Virus portugais ...

Mimi2lyon Messages postés 30 Statut Membre -  
 Lyonnais92 -
Un pb assez récurrent : le virus portugais affectant Msn !
Logfile of HijackThis v1.99.1
Scan saved at 15:30:56, on 11/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\windows\kernel.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\MSN Messenger\livecall.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Miradey\Bureau\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CAMTRAY.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Windows Messenger] C:\windows\msnmsgr2.exe
O4 - HKCU\..\Run: [Logon de rede] C:\windows\kernel.exe
O4 - HKCU\..\Run: [Notepad] C:\WINDOWS\NOTEEPAD.exe
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://www.cambodianradio.net/wfActivxPlayer12/tdserver.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{015F9E2B-49A9-4672-B51F-05510B78C3AA}: NameServer = 84.103.237.144 86.64.145.144
O17 - HKLM\System\CS1\Services\Tcpip\..\{015F9E2B-49A9-4672-B51F-05510B78C3AA}: NameServer = 84.103.237.144 86.64.145.144
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

Aidez moi s'il vous plait !!!!! ça commence à m'énerver !!!
A voir également:

22 réponses

easyclyner57 Messages postés 292 Date d'inscription   Statut Membre Dernière intervention   10
 
salut

Fais un nettoyage complet

Il est important d’effectuer la manip dans sa totalité et dans l’ordre :

Télécharge (sauf si tu les as) et colle les 3 rapports dans l’ordre

A - ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip

B - spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm

C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
et
http://perso.orange.fr/jesses/Docs/Logiciels/CCleaner.htm

D – Ewido – AVG
AVG Anti-Spyware :

https://www.avg.com/en-ww/free-antivirus-download

Tu l'installes.
Lance AVG Anti-Spyware et clique sur le bouton Mise à jour. Patiente!

Lance AVG Anti-Spyware
Clique sur le bouton Analyse (de la barre d'outils)
Puis sur l'onglets Comment réagir, clique sur Actions recommandées. Sélectionne Quarantaine.
Reviens à l'onglet Analyse. Clique sur Analyse complète du système.
/!\ Si un fichier est infecté en fin d'analyse /!\
choisis l'option " Appliquer toutes les actions " en bas.
Clique sur "Enregistrer le rapport" puis sur "Enregistrer le rapport sous"
Enregistre ce fichier texte sur ton bureau.
Copie/colle le rapport

E - Scan online avec BitDefender (fonctionne uniquement sous Internet Explorer en acceptant l’ activX)
https://assiste.com/404_La_page_demandee_n_existe_pas.php
http://www.bitdefender.fr/scan8/ie.html
Copie/COLLE le rapport entier

F - Hijackthis - Outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/Hijenr.gif
http://pageperso.aol.fr/balltrap34/demohijack.htm
Télécharge version française ici
http://telechargement.zebulon.fr/160-patch-francais-pour-hijackthis-1991.html
Copie/colle le rapport

Bon courage

A++
0
Mimi2lyon Messages postés 30 Statut Membre
 
Etape 1 : Ad-Aware

Ad-Aware SE Build 1.06r1
Logfile Created on:dimanche 11 février 2007 16:56:58
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R150 09.02.2007
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie(TAC index:3):2 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file

Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects

11-02-2007 16:56:58 - Scan started. (Full System Scan)

Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 596
ThreadCreationTime : 11-02-2007 11:38:44
BasePriority : Normal

#:2 [csrss.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 660
ThreadCreationTime : 11-02-2007 11:38:46
BasePriority : Normal

#:3 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 684
ThreadCreationTime : 11-02-2007 11:38:46
BasePriority : High

#:4 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 728
ThreadCreationTime : 11-02-2007 11:38:47
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Applications Services et Contrôleur
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : services.exe

#:5 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 740
ThreadCreationTime : 11-02-2007 11:38:47
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe

#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 896
ThreadCreationTime : 11-02-2007 11:38:50
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:7 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 956
ThreadCreationTime : 11-02-2007 11:38:50
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1048
ThreadCreationTime : 11-02-2007 11:38:50
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:9 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1092
ThreadCreationTime : 11-02-2007 11:38:50
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:10 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1272
ThreadCreationTime : 11-02-2007 11:38:53
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:11 [vsmon.exe]
FilePath : C:\WINDOWS\system32\ZoneLabs\
ProcessID : 1292
ThreadCreationTime : 11-02-2007 11:38:53
BasePriority : Normal
FileVersion : 6.5.737.000
ProductVersion : 6.5.737.000
ProductName : TrueVector Service
CompanyName : Zone Labs, LLC
FileDescription : TrueVector Service
InternalName : vsmon
LegalCopyright : Copyright © 1998-2006, Zone Labs, LLC
OriginalFilename : vsmon.exe

#:12 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 1400
ThreadCreationTime : 11-02-2007 11:38:54
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Explorateur Windows
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : EXPLORER.EXE

#:13 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1724
ThreadCreationTime : 11-02-2007 11:39:01
BasePriority : Normal
FileVersion : 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)
ProductVersion : 5.1.2600.2696
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe

#:14 [sched.exe]
FilePath : C:\Program Files\AntiVir PersonalEdition Classic\
ProcessID : 268
ThreadCreationTime : 11-02-2007 11:40:00
BasePriority : Normal

#:15 [avguard.exe]
FilePath : C:\Program Files\AntiVir PersonalEdition Classic\
ProcessID : 280
ThreadCreationTime : 11-02-2007 11:40:00
BasePriority : Normal

#:16 [btntservice.exe]
FilePath : C:\Program Files\IVT Corporation\BlueSoleil\
ProcessID : 292
ThreadCreationTime : 11-02-2007 11:40:00
BasePriority : Normal

#:17 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1036
ThreadCreationTime : 11-02-2007 11:40:02
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:18 [wscntfy.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2000
ThreadCreationTime : 11-02-2007 11:40:07
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Security Center Notification App
InternalName : wscntfy.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : wscntfy.exe

#:19 [alg.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 188
ThreadCreationTime : 11-02-2007 11:40:07
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Application Layer Gateway Service
InternalName : ALG.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ALG.exe

#:20 [soundman.exe]
FilePath : C:\WINDOWS\
ProcessID : 532
ThreadCreationTime : 11-02-2007 11:40:09
BasePriority : Normal
FileVersion : 5.1.0.30
ProductVersion : 5.1.0.29
ProductName : Realtek Sound Manager
CompanyName : Realtek Semiconductor Corp.
FileDescription : Realtek Sound Manager
InternalName : ALSMTray
LegalCopyright : Copyright (c) 2001-2004 Realtek Semiconductor Corp.
OriginalFilename : ALSMTray.exe
Comments : Realtek AC97 Audio Sound Manager

#:21 [winampa.exe]
FilePath : C:\Program Files\Winamp\
ProcessID : 1208
ThreadCreationTime : 11-02-2007 11:40:10
BasePriority : Normal

#:22 [avgnt.exe]
FilePath : C:\Program Files\AntiVir PersonalEdition Classic\
ProcessID : 316
ThreadCreationTime : 11-02-2007 11:40:10
BasePriority : Normal

#:23 [zlclient.exe]
FilePath : C:\Program Files\Zone Labs\ZoneAlarm\
ProcessID : 1648
ThreadCreationTime : 11-02-2007 11:40:10
BasePriority : Normal
FileVersion : 6.5.737.000
ProductVersion : 6.5.737.000
ProductName : Zone Labs Client
CompanyName : Zone Labs, LLC
FileDescription : Zone Labs Client
InternalName : zlclient
LegalCopyright : Copyright © 1998-2006, Zone Labs, LLC
OriginalFilename : zlclient.exe

#:24 [hpwuschd2.exe]
FilePath : C:\Program Files\HP\HP Software Update\
ProcessID : 1000
ThreadCreationTime : 11-02-2007 11:40:10
BasePriority : Normal
FileVersion : 70.0.170.000
ProductVersion : 070.000.170.000
ProductName : hp digital imaging
CompanyName : Hewlett-Packard Development Company, L.P.
FileDescription : Hewlett-Packard Product Assistant
InternalName : hpwuSchd2
LegalCopyright : Copyright (C) Hewlett-Packard Development Company, L.P. 1995-2005
OriginalFilename : hpwuSchd2.exe
Comments : Hewlett-Packard Product Assistant

#:25 [googletoolbarnotifier.exe]
FilePath : C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\
ProcessID : 1136
ThreadCreationTime : 11-02-2007 11:40:10
BasePriority : Normal
FileVersion : 1, 2, 1128, 5462
ProductVersion : 1, 2, 1128, 5462
ProductName : GoogleToolbarNotifier
CompanyName : Google Inc.
FileDescription : GoogleToolbarNotifier
LegalCopyright : Copyright © 2005-2006
OriginalFilename : GoogleToolbarNotifier.exe

#:26 [kernel.exe]
FilePath : C:\windows\
ProcessID : 784
ThreadCreationTime : 11-02-2007 11:40:11
BasePriority : Normal
FileVersion : 1.0.0.0
ProductVersion : 1.0.0.0
CompanyName : Microsoft Corporation

#:27 [bluesoleil.exe]
FilePath : C:\Program Files\IVT Corporation\BlueSoleil\
ProcessID : 2108
ThreadCreationTime : 11-02-2007 11:40:14
BasePriority : Normal
FileVersion : 1, 6, 1, 4
ProductVersion : 1, 6, 1, 4
ProductName : BlueSoleil
CompanyName : IVT Corporation
FileDescription : Bluetooth Application
InternalName : BlueSoleil
LegalCopyright : Copyright (C) 2000-2004
LegalTrademarks : BlueSoleil
OriginalFilename : BlueSol.exe

#:28 [hpqtra08.exe]
FilePath : C:\Program Files\HP\Digital Imaging\bin\
ProcessID : 2156
ThreadCreationTime : 11-02-2007 11:40:14
BasePriority : Normal
FileVersion : 70.0.170.000
ProductVersion : 070.000.170.000
ProductName : hp digital imaging
CompanyName : Hewlett-Packard Development Company, L.P.
FileDescription : HP Digital Imaging Monitor
InternalName : HPQTRA00
LegalCopyright : Copyright (C) Hewlett-Packard Development Company, L.P. 1995-2005
OriginalFilename : HPQTRA00.EXE
Comments : HP Digital Imaging Monitor

