re-enabling Automatic Shell Restart
[01/12/2007, 13:32:23] - File to disable: C:\WINDOWS\system32\vtututu.dll
[01/12/2007, 13:32:24] - Renaming C:\WINDOWS\system32\vtututu.dll -> C:\WINDOWS\system32\vtututu.dll.vir
[01/12/2007, 13:32:24] - File successfully renamed!
[01/12/2007, 13:32:24] - Removing HKLM\...\Browser Helper Objects\{9B0C7A02-A17A-4C81-BD7D-30A622701C36}
[01/12/2007, 13:32:24] - Removing HKCR\CLSID\{9B0C7A02-A17A-4C81-BD7D-30A622701C36}
[01/12/2007, 13:32:25] - Adding Kill Bit for ActiveX for GUID: {9B0C7A02-A17A-4C81-BD7D-30A622701C36}
[01/12/2007, 13:32:25] - Deleting ATLEvents/MSEvents Registry entries
[01/12/2007, 13:32:25] - Removing HKLM\...\Winlogon\Notify\vtututu
[01/12/2007, 13:32:25] - Searching for Browser Helper Objects:
[01/12/2007, 13:32:25] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[01/12/2007, 13:32:25] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
[01/12/2007, 13:32:25] - BHO 3: {243B17DE-77C7-46BF-B94B-0B5F309A0E64} ()
[01/12/2007, 13:32:25] - WARNING: BHO has no default name. Checking for Winlogon reference.
[01/12/2007, 13:32:25] - Checking for HKLM\...\Winlogon\Notify\mnyside
[01/12/2007, 13:32:25] - Key not found: HKLM\...\Winlogon\Notify\mnyside, continuing.
[01/12/2007, 13:32:25] - Finished Searching Browser Helper Objects
[01/12/2007, 13:32:26] - Finishing up...
[01/12/2007, 13:32:26] - A restart is needed.
[01/12/2007, 13:32:32] - Attempting to Restart via STOP error (Blue Screen!)
[01/12/2007, 13:36:52] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\STEPHANE\Bureau\VirtumundoBeGone.exe" )
[01/12/2007, 13:36:57] - User choose NOT to continue. Exiting...
Logfile of HijackThis v1.99.1
Scan saved at 14:05:24, on 12/01/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Nikon\NkView4\NkVwMon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkVwMon.exe.lnk = C:\Program Files\Nikon\NkView4\NkVwMon.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: explorer - explorer.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7. bis\guard.exe
O23 - Service: IomegaAccess - Unknown owner - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE (file missing)
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe
Pour info
Le Lyonnais Je ne trouve pas ce fichier : C:\WINDOWS\Tasks\AC683D70919FB118.job
Boulepate : qu’est ce que je dois chercher exactement sur le site recommandé de kerio ?
Meilleurs Vœux de bonne année à tous
Bonjour,
Je viens de me rendre compte que c'est nous qui n'avions pas répondu.
Où en sont tes problèmes ?
Imprime, ou enregistre la manip dans un fichier dans le bloc notes pour être sur ne rien oublier et de tout faire dans l'ordre.
1/Telecharge ceci: Clean Up 40:
http://pageperso.aol.fr/balltrap34/CleanUp40.exe
-aide en imagemerci à Balltrap34).
http://pageperso.aol.fr/balltrap34/democleanup.htm
Déconnecte toi d'Internet et ferme tout les programmes en cours.
Redémarre en mode sans échec
Redémarre le pc, laisse passer l'écran du bios, puis tapote sur la touche F8 avant qu'apparaisse l'écran de chargement de windows.
Choisis le mode sans échec dans les options et valide avec entrée.
