Probleme IEXPLORE
Résolu/Fermé
le halam
Messages postés
177
Date d'inscription
vendredi 22 juin 2007
Statut
Membre
Dernière intervention
3 novembre 2015
-
22 juin 2007 à 19:51
FillPCA Messages postés 2242 Date d'inscription samedi 21 avril 2007 Statut Contributeur sécurité Dernière intervention 18 février 2023 - 17 juin 2008 à 10:59
FillPCA Messages postés 2242 Date d'inscription samedi 21 avril 2007 Statut Contributeur sécurité Dernière intervention 18 février 2023 - 17 juin 2008 à 10:59
17 réponses
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
17 juin 2008 à 10:59
17 juin 2008 à 10:59
Sans doute. C'est pour cela qu'il faut ouvrir un sujet pour obtenir une aide personnalisée.
Le problème cité ici n'a rien à voir avec l'énoncé du problème à l'origine de ce sujet :
Il ne faut pas tout mélanger si on veut obtenir de l'aide de la part des bénévoles et respecter les règles des forums.
FillPCA
Le problème cité ici n'a rien à voir avec l'énoncé du problème à l'origine de ce sujet :
bonjour, j'ai trouvé la présence dans mon processus de trois IEXPLORE.EXE qui me prennent 50 mo, 7 mo, et 6 mo de mémoire vive ainsi qu'un cheval de troie. comment pourrai-je faire? j'ai tout essayé.
Il ne faut pas tout mélanger si on veut obtenir de l'aide de la part des bénévoles et respecter les règles des forums.
FillPCA
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
24 juin 2007 à 13:50
24 juin 2007 à 13:50
Re,
Symantec est un antivirus et non un firewall.
Le firewall de Windows ne filtre aucun flux sortant. Il est donc insuffisant.
Zone alarm : https://www.zonealarm.com/
Outpost : http://www.agnitum.com/products/outpostfree/index.php
Sygate : http://www.simtel.net/product.php?id=53687
FillPCA
Symantec est un antivirus et non un firewall.
Le firewall de Windows ne filtre aucun flux sortant. Il est donc insuffisant.
Zone alarm : https://www.zonealarm.com/
Outpost : http://www.agnitum.com/products/outpostfree/index.php
Sygate : http://www.simtel.net/product.php?id=53687
FillPCA
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
22 juin 2007 à 22:30
22 juin 2007 à 22:30
Re,
1) Désinstalle ceci dans ajout/suppression des programmes :
Megaupload toolbar
Adverts
Else plus
Redémarre le PC.
2)
* Télécharge FixWareout d'un de ces deux sites sur le bureau:
http://downloads.subratam.org/Fixwareout.exe
http://swandog46.geekstogo.com/Fixwareout.exe
* Lance le fix: clique sur Next, puis Install, puis assure toi que "Run fixit" est activé puis clique sur Finish.
* Le fix va commencer, suis les messages à l'écran.
* Il te sera demandé de redémarrer ton ordinateur, fais le. Ton système mettra un peu plus de temps au démarrage, c'est normal.
* Poste (Copie/colle) le contenu du rapport qui va s'afficher à l'écran (report.txt)
3) * Prière d'imprimer ces instructions, ou de les coller dans un fichier texte pour lecture en mode Sans Échec.
* Télécharge Brute Force Uninstaller (de Merijn) : http://www.merijn.org/files/bfu.zip
* Créé un nouveau dossier directement sur le C:\ et nomme-le BFU. Décompresse le fichier téléchargé dans ce nouveau dossier (C:\BFU).
* Fais un clic droit ici : http://perso.orange.fr/Chercheur-perso/scripts/toolbar.bfu
et choisis "Enregistrer la cible sous..." afin de télécharger toolbar.bfu (de Chercheur). Sauvegarde dans le dossier créé (C:\BFU). **Note : si tu utlises Internet Explorer; lors de la sauvegarde, assure-toi que le champs "Type :" affiche "Tous les fichiers". Tu dois maintenant avoir deux fichiers dans le dossier C:\BFU : toolbar.bfu et BFU.exe (très important).
* Redémarre en mode Sans Échec : au redémarrage, tapote immédiatement la touche F8 ou F5 ; tu verras un écran avec choix de démarrages apparaître. Utilisant les flèches du clavier, choisis "Mode Sans Échec" et valide avec "Entrée". Choisis ton compte usuel, et non Administrateur.
* Démarre le "Brute Force Uninstaller" en double-cliquant BFU.exe (du dossier C:\BFU).
o Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur : toolbar.bfu
o Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci : C:\BFU\toolbar.bfu
o Clique sur Execute et laisse-le faire son travail.
o Attendre que Complete script execution apparaîsse et clique sur OK.
o Clique Exit pour fermer le programme BFU.
* Redémarre normalement.
4) Déplace Hijackthis dans un répertoire dédié comme C:\HJT. Pour cela, fais un clic droit sur l'archive et choisis "extraire vers...">C:\HJT
5) Ouvre Hijackthis>"Do a scan only" et coche ceci :
R3 - URLSearchHook: (no name) - - (no file)
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
6) * Télécharge OTMoveIt (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :
C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
C:\Documents and Settings\LocalService\Local Settings\Application Data\Else plus
C:\WINDOWS\Tasks\AD992BE591A6A18D.job
C:\Program Files\Adverts
C:\Program Files\Else plus
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
7) Télécharge Ccleaner : http://www.filehippo.com/download/9838386a743262a2d7aaedfb3b432ae2/download/
Installe-le en décochant la toolbar Yahoo !
Ouvre Ccleaner, clique sur "analyse" puis "lancer le nettoyage".
8) Télécharge AVGantispyware : https://www.avg.com/en-ww/free-antivirus-download
Tu l'installes.
Lance AVG Anti-Spyware et clique sur le bouton Mise à jour. Patiente.
Clique sur le bouton Analyse (de la barre d'outils)
Puis sur l'onglets Comment réagir, clique sur Actions recommandées. Sélectionne Quarantaine.
Reviens à l'onglet Analyse. Clique sur Analyse complète du système.
A la fin du scan, choisis l'option " Appliquer toutes les actions " en bas. Ensuite.
Clique sur "Enregistrer le rapport". Ceci génère un rapport en fichier texte qui se trouve dans le dossier Reports du dossier d'AVG Anti-Spyware.
9) * Télécharge DiagHelp.zip sur ton bureau(Merci Malekal) : http://www.malekal.com/download/DiagHelp.zip
Tuto : http://www.malekal.com/DiagHelp/DiagHelp.php
* Ne double-clique pas dessus !! Fais un clic droit sur le fichier et extraire tout.
* Un nouveau dossier chercher va être créé.
* Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
* Une fenêtre va s'ouvrir, choisis l'option 1
* L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande.
* A la fin de l'analyse, le programme de dmeande de redémarrer ton PC. Fais-le.
* Une fenêtre avec le rapport s'ouvre alors. Copie/colle son contenu. (Il se trouve aussi ici : c:\resultat.txt)
* Double-clique sur ce fichier, Fais CTRL+A puis CTRL+C.
* Dans ta prochaine réponse, colle le rapport en faisant CTRL+V.
10) Edite ces rapports :
Fixwareout, OTMoveIt, AVGantispyware, diaghelp et nouveau rapport Hijackthis.
A demain.
FillPCA
1) Désinstalle ceci dans ajout/suppression des programmes :
Megaupload toolbar
Adverts
Else plus
Redémarre le PC.
2)
* Télécharge FixWareout d'un de ces deux sites sur le bureau:
http://downloads.subratam.org/Fixwareout.exe
http://swandog46.geekstogo.com/Fixwareout.exe
* Lance le fix: clique sur Next, puis Install, puis assure toi que "Run fixit" est activé puis clique sur Finish.
* Le fix va commencer, suis les messages à l'écran.
* Il te sera demandé de redémarrer ton ordinateur, fais le. Ton système mettra un peu plus de temps au démarrage, c'est normal.
* Poste (Copie/colle) le contenu du rapport qui va s'afficher à l'écran (report.txt)
3) * Prière d'imprimer ces instructions, ou de les coller dans un fichier texte pour lecture en mode Sans Échec.
* Télécharge Brute Force Uninstaller (de Merijn) : http://www.merijn.org/files/bfu.zip
* Créé un nouveau dossier directement sur le C:\ et nomme-le BFU. Décompresse le fichier téléchargé dans ce nouveau dossier (C:\BFU).
* Fais un clic droit ici : http://perso.orange.fr/Chercheur-perso/scripts/toolbar.bfu
et choisis "Enregistrer la cible sous..." afin de télécharger toolbar.bfu (de Chercheur). Sauvegarde dans le dossier créé (C:\BFU). **Note : si tu utlises Internet Explorer; lors de la sauvegarde, assure-toi que le champs "Type :" affiche "Tous les fichiers". Tu dois maintenant avoir deux fichiers dans le dossier C:\BFU : toolbar.bfu et BFU.exe (très important).
* Redémarre en mode Sans Échec : au redémarrage, tapote immédiatement la touche F8 ou F5 ; tu verras un écran avec choix de démarrages apparaître. Utilisant les flèches du clavier, choisis "Mode Sans Échec" et valide avec "Entrée". Choisis ton compte usuel, et non Administrateur.
* Démarre le "Brute Force Uninstaller" en double-cliquant BFU.exe (du dossier C:\BFU).
o Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur : toolbar.bfu
o Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci : C:\BFU\toolbar.bfu
o Clique sur Execute et laisse-le faire son travail.
o Attendre que Complete script execution apparaîsse et clique sur OK.
o Clique Exit pour fermer le programme BFU.
* Redémarre normalement.
4) Déplace Hijackthis dans un répertoire dédié comme C:\HJT. Pour cela, fais un clic droit sur l'archive et choisis "extraire vers...">C:\HJT
5) Ouvre Hijackthis>"Do a scan only" et coche ceci :
R3 - URLSearchHook: (no name) - - (no file)
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
6) * Télécharge OTMoveIt (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :
C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
C:\Documents and Settings\LocalService\Local Settings\Application Data\Else plus
C:\WINDOWS\Tasks\AD992BE591A6A18D.job
C:\Program Files\Adverts
C:\Program Files\Else plus
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
7) Télécharge Ccleaner : http://www.filehippo.com/download/9838386a743262a2d7aaedfb3b432ae2/download/
Installe-le en décochant la toolbar Yahoo !
Ouvre Ccleaner, clique sur "analyse" puis "lancer le nettoyage".
8) Télécharge AVGantispyware : https://www.avg.com/en-ww/free-antivirus-download
Tu l'installes.
Lance AVG Anti-Spyware et clique sur le bouton Mise à jour. Patiente.
Clique sur le bouton Analyse (de la barre d'outils)
Puis sur l'onglets Comment réagir, clique sur Actions recommandées. Sélectionne Quarantaine.
Reviens à l'onglet Analyse. Clique sur Analyse complète du système.
A la fin du scan, choisis l'option " Appliquer toutes les actions " en bas. Ensuite.
Clique sur "Enregistrer le rapport". Ceci génère un rapport en fichier texte qui se trouve dans le dossier Reports du dossier d'AVG Anti-Spyware.
9) * Télécharge DiagHelp.zip sur ton bureau(Merci Malekal) : http://www.malekal.com/download/DiagHelp.zip
Tuto : http://www.malekal.com/DiagHelp/DiagHelp.php
* Ne double-clique pas dessus !! Fais un clic droit sur le fichier et extraire tout.
* Un nouveau dossier chercher va être créé.
* Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
* Une fenêtre va s'ouvrir, choisis l'option 1
* L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande.
* A la fin de l'analyse, le programme de dmeande de redémarrer ton PC. Fais-le.
* Une fenêtre avec le rapport s'ouvre alors. Copie/colle son contenu. (Il se trouve aussi ici : c:\resultat.txt)
* Double-clique sur ce fichier, Fais CTRL+A puis CTRL+C.
* Dans ta prochaine réponse, colle le rapport en faisant CTRL+V.
10) Edite ces rapports :
Fixwareout, OTMoveIt, AVGantispyware, diaghelp et nouveau rapport Hijackthis.
A demain.
FillPCA
Re FillPCA,
Voici les résultats de ta demande ^^:
1)rapport fixwareout:
Fixwareout Last edited 6/20/2007
Post this report in the forums please
...
»»»»»Prerun check
Cache de résolution DNS vidé.
2)rapport OTMOVEIT...:
C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe moved successfully.
File/Folder C:\Documents and Settings\LocalService\Local Settings\Application Data\Else plus not found.
C:\WINDOWS\Tasks\AD992BE591A6A18D.job moved successfully.
C:\Program Files\Adverts moved successfully.
C:\Program Files\Else plus moved successfully.
Created on 06/23/2007 00:10:11
3)rapport DiagHelp:
DiagHelp version v1.1.2 - http://www.malekal.com
excute le 23/06/2007 à 2:10:02,54
Liste des derniers fichies modifies/crees dans windir\system32
C:\WINDOWS\System32/drivers\AvgAsCln.sys -->30/05/2007 14:10:42
C:\WINDOWS\System32/drivers\bbcap.sys -->18/05/2007 21:39:56
C:\WINDOWS\System32/drivers\sptd.sys -->29/04/2007 23:42:58
C:\WINDOWS\System32/drivers\aswmon.sys -->14/04/2007 09:47:46
C:\WINDOWS\System32/drivers\aswmon2.sys -->14/04/2007 09:47:32
C:\WINDOWS\System32/drivers\aswRdr.sys -->14/04/2007 09:45:36
C:\WINDOWS\System32/drivers\aswTdi.sys -->14/04/2007 09:44:52
C:\WINDOWS\System32\PerfStringBackup.TMP -->23/06/2007 02:06:00
C:\WINDOWS\System32\CompiledAdapter -->23/06/2007 02:02:14
C:\WINDOWS\System32\ddeeg.ini -->23/06/2007 02:01:40
C:\WINDOWS\System32\OODBS.lor -->23/06/2007 02:01:16
C:\WINDOWS\System32\ddeeg.bak1 -->22/06/2007 23:03:12
C:\WINDOWS\System32\geedd.dll -->22/06/2007 23:02:58
C:\WINDOWS\System32\wpa.dbl -->22/06/2007 18:16:22
C:\WINDOWS\System32\CONFIG.NT -->21/06/2007 14:25:30
C:\WINDOWS\System32\iklog.log -->20/06/2007 21:32:36
C:\WINDOWS\System32\ClickToFindandFixErrors_Intl.ico -->20/06/2007 13:11:48
C:\WINDOWS\System32\qrutv.bak1 -->20/06/2007 12:53:18
C:\WINDOWS\System32\qrutv.ini -->20/06/2007 12:53:18
C:\WINDOWS\System32\6_exception.nls -->20/06/2007 11:27:18
C:\WINDOWS\System32\CmdLineExt03.dll -->20/06/2007 00:08:44
C:\WINDOWS\System32\FNTCACHE.DAT -->19/06/2007 15:33:34
C:\WINDOWS\System32\GDIPFONTCACHEV1.DAT -->19/06/2007 11:55:38
C:\WINDOWS\System32\ioloBootDefrag.cfg -->10/06/2007 09:36:38
C:\WINDOWS\System32\libssl32.dll -->25/05/2007 23:00:08
C:\WINDOWS\System32\d3d8caps.dat -->18/05/2007 21:54:38
C:\WINDOWS\System32\bbchlp.dll -->18/05/2007 21:39:56
C:\WINDOWS\System32\bbcap.dll -->18/05/2007 21:39:56
C:\WINDOWS\System32\MsgPlusLoader.dll -->17/05/2007 16:19:18
C:\WINDOWS\System32\BASSMOD.dll -->13/05/2007 15:24:24
C:\WINDOWS\System32\rlxf.dll -->10/05/2007 12:46:08
C:\WINDOWS\System32\tcggtmxl.ini -->02/05/2007 12:24:48
C:\WINDOWS\setupapi.log -->23/06/2007 02:07:18
C:\WINDOWS\wiadebug.log -->23/06/2007 02:03:44
C:\WINDOWS\bootstat.dat -->23/06/2007 02:01:20
C:\WINDOWS\SchedLgU.Txt -->23/06/2007 02:00:16
C:\WINDOWS\wiaservc.log -->23/06/2007 01:59:52
C:\WINDOWS\bthservsdp.dat -->23/06/2007 01:59:48
C:\WINDOWS\WindowsUpdate.log -->23/06/2007 01:59:42
C:\WINDOWS\SysMech6.INI -->21/06/2007 00:49:32
C:\WINDOWS\_MSRSTRT.EXE -->20/06/2007 22:34:32
C:\WINDOWS\wr.txt -->20/06/2007 11:48:04
C:\WINDOWS\NeroDigital.ini -->20/06/2007 10:58:04
C:\WINDOWS\MovingPicture.ini -->19/06/2007 16:16:48
C:\WINDOWS\ODBCINST.INI -->19/06/2007 00:57:22
C:\WINDOWS\win.ini -->25/05/2007 17:04:08
C:\WINDOWS\langorig.ini -->19/05/2007 14:13:46
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system
23/08/2001 05:00 9 728 regsvr32.exe
1 fichier(s) 9 728 octets
0 Rép(s) 50 584 125 440 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system32
05/08/2004 05:00 6 144 csrss.exe
1 fichier(s) 6 144 octets
0 Rép(s) 50 584 125 440 octets libres
Contenu de Downloaded Program Files
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\Downloaded Program Files
22/03/2005 14:20 <REP> .
22/03/2005 14:20 <REP> ..
22/03/2005 14:20 65 desktop.ini
14/08/2005 00:26 113 664 MsnMessengerSetupDownloader.ocx
08/10/2004 16:01 372 736 MsnPUpld.dll
25/07/2002 18:13 24 576 dwusplay.dll
25/07/2002 18:13 196 608 dwusplay.exe
16/06/2004 06:02 323 584 isusweb.dll
31/05/2006 04:15 10 oscan81.ocx_x
18/02/2005 16:22 126 live.ini
09/03/2005 15:43 6 828 scanoptions.tsi
09/03/2005 15:42 6 742 lang.ini
01/03/2005 14:08 53 248 ipsupd.dll
01/03/2005 14:08 118 784 bdupd.dll
07/12/2004 16:07 32 libfn.dll
07/12/2004 16:07 32 bdcore.dll
01/06/2006 02:54 471 040 oscan8.ocx
01/06/2006 02:57 1 331 oscan8.inf
16 fichier(s) 1 689 406 octets
Total des fichiers listés :
16 fichier(s) 1 689 406 octets
2 Rép(s) 50 584 125 440 octets libres
Recherche de rootkit! (Merci S!Ri)
Recherche d'infections connues
Export des clefs sensibles..
Liste des fichiers en exception sur le pare-feu XP SP2
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Messenger\\MSMSGS.EXE"="C:\\Program Files\\Messenger\\MSMSGS.EXE:*:Enabled:Windows Messenger"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\WINDOWS\\System32\\dpvsetup.exe"="C:\\WINDOWS\\System32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINDOWS\\System32\\RUNDLL32.EXE"="C:\\WINDOWS\\System32\\RUNDLL32.EXE:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\\Program Files\\JVTorrent\\btdownloadgui.exe"="C:\\Program Files\\JVTorrent\\btdownloadgui.exe:*:Enabled:btdownloadgui"
"C:\\Program Files\\VideoLAN\\VLC\\vlc.exe"="C:\\Program Files\\VideoLAN\\VLC\\vlc.exe:*:Enabled:VLC media player"
"C:\\Program Files\\BearShare\\BearShare.exe"="C:\\Program Files\\BearShare\\BearShare.exe:*:Enabled:BearShare"
"C:\\Program Files\\BitComet\\BitComet.exe"="C:\\Program Files\\BitComet\\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14A.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14A.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"c:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osC.tmp\\ossproxy.exe"="c:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osC.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:*:Enabled:eMule"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osFC.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osFC.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14E.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14E.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osB.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osB.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Bureau\\Emule Xtreme\\emule.exe"="C:\\Documents and Settings\\thomas torrente\\Bureau\\Emule Xtreme\\emule.exe:*:Enabled:eMule"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os2D.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os2D.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus"
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\FlashGet\\FlashGet.exe"="C:\\Program Files\\FlashGet\\FlashGet.exe:*:Enabled:Flashget"
"C:\\Documents and Settings\\thomas torrente\\Mes documents\\DL\\IPmsn.exe"="C:\\Documents and Settings\\thomas torrente\\Mes documents\\DL\\IPmsn.exe:*:Enabled:IPmsn"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os4.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os4.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\BitLord\\BitLord.exe"="C:\\Program Files\\BitLord\\BitLord.exe:*:Enabled:BitLord"
"C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe:*:Enabled:pes6.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\Pmc.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\Pmc.exe:LocalSubNet:Enabled:Pmc.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Spooler.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Spooler.exe:LocalSubNet:Enabled:PMC.Tvtv.Spooler.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\PSST.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PSST.exe:LocalSubNet:Enabled:PSST.exe"
"C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaManager\\PMSManager.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaManager\\PMSManager.exe:LocalSubNet:Enabled:PMSManager.exe"
"C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaServer\\PMSInstallInit.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaServer\\PMSInstallInit.exe:LocalSubNet:Enabled:PMSInstallInit.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Wizard.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Wizard.exe:LocalSubNet:Enabled:PMC.Tvtv.Wizard.exe"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
"C:\\Program Files\\counter strike source\\srcds.exe"="C:\\Program Files\\counter strike source\\srcds.exe:*:Enabled:srcds"
"C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaCenterService\\PMC.Service.Main.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaCenterService\\PMC.Service.Main.exe:LocalSubNet:Disabled:PMCService"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osA.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osA.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe:*:Enabled:Render Manager"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe:*:Enabled:Studio"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe:*:Enabled:PMSRegisterFile"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe:*:Enabled:umi"
"C:\\Valve\\Condition Zero\\czero.exe"="C:\\Valve\\Condition Zero\\czero.exe:*:Enabled:Condition Zero Launcher"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
Export de la clef SharedTaskScheduler
[SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"
Rechercher adresses sensibles dans le fichier HOSTS...
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
REGEDIT4
[taskmgr.exe]
catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-06-23 02:10:43
Windows 5.1.2600 Service Pack 2 FAT NTAPI
scanning hidden files ...
scan completed successfully
hidden files: 0
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Process list by traversal of KiWaitListHead
4 - System
188 - PMSHOST.EXE
360 - SPOOLSV.EXE
668 - taskmgr.exe
700 - guard.exe
780 - DEVSVC.EXE
876 - SQLSERVR.EXE
1004 - CSRSS.EXE
1028 - WINLOGON.EXE
1072 - SERVICES.EXE
1084 - LSASS.EXE
1272 - SVCHOST.EXE
1324 - SVCHOST.EXE
1384 - SVCHOST.EXE
1420 - STYLEXPSERVICE.
1444 - SVCHOST.EXE
1552 - SVCHOST.EXE
1604 - OODAG.EXE
1672 - RTVSCAN.EXE
1844 - ASHSERV.EXE
1860 - ATI2EVXX.EXE
1884 - cmd.exe
2148 - ashMaiSv.exe
2200 - ashWebSv.exe
2844 - iexplore.exe
3132 - ctfmon.exe
3788 - wmiprvse.exe
Total number of processes = 27
NOTE: Under WinXP, this will not show all processes.