#:29 [wzqkpick.exe]
FilePath : C:\Program Files\WinZip\
ProcessID : 2188
ThreadCreationTime : 11-02-2007 11:40:15
BasePriority : Normal
FileVersion : 1.0 (32-bit)
ProductVersion : 10.0 (6595f)
ProductName : WinZip
CompanyName : WinZip Computing LP
FileDescription : WinZip Executable
InternalName : WZQKPICK.EXE
LegalCopyright : Copyright (c) WinZip International LLC 1991-2006 - All Rights Reserved
LegalTrademarks : WinZip is a registered trademark of WinZip International LLC
OriginalFilename : WZQKPICK.EXE
Comments : StringFileInfo: U.S. English

#:30 [msmsgs.exe]
FilePath : C:\Program Files\Messenger\
ProcessID : 3320
ThreadCreationTime : 11-02-2007 11:40:24
BasePriority : Normal
FileVersion : 4.7.3001
ProductVersion : Version 4.7.3001
ProductName : Messenger
CompanyName : Microsoft Corporation
FileDescription : Windows Messenger
InternalName : msmsgs
LegalCopyright : Copyright (c) Microsoft Corporation 2004
LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries.
OriginalFilename : msmsgs.exe

#:31 [ntvdm.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 3368
ThreadCreationTime : 11-02-2007 11:40:24
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : NTVDM.EXE
InternalName : NTVDM.EXE
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : NTVDM.EXE

#:32 [hpqste08.exe]
FilePath : C:\Program Files\HP\Digital Imaging\bin\
ProcessID : 3852
ThreadCreationTime : 11-02-2007 11:40:30
BasePriority : Normal
FileVersion : 70.0.170.000
ProductVersion : 070.000.170.000
ProductName : hp digital imaging
CompanyName : Hewlett-Packard Development Company, L.P.
FileDescription : HP CUE Status
InternalName : HPQSTS00
LegalCopyright : Copyright (C) Hewlett-Packard Development Company, L.P. 1995-2005
OriginalFilename : HPQSTS00.EXE
Comments : HP CUE Status

#:33 [wuauclt.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 3792
ThreadCreationTime : 11-02-2007 11:41:09
BasePriority : Normal
FileVersion : 5.8.0.2469 built by: lab01_n(wmbla)
ProductVersion : 5.8.0.2469
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Mises à jour automatiques
InternalName : wuauclt.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : wuauclt.exe

#:34 [usnsvc.exe]
FilePath : C:\Program Files\MSN Messenger\
ProcessID : 228
ThreadCreationTime : 11-02-2007 11:41:13
BasePriority : Normal
FileVersion : 8.1.0178.00
ProductVersion : 8.1.0178
ProductName : Messenger
CompanyName : Microsoft Corporation
FileDescription : Messenger Sharing USN Journal Reader Service
InternalName : usnsvc.exe
LegalCopyright : Copyright (c) Microsoft Corporation. All rights reserved.
OriginalFilename : usnsvc.exe

#:35 [a2guard.exe]
FilePath : C:\Program Files\a-squared Anti-Malware\
ProcessID : 2208
ThreadCreationTime : 11-02-2007 15:35:09
BasePriority : Normal
FileVersion : 2.1.0.49
ProductVersion : 2.1.0.0
ProductName : a-squared Anti-Malware
CompanyName : Emsi Software GmbH
FileDescription : a-squared Guard
InternalName : a2guard
LegalCopyright : CopyRight 2005 by Emsi Software GmbH
OriginalFilename : a2guard.exe

#:36 [iexplore.exe]
FilePath : C:\Program Files\Internet Explorer\
ProcessID : 3972
ThreadCreationTime : 11-02-2007 15:54:42
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Internet Explorer
InternalName : iexplore
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : IEXPLORE.EXE

#:37 [firefox.exe]
FilePath : C:\Program Files\Mozilla Firefox\
ProcessID : 3408
ThreadCreationTime : 11-02-2007 15:55:38
BasePriority : Normal

#:38 [ad-aware.exe]
FilePath : C:\PROGRA~1\Lavasoft\AD-AWA~1\
ProcessID : 2528
ThreadCreationTime : 11-02-2007 15:56:36
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved

Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0

Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0

Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0

Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : miradey@revsci[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:2
Value : Cookie:miradey@revsci.net/
Expires : 06-02-2027 16:56:16
LastSync : Hits:2
UseCount : 0
Hits : 2

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : miradey@www.smartadserver[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:1
Value : Cookie:miradey@www.smartadserver.com/
Expires : 27-11-2010
LastSync : Hits:1
UseCount : 0
Hits : 1

Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 2
Objects found so far: 2

Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 2

Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 2

Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 2

17:07:50 Scan Complete

Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:10:52.719
Objects scanned:148079
Objects identified:2
Objects ignored:0
New critical objects:2
0
Mimi2lyon Messages postés 30 Statut Membre
 
Etape B : SpyBot

--- Search result list ---
Cassava: Cookie traceur (Firefox: default) (Cookie, nothing done)

Cassava: Cookie traceur (Firefox: default) (Cookie, nothing done)

Advertising.com: Cookie traceur (Firefox: default) (Cookie, nothing done)

Advertising.com: Cookie traceur (Firefox: default) (Cookie, nothing done)

Advertising.com: Cookie traceur (Firefox: default) (Cookie, nothing done)

Advertising.com: Cookie traceur (Firefox: default) (Cookie, nothing done)

Advertising.com: Cookie traceur (Firefox: default) (Cookie, nothing done)

Adviva: Cookie traceur (Firefox: default) (Cookie, nothing done)

MediaPlex: Cookie traceur (Firefox: default) (Cookie, nothing done)

Avenue A, Inc.: Cookie traceur (Firefox: default) (Cookie, nothing done)

BFast: Cookie traceur (Firefox: default) (Cookie, nothing done)

CasaleMedia: Cookie traceur (Firefox: default) (Cookie, nothing done)

CasaleMedia: Cookie traceur (Firefox: default) (Cookie, nothing done)

CasaleMedia: Cookie traceur (Firefox: default) (Cookie, nothing done)

CasaleMedia: Cookie traceur (Firefox: default) (Cookie, nothing done)

CasaleMedia: Cookie traceur (Firefox: default) (Cookie, nothing done)

CasaleMedia: Cookie traceur (Firefox: default) (Cookie, nothing done)

DoubleClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

ErrorSafe: Cookie traceur (Firefox: default) (Cookie, nothing done)

ErrorSafe: Cookie traceur (Firefox: default) (Cookie, nothing done)

ErrorSafe: Cookie traceur (Firefox: default) (Cookie, nothing done)

ErrorSafe: Cookie traceur (Firefox: default) (Cookie, nothing done)

FastClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

FastClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

FastClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

FastClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

ErrorSafe: Cookie traceur (Firefox: default) (Cookie, nothing done)

ErrorSafe: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

HitBox: Cookie traceur (Firefox: default) (Cookie, nothing done)

MediaPlex: Cookie traceur (Firefox: default) (Cookie, nothing done)

MediaPlex: Cookie traceur (Firefox: default) (Cookie, nothing done)

Statcounter: Cookie traceur (Firefox: default) (Cookie, nothing done)

Tradedoubler: Cookie traceur (Firefox: default) (Cookie, nothing done)

Tradedoubler: Cookie traceur (Firefox: default) (Cookie, nothing done)

Tradedoubler: Cookie traceur (Firefox: default) (Cookie, nothing done)

Tradedoubler: Cookie traceur (Firefox: default) (Cookie, nothing done)

Zedo: Cookie traceur (Firefox: default) (Cookie, nothing done)

Zedo: Cookie traceur (Firefox: default) (Cookie, nothing done)

Zedo: Cookie traceur (Firefox: default) (Cookie, nothing done)

BlueStreak: Cookie traceur (Firefox: default) (Cookie, nothing done)

--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2007-02-11 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2007-01-15 advcheck.dll (1.2.1.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2007-01-02 Tools.dll (2.0.1.0)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2007-02-07 Includes\Cookies.sbi (*)
2006-12-08 Includes\Dialer.sbi (*)
2007-02-07 Includes\DialerC.sbi (*)
2007-02-07 Includes\Hijackers.sbi (*)
2007-02-07 Includes\HijackersC.sbi (*)
2006-10-27 Includes\Keyloggers.sbi (*)
2007-02-07 Includes\KeyloggersC.sbi (*)
2007-01-12 Includes\Malware.sbi (*)
2007-02-07 Includes\MalwareC.sbi (*)
2007-01-19 Includes\PUPS.sbi (*)
2007-02-07 Includes\PUPSC.sbi (*)
2007-02-07 Includes\Revision.sbi (*)
2006-12-08 Includes\Security.sbi (*)
2007-02-07 Includes\SecurityC.sbi (*)
2007-02-02 Includes\Spybots.sbi (*)
2007-02-07 Includes\SpybotsC.sbi (*)
2005-02-17 Includes\Tracks.uti
2007-02-07 Includes\TrojansC.sbi (*)

--- System information ---
Windows XP (Build: 2600) Service Pack 2
/ MSXML4SP2: FIX: ASP stops responding when calling Response.Redirect to another server using msxml4 sp2
/ Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
/ Windows Media Player 6.4: Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
/ Windows XP: Mise à jour de sécurité pour Windows XP (KB923689)
/ Windows XP / SP10: Microsoft Compression Client Pack 1.0 for Windows XP
/ Windows XP / SP3: Correctif Windows XP - KB873339
/ Windows XP / SP3: Correctif Windows XP - KB885835
/ Windows XP / SP3: Correctif Windows XP - KB885836
/ Windows XP / SP3: Correctif Windows XP - KB886185
/ Windows XP / SP3: Correctif Windows XP - KB887472
/ Windows XP / SP3: Correctif Windows XP - KB888302
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB890046)
/ Windows XP / SP3: Correctif Windows XP - KB890859
/ Windows XP / SP3: Correctif Windows XP - KB891781
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893756)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB894391)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896358)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896423)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896424)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896428)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB898461)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899587)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899589)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899591)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB900485)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB900725)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901017)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901214)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB902400)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB904706)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905414)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905749)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908519)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB908531)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB910437)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB911280)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911562)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911567)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911927)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912919)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913580)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914388)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914389)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB916595)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917159)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917344)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917422)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917953)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918439)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918899)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB919007)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920213)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920214)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920670)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920683)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920685)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB920872)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921398)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921883)
/ Windows XP / SP3: Mise à jour pour Windows XP (KB922582)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922616)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922760)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922819)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923191)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923414)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923694)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923980)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924191)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924270)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924496)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB925454)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB925486)
/ Windows XP / SP3: Hotfix for Windows XP (KB926239)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926255)
/ Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB929969)