(Si F8 ne marche pas, essai F5)
Rend visible les fichiers cachés et système
panneau de configuration > options des dossiers > onglet affichage
Cocher la case devant " afficher les fichiers et dossiers cachés "
Décocher la case devant " masquer les extensions des fichiers dont le type est connu"
Décocher la case devant " masquer les fichiers protégés du système"
clic sur [Appliquer] puis sur [ok] pour valider
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Ensuite fais Démarrer > exécuter et tape cmd
puis valide avec ok
dans la fenêtre qui va s'ouvrir, copie et colle ceci:
del /a C:\WINDOWS\tasks\AC683D70919FB118.job
et valide en appuyant sur entrée
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Ensuite, très important:
:: Supprimer les fichiers temporaires ::
Exécute cleanup40.
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Redémarre normalement et reposte un Hijackthis sur le poste
@+
Je viens de me rendre compte que c'est nous qui n'avions pas répondu.
Où en sont tes problèmes ?
Imprime, ou enregistre la manip dans un fichier dans le bloc notes pour être sur ne rien oublier et de tout faire dans l'ordre.
1/Telecharge ceci: Clean Up 40:
http://pageperso.aol.fr/balltrap34/CleanUp40.exe
-aide en imagemerci à Balltrap34).
http://pageperso.aol.fr/balltrap34/democleanup.htm
Déconnecte toi d'Internet et ferme tout les programmes en cours.
Redémarre en mode sans échec
Redémarre le pc, laisse passer l'écran du bios, puis tapote sur la touche F8 avant qu'apparaisse l'écran de chargement de windows.
Choisis le mode sans échec dans les options et valide avec entrée.
(Si F8 ne marche pas, essai F5)
Rend visible les fichiers cachés et système
panneau de configuration > options des dossiers > onglet affichage
Cocher la case devant " afficher les fichiers et dossiers cachés "
Décocher la case devant " masquer les extensions des fichiers dont le type est connu"
Décocher la case devant " masquer les fichiers protégés du système"
clic sur [Appliquer] puis sur [ok] pour valider
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Ensuite fais Démarrer > exécuter et tape cmd
puis valide avec ok
dans la fenêtre qui va s'ouvrir, copie et colle ceci:
del /a C:\WINDOWS\tasks\AC683D70919FB118.job
et valide en appuyant sur entrée
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Ensuite, très important:
:: Supprimer les fichiers temporaires ::
Exécute cleanup40.
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
Redémarre normalement et reposte un Hijackthis sur le poste
@+
Voici mon diagnostique :
Search Navipromo version 1.1.3 commencé le 07/04/2007 à 22:51:04,92
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!
Fix lancé depuis C:\Documents and Settings\Evanou\Bureau
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO
Executé en mode normal
*** Recherche Programmes installes ***
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***
*** Recherche dossiers dans C:\Documents and Settings\Evanou\Application Data ***
*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en
Fichier(s) caché(s) dans C:\WINDOWS\system32 :
c:\WINDOWS\system32\hmpqzw.dat
C:\windows\system32\hmpqzw.exe
c:\WINDOWS\system32\hmpqzw_nav.dat
c:\WINDOWS\system32\hmpqzw_navps.dat
Processus caché(s) dans C:\WINDOWS\system32 :
C:\windows\system32\hmpqzw.exe
*** Recherche fichiers ***
C:\WINDOWS\pack.epk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
*** Recherche cles registre ***
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]
Recherche Clé Magic Control
HKEY_CURRENT_USER\Software\Lanconfig trouvé !
HKEY_USERS\S-1-5-21-1962268767-1955380300-2379688954-1005\Software\Lanconfig trouvé !
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche fichiers connus:
2)Recherche Heuristique :
*
C:\WINDOWS\system32\hmpqzw.dat trouvé !
**
C:\WINDOWS\system32\hmpqzw.dat trouvé !
***
****
C:\WINDOWS\system32\hmpqzw_navps.dat trouvé !
*****
******
*******
********
C:\WINDOWS\system32\hmpqzw.exe trouvé !
*** Analyse Terminé le 07/04/2007 à 22:58:26,71 ***
Peut on me dire si je supprime des conneries ?