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Driver/Module list by traversal of PsLoadedModuleList
804D7000 - \WINDOWS\system32\KERNEL1.EXE
80717000 - \WINDOWS\system32\hal.dll
F8C50000 - \WINDOWS\system32\KDCOM.DLL
F8B60000 - \WINDOWS\system32\BOOTVID.dll
F8647000 - sptd.sys
F8C52000 - \WINDOWS\System32\Drivers\WMILIB.SYS
F862F000 - \WINDOWS\System32\Drivers\SCSIPORT.SYS
F8609000 - d347bus.sys
F85DA000 - ACPI.sys
F8750000 - isapnp.sys
F85C9000 - pci.sys
F8D18000 - pciide.sys
F89D0000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
F8C54000 - intelide.sys
F8760000 - MountMgr.sys
F85AA000 - ftdisk.sys
F89D8000 - PartMgr.sys
F8770000 - VolSnap.sys
F8592000 -
F8C56000 - d347prt.sys
F8780000 - disk.sys
F8790000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
F8572000 - fltMgr.sys
F8560000 - sr.sys
F89E0000 - PxHelp20.sys
F853D000 - Fastfat.sys
F8526000 - KSecDD.sys
F8513000 - WudfPf.sys
F84E6000 - NDIS.sys
F87A0000 - ohci1394.sys
F87B0000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
F84CB000 - Mup.sys
F89E8000 - BTHidMgr.sys
F87E0000 - \SystemRoot\system32\DRIVERS\nic1394.sys
F8C24000 - \SystemRoot\system32\DRIVERS\tunmp.sys
F87F0000 - \SystemRoot\system32\DRIVERS\intelppm.sys
F8387000 - \SystemRoot\system32\DRIVERS\ati2mtag.sys
F8373000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
F834E000 - \SystemRoot\system32\DRIVERS\HDAudBus.sys
F8A10000 - \SystemRoot\system32\DRIVERS\usbuhci.sys
F832B000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
F8A18000 - \SystemRoot\system32\DRIVERS\usbehci.sys
F8267000 - \SystemRoot\system32\DRIVERS\3xHybrid.sys
F8244000 - \SystemRoot\system32\DRIVERS\ks.sys
F8C28000 - \SystemRoot\system32\DRIVERS\BdaSup.SYS
F820B000 - \SystemRoot\system32\DRIVERS\Rtlnic51.sys
F8A20000 - \SystemRoot\system32\DRIVERS\fdc.sys
F81FA000 - \SystemRoot\system32\DRIVERS\serial.sys
F8C2C000 - \SystemRoot\system32\DRIVERS\serenum.sys
F81E6000 - \SystemRoot\system32\DRIVERS\parport.sys
F8800000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
F8A28000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
F8810000 - \SystemRoot\system32\DRIVERS\imapi.sys
F8C58000 - \SystemRoot\System32\Drivers\ElbyDelay.sys
F8A30000 - \SystemRoot\System32\Drivers\ElbyCDFL.sys
F8A38000 - \SystemRoot\system32\drivers\ASAPIW2k.sys
F8820000 - \SystemRoot\system32\DRIVERS\cdrom.sys
F8830000 - \SystemRoot\system32\DRIVERS\redbook.sys
F8C5A000 - \SystemRoot\system32\DRIVERS\NTIDrvr.sys
F8A40000 - \SystemRoot\SYSTEM32\DRIVERS\GEARAspiWDM.sys
F8036000 - \SystemRoot\System32\Drivers\albfaqc4.SYS
F7FF6000 - \SystemRoot\system32\DRIVERS\bbcap.sys
F7FF5000 - \SystemRoot\system32\DRIVERS\audstub.sys
F8840000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
F848F000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
F7F7F000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
F8850000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
F8860000 - \SystemRoot\system32\DRIVERS\raspptp.sys
F8AA0000 - \SystemRoot\system32\DRIVERS\TDI.SYS
F7F6E000 - \SystemRoot\system32\DRIVERS\psched.sys
F8870000 - \SystemRoot\system32\DRIVERS\msgpc.sys
F8AA8000 - \SystemRoot\system32\DRIVERS\ptilink.sys
F8AB0000 - \SystemRoot\system32\DRIVERS\raspti.sys
F8880000 - \SystemRoot\system32\DRIVERS\termdd.sys
F8AB8000 - \SystemRoot\system32\DRIVERS\mouclass.sys
F8C60000 - \SystemRoot\system32\DRIVERS\swenum.sys
F7F3A000 - \SystemRoot\system32\DRIVERS\update.sys
F8483000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
F7F0C000 - \SystemRoot\system32\DRIVERS\MarvinBus.sys
F8890000 - \SystemRoot\System32\Drivers\NDProxy.SYS
B2D92000 - \SystemRoot\system32\drivers\RtkHDAud.sys
B2D70000 - \SystemRoot\system32\drivers\portcls.sys
F88C0000 - \SystemRoot\system32\drivers\drmk.sys
F88D0000 - \SystemRoot\system32\DRIVERS\usbhub.sys
F8C64000 - \SystemRoot\system32\DRIVERS\USBD.SYS
B2CD1000 - \??\C:\Program Files\Symantec AntiVirus\savrt.sys
B2CB4000 - \??\C:\Program Files\Symantec\SYMEVENT.SYS
F88F0000 - \??\C:\Program Files\Symantec AntiVirus\Savrtpel.sys
B2BE5000 - \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20070621.017\navex15.sys
B2BD3000 - \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20070621.017\naveng.sys
F8C66000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
F7FB3000 - \SystemRoot\System32\Drivers\Null.SYS
F8C68000 - \SystemRoot\System32\Drivers\Beep.SYS
F7FB1000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys
F8AD0000 - \SystemRoot\system32\DRIVERS\USBSTOR.SYS
F8AD8000 - \SystemRoot\System32\drivers\vga.sys
F8C6A000 - \SystemRoot\System32\Drivers\mnmdd.SYS
F8C6C000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
F8AE0000 - \SystemRoot\System32\Drivers\Msfs.SYS
F8AE8000 - \SystemRoot\System32\Drivers\Npfs.SYS
F8497000 - \SystemRoot\system32\DRIVERS\rasacd.sys
B2BA0000 - \SystemRoot\system32\DRIVERS\ipsec.sys
B2B48000 - \SystemRoot\system32\DRIVERS\tcpip.sys
B2B27000 - \SystemRoot\system32\DRIVERS\ipnat.sys
F8900000 - \SystemRoot\System32\Drivers\aswTdi.SYS
F8910000 - \SystemRoot\system32\DRIVERS\wanarp.sys
B2ABF000 - \SystemRoot\System32\Drivers\SYMTDI.SYS
F8920000 - \SystemRoot\system32\DRIVERS\arp1394.sys
B2A97000 - \SystemRoot\system32\DRIVERS\netbt.sys
B2A5F000 - \SystemRoot\system32\DRIVERS\tcpip6.sys
F7E5C000 - \SystemRoot\System32\drivers\ws2ifsl.sys
B2A3D000 - \SystemRoot\System32\drivers\afd.sys
F8930000 - \SystemRoot\system32\DRIVERS\netbios.sys
F7E58000 - \??\C:\Program Files\TGTSoft\StyleXP\StyleXPHelper.exe
B2972000 - \SystemRoot\system32\DRIVERS\rdbss.sys
B2903000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
F8AF8000 - \SystemRoot\system32\DRIVERS\Ip6Fw.sys
F8940000 - \SystemRoot\System32\Drivers\Fips.SYS
F810E000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
F8B00000 - \SystemRoot\System32\Drivers\Aavmker4.SYS
B2D6C000 - \SystemRoot\system32\DRIVERS\hidusb.sys
F8960000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
F8B08000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
B2D68000 - \SystemRoot\system32\DRIVERS\mouhid.sys
F8970000 - \SystemRoot\System32\Drivers\Cdfs.SYS
B28C3000 - \SystemRoot\System32\Drivers\dump_atapi.sys
F8CDC000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
BF800000 - \SystemRoot\System32\win32k.sys
B2D54000 - \SystemRoot\System32\drivers\Dxapi.sys
F8B10000 - \SystemRoot\System32\watchdog.sys
BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
F8E27000 - \SystemRoot\System32\drivers\dxgthk.sys
BF9D5000 - \SystemRoot\System32\ati2dvag.dll
BFA0E000 - \SystemRoot\System32\ati2cqag.dll
BFA4B000 - \SystemRoot\System32\ati3duag.dll
BFC79000 - \SystemRoot\System32\ativvaxx.dll
B078B000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
B0565000 - \SystemRoot\System32\Drivers\aswMon2.SYS
B0320000 - \SystemRoot\system32\drivers\wdmaud.sys
F8980000 - \SystemRoot\system32\drivers\sysaudio.sys
F8C70000 - \SystemRoot\System32\Drivers\ElbyCDIO.sys
B009E000 - \SystemRoot\system32\DRIVERS\srv.sys
B0026000 - \SystemRoot\system32\DRIVERS\secdrv.sys
F8CAE000 - \??\C:\WINDOWS\system32\Drivers\Vcs.sys
AFEA2000 - \SystemRoot\System32\Drivers\aswRdr.SYS
F8DA0000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys
Total number of drivers = 146
Liste des programmes installes
0x1
Ad-Aware SE Professional
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 9 ActiveX
Adobe Help Center 2.0
Adobe Photoshop CS2 Portable Par Le Nettoyeur
Adobe Premiere Pro 2.0
Adobe Premiere Pro 2.0
Adobe Reader 6.0 - Français
Adobe Stock Photos 1.0
Agere Systems PCI Soft Modem
AlienGUIse Theme Manager
Apple Software Update
Archiveur WinRAR
ASIO4ALL
ATI Display Driver
AV Voice Changer Software DIAMOND 4.0
avast! Antivirus
Avex DVD to Mobile Converter (remove only)
Avex DVD to Mobile Video Suite (remove only)
Avex Mobile Video Converter (remove only)
AVG Anti-Spyware 7.5
AVS Video Converter 4.3.1.371
Azureus
Barre d'outils Outlook de Windows Live (Windows Live Toolbar)
BB FlashBack
BB FlashBack
BearShare
BitComet 0.70
BitLord 1.1
Bloqueur de fenêtres pop-up (Windows Live Toolbar)
CCleaner (remove only)
CINEMA 4D Release 10
ClipFactory
CloneCD
CloneDVD2
ClubDJ Pro
Collab
Conseiller de mise à niveau Windows Vista
Correctif pour Windows XP (KB914440)
Correctif pour Windows XP (KB935448)
Correctif Windows XP - KB873333
Correctif Windows XP - KB873339
Correctif Windows XP - KB885250
Correctif Windows XP - KB885835
Correctif Windows XP - KB885836
Correctif Windows XP - KB886185
Correctif Windows XP - KB887472
Correctif Windows XP - KB887742
Correctif Windows XP - KB888113
Correctif Windows XP - KB888302
Correctif Windows XP - KB890859
Correctif Windows XP - KB891781
Correctif Windows XP - KB893086
Crucible
DAEMON Tools
Driver Genius Professional Edition 2007
Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)
DVD Shrink 3.2
e-zshopper
East-Tec Eraser 2007 Version 8.0
Edgar Torronteras' Extreme Biker
eMule
EPSON Logiciel imprimante
EPSON PhotoQuicker3.4
EPSON PRINT Image Framer Tool2.0
ESC64 Guide de référence
ESC64 Guide des logiciels
Extension de Windows Live Toolbar (Windows Live Toolbar)
FaceOnBody
FlashGet 1.8.2.1001
FLV Player
Folder Password Protect 2.7
GameShadow
Gif Movie Gear 4
Google Earth Pro
Google Toolbar for Internet Explorer
Google Toolbar for Internet Explorer
Hide IP Platinum 2.8
High Definition Audio Driver Package - KB835221
High Definition Audio Driver Package - KB888111
HijackThis 1.99.1
Hollywood FX Pack 26 - Extra FX
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
IL Download Manager
Internet Cyclone 1.92
InterVideo DeviceService
iolo technologies' System Mechanic 6
ISO Recorder
J2SE Runtime Environment 5.0 Update 4
J2SE Runtime Environment 5.0 Update 6
Java 2 Runtime Environment, SE v1.4.2_05
JVTorrent 1.1
K-Lite Codec Pack 2.48 Full
Konvertor
Lavasoft Reghance 2.1
Lecteur Windows Media 11
LimeWire PRO 4.13.0
LiveUpdate 2.0 (Symantec Corporation)
Magic ISO Maker v5.4 (build 0239)
Menus intelligents (Windows Live Toolbar)
Messenger Plus! 3 & Sponsor
Messenger Plus! Live & Sponsor (CiD)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft .NET Framework 2.0
Microsoft .NET Framework 2.0
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Access MUI (French) 2007
Microsoft Office Excel MUI (French) 2007
Microsoft Office InfoPath MUI (French) 2007
Microsoft Office Outlook MUI (French) 2007
Microsoft Office PowerPoint MUI (French) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (Dutch) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (French) 2007
Microsoft Office Publisher MUI (French) 2007
Microsoft Office Shared MUI (French) 2007
Microsoft Office Word MUI (French) 2007
Microsoft Software Update for Web Folders (French) 12
Microsoft SQL Server Desktop Engine (PINNACLESYS)
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Mise à jour de sécurité pour Lecteur Windows Media (KB911564)
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)
Mise à jour de sécurité pour Windows XP (KB890046)
Mise à jour de sécurité pour Windows XP (KB893066)
Mise à jour de sécurité pour Windows XP (KB893756)
Mise à jour de sécurité pour Windows XP (KB896358)
Mise à jour de sécurité pour Windows XP (KB896422)
Mise à jour de sécurité pour Windows XP (KB896423)
Mise à jour de sécurité pour Windows XP (KB896424)
Mise à jour de sécurité pour Windows XP (KB896428)
Mise à jour de sécurité pour Windows XP (KB896688)
Mise à jour de sécurité pour Windows XP (KB899587)
Mise à jour de sécurité pour Windows XP (KB899588)
Mise à jour de sécurité pour Windows XP (KB899591)
Mise à jour de sécurité pour Windows XP (KB900725)
Mise à jour de sécurité pour Windows XP (KB901017)
Mise à jour de sécurité pour Windows XP (KB901190)
Mise à jour de sécurité pour Windows XP (KB901214)
Mise à jour de sécurité pour Windows XP (KB902400)
Mise à jour de sécurité pour Windows XP (KB904706)
Mise à jour de sécurité pour Windows XP (KB905414)
Mise à jour de sécurité pour Windows XP (KB905749)
Mise à jour de sécurité pour Windows XP (KB905915)
Mise à jour de sécurité pour Windows XP (KB908519)
Mise à jour de sécurité pour Windows XP (KB908531)
Mise à jour de sécurité pour Windows XP (KB911280)
Mise à jour de sécurité pour Windows XP (KB911562)
Mise à jour de sécurité pour Windows XP (KB911567)
Mise à jour de sécurité pour Windows XP (KB911927)
Mise à jour de sécurité pour Windows XP (KB912812)
Mise à jour de sécurité pour Windows XP (KB912919)
Mise à jour de sécurité pour Windows XP (KB913446)
Mise à jour de sécurité pour Windows XP (KB913580)
Mise à jour de sécurité pour Windows XP (KB914388)
Mise à jour de sécurité pour Windows XP (KB914389)
Mise à jour de sécurité pour Windows XP (KB916281)
Mise à jour de sécurité pour Windows XP (KB917159)
Mise à jour de sécurité pour Windows XP (KB917344)
Mise à jour de sécurité pour Windows XP (KB917422)
Mise à jour de sécurité pour Windows XP (KB917953)
Mise à jour de sécurité pour Windows XP (KB918118)
Mise à jour de sécurité pour Windows XP (KB918439)
Mise à jour de sécurité pour Windows XP (KB918899)
Mise à jour de sécurité pour Windows XP (KB919007)
Mise à jour de sécurité pour Windows XP (KB920213)
Mise à jour de sécurité pour Windows XP (KB920214)
Mise à jour de sécurité pour Windows XP (KB920670)
Mise à jour de sécurité pour Windows XP (KB920683)
Mise à jour de sécurité pour Windows XP (KB920685)
Mise à jour de sécurité pour Windows XP (KB921398)
Mise à jour de sécurité pour Windows XP (KB921883)
Mise à jour de sécurité pour Windows XP (KB922616)
Mise à jour de sécurité pour Windows XP (KB922760)
Mise à jour de sécurité pour Windows XP (KB922819)
Mise à jour de sécurité pour Windows XP (KB923191)
Mise à jour de sécurité pour Windows XP (KB923414)
Mise à jour de sécurité pour Windows XP (KB923689)
Mise à jour de sécurité pour Windows XP (KB923694)
Mise à jour de sécurité pour Windows XP (KB923980)
Mise à jour de sécurité pour Windows XP (KB924191)
Mise à jour de sécurité pour Windows XP (KB924270)
Mise à jour de sécurité pour Windows XP (KB924496)
Mise à jour de sécurité pour Windows XP (KB924667)
Mise à jour de sécurité pour Windows XP (KB925454)
Mise à jour de sécurité pour Windows XP (KB925486)
Mise à jour de sécurité pour Windows XP (KB925902)
Mise à jour de sécurité pour Windows XP (KB926255)
Mise à jour de sécurité pour Windows XP (KB926436)
Mise à jour de sécurité pour Windows XP (KB927779)
Mise à jour de sécurité pour Windows XP (KB927802)
Mise à jour de sécurité pour Windows XP (KB928255)
Mise à jour de sécurité pour Windows XP (KB928843)
Mise à jour de sécurité pour Windows XP (KB930178)
Mise à jour de sécurité pour Windows XP (KB931261)
Mise à jour de sécurité pour Windows XP (KB931784)
Mise à jour de sécurité pour Windows XP (KB932168)
Mise à jour pour Windows XP (KB894391)
Mise à jour pour Windows XP (KB896727)
Mise à jour pour Windows XP (KB898461)
Mise à jour pour Windows XP (KB900485)
Mise à jour pour Windows XP (KB904942)
Mise à jour pour Windows XP (KB910437)
Mise à jour pour Windows XP (KB916595)
Mise à jour pour Windows XP (KB920872)
Mise à jour pour Windows XP (KB922582)
Mise à jour pour Windows XP (KB927891)
Mise à jour pour Windows XP (KB929338)
Mise à jour pour Windows XP (KB930916)
Mise à jour pour Windows XP (KB931836)
MixMeister BPM Analyzer 1.0
MixMeister Pro 6
Morgan Stream Switcher
Mozilla Firefox (2.0.0.4)
MSN Messenger 7.5
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 Parser and SDK
Nero 7 Demo
NET Render Release 10
NTI Backup NOW! 3
NTI Backup NOW! 3
NTI CD & DVD-Maker
NTI CD & DVD-Maker Gold
O&O Defrag Professional Edition
OneCare Advisor (Windows Live Toolbar)
OpenSSL 0.9.6m
Oro Messenger Skin
Philips SPC 200NC PC Camera
PhotoFiltre Studio
Photoshop CS2
PIF DESIGNER2.0
Pinnacle device drivers
Pinnacle Hollywood FX Pack0 - Extra FX
Pinnacle Hollywood FX Pack1 - Holiday FX
Pinnacle Hollywood FX Pack2 - Family FX
Pinnacle Instant DVD Recorder
Pinnacle MediaCenter
Pinnacle MediaServer
PowerDVD
PQ DVD to 3GP Video Suite (remove only)
Pro Evolution Soccer 6
Pro Evolution Soccer 6
proDAD Heroglyph 2.5
proDAD Vitascene 1.0
QuickTime
RAR Password Cracker 4.12
Realtek High Definition Audio Driver
Registry Mechanic 6.0
RM-X® Audio Extractor
ScanToWeb
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Security Update for Excel 2007 (KB934670)
Security Update for Microsoft .NET Framework 2.0 (KB922770)
Security Update for Office 2007 (KB934062)
Security Update pour Microsoft .NET Framework 2.0 (KB917283)
Smart PC 4.0
Smartalec PC Accelerator 2007 Professional Suite 1.1
SmartSound Quicktracks Plugin
SmartSound Quicktracks Plugin
Sony DVD Architect 4.0
Sony Media Manager 2.0
Sony Media Manager 2.2
Sony Noise Reduction Plug-In 2.0e
Sony Sound Forge 9.0
Sony Vegas 7.0
SphereXP 1.1.626
Spyware Doctor 5.0
Steam
Studio 11
Studio 11
Studio 11 Bonus DVD
StuffPlug-NG (Messenger Plus! Plugins)
StyleXP (remove only)
SuperMegaSpoof 2.0
Symantec AntiVirus
The Matrix Revolutions 3D Screen Saver v3.2
The Matrix Screen Saver
Themexp.org File
Total Video Converter 3.10
TuneUp Utilities 2007
Turbo Connect
Tweak-SE plug-in for Ad-Aware SE
Ulead VideoStudio 11
Update for Office 2007 (KB932080)
Update for Office 2007 (KB933688)
Update for Office 2007 (KB934393)
Update for Outlook 2007 Junk Email Filter (KB934655)
Update for Word 2007 (KB934173)
Utilidades Sierra
Utilitaires Sierra
VD Codec Pack 1.3
VideoAvatar
VideoLAN VLC media player 0.8.2
VideoStudio
Virtual DJ - Atomix Productions
Wave11 Glass
WebFldrs XP
Winamp (remove only)
WindowBlinds
Windows Genuine Advantage v1.3.0254.0
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Live Favorites pour Windows Live Toolbar
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Movie Maker 2.0
WinISO 5.3
WinPcap 3.1 beta3
WinSessionPasswordCasseur 1.0
WinXMedia AVI/WMV 3GP Converter 2.35
WinZip
Yahoo! Desktop Login
Yahoo! Widget Engine
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
22/03/2005 14:21 <REP> Adobe
19/06/2007 16:11 <REP> AdorageI-GfxDatas
19/06/2007 16:11 <REP> AdorageI-SAL
15/09/2005 13:39 <REP> Ahead
01/04/2007 13:29 <REP> Alex Feinman
16/04/2007 19:29 <REP> AlienGUIse
20/06/2007 16:38 <REP> Alwil Software
22/09/2006 17:18 <REP> Apple Software Update
30/03/2007 13:42 <REP> ASIO4ALL v2
12/05/2007 12:08 <REP> AV Vcs 4.0 DIAMOND
14/04/2007 12:10 <REP> Avex
14/02/2006 23:13 <REP> AVSMedia
25/03/2007 22:35 <REP> Azureus
05/11/2006 11:31 <REP> BearShare
03/08/2006 01:12 <REP> BitComet
29/04/2007 16:19 <REP> BitLord
18/05/2007 21:39 <REP> Blueberry Software
13/05/2006 15:28 <REP> CA
01/05/2007 21:53 <REP> CAPCOM
23/06/2007 00:18 <REP> CCleaner
17/10/2005 20:35 <REP> CheckFlow
19/06/2007 00:57 <REP> ClubDJ Pro
04/10/2005 19:05 <REP> Common Files
22/03/2005 14:19 <REP> ComPlus Applications
18/10/2004 19:22 <REP> counter strike source
22/03/2005 14:31 <REP> CyberLink
29/04/2007 23:44 <REP> DAEMON Tools
09/09/2005 11:54 <REP> Dafhsp
30/08/2006 20:43 <REP> DivX
28/10/2005 16:24 4 096 dmfafr39.Dlk
23/10/2005 21:38 8 192 dmfafr39.Ock
04/10/2005 16:31 <REP> Doom 3
16/04/2007 20:11 <REP> Driver-Soft
19/06/2007 15:39 <REP> D-Tools
28/05/2007 20:03 <REP> DVD Shrink
29/03/2006 14:25 <REP> EA GAMES
19/06/2007 01:00 <REP> East-Tec Eraser 2007
03/10/2006 19:59 <REP> eChanblard
04/09/2006 14:46 <REP> Edovia AntiSpam
13/08/2006 17:52 <REP> Eidos
07/01/2007 13:49 <REP> Elaborate Bytes
01/10/2005 16:07 <REP> Empire Interactive
10/08/2005 21:15 <REP> eMule
31/10/2006 14:05 <REP> EPSON
12/10/2005 17:43 <REP> e-zshopper
16/04/2007 19:52 <REP> FaceOnBody
22/03/2005 14:15 <REP> Fichiers communs
23/07/2006 16:00 <REP> FileZilla
13/08/2006 15:49 <REP> flashFXP
15/04/2007 11:32 <REP> FlashGet
18/05/2007 23:51 <REP> FLV Player
30/04/2007 03:24 <REP> Folder Password Protect
05/11/2005 19:12 <REP> Fx Audio Conveter
13/08/2006 17:50 <REP> GameShadow
04/05/2007 00:34 <REP> GeoVid
05/08/2006 13:40 <REP> Google
23/06/2007 00:25 <REP> Grisoft
17/04/2007 16:04 <REP> Hide IP Platinum
03/08/2006 01:42 <REP> ICOO Loader
19/11/2005 20:18 <REP> Illustrate
29/10/2006 15:48 <REP> Image-Line
25/03/2007 15:34 <REP> ImTOO
22/03/2005 14:26 <REP> Intel
05/05/2007 13:01 <REP> Internet Cyclone
22/03/2005 14:19 <REP> Internet Explorer
10/06/2007 01:24 <REP> iolo
09/01/2007 19:11 <REP> Jasc Software Inc
22/03/2005 14:27 <REP> Java
01/10/2005 16:30 <REP> JVTorrent
14/08/2005 20:22 <REP> K-Lite Codec Pack
29/04/2007 23:52 <REP> KONAMI
05/11/2005 19:16 <REP> Konvertor
08/04/2007 02:47 <REP> Lavasoft
08/04/2007 02:48 <REP> Lavasoft RegHance
30/12/2006 19:54 <REP> LimeWire
08/05/2007 11:45 <REP> MagicISO
08/05/2007 12:18 <REP> MAXON
16/04/2007 18:08 <REP> MegaSpoof
22/03/2005 14:18 <REP> Messenger
07/05/2007 12:25 <REP> Messenger Plus! Live
10/08/2005 20:06 <REP> MessengerPlus! 3
10/05/2007 03:04 <REP> Microsoft CAPICOM 2.1.0.2
22/03/2005 14:22 <REP> microsoft frontpage
18/10/2005 21:58 <REP> Microsoft Office
26/11/2005 18:33 <REP> Microsoft SQL Server
15/04/2007 19:40 <REP> Microsoft Visual Studio
18/04/2007 12:32 <REP> Microsoft Windows Vista Upgrade Advisor
15/04/2007 19:41 <REP> Microsoft Works
15/04/2007 19:39 <REP> Microsoft.NET
05/09/2005 03:11 <REP> MilkShape 3D 1.7.3
18/10/2004 19:45 20 480 MISE EN SERVICE CS SOURCE.doc
29/10/2006 15:25 <REP> MixMeister BPM Analyzer
03/06/2007 12:37 <REP> MixMeister Pro 6
19/11/2005 23:59 <REP> Morgan
22/03/2005 14:19 <REP> Movie Maker
08/04/2007 10:45 <REP> Mozilla Firefox
15/04/2007 19:40 <REP> MSBuild
15/04/2007 19:31 <REP> MSECache
22/03/2005 14:18 <REP> MSN
22/03/2005 14:18 <REP> MSN Gaming Zone
10/08/2005 19:57 <REP> MSN Messenger
15/04/2007 16:43 <REP> MsnChecker
04/10/2005 19:04 <REP> MSNShell
10/08/2005 23:56 <REP> MSXML 4.0
16/04/2007 17:43 <REP> Nero
22/03/2005 14:19 <REP> NetMeeting
22/03/2005 14:33 <REP> NewTech Infosystems
22/03/2005 14:29 <REP> Norton AntiVirus
22/03/2005 14:19 <REP> Online Services
17/04/2007 22:50 <REP> OO Software
22/03/2005 14:19 <REP> Outlook Express
19/11/2005 20:14 <REP> Oxilog
09/01/2007 19:10 <REP> Panicware
17/04/2007 22:55 <REP> PC Accelerator Professional
08/10/2005 17:34 <REP> Philips
01/08/2006 01:44 <REP> PhotoFiltre Studio
17/04/2007 16:13 <REP> PhotoZoom Professional
18/08/2005 19:00 <REP> Pinnacle
12/10/2005 17:49 <REP> Plus!
14/04/2007 12:11 <REP> PQDVD
19/06/2007 16:15 <REP> proDAD
11/08/2005 00:46 <REP> Project64 v1.5
23/10/2005 23:46 <REP> PROMT5
12/05/2006 17:42 <REP> QuickTime
18/10/2004 20:12 36 747 racourci.JPG
01/04/2007 13:23 <REP> RAR Password Cracker
22/03/2005 14:26 <REP> Realtek
12/08/2005 13:31 <REP> Red Storm Entertainment
10/06/2007 01:32 <REP> Registry Mechanic
10/06/2007 01:16 <REP> RM-X® Audio Extractor
22/03/2005 14:20 <REP> Services en ligne
17/08/2005 15:14 <REP> Sierra On-Line
30/04/2007 00:02 <REP> SlySoft
16/04/2007 21:03 <REP> Smart PC Solutions
14/05/2007 02:19 <REP> SmartSound Software
20/11/2005 18:34 <REP> SmartSound Software Inc
25/04/2007 01:38 <REP> Softwin
18/08/2005 15:59 <REP> Sonic Foundry Setup
05/12/2005 18:32 <REP> Sony
18/08/2005 19:53 <REP> Sony Setup
26/04/2007 21:51 <REP> SphereXP
06/06/2007 23:57 <REP> Spyware Doctor
09/01/2007 19:12 <REP> Steinberg
22/03/2005 14:28 <REP> Symantec
14/04/2007 00:45 <REP> Symantec AntiVirus
07/05/2006 23:24 <REP> TGTSoft
12/10/2005 17:43 <REP> themexp
07/01/2007 18:25 <REP> Torrent101
21/04/2007 00:48 <REP> Total Video Converter
15/04/2007 17:40 <REP> TuneUp Utilities 2007
30/04/2007 03:21 <REP> TurboConnect
28/09/2005 12:55 <REP> Ubisoft
25/05/2007 10:37 <REP> Ulead Systems
24/09/2005 19:37 <REP> UselessCreations
11/08/2005 12:39 <REP> Valve
14/08/2005 00:05 <REP> VDCodecPack1.3
19/11/2005 23:42 <REP> VideoLAN
11/08/2006 17:38 <REP> VirtualDJ
09/02/2006 13:42 <REP> Visicom Media
28/10/2005 16:24 4 096 vmfafr.Dlk
23/10/2005 21:38 8 192 vmfafr.Ock
30/08/2005 10:36 <REP> Vstplugins
19/11/2005 16:20 <REP> Winamp
07/05/2007 12:22 <REP> Windows Live Favorites
10/12/2006 20:24 <REP> Windows Live Toolbar
25/05/2007 10:39 <REP> Windows Media Components
03/01/2007 11:38 <REP> Windows Media Connect 2
22/03/2005 14:19 <REP> Windows Media Player
22/03/2005 14:18 <REP> Windows NT
18/03/2006 12:05 <REP> WinISO
15/04/2007 16:43 <REP> WinPcap
28/01/2006 18:17 <REP> WinRAR
29/04/2007 16:14 <REP> WinSessionPasswordCasseur 1.0
14/04/2007 12:10 <REP> WinXMedia
05/08/2006 13:39 <REP> WinZip
22/03/2005 14:22 <REP> xerox
04/09/2005 11:47 <REP> XRadiance
19/06/2007 00:54 <REP> Yahoo!
6 fichier(s) 81 803 octets
174 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files\fichiers communs
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
22/03/2005 14:15 <REP> Microsoft Shared
22/03/2005 14:15 <REP> SpeechEngines
22/03/2005 14:15 <REP> ODBC
22/03/2005 14:19 <REP> System
22/03/2005 14:19 <REP> MSSoap
22/03/2005 14:19 <REP> Services
22/03/2005 14:25 <REP> InstallShield
22/03/2005 14:27 <REP> Java
22/03/2005 14:29 <REP> Symantec Shared
14/08/2005 20:23 <REP> Ahead
05/09/2005 03:28 <REP> Adobe
05/09/2005 03:28 <REP> Vbox
23/10/2005 23:27 <REP> Adobe Systems Shared
14/02/2006 23:13 <REP> AVSMedia
28/03/2006 20:36 <REP> SWF Studio
28/10/2006 19:34 <REP> Digidesign
28/12/2006 18:34 <REP> Teleca Shared
15/04/2007 19:40 <REP> DESIGNER
16/04/2007 19:29 <REP> Stardock
25/04/2007 01:35 <REP> Softwin
18/05/2007 21:39 <REP> Blueberry Software
22/05/2007 21:36 <REP> Wise Installation Wizard
25/05/2007 10:40 <REP> InterVideo
25/05/2007 11:11 <REP> Ulead Systems
0 fichier(s) 0 octets
26 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
07/03/2001 07:00 127 033 MSOWS40c.DLL
03/06/1999 12:09 122 937 MSOWS409.DLL
18/03/1999 06:37 593 977 RAGENT.DLL
15/04/2007 19:34 <REP> 1036
26/10/2006 20:12 40 256 MSOSV.DLL
26/10/2006 19:49 970 528 MSONSEXT.DLL
20/06/2007 11:27 73 605 ibm00001.dll
20/06/2007 11:27 58 098 ibm00002.dll
7 fichier(s) 1 986 434 octets
3 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files\common files
04/10/2005 19:05 <REP> .
04/10/2005 19:05 <REP> ..
04/10/2005 19:05 <REP> msnshell
31/10/2006 14:07 <REP> UDL
20/06/2007 11:26 <REP> ?icrosoft.NET
0 fichier(s) 0 octets
5 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\
20/06/2007 23:31 1 308 216 scan.exe
16/02/2005 11:06 218 112 HijackThis.exe
12/05/2007 18:22 68 096 diff.exe
12/05/2007 18:22 103 424 grep.exe
24/05/2001 12:59 162 304 UNWISE.EXE
5 fichier(s) 1 860 152 octets
0 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\
c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\AimMix.exe
c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\glue lite.exe
c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\MetaFour.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\BB FlashBack.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPDRNTLEXFRGDRFFFFFF0\DrvInstaller.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFBLSLACEXEAGDIFFFF0\FB_Launcher.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLOYSVEXFRGDRFFFFFF0\LogSysServer.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPREREHEEEFTGTRFFFFF0\RecorderChecker.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUFBLSASAKTCXOEXTRTDFFFF0\FlashBack Batch Export.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUPFBLSASAKCOEEFTGTRFFFF0\FlashBack Recorder.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCNEUPFBLSASAKAYEEARTIFFFF0\FlashBack Player.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPINMCNEUPFRFABAPAREFAETRFFFF0\Free FlashBack Player.exe
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Shareaza\Incomplete\7XPUCROFSODWBJVO645DJ42I6CKKB2ZX Shareaza_2.2.1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\reverso.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\traducteur_Reverso Expert 5 Fr (Francais-Anglais-Allemand-Espagnol) + Crack.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\MInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\UTILS\PIE5CLR.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\UTILS\STSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\MInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\UTILS\PIE5CLR.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\UTILS\STSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\MInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\msi2xml.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\UTILS\PIE5CLR.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\UTILS\STSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Family Fun FX Pass studiodeluxe.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\hfxpack1-holidayfx-pp pass holiday.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywood fx pack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywood FX.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\HollywoodFX.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywoof FX 5 Keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-Bundle1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-KidsSports1(1).exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-KidsSports1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-Wedding1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Welcome.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Driver\PCLEBendPCI.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Driver\PCLEUSB.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\Family Fun FX Pass studiodeluxe.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\hfxpack1-holidayfx-pp pass holiday.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\HollywoodFX.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-Bundle1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1(1).exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-Wedding1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\HollywoodFX\hfx5studiosilent.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Pixie5\PixieTool.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Pixie5\RegisterStudio\LicenseTool.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Setup\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tools\amcap.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tools\PPE114.EXE
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tutorial\Tutorial.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.1.2\Pinnacle_Studio_Patch_9_1_2_15d.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.3.5\Pinnacle_Studio_Patch_9_3_5.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.1\Pinnacle_Studio_Patch_9_4_1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.2\Pinnacle_Studio_Patch_9_3_5To9_4_2_Light.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.2\Pinnacle_Studio_Patch_9_4_2.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\crystalblue.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Install.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Install_MSN_Messenger.EXE
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\wrar36b1.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Elegance\elegance.exe
c:\Documents and Settings\thomas torrente\Mes docu
Voici les résultats de ta demande ^^:
1)rapport fixwareout:
Fixwareout Last edited 6/20/2007
Post this report in the forums please
...
»»»»»Prerun check
Cache de résolution DNS vidé.
2)rapport OTMOVEIT...:
C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe moved successfully.
File/Folder C:\Documents and Settings\LocalService\Local Settings\Application Data\Else plus not found.
C:\WINDOWS\Tasks\AD992BE591A6A18D.job moved successfully.
C:\Program Files\Adverts moved successfully.
C:\Program Files\Else plus moved successfully.
Created on 06/23/2007 00:10:11
3)rapport DiagHelp:
DiagHelp version v1.1.2 - http://www.malekal.com
excute le 23/06/2007 à 2:10:02,54
Liste des derniers fichies modifies/crees dans windir\system32
C:\WINDOWS\System32/drivers\AvgAsCln.sys -->30/05/2007 14:10:42
C:\WINDOWS\System32/drivers\bbcap.sys -->18/05/2007 21:39:56
C:\WINDOWS\System32/drivers\sptd.sys -->29/04/2007 23:42:58
C:\WINDOWS\System32/drivers\aswmon.sys -->14/04/2007 09:47:46
C:\WINDOWS\System32/drivers\aswmon2.sys -->14/04/2007 09:47:32
C:\WINDOWS\System32/drivers\aswRdr.sys -->14/04/2007 09:45:36
C:\WINDOWS\System32/drivers\aswTdi.sys -->14/04/2007 09:44:52
C:\WINDOWS\System32\PerfStringBackup.TMP -->23/06/2007 02:06:00
C:\WINDOWS\System32\CompiledAdapter -->23/06/2007 02:02:14
C:\WINDOWS\System32\ddeeg.ini -->23/06/2007 02:01:40
C:\WINDOWS\System32\OODBS.lor -->23/06/2007 02:01:16
C:\WINDOWS\System32\ddeeg.bak1 -->22/06/2007 23:03:12
C:\WINDOWS\System32\geedd.dll -->22/06/2007 23:02:58
C:\WINDOWS\System32\wpa.dbl -->22/06/2007 18:16:22
C:\WINDOWS\System32\CONFIG.NT -->21/06/2007 14:25:30
C:\WINDOWS\System32\iklog.log -->20/06/2007 21:32:36
C:\WINDOWS\System32\ClickToFindandFixErrors_Intl.ico -->20/06/2007 13:11:48
C:\WINDOWS\System32\qrutv.bak1 -->20/06/2007 12:53:18
C:\WINDOWS\System32\qrutv.ini -->20/06/2007 12:53:18
C:\WINDOWS\System32\6_exception.nls -->20/06/2007 11:27:18
C:\WINDOWS\System32\CmdLineExt03.dll -->20/06/2007 00:08:44
C:\WINDOWS\System32\FNTCACHE.DAT -->19/06/2007 15:33:34
C:\WINDOWS\System32\GDIPFONTCACHEV1.DAT -->19/06/2007 11:55:38
C:\WINDOWS\System32\ioloBootDefrag.cfg -->10/06/2007 09:36:38
C:\WINDOWS\System32\libssl32.dll -->25/05/2007 23:00:08
C:\WINDOWS\System32\d3d8caps.dat -->18/05/2007 21:54:38
C:\WINDOWS\System32\bbchlp.dll -->18/05/2007 21:39:56
C:\WINDOWS\System32\bbcap.dll -->18/05/2007 21:39:56
C:\WINDOWS\System32\MsgPlusLoader.dll -->17/05/2007 16:19:18
C:\WINDOWS\System32\BASSMOD.dll -->13/05/2007 15:24:24
C:\WINDOWS\System32\rlxf.dll -->10/05/2007 12:46:08
C:\WINDOWS\System32\tcggtmxl.ini -->02/05/2007 12:24:48
C:\WINDOWS\setupapi.log -->23/06/2007 02:07:18
C:\WINDOWS\wiadebug.log -->23/06/2007 02:03:44
C:\WINDOWS\bootstat.dat -->23/06/2007 02:01:20
C:\WINDOWS\SchedLgU.Txt -->23/06/2007 02:00:16
C:\WINDOWS\wiaservc.log -->23/06/2007 01:59:52
C:\WINDOWS\bthservsdp.dat -->23/06/2007 01:59:48
C:\WINDOWS\WindowsUpdate.log -->23/06/2007 01:59:42
C:\WINDOWS\SysMech6.INI -->21/06/2007 00:49:32
C:\WINDOWS\_MSRSTRT.EXE -->20/06/2007 22:34:32
C:\WINDOWS\wr.txt -->20/06/2007 11:48:04
C:\WINDOWS\NeroDigital.ini -->20/06/2007 10:58:04
C:\WINDOWS\MovingPicture.ini -->19/06/2007 16:16:48
C:\WINDOWS\ODBCINST.INI -->19/06/2007 00:57:22
C:\WINDOWS\win.ini -->25/05/2007 17:04:08
C:\WINDOWS\langorig.ini -->19/05/2007 14:13:46
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system
23/08/2001 05:00 9 728 regsvr32.exe
1 fichier(s) 9 728 octets
0 Rép(s) 50 584 125 440 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system32
05/08/2004 05:00 6 144 csrss.exe
1 fichier(s) 6 144 octets
0 Rép(s) 50 584 125 440 octets libres
Contenu de Downloaded Program Files
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\Downloaded Program Files
22/03/2005 14:20 <REP> .
22/03/2005 14:20 <REP> ..
22/03/2005 14:20 65 desktop.ini
14/08/2005 00:26 113 664 MsnMessengerSetupDownloader.ocx
08/10/2004 16:01 372 736 MsnPUpld.dll
25/07/2002 18:13 24 576 dwusplay.dll
25/07/2002 18:13 196 608 dwusplay.exe
16/06/2004 06:02 323 584 isusweb.dll
31/05/2006 04:15 10 oscan81.ocx_x
18/02/2005 16:22 126 live.ini
09/03/2005 15:43 6 828 scanoptions.tsi
09/03/2005 15:42 6 742 lang.ini
01/03/2005 14:08 53 248 ipsupd.dll
01/03/2005 14:08 118 784 bdupd.dll
07/12/2004 16:07 32 libfn.dll
07/12/2004 16:07 32 bdcore.dll
01/06/2006 02:54 471 040 oscan8.ocx
01/06/2006 02:57 1 331 oscan8.inf
16 fichier(s) 1 689 406 octets
Total des fichiers listés :
16 fichier(s) 1 689 406 octets
2 Rép(s) 50 584 125 440 octets libres
Recherche de rootkit! (Merci S!Ri)
Recherche d'infections connues
Export des clefs sensibles..
Liste des fichiers en exception sur le pare-feu XP SP2
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Messenger\\MSMSGS.EXE"="C:\\Program Files\\Messenger\\MSMSGS.EXE:*:Enabled:Windows Messenger"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\WINDOWS\\System32\\dpvsetup.exe"="C:\\WINDOWS\\System32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINDOWS\\System32\\RUNDLL32.EXE"="C:\\WINDOWS\\System32\\RUNDLL32.EXE:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\\Program Files\\JVTorrent\\btdownloadgui.exe"="C:\\Program Files\\JVTorrent\\btdownloadgui.exe:*:Enabled:btdownloadgui"
"C:\\Program Files\\VideoLAN\\VLC\\vlc.exe"="C:\\Program Files\\VideoLAN\\VLC\\vlc.exe:*:Enabled:VLC media player"
"C:\\Program Files\\BearShare\\BearShare.exe"="C:\\Program Files\\BearShare\\BearShare.exe:*:Enabled:BearShare"
"C:\\Program Files\\BitComet\\BitComet.exe"="C:\\Program Files\\BitComet\\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14A.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14A.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"c:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osC.tmp\\ossproxy.exe"="c:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osC.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:*:Enabled:eMule"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osFC.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osFC.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14E.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14E.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osB.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osB.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Documents and Settings\\thomas torrente\\Bureau\\Emule Xtreme\\emule.exe"="C:\\Documents and Settings\\thomas torrente\\Bureau\\Emule Xtreme\\emule.exe:*:Enabled:eMule"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os2D.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os2D.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus"
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\FlashGet\\FlashGet.exe"="C:\\Program Files\\FlashGet\\FlashGet.exe:*:Enabled:Flashget"
"C:\\Documents and Settings\\thomas torrente\\Mes documents\\DL\\IPmsn.exe"="C:\\Documents and Settings\\thomas torrente\\Mes documents\\DL\\IPmsn.exe:*:Enabled:IPmsn"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os4.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os4.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\BitLord\\BitLord.exe"="C:\\Program Files\\BitLord\\BitLord.exe:*:Enabled:BitLord"
"C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe:*:Enabled:pes6.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\Pmc.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\Pmc.exe:LocalSubNet:Enabled:Pmc.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Spooler.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Spooler.exe:LocalSubNet:Enabled:PMC.Tvtv.Spooler.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\PSST.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PSST.exe:LocalSubNet:Enabled:PSST.exe"
"C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaManager\\PMSManager.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaManager\\PMSManager.exe:LocalSubNet:Enabled:PMSManager.exe"
"C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaServer\\PMSInstallInit.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaServer\\PMSInstallInit.exe:LocalSubNet:Enabled:PMSInstallInit.exe"
"C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Wizard.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Wizard.exe:LocalSubNet:Enabled:PMC.Tvtv.Wizard.exe"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
"C:\\Program Files\\counter strike source\\srcds.exe"="C:\\Program Files\\counter strike source\\srcds.exe:*:Enabled:srcds"
"C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaCenterService\\PMC.Service.Main.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaCenterService\\PMC.Service.Main.exe:LocalSubNet:Disabled:PMCService"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osA.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osA.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe:*:Enabled:Render Manager"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe:*:Enabled:Studio"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe:*:Enabled:PMSRegisterFile"
"C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe:*:Enabled:umi"
"C:\\Valve\\Condition Zero\\czero.exe"="C:\\Valve\\Condition Zero\\czero.exe:*:Enabled:Condition Zero Launcher"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
Export de la clef SharedTaskScheduler
[SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"
Rechercher adresses sensibles dans le fichier HOSTS...
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
REGEDIT4
[taskmgr.exe]
catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-06-23 02:10:43
Windows 5.1.2600 Service Pack 2 FAT NTAPI
scanning hidden files ...
scan completed successfully
hidden files: 0
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Process list by traversal of KiWaitListHead
4 - System
188 - PMSHOST.EXE
360 - SPOOLSV.EXE
668 - taskmgr.exe
700 - guard.exe
780 - DEVSVC.EXE
876 - SQLSERVR.EXE
1004 - CSRSS.EXE
1028 - WINLOGON.EXE
1072 - SERVICES.EXE
1084 - LSASS.EXE
1272 - SVCHOST.EXE
1324 - SVCHOST.EXE
1384 - SVCHOST.EXE
1420 - STYLEXPSERVICE.
1444 - SVCHOST.EXE
1552 - SVCHOST.EXE
1604 - OODAG.EXE
1672 - RTVSCAN.EXE
1844 - ASHSERV.EXE
1860 - ATI2EVXX.EXE
1884 - cmd.exe
2148 - ashMaiSv.exe
2200 - ashWebSv.exe
2844 - iexplore.exe
3132 - ctfmon.exe
3788 - wmiprvse.exe
Total number of processes = 27
NOTE: Under WinXP, this will not show all processes.
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Driver/Module list by traversal of PsLoadedModuleList
804D7000 - \WINDOWS\system32\KERNEL1.EXE
80717000 - \WINDOWS\system32\hal.dll
F8C50000 - \WINDOWS\system32\KDCOM.DLL
F8B60000 - \WINDOWS\system32\BOOTVID.dll
F8647000 - sptd.sys
F8C52000 - \WINDOWS\System32\Drivers\WMILIB.SYS
F862F000 - \WINDOWS\System32\Drivers\SCSIPORT.SYS
F8609000 - d347bus.sys
F85DA000 - ACPI.sys
F8750000 - isapnp.sys
F85C9000 - pci.sys
F8D18000 - pciide.sys
F89D0000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
F8C54000 - intelide.sys
F8760000 - MountMgr.sys
F85AA000 - ftdisk.sys
F89D8000 - PartMgr.sys
F8770000 - VolSnap.sys
F8592000 -
F8C56000 - d347prt.sys
F8780000 - disk.sys
F8790000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
F8572000 - fltMgr.sys
F8560000 - sr.sys
F89E0000 - PxHelp20.sys
F853D000 - Fastfat.sys
F8526000 - KSecDD.sys
F8513000 - WudfPf.sys
F84E6000 - NDIS.sys
F87A0000 - ohci1394.sys
F87B0000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
F84CB000 - Mup.sys
F89E8000 - BTHidMgr.sys
F87E0000 - \SystemRoot\system32\DRIVERS\nic1394.sys
F8C24000 - \SystemRoot\system32\DRIVERS\tunmp.sys
F87F0000 - \SystemRoot\system32\DRIVERS\intelppm.sys
F8387000 - \SystemRoot\system32\DRIVERS\ati2mtag.sys
F8373000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
F834E000 - \SystemRoot\system32\DRIVERS\HDAudBus.sys
F8A10000 - \SystemRoot\system32\DRIVERS\usbuhci.sys
F832B000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
F8A18000 - \SystemRoot\system32\DRIVERS\usbehci.sys
F8267000 - \SystemRoot\system32\DRIVERS\3xHybrid.sys
F8244000 - \SystemRoot\system32\DRIVERS\ks.sys
F8C28000 - \SystemRoot\system32\DRIVERS\BdaSup.SYS
F820B000 - \SystemRoot\system32\DRIVERS\Rtlnic51.sys
F8A20000 - \SystemRoot\system32\DRIVERS\fdc.sys
F81FA000 - \SystemRoot\system32\DRIVERS\serial.sys
F8C2C000 - \SystemRoot\system32\DRIVERS\serenum.sys
F81E6000 - \SystemRoot\system32\DRIVERS\parport.sys
F8800000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
F8A28000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
F8810000 - \SystemRoot\system32\DRIVERS\imapi.sys
F8C58000 - \SystemRoot\System32\Drivers\ElbyDelay.sys
F8A30000 - \SystemRoot\System32\Drivers\ElbyCDFL.sys
F8A38000 - \SystemRoot\system32\drivers\ASAPIW2k.sys
F8820000 - \SystemRoot\system32\DRIVERS\cdrom.sys
F8830000 - \SystemRoot\system32\DRIVERS\redbook.sys
F8C5A000 - \SystemRoot\system32\DRIVERS\NTIDrvr.sys
F8A40000 - \SystemRoot\SYSTEM32\DRIVERS\GEARAspiWDM.sys
F8036000 - \SystemRoot\System32\Drivers\albfaqc4.SYS
F7FF6000 - \SystemRoot\system32\DRIVERS\bbcap.sys
F7FF5000 - \SystemRoot\system32\DRIVERS\audstub.sys
F8840000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
F848F000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
F7F7F000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
F8850000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
F8860000 - \SystemRoot\system32\DRIVERS\raspptp.sys
F8AA0000 - \SystemRoot\system32\DRIVERS\TDI.SYS
F7F6E000 - \SystemRoot\system32\DRIVERS\psched.sys
F8870000 - \SystemRoot\system32\DRIVERS\msgpc.sys
F8AA8000 - \SystemRoot\system32\DRIVERS\ptilink.sys
F8AB0000 - \SystemRoot\system32\DRIVERS\raspti.sys
F8880000 - \SystemRoot\system32\DRIVERS\termdd.sys
F8AB8000 - \SystemRoot\system32\DRIVERS\mouclass.sys
F8C60000 - \SystemRoot\system32\DRIVERS\swenum.sys
F7F3A000 - \SystemRoot\system32\DRIVERS\update.sys
F8483000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
F7F0C000 - \SystemRoot\system32\DRIVERS\MarvinBus.sys
F8890000 - \SystemRoot\System32\Drivers\NDProxy.SYS
B2D92000 - \SystemRoot\system32\drivers\RtkHDAud.sys
B2D70000 - \SystemRoot\system32\drivers\portcls.sys
F88C0000 - \SystemRoot\system32\drivers\drmk.sys
F88D0000 - \SystemRoot\system32\DRIVERS\usbhub.sys
F8C64000 - \SystemRoot\system32\DRIVERS\USBD.SYS
B2CD1000 - \??\C:\Program Files\Symantec AntiVirus\savrt.sys
B2CB4000 - \??\C:\Program Files\Symantec\SYMEVENT.SYS
F88F0000 - \??\C:\Program Files\Symantec AntiVirus\Savrtpel.sys
B2BE5000 - \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20070621.017\navex15.sys
B2BD3000 - \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20070621.017\naveng.sys
F8C66000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
F7FB3000 - \SystemRoot\System32\Drivers\Null.SYS
F8C68000 - \SystemRoot\System32\Drivers\Beep.SYS
F7FB1000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys
F8AD0000 - \SystemRoot\system32\DRIVERS\USBSTOR.SYS
F8AD8000 - \SystemRoot\System32\drivers\vga.sys
F8C6A000 - \SystemRoot\System32\Drivers\mnmdd.SYS
F8C6C000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
F8AE0000 - \SystemRoot\System32\Drivers\Msfs.SYS
F8AE8000 - \SystemRoot\System32\Drivers\Npfs.SYS
F8497000 - \SystemRoot\system32\DRIVERS\rasacd.sys
B2BA0000 - \SystemRoot\system32\DRIVERS\ipsec.sys
B2B48000 - \SystemRoot\system32\DRIVERS\tcpip.sys
B2B27000 - \SystemRoot\system32\DRIVERS\ipnat.sys
F8900000 - \SystemRoot\System32\Drivers\aswTdi.SYS
F8910000 - \SystemRoot\system32\DRIVERS\wanarp.sys
B2ABF000 - \SystemRoot\System32\Drivers\SYMTDI.SYS
F8920000 - \SystemRoot\system32\DRIVERS\arp1394.sys
B2A97000 - \SystemRoot\system32\DRIVERS\netbt.sys
B2A5F000 - \SystemRoot\system32\DRIVERS\tcpip6.sys
F7E5C000 - \SystemRoot\System32\drivers\ws2ifsl.sys
B2A3D000 - \SystemRoot\System32\drivers\afd.sys
F8930000 - \SystemRoot\system32\DRIVERS\netbios.sys
F7E58000 - \??\C:\Program Files\TGTSoft\StyleXP\StyleXPHelper.exe
B2972000 - \SystemRoot\system32\DRIVERS\rdbss.sys
B2903000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
F8AF8000 - \SystemRoot\system32\DRIVERS\Ip6Fw.sys
F8940000 - \SystemRoot\System32\Drivers\Fips.SYS
F810E000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
F8B00000 - \SystemRoot\System32\Drivers\Aavmker4.SYS
B2D6C000 - \SystemRoot\system32\DRIVERS\hidusb.sys
F8960000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
F8B08000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
B2D68000 - \SystemRoot\system32\DRIVERS\mouhid.sys
F8970000 - \SystemRoot\System32\Drivers\Cdfs.SYS
B28C3000 - \SystemRoot\System32\Drivers\dump_atapi.sys
F8CDC000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
BF800000 - \SystemRoot\System32\win32k.sys
B2D54000 - \SystemRoot\System32\drivers\Dxapi.sys
F8B10000 - \SystemRoot\System32\watchdog.sys
BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
F8E27000 - \SystemRoot\System32\drivers\dxgthk.sys
BF9D5000 - \SystemRoot\System32\ati2dvag.dll
BFA0E000 - \SystemRoot\System32\ati2cqag.dll
BFA4B000 - \SystemRoot\System32\ati3duag.dll
BFC79000 - \SystemRoot\System32\ativvaxx.dll
B078B000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
B0565000 - \SystemRoot\System32\Drivers\aswMon2.SYS
B0320000 - \SystemRoot\system32\drivers\wdmaud.sys
F8980000 - \SystemRoot\system32\drivers\sysaudio.sys
F8C70000 - \SystemRoot\System32\Drivers\ElbyCDIO.sys
B009E000 - \SystemRoot\system32\DRIVERS\srv.sys
B0026000 - \SystemRoot\system32\DRIVERS\secdrv.sys
F8CAE000 - \??\C:\WINDOWS\system32\Drivers\Vcs.sys
AFEA2000 - \SystemRoot\System32\Drivers\aswRdr.SYS
F8DA0000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys
Total number of drivers = 146
Liste des programmes installes
0x1
Ad-Aware SE Professional
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 9 ActiveX
Adobe Help Center 2.0
Adobe Photoshop CS2 Portable Par Le Nettoyeur
Adobe Premiere Pro 2.0
Adobe Premiere Pro 2.0
Adobe Reader 6.0 - Français
Adobe Stock Photos 1.0
Agere Systems PCI Soft Modem
AlienGUIse Theme Manager
Apple Software Update
Archiveur WinRAR
ASIO4ALL
ATI Display Driver
AV Voice Changer Software DIAMOND 4.0
avast! Antivirus
Avex DVD to Mobile Converter (remove only)
Avex DVD to Mobile Video Suite (remove only)
Avex Mobile Video Converter (remove only)
AVG Anti-Spyware 7.5
AVS Video Converter 4.3.1.371
Azureus
Barre d'outils Outlook de Windows Live (Windows Live Toolbar)
BB FlashBack
BB FlashBack
BearShare
BitComet 0.70
BitLord 1.1
Bloqueur de fenêtres pop-up (Windows Live Toolbar)
CCleaner (remove only)
CINEMA 4D Release 10
ClipFactory
CloneCD
CloneDVD2
ClubDJ Pro
Collab
Conseiller de mise à niveau Windows Vista
Correctif pour Windows XP (KB914440)
Correctif pour Windows XP (KB935448)
Correctif Windows XP - KB873333
Correctif Windows XP - KB873339
Correctif Windows XP - KB885250
Correctif Windows XP - KB885835
Correctif Windows XP - KB885836
Correctif Windows XP - KB886185
Correctif Windows XP - KB887472
Correctif Windows XP - KB887742
Correctif Windows XP - KB888113
Correctif Windows XP - KB888302
Correctif Windows XP - KB890859
Correctif Windows XP - KB891781
Correctif Windows XP - KB893086
Crucible
DAEMON Tools
Driver Genius Professional Edition 2007
Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)
DVD Shrink 3.2
e-zshopper
East-Tec Eraser 2007 Version 8.0
Edgar Torronteras' Extreme Biker
eMule
EPSON Logiciel imprimante
EPSON PhotoQuicker3.4
EPSON PRINT Image Framer Tool2.0
ESC64 Guide de référence
ESC64 Guide des logiciels
Extension de Windows Live Toolbar (Windows Live Toolbar)
FaceOnBody
FlashGet 1.8.2.1001
FLV Player
Folder Password Protect 2.7
GameShadow
Gif Movie Gear 4
Google Earth Pro
Google Toolbar for Internet Explorer
Google Toolbar for Internet Explorer
Hide IP Platinum 2.8
High Definition Audio Driver Package - KB835221
High Definition Audio Driver Package - KB888111
HijackThis 1.99.1
Hollywood FX Pack 26 - Extra FX
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
IL Download Manager
Internet Cyclone 1.92
InterVideo DeviceService
iolo technologies' System Mechanic 6
ISO Recorder
J2SE Runtime Environment 5.0 Update 4
J2SE Runtime Environment 5.0 Update 6
Java 2 Runtime Environment, SE v1.4.2_05
JVTorrent 1.1
K-Lite Codec Pack 2.48 Full
Konvertor
Lavasoft Reghance 2.1
Lecteur Windows Media 11
LimeWire PRO 4.13.0
LiveUpdate 2.0 (Symantec Corporation)
Magic ISO Maker v5.4 (build 0239)
Menus intelligents (Windows Live Toolbar)
Messenger Plus! 3 & Sponsor
Messenger Plus! Live & Sponsor (CiD)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft .NET Framework 2.0
Microsoft .NET Framework 2.0
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Access MUI (French) 2007
Microsoft Office Excel MUI (French) 2007
Microsoft Office InfoPath MUI (French) 2007
Microsoft Office Outlook MUI (French) 2007
Microsoft Office PowerPoint MUI (French) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (Dutch) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (French) 2007
Microsoft Office Publisher MUI (French) 2007
Microsoft Office Shared MUI (French) 2007
Microsoft Office Word MUI (French) 2007
Microsoft Software Update for Web Folders (French) 12
Microsoft SQL Server Desktop Engine (PINNACLESYS)
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Mise à jour de sécurité pour Lecteur Windows Media (KB911564)
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)
Mise à jour de sécurité pour Windows XP (KB890046)
Mise à jour de sécurité pour Windows XP (KB893066)
Mise à jour de sécurité pour Windows XP (KB893756)
Mise à jour de sécurité pour Windows XP (KB896358)
Mise à jour de sécurité pour Windows XP (KB896422)
Mise à jour de sécurité pour Windows XP (KB896423)
Mise à jour de sécurité pour Windows XP (KB896424)
Mise à jour de sécurité pour Windows XP (KB896428)
Mise à jour de sécurité pour Windows XP (KB896688)
Mise à jour de sécurité pour Windows XP (KB899587)
Mise à jour de sécurité pour Windows XP (KB899588)
Mise à jour de sécurité pour Windows XP (KB899591)
Mise à jour de sécurité pour Windows XP (KB900725)
Mise à jour de sécurité pour Windows XP (KB901017)
Mise à jour de sécurité pour Windows XP (KB901190)
Mise à jour de sécurité pour Windows XP (KB901214)
Mise à jour de sécurité pour Windows XP (KB902400)
Mise à jour de sécurité pour Windows XP (KB904706)
Mise à jour de sécurité pour Windows XP (KB905414)
Mise à jour de sécurité pour Windows XP (KB905749)
Mise à jour de sécurité pour Windows XP (KB905915)
Mise à jour de sécurité pour Windows XP (KB908519)
Mise à jour de sécurité pour Windows XP (KB908531)
Mise à jour de sécurité pour Windows XP (KB911280)
Mise à jour de sécurité pour Windows XP (KB911562)
Mise à jour de sécurité pour Windows XP (KB911567)
Mise à jour de sécurité pour Windows XP (KB911927)
Mise à jour de sécurité pour Windows XP (KB912812)
Mise à jour de sécurité pour Windows XP (KB912919)
Mise à jour de sécurité pour Windows XP (KB913446)
Mise à jour de sécurité pour Windows XP (KB913580)
Mise à jour de sécurité pour Windows XP (KB914388)
Mise à jour de sécurité pour Windows XP (KB914389)
Mise à jour de sécurité pour Windows XP (KB916281)
Mise à jour de sécurité pour Windows XP (KB917159)
Mise à jour de sécurité pour Windows XP (KB917344)
Mise à jour de sécurité pour Windows XP (KB917422)
Mise à jour de sécurité pour Windows XP (KB917953)
Mise à jour de sécurité pour Windows XP (KB918118)
Mise à jour de sécurité pour Windows XP (KB918439)
Mise à jour de sécurité pour Windows XP (KB918899)
Mise à jour de sécurité pour Windows XP (KB919007)
Mise à jour de sécurité pour Windows XP (KB920213)
Mise à jour de sécurité pour Windows XP (KB920214)
Mise à jour de sécurité pour Windows XP (KB920670)
Mise à jour de sécurité pour Windows XP (KB920683)
Mise à jour de sécurité pour Windows XP (KB920685)
Mise à jour de sécurité pour Windows XP (KB921398)
Mise à jour de sécurité pour Windows XP (KB921883)
Mise à jour de sécurité pour Windows XP (KB922616)
Mise à jour de sécurité pour Windows XP (KB922760)
Mise à jour de sécurité pour Windows XP (KB922819)
Mise à jour de sécurité pour Windows XP (KB923191)
Mise à jour de sécurité pour Windows XP (KB923414)
Mise à jour de sécurité pour Windows XP (KB923689)
Mise à jour de sécurité pour Windows XP (KB923694)
Mise à jour de sécurité pour Windows XP (KB923980)
Mise à jour de sécurité pour Windows XP (KB924191)
Mise à jour de sécurité pour Windows XP (KB924270)
Mise à jour de sécurité pour Windows XP (KB924496)
Mise à jour de sécurité pour Windows XP (KB924667)
Mise à jour de sécurité pour Windows XP (KB925454)
Mise à jour de sécurité pour Windows XP (KB925486)
Mise à jour de sécurité pour Windows XP (KB925902)
Mise à jour de sécurité pour Windows XP (KB926255)
Mise à jour de sécurité pour Windows XP (KB926436)
Mise à jour de sécurité pour Windows XP (KB927779)
Mise à jour de sécurité pour Windows XP (KB927802)
Mise à jour de sécurité pour Windows XP (KB928255)
Mise à jour de sécurité pour Windows XP (KB928843)
Mise à jour de sécurité pour Windows XP (KB930178)
Mise à jour de sécurité pour Windows XP (KB931261)
Mise à jour de sécurité pour Windows XP (KB931784)
Mise à jour de sécurité pour Windows XP (KB932168)
Mise à jour pour Windows XP (KB894391)
Mise à jour pour Windows XP (KB896727)
Mise à jour pour Windows XP (KB898461)
Mise à jour pour Windows XP (KB900485)
Mise à jour pour Windows XP (KB904942)
Mise à jour pour Windows XP (KB910437)
Mise à jour pour Windows XP (KB916595)
Mise à jour pour Windows XP (KB920872)
Mise à jour pour Windows XP (KB922582)
Mise à jour pour Windows XP (KB927891)
Mise à jour pour Windows XP (KB929338)
Mise à jour pour Windows XP (KB930916)
Mise à jour pour Windows XP (KB931836)
MixMeister BPM Analyzer 1.0
MixMeister Pro 6
Morgan Stream Switcher
Mozilla Firefox (2.0.0.4)
MSN Messenger 7.5
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 Parser and SDK
Nero 7 Demo
NET Render Release 10
NTI Backup NOW! 3
NTI Backup NOW! 3
NTI CD & DVD-Maker
NTI CD & DVD-Maker Gold
O&O Defrag Professional Edition
OneCare Advisor (Windows Live Toolbar)
OpenSSL 0.9.6m
Oro Messenger Skin
Philips SPC 200NC PC Camera
PhotoFiltre Studio
Photoshop CS2
PIF DESIGNER2.0
Pinnacle device drivers
Pinnacle Hollywood FX Pack0 - Extra FX
Pinnacle Hollywood FX Pack1 - Holiday FX
Pinnacle Hollywood FX Pack2 - Family FX
Pinnacle Instant DVD Recorder
Pinnacle MediaCenter
Pinnacle MediaServer
PowerDVD
PQ DVD to 3GP Video Suite (remove only)
Pro Evolution Soccer 6
Pro Evolution Soccer 6
proDAD Heroglyph 2.5
proDAD Vitascene 1.0
QuickTime
RAR Password Cracker 4.12
Realtek High Definition Audio Driver
Registry Mechanic 6.0
RM-X® Audio Extractor
ScanToWeb
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Security Update for Excel 2007 (KB934670)
Security Update for Microsoft .NET Framework 2.0 (KB922770)
Security Update for Office 2007 (KB934062)
Security Update pour Microsoft .NET Framework 2.0 (KB917283)
Smart PC 4.0
Smartalec PC Accelerator 2007 Professional Suite 1.1
SmartSound Quicktracks Plugin
SmartSound Quicktracks Plugin
Sony DVD Architect 4.0
Sony Media Manager 2.0
Sony Media Manager 2.2
Sony Noise Reduction Plug-In 2.0e
Sony Sound Forge 9.0
Sony Vegas 7.0
SphereXP 1.1.626
Spyware Doctor 5.0
Steam
Studio 11
Studio 11
Studio 11 Bonus DVD
StuffPlug-NG (Messenger Plus! Plugins)
StyleXP (remove only)
SuperMegaSpoof 2.0
Symantec AntiVirus
The Matrix Revolutions 3D Screen Saver v3.2
The Matrix Screen Saver
Themexp.org File
Total Video Converter 3.10
TuneUp Utilities 2007
Turbo Connect
Tweak-SE plug-in for Ad-Aware SE
Ulead VideoStudio 11
Update for Office 2007 (KB932080)
Update for Office 2007 (KB933688)
Update for Office 2007 (KB934393)
Update for Outlook 2007 Junk Email Filter (KB934655)
Update for Word 2007 (KB934173)
Utilidades Sierra
Utilitaires Sierra
VD Codec Pack 1.3
VideoAvatar
VideoLAN VLC media player 0.8.2
VideoStudio
Virtual DJ - Atomix Productions
Wave11 Glass
WebFldrs XP
Winamp (remove only)
WindowBlinds
Windows Genuine Advantage v1.3.0254.0
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Live Favorites pour Windows Live Toolbar
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Movie Maker 2.0
WinISO 5.3
WinPcap 3.1 beta3
WinSessionPasswordCasseur 1.0
WinXMedia AVI/WMV 3GP Converter 2.35
WinZip
Yahoo! Desktop Login
Yahoo! Widget Engine
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
22/03/2005 14:21 <REP> Adobe
19/06/2007 16:11 <REP> AdorageI-GfxDatas
19/06/2007 16:11 <REP> AdorageI-SAL
15/09/2005 13:39 <REP> Ahead
01/04/2007 13:29 <REP> Alex Feinman
16/04/2007 19:29 <REP> AlienGUIse
20/06/2007 16:38 <REP> Alwil Software
22/09/2006 17:18 <REP> Apple Software Update
30/03/2007 13:42 <REP> ASIO4ALL v2
12/05/2007 12:08 <REP> AV Vcs 4.0 DIAMOND
14/04/2007 12:10 <REP> Avex
14/02/2006 23:13 <REP> AVSMedia
25/03/2007 22:35 <REP> Azureus
05/11/2006 11:31 <REP> BearShare
03/08/2006 01:12 <REP> BitComet
29/04/2007 16:19 <REP> BitLord
18/05/2007 21:39 <REP> Blueberry Software
13/05/2006 15:28 <REP> CA
01/05/2007 21:53 <REP> CAPCOM
23/06/2007 00:18 <REP> CCleaner
17/10/2005 20:35 <REP> CheckFlow
19/06/2007 00:57 <REP> ClubDJ Pro
04/10/2005 19:05 <REP> Common Files
22/03/2005 14:19 <REP> ComPlus Applications
18/10/2004 19:22 <REP> counter strike source
22/03/2005 14:31 <REP> CyberLink
29/04/2007 23:44 <REP> DAEMON Tools
09/09/2005 11:54 <REP> Dafhsp
30/08/2006 20:43 <REP> DivX
28/10/2005 16:24 4 096 dmfafr39.Dlk
23/10/2005 21:38 8 192 dmfafr39.Ock
04/10/2005 16:31 <REP> Doom 3
16/04/2007 20:11 <REP> Driver-Soft
19/06/2007 15:39 <REP> D-Tools
28/05/2007 20:03 <REP> DVD Shrink
29/03/2006 14:25 <REP> EA GAMES
19/06/2007 01:00 <REP> East-Tec Eraser 2007
03/10/2006 19:59 <REP> eChanblard
04/09/2006 14:46 <REP> Edovia AntiSpam
13/08/2006 17:52 <REP> Eidos
07/01/2007 13:49 <REP> Elaborate Bytes
01/10/2005 16:07 <REP> Empire Interactive
10/08/2005 21:15 <REP> eMule
31/10/2006 14:05 <REP> EPSON
12/10/2005 17:43 <REP> e-zshopper
16/04/2007 19:52 <REP> FaceOnBody
22/03/2005 14:15 <REP> Fichiers communs
23/07/2006 16:00 <REP> FileZilla
13/08/2006 15:49 <REP> flashFXP
15/04/2007 11:32 <REP> FlashGet
18/05/2007 23:51 <REP> FLV Player
30/04/2007 03:24 <REP> Folder Password Protect
05/11/2005 19:12 <REP> Fx Audio Conveter
13/08/2006 17:50 <REP> GameShadow
04/05/2007 00:34 <REP> GeoVid
05/08/2006 13:40 <REP> Google
23/06/2007 00:25 <REP> Grisoft
17/04/2007 16:04 <REP> Hide IP Platinum
03/08/2006 01:42 <REP> ICOO Loader
19/11/2005 20:18 <REP> Illustrate
29/10/2006 15:48 <REP> Image-Line
25/03/2007 15:34 <REP> ImTOO
22/03/2005 14:26 <REP> Intel
05/05/2007 13:01 <REP> Internet Cyclone
22/03/2005 14:19 <REP> Internet Explorer
10/06/2007 01:24 <REP> iolo
09/01/2007 19:11 <REP> Jasc Software Inc
22/03/2005 14:27 <REP> Java
01/10/2005 16:30 <REP> JVTorrent
14/08/2005 20:22 <REP> K-Lite Codec Pack
29/04/2007 23:52 <REP> KONAMI
05/11/2005 19:16 <REP> Konvertor
08/04/2007 02:47 <REP> Lavasoft
08/04/2007 02:48 <REP> Lavasoft RegHance
30/12/2006 19:54 <REP> LimeWire
08/05/2007 11:45 <REP> MagicISO
08/05/2007 12:18 <REP> MAXON
16/04/2007 18:08 <REP> MegaSpoof
22/03/2005 14:18 <REP> Messenger
07/05/2007 12:25 <REP> Messenger Plus! Live
10/08/2005 20:06 <REP> MessengerPlus! 3
10/05/2007 03:04 <REP> Microsoft CAPICOM 2.1.0.2
22/03/2005 14:22 <REP> microsoft frontpage
18/10/2005 21:58 <REP> Microsoft Office
26/11/2005 18:33 <REP> Microsoft SQL Server
15/04/2007 19:40 <REP> Microsoft Visual Studio
18/04/2007 12:32 <REP> Microsoft Windows Vista Upgrade Advisor
15/04/2007 19:41 <REP> Microsoft Works
15/04/2007 19:39 <REP> Microsoft.NET
05/09/2005 03:11 <REP> MilkShape 3D 1.7.3
18/10/2004 19:45 20 480 MISE EN SERVICE CS SOURCE.doc
29/10/2006 15:25 <REP> MixMeister BPM Analyzer
03/06/2007 12:37 <REP> MixMeister Pro 6
19/11/2005 23:59 <REP> Morgan
22/03/2005 14:19 <REP> Movie Maker
08/04/2007 10:45 <REP> Mozilla Firefox
15/04/2007 19:40 <REP> MSBuild
15/04/2007 19:31 <REP> MSECache
22/03/2005 14:18 <REP> MSN
22/03/2005 14:18 <REP> MSN Gaming Zone
10/08/2005 19:57 <REP> MSN Messenger
15/04/2007 16:43 <REP> MsnChecker
04/10/2005 19:04 <REP> MSNShell
10/08/2005 23:56 <REP> MSXML 4.0
16/04/2007 17:43 <REP> Nero
22/03/2005 14:19 <REP> NetMeeting
22/03/2005 14:33 <REP> NewTech Infosystems
22/03/2005 14:29 <REP> Norton AntiVirus
22/03/2005 14:19 <REP> Online Services
17/04/2007 22:50 <REP> OO Software
22/03/2005 14:19 <REP> Outlook Express
19/11/2005 20:14 <REP> Oxilog
09/01/2007 19:10 <REP> Panicware
17/04/2007 22:55 <REP> PC Accelerator Professional
08/10/2005 17:34 <REP> Philips
01/08/2006 01:44 <REP> PhotoFiltre Studio
17/04/2007 16:13 <REP> PhotoZoom Professional
18/08/2005 19:00 <REP> Pinnacle
12/10/2005 17:49 <REP> Plus!
14/04/2007 12:11 <REP> PQDVD
19/06/2007 16:15 <REP> proDAD
11/08/2005 00:46 <REP> Project64 v1.5
23/10/2005 23:46 <REP> PROMT5
12/05/2006 17:42 <REP> QuickTime
18/10/2004 20:12 36 747 racourci.JPG
01/04/2007 13:23 <REP> RAR Password Cracker
22/03/2005 14:26 <REP> Realtek
12/08/2005 13:31 <REP> Red Storm Entertainment
10/06/2007 01:32 <REP> Registry Mechanic
10/06/2007 01:16 <REP> RM-X® Audio Extractor
22/03/2005 14:20 <REP> Services en ligne
17/08/2005 15:14 <REP> Sierra On-Line
30/04/2007 00:02 <REP> SlySoft
16/04/2007 21:03 <REP> Smart PC Solutions
14/05/2007 02:19 <REP> SmartSound Software
20/11/2005 18:34 <REP> SmartSound Software Inc
25/04/2007 01:38 <REP> Softwin
18/08/2005 15:59 <REP> Sonic Foundry Setup
05/12/2005 18:32 <REP> Sony
18/08/2005 19:53 <REP> Sony Setup
26/04/2007 21:51 <REP> SphereXP
06/06/2007 23:57 <REP> Spyware Doctor
09/01/2007 19:12 <REP> Steinberg
22/03/2005 14:28 <REP> Symantec
14/04/2007 00:45 <REP> Symantec AntiVirus
07/05/2006 23:24 <REP> TGTSoft
12/10/2005 17:43 <REP> themexp
07/01/2007 18:25 <REP> Torrent101
21/04/2007 00:48 <REP> Total Video Converter
15/04/2007 17:40 <REP> TuneUp Utilities 2007
30/04/2007 03:21 <REP> TurboConnect
28/09/2005 12:55 <REP> Ubisoft
25/05/2007 10:37 <REP> Ulead Systems
24/09/2005 19:37 <REP> UselessCreations
11/08/2005 12:39 <REP> Valve
14/08/2005 00:05 <REP> VDCodecPack1.3
19/11/2005 23:42 <REP> VideoLAN
11/08/2006 17:38 <REP> VirtualDJ
09/02/2006 13:42 <REP> Visicom Media
28/10/2005 16:24 4 096 vmfafr.Dlk
23/10/2005 21:38 8 192 vmfafr.Ock
30/08/2005 10:36 <REP> Vstplugins
19/11/2005 16:20 <REP> Winamp
07/05/2007 12:22 <REP> Windows Live Favorites
10/12/2006 20:24 <REP> Windows Live Toolbar
25/05/2007 10:39 <REP> Windows Media Components
03/01/2007 11:38 <REP> Windows Media Connect 2
22/03/2005 14:19 <REP> Windows Media Player
22/03/2005 14:18 <REP> Windows NT
18/03/2006 12:05 <REP> WinISO
15/04/2007 16:43 <REP> WinPcap
28/01/2006 18:17 <REP> WinRAR
29/04/2007 16:14 <REP> WinSessionPasswordCasseur 1.0
14/04/2007 12:10 <REP> WinXMedia
05/08/2006 13:39 <REP> WinZip
22/03/2005 14:22 <REP> xerox
04/09/2005 11:47 <REP> XRadiance
19/06/2007 00:54 <REP> Yahoo!
6 fichier(s) 81 803 octets
174 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files\fichiers communs
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
22/03/2005 14:15 <REP> Microsoft Shared
22/03/2005 14:15 <REP> SpeechEngines
22/03/2005 14:15 <REP> ODBC
22/03/2005 14:19 <REP> System
22/03/2005 14:19 <REP> MSSoap
22/03/2005 14:19 <REP> Services
22/03/2005 14:25 <REP> InstallShield
22/03/2005 14:27 <REP> Java
22/03/2005 14:29 <REP> Symantec Shared
14/08/2005 20:23 <REP> Ahead
05/09/2005 03:28 <REP> Adobe
05/09/2005 03:28 <REP> Vbox
23/10/2005 23:27 <REP> Adobe Systems Shared
14/02/2006 23:13 <REP> AVSMedia
28/03/2006 20:36 <REP> SWF Studio
28/10/2006 19:34 <REP> Digidesign
28/12/2006 18:34 <REP> Teleca Shared
15/04/2007 19:40 <REP> DESIGNER
16/04/2007 19:29 <REP> Stardock
25/04/2007 01:35 <REP> Softwin
18/05/2007 21:39 <REP> Blueberry Software
22/05/2007 21:36 <REP> Wise Installation Wizard
25/05/2007 10:40 <REP> InterVideo
25/05/2007 11:11 <REP> Ulead Systems
0 fichier(s) 0 octets
26 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
07/03/2001 07:00 127 033 MSOWS40c.DLL
03/06/1999 12:09 122 937 MSOWS409.DLL
18/03/1999 06:37 593 977 RAGENT.DLL
15/04/2007 19:34 <REP> 1036
26/10/2006 20:12 40 256 MSOSV.DLL
26/10/2006 19:49 970 528 MSONSEXT.DLL
20/06/2007 11:27 73 605 ibm00001.dll
20/06/2007 11:27 58 098 ibm00002.dll
7 fichier(s) 1 986 434 octets
3 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files\common files
04/10/2005 19:05 <REP> .
04/10/2005 19:05 <REP> ..
04/10/2005 19:05 <REP> msnshell
31/10/2006 14:07 <REP> UDL
20/06/2007 11:26 <REP> ?icrosoft.NET
0 fichier(s) 0 octets
5 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\
20/06/2007 23:31 1 308 216 scan.exe
16/02/2005 11:06 218 112 HijackThis.exe
12/05/2007 18:22 68 096 diff.exe
12/05/2007 18:22 103 424 grep.exe
24/05/2001 12:59 162 304 UNWISE.EXE
5 fichier(s) 1 860 152 octets
0 Rép(s) 50 583 764 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\
c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\AimMix.exe
c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\glue lite.exe
c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\MetaFour.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\BB FlashBack.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPDRNTLEXFRGDRFFFFFF0\DrvInstaller.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFBLSLACEXEAGDIFFFF0\FB_Launcher.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLOYSVEXFRGDRFFFFFF0\LogSysServer.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPREREHEEEFTGTRFFFFF0\RecorderChecker.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUFBLSASAKTCXOEXTRTDFFFF0\FlashBack Batch Export.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUPFBLSASAKCOEEFTGTRFFFF0\FlashBack Recorder.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCNEUPFBLSASAKAYEEARTIFFFF0\FlashBack Player.exe
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPINMCNEUPFRFABAPAREFAETRFFFF0\Free FlashBack Player.exe
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Shareaza\Incomplete\7XPUCROFSODWBJVO645DJ42I6CKKB2ZX Shareaza_2.2.1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\reverso.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\traducteur_Reverso Expert 5 Fr (Francais-Anglais-Allemand-Espagnol) + Crack.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\MInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\UTILS\PIE5CLR.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\UTILS\STSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\MInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\UTILS\PIE5CLR.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\UTILS\STSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\MInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\msi2xml.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\UTILS\PIE5CLR.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\UTILS\STSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Family Fun FX Pass studiodeluxe.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\hfxpack1-holidayfx-pp pass holiday.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywood fx pack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywood FX.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\HollywoodFX.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywoof FX 5 Keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-Bundle1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-KidsSports1(1).exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-KidsSports1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-Wedding1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Welcome.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Driver\PCLEBendPCI.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Driver\PCLEUSB.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\Family Fun FX Pass studiodeluxe.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\hfxpack1-holidayfx-pp pass holiday.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\HollywoodFX.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-Bundle1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1(1).exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-Wedding1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\HollywoodFX\hfx5studiosilent.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Pixie5\PixieTool.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Pixie5\RegisterStudio\LicenseTool.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Setup\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tools\amcap.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tools\PPE114.EXE
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tutorial\Tutorial.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.1.2\Pinnacle_Studio_Patch_9_1_2_15d.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.3.5\Pinnacle_Studio_Patch_9_3_5.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.1\Pinnacle_Studio_Patch_9_4_1.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.2\Pinnacle_Studio_Patch_9_3_5To9_4_2_Light.exe
c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.2\Pinnacle_Studio_Patch_9_4_2.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\crystalblue.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Install.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Install_MSN_Messenger.EXE
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\wrar36b1.exe
c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Elegance\elegance.exe
c:\Documents and Settings\thomas torrente\Mes docu
SUITE ET FIN, CA RENTRAIT PAS DSL :s :
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\ASIO4ALL.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\atomixmp3_trial.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Azureus_2.5.0.4a_Win32.setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\BearShareV6int.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\BitComet_0.70_setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\bob_down_1.1.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\daemon347.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\dBpowerAMP-r2.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\DivXPlay.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\dotnetfx.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eChanblard.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eMule0.46c-Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eMule0.47a-Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\FileZilla_2_2_26_setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\flashget181en.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\ftpexpert3.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\FxACSU.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\hfxpack0-extrafx.exe2.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_Messenger.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_Messenger22.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_MSN_Messenger.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\iTunesSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\klcodec248f.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\megauploadtoolbarsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\mmswitch.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\mp10setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsgPlus-354.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsgPlusLive-411.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\msn_wave11glass.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MSNChecker.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsnSearchToolbarSetup_fr-fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\PandoSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\patch-pinnacle-studio_patch_pinnacle_studio_9.4.3_francais_13278.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\pfs-setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Shareaza_2.1.0.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\SPNG2.2.397.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\SteamInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\steaminstall_hl2demo.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\StudioPatch10_7_0.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\video.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\vlc-0.8.2-win32.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\winamp5111_full.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\WINISO53.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\wrar351fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\50comupd.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\hhupd.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\InstMsi-x86a.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\InstMsi-x86w.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\MDAC_TYP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\MSDESetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\msisetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\3gpconv\3gp-video-converter.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\3gpconv\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\tune up 2007 french\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\tune up 2007 french\TU2007TrialFR.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[NTi]_S.T.A.L.K.E.R.Shadow.of.Chernobyl-ViTALiTY.CRACK.ONLY\XR_3DA.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Steam Keygen (Counter-Strike Source) Working\HalfLifeCSKeyGen.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\rld-pes6c\pes6.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\ResidentEvil4v1.1.0FixedexeEuro\game.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Pinacle Hollywood Fx Crack\hfx5cc.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Pinacle Hollywood Fx Crack\Crack\14.12 Pinnacle Hollywood FX v5.1\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[PC GAME FR] Splinter Cell 4 Double Agent - crack NOCD fr\SCDA-Offline\System\SplinterCell4.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[PC GAME FR] Splinter Cell 4 Double Agent - crack NOCD fr\SCDA-Online\System\SCDA_Online.exe
c:\Documents and Settings\thomas torrente\Mes documents\Google Hacker\Google Hacker v2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\aaw2007.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\akira76'sFPS L'anti-mule.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\BitLord_1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\daemon-tools_daemon_tools_4.0.9.1_anglais_10729.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\dotnetfx.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\FLVPlayerSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Install_Messenger.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\IPmsn.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MsgPlusLive-420.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\RapidShare Time Resetter.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Setup_MagicISO.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\SteamInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\SuperMegaSpoof.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\TurboConnect.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\tvc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Xenomorph_slim.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Crack vista\Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\SaveAsPDFandXPS.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\SETUP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\OFFICE.FR-FR\DW20.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\OFFICE.FR-FR\DWTRIG20.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\PROPLUS.WW\OSE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google earth pro installation\Patch.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google earth pro installation\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Néro 7.0 Prémium\Nero-7.0.1.2_fra.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Face On Body v2.1.3\Face On Body v2.1.3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Face On Body v2.1.3\Patch Face On Body v2.1.3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\driver\drvgenpro.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Smart.PC.4.0 CRKEXE-\SmartPC.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Smart.PC.4.0 CRKEXE-\smartpcsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\winrar3.60 Fr\Crack WinRAR 3.x.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\winrar3.60 Fr\wrar360fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\adobephotoshop\Adobe Photoshop CS2 Portable Fr 9.0.2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\adobephotoshop\crack_photoshop_cs2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe DNG Converter\Adobe DNG Converter.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe Reader 7.0\AdbeRdr70_fra_full.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Goodies\Modules externes facultatifs\Seiko Epson\PIM II Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Crack et Keygen\Crack Activation Photoshop CS2 Fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Crack et Keygen\Keygen Photoshop CS2 Fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\hide ip platinium\Hide IP Platinum 2.8.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\hide ip platinium\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\PZP_v1.2\PhotoZoom Professional Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\PC Accelerator 2007 Pro Suite 1.3\pcupdate1.3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\PC Accelerator 2007 Pro Suite 1.3\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\OO.Defrag.Professional.Edition.v8.5.1788.WinALL.Incl.Keygen-ViRiLiTY\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\OO.Defrag.Professional.Edition.v8.5.1788.WinALL.Incl.Keygen-ViRiLiTY\OODefrag_FRA.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ProRat 1.9 Special Edition Patch\ipscan.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ProRat 1.9 Special Edition Patch\ProRat 1.9 Special Edition Patch.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\DX9.0\directx_9c_oct05sdk_redist.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\DX9.0\DXSETUP.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\instmsi30.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\directx\dxsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\SphereXp1.1.626 full\SphereXP.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\xbox backup creator\Xbox Backup Creator v2.5.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\xbox backup creator\Xbox Backup Creator.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\WinSessionPasswordCasseur 1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Programme Installé\uninstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Programme Installé\WinSessionPasswordCasseur 1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google Earth Pro 4.0.2737\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google Earth Pro 4.0.2737\Crack\Patch.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Video avatar\video_avatar_2.3.0.53.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Video avatar\Crack\videoavatar.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Clone CD\SetupCloneCD5291.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Clone CD\Patch-SND\Slysoft_1.31.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\CloneDVD.v2.9.0.1.Incl.KeyMaker-DVT\DVT\KeyMaker.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\CloneDVD.v2.9.0.1.Incl.KeyMaker-DVT\Setup\SetupCloneDVD2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony Sound Forge 9.0a Build 297 + Patch\soundforge90a_enu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony Vegas6\sonyvegasv6.0akeygenssg\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Internet.Cyclone.v1.92\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Internet.Cyclone.v1.92\Crack\Internet Cyclone.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\dvdarchitect40b_enu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\vegas70e_enu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Keygen\eclkv346.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\KEYGEN-FFF\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\install.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kawd.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kenum.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kftp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmedia.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmediaaudio.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmpeg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmpegavi.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Konvertor.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Krip.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\uninst.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\photofiltre studio 8. 0.2\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\photofiltre studio 8. 0.2\pfs-setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install CINEMA 4D.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install MODULES.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install NET Render.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Uninstall MODULES.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\MAXON_CINEMA_4D_Studio_v10\PANTHEON\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\FL.Studio.v7.0.0.XXL-POPUP\flstudio7.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\updatefull.4.0.41.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\vcs_diamond.4.0.41.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\!crack\Vcs4Core.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack4.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack5.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.CeleVoicesPack.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.CeleVoicesPack2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackAnimals.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackFabulousCreatures.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackForMale.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackMusic2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Music1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\NP1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\NP2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Skins\SkinDiamondNew.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\àß½¿ ¡Ñ ºá»Ò߬áÑÔß´ update\AV.VCS.4.0.41_update_all_plugins_and_nickvoices_FULL_new.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\Family Fun FX Pass studiodeluxe.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\hfxpack1-holidayfx-pp pass holiday.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\HollywoodFX.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-Bundle1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1(1).exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-Wedding1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\AVS VIDEO TOOLS\bbflbk.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\AVS VIDEO TOOLS\keygen\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WindowBlinds_Enhanced_5.10\WindowBlinds Enhanced 5.10\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WindowBlinds_Enhanced_5.10\WindowBlinds Enhanced 5.10\Crack\crack.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Unlead video studio 11\UVS11PDISK0001BIDJAN\Setup_.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Unlead video studio 11\UVS11PDISK0001BIDJAN\UVS11Plus_FULL_E(UK).exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\setup cubase\setup cubase.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\RGtut\rapget.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\RGtut\Win32OpenSSL-v0.9.6m.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Photoshop CS2 9.0.2\Adobe Photoshop CS2 Portable Fr 9.0.2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Xara 3D v6\Xara3D.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\Diskeeper2007-ProPremier.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\patch\cracked\DK-PATCH.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\patch\Fix\Dk07reg_alt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\oRipa_MSN_Recorder\ejoystudio_oripa.msn.webcam.recorder_v1.2.1.x_patch-GEAR\ejoystudio_oripa.msn.webcam.recorder_v1.2.0.x_patch-GEAR.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\photoshop cs2 fr\Adobe Photoshop CS2 Fr 9.0.2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\DVDSHRINK\dvdshrink32setup_FR.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Mixmeister 6\mmp6160_full\mmp6160_full.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\SETUP.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AGENTSVR.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AUTOCHK.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AUTOFMT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\EXPAND.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\FAXPATCH.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\NETSETUP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\NTSD.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\REGEDIT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SPNPINST.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SYSPARSE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\TELNET.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\USETUP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNT32.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNTUPG\AUTORUN.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XUPG\TWID.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XMIG\FAX\AWDVSTUB.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XMIG\MAPI\DLL\MKNTFRMCACHE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SYSTEM32\SMSS.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\GENUINE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\KB890830-V1.22.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\KB918093.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\MSJAVAVM.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\NDP20.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\NDP20B.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600001.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600002.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600003.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600004.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600005.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600006.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600007.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600008.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600009.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600010.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600011.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\PHOTOFILTRE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\VBRUN.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\VCREDIT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\WINRAR.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\XPSCRIPT.EXE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\DRW\DWWIN.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\BOOT\MODULES\rpm\part.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Spyware Doctor v5.0.0.179\sdsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Spyware Doctor v5.0.0.179\crack\Update.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\rmxaudioextractor\rmxaudioextractor.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\System Mechanic 6 by flo\system-mechanic_patch_francais_anglais_9702.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\System Mechanic 6 by flo\system-mechanic_system_mechanic_6.0s_anglais_9702.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\craagle_alexman2189\craagle_alexman2189\craagle\craagle.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\Convert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\PowerrsoftFC.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\unins000.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\WinMPGVideoConvert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\AddiTunes.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\allconvert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\ATOMChanger.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\QT3GPPFlatten.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\WinMPG Video Convert v6.6.3\Cracked\WinMPGVideoConvert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\registry mechanic\rminstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\snapshot\snapshot.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\peinst\mkbt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\peinst\nt2peldr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\Nu2Menu\nu2menu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\Nu2Menu\setres.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\bst5\bst5.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\A43\a43.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\explorer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\attrib.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\autochk.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\autofmt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\bartpe.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\cacls.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\calc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\chkdsk.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\clipsrv.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\cmd.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\comp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\compact.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\convert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\csrss.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\diskpart.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ditrace.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\dmadmin.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqndiag.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqnlogr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqnloop.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\expand.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\fc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\find.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\findstr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\finger.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\fltmc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ftp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\hostname.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ipconfig.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\keyboard.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\keydown.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\label.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\locator.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lpq.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lpr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lsass.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\makecab.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mountvol.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mspaint.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mstsc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nbtstat.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\net.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\net1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\netconfig.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\notepad.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nslookup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntkrnlmp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntoskrnl.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntsd.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nu2menumsg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nu2shell.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\odbcad32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\odbcconf.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\pathping.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\peer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\penetcfg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\pentnt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ping.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\portmon.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\print.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\reg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regedit.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regedt32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regsvr32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\replace.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\route.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\rsvp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\rundll32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\services.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\smss.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\sort.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\spoolsv.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\subst.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\svchost.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\taskmgr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\tftp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\tracert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\userinit.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\winlogon.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\wordpad.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\xcopy.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\xlog.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Club_DJ_Pro_2.1.4\ClubDJPro.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\SmSFree_up_by_dj_moska\widgetsus.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\eteraser_trial.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\etdrivewiper.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\eteraser.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\etscheduler.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Anti_moustique\moustique.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\CCleaner.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\Crack.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\Installer Avast Pro.exe
c:\Documents and Settings\thomas torrente\Bureau\avgas-setup-7.5.1.43.exe
c:\Documents and Settings\thomas torrente\Bureau\ccsetup140.exe
c:\Documents and Settings\thomas torrente\Bureau\Fixwareout.exe
c:\Documents and Settings\thomas torrente\Bureau\OTMoveIt.exe
c:\Documents and Settings\thomas torrente\Bureau\RemAdvertisemen.exe
c:\Documents and Settings\thomas torrente\Bureau\virtualdj.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Install_Messenger.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\MsgPlusLive-420.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Sesamv2.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\SPNG2.2.397.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\trial patch\VirtualDJ3.1Patch(Trial).exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\AutoRun.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\instmsia.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\instmsiw.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Keygen.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\setup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\EvalBrowse.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\hhupd.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\JETCOMP.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\LiveUpdate.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\NewEditionClew.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\RegProduct.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\REGSVR32.EXE
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Setup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDPProBrowse.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\WebReg.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\WMFASetup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\Win2kXP\VPlay801.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\Win9x\VPlay801.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\WinNT\VPlay801.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Building.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Burning.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DriverSetup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DVDCreator.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DVDCTrayIconShl.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\EasyBakup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\FSSer.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\FSUdfUnInst.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\IEbkS.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\InstantBurn.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Retriever.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Start.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\UDFUndeletor.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\video.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\Adver.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\FSXDCommon.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\InstDriveExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\MGR.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\RemDriveExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\SetDL.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\VDrive.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\vdtask.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\Rache9x\rCache.EXE
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\RacheNT\rCache.EXE
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\inVHDDrvExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\RamDrive.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\RDTask.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\unVHDDrvExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Windows\DxpAppEx.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Windows\FSRunCmd.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\VIRTUAL DJ 4,0 FULL CRACK\install_virtualdj_v4.0.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Popup.Stopper.Professional.v1.60.1002-PWP\crack.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Popup.Stopper.Professional.v1.60.1002-PWP\PopUpStopperProfessional.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\EMULATEURS\Cubextender2 Nintendo Gamecube Emulator Ger.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\EMULATEURS\GameCubeXP.exe
c:\Documents and Settings\thomas torrente\Bureau\CRAAGLE\craagle.exe
c:\Documents and Settings\thomas torrente\Bureau\Emule Xtreme\emule.exe
c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\KillBox.exe
c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\VundoFix.exe
c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\ProcessExplorer\procexp.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\catchme.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\diff.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\dumphive.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\FilesInfoCmd.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\find2.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\Fport.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\grep.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\KProcCheck.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\LFiles.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\LISTDLLS.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\pslist.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\streams.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\swreg.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\ARPPRODUCTICON.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\GameShadow.exe_0A3DE514292C4EBA987823B82B0B2BA2.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\GameShadow.exe1_0A3DE514292C4EBA987823B82B0B2BA2.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\Uninstall_GameShadow_B77398BC94A44B319757421D4A2657A1.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\AXISNEW.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\dkxwltcu.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\JoyPokeForkBlue.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\Thunkdeafgreat.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\wkxdnvpj.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\wxeobbmr.exe
c:\Documents and Settings\thomas torrente\.limewire\.NetworkShare\LimeWireWin4.12.11.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\All Users\Application Data\fafkbqpc.exe
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\mia.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\mIDEFunc.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPBONMLLTAGEDIFFFFFF0\BORLNDMM.DLL
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPCC6MLLTAGEDIFFFFFF0\cc3260mt.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFBAEPILTGEDIFFFFFF0\FBPLAYERAPI.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFLHAHODLARTIFFFFFF0\FlashBackHook.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFLHAINALLFREIRFFFF0\FlashBackInstall.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLAECLFARETIRFFFFFF0\lame_enc.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLOYITAEDFTGTRFFFFF0\LogSysInstaller.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPMPIDLFTRGTDRFFFFFF0\mpglib.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPPNBEDLTRGTDRFFFFFF0\PNGObject.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPSTM4LLTAGEDIFFFFFF0\stlpmt45.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPWMNDDLTRGTDRFFFFFF0\WMIIntDll.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPWMXODLTRGTDRFFFFFF0\WMVExport.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUBBNDFCMNLELERROTREFFFF0\bbppnt.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUPLOYUOAETCLNDFTGTRFFFF0\LogSysUploadCenterClient.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\mIDEFunc.dll\mEXEFunc.dll
c:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\help.dll
c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\7zAes.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Aes.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Branch.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Copy.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\LZMA.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Swap.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Formats\7z.dll
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
****** Fin du rapport DiagHelp
4)rapport HIJACKTHIS:
Logfile of HijackThis v1.99.1
Scan saved at 02:17:14, on 23/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\gearsec.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SYSTEM32\notepad.exe
C:\HJT\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O3 - Toolbar: (no name) - {37B85A29-692B-4205-9CAD-2626E4993404} - (no file)
O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\Instal
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\ASIO4ALL.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\atomixmp3_trial.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Azureus_2.5.0.4a_Win32.setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\BearShareV6int.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\BitComet_0.70_setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\bob_down_1.1.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\daemon347.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\dBpowerAMP-r2.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\DivXPlay.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\dotnetfx.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eChanblard.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eMule0.46c-Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eMule0.47a-Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\FileZilla_2_2_26_setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\flashget181en.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\ftpexpert3.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\FxACSU.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\hfxpack0-extrafx.exe2.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_Messenger.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_Messenger22.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_MSN_Messenger.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\iTunesSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\klcodec248f.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\megauploadtoolbarsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\mmswitch.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\mp10setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsgPlus-354.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsgPlusLive-411.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\msn_wave11glass.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MSNChecker.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsnSearchToolbarSetup_fr-fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\PandoSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\patch-pinnacle-studio_patch_pinnacle_studio_9.4.3_francais_13278.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\pfs-setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Shareaza_2.1.0.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\SPNG2.2.397.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\SteamInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\steaminstall_hl2demo.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\StudioPatch10_7_0.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\video.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\vlc-0.8.2-win32.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\winamp5111_full.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\WINISO53.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\wrar351fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\50comupd.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\hhupd.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\InstMsi-x86a.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\InstMsi-x86w.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\MDAC_TYP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\MSDESetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\msisetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\3gpconv\3gp-video-converter.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\3gpconv\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\tune up 2007 french\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\logiciels\tune up 2007 french\TU2007TrialFR.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[NTi]_S.T.A.L.K.E.R.Shadow.of.Chernobyl-ViTALiTY.CRACK.ONLY\XR_3DA.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Steam Keygen (Counter-Strike Source) Working\HalfLifeCSKeyGen.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\rld-pes6c\pes6.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\ResidentEvil4v1.1.0FixedexeEuro\game.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Pinacle Hollywood Fx Crack\hfx5cc.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Pinacle Hollywood Fx Crack\Crack\14.12 Pinnacle Hollywood FX v5.1\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[PC GAME FR] Splinter Cell 4 Double Agent - crack NOCD fr\SCDA-Offline\System\SplinterCell4.exe
c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[PC GAME FR] Splinter Cell 4 Double Agent - crack NOCD fr\SCDA-Online\System\SCDA_Online.exe
c:\Documents and Settings\thomas torrente\Mes documents\Google Hacker\Google Hacker v2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\aaw2007.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\akira76'sFPS L'anti-mule.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\BitLord_1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\daemon-tools_daemon_tools_4.0.9.1_anglais_10729.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\dotnetfx.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\FLVPlayerSetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Install_Messenger.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\IPmsn.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MsgPlusLive-420.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\RapidShare Time Resetter.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Setup_MagicISO.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\SteamInstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\SuperMegaSpoof.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\TurboConnect.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\tvc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Xenomorph_slim.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Crack vista\Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\SaveAsPDFandXPS.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\SETUP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\OFFICE.FR-FR\DW20.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\OFFICE.FR-FR\DWTRIG20.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\PROPLUS.WW\OSE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google earth pro installation\Patch.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google earth pro installation\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Néro 7.0 Prémium\Nero-7.0.1.2_fra.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Face On Body v2.1.3\Face On Body v2.1.3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Face On Body v2.1.3\Patch Face On Body v2.1.3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\driver\drvgenpro.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Smart.PC.4.0 CRKEXE-\SmartPC.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Smart.PC.4.0 CRKEXE-\smartpcsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\winrar3.60 Fr\Crack WinRAR 3.x.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\winrar3.60 Fr\wrar360fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\adobephotoshop\Adobe Photoshop CS2 Portable Fr 9.0.2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\adobephotoshop\crack_photoshop_cs2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe DNG Converter\Adobe DNG Converter.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe Reader 7.0\AdbeRdr70_fra_full.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\instmsia.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\instmsiw.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Goodies\Modules externes facultatifs\Seiko Epson\PIM II Installer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Crack et Keygen\Crack Activation Photoshop CS2 Fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Crack et Keygen\Keygen Photoshop CS2 Fr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\hide ip platinium\Hide IP Platinum 2.8.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\hide ip platinium\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\PZP_v1.2\PhotoZoom Professional Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\PC Accelerator 2007 Pro Suite 1.3\pcupdate1.3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\PC Accelerator 2007 Pro Suite 1.3\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\OO.Defrag.Professional.Edition.v8.5.1788.WinALL.Incl.Keygen-ViRiLiTY\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\OO.Defrag.Professional.Edition.v8.5.1788.WinALL.Incl.Keygen-ViRiLiTY\OODefrag_FRA.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ProRat 1.9 Special Edition Patch\ipscan.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ProRat 1.9 Special Edition Patch\ProRat 1.9 Special Edition Patch.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\DX9.0\directx_9c_oct05sdk_redist.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\DX9.0\DXSETUP.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\instmsi30.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\directx\dxsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\SphereXp1.1.626 full\SphereXP.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\xbox backup creator\Xbox Backup Creator v2.5.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\xbox backup creator\Xbox Backup Creator.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\WinSessionPasswordCasseur 1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Programme Installé\uninstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Programme Installé\WinSessionPasswordCasseur 1.0.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google Earth Pro 4.0.2737\Setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Google Earth Pro 4.0.2737\Crack\Patch.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Video avatar\video_avatar_2.3.0.53.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Video avatar\Crack\videoavatar.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Clone CD\SetupCloneCD5291.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Clone CD\Patch-SND\Slysoft_1.31.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\CloneDVD.v2.9.0.1.Incl.KeyMaker-DVT\DVT\KeyMaker.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\CloneDVD.v2.9.0.1.Incl.KeyMaker-DVT\Setup\SetupCloneDVD2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony Sound Forge 9.0a Build 297 + Patch\soundforge90a_enu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony Vegas6\sonyvegasv6.0akeygenssg\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Internet.Cyclone.v1.92\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Internet.Cyclone.v1.92\Crack\Internet Cyclone.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\dvdarchitect40b_enu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\vegas70e_enu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Keygen\eclkv346.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\KEYGEN-FFF\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\install.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kawd.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kenum.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kftp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmedia.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmediaaudio.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmpeg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmpegavi.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Konvertor.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Krip.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\uninst.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\photofiltre studio 8. 0.2\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\photofiltre studio 8. 0.2\pfs-setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install CINEMA 4D.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install MODULES.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install NET Render.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Uninstall MODULES.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\MAXON_CINEMA_4D_Studio_v10\PANTHEON\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\FL.Studio.v7.0.0.XXL-POPUP\flstudio7.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\updatefull.4.0.41.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\vcs_diamond.4.0.41.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\!crack\Vcs4Core.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack3.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack4.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack5.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.CeleVoicesPack.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.CeleVoicesPack2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackAnimals.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackFabulousCreatures.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackForMale.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackMusic2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Music1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\NP1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\NP2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Skins\SkinDiamondNew.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\àß½¿ ¡Ñ ºá»Ò߬áÑÔß´ update\AV.VCS.4.0.41_update_all_plugins_and_nickvoices_FULL_new.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\Family Fun FX Pass studiodeluxe.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\hfxpack0-extrafx.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\hfxpack1-holidayfx-pp pass holiday.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\HollywoodFX.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-Bundle1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1(1).exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-Wedding1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\AVS VIDEO TOOLS\bbflbk.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\AVS VIDEO TOOLS\keygen\keygen.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WindowBlinds_Enhanced_5.10\WindowBlinds Enhanced 5.10\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WindowBlinds_Enhanced_5.10\WindowBlinds Enhanced 5.10\Crack\crack.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Unlead video studio 11\UVS11PDISK0001BIDJAN\Setup_.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Unlead video studio 11\UVS11PDISK0001BIDJAN\UVS11Plus_FULL_E(UK).exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\setup cubase\setup cubase.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\RGtut\rapget.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\RGtut\Win32OpenSSL-v0.9.6m.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Photoshop CS2 9.0.2\Adobe Photoshop CS2 Portable Fr 9.0.2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Xara 3D v6\Xara3D.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\Diskeeper2007-ProPremier.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\patch\cracked\DK-PATCH.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\patch\Fix\Dk07reg_alt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\oRipa_MSN_Recorder\ejoystudio_oripa.msn.webcam.recorder_v1.2.1.x_patch-GEAR\ejoystudio_oripa.msn.webcam.recorder_v1.2.0.x_patch-GEAR.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\photoshop cs2 fr\Adobe Photoshop CS2 Fr 9.0.2.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\DVDSHRINK\dvdshrink32setup_FR.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Mixmeister 6\mmp6160_full\mmp6160_full.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\SETUP.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AGENTSVR.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AUTOCHK.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AUTOFMT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\EXPAND.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\FAXPATCH.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\NETSETUP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\NTSD.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\REGEDIT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SPNPINST.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SYSPARSE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\TELNET.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\USETUP.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNT32.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNTUPG\AUTORUN.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XUPG\TWID.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XMIG\FAX\AWDVSTUB.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XMIG\MAPI\DLL\MKNTFRMCACHE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SYSTEM32\SMSS.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\GENUINE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\KB890830-V1.22.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\KB918093.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\MSJAVAVM.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\NDP20.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\NDP20B.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600001.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600002.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600003.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600004.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600005.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600006.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600007.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600008.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600009.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600010.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600011.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\PHOTOFILTRE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\VBRUN.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\VCREDIT.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\WINRAR.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\XPSCRIPT.EXE.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\DRW\DWWIN.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\BOOT\MODULES\rpm\part.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Spyware Doctor v5.0.0.179\sdsetup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Spyware Doctor v5.0.0.179\crack\Update.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\rmxaudioextractor\rmxaudioextractor.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\System Mechanic 6 by flo\system-mechanic_patch_francais_anglais_9702.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\System Mechanic 6 by flo\system-mechanic_system_mechanic_6.0s_anglais_9702.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\craagle_alexman2189\craagle_alexman2189\craagle\craagle.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\Convert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\PowerrsoftFC.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\unins000.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\WinMPGVideoConvert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\AddiTunes.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\allconvert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\ATOMChanger.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\QT3GPPFlatten.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\WinMPG Video Convert v6.6.3\Cracked\WinMPGVideoConvert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\registry mechanic\rminstall.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\snapshot\snapshot.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\peinst\mkbt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\peinst\nt2peldr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\Nu2Menu\nu2menu.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\Nu2Menu\setres.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\bst5\bst5.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\A43\a43.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\explorer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\attrib.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\autochk.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\autofmt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\bartpe.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\cacls.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\calc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\chkdsk.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\clipsrv.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\cmd.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\comp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\compact.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\convert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\csrss.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\diskpart.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ditrace.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\dmadmin.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqndiag.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqnlogr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqnloop.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\expand.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\fc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\find.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\findstr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\finger.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\fltmc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ftp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\hostname.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ipconfig.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\keyboard.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\keydown.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\label.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\locator.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lpq.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lpr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lsass.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\makecab.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mountvol.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mspaint.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mstsc.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nbtstat.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\net.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\net1.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\netconfig.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\notepad.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nslookup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntkrnlmp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntoskrnl.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntsd.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nu2menumsg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nu2shell.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\odbcad32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\odbcconf.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\pathping.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\peer.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\penetcfg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\pentnt.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ping.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\portmon.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\print.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\reg.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regedit.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regedt32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regsvr32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\replace.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\route.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\rsvp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\rundll32.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\services.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\setup.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\smss.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\sort.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\spoolsv.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\subst.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\svchost.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\taskmgr.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\tftp.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\tracert.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\userinit.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\winlogon.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\wordpad.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\xcopy.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\xlog.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Club_DJ_Pro_2.1.4\ClubDJPro.EXE
c:\Documents and Settings\thomas torrente\Mes documents\DL\SmSFree_up_by_dj_moska\widgetsus.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\eteraser_trial.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\etdrivewiper.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\eteraser.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\etscheduler.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Anti_moustique\moustique.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\CCleaner.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\Crack.exe
c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\Installer Avast Pro.exe
c:\Documents and Settings\thomas torrente\Bureau\avgas-setup-7.5.1.43.exe
c:\Documents and Settings\thomas torrente\Bureau\ccsetup140.exe
c:\Documents and Settings\thomas torrente\Bureau\Fixwareout.exe
c:\Documents and Settings\thomas torrente\Bureau\OTMoveIt.exe
c:\Documents and Settings\thomas torrente\Bureau\RemAdvertisemen.exe
c:\Documents and Settings\thomas torrente\Bureau\virtualdj.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Install_Messenger.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\MsgPlusLive-420.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Sesamv2.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\SPNG2.2.397.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\trial patch\VirtualDJ3.1Patch(Trial).exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\AutoRun.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\instmsia.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\instmsiw.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Keygen.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\setup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\EvalBrowse.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\hhupd.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\JETCOMP.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\LiveUpdate.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\NewEditionClew.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\RegProduct.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\REGSVR32.EXE
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Setup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDPProBrowse.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\WebReg.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\WMFASetup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\Win2kXP\VPlay801.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\Win9x\VPlay801.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\WinNT\VPlay801.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Building.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Burning.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DriverSetup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DVDCreator.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DVDCTrayIconShl.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\EasyBakup.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\FSSer.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\FSUdfUnInst.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\IEbkS.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\InstantBurn.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Retriever.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Start.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\UDFUndeletor.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\video.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\Adver.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\FSXDCommon.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\InstDriveExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\MGR.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\RemDriveExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\SetDL.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\VDrive.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\vdtask.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\Rache9x\rCache.EXE
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\RacheNT\rCache.EXE
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\inVHDDrvExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\RamDrive.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\RDTask.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\unVHDDrvExe.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Windows\DxpAppEx.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Windows\FSRunCmd.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\VIRTUAL DJ 4,0 FULL CRACK\install_virtualdj_v4.0.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Popup.Stopper.Professional.v1.60.1002-PWP\crack.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Popup.Stopper.Professional.v1.60.1002-PWP\PopUpStopperProfessional.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\EMULATEURS\Cubextender2 Nintendo Gamecube Emulator Ger.exe
c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\EMULATEURS\GameCubeXP.exe
c:\Documents and Settings\thomas torrente\Bureau\CRAAGLE\craagle.exe
c:\Documents and Settings\thomas torrente\Bureau\Emule Xtreme\emule.exe
c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\KillBox.exe
c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\VundoFix.exe
c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\ProcessExplorer\procexp.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\catchme.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\diff.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\dumphive.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\FilesInfoCmd.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\find2.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\Fport.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\grep.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\KProcCheck.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\LFiles.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\LISTDLLS.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\pslist.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\streams.exe
c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\swreg.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\ARPPRODUCTICON.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\GameShadow.exe_0A3DE514292C4EBA987823B82B0B2BA2.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\GameShadow.exe1_0A3DE514292C4EBA987823B82B0B2BA2.exe
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\Uninstall_GameShadow_B77398BC94A44B319757421D4A2657A1.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\AXISNEW.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\dkxwltcu.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\JoyPokeForkBlue.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\Thunkdeafgreat.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\wkxdnvpj.exe
c:\Documents and Settings\thomas torrente\Application Data\Else plus\wxeobbmr.exe
c:\Documents and Settings\thomas torrente\.limewire\.NetworkShare\LimeWireWin4.12.11.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\All Users\Application Data\fafkbqpc.exe
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\mia.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\mIDEFunc.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPBONMLLTAGEDIFFFFFF0\BORLNDMM.DLL
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPCC6MLLTAGEDIFFFFFF0\cc3260mt.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFBAEPILTGEDIFFFFFF0\FBPLAYERAPI.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFLHAHODLARTIFFFFFF0\FlashBackHook.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFLHAINALLFREIRFFFF0\FlashBackInstall.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLAECLFARETIRFFFFFF0\lame_enc.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLOYITAEDFTGTRFFFFF0\LogSysInstaller.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPMPIDLFTRGTDRFFFFFF0\mpglib.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPPNBEDLTRGTDRFFFFFF0\PNGObject.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPSTM4LLTAGEDIFFFFFF0\stlpmt45.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPWMNDDLTRGTDRFFFFFF0\WMIIntDll.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPWMXODLTRGTDRFFFFFF0\WMVExport.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUBBNDFCMNLELERROTREFFFF0\bbppnt.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUPLOYUOAETCLNDFTGTRFFFF0\LogSysUploadCenterClient.dll
c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\mIDEFunc.dll\mEXEFunc.dll
c:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\help.dll
c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\7zAes.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Aes.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Branch.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Copy.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\LZMA.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Swap.dll
c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Formats\7z.dll
c:\Documents and Settings\thomas torrente\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
****** Fin du rapport DiagHelp
4)rapport HIJACKTHIS:
Logfile of HijackThis v1.99.1
Scan saved at 02:17:14, on 23/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\gearsec.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SYSTEM32\notepad.exe
C:\HJT\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O3 - Toolbar: (no name) - {37B85A29-692B-4205-9CAD-2626E4993404} - (no file)
O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\Instal
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
23 juin 2007 à 20:24
23 juin 2007 à 20:24
Bonsoir,
Surveille tes comptes car l'une des infections est spécialisée dans le vol d'identité bancaire.
1) Vide ta quarantaine Norton,
2) * Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
3) Si tu n'as plus de problèmes, je te donne les derniers conseils.
FillPCA
Surveille tes comptes car l'une des infections est spécialisée dans le vol d'identité bancaire.
1) Vide ta quarantaine Norton,
2) * Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
3) Si tu n'as plus de problèmes, je te donne les derniers conseils.
FillPCA
Re,
--Je n'arrive pas nettoyer ma quarantaine norton il reste un fichier .EXE impossible à supprimer.
--Je n'ai pas d'informations trés importantes sur cet ordinateurs donc je ne pense pas risquer grand chose appart si tu insiste.
Rapport OTMOVEIT:
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE moved successfully.
Created on 06-23-2007 20:39:44
------> Non je n'ai plus aucun problème comme avant, mon bureau est de nouveau visible je peux accéder plus vites à mes données... tout est nikel j'espère juste que ça va tenir...
prêt à recevoir tes conseils ^^...
--Je n'arrive pas nettoyer ma quarantaine norton il reste un fichier .EXE impossible à supprimer.
--Je n'ai pas d'informations trés importantes sur cet ordinateurs donc je ne pense pas risquer grand chose appart si tu insiste.
Rapport OTMOVEIT:
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE moved successfully.
Created on 06-23-2007 20:39:44
------> Non je n'ai plus aucun problème comme avant, mon bureau est de nouveau visible je peux accéder plus vites à mes données... tout est nikel j'espère juste que ça va tenir...
prêt à recevoir tes conseils ^^...
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
23 juin 2007 à 22:33
23 juin 2007 à 22:33
Re,
* Lance OTmoveIT.
* Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargés).
NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder à internet, Autorise le.
* Une liste apparaît dans la partie gauche d'OTmoveIT.
* Un message apparaît pour confirmer le nettoyage. Confirme.
* Les fichiers infectés qui se trouvent dans les quarantaines seront supprimés aussi..
Tu dois désactiver la restauration système. Pour cela, fais un clic droit sur « poste de travail ». Dans l’onglet « restauration du système », coche la case « désactiver la restauration système ». Clique sur appliquer>OK.
Décoche cette case, clique sur aapliquer>OK et redémarre le PC.
Si tu n'as plus de soucis, tu peux marquer le sujet comme "résolu".
Comme je te le disais, surveille tes comptes bancaires.
Bon surf.
FillPCA
* Lance OTmoveIT.
* Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargés).
NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder à internet, Autorise le.
* Une liste apparaît dans la partie gauche d'OTmoveIT.
* Un message apparaît pour confirmer le nettoyage. Confirme.
* Les fichiers infectés qui se trouvent dans les quarantaines seront supprimés aussi..
Tu dois désactiver la restauration système. Pour cela, fais un clic droit sur « poste de travail ». Dans l’onglet « restauration du système », coche la case « désactiver la restauration système ». Clique sur appliquer>OK.
Décoche cette case, clique sur aapliquer>OK et redémarre le PC.
Si tu n'as plus de soucis, tu peux marquer le sujet comme "résolu".
Comme je te le disais, surveille tes comptes bancaires.
Bon surf.
FillPCA
Oui tout fonctionne à merveille mais je ne cmprends pas pourquoi à chaque foi sque j'allume mon PC à l'arrivée sur mon bureau et bien "L'assistant d'ajout de matériel s'ouvre plein de fois ^o)" ça ralenti l'ouverture de mon système c'est lourd !!! :s
et une dernière chose que me coneil tu pour protéger mon PC ? Antivirus/antispyware... tout ces trucs, juste ça et je ne t'embetterait plus !!!
Encore merci pour le temps que tu m'as accordé et pour ta patience et ta manière d'expliquer aux gens clairement ...
Tu m'as sauvé la vie lol ;)
et une dernière chose que me coneil tu pour protéger mon PC ? Antivirus/antispyware... tout ces trucs, juste ça et je ne t'embetterait plus !!!
Encore merci pour le temps que tu m'as accordé et pour ta patience et ta manière d'expliquer aux gens clairement ...
Tu m'as sauvé la vie lol ;)
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
24 juin 2007 à 09:21
24 juin 2007 à 09:21
Bonjour,
Pour la détection de nouveau matériel, regarde dans le panneau de config si des périphériques sont mal installés. C'est anormal en effet.
Sauf erreur de ma part, tu ne semble pas avoir de firewall. Il t'en faut un (Outpost, Zone alarm et Kerio ont des versions gratuites).
Sinon, la meilleure protection se situe au niveau de la prudence dans le surf (Keygens et cracks, P2P sont à proscrire).
Bon surf !
FillPCA
Pour la détection de nouveau matériel, regarde dans le panneau de config si des périphériques sont mal installés. C'est anormal en effet.
Sauf erreur de ma part, tu ne semble pas avoir de firewall. Il t'en faut un (Outpost, Zone alarm et Kerio ont des versions gratuites).
Sinon, la meilleure protection se situe au niveau de la prudence dans le surf (Keygens et cracks, P2P sont à proscrire).
Bon surf !
FillPCA
Bonjour,
Le firewall windows ne suffit alors? mais je ne comprends pas, j'ai SYMANTEC CORPORATE EDITION comme antivirus et je n'ai jamais trouvé comment activer le firewall. et je n'arrive pas à supprimer cet antivirus pour en mettre un autre car un message d'erreur s'affiche stoppant la désinstallation. bref je ne capte pas (:/)
et les firewall que tu m'as dit de prendre sont valable maximum 15 jours alors bon ...( :s)
Merci quand même!!
Le firewall windows ne suffit alors? mais je ne comprends pas, j'ai SYMANTEC CORPORATE EDITION comme antivirus et je n'ai jamais trouvé comment activer le firewall. et je n'arrive pas à supprimer cet antivirus pour en mettre un autre car un message d'erreur s'affiche stoppant la désinstallation. bref je ne capte pas (:/)
et les firewall que tu m'as dit de prendre sont valable maximum 15 jours alors bon ...( :s)
Merci quand même!!
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
21 avril 2008 à 17:48
21 avril 2008 à 17:48
Ouvre ton propre sujet.
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
17 mai 2008 à 14:34
17 mai 2008 à 14:34
Salut,
Ca ne parait pas prudent du tout de laisser ces infos. Supprime ton adresse E-mail et ton mot de passe du forum et change cle mot de passe au plus vite.
FillPCA
Ca ne parait pas prudent du tout de laisser ces infos. Supprime ton adresse E-mail et ton mot de passe du forum et change cle mot de passe au plus vite.
FillPCA
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
9 juin 2008 à 20:37
9 juin 2008 à 20:37
Salut,
Pas la peine d'être grossier. Je ne comprends rien à ce que tu dis. En plus, tu remontes un sujet ancien. Crée ton propre sujet si tu es ennuyé.
FillPCA
Pas la peine d'être grossier. Je ne comprends rien à ce que tu dis. En plus, tu remontes un sujet ancien. Crée ton propre sujet si tu es ennuyé.
FillPCA
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
22 juin 2007 à 20:24
22 juin 2007 à 20:24
Bonjour,
1) * Télécharger Remadvertisemen (d'Attribune)et l'enregistrer sur le bureau : http://www.atribune.org/ccount/click.php?id=11
* Double-cliquer sur remadvertisemen.exe.
* Quand le programme démarre, cliquer sur "start removal" et attendre que "done removal. Please rebbot your computer now" soit indiqué.
* Une fois que ceci est indiqué, redémarrer le PC.
2) # Télécharge Vundofix (par Atribune) sur ton Bureau : http://www.atribune.org/ccount/click.php?id=4
# Double-clique VundoFix.exe afin de le lancer.
# Clique sur le bouton Scan for Vundo.
# Lorsque le scan est complété, clique sur le bouton Remove Vundo (uniquement si des fichiers infectieux sont trouvés).
# Une invite te demandera si tu veux supprimer les fichiers, clique YES.
# Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers.
# Tu verras une invite qui t'annonce que ton PC va redémarrer; clique OK.
# Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.
FillPCA
1) * Télécharger Remadvertisemen (d'Attribune)et l'enregistrer sur le bureau : http://www.atribune.org/ccount/click.php?id=11
* Double-cliquer sur remadvertisemen.exe.
* Quand le programme démarre, cliquer sur "start removal" et attendre que "done removal. Please rebbot your computer now" soit indiqué.
* Une fois que ceci est indiqué, redémarrer le PC.
2) # Télécharge Vundofix (par Atribune) sur ton Bureau : http://www.atribune.org/ccount/click.php?id=4
# Double-clique VundoFix.exe afin de le lancer.
# Clique sur le bouton Scan for Vundo.
# Lorsque le scan est complété, clique sur le bouton Remove Vundo (uniquement si des fichiers infectieux sont trouvés).
# Une invite te demandera si tu veux supprimer les fichiers, clique YES.
# Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers.
# Tu verras une invite qui t'annonce que ton PC va redémarrer; clique OK.
# Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.
FillPCA
Merci pour votre aide.
Avec vundofix je ne trouve pas le fichier texte où figure le rapport il est introuvable donc j'ai copié collé ces infos ainsi que mon nouveau rapport HIJACKTHIS:
VUNDOFIX BACKUPS:
ehhkj.ini.bad
hjjlm.ini.bad
jkhhe.dll.bad
kjjlm.bak1.bad
kjjlm.bak2.bad
kjjlm.ini.bad
mljjh.dll.bad
mljjk.dll.bad
pqstv.bak1.bad
pqstv.ini.bad
vtsqp.dll.bad
vturq.dll.bad
NOUVEAU RAPPORT HIJACKTHIS:
Logfile of HijackThis v1.99.1
Scan saved at 21:29:28, on 22/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\gearsec.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\SYSTEM32\taskmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\THOMAS~1\LOCALS~1\Temp\Rar$EX00.719\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - - (no file)
O3 - Toolbar: My Global Search Bar - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL
O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX/menusearch.html?p=KX
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
Merci beaucoup pour votre aide ... :)
Avec vundofix je ne trouve pas le fichier texte où figure le rapport il est introuvable donc j'ai copié collé ces infos ainsi que mon nouveau rapport HIJACKTHIS:
VUNDOFIX BACKUPS:
ehhkj.ini.bad
hjjlm.ini.bad
jkhhe.dll.bad
kjjlm.bak1.bad
kjjlm.bak2.bad
kjjlm.ini.bad
mljjh.dll.bad
mljjk.dll.bad
pqstv.bak1.bad
pqstv.ini.bad
vtsqp.dll.bad
vturq.dll.bad
NOUVEAU RAPPORT HIJACKTHIS:
Logfile of HijackThis v1.99.1
Scan saved at 21:29:28, on 22/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\gearsec.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\SYSTEM32\taskmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\THOMAS~1\LOCALS~1\Temp\Rar$EX00.719\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - - (no file)
O3 - Toolbar: My Global Search Bar - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL
O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX/menusearch.html?p=KX
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
Merci beaucoup pour votre aide ... :)
Excuse moi je suis nouveau sur ce forum donc j'ai vue Nom j'ai mis mon nom de famille. ui en effet mon PC est bien infecter et ne marche vraiment pas bien. au moment où je te parle mon bureau est invisible, pour accéder à internet je suis obligé de fair ctrl+alt+suppr nouvelle tâche .... pareil pour l'accés à mes fichiers... et cela dure depuis quelques jours et je veux à tout prix éviter le formatage.(si possible biensur).j'ai tout éssayé et rien ne va malheureusement donc voilà j'espere que tu pourra m'aider davantage et c'est trés gentil de ta part...
J'ai exécuté tes ordres et voici le rapport :
Rapport lopxpMH2 version 2.0 fait à 22:08:12,03 le 22/06/2007
C:\Documents and Settings\thomas torrente\Bureau
******************************************
## Répertoires Application Data
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\Default User\Application Data
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
10/08/2005 16:21 <REP> Identities
22/03/2005 14:15 <REP> Microsoft
10/08/2005 16:21 <REP> Sun
10/08/2005 16:21 <REP> Symantec
22/03/2005 14:15 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
22/03/2005 14:21 <REP> Microsoft
17/04/2007 03:01 <REP> Microsoft Help
10/08/2005 16:21 1 993 876 IconCache.db
1 fichier(s) 1 993 876 octets
5 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\All Users\Application Data
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
18/05/2007 21:39 <REP> {F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}
22/03/2005 14:21 <REP> Adobe
23/10/2005 23:34 <REP> Adobe Systems
13/09/2005 13:45 <REP> Ahead
11/09/2005 12:57 <REP> Apple Computer
08/05/2006 14:05 <REP> AUDIO IDOL MORE SIZE
18/05/2007 21:39 <REP> Blueberry
22/03/2005 14:31 <REP> CyberLink
28/05/2007 20:03 <REP> DVD Shrink
15/04/2007 11:32 <REP> Google
09/01/2007 19:11 <REP> InstallShield
25/05/2007 11:12 <REP> InterVideo
11/08/2005 13:47 <REP> Messenger Plus!
22/03/2005 14:15 <REP> Microsoft
18/04/2007 12:33 <REP> Microsoft Corporation
15/04/2007 19:34 <REP> Microsoft Help
10/08/2005 20:06 <REP> Ooze Ace Surf Drive
22/10/2005 00:47 <REP> Pinnacle
08/01/2007 23:30 <REP> Pinnacle Studio
11/09/2005 12:57 <REP> QuickTime
30/04/2007 00:02 <REP> SlySoft
14/05/2007 02:19 <REP> SmartSound Software Inc
05/12/2005 18:32 <REP> Sony
22/03/2005 14:28 <REP> Symantec
19/06/2007 00:57 <REP> TEMP
05/03/2006 21:32 <REP> TuneUp Software
25/05/2007 11:11 <REP> Ulead Systems
19/11/2005 22:01 <REP> Windows Genuine Advantage
10/12/2006 20:29 <REP> Windows Live Toolbar
30/04/2007 00:02 40 .zreglib
19/06/2007 12:00 24 __FileUploader.log
22/03/2005 14:15 86 desktop.ini
20/06/2007 11:26 57 344 fafkbqpc.exe
4 fichier(s) 57 494 octets
31 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\NetworkService\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\LocalService\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\thomas torrente\Application Data
10/08/2005 16:21 <REP> .
10/08/2005 16:21 <REP> ..
05/09/2005 03:29 <REP> Adobe
05/09/2005 12:11 <REP> AdobeUM
13/09/2005 13:48 <REP> Ahead
11/09/2005 12:57 <REP> Apple Computer
25/03/2007 22:35 <REP> Azureus
18/05/2007 21:39 <REP> Blueberry
17/10/2005 20:35 <REP> Checkflow
11/08/2005 03:10 <REP> CyberLink
26/10/2006 15:18 <REP> Desperate Housewives
31/12/2005 22:50 <REP> dvdcss
19/06/2007 01:02 <REP> EAST Technologies
10/08/2005 20:06 <REP> Else plus
07/01/2007 15:03 <REP> FarStone
28/09/2005 13:04 <REP> Gearbox Software
04/05/2007 00:36 <REP> GeoVid
17/08/2006 15:43 <REP> Google
18/08/2005 12:21 <REP> Help
10/08/2005 16:21 <REP> Identities
09/01/2007 20:04 <REP> InstallShield
20/03/2006 18:51 <REP> iShell
07/05/2006 22:41 <REP> Lavasoft
25/11/2006 15:16 <REP> Leadertech
14/08/2005 19:45 <REP> Macromedia
10/08/2005 23:03 <REP> Media Player Classic
15/04/2007 16:00 <REP> MegauploadToolbar
10/08/2005 16:21 <REP> Microsoft
18/10/2005 21:58 <REP> Microsoft Web Folders
03/06/2007 12:37 <REP> MixMeister Technology
08/04/2007 10:45 <REP> Mozilla
18/08/2005 18:46 <REP> NetMedia Providers
06/06/2007 23:57 <REP> PC Tools
26/11/2005 19:02 <REP> Pinnacle Systems
19/06/2007 16:12 <REP> proDAD
18/08/2005 18:46 <REP> Publish Providers
20/06/2007 15:48 <REP> Sammsoft
07/05/2007 12:30 <REP> Screenshot Sender
14/09/2005 20:23 <REP> SecuROM
08/01/2006 22:33 <REP> Shareaza
30/04/2007 00:08 <REP> SlySoft
16/04/2007 21:01 <REP> Smart PC Solutions
18/08/2005 18:46 <REP> Sonic Foundry
30/08/2005 10:33 <REP> Sony
23/03/2007 20:59 <REP> STOPzilla!
10/08/2005 16:21 <REP> Sun
10/08/2005 16:21 <REP> Symantec
28/12/2006 18:36 <REP> Teleca
07/01/2007 18:25 <REP> Torrent101
05/03/2006 21:39 <REP> TuneUp Software
25/05/2007 11:13 <REP> Ulead Systems
15/08/2006 03:01 <REP> uTorrent
22/07/2006 21:44 <REP> Visicom Media
19/11/2005 23:44 <REP> vlc
20/06/2007 11:45 <REP> ??crosoft.NET
20/06/2006 11:01 47 104 CDRusersDB.v12
10/08/2005 16:21 86 desktop.ini
2 fichier(s) 47 190 octets
55 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\thomas torrente\Local Settings\Application Data
10/08/2005 16:21 <REP> .
10/08/2005 16:21 <REP> ..
10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
15/04/2007 14:45 <REP> {C0DAB3BD-FE6D-43C8-BADB-6E6D26647526}
05/09/2005 12:11 <REP> Adobe
15/09/2005 15:56 <REP> Ahead
11/09/2005 12:57 <REP> Apple Computer
17/10/2005 20:35 <REP> ApplicationHistory
04/09/2006 14:46 <REP> Edovia
05/08/2006 13:40 <REP> Google
18/08/2005 12:21 <REP> Help
03/09/2005 22:48 <REP> Identities
26/11/2005 18:51 <REP> IsolatedStorage
10/08/2005 16:21 <REP> Microsoft
15/04/2007 19:34 <REP> Microsoft Help
18/04/2007 12:29 <REP> MigWiz
08/04/2007 10:45 <REP> Mozilla
15/04/2007 14:46 <REP> Pando
18/05/2007 21:38 <REP> Seven Zip
12/08/2005 15:46 <REP> Shareaza
30/12/2006 20:53 <REP> Sony
19/01/2007 17:28 <REP> Sony Ericsson
16/04/2007 19:31 <REP> Stardock
18/10/2005 21:08 <REP> Symantec
10/08/2005 20:39 <REP> WMTools Downloaded Files
19/06/2007 00:54 <REP> Yahoo
08/05/2007 12:08 2 731 ASUS.xrm-ms
10/08/2005 21:01 96 768 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
17/10/2005 20:35 138 fusioncache.dat
11/08/2005 02:18 8 224 GDIPFONTCACHEV1.DAT
19/05/2007 14:14 17 060 058 IconCache.db
08/05/2007 12:08 240 128 royal86.sys
6 fichier(s) 17 408 047 octets
26 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
22/03/2005 14:24 <REP> .
22/03/2005 14:24 <REP> ..
10/08/2005 16:21 <REP> Identities
22/03/2005 14:24 <REP> Microsoft
10/08/2005 16:21 <REP> Sun
10/08/2005 16:21 <REP> Symantec
22/03/2005 14:24 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
22/03/2005 14:24 <REP> .
22/03/2005 14:24 <REP> ..
10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
22/03/2005 14:24 <REP> Microsoft
10/08/2005 16:21 1 993 876 IconCache.db
1 fichier(s) 1 993 876 octets
4 Rép(s) 50 233 606 144 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
$€ˆ55šA€ 1<kF ê <
: C : \ P r o g r a m F i l e s \ A p p l e S o f t w a r e U p d a t e \ S o f t w a r e U p d a t e . e x e - T a s k S Y S T E M 0 ×
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
C:\WINDOWS\Tasks\AD992BE591A6A18D.job
s "€!× : c : \ d o c u m e ~ 1 \ t h o m a s ~ 1 \ a p p l i c ~ 1 \ e l s e p l ~ 1 \ T h u n k d e a f g r e a t . e x e t h o m a s t o r r e n t e 0 Ë
<
C:\WINDOWS\Tasks\Maintenance
Maintenance inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
22/03/2005 14:21 <REP> Adobe
19/06/2007 16:11 <REP> AdorageI-GfxDatas
19/06/2007 16:11 <REP> AdorageI-SAL
12/10/2005 20:20 <REP> Adverts
15/09/2005 13:39 <REP> Ahead
01/04/2007 13:29 <REP> Alex Feinman
16/04/2007 19:29 <REP> AlienGUIse
20/06/2007 16:38 <REP> Alwil Software
22/09/2006 17:18 <REP> Apple Software Update
30/03/2007 13:42 <REP> ASIO4ALL v2
12/05/2007 12:08 <REP> AV Vcs 4.0 DIAMOND
14/04/2007 12:10 <REP> Avex
14/02/2006 23:13 <REP> AVSMedia
25/03/2007 22:35 <REP> Azureus
05/11/2006 11:31 <REP> BearShare
03/08/2006 01:12 <REP> BitComet
29/04/2007 16:19 <REP> BitLord
18/05/2007 21:39 <REP> Blueberry Software
13/05/2006 15:28 <REP> CA
01/05/2007 21:53 <REP> CAPCOM
17/10/2005 20:35 <REP> CheckFlow
19/06/2007 00:57 <REP> ClubDJ Pro
04/10/2005 19:05 <REP> Common Files
22/03/2005 14:19 <REP> ComPlus Applications
18/10/2004 19:22 <REP> counter strike source
22/03/2005 14:31 <REP> CyberLink
29/04/2007 23:44 <REP> DAEMON Tools
09/09/2005 11:54 <REP> Dafhsp
30/08/2006 20:43 <REP> DivX
28/10/2005 16:24 4 096 dmfafr39.Dlk
23/10/2005 21:38 8 192 dmfafr39.Ock
04/10/2005 16:31 <REP> Doom 3
16/04/2007 20:11 <REP> Driver-Soft
19/06/2007 15:39 <REP> D-Tools
28/05/2007 20:03 <REP> DVD Shrink
29/03/2006 14:25 <REP> EA GAMES
19/06/2007 01:00 <REP> East-Tec Eraser 2007
03/10/2006 19:59 <REP> eChanblard
04/09/2006 14:46 <REP> Edovia AntiSpam
13/08/2006 17:52 <REP> Eidos
07/01/2007 13:49 <REP> Elaborate Bytes
17/05/2007 16:19 <REP> Else plus
01/10/2005 16:07 <REP> Empire Interactive
10/08/2005 21:15 <REP> eMule
31/10/2006 14:05 <REP> EPSON
12/10/2005 17:43 <REP> e-zshopper
16/04/2007 19:52 <REP> FaceOnBody
22/03/2005 14:15 <REP> Fichiers communs
23/07/2006 16:00 <REP> FileZilla
13/08/2006 15:49 <REP> flashFXP
15/04/2007 11:32 <REP> FlashGet
18/05/2007 23:51 <REP> FLV Player
30/04/2007 03:24 <REP> Folder Password Protect
05/11/2005 19:12 <REP> Fx Audio Conveter
13/08/2006 17:50 <REP> GameShadow
04/05/2007 00:34 <REP> GeoVid
05/08/2006 13:40 <REP> Google
17/04/2007 16:04 <REP> Hide IP Platinum
03/08/2006 01:42 <REP> ICOO Loader
19/11/2005 20:18 <REP> Illustrate
29/10/2006 15:48 <REP> Image-Line
25/03/2007 15:34 <REP> ImTOO
22/03/2005 14:26 <REP> Intel
05/05/2007 13:01 <REP> Internet Cyclone
22/03/2005 14:19 <REP> Internet Explorer
10/06/2007 01:24 <REP> iolo
09/01/2007 19:11 <REP> Jasc Software Inc
22/03/2005 14:27 <REP> Java
01/10/2005 16:30 <REP> JVTorrent
14/08/2005 20:22 <REP> K-Lite Codec Pack
29/04/2007 23:52 <REP> KONAMI
05/11/2005 19:16 <REP> Konvertor
08/04/2007 02:47 <REP> Lavasoft
08/04/2007 02:48 <REP> Lavasoft RegHance
30/12/2006 19:54 <REP> LimeWire
08/05/2007 11:45 <REP> MagicISO
08/05/2007 12:18 <REP> MAXON
16/04/2007 18:08 <REP> MegaSpoof
15/04/2007 16:00 <REP> MegauploadToolbar
22/03/2005 14:18 <REP> Messenger
07/05/2007 12:25 <REP> Messenger Plus! Live
10/08/2005 20:06 <REP> MessengerPlus! 3
10/05/2007 03:04 <REP> Microsoft CAPICOM 2.1.0.2
22/03/2005 14:22 <REP> microsoft frontpage
18/10/2005 21:58 <REP> Microsoft Office
26/11/2005 18:33 <REP> Microsoft SQL Server
15/04/2007 19:40 <REP> Microsoft Visual Studio
18/04/2007 12:32 <REP> Microsoft Windows Vista Upgrade Advisor
15/04/2007 19:41 <REP> Microsoft Works
15/04/2007 19:39 <REP> Microsoft.NET
05/09/2005 03:11 <REP> MilkShape 3D 1.7.3
18/10/2004 19:45 20 480 MISE EN SERVICE CS SOURCE.doc
29/10/2006 15:25 <REP> MixMeister BPM Analyzer
03/06/2007 12:37 <REP> MixMeister Pro 6
19/11/2005 23:59 <REP> Morgan
22/03/2005 14:19 <REP> Movie Maker
08/04/2007 10:45 <REP> Mozilla Firefox
15/04/2007 19:40 <REP> MSBuild
15/04/2007 19:31 <REP> MSECache
22/03/2005 14:18 <REP> MSN
22/03/2005 14:18 <REP> MSN Gaming Zone
10/08/2005 19:57 <REP> MSN Messenger
15/04/2007 16:43 <REP> MsnChecker
04/10/2005 19:04 <REP> MSNShell
10/08/2005 23:56 <REP> MSXML 4.0
04/08/2006 12:02 <REP> MyGlobalSearch
12/08/2005 15:57 <REP> Need2Find
16/04/2007 17:43 <REP> Nero
22/03/2005 14:19 <REP> NetMeeting
22/03/2005 14:33 <REP> NewTech Infosystems
22/03/2005 14:29 <REP> Norton AntiVirus
22/03/2005 14:19 <REP> Online Services
17/04/2007 22:50 <REP> OO Software
22/03/2005 14:19 <REP> Outlook Express
19/11/2005 20:14 <REP> Oxilog
09/01/2007 19:10 <REP> Panicware
17/04/2007 22:55 <REP> PC Accelerator Professional
08/10/2005 17:34 <REP> Philips
01/08/2006 01:44 <REP> PhotoFiltre Studio
17/04/2007 16:13 <REP> PhotoZoom Professional
18/08/2005 19:00 <REP> Pinnacle
12/10/2005 17:49 <REP> Plus!
14/04/2007 12:11 <REP> PQDVD
19/06/2007 16:15 <REP> proDAD
11/08/2005 00:46 <REP> Project64 v1.5
23/10/2005 23:46 <REP> PROMT5
12/05/2006 17:42 <REP> QuickTime
18/10/2004 20:12 36 747 racourci.JPG
01/04/2007 13:23 <REP> RAR Password Cracker
22/03/2005 14:26 <REP> Realtek
12/08/2005 13:31 <REP> Red Storm Entertainment
10/06/2007 01:32 <REP> Registry Mechanic
10/06/2007 01:16 <REP> RM-X® Audio Extractor
22/03/2005 14:20 <REP> Services en ligne
17/08/2005 15:14 <REP> Sierra On-Line
30/04/2007 00:02 <REP> SlySoft
16/04/2007 21:03 <REP> Smart PC Solutions
14/05/2007 02:19 <REP> SmartSound Software
20/11/2005 18:34 <REP> SmartSound Software Inc
25/04/2007 01:38 <REP> Softwin
18/08/2005 15:59 <REP> Sonic Foundry Setup
05/12/2005 18:32 <REP> Sony
18/08/2005 19:53 <REP> Sony Setup
26/04/2007 21:51 <REP> SphereXP
06/06/2007 23:57 <REP> Spyware Doctor
09/01/2007 19:12 <REP> Steinberg
22/03/2005 14:28 <REP> Symantec
14/04/2007 00:45 <REP> Symantec AntiVirus
07/05/2006 23:24 <REP> TGTSoft
12/10/2005 17:43 <REP> themexp
07/01/2007 18:25 <REP> Torrent101
21/04/2007 00:48 <REP> Total Video Converter
15/04/2007 17:40 <REP> TuneUp Utilities 2007
30/04/2007 03:21 <REP> TurboConnect
28/09/2005 12:55 <REP> Ubisoft
25/05/2007 10:37 <REP> Ulead Systems
24/09/2005 19:37 <REP> UselessCreations
11/08/2005 12:39 <REP> Valve
14/08/2005 00:05 <REP> VDCodecPack1.3
19/11/2005 23:42 <REP> VideoLAN
11/08/2006 17:38 <REP> VirtualDJ
09/02/2006 13:42 <REP> Visicom Media
28/10/2005 16:24 4 096 vmfafr.Dlk
23/10/2005 21:38 8 192 vmfafr.Ock
30/08/2005 10:36 <REP> Vstplugins
19/11/2005 16:20 <REP> Winamp
07/05/2007 12:22 <REP> Windows Live Favorites
10/12/2006 20:24 <REP> Windows Live Toolbar
25/05/2007 10:39 <REP> Windows Media Components
03/01/2007 11:38 <REP> Windows Media Connect 2
22/03/2005 14:19 <REP> Windows Media Player
22/03/2005 14:18 <REP> Windows NT
18/03/2006 12:05 <REP> WinISO
15/04/2007 16:43 <REP> WinPcap
28/01/2006 18:17 <REP> WinRAR
29/04/2007 16:14 <REP> WinSessionPasswordCasseur 1.0
14/04/2007 12:10 <REP> WinXMedia
05/08/2006 13:39 <REP> WinZip
22/03/2005 14:22 <REP> xerox
04/09/2005 11:47 <REP> XRadiance
19/06/2007 00:54 <REP> Yahoo!
6 fichier(s) 81 803 octets
177 Rép(s) 50 233 606 144 octets libres
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
cache.yacast.fr/ REG_BINARY
webmessenger.msn.com/ REG_BINARY
entertainment.msn.com/radio REG_BINARY
my.msn.com/video REG_BINARY
betavideo.my.msn.com REG_BINARY
my.msn.com REG_BINARY
launchcast.launch.yahoo.com/radio REG_BINARY
stream1.adsertion.com/radio REG_BINARY
www.wlsam.com REG_BINARY
www.streamaudio.com REG_BINARY
windowsmedia.com REG_BINARY
www.89.com/ REG_BINARY
www.fuckcams4free.com REG_BINARY
www.bestromsites.com REG_BINARY
6olncnn7p4.rapidsafe.de REG_BINARY
www.fullxxxmovies.net REG_BINARY
www.filefront.com REG_BINARY
www.wawa-mania.fr REG_BINARY
*.rapidshare.com REG_BINARY
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
www.megarotic.com REG_BINARY
* Mozilla Firefox (1 autorisé 2 interdit)
---------- C:\DOCUMENTS AND SETTINGS\THOMAS TORRENTE\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XVO5CMIP.DEFAULT\HOSTPERM.1
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
* [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
fafkbqpc.exe REG_SZ C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
* [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
book ante REG_SZ C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\book ante]
command REG_SZ C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
Merci de m'aider :)
J'ai exécuté tes ordres et voici le rapport :
Rapport lopxpMH2 version 2.0 fait à 22:08:12,03 le 22/06/2007
C:\Documents and Settings\thomas torrente\Bureau
******************************************
## Répertoires Application Data
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\Default User\Application Data
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
10/08/2005 16:21 <REP> Identities
22/03/2005 14:15 <REP> Microsoft
10/08/2005 16:21 <REP> Sun
10/08/2005 16:21 <REP> Symantec
22/03/2005 14:15 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
22/03/2005 14:21 <REP> Microsoft
17/04/2007 03:01 <REP> Microsoft Help
10/08/2005 16:21 1 993 876 IconCache.db
1 fichier(s) 1 993 876 octets
5 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\All Users\Application Data
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
18/05/2007 21:39 <REP> {F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}
22/03/2005 14:21 <REP> Adobe
23/10/2005 23:34 <REP> Adobe Systems
13/09/2005 13:45 <REP> Ahead
11/09/2005 12:57 <REP> Apple Computer
08/05/2006 14:05 <REP> AUDIO IDOL MORE SIZE
18/05/2007 21:39 <REP> Blueberry
22/03/2005 14:31 <REP> CyberLink
28/05/2007 20:03 <REP> DVD Shrink
15/04/2007 11:32 <REP> Google
09/01/2007 19:11 <REP> InstallShield
25/05/2007 11:12 <REP> InterVideo
11/08/2005 13:47 <REP> Messenger Plus!
22/03/2005 14:15 <REP> Microsoft
18/04/2007 12:33 <REP> Microsoft Corporation
15/04/2007 19:34 <REP> Microsoft Help
10/08/2005 20:06 <REP> Ooze Ace Surf Drive
22/10/2005 00:47 <REP> Pinnacle
08/01/2007 23:30 <REP> Pinnacle Studio
11/09/2005 12:57 <REP> QuickTime
30/04/2007 00:02 <REP> SlySoft
14/05/2007 02:19 <REP> SmartSound Software Inc
05/12/2005 18:32 <REP> Sony
22/03/2005 14:28 <REP> Symantec
19/06/2007 00:57 <REP> TEMP
05/03/2006 21:32 <REP> TuneUp Software
25/05/2007 11:11 <REP> Ulead Systems
19/11/2005 22:01 <REP> Windows Genuine Advantage
10/12/2006 20:29 <REP> Windows Live Toolbar
30/04/2007 00:02 40 .zreglib
19/06/2007 12:00 24 __FileUploader.log
22/03/2005 14:15 86 desktop.ini
20/06/2007 11:26 57 344 fafkbqpc.exe
4 fichier(s) 57 494 octets
31 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\NetworkService\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\LocalService\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
22/03/2005 14:25 <REP> .
22/03/2005 14:25 <REP> ..
22/03/2005 14:25 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\thomas torrente\Application Data
10/08/2005 16:21 <REP> .
10/08/2005 16:21 <REP> ..
05/09/2005 03:29 <REP> Adobe
05/09/2005 12:11 <REP> AdobeUM
13/09/2005 13:48 <REP> Ahead
11/09/2005 12:57 <REP> Apple Computer
25/03/2007 22:35 <REP> Azureus
18/05/2007 21:39 <REP> Blueberry
17/10/2005 20:35 <REP> Checkflow
11/08/2005 03:10 <REP> CyberLink
26/10/2006 15:18 <REP> Desperate Housewives
31/12/2005 22:50 <REP> dvdcss
19/06/2007 01:02 <REP> EAST Technologies
10/08/2005 20:06 <REP> Else plus
07/01/2007 15:03 <REP> FarStone
28/09/2005 13:04 <REP> Gearbox Software
04/05/2007 00:36 <REP> GeoVid
17/08/2006 15:43 <REP> Google
18/08/2005 12:21 <REP> Help
10/08/2005 16:21 <REP> Identities
09/01/2007 20:04 <REP> InstallShield
20/03/2006 18:51 <REP> iShell
07/05/2006 22:41 <REP> Lavasoft
25/11/2006 15:16 <REP> Leadertech
14/08/2005 19:45 <REP> Macromedia
10/08/2005 23:03 <REP> Media Player Classic
15/04/2007 16:00 <REP> MegauploadToolbar
10/08/2005 16:21 <REP> Microsoft
18/10/2005 21:58 <REP> Microsoft Web Folders
03/06/2007 12:37 <REP> MixMeister Technology
08/04/2007 10:45 <REP> Mozilla
18/08/2005 18:46 <REP> NetMedia Providers
06/06/2007 23:57 <REP> PC Tools
26/11/2005 19:02 <REP> Pinnacle Systems
19/06/2007 16:12 <REP> proDAD
18/08/2005 18:46 <REP> Publish Providers
20/06/2007 15:48 <REP> Sammsoft
07/05/2007 12:30 <REP> Screenshot Sender
14/09/2005 20:23 <REP> SecuROM
08/01/2006 22:33 <REP> Shareaza
30/04/2007 00:08 <REP> SlySoft
16/04/2007 21:01 <REP> Smart PC Solutions
18/08/2005 18:46 <REP> Sonic Foundry
30/08/2005 10:33 <REP> Sony
23/03/2007 20:59 <REP> STOPzilla!
10/08/2005 16:21 <REP> Sun
10/08/2005 16:21 <REP> Symantec
28/12/2006 18:36 <REP> Teleca
07/01/2007 18:25 <REP> Torrent101
05/03/2006 21:39 <REP> TuneUp Software
25/05/2007 11:13 <REP> Ulead Systems
15/08/2006 03:01 <REP> uTorrent
22/07/2006 21:44 <REP> Visicom Media
19/11/2005 23:44 <REP> vlc
20/06/2007 11:45 <REP> ??crosoft.NET
20/06/2006 11:01 47 104 CDRusersDB.v12
10/08/2005 16:21 86 desktop.ini
2 fichier(s) 47 190 octets
55 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Documents and Settings\thomas torrente\Local Settings\Application Data
10/08/2005 16:21 <REP> .
10/08/2005 16:21 <REP> ..
10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
15/04/2007 14:45 <REP> {C0DAB3BD-FE6D-43C8-BADB-6E6D26647526}
05/09/2005 12:11 <REP> Adobe
15/09/2005 15:56 <REP> Ahead
11/09/2005 12:57 <REP> Apple Computer
17/10/2005 20:35 <REP> ApplicationHistory
04/09/2006 14:46 <REP> Edovia
05/08/2006 13:40 <REP> Google
18/08/2005 12:21 <REP> Help
03/09/2005 22:48 <REP> Identities
26/11/2005 18:51 <REP> IsolatedStorage
10/08/2005 16:21 <REP> Microsoft
15/04/2007 19:34 <REP> Microsoft Help
18/04/2007 12:29 <REP> MigWiz
08/04/2007 10:45 <REP> Mozilla
15/04/2007 14:46 <REP> Pando
18/05/2007 21:38 <REP> Seven Zip
12/08/2005 15:46 <REP> Shareaza
30/12/2006 20:53 <REP> Sony
19/01/2007 17:28 <REP> Sony Ericsson
16/04/2007 19:31 <REP> Stardock
18/10/2005 21:08 <REP> Symantec
10/08/2005 20:39 <REP> WMTools Downloaded Files
19/06/2007 00:54 <REP> Yahoo
08/05/2007 12:08 2 731 ASUS.xrm-ms
10/08/2005 21:01 96 768 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
17/10/2005 20:35 138 fusioncache.dat
11/08/2005 02:18 8 224 GDIPFONTCACHEV1.DAT
19/05/2007 14:14 17 060 058 IconCache.db
08/05/2007 12:08 240 128 royal86.sys
6 fichier(s) 17 408 047 octets
26 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
22/03/2005 14:24 <REP> .
22/03/2005 14:24 <REP> ..
10/08/2005 16:21 <REP> Identities
22/03/2005 14:24 <REP> Microsoft
10/08/2005 16:21 <REP> Sun
10/08/2005 16:21 <REP> Symantec
22/03/2005 14:24 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 50 233 606 144 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
22/03/2005 14:24 <REP> .
22/03/2005 14:24 <REP> ..
10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
22/03/2005 14:24 <REP> Microsoft
10/08/2005 16:21 1 993 876 IconCache.db
1 fichier(s) 1 993 876 octets
4 Rép(s) 50 233 606 144 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
$€ˆ55šA€ 1<kF ê <
: C : \ P r o g r a m F i l e s \ A p p l e S o f t w a r e U p d a t e \ S o f t w a r e U p d a t e . e x e - T a s k S Y S T E M 0 ×
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
C:\WINDOWS\Tasks\AD992BE591A6A18D.job
s "€!× : c : \ d o c u m e ~ 1 \ t h o m a s ~ 1 \ a p p l i c ~ 1 \ e l s e p l ~ 1 \ T h u n k d e a f g r e a t . e x e t h o m a s t o r r e n t e 0 Ë
<
C:\WINDOWS\Tasks\Maintenance
Maintenance inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 320D-180E
Répertoire de C:\Program Files
22/03/2005 14:15 <REP> .
22/03/2005 14:15 <REP> ..
22/03/2005 14:21 <REP> Adobe
19/06/2007 16:11 <REP> AdorageI-GfxDatas
19/06/2007 16:11 <REP> AdorageI-SAL
12/10/2005 20:20 <REP> Adverts
15/09/2005 13:39 <REP> Ahead
01/04/2007 13:29 <REP> Alex Feinman
16/04/2007 19:29 <REP> AlienGUIse
20/06/2007 16:38 <REP> Alwil Software
22/09/2006 17:18 <REP> Apple Software Update
30/03/2007 13:42 <REP> ASIO4ALL v2
12/05/2007 12:08 <REP> AV Vcs 4.0 DIAMOND
14/04/2007 12:10 <REP> Avex
14/02/2006 23:13 <REP> AVSMedia
25/03/2007 22:35 <REP> Azureus
05/11/2006 11:31 <REP> BearShare
03/08/2006 01:12 <REP> BitComet
29/04/2007 16:19 <REP> BitLord
18/05/2007 21:39 <REP> Blueberry Software
13/05/2006 15:28 <REP> CA
01/05/2007 21:53 <REP> CAPCOM
17/10/2005 20:35 <REP> CheckFlow
19/06/2007 00:57 <REP> ClubDJ Pro
04/10/2005 19:05 <REP> Common Files
22/03/2005 14:19 <REP> ComPlus Applications
18/10/2004 19:22 <REP> counter strike source
22/03/2005 14:31 <REP> CyberLink
29/04/2007 23:44 <REP> DAEMON Tools
09/09/2005 11:54 <REP> Dafhsp
30/08/2006 20:43 <REP> DivX
28/10/2005 16:24 4 096 dmfafr39.Dlk
23/10/2005 21:38 8 192 dmfafr39.Ock
04/10/2005 16:31 <REP> Doom 3
16/04/2007 20:11 <REP> Driver-Soft
19/06/2007 15:39 <REP> D-Tools
28/05/2007 20:03 <REP> DVD Shrink
29/03/2006 14:25 <REP> EA GAMES
19/06/2007 01:00 <REP> East-Tec Eraser 2007
03/10/2006 19:59 <REP> eChanblard
04/09/2006 14:46 <REP> Edovia AntiSpam
13/08/2006 17:52 <REP> Eidos
07/01/2007 13:49 <REP> Elaborate Bytes
17/05/2007 16:19 <REP> Else plus
01/10/2005 16:07 <REP> Empire Interactive
10/08/2005 21:15 <REP> eMule
31/10/2006 14:05 <REP> EPSON
12/10/2005 17:43 <REP> e-zshopper
16/04/2007 19:52 <REP> FaceOnBody
22/03/2005 14:15 <REP> Fichiers communs
23/07/2006 16:00 <REP> FileZilla
13/08/2006 15:49 <REP> flashFXP
15/04/2007 11:32 <REP> FlashGet
18/05/2007 23:51 <REP> FLV Player
30/04/2007 03:24 <REP> Folder Password Protect
05/11/2005 19:12 <REP> Fx Audio Conveter
13/08/2006 17:50 <REP> GameShadow
04/05/2007 00:34 <REP> GeoVid
05/08/2006 13:40 <REP> Google
17/04/2007 16:04 <REP> Hide IP Platinum
03/08/2006 01:42 <REP> ICOO Loader
19/11/2005 20:18 <REP> Illustrate
29/10/2006 15:48 <REP> Image-Line
25/03/2007 15:34 <REP> ImTOO
22/03/2005 14:26 <REP> Intel
05/05/2007 13:01 <REP> Internet Cyclone
22/03/2005 14:19 <REP> Internet Explorer
10/06/2007 01:24 <REP> iolo
09/01/2007 19:11 <REP> Jasc Software Inc
22/03/2005 14:27 <REP> Java
01/10/2005 16:30 <REP> JVTorrent
14/08/2005 20:22 <REP> K-Lite Codec Pack
29/04/2007 23:52 <REP> KONAMI
05/11/2005 19:16 <REP> Konvertor
08/04/2007 02:47 <REP> Lavasoft
08/04/2007 02:48 <REP> Lavasoft RegHance
30/12/2006 19:54 <REP> LimeWire
08/05/2007 11:45 <REP> MagicISO
08/05/2007 12:18 <REP> MAXON
16/04/2007 18:08 <REP> MegaSpoof
15/04/2007 16:00 <REP> MegauploadToolbar
22/03/2005 14:18 <REP> Messenger
07/05/2007 12:25 <REP> Messenger Plus! Live
10/08/2005 20:06 <REP> MessengerPlus! 3
10/05/2007 03:04 <REP> Microsoft CAPICOM 2.1.0.2
22/03/2005 14:22 <REP> microsoft frontpage
18/10/2005 21:58 <REP> Microsoft Office
26/11/2005 18:33 <REP> Microsoft SQL Server
15/04/2007 19:40 <REP> Microsoft Visual Studio
18/04/2007 12:32 <REP> Microsoft Windows Vista Upgrade Advisor
15/04/2007 19:41 <REP> Microsoft Works
15/04/2007 19:39 <REP> Microsoft.NET
05/09/2005 03:11 <REP> MilkShape 3D 1.7.3
18/10/2004 19:45 20 480 MISE EN SERVICE CS SOURCE.doc
29/10/2006 15:25 <REP> MixMeister BPM Analyzer
03/06/2007 12:37 <REP> MixMeister Pro 6
19/11/2005 23:59 <REP> Morgan
22/03/2005 14:19 <REP> Movie Maker
08/04/2007 10:45 <REP> Mozilla Firefox
15/04/2007 19:40 <REP> MSBuild
15/04/2007 19:31 <REP> MSECache
22/03/2005 14:18 <REP> MSN
22/03/2005 14:18 <REP> MSN Gaming Zone
10/08/2005 19:57 <REP> MSN Messenger
15/04/2007 16:43 <REP> MsnChecker
04/10/2005 19:04 <REP> MSNShell
10/08/2005 23:56 <REP> MSXML 4.0
04/08/2006 12:02 <REP> MyGlobalSearch
12/08/2005 15:57 <REP> Need2Find
16/04/2007 17:43 <REP> Nero
22/03/2005 14:19 <REP> NetMeeting
22/03/2005 14:33 <REP> NewTech Infosystems
22/03/2005 14:29 <REP> Norton AntiVirus
22/03/2005 14:19 <REP> Online Services
17/04/2007 22:50 <REP> OO Software
22/03/2005 14:19 <REP> Outlook Express
19/11/2005 20:14 <REP> Oxilog
09/01/2007 19:10 <REP> Panicware
17/04/2007 22:55 <REP> PC Accelerator Professional
08/10/2005 17:34 <REP> Philips
01/08/2006 01:44 <REP> PhotoFiltre Studio
17/04/2007 16:13 <REP> PhotoZoom Professional
18/08/2005 19:00 <REP> Pinnacle
12/10/2005 17:49 <REP> Plus!
14/04/2007 12:11 <REP> PQDVD
19/06/2007 16:15 <REP> proDAD
11/08/2005 00:46 <REP> Project64 v1.5
23/10/2005 23:46 <REP> PROMT5
12/05/2006 17:42 <REP> QuickTime
18/10/2004 20:12 36 747 racourci.JPG
01/04/2007 13:23 <REP> RAR Password Cracker
22/03/2005 14:26 <REP> Realtek
12/08/2005 13:31 <REP> Red Storm Entertainment
10/06/2007 01:32 <REP> Registry Mechanic
10/06/2007 01:16 <REP> RM-X® Audio Extractor
22/03/2005 14:20 <REP> Services en ligne
17/08/2005 15:14 <REP> Sierra On-Line
30/04/2007 00:02 <REP> SlySoft
16/04/2007 21:03 <REP> Smart PC Solutions
14/05/2007 02:19 <REP> SmartSound Software
20/11/2005 18:34 <REP> SmartSound Software Inc
25/04/2007 01:38 <REP> Softwin
18/08/2005 15:59 <REP> Sonic Foundry Setup
05/12/2005 18:32 <REP> Sony
18/08/2005 19:53 <REP> Sony Setup
26/04/2007 21:51 <REP> SphereXP
06/06/2007 23:57 <REP> Spyware Doctor
09/01/2007 19:12 <REP> Steinberg
22/03/2005 14:28 <REP> Symantec
14/04/2007 00:45 <REP> Symantec AntiVirus
07/05/2006 23:24 <REP> TGTSoft
12/10/2005 17:43 <REP> themexp
07/01/2007 18:25 <REP> Torrent101
21/04/2007 00:48 <REP> Total Video Converter
15/04/2007 17:40 <REP> TuneUp Utilities 2007
30/04/2007 03:21 <REP> TurboConnect
28/09/2005 12:55 <REP> Ubisoft
25/05/2007 10:37 <REP> Ulead Systems
24/09/2005 19:37 <REP> UselessCreations
11/08/2005 12:39 <REP> Valve
14/08/2005 00:05 <REP> VDCodecPack1.3
19/11/2005 23:42 <REP> VideoLAN
11/08/2006 17:38 <REP> VirtualDJ
09/02/2006 13:42 <REP> Visicom Media
28/10/2005 16:24 4 096 vmfafr.Dlk
23/10/2005 21:38 8 192 vmfafr.Ock
30/08/2005 10:36 <REP> Vstplugins
19/11/2005 16:20 <REP> Winamp
07/05/2007 12:22 <REP> Windows Live Favorites
10/12/2006 20:24 <REP> Windows Live Toolbar
25/05/2007 10:39 <REP> Windows Media Components
03/01/2007 11:38 <REP> Windows Media Connect 2
22/03/2005 14:19 <REP> Windows Media Player
22/03/2005 14:18 <REP> Windows NT
18/03/2006 12:05 <REP> WinISO
15/04/2007 16:43 <REP> WinPcap
28/01/2006 18:17 <REP> WinRAR
29/04/2007 16:14 <REP> WinSessionPasswordCasseur 1.0
14/04/2007 12:10 <REP> WinXMedia
05/08/2006 13:39 <REP> WinZip
22/03/2005 14:22 <REP> xerox
04/09/2005 11:47 <REP> XRadiance
19/06/2007 00:54 <REP> Yahoo!
6 fichier(s) 81 803 octets
177 Rép(s) 50 233 606 144 octets libres
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
cache.yacast.fr/ REG_BINARY
webmessenger.msn.com/ REG_BINARY
entertainment.msn.com/radio REG_BINARY
my.msn.com/video REG_BINARY
betavideo.my.msn.com REG_BINARY
my.msn.com REG_BINARY
launchcast.launch.yahoo.com/radio REG_BINARY
stream1.adsertion.com/radio REG_BINARY
www.wlsam.com REG_BINARY
www.streamaudio.com REG_BINARY
windowsmedia.com REG_BINARY
www.89.com/ REG_BINARY
www.fuckcams4free.com REG_BINARY
www.bestromsites.com REG_BINARY
6olncnn7p4.rapidsafe.de REG_BINARY
www.fullxxxmovies.net REG_BINARY
www.filefront.com REG_BINARY
www.wawa-mania.fr REG_BINARY
*.rapidshare.com REG_BINARY
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
www.megarotic.com REG_BINARY
* Mozilla Firefox (1 autorisé 2 interdit)
---------- C:\DOCUMENTS AND SETTINGS\THOMAS TORRENTE\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XVO5CMIP.DEFAULT\HOSTPERM.1
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
* [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
fafkbqpc.exe REG_SZ C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
* [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
book ante REG_SZ C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\book ante]
command REG_SZ C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
Merci de m'aider :)
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
23 juin 2007 à 09:17
23 juin 2007 à 09:17
Bonjour,
Tu as oublié le rapport AVGantispyware. Peux-tu l'éditer ?
1)
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :
C:\Documents and Settings\thomas torrente\Application Data\Else plus
C:\Program Files\common files\?icrosoft.NET
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
2) Ouvre Hijackthis>"Do a scan only" et coche ceci :
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
Clique sur fix/réparer.
4) * Télécharge combofix.exe (par sUBs) sur ton Bureau : http://download.bleepingcomputer.com/sUBs/ComboFix.exe
* Double clique combofix.exe et suis les invites.
* Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.
5) * Fais un scan en ligne en cliquant ici : http://assiste.com.free.fr/...
* Choisis Kaspersky.
* Tu dois réaliser le scan en utilisant Internet explorer. Une information apparait en haut, près de la barre d'état. Tu dois accepter et installer l'activeX proposé. La mise à jour de l'antivirus se lance.
* Réalise un scan complet du système (Poste de travail).
* Sauvegarde le rapport en mode texte à l'issue du scan.
5) Edite le rapport AVGantispyware, Combofix, OTMoveIt et Kaspersky.
FillPCA
Tu as oublié le rapport AVGantispyware. Peux-tu l'éditer ?
1)
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :
C:\Documents and Settings\thomas torrente\Application Data\Else plus
C:\Program Files\common files\?icrosoft.NET
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
2) Ouvre Hijackthis>"Do a scan only" et coche ceci :
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
Clique sur fix/réparer.
4) * Télécharge combofix.exe (par sUBs) sur ton Bureau : http://download.bleepingcomputer.com/sUBs/ComboFix.exe
* Double clique combofix.exe et suis les invites.
* Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.
5) * Fais un scan en ligne en cliquant ici : http://assiste.com.free.fr/...
* Choisis Kaspersky.
* Tu dois réaliser le scan en utilisant Internet explorer. Une information apparait en haut, près de la barre d'état. Tu dois accepter et installer l'activeX proposé. La mise à jour de l'antivirus se lance.
* Réalise un scan complet du système (Poste de travail).
* Sauvegarde le rapport en mode texte à l'issue du scan.
5) Edite le rapport AVGantispyware, Combofix, OTMoveIt et Kaspersky.
FillPCA
Bonjour, et dsl pour le retard mais le site ne marchait pas!!!(:/)
>>>>J'ai signalé dans ma précédente réponse que j'avais complètement oublié le rapport AVG. et quand je vais dans rapport et bien il me signale que aucun rapport n'est présent. pourtant l'analyse a durée prêt d'1h20, aucun échec ne m'as été signalé pour la quarantaine...
---> Dit moi ce que je peux faire pour ce rapport parce que si je refait mon analyse les erreurs ne seront plus présentent vue que le progr me dit "tout est normal" ...
1)Rapport OTMOVEIT:
C:\Documents and Settings\thomas torrente\Application Data\Else plus moved successfully.
File/Folder C:\Program Files\common files\?icrosoft.NET not found.
Created on 06/23/2007 12:24:37
2)Rapport Combofix:"Aucun rapport C:\COMBOFIX.TXT ne s'est ouvert comme me le disait le progr donc je suis aller dans C: et j'ai copié/collé le rapport QUARANTAINE"
"Au redémarrage, écran bleu est apparu me disant de redémarrer donc j'ai éteint d'urgence et rallumé tout s'est bien passé...":
Rapport COMBOFIX:
[code]
2003-05-21 23:50 24576 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\msxml3a.dll.vir
2004-01-15 07:01 53299 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\pthreadVC.dll.vir
2004-05-14 11:30 61440 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\wanpacket.dll.vir
2004-05-14 11:30 81920 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\packet.dll.vir
2004-05-14 11:37 32896 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\npf.sys.vir
2004-05-14 13:02 225280 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\wpcap.dll.vir
2006-05-19 00:00 902 --a------ C:\Qoobox\Quarantine\C\WINDOWS\hosts.vir
2006-09-08 17:20 926241 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\model.dat.vir
2007-05-10 12:46 249856 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\rlxf.dll.vir
2007-06-20 11:27 0 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\6_exception.nls.vir
2007-06-20 11:27 40183 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Yazzle1162OinUninstaller.exe.vir
2007-06-20 11:27 58098 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ibm00002.dll.vir
2007-06-20 11:27 73605 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ibm00001.dll.vir
2007-06-20 11:48 77 --a------ C:\Qoobox\Quarantine\C\WINDOWS\wr.txt.vir
2007-06-22 23:02 266336 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\geedd.dll.vir
2007-06-22 23:03 6369 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.bak1.vir
2007-06-23 11:50 6409 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.bak2.vir
2007-06-23 11:50 6749 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.ini.vir
2007-06-23 12:37 1308 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_NM.reg.cf
2007-06-23 12:37 1326 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_NPF.reg.cf
2007-06-23 12:37 14100 --a------ C:\Qoobox\Quarantine\Registry_backups\services_nm.reg.cf
2007-06-23 12:37 212 --a------ C:\Qoobox\Quarantine\Registry_backups\services_poof.reg.cf
2007-06-23 12:37 2418 --a------ C:\Qoobox\Quarantine\Registry_backups\services_NPF.reg.cf
2007-06-23 12:37 860 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_RUNTIME.reg.cf
Structure du dossier pour le volume ACER
Le num‚ro de s‚rie du volume est 320D-180E
C:\QOOBOX
\---Quarantine
+---Registry_backups
| LEGACY_NM.reg.cf
| LEGACY_NPF.reg.cf
| LEGACY_RUNTIME.reg.cf
| services_nm.reg.cf
| services_NPF.reg.cf
| services_poof.reg.cf
|
\---C
+---Program Files
| \---Fichiers communs
| | Yazzle1162OinUninstaller.exe.vir
| |
| \---Microsoft Shared
| \---Web Folders
| ibm00001.dll.vir
| ibm00002.dll.vir
|
\---WINDOWS
| hosts.vir
| wr.txt.vir
|
\---system32
| 6_exception.nls.vir
| packet.dll.vir
| pthreadVC.dll.vir
| wanpacket.dll.vir
| wpcap.dll.vir
| rlxf.dll.vir
| msxml3a.dll.vir
| model.dat.vir
| ddeeg.ini.vir
| ddeeg.bak1.vir
| ddeeg.bak2.vir
| geedd.dll.vir
|
\---drivers
npf.sys.vir
[/code]
3)Rapport KAPERSKY:
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
2007-06-23 16:11
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 23/06/2007
Kaspersky Anti-Virus database records: 329688
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
Scan Statistics:
Total number of scanned objects: 187890
Number of viruses found: 22
Number of infected objects: 103 / 0
Number of suspicious objects: 6
Duration of the scan process: 02:51:17
Infected Object Name / Virus Name / Last Action
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_7e4.dat Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_4c0.dat Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0E940000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CF80000.VBN Infected: EICAR-Test-File skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0000.VBN Infected: Exploit.JS.ADODB.Stream.ac skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0001.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0002.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0003.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0004.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F700000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C400000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09040000.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140000.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140001.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140002.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140003.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B100000.VBN Infected: Backdoor.Win32.Prorat.19 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BDC0000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B500001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B500002.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B4C0001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840002.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840004.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C800000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A900001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC40000.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC40001.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC00001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C780000.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C780001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F380000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\07600002.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\07600004.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09580000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09300000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B200000.VBN Infected: Trojan-Spy.Win32.ProAgent.21 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AC40000.VBN Infected: Trojan-Spy.Win32.ProAgent.21 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AC00000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B280000.VBN Infected: Trojan.Win32.BHO.g skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A100000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A540000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AE40000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AE00001.VBN Infected: Backdoor.Win32.Agent.amb skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380000.VBN Infected: Backdoor.Win32.Agent.amb skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380001.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380002.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380003.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380004.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380005.VBN Infected: Backdoor.Win32.Agent.amb skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B4C0002.VBN Infected: Backdoor.Win32.Prorat.19 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80000.VBN Infected: Trojan.Win32.BHO.o skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80006.VBN Infected: Trojan.Win32.BHO.g skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA8000E.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA8000F.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80010.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0001.VBN Infected: Trojan-Clicker.Win32.Costrat.ba skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0002.VBN Infected: Rootkit.Win32.Agent.dp skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0003.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0004.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0005.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0006.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0007.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0008.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0009.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000A.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000B.VBN Infected: Rootkit.Win32.Agent.ey skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000C.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000D.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000E.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000F.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0010.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0011.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0012.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0013.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0014.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0015.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0016.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0017.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\096C0000.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\096C0001.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BB00000.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0E5C0000.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0FB80000.VBN Infected: Trojan-Downloader.Win32.Tiny.ha skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0FB80001.VBN Infected: Rootkit.Win32.Agent.dp skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A180000.VBN Infected: Trojan-Downloader.Win32.Tiny.ha skipped
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\AimMix.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\MetaFour.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\glue lite.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\thomas torrente\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\thomas torrente\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb Object is locked skipped
C:\Documents and Settings\thomas torrente\Cookies\index.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\LOG\ERRORLOG Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\master.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\mastlog.ldf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\model.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\modellog.ldf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\tempdb.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\templog.ldf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\PinnacleSys_GlobalContext.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\PinnacleSys_GlobalContext_log.LDF Object is locked skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP802\A0174132.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP802\A0174139.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174275.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174281.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174282.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177112.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177118.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177119.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177120.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159758.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159763.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159945.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP863\A0186248.exe Infected: Trojan-Proxy.Win32.Agent.mx skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0200963.exe Infected: Trojan-Downloader.Win32.Agent.brk skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0201134.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0201135.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\change.log Object is locked skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\JoyPokeForkBlue.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\Thunkdeafgreat.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\AXISNEW.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\wkxdnvpj.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\dkxwltcu.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\wxeobbmr.exe Infected: Trojan.Win32.Obfuscated.en skipped
Scan process completed.
>>>>J'ai signalé dans ma précédente réponse que j'avais complètement oublié le rapport AVG. et quand je vais dans rapport et bien il me signale que aucun rapport n'est présent. pourtant l'analyse a durée prêt d'1h20, aucun échec ne m'as été signalé pour la quarantaine...
---> Dit moi ce que je peux faire pour ce rapport parce que si je refait mon analyse les erreurs ne seront plus présentent vue que le progr me dit "tout est normal" ...
1)Rapport OTMOVEIT:
C:\Documents and Settings\thomas torrente\Application Data\Else plus moved successfully.
File/Folder C:\Program Files\common files\?icrosoft.NET not found.
Created on 06/23/2007 12:24:37
2)Rapport Combofix:"Aucun rapport C:\COMBOFIX.TXT ne s'est ouvert comme me le disait le progr donc je suis aller dans C: et j'ai copié/collé le rapport QUARANTAINE"
"Au redémarrage, écran bleu est apparu me disant de redémarrer donc j'ai éteint d'urgence et rallumé tout s'est bien passé...":
Rapport COMBOFIX:
[code]
2003-05-21 23:50 24576 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\msxml3a.dll.vir
2004-01-15 07:01 53299 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\pthreadVC.dll.vir
2004-05-14 11:30 61440 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\wanpacket.dll.vir
2004-05-14 11:30 81920 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\packet.dll.vir
2004-05-14 11:37 32896 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\npf.sys.vir
2004-05-14 13:02 225280 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\wpcap.dll.vir
2006-05-19 00:00 902 --a------ C:\Qoobox\Quarantine\C\WINDOWS\hosts.vir
2006-09-08 17:20 926241 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\model.dat.vir
2007-05-10 12:46 249856 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\rlxf.dll.vir
2007-06-20 11:27 0 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\6_exception.nls.vir
2007-06-20 11:27 40183 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Yazzle1162OinUninstaller.exe.vir
2007-06-20 11:27 58098 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ibm00002.dll.vir
2007-06-20 11:27 73605 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ibm00001.dll.vir
2007-06-20 11:48 77 --a------ C:\Qoobox\Quarantine\C\WINDOWS\wr.txt.vir
2007-06-22 23:02 266336 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\geedd.dll.vir
2007-06-22 23:03 6369 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.bak1.vir
2007-06-23 11:50 6409 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.bak2.vir
2007-06-23 11:50 6749 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.ini.vir
2007-06-23 12:37 1308 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_NM.reg.cf
2007-06-23 12:37 1326 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_NPF.reg.cf
2007-06-23 12:37 14100 --a------ C:\Qoobox\Quarantine\Registry_backups\services_nm.reg.cf
2007-06-23 12:37 212 --a------ C:\Qoobox\Quarantine\Registry_backups\services_poof.reg.cf
2007-06-23 12:37 2418 --a------ C:\Qoobox\Quarantine\Registry_backups\services_NPF.reg.cf
2007-06-23 12:37 860 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_RUNTIME.reg.cf
Structure du dossier pour le volume ACER
Le num‚ro de s‚rie du volume est 320D-180E
C:\QOOBOX
\---Quarantine
+---Registry_backups
| LEGACY_NM.reg.cf
| LEGACY_NPF.reg.cf
| LEGACY_RUNTIME.reg.cf
| services_nm.reg.cf
| services_NPF.reg.cf
| services_poof.reg.cf
|
\---C
+---Program Files
| \---Fichiers communs
| | Yazzle1162OinUninstaller.exe.vir
| |
| \---Microsoft Shared
| \---Web Folders
| ibm00001.dll.vir
| ibm00002.dll.vir
|
\---WINDOWS
| hosts.vir
| wr.txt.vir
|
\---system32
| 6_exception.nls.vir
| packet.dll.vir
| pthreadVC.dll.vir
| wanpacket.dll.vir
| wpcap.dll.vir
| rlxf.dll.vir
| msxml3a.dll.vir
| model.dat.vir
| ddeeg.ini.vir
| ddeeg.bak1.vir
| ddeeg.bak2.vir
| geedd.dll.vir
|
\---drivers
npf.sys.vir
[/code]
3)Rapport KAPERSKY:
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
2007-06-23 16:11
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 23/06/2007
Kaspersky Anti-Virus database records: 329688
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
Scan Statistics:
Total number of scanned objects: 187890
Number of viruses found: 22
Number of infected objects: 103 / 0
Number of suspicious objects: 6
Duration of the scan process: 02:51:17
Infected Object Name / Virus Name / Last Action
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_7e4.dat Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_4c0.dat Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0E940000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CF80000.VBN Infected: EICAR-Test-File skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0000.VBN Infected: Exploit.JS.ADODB.Stream.ac skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0001.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0002.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0003.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0004.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F700000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C400000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09040000.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140000.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140001.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140002.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140003.VBN Infected: HackTool.Win32.ProRat.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B100000.VBN Infected: Backdoor.Win32.Prorat.19 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BDC0000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B500001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B500002.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B4C0001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840002.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840004.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C800000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A900001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC40000.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC40001.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC00001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C780000.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C780001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F380000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\07600002.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\07600004.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09580000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09300000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B200000.VBN Infected: Trojan-Spy.Win32.ProAgent.21 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AC40000.VBN Infected: Trojan-Spy.Win32.ProAgent.21 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AC00000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B280000.VBN Infected: Trojan.Win32.BHO.g skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A100000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A540000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AE40000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AE00001.VBN Infected: Backdoor.Win32.Agent.amb skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380000.VBN Infected: Backdoor.Win32.Agent.amb skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380001.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380002.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380003.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380004.VBN Infected: Backdoor.Win32.Delf.avq skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380005.VBN Infected: Backdoor.Win32.Agent.amb skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B4C0002.VBN Infected: Backdoor.Win32.Prorat.19 skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80000.VBN Infected: Trojan.Win32.BHO.o skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80006.VBN Infected: Trojan.Win32.BHO.g skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA8000E.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA8000F.VBN Suspicious: Packed.Win32.Morphine.a skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80010.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0001.VBN Infected: Trojan-Clicker.Win32.Costrat.ba skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0002.VBN Infected: Rootkit.Win32.Agent.dp skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0003.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0004.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0005.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0006.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0007.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0008.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0009.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000A.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000B.VBN Infected: Rootkit.Win32.Agent.ey skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000C.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000D.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000E.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000F.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0010.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0011.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0012.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0013.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0014.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0015.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0016.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0017.VBN Infected: Trojan.Win32.Agent.ama skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\096C0000.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\096C0001.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BB00000.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0E5C0000.VBN Infected: Trojan.Win32.Dialer.qn skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0FB80000.VBN Infected: Trojan-Downloader.Win32.Tiny.ha skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0FB80001.VBN Infected: Rootkit.Win32.Agent.dp skipped
C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A180000.VBN Infected: Trojan-Downloader.Win32.Tiny.ha skipped
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\AimMix.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\MetaFour.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\glue lite.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\thomas torrente\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\thomas torrente\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb Object is locked skipped
C:\Documents and Settings\thomas torrente\Cookies\index.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\LOG\ERRORLOG Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\master.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\mastlog.ldf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\model.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\modellog.ldf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\tempdb.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\templog.ldf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\PinnacleSys_GlobalContext.mdf Object is locked skipped
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\PinnacleSys_GlobalContext_log.LDF Object is locked skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP802\A0174132.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP802\A0174139.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174275.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174281.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174282.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177112.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177118.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177119.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177120.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159758.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159763.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159945.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP863\A0186248.exe Infected: Trojan-Proxy.Win32.Agent.mx skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0200963.exe Infected: Trojan-Downloader.Win32.Agent.brk skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0201134.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0201135.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\change.log Object is locked skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\JoyPokeForkBlue.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\Thunkdeafgreat.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\AXISNEW.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\wkxdnvpj.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\dkxwltcu.exe Infected: Trojan.Win32.Obfuscated.en skipped
C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\wxeobbmr.exe Infected: Trojan.Win32.Obfuscated.en skipped
Scan process completed.
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
22 juin 2007 à 21:40
22 juin 2007 à 21:40
Re,
Tu as changé de pseudo ? Ton PC est très infecté donc il y aura de nombreuses étapes pour traiter les différentes infections.
Merci à Lazzzy
* Télécharger lopxpMH : http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2.zip
* Dézippe-le au moyen d'un clic droit et extrais-le sur le bureau.
* Edite le rapport généré.
FillPCA
Tu as changé de pseudo ? Ton PC est très infecté donc il y aura de nombreuses étapes pour traiter les différentes infections.
Merci à Lazzzy
* Télécharger lopxpMH : http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2.zip
* Dézippe-le au moyen d'un clic droit et extrais-le sur le bureau.
* Edite le rapport généré.
FillPCA
FillPCA
Messages postés
2242
Date d'inscription
samedi 21 avril 2007
Statut
Contributeur sécurité
Dernière intervention
18 février 2023
123
23 févr. 2008 à 23:15
23 févr. 2008 à 23:15
Bonsoir,
Je ne sais pas pourquoi tu remontes ce sujet vieux de 8 mois.
FillPCA
Je ne sais pas pourquoi tu remontes ce sujet vieux de 8 mois.
FillPCA
j'ai telechargé virtual dj (avec tout : skins , effets..) et quand je vais dans config et plugins , je n'arrive pas a ajouter les effets conmen t je peut les ajoute ?
Simio
Messages postés
1
Date d'inscription
lundi 9 juin 2008
Statut
Membre
Dernière intervention
9 juin 2008
9 juin 2008 à 18:35
9 juin 2008 à 18:35
Microsoft Visual C++ Runtime Library
---------------------------
Runtime Error!
Program: ...\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
Progammme installer dans l'ordi:
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
..............................
Le problème n'est pas là l'antivirus...
Le problème est créer par le Spyware Doctor 5.1 de merde qui est installer sur l'ordinateur...
Une des mises à jours du Spyware Doctor 5.1 entre en conflit avec le RTVSCAN.EXE de l'antivirus.
Enlever la version 5.1 du Spyware et mettre la vouvelle 5.5 et voilà le problème est résolu... :o)
---------------------------
Runtime Error!
Program: ...\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
Progammme installer dans l'ordi:
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
..............................
Le problème n'est pas là l'antivirus...
Le problème est créer par le Spyware Doctor 5.1 de merde qui est installer sur l'ordinateur...
Une des mises à jours du Spyware Doctor 5.1 entre en conflit avec le RTVSCAN.EXE de l'antivirus.
Enlever la version 5.1 du Spyware et mettre la vouvelle 5.5 et voilà le problème est résolu... :o)