--- Startup entries list ---
Located: HK_LM:Run, a-squared
command: "C:\Program Files\a-squared Anti-Malware\a2guard.exe"
file: C:\Program Files\a-squared Anti-Malware\a2guard.exe
size: 1207808
MD5: ac6df49c33fcec14923c57c4a9a42742

Located: HK_LM:Run, avgnt
command: "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
file: C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
size: 233512
MD5: 3fc2d66353de1e28b12a4924410edd0a

Located: HK_LM:Run, Creative WebCam Tray
command: C:\Program Files\Creative\Shared Files\CAMTRAY.EXE
file:

Located: HK_LM:Run, HP Software Update
command: C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
file: C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
size: 49152
MD5: 926a397334fe426a6c7657096fe681db

Located: HK_LM:Run, NeroCheck
command: C:\WINDOWS\system32\NeroCheck.exe
file: C:\WINDOWS\system32\NeroCheck.exe
size: 155648
MD5: 3e4c03cefad8de135263236b61a49c90

Located: HK_LM:Run, NeroFilterCheck
command: C:\WINDOWS\system32\NeroCheck.exe
file: C:\WINDOWS\system32\NeroCheck.exe
size: 155648
MD5: 3e4c03cefad8de135263236b61a49c90

Located: HK_LM:Run, SoundMan
command: SOUNDMAN.EXE
file: C:\WINDOWS\SOUNDMAN.EXE
size: 69632
MD5: 16fded08c873555859d2c83c82f0348d

Located: HK_LM:Run, VTTimer
command: VTTimer.exe
file: C:\WINDOWS\system32\VTTimer.exe
size: 36864
MD5: f6e960d1b2ef9cef7876743e864f12ae

Located: HK_LM:Run, WinampAgent
command: "C:\Program Files\Winamp\Winampa.exe"
file: C:\Program Files\Winamp\Winampa.exe
size: 12288
MD5: 5cdc66ef7a6f570a583bd72c23e68ff2

Located: HK_LM:Run, Zone Labs Client
command: "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
file: C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
size: 968696
MD5: 71514e2c74d554f5902dc184046eca3b

Located: HK_CU:Run, Logon de rede
command: C:\windows\kernel.exe
file: C:\windows\kernel.exe
size: 555008
MD5: 3d935f28619ee6e865f2e9e74ca42025

Located: HK_CU:Run, MsnMsgr
command: "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
file: C:\Program Files\MSN Messenger\MsnMsgr.Exe
size: 5674352
MD5: a7efc7ea7ef6fb022a8a95813edcbe5d

Located: HK_CU:Run, Notepad
command: C:\WINDOWS\NOTEEPAD.exe
file: C:\WINDOWS\NOTEEPAD.exe
size: 91136
MD5: fed1477b299209e534bb938a4d0d53f7

Located: HK_CU:Run, swg
command: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
file: C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
size: 171448
MD5: 0fa44ea8b03aba3e1d240b5a333d8e6a

Located: HK_CU:Run, Windows Messenger
command: C:\windows\msnmsgr2.exe
file: C:\windows\msnmsgr2.exe
size: 225280
MD5: d2f2ef1074ab8b807df938729bfd75f6

Located: Démarrage (tous utilisateurs), Adobe Reader Synchronizer.lnk
command: C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
file: C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
size: 734872
MD5: 169c293ce9460a05646d17dc6aa2fb2c

Located: Démarrage (tous utilisateurs), BlueSoleil.lnk
command: C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
file: C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
size: 1183744
MD5: c2560eb72a613ad762bd518019b9a013

Located: Démarrage (tous utilisateurs), HP Digital Imaging Monitor.lnk
command: C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
file: C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
size: 288472
MD5: 4543367e50bd35e7d1269d42841b156e

Located: Démarrage (tous utilisateurs), Lancement rapide d'Adobe Reader.lnk
command: C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
file: C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
size: 40048
MD5: 54c88bfbd055621e2306534f445c0c8d

Located: Démarrage (tous utilisateurs), WinZip Quick Pick.lnk
command: C:\Program Files\WinZip\WZQKPICK.EXE
file: C:\Program Files\WinZip\WZQKPICK.EXE
size: 122880
MD5: 87f2c8b29ac2fe10dc61aae942e0e420

Located: Démarrage (utilisateur), OpenOffice.org 2.0.lnk
command: C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
file:

Located: Démarrage (utilisateur), Yahoo! Widget Engine.lnk
command: C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
file:

Located: System.ini, crypt32chain
command: crypt32.dll
file: crypt32.dll

Located: System.ini, cryptnet
command: cryptnet.dll
file: cryptnet.dll

Located: System.ini, cscdll
command: cscdll.dll
file: cscdll.dll

Located: System.ini, ScCertProp
command: wlnotify.dll
file: wlnotify.dll

Located: System.ini, Schedule
command: wlnotify.dll
file: wlnotify.dll

Located: System.ini, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll

Located: System.ini, SensLogn
command: WlNotify.dll
file: WlNotify.dll

Located: System.ini, termsrv
command: wlnotify.dll
file: wlnotify.dll

Located: System.ini, wlballoon
command: wlnotify.dll
file: wlnotify.dll

--- Browser helper object list ---
{7E853D72-626A-48EC-A868-BA8D5E23E045} ()
BHO name:
CLSID name:

{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
info link: http://www.google.com/intl/fr/toolbar/ie/index.html
info source: TonyKlein
Path: c:\program files\google\
Long name: GoogleToolbar3.dll
Short name: GOOGLE~3.DLL
Date (created): 07/02/2007 19:13:12
Date (last access): 11/02/2007 16:18:50
Date (last write): 19/01/2007 23:56:04
Filesize: 2436160
Attributes: readonly archive
MD5: 6D44E0C3B43D27484FBB355E470C4188
CRC32: 2DE875CD
Version: 4.0.1601.4978

--- ActiveX list ---
{5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class)
DPF name:
CLSID name: UnoCtrl Class
Installer: C:\WINDOWS\Downloaded Program Files\GAME_UNO1.INF
Codebase: http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: GAME_UNO1.dll

--- Process list ---
PID: 0 ( 0) [System]
PID: 596 ( 4) \SystemRoot\System32\smss.exe
PID: 660 ( 596) \??\C:\WINDOWS\system32\csrss.exe
PID: 684 ( 596) \??\C:\WINDOWS\system32\winlogon.exe
PID: 728 ( 684) C:\WINDOWS\system32\services.exe
size: 108544
MD5: 732E0B1ABAACE15D80EC19056B0A2AF9
PID: 740 ( 684) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 9F3744A5C6F49291A7A685040A013399
PID: 896 ( 728) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 1BD6C2F707A275CB7C16FD99FE0F31CA
PID: 956 ( 728) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 1BD6C2F707A275CB7C16FD99FE0F31CA
PID: 1048 ( 728) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 1BD6C2F707A275CB7C16FD99FE0F31CA
PID: 1092 ( 728) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 1BD6C2F707A275CB7C16FD99FE0F31CA
PID: 1272 ( 728) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 1BD6C2F707A275CB7C16FD99FE0F31CA
PID: 1292 ( 728) C:\WINDOWS\system32\ZoneLabs\vsmon.exe
size: 75768
MD5: A9062968DF9419FA45ACF044B4D9F5AC
PID: 1400 (1380) C:\WINDOWS\Explorer.EXE
size: 1036288
MD5: 4C33E5B9A6197B6ED215F6CFBA0A2DAA
PID: 1724 ( 728) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
PID: 268 ( 728) C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
size: 34344
MD5: 756696E86515155A2DB03E1CD7C4EBD0
PID: 280 ( 728) C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
size: 191016
MD5: F8182E30C3E4904E5C3352449E3BE877
PID: 292 ( 728) C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
size: 110592
MD5: 55F24E6EC983FCC7510293B05A27CEEC
PID: 1036 ( 728) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 1BD6C2F707A275CB7C16FD99FE0F31CA
PID: 2000 (1048) C:\WINDOWS\system32\wscntfy.exe
size: 13824
MD5: 54CDDAD404557ED98433D6ECBFC92691
PID: 188 ( 728) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: 2FE681D10C5FC343DBBC0610B8DD4D24
PID: 532 (1400) C:\WINDOWS\SOUNDMAN.EXE
size: 69632
MD5: 16FDED08C873555859D2C83C82F0348D
PID: 1208 (1400) C:\Program Files\Winamp\Winampa.exe
size: 12288
MD5: 5CDC66EF7A6F570A583BD72C23E68FF2
PID: 316 (1400) C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
size: 233512
MD5: 3FC2D66353DE1E28B12A4924410EDD0A
PID: 1648 (1400) C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
size: 968696
MD5: 71514E2C74D554F5902DC184046ECA3B
PID: 1000 (1400) C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
size: 49152
MD5: 926A397334FE426A6C7657096FE681DB
PID: 1136 (1400) C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
size: 171448
MD5: 0FA44EA8B03ABA3E1D240B5A333D8E6A
PID: 784 (1400) C:\windows\kernel.exe
size: 555008
MD5: 3D935F28619EE6E865F2E9E74CA42025
PID: 2108 (1400) C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
size: 1183744
MD5: C2560EB72A613AD762BD518019B9A013
PID: 2156 (1400) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
size: 288472
MD5: 4543367E50BD35E7D1269D42841B156E
PID: 2188 (1400) C:\Program Files\WinZip\WZQKPICK.EXE
size: 122880
MD5: 87F2C8B29AC2FE10DC61AAE942E0E420
PID: 3320 ( 896) C:\Program Files\Messenger\msmsgs.exe
size: 1694208
MD5: 74E6E96C6F0E2ECA4EDBB7F7A468F259
PID: 3368 ( 784) C:\WINDOWS\system32\ntvdm.exe
size: 420864
MD5: CBA61CED5861EB1C023002F20B275B9E
PID: 3852 (2156) C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
size: 239320
MD5: 88029974B1C9995CFA3BD9560BBA2EEF
PID: 3792 (1048) C:\WINDOWS\system32\wuauclt.exe
size: 125720
MD5: 6CC08152ED8681BC176BE1B0F3C0E908
PID: 228 ( 728) C:\Program Files\MSN Messenger\usnsvc.exe
size: 97136
MD5: C5B70A6AA947667CE0E5FC84A05EC8B6
PID: 2208 ( 744) C:\Program Files\a-squared Anti-Malware\a2guard.exe
size: 1207808
MD5: AC6DF49C33FCEC14923C57C4A9A42742
PID: 2656 (1400) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
MD5: 09CA174A605B480318731E691DC98539
PID: 2644 (1400) C:\Program Files\Mozilla Firefox\firefox.exe
size: 7620696
MD5: 6D05E232DDE95D48FBF0D879559CD3CA
PID: 4 ( 0) System

--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 11/02/2007 17:30:15

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
https://www.google.com/?gws_rd=ssl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
http://www.google.com/toolbar/ie8/sidebar.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
https://www.google.fr/?gws_rd=ssl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/toolbar/ie8/sidebar.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
http://www.google.com/search?q=%s
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.google.com/toolbar/ie8/sidebar.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/toolbar/ie8/sidebar.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm

--- Winsock Layered Service Provider list ---

--- Uninstall list ---
a-squared Anti-Malware 2.1 2.1 (a-squared Anti-Malware_is1)
install date: 20070211
install location: C:\Program Files\a-squared Anti-Malware\
uninstall cmd: "C:\Program Files\a-squared Anti-Malware\unins000.exe"
publisher: Emsi Software GmbH
comments: a-squared
help link: https://support.emsisoft.com/

Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal)
uninstall cmd: C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
publisher: Lavasoft
help link: https://www.adaware.com/

(AddressBook)

Adobe Shockwave Player 10.1.4.20 (Adobe Shockwave Player)
uninstall cmd: C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
publisher: Adobe Systems, Inc.
help link: https://helpx.adobe.com/shockwave.html

Avira AntiVir PersonalEdition Classic (AntiVir PersonalEdition Classic)
uninstall cmd: C:\Program Files\AntiVir PersonalEdition Classic\setup.exe /REMOVE
publisher: Avira GmbH
help link: https://support.avira.com/hc/en-us

CCleaner (remove only) (CCleaner)
uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

ClearProg 1.4.2 Beta 13 1.4.2 Beta 13 (ClearProg)
uninstall cmd: C:\Program Files\ClearProg\Uninstall.exe
publisher: Sven Hoffman

(Connection Manager)

Creative WebCam Vista Plus Driver (1.00.05.0906) (Creative VF0090)
uninstall cmd: C:\WINDOWS\CtDrvIns.exe -uninstall -script VF0090.uns -unsext NT -plugin V0090Pin.dll -pluginres CtCamPin.crl

(Creative WebCam Vista Plus)

(Creative WebCam Vista Plus Guide de l'utilisateur Francais)

(DirectAnimation)

(DirectDrawEx)

Dofus 1.16.4 1.16.4 (Dofus 1.16.4)
uninstall cmd: C:\Program Files\Dofus\uninstall.exe
publisher: Ankama Studio

(DXM_Runtime)

eMule (eMule)
uninstall cmd: "C:\Program Files\eMule\Uninstall.exe"

(Fontcore)

Free Mp3 Wma Converter V 1.4.0 (Free Mp3 Wma Converter_is1)
install location: C:\Program Files\Free Audio Pack\
uninstall cmd: "C:\Program Files\Free Audio Pack\unins000.exe"
publisher: Renan Broquin
help link: http://koyotstar.free.fr

Installer Yahoo! Messenger (Get Yahoo! Messenger)
uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe" -l0x40c /remove

HijackThis 1.99.1 1.99.1 (HijackThis)
uninstall cmd: C:\Documents and Settings\Miradey\Bureau\HijackThis.exe /uninstall
publisher: Soeperman Enterprises Ltd.

HP Imaging Device Functions 7.0 7.0 (HP Imaging Device Functions)
uninstall cmd: C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
publisher: HP
help link: https://support.hp.com/us-en?openCLC=true

HP Solution Center 7.0 7.0 (HP Solution Center & Imaging Support Tools)
uninstall cmd: C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
publisher: HP
help link: https://support.hp.com/us-en?openCLC=true

HP Customer Participation Program 7.0 7.0 (HPExtendedCapabilities)
uninstall cmd: C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
publisher: HP
help link: https://support.hp.com/us-en?openCLC=true

OCR Software by I.R.I.S 7.0 7.0 (HPOCR)
uninstall cmd: C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
publisher: HP
help link: https://support.hp.com/us-en?openCLC=true

(ICW)

(IE40)

(IE4Data)

(IE5BAKEX)

(IEData)

Correctif Windows XP - KB873339 20041117.092459 (KB873339)
uninstall cmd: C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/873339

(KB884016)

(KB884267)

(KB885353)

Correctif Windows XP - KB885835 20041027.181713 (KB885835)
uninstall cmd: C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/885835/ms04-044-vulnerabilities-in-windows-kernel-and-lsass-could-allow-eleva

Correctif Windows XP - KB885836 20041028.173203 (KB885836)
uninstall cmd: C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/885836/ms04-041-a-vulnerability-in-wordpad-could-allow-code-execution

Correctif Windows XP - KB886185 20041021.090540 (KB886185)
uninstall cmd: C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/886185

(KB886612)

(KB887078)

Correctif Windows XP - KB887472 20041014.162858 (KB887472)
uninstall cmd: C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/887472

(KB887626)

Correctif Windows XP - KB888302 20041207.111426 (KB888302)
uninstall cmd: C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/888302

(KB888656)

(KB889858)

Mise à jour de sécurité pour Windows XP (KB890046) 1 (KB890046)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/890046

Correctif Windows XP - KB890859 1 (KB890859)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/890859

(KB891122)

Correctif Windows XP - KB891781 20050110.165439 (KB891781)
uninstall cmd: C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/891781

(KB892313)

(KB893240)

(KB893241)

Mise à jour de sécurité pour Windows XP (KB893756) 1 (KB893756)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/893756

(KB893803)

Windows Installer 3.1 (KB893803) 3.1 (KB893803v2)
uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

Mise à jour pour Windows XP (KB894391) 1 (KB894391)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/894391/

(KB895181)

(KB895316)

(KB895572)

Mise à jour de sécurité pour Windows XP (KB896358) 1 (KB896358)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/896358/ms05-026-a-vulnerability-in-html-help-could-allow-remote-code-executio

Mise à jour de sécurité pour Windows XP (KB896423) 1 (KB896423)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/windows?ui=en-US&rs=en-001&ad=US

Mise à jour de sécurité pour Windows XP (KB896424) 1 (KB896424)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/896424

Mise à jour de sécurité pour Windows XP (KB896428) 1 (KB896428)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/896428

(KB897586)

Mise à jour pour Windows XP (KB898461) 1 (KB898461)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/898461/

(KB898549)

Mise à jour de sécurité pour Windows XP (KB899587) 1 (KB899587)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/899587

Mise à jour de sécurité pour Windows XP (KB899589) 1 (KB899589)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB899589$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/899589

Mise à jour de sécurité pour Windows XP (KB899591) 1 (KB899591)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/899591

(KB900399)

Mise à jour pour Windows XP (KB900485) 2 (KB900485)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/900485

Mise à jour de sécurité pour Windows XP (KB900725) 1 (KB900725)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/900725

Mise à jour de sécurité pour Windows XP (KB901017) 1 (KB901017)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/901017

Mise à jour de sécurité pour Windows XP (KB901214) 1 (KB901214)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/901214

(KB902344)

Mise à jour de sécurité pour Windows XP (KB902400) 1 (KB902400)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/902400/ms05-051-vulnerabilities-in-ms-dtc-and-com-could-allow-remote-code-exe

Mise à jour de sécurité pour Windows XP (KB904706) 2 (KB904706)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/904706

Mise à jour de sécurité pour Windows XP (KB905414) 1 (KB905414)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/905414

Mise à jour de sécurité pour Windows XP (KB905749) 1 (KB905749)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/905749

(KB907658)

Mise à jour de sécurité pour Windows XP (KB908519) 1 (KB908519)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/908519

Mise à jour pour Windows XP (KB908531) 2 (KB908531)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/908531

Mise à jour pour Windows XP (KB910437) 1 (KB910437)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/910437

Mise à jour pour Windows XP (KB911280) 2 (KB911280)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/911280

Mise à jour de sécurité pour Windows XP (KB911562) 1 (KB911562)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/911562

Mise à jour de sécurité pour Lecteur Windows Media (KB911564) (KB911564)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/911564

(KB911565)

Mise à jour de sécurité pour Windows XP (KB911567) 1 (KB911567)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911567$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/911567

(KB911854)

Mise à jour de sécurité pour Windows XP (KB911927) 1 (KB911927)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/911927

Mise à jour de sécurité pour Windows XP (KB912919) 1 (KB912919)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/912919

Mise à jour de sécurité pour Windows XP (KB913433) (KB913433)
uninstall cmd: C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB913433.inf
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/913433

Mise à jour de sécurité pour Windows XP (KB913580) 1 (KB913580)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/913580

Mise à jour de sécurité pour Windows XP (KB914388) 1 (KB914388)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/914388

Mise à jour de sécurité pour Windows XP (KB914389) 1 (KB914389)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/914389

Mise à jour pour Windows XP (KB916595) 1 (KB916595)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/916595

Mise à jour de sécurité pour Windows XP (KB917159) 1 (KB917159)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917159$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/917159

Mise à jour de sécurité pour Windows XP (KB917344) 1 (KB917344)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/917344

Mise à jour de sécurité pour Windows XP (KB917422) 1 (KB917422)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/917422

Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734) (KB917734_WMP10)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/917734

Mise à jour de sécurité pour Windows XP (KB917953) 1 (KB917953)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/917953

Mise à jour de sécurité pour Windows XP (KB918439) 1 (KB918439)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/918439

Mise à jour de sécurité pour Windows XP (KB918899) 1 (KB918899)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB918899$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/918899

Mise à jour de sécurité pour Windows XP (KB919007) 1 (KB919007)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/919007/ms06-052-vulnerability-in-pragmatic-general-multicast-pgm-could-result

Mise à jour de sécurité pour Windows XP (KB920213) 1 (KB920213)
install date: 20061120
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/920213

Mise à jour de sécurité pour Windows XP (KB920214) 1 (KB920214)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920214$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/920214

Mise à jour de sécurité pour Windows XP (KB920670) 1 (KB920670)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/920670

Mise à jour de sécurité pour Windows XP (KB920683) 1 (KB920683)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/920683

Mise à jour de sécurité pour Windows XP (KB920685) 1 (KB920685)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/920685

Mise à jour pour Windows XP (KB920872) 1 (KB920872)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/920872

Mise à jour de sécurité pour Windows XP (KB921398) 1 (KB921398)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/921398

Mise à jour de sécurité pour Windows XP (KB921883) 1 (KB921883)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/921883/ms06-040-vulnerability-in-server-service-could-allow-remote-code-execu

Mise à jour pour Windows XP (KB922582) 1 (KB922582)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/922582/error-message-when-you-try-to-update-a-microsoft-windows-based-compute

Mise à jour de sécurité pour Windows XP (KB922616) 1 (KB922616)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922616$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/922616

Mise à jour de sécurité pour Windows XP (KB922760) 1 (KB922760)
install date: 20061120
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922760$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/922760

Mise à jour de sécurité pour Windows XP (KB922819) 1 (KB922819)
install date: 20061012
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/922819

Mise à jour de sécurité pour Windows XP (KB923191) 1 (KB923191)
install date: 20061012
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923191

Mise à jour de sécurité pour Windows XP (KB923414) 1 (KB923414)
install date: 20061012
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923414

Mise à jour de sécurité pour Windows XP (KB923689) (KB923689)
install date: 20061214
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923689

Mise à jour de sécurité pour Windows XP (KB923694) 1 (KB923694)
install date: 20061214
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923694

Mise à jour de sécurité pour Windows XP (KB923980) 1 (KB923980)
install date: 20061120
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923980

Mise à jour de sécurité pour Windows XP (KB924191) 1 (KB924191)
install date: 20061012
uninstall cmd: "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/924191/

Mise à jour de sécurité pour Windows XP (KB924270) 1 (KB924270)
install date: 20061120
uninstall cmd: "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/924270

Mise à jour de sécurité pour Windows XP (KB924496) 1 (KB924496)
install date: 20061012
uninstall cmd: "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/924496

Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) (KB925398_WMP64)
install date: 20061214
uninstall cmd: "C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/925398

Mise à jour de sécurité pour Windows XP (KB925454) 1 (KB925454)
install date: 20061214
uninstall cmd: "C:\WINDOWS\$NtUninstallKB925454$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/925454

Mise à jour de sécurité pour Windows XP (KB925486) 1 (KB925486)
install date: 20060927
uninstall cmd: "C:\WINDOWS\$NtUninstallKB925486$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/925486

Hotfix for Windows XP (KB926239) 2 (KB926239)
install date: 20061215
uninstall cmd: "C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/926239

Mise à jour de sécurité pour Windows XP (KB926255) 1 (KB926255)
install date: 20061214
uninstall cmd: "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/926255

Mise à jour de sécurité pour Windows XP (KB929969) 1 (KB929969)
install date: 20070112
uninstall cmd: "C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/929969

(MobileOptionPack)

Mozilla Firefox (2.0.0.1) 2.0.0.1 (fr) (Mozilla Firefox (2.0.0.1))
install location: C:\Program Files\Mozilla Firefox
uninstall cmd: C:\Program Files\Mozilla Firefox\uninstall\uninst.exe
publisher: Mozilla

(MPlayer2)

Microsoft Compression Client Pack 1.0 for Windows XP 1 (MSCompPackV1)
install date: 20061215
uninstall cmd: "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://www.microsoft.com/fr-fr/?ref=go

(MSI30-Beta1)

(MSI30-Beta2)

(MSI30-KB884016)

(MSI30-RC1)

(MSI30-RC2)

(MSI30a-KB884016)

(MSI31-Beta)

(MSI31-RC1)

(Nero - Burning Rom!UninstallKey)
uninstall cmd: C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL

(NeroBackItUp!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL

(NeroMediaHome!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL

(NeroRecode!UninstallKey)
uninstall cmd: C:\WINDOWS\UNRecode.exe /UNINSTALL

(NeroShowTime!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL

(NeroVision!UninstallKey)
uninstall cmd: C:\WINDOWS\UNNeroVision.exe /UNINSTALL

(NetMeeting)

(OutlookExpress)

(PCHealth)
uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

KM400/KN400 Display Driver and Utilities (S3)
uninstall cmd: C:\PROGRA~1\S3Inc\S3\s3setvga.exe -s -fC:\PROGRA~1\S3Inc\S3\S3.uns

(SchedulingAgent)

(Shockwave)

Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
publisher: Adobe Systems
help link: https://helpx.adobe.com/flash-player.html

Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
install location: C:\Program Files\Spybot - Search & Destroy\
uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
publisher: Safer Networking Limited

VideoLAN VLC media player 0.8.5 0.8.5 (VLC media player)
uninstall cmd: C:\Program Files\VideoLAN\VLC\uninstall.exe
publisher: VideoLAN Team

S3 S3Display (VTDisplay)
uninstall cmd: vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Display'

S3 S3Gamma2 (VTGamma2)
uninstall cmd: vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Gamma2'

S3 S3Info2 (VTInfo2)
uninstall cmd: vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Info2'

S3 S3Overlay (VTOverlay)
uninstall cmd: vtuninst.exe -reg 5 'HKLM\Software\S3\VT\S3Uninst\S3Overlay'

Windows Genuine Advantage Validation Tool (KB892130) 1.5.0530.0 (WGA)
install date: 20061104
publisher: Microsoft Corporation
help link: https://www.microsoft.com/en-us/howtotell/default.aspx

Winamp (remove only) (Winamp)
uninstall cmd: "C:\Program Files\Winamp\UninstWA.exe"

Windows Media Format 11 runtime (Windows Media Format Runtime)
uninstall cmd: "C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
help link: https://support.microsoft.com/en-us

Lecteur Windows
0
Mimi2lyon Messages postés 30 Statut Membre
 
c-ccleaner

NETTOYAGE COMPLET - (28,076 secs)
------------------------------------------------------------------------------------------
666,9MB supprimés.
------------------------------------------------------------------------------------------

Détails des fichiers effacés
------------------------------------------------------------------------------------------
Fichiers Temporaires d'Internet Explorer (fichiers 323) 4,12MB
Cookie:miradey@download.com/(&H100001) 93 bytes
Cookie:miradey@login.live.com/(&H100001) 177 bytes
Cookie:miradey@emsisoft.fr/(&H100001) 332 bytes
Cookie:miradey@xiti.com/(&H100001) 100 bytes
Cookie:miradey@element5.com/(&H100001) 90 bytes
Cookie:miradey@rad.msn.com/(&H100001) 670 bytes
Cookie:miradey@emsisoft.net/(&H100001) 340 bytes
Cookie:miradey@ask.com/(&H100001) 77 bytes
Cookie:miradey@h.msn.com/(&H100001) 67 bytes
Cookie:miradey@news.com/(&H100001) 104 bytes
Cookie:miradey@yahoo.com/(&H100001) 82 bytes
Cookie:miradey@live.com/(&H100001) 330 bytes
Cookie:miradey@hotmail.msn.com/(&H100001) 70 bytes
Cookie:miradey@messenger.msn.com/(&H100001) 95 bytes
Cookie:miradey@msn.com/(&H100001) 328 bytes
Cookie:miradey@com.com/(&H100001) 86 bytes
Poubelle vidée (4 fichiers) 0,36MB
C:\WINDOWS\TEMP\241346183.jpg 20,90KB
C:\WINDOWS\TEMP\alcupd.exe 0,20MB
C:\WINDOWS\TEMP\alcxwdm.cat 0,44MB
C:\WINDOWS\TEMP\alcxwdm.inf 25,16KB
C:\WINDOWS\TEMP\alcxwdm.sys 2,17MB
C:\WINDOWS\TEMP\alcxwdm0.inf 59,83KB
C:\WINDOWS\TEMP\alcxwdm1.inf 59,14KB
C:\WINDOWS\TEMP\alcxwdm10.inf 37,14KB
C:\WINDOWS\TEMP\alcxwdm11.inf 24,24KB
C:\WINDOWS\TEMP\alcxwdm12.inf 35,98KB
C:\WINDOWS\TEMP\alcxwdm13.inf 39,88KB
C:\WINDOWS\TEMP\alcxwdm14.inf 25,58KB
C:\WINDOWS\TEMP\alcxwdm15.inf 24,97KB
C:\WINDOWS\TEMP\alcxwdm16.inf 25,34KB
C:\WINDOWS\TEMP\alcxwdm17.inf 23,57KB
C:\WINDOWS\TEMP\alcxwdm18.inf 21,58KB
C:\WINDOWS\TEMP\alcxwdm19.inf 23,40KB
C:\WINDOWS\TEMP\alcxwdm2.inf 60,66KB
C:\WINDOWS\TEMP\alcxwdm20.inf 25,09KB
C:\WINDOWS\TEMP\alcxwdm21.inf 23,52KB
C:\WINDOWS\TEMP\alcxwdm22.inf 32,18KB
C:\WINDOWS\TEMP\alcxwdm23.inf 25,15KB
C:\WINDOWS\TEMP\alcxwdm3.inf 25,58KB
C:\WINDOWS\TEMP\alcxwdm4.inf 45,75KB
C:\WINDOWS\TEMP\alcxwdm5.inf 23,64KB
C:\WINDOWS\TEMP\alcxwdm6.inf 29,33KB
C:\WINDOWS\TEMP\alcxwdm7.inf 22,29KB
C:\WINDOWS\TEMP\alcxwdm8.inf 28,42KB
C:\WINDOWS\TEMP\alcxwdm9.inf 26,79KB
C:\WINDOWS\TEMP\alsndmgr.cpl 15,4MB
C:\WINDOWS\TEMP\alsndmgr.wav 0,13MB
C:\WINDOWS\TEMP\Autorun\BIOSSTR.EXE 14,64KB
C:\WINDOWS\TEMP\Autorun\BIOSSTR.INI 378 bytes
C:\WINDOWS\TEMP\bluesoleilSetup.log 19,06KB
C:\WINDOWS\TEMP\ChCfg.exe 39,50KB
C:\WINDOWS\TEMP\CIO_NDCS.log 590 bytes
C:\WINDOWS\TEMP\DSC00842.JPG 0,40MB
C:\WINDOWS\TEMP\DSC00992.JPG 0,35MB
C:\WINDOWS\TEMP\hpzFR054.hlp 0,20MB
C:\WINDOWS\TEMP\HPZIDI000.log 11,74KB
C:\WINDOWS\TEMP\HPZIDS.log 1,48KB
C:\WINDOWS\TEMP\hysterik pop.m3u 85 bytes
C:\WINDOWS\TEMP\Les pro du golf (1).3gp 0,51MB
C:\WINDOWS\TEMP\MOV00002.3gp 0,63MB
C:\WINDOWS\TEMP\newdev.dll 0,24MB
C:\WINDOWS\TEMP\Perflib_Perfdata_254.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_424.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_4d4.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_4d8.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_4dc.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_4e0.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_508.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_50c.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_530.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_560.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_59c.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_5ac.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_5d8.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_620.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_638.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_65c.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_7ec.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_c0.dat 16,00KB
C:\WINDOWS\TEMP\Perflib_Perfdata_d20.dat 16,00KB
C:\WINDOWS\TEMP\Pompiers en action.3gp 1,06MB
C:\WINDOWS\TEMP\RtlCPAPI.dll 0,15MB
C:\WINDOWS\TEMP\RTLCPL.exe 8,77MB
C:\WINDOWS\TEMP\servic000.log 102 bytes
C:\WINDOWS\TEMP\servic001.log 540 bytes
C:\WINDOWS\TEMP\soundman.exe 68,00KB
C:\WINDOWS\TEMP\Thumbs.db 0,64MB
C:\WINDOWS\TEMP\ZLT002f7.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT00398.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT006fa.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT00cd3.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT010bc.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT010bf.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT010e7.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT01464.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT014a2.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT01685.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT017b8.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT01dec.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT01e33.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0220c.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0225c.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02313.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02614.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT026c6.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02770.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT027b4.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT027b7.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02925.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02928.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02d60.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02fac.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT02faf.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0328f.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0388f.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT03a68.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT03dc3.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT03f69.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0415b.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT043ca.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04474.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT045ff.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04707.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04805.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04808.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT048b5.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04987.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04b08.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04c6c.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04c9b.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04e09.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT04e84.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT050ae.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT05477.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT058ce.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT05bd7.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT05cc5.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT06046.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT060cc.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT061fc.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT063c3.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0663f.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT066d5.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT067d5.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT06a0b.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT06b35.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT06b41.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07340.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0734f.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07416.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07513.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07630.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07745.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT077f6.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07838.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0783c.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0785f.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT0787c.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT079c1.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT079c9.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07c05.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07d85.TMP 256 bytes
C:\WINDOWS\TEMP\ZLT07da5.TMP 256 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\00s42.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\01mF3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\06262.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\09zD8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\0plC1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\108AE.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\177EF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\1ij32.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\1jw76.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\1pi12A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\1t0B7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\1vpDB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\1vq13.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\27872.dmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\27d87.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\29766.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\2asE1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\2zw9A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\35n12.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\3lg2E.tmp 1,39KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\3liEA.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\3vkA8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\410C3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\41tEE.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\443A6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\46dE5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\48wE2.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\4e3F2.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\4fe28.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\4j6D5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\4sxDF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\55e58.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\56348.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\57kFB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\58e1F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\5ei37.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\5giE3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\5jdD0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\5on7B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\60m35.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\67b_appcompat.txt 32,16KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\69c108.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\6hu6A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\713e_appcompat.txt 232 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\76mD9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\79o2D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\7bfD1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\7qj27.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\7tr52.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\7y16B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\8lm9C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\8p9C3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\8qpCF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\8wx24.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\8wz9F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\8zfC9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\92x39.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9lzE7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9m92F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9mz124.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9qxED.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9ro119.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9t611E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9vn8A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9xu77.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\9zi83.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\a1h1F0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\a2n9D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\a2temp\update.ini 36,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\a8cbf.mst 88,50KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\amh30.tmp 25,76KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\avg7inst.log 0,27MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\az0103.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\b1730.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ba68D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\bb6DF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\bbk4D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\blsDC.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\bq32C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\buc10D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\c2jDB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\cbuD7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\Cddb\11054336\cddb.db 10,69KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\control.xml 12,63KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\Cookies\index.dat 16,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\cp531.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\cxsD9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\d5aEB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dd_netfx20MSI3409.txt 2,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dd_netfx20UI3409.txt 17,37KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO100.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO101.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO103.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO109.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO110.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO112.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO114.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO117.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO118.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO119.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO11C.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO120.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO124.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO125.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO12D.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO12E.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO131.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO136.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO137.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO138.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO151.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO15D.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO15E.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO17.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO18.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO189.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO18A.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO18E.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO18F.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO19.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO190.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO191.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO19B.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO19C.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO1A1.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO1B.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO45.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO46.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO47.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO56.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO5C.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO6A.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO6B.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO6D.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO6E.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO93.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO94.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO95.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO96.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO97.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO98.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO9A.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO9B.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO9C.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO9E.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIO9F.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOA.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOA0.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOA6.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOA7.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOA8.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOAB.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOAE.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOAF.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB0.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB1.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB2.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB4.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB5.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOB6.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOBE.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOC.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOC5.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOC8.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOC9.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOCB.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOCC.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOCD.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOD.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOD5.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOD7.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOD9.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIODA.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOEC.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOED.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOEE.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF0.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF4.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF5.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF6.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF7.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF8.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOF9.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\DIOFA.tmp 46,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dl9D4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dlg_0x6AE63F188.tmp 0,35MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dn5E7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dotnetfx.exe 22,4MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dw.log 2,51KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dwl44.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dxwCF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\dye88.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\e1268.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\e6r4B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\e7rFF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ee6F3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\em8A7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\es428.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ew7E3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\eyv8B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\F3D2F.dmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\faa5D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fan10F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\components\jar50.dll 59,11KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\components\xpinstal.dll 0,16MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\js3250.dll 0,40MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\nspr4.dll 0,15MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\plc4.dll 28,11KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\plds4.dll 24,11KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\xpcom_compat.dll 66,61KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ff_temp\xpcom.ns\bin\xpcom_core.dll 0,38MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla10.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla101.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla102.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla104.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla107.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla109.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla10A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla11.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla118.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla119.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla11A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla11B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla12.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla12F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla13.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla130.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla131.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla132.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla133.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla137.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla13B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla14.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla15.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla151.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla16.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla17.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla17B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla17F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla18.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla185.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla186.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla19.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1AC.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla1F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla20.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla21.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla22.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla23.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla24.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla25.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla26.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla27.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla28.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla29.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla2F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla30.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla31.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla32.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla33.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla34.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla35.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla36.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla37.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla38.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla39.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla3F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4.tmp 97,22KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla40.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla41.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla42.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla43.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla44.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla45.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla46.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla47.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla48.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla49.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla4F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla50.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla51.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla52.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla53.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla54.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla55.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla56.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla57.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla58.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla59.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla5F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla60.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla61.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla62.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla63.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla64.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla65.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla66.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla67.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla68.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla69.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla6F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla70.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla71.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla72.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla73.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla74.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla75.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla76.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla77.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla78.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla79.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla7F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla80.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla81.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla82.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla83.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla84.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla85.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla86.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla87.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla88.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla89.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla8F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla90.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla91.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla92.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla93.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla94.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla95.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla96.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla97.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla98.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla99.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\fla9F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA2.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaA9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaAA.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaAB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaAD.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaAE.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaB7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC2.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaC8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaD.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaD0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaD1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaD2.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaD9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaE.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaE5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaE6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaEB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaEC.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaF4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaF5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaF8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaF9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaFD.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\flaFF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ft6A9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ftj111.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\g1r121.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gaeB0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gec7E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS12.tmp\Fake Profile\compatibility.ini 144 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS12.tmp\Fake Profile\compreg.dat 0,13MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS12.tmp\Fake Profile\prefs.js 444 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS12.tmp\Fake Profile\xpti.dat 81,94KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS12.tmp\setuphook.dll 24,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS97.tmp\Fake Profile\compatibility.ini 138 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS97.tmp\Fake Profile\compreg.dat 0,14MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS97.tmp\Fake Profile\prefs.js 444 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS97.tmp\Fake Profile\XPC.mfl 1,60MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS97.tmp\Fake Profile\xpti.dat 91,53KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GGS97.tmp\setuphook.dll 24,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GLB1A2B.EXE 0,16MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gomE3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\GoogleInstall.dll 1,03MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gp164.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gtapi.dll 44,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gtb3C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gtb3C.tmp.cab 1,03MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gtbE1.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\gulA8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r11.tmp 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r14.tmp 3,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r17.tmp 3,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r1A.tmp 3,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r1D.tmp 3,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r2.tmp 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r20.tmp 3,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r5.tmp 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2r8.tmp 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2rB.tmp 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h2rE.tmp 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h5s11F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h7n5D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\h92DB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hae1F3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hdt9B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hgv3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\Historique\History.IE5\desktop.ini 113 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\Historique\History.IE5\index.dat 16,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\HP PhotoSmart\VPSList.xml 198 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_AiOSW_LOG.txt 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_AiO_Scan_CDA_LOG.txt 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_BufferChm.log 190 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_CustomerResearchQFolder.log 472 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Destinations.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_DeviceManagementQFolder.log 472 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_DocProc.log 190 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_eSupportQFolder.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_fax_CDA_LOG.txt 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_HPPhotoSmartExpress.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_hpproductassistant.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_HPSoftwareUpdate.log 270 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_ImageZoneExpress.log 270 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_InstantShareDevicesMFC.log 190 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Mars.log 190 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_NewCopy_CDA.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_OCRQFolder.log 472 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_PanoStandAlone.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_PortMonitor.log 270 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Readme_LOG.txt 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Scan.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_ScannerCopy.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_SolutionCenter.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Status.log 472 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Toolbox.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_TrayApp.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_Unload.log 284 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpoMSI_WebReg.log 190 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpp126.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpp127.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpp13A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hppB4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hppB5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hppE4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hppE5.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\HPSUD5-4.V6J\signed\hprbUpdate.exe 49,55KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\HPSUD5-4.V6J\signed\hprbupdatep.exe 0,11MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzarp000.log 2,26KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzarp001.log 2,17KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzarp002.log 2,17KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzarp003.log 2,17KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzarp004.log 2,04KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzarp005.log 7,06KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzcdl000.log 1,75KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzcdl001.log 2,52KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzcdl002.log 2,51KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzcdl003.log 2,50KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzchk000.log 7,13KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzdui000.log 12,61KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzFR054.hlp 0,20MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzfwx000.log 1,84KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzgat000.log 1,75KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi000.log 2,27KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi001.log 5,95KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi002.log 2,47KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi003.log 2,47KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi004.log 1,79KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi005.log 4,21KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi006.log 2,13KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi007.log 8,62KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi008.log 2,70KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi009.log 3,16KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi010.log 1,79KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi011.log 3,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi012.log 1,79KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi013.log 2,45KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi014.log 1,79KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi015.log 2,26KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi016.log 1,68KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi017.log 2,26KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi018.log 2,41KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzmsi019.log 1,87KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpznop000.log 1,68KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzopt000.log 5,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpad000.htm 29,63KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpad001.htm 29,20KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpnp000.log 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpnp001.log 1,84KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpnp002.log 5,21KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl000.log 1,95KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl001.log 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl002.log 2,34KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl003.log 5,08KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl004.log 1,96KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl005.log 1,97KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl006.log 1,97KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl007.log 2,21KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl008.log 2,28KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl009.log 2,27KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl010.log 2,18KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl011.log 1,95KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzprl012.log 3,43KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpsc000.log 1,69KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpsc001.log 2,37KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzpsl000.log 5,01KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzrcn000.log 1,81KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzrcv000.log 2,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzrcv001.log 1,79KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzrcv002.log 2,15KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzrcv003.log 1,79KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzrei000.log 2,67KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset000.log 19,65KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset001.log 1,55KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset002.log 1,55KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset003.log 1,55KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset004.log 1,55KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset005.log 1,55KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzset006.log 3,81KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzshl000.log 1,50KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzshl001.log 0,10MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzshl002.log 1,50KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzshl003.log 1,50KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzsui000.log 2,96KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzwis000.log 1,42KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzwis001.log 1,43KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzwrp000.log 1,45KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzwrp001.log 1,53KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpzwup000.log 3,41KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpz_MSI.psmc3100_Help_install.log 190 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hpz_MSI.psmc3100_install.log 270 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\hp_sig1.gif 2,88KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\i626D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\i663F.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ib2D3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ibs35.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\idhF7.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IEC51.tmp 0,33MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IECD3.tmp 0,33MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT1.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT2.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT2B.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT2C.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT2D.xml 0,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT2E.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT2F.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT3.xml 0,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT30.xml 2,66MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT31.dtd 1022 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT32.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT33.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT34.xml 0,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT35.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT36.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT37.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT38.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT39.xml 0,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT3A.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT3B.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT4.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT5.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT6.xml 0,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT7.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT8.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT9.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT95.xml 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT96.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMT97.xml 0,77MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMTA.xml 426 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMTB.xml 2,66MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\IMTC.dtd 1022 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\InstHelp.dll 56,00KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\iv56C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\jbx10C.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\jilF6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\jnjA4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\jrpAB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\js3E8.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\k3qEF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\k4eDB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\k9w91.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\kb28E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ki059.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\KioskImageList.txt 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\kltEF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\km410E.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\kq0FB.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\kwiDF.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\l5cA0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ld675.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\ldt67.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lia114.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lic35.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lioB4.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lm15D.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lo9F6.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\logger.log 0,38MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lquBC.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\lsb110.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\m0eA3.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\m77A9.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\m883B.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\maj2B.tmp 0,12MB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR10.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR10B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR10C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR11.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR12.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR13.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR14.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR15.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR16.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR17.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR18.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR19.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR1F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR20.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR21.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR22.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR23.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR24.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR25.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR26.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR27.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR28.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR29.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR2F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR30.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR31.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR32.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR33.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR34.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR35.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR36.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR37.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR38.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR39.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR3F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR40.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR41.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR42.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR43.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR44.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR45.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR46.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR47.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR48.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR49.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR4F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR50.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR51.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR52.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR53.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR54.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR55.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR56.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR57.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR58.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR59.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR5F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR60.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR61.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR62.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR63.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR64.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR65.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR66.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR67.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR68.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR69.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR6F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR70.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR71.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR72.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR73.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR74.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR75.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR76.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR77.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR78.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR79.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR7F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR80.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR81.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR82.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR83.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR84.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR85.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR86.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR87.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR88.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR89.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR8F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR90.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR91.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR92.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR93.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR94.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR95.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR96.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR97.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR98.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR99.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9A.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9B.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9C.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9D.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9E.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAR9F.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA0.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA1.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA2.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA3.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA4.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA5.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA6.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA7.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA8.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARA9.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARAA.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARAB.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARAC.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARAD.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARAE.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARAF.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB0.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB1.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB2.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB3.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB4.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB5.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB6.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB7.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB8.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARB9.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARBA.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARBB.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARBC.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARBD.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARBE.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARBF.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC0.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC1.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC2.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC3.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC4.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC5.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC6.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC7.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC8.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARC9.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARCA.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARCB.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARCC.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARCD.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARCE.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARCF.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD0.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD1.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD2.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD3.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD4.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD5.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD6.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD7.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD8.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARD9.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARDA.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARDB.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARDC.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARDD.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARDE.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARDF.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE0.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE1.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE2.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE3.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE4.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE5.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE6.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE7.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE8.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARE9.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MAREA.tmp 1,25KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MARF.tmp 1,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\mc17A.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\mckC0.tmp 0 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\mdfix012.log 17 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+0gIc46I6E4AseikEIXXvk4BeYM= 31,56KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+2Fro52F2FGWS1WgznI0EQ2m9ic2F68= 25,53KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+A6JHSGl+5hZ5+LMo5lkqsSjsmk= 19,62KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+gQxrSAbFlavisAVcNCVAkxEkig= 708 bytes
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+JPkl52FoI9oNodYplOzmo2F5XLik= 28,85KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+KL+AIBVFw5S0kPrizhRqZaGeyU= 21,02KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+l2FD1VSPou1jU6FS2FyNtg5n6hR0= 2,09KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+olKN++ZDx+lgo0UWLSEpfRIy2FY= 25,43KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+pPnW7whVL2FMESei8WlwTFNuxjw= 1,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+UeeSM84GmAEHyS5BSteMApuGqQ= 28,76KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+V866X2FcUXK+DGWCCuo268+gJGE= 30,68KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+VNswMeGX6KelfBEkX6ermMbYvw= 21,75KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+YDAsVkFiwEhIibIwPFunEauMYE= 2,99KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\+yF0oLCTz2cP2agPrKGiY9Dh5Ow= 12,43KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0gXDNCkLCrSW5+SrMLGBreqYBU8= 29,47KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0Ieb+6ApzFEINngxL4FbDNBtkJU= 5,31KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0ME+BtGPERt5KtYWeeVrfhsAllk= 21,94KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0mjF8w3nFbRZek0fiN4ACZz5DJc= 26,78KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0NZ+HIupWNXoZkEEOFkU2FDBSnS8= 27,91KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0p8A63vuGzkMPj9NKEnkvDMPqrQ= 27,97KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0Rc19dr321E+svahJ1TYabXKJBM= 91,18KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0SFl0gfymF70eXRGPsgGoajV2Fc0= 4,64KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0SNQDwyfzJIWBNFXqXFbYsL+bCk= 2,24KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\0uszQNgStUuISf35CP5kwSu3Q44= 13,24KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\1kLUpkuyXMlDkYajWL6pKnjZ4yk= 15,71KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\1O74lkTXuyj2F2FqiMlbL3rr5j3ng= 26,98KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\1SiohGGmETmsFPMB6uVl99eQX9Q= 28,01KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2+tXnH21hDNlwENe+t5nIETENaA= 25,65KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\24YS1dJyTphlKZhNGS8y4XiqdxA= 4,62KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\25CNTM+bUgDAwNtQ30w5QoHWlTQ= 14,38KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\25ECaWwuUpREvYwe9tK5Jkl2Fj40= 37,19KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\26zYiL11QEGgMhAywGCfDFgzWsY= 8,03KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2c3LWR9YdFLe3ughoPngwmdRihc= 28,26KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FC+s2FSVib2FnzJ0BoVsqcKTQbpag= 28,78KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FdODdKCuGGdMKhvjhhTyWIiiAVk= 26,47KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FKCfeKM9IW2FlPRMCTMPvxqG8OIU= 14,32KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FmKm2FkXmaQ6sq+gyKzYCZI0mdpA= 71,11KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FNsjo0a2Fbu32FxVcI0Qq5Wm0oAmM= 6,74KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FoBPaXKDTELFikx8KNASzMfwG1g= 3,41KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FQAMWaMhJy2FSwx44aDDZ89g7J1A= 6,49KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FTyDQZsspXlNKzRNjYeCOTGL8C0= 19,43KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2FuSXRzL0xvcgC4KdwI9+mb3rJlE= 26,43KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2Fv14obFa1kbsOpYsEdhbM1540ig= 15,41KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2Hjg8mQVzGCT8PMUGucmBWjE5t0= 18,56KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2ihjLrPf7hW0sq7WCJRbU2+pK6Q= 3,63KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2LmpAgmMEOzfoaXLMovCs4NtC4A= 2,65KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2mm4EvF7tNiNLBN1EedOso+rjIw= 23,78KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2MOgvGPQ5CobBD9x1LkFPEkBUQo= 28,54KB
C:\DOCUME~1\Miradey\LOCALS~1\Temp\MessengerCache\2MtAOnjZ7Z292FnPX+Cf2LXgHb
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
easyclyner57 Messages postés 292 Date d'inscription   Statut Membre Dernière intervention   10
 
ok fait cela

Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp

https://www.bitdefender.com/toolbox/
0
Mimi2lyon Messages postés 30 Statut Membre
 
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------

+ Créé à: 18:34:01 11/02/2007

+ Résultat de l'analyse:

:mozilla.9:C:\Documents and Settings\Miradey\Application Data\Mozilla\Firefox\Profiles\rtt5u62f.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.

Fin du rapport
0
Mimi2lyon Messages postés 30 Statut Membre
 
BitDefender Online Scanner

Scan report generated at: Sun, Feb 11, 2007 - 19:57:11

Scan path: A:\;C:\;D:\;

Statistics

Time
01:19:33

Files
403931

Folders
3582

Boot Sectors
2

Archives
1711

Packed Files
48419

Results

Identified Viruses
1

Infected Files
3

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
2

Engines Info

Virus Definitions
420049

Engine build
AVCORE v1.0 (build 2371) (i386) (Dec 13 2006 11:16:42)

Scan plugins
14

Archive plugins
38

Unpack plugins
6

E-mail plugins
6

System plugins
1

Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions

Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes

Scanned File
Status

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP98\A0023181.exe=>(RAR Sfx o)=>kernel.exe
Infected with: Generic.Banker.Delf.D5B6641B

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP98\A0023181.exe=>(RAR Sfx o)=>kernel.exe
Disinfection failed

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP98\A0023181.exe=>(RAR Sfx o)=>kernel.exe
Deleted

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP98\A0023181.exe=>(RAR Sfx o)
Update failed

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP99\A0023274.exe=>(RAR Sfx o)=>kernel.exe
Infected with: Generic.Banker.Delf.D5B6641B

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP99\A0023274.exe=>(RAR Sfx o)=>kernel.exe
Disinfection failed

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP99\A0023274.exe=>(RAR Sfx o)=>kernel.exe
Deleted

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP99\A0023274.exe=>(RAR Sfx o)
Update failed

C:\WINDOWS\kernel.exe
Infected with: Generic.Banker.Delf.D5B6641B

C:\WINDOWS\kernel.exe
Disinfection failed

C:\WINDOWS\kernel.exe
Delete failed
0
Mimi2lyon Messages postés 30 Statut Membre
 
nouvo report HIJACKTHIS :

Logfile of HijackThis v1.99.1
Scan saved at 20:04:46, on 11/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\windows\kernel.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\a-squared Anti-Malware\a2guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\livecall.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CAMTRAY.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Windows Messenger] C:\windows\msnmsgr2.exe
O4 - HKCU\..\Run: [Logon de rede] C:\windows\kernel.exe
O4 - HKCU\..\Run: [Notepad] C:\WINDOWS\NOTEEPAD.exe
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://www.cambodianradio.net/wfActivxPlayer12/tdserver.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{015F9E2B-49A9-4672-B51F-05510B78C3AA}: NameServer = 84.103.237.144 86.64.145.144
O17 - HKLM\System\CS1\Services\Tcpip\..\{015F9E2B-49A9-4672-B51F-05510B78C3AA}: NameServer = 84.103.237.144 86.64.145.144
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
easyclyner57 Messages postés 292 Date d'inscription   Statut Membre Dernière intervention   10
 
ok fait cela et dit moi ou en sont tes problems stp

Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"

¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".

Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:

Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
0
Mimi2lyon Messages postés 30 Statut Membre
 
ça y est g créé mon point de restauration
par contre je ne saurai pas dire si mon pb est réglé ou pas
0
Mimi2lyon Messages postés 30 Statut Membre
 
mon problème n'est pas résolu !!!!!!!!!!!!!!!!!!!!!!!!!!!
je me demande si ce n'est pas pire ! mon ordi rame et les msgs en portugais sont tjs envoyés à tous mes contacts !
vite aidez moi à trouver une solution parce ke je commence à péter un cable sérieusement ! ça me casse les ****
0
zBr
 
Salut

Télécharge ceci
Dézippe-le (clic droit dessus>extraire)
lance le fichier yingfix.bat et copie et colle le rapport qu'il générera à la fin de son exécution.

a+
0
Mimi2lyon Messages postés 30 Statut Membre
 
Fichiers supprimés:

C:\WINDOWS\msnmsgr2.exe
C:\WINDOWS\kernel.exe
0
zBr
 
Salut

Du mieux ?
Toujours des soucis ?

Reposte un rapport Hijackthis pour vérifs.

a++
0
Mimi2lyon Messages postés 30 Statut Membre
 
salut !

bah rien de mieux ! enfin, je ne pense pas ke le pb soit résolu !

rapport hijackthis :

Logfile of HijackThis v1.99.1
Scan saved at 20:06:52, on 13/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Winamp\Winampa.exe
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\a-squared Anti-Malware\a2guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\AntiVir PersonalEdition Classic\avcenter.exe
C:\Program Files\AntiVir PersonalEdition Classic\avscan.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\livecall.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Miradey\Bureau\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CAMTRAY.EXE
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Notepad] C:\WINDOWS\NOTEEPAD.exe
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://www.cambodianradio.net/wfActivxPlayer12/tdserver.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{015F9E2B-49A9-4672-B51F-05510B78C3AA}: NameServer = 86.64.145.143 84.103.237.143
O17 - HKLM\System\CS1\Services\Tcpip\..\{015F9E2B-49A9-4672-B51F-05510B78C3AA}: NameServer = 86.64.145.143 84.103.237.143
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
zBr
 
Salut

Pourtant il n'y a plus rien de suspect dans ton rapport hijackthis et les deux fichiers vérolés ont été supprimés.
Est-ce que tu envois toujours des messages en portugais ?

Par acquis de conscience et si tu ne connais pas ce processus, fait le analyser sur ce site:
http://www.virustotal.com/en/virustotalx.html
clic sur parcourir et selectionne:
C:\WINDOWS\NOTEEPAD.exe
puis clic sur send.
Copie et colle le rapport.

a+
0
Mimi2lyon Messages postés 30 Statut Membre
 
Complete scanning result of "NOTEEPAD.exe", received in VirusTotal at 02.13.2007, 20:19:17 (CET).

Antivirus Version Update Result
AntiVir 7.3.1.37 02.13.2007 HEUR/Malware
Authentium 4.93.8 02.12.2007 no virus found
Avast 4.7.936.0 02.13.2007 no virus found
AVG 386 02.13.2007 no virus found
BitDefender 7.2 02.13.2007 no virus found
CAT-QuickHeal 9.00 02.13.2007 (Suspicious) - DNAScan
ClamAV devel-20060426 02.13.2007 no virus found
DrWeb 4.33 02.13.2007 no virus found
eSafe 7.0.14.0 02.12.2007 Suspicious Trojan/Worm
eTrust-Vet 30.4.3394 02.13.2007 no virus found
Ewido 4.0 02.13.2007 no virus found
Fortinet 2.85.0.0 02.13.2007 no virus found
F-Prot 4.2.1.29 02.12.2007 no virus found
F-Secure 6.70.13030.0 02.13.2007 no virus found
Ikarus T3.1.0.31 02.13.2007 Trojan-Dropper.Win32.Microjoin.R
Kaspersky 4.0.2.24 02.13.2007 no virus found
McAfee 4961 02.12.2007 no virus found
Microsoft 1.2204 02.13.2007 no virus found
NOD32v2 2057 02.13.2007 no virus found
Norman 5.80.02 02.13.2007 no virus found
Panda 9.0.0.4 02.13.2007 Trj/Microjoin.AW
Prevx1 V2 02.13.2007 Covert.Sys.Exec
Sophos 4.14.0 02.13.2007 no virus found
Sunbelt 2.2.907.0 02.09.2007 VIPRE.Suspicious
Symantec 10 02.13.2007 no virus found
TheHacker 6.1.6.056 02.11.2007 no virus found
UNA 1.83 02.13.2007 no virus found
VBA32 3.11.2 02.13.2007 no virus found
VirusBuster 4.3.19:9 02.13.2007 no virus found

Aditional Information
File size: 91136 bytes
MD5: fed1477b299209e534bb938a4d0d53f7
SHA1: 2748c05d7215b69282b7f86afbfa95b7ed1119f6
packers: PECOMPACT
packers: PecBundle, PECompact
Prevx info: http://fileinfo.prevx.com/fileinfo.asp?PXC=d94174854506
Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
0
zBr
 
Ouep, il est vérolé.

Lance hijackthis et clic sur [Do a system scan only]
coches la case au début des lignes suivantes:

O4 - HKCU\..\Run: [Notepad] C:\WINDOWS\NOTEEPAD.exe

valider en cliquant sur le bouton [Fix checked]
puis

Recherche et supprime : C:\WINDOWS\NOTEEPAD.exe
(ne confond pas avec NOTEPAD.EXE qui lui est ok )

Redemarre le pc et fais le scanner ici:
https://www.kaspersky.fr/downloads
Et copie et colle le rapport ici et dis moi s'il y a du mieux ou pas après ces manips.

a++
0
Mimi2lyon Messages postés 30 Statut Membre
 
KASPERSKY ONLINE SCANNER REPORT
Tuesday, February 13, 2007 10:17:26 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 13/02/2007
Kaspersky Anti-Virus database records: 252481

Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\

Scan Statistics
Total number of scanned objects 35056
Number of viruses found 0
Number of infected objects 0 / 0
Number of suspicious objects 0
Duration of the scan process 00:52:16

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\2007-02-13_Log.ALUSchedulerSvc.LiveUpdate Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\Miradey\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Messenger\miradey69@hotmail.com\SharingMetadata\Logs\Dfsr00005.log Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Messenger\miradey69@hotmail.com\SharingMetadata\pending.dat Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Messenger\miradey69@hotmail.com\SharingMetadata\Working\database_BAC8_23D2_C823_8BA7\dfsr.db Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Messenger\miradey69@hotmail.com\SharingMetadata\Working\database_BAC8_23D2_C823_8BA7\fsr.log Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Messenger\miradey69@hotmail.com\SharingMetadata\Working\database_BAC8_23D2_C823_8BA7\fsrtmp.log Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Messenger\miradey69@hotmail.com\SharingMetadata\Working\database_BAC8_23D2_C823_8BA7\tmp.edb Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Windows Live Contacts\miradey69@hotmail.com\real\members.stg Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Application Data\Microsoft\Windows Live Contacts\miradey69@hotmail.com\shadow\members.stg Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Historique\History.IE5\MSHist012007021320070214\index.dat Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Temp\hpodvd09.log Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Temp\~DF3A13.tmp Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Temp\~DF3AB8.tmp Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Temp\~DF67D.tmp Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Temp\~DF68E.tmp Object is locked skipped

C:\Documents and Settings\Miradey\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Miradey\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Miradey\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SPPolicy.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SPStart.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SPStop.log Object is locked skipped

C:\Program Files\Norton AntiVirus\AVApp.log Object is locked skipped

C:\Program Files\Norton AntiVirus\AVError.log Object is locked skipped

C:\Program Files\Norton AntiVirus\AVVirus.log Object is locked skipped

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

C:\System Volume Information\_restore{5DC47683-1972-4AAC-B2EF-CFA585FF2954}\RP117\change.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\Internet Logs\fwdbglog.txt Object is locked skipped

C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped

C:\WINDOWS\Internet Logs\IAMDB.RDB Object is locked skipped

C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped

C:\WINDOWS\Internet Logs\UNICORNI-C17C06.ldb Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\EventCache\{0683BECB-E74D-4134-9154-15373346A02E}.bin Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\default Object is locked skipped

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

C:\WINDOWS\system32\config\SAM Object is locked skipped

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\system32\config\software Object is locked skipped

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\system Object is locked skipped

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

C:\WINDOWS\system32\h323log.txt Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\Temp\ZLT03302.TMP Object is locked skipped

C:\WINDOWS\Temp\ZLT03d24.TMP Object is locked skipped

C:\WINDOWS\wiadebug.log Object is locked skipped

C:\WINDOWS\wiaservc.log Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.
0
zBr
 
Le scan en ligne n'indique aucun virus.

le fichier NOTEEPAD.EXE n'a pas posé de problèmes particulier pour sa suppression ?

Est-ce que tu as toujours des soucis avec les mails envoyés à ton insu à tes contacts sur MSN ?

a+
0