Search Navipromo version 1.1.3 commencé le 07/04/2007 à 22:51:04,92
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!
Fix lancé depuis C:\Documents and Settings\Evanou\Bureau
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO
Executé en mode normal
*** Recherche Programmes installes ***
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***
*** Recherche dossiers dans C:\Documents and Settings\Evanou\Application Data ***
*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en
Fichier(s) caché(s) dans C:\WINDOWS\system32 :
c:\WINDOWS\system32\hmpqzw.dat
C:\windows\system32\hmpqzw.exe
c:\WINDOWS\system32\hmpqzw_nav.dat
c:\WINDOWS\system32\hmpqzw_navps.dat
Processus caché(s) dans C:\WINDOWS\system32 :
C:\windows\system32\hmpqzw.exe
*** Recherche fichiers ***
C:\WINDOWS\pack.epk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
*** Recherche cles registre ***
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]
Recherche Clé Magic Control
HKEY_CURRENT_USER\Software\Lanconfig trouvé !
HKEY_USERS\S-1-5-21-1962268767-1955380300-2379688954-1005\Software\Lanconfig trouvé !
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche fichiers connus:
2)Recherche Heuristique :
*
C:\WINDOWS\system32\hmpqzw.dat trouvé !
**
C:\WINDOWS\system32\hmpqzw.dat trouvé !
***
****
C:\WINDOWS\system32\hmpqzw_navps.dat trouvé !
*****
******
*******
********
C:\WINDOWS\system32\hmpqzw.exe trouvé !
*** Analyse Terminé le 07/04/2007 à 22:58:26,71 ***
Peut on me dire si je supprime des conneries ?
Bonjour,
Il serait préférable que tu fasses ton message personnel, cela rendra les postes plus compréhensibles et la réponse à ton problème sera plus efficace
Procèdes comme ceci :
http://perso.orange.fr/rginformatique/section%20virus/demofairesontmessage.htm
Remets y le log de navifix
Ajoute un log Hijackthis.
Bonne suite.
Il serait préférable que tu fasses ton message personnel, cela rendra les postes plus compréhensibles et la réponse à ton problème sera plus efficace
Procèdes comme ceci :
http://perso.orange.fr/rginformatique/section%20virus/demofairesontmessage.htm
Remets y le log de navifix
Ajoute un log Hijackthis.
Bonne suite.
Merci de me venir en aide.
Pour info j'ai AVAST en anti virus + Kerio firewall.
J'ai un trojan Win32:Porndialer-BJ + Win32:Dialer-759 qui n'arrivent pas à partir malgrès les scan AVAST + Ewidio
Il apparait également que j'ai du supprimer des fichiers .dll qui manquent à l'appel au démarrage Run....quelque chose .
Comment y rémédier..??
Merci A+
SA
SmitFraudFix v2.130
Rapport fait à 11:03:24,57, 16/12/2006
Executé à partir de C:\Documents and Settings\STEPHANE\Mes documents\STEF PERSO\Mes t‚l‚chargements\Maintenance informatique Anti virus\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode sans echec
»»»»»»»»»»»»»»»»»»»»»»»» Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}"="astral"
[HKEY_CLASSES_ROOT\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{5f938c17-fbc7-4a3c-8526-85e5b1a1f762}\InProcServer32]
@="C:\WINDOWS\System32\olnohdw.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
C:\WINDOWS\system32\olnohdw.dll supprimé
C:\WINDOWS\system32\ot.ico supprimé
C:\WINDOWS\system32\ts.ico supprimé
C:\WINDOWS\system32\components\flx?.dll supprimé
C:\DOCUME~1\ALLUSE~1\Bureau\Online Security Guide.url supprimé
C:\DOCUME~1\ALLUSE~1\Bureau\Security Troubleshooting.url supprimé
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Online Security Guide.url supprimé
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Security Troubleshooting.url supprimé
»